Hello,
I started this topic in the browsers topic. I posted some logs after running some scans per the request of the person who picked up my topic. I received a reply from an admin to repost here. I will copy and paste the topic and attach the logs.
Here is the link to that post:
http://forums.whatth...howtopic=128895
Hello,
I am at my wits end and hope you all can help. My coworker came to me yesterday and stated she was having issues connecting and could I look at her computer. Everytime you clicked on one of the browsers it would just spin and time out.
I brought it home last night and looked it over. She did not have any anti malware programs on so I thought simple, she must have some malware, I will install malwarebytes and clean up the machine.
Her machine is:
HP Windows 8 machine
AMD E-300 APU with Radeon
4GB Ram
64 bit operating system
no touch screen
I was able to install malwarebytes via flash drive and it updated via my wifi and ran it. Found almost 500 threats. Nothing on virus scan.(After it cleaned 2 threats previously ~~ per coworker. I did not at this point see reason to run it after the other scan.)
Rebooted and tried to go online. Now instead of the spinning and timing out I get proxy errors on both Chrome and IE. She has no other browsers installed.
I noticed some windows updates were needed and was able to get them installed without browsers but still the proxy errors existed. I went into settings on both and went to LAN and tried to uncheck the use proxy box but it would not stay. So I assumed more malware.
There are also a couple of items that the HP Assistant states need updating I was able to download (so it looked per screen) but apparently failed on install because all 3 are still showing after numeros attempts.
HP System Event Utility
Qualcomm Atheros AR9000 Series Wireless LAN Driver for Microsoft Windows
Cyberlink MediaSuite 10-desktop
Reran malwarebytes, came back clean. Installed and ran Malwarebytes anti root kit came back clean.
I have not been able to run or uninstall AVG even with removal tool.
I ran rogue killer and reset proxy.
I have turned off (who knew you couldn't uninstall IE in Windows 8?) and uninstalled Chrome.
Rebooted and turned IE back on. Still proxy errors.
I installed HJT and ran it but it flashed a msg about hosts and then would not let me save a log to notepad when it was done. I was also unsuccessful in trying to highlight and copy and paste it into notepad.
Every time I check the wireless settings it states I am connected to the internet. All other machines, tablets and phones in house are fine in connections and browsing etc...
So here I am coming to you with no logs and a huge amount of frustration at my inexperience with Windows 8 hoping that someone will be able to provide me some hope in what my next steps would be.
Thanking you in advance......
My response after their scan and reset of host file suggestions:
Ok reset host file no change>
Also forgot to mention that I did do a system restore with no change either.
I tried to boot in safe mode no luck.
Once again no luck uninstalling AVG either via control panel nor removal tool.
I have not downloaded a newer version and transferred it yet.
As I was not told to, I did not do anything with the scans except run them. No fixes run etc.....
Please note when having me run and download things, that while I AM connected per wireless settings I CAN NOT access any web sites on my coworkers machine. I must download and transfer via USB drive from my machine. Being this is the case would I still be able to transfer ESET and run one of those scans?
Here is the DDS scan results:
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.17116
Run by Sheila at 13:48:52 on 2014-10-31
Microsoft Windows 8 6.2.9200.0.1252.1.1033.18.3682.2420 [GMT -4:00]
.
AV: AVG AntiVirus Free Edition 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AV: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: AVG AntiVirus Free Edition 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
.
============== Running Processes ===============
.
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Realtek\Audio\HDA\AERTSr64.EXE
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Windows\system32\svchost.exe -k apphost
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe
C:\Windows\system32\dashost.exe
c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Windows Defender\MsMpEng.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\LogonUI.exe
C:\Windows\System32\dwm.exe
C:\Windows\system32\dwm.exe
C:\Windows\system32\taskhostex.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe
C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Windows\System32\RuntimeBroker.exe
C:\Users\Sheila\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\taskhost.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
mStart Page = hxxp://search.coupons.com/
uProxyOverride = <-loopback>
mWinlogon: Userinit = userinit.exe,
BHO: HP Network Check Helper: {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
uRun: [SkyDrive] "C:\Users\Sheila\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe" /background
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
mRun: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
mRun: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
mRun: [HPMessageService] C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
mRunOnce: [AVG_uninstallation_survey] C:\Program Files\Internet Explorer\iexplore.exe
StartupFolder: C:\Users\Sheila\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\SENDTO~1.LNK - C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
IE: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
IE: {22CC3EBD-C286-43aa-B8E6-06B115F74162} - C:\Program Files (x86)\Hewlett-Packard\Smart Print 2.0\smartprintsetup.exe
IE: {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\office15\onbttnie.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll
TCP: NameServer = 204.186.80.251 216.144.187.101 216.144.187.199
TCP: Interfaces\{C00DBA34-2415-4173-9B77-07BBA891F271} : DHCPNameServer = 204.186.80.251 216.144.187.101 216.144.187.199
TCP: Interfaces\{C00DBA34-2415-4173-9B77-07BBA891F271}\D496C6C65627D27657563747 : DHCPNameServer = 204.186.80.251 216.144.187.101 216.144.187.199
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\office15\MSOSB.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
x64-BHO: Lync Browser Helper: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll
x64-BHO: Microsoft SkyDrive Pro Browser Helper: {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\grooveex.dll
x64-BHO: HP Network Check Helper: {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll
x64-RunOnce: [NCPluginUpdater] "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update
x64-IE: {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\onbttnie.dll
x64-IE: {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ochelper.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
x64-Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 amd_sata;amd_sata;C:\Windows\System32\Drivers\amd_sata.sys [2012-11-30 80552]
R0 amd_xata;amd_xata;C:\Windows\System32\Drivers\amd_xata.sys [2012-11-30 26280]
R0 AVGIDSHA;AVGIDSHA;C:\Windows\System32\Drivers\avgidsha.sys [2014-6-17 190744]
R0 Avgloga;AVG Logging Driver;C:\Windows\System32\Drivers\avgloga.sys [2014-6-17 328984]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\System32\Drivers\avgmfx64.sys [2014-8-6 123672]
R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\System32\Drivers\avgrkx64.sys [2014-6-17 31512]
R1 Avgdiska;AVG Disk Driver;C:\Windows\System32\Drivers\avgdiska.sys [2014-6-30 152344]
R1 AVGIDSDriver;AVGIDSDriver;C:\Windows\System32\Drivers\avgidsdrivera.sys [2014-7-21 244504]
R1 Avgwfpa;AVG Firewall Driver;C:\Windows\System32\Drivers\avgwfpa.sys [2014-6-30 270104]
R1 CLVirtualDrive;CLVirtualDrive;C:\Windows\System32\Drivers\CLVirtualDrive.sys [2013-11-23 92536]
R2 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2013-11-23 98208]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2013-3-14 241152]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-3-14 361984]
R2 ClickToRunSvc;Microsoft Office ClickToRun Service;C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe [2014-7-2 2436280]
R2 GamesAppIntegrationService;GamesAppIntegrationService;C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [2014-4-24 227904]
R2 HP Support Assistant Service;HP Support Assistant Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe [2012-9-27 86528]
R2 HPWMISVC;HPWMISVC;C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [2013-12-25 1039160]
R2 IconMan_R;IconMan_R;C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2013-11-23 2468496]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [2014-10-29 1871160]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [2014-10-29 968504]
R2 RtkAudioService;Realtek Audio Service;C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE [2013-11-23 239176]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\System32\Drivers\AtihdW86.sys [2013-2-14 94208]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\Drivers\mbam.sys [2014-10-29 25816]
R3 MBAMSwissArmy;MBAMSwissArmy;C:\Windows\System32\Drivers\MBAMSwissArmy.sys [2014-10-29 129752]
R3 MBAMWebAccessControl;MBAMWebAccessControl;C:\Windows\System32\Drivers\mwac.sys [2014-10-29 64216]
R3 RSP2STOR;Realtek PCIE CardReader Driver - P2;C:\Windows\System32\Drivers\RtsP2Stor.sys [2013-11-23 288328]
R3 RTL8168;Realtek 8168 NT Driver;C:\Windows\System32\Drivers\Rt630x64.sys [2013-11-23 760032]
R3 usbfilter;AMD USB Filter Driver;C:\Windows\System32\Drivers\usbfilter.sys [2013-11-23 58536]
R3 WirelessButtonDriver;HP Wireless Button Driver Service;C:\Windows\System32\Drivers\WirelessButtonDriver64.sys [2012-8-31 20800]
S0 Avgboota;AVG Early Launch Anti-Malware Driver;C:\Windows\System32\Drivers\avgboota.sys [2013-9-4 20496]
S1 Avgldx64;AVG AVI Loader Driver;C:\Windows\System32\Drivers\avgldx64.sys [2014-6-17 235800]
S2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [2014-8-25 3242000]
S2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [2014-8-25 289328]
S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 203344]
S3 iaStorA;iaStorA;C:\Windows\System32\Drivers\iaStorA.sys [2012-9-1 647736]
S3 SmbDrv;SmbDrv;C:\Windows\System32\Drivers\Smb_driver_AMDASF.sys [2013-5-7 29424]
S3 SmbDrvI;SmbDrvI;C:\Windows\System32\Drivers\Smb_driver_Intel.sys [2013-5-7 33008]
.
=============== Created Last 30 ================
.
2014-10-31 01:11:56 388096 ----a-r- C:\Users\Sheila\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2014-10-31 01:11:54 -------- d-----w- C:\Program Files (x86)\Trend Micro
2014-10-30 23:56:32 11627712 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D1D4ACF6-B8D1-4B70-AB30-89AB7E067D0C}\mpengine.dll
2014-10-30 23:56:22 275080 ------w- C:\Windows\System32\MpSigStub.exe
2014-10-30 22:33:24 -------- d-----w- C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-10-30 03:14:31 3915264 ----a-w- C:\Windows\System32\drivers\athw8x.sys
2014-10-30 02:19:53 2885120 ----a-w- C:\Windows\System32\msi.dll
2014-10-30 02:19:47 2416128 ----a-w- C:\Windows\SysWow64\msi.dll
2014-10-30 02:19:18 693248 ----a-w- C:\Windows\System32\aepdu.dll
2014-10-30 02:19:18 275968 ----a-w- C:\Windows\System32\generaltel.dll
2014-10-30 02:19:16 556544 ----a-w- C:\Windows\System32\aeinv.dll
2014-10-30 02:19:01 462760 ----a-w- C:\Windows\System32\NotificationUI.exe
2014-10-30 02:19:01 198656 ----a-w- C:\Windows\System32\Windows.ApplicationModel.Store.dll
2014-10-30 02:19:00 581016 ----a-w- C:\Windows\System32\AutoUpdate.exe
2014-10-30 02:19:00 568832 ----a-w- C:\Windows\SysWow64\WSShared.dll
2014-10-30 02:19:00 163840 ----a-w- C:\Windows\System32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-30 02:19:00 125952 ----a-w- C:\Windows\System32\WinSetupUI.dll
2014-10-30 02:18:59 695808 ----a-w- C:\Windows\System32\WSShared.dll
2014-10-30 02:18:59 124928 ----a-w- C:\Windows\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-10-30 01:38:00 129752 ----a-w- C:\Windows\System32\drivers\MBAMSwissArmy.sys
2014-10-30 01:37:09 91352 ----a-w- C:\Windows\System32\drivers\mbamchameleon.sys
2014-10-30 01:37:09 64216 ----a-w- C:\Windows\System32\drivers\mwac.sys
2014-10-30 01:37:09 25816 ----a-w- C:\Windows\System32\drivers\mbam.sys
2014-10-30 01:01:02 -------- d-----w- C:\Users\Sheila\AppData\Local\Avg2014
2014-10-29 23:18:03 -------- d-----w- C:\Windows\System32\AutoUpdateLicense
2014-10-29 21:59:20 -------- d-----w- C:\ProgramData\Malwarebytes
2014-10-29 21:59:20 -------- d-----w- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-10-29 21:58:20 -------- d-----w- C:\Users\Sheila\AppData\Local\Programs
2014-10-23 00:23:09 -------- d-----w- C:\Users\Sheila\AppData\Roaming\AVG2015
2014-10-23 00:16:55 -------- d-----w- C:\ProgramData\AVG2015
2014-10-23 00:11:27 -------- d-----w- C:\Users\Sheila\AppData\Local\Avg2015
2014-10-21 22:20:38 104904 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-10-21 22:20:37 705480 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2014-10-21 11:34:47 269992 ----a-w- C:\ProgramData\Microsoft\Windows\Sqm\Manifest\Sqm10248.bin
2014-10-20 16:10:04 3262976 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\tipskins.dll
2014-10-20 16:10:03 1824784 ----a-w- C:\Windows\System32\ntdll.dll
2014-10-20 16:06:36 674304 ----a-w- C:\Windows\System32\drivers\srv2.sys
2014-10-20 03:04:26 8858112 ----a-w- C:\Windows\SysWow64\twinui.dll
2014-10-20 03:04:26 754176 ----a-w- C:\Windows\SysWow64\actxprxy.dll
2014-10-20 03:04:22 2146304 ----a-w- C:\Windows\System32\actxprxy.dll
2014-10-20 03:04:22 10115072 ----a-w- C:\Windows\System32\twinui.dll
2014-10-20 03:04:18 2306560 ----a-w- C:\Windows\System32\authui.dll
2014-10-20 03:04:18 2037760 ----a-w- C:\Windows\SysWow64\authui.dll
2014-10-20 03:01:13 585728 ----a-w- C:\Windows\System32\rastls.dll
2014-10-20 03:01:13 510464 ----a-w- C:\Windows\SysWow64\rastls.dll
2014-10-20 03:01:10 79360 ----a-w- C:\Windows\System32\packager.dll
2014-10-20 03:01:10 68096 ----a-w- C:\Windows\SysWow64\packager.dll
2014-10-19 18:38:51 4068352 ----a-w- C:\Windows\System32\win32k.sys
2014-10-03 17:26:42 3885792 ----a-w- C:\Windows\SysWow64\uninstall.exe
.
==================== Find3M ====================
.
2014-09-20 05:17:42 2236928 ----a-w- C:\Windows\System32\wininet.dll
2014-09-20 05:17:32 915968 ----a-w- C:\Windows\System32\uxtheme.dll
2014-09-20 05:17:32 53760 ----a-w- C:\Windows\System32\UXInit.dll
2014-09-20 05:16:11 3959296 ----a-w- C:\Windows\System32\jscript9.dll
2014-09-20 05:16:07 67072 ----a-w- C:\Windows\System32\iesetup.dll
2014-09-20 05:16:07 136704 ----a-w- C:\Windows\System32\iesysprep.dll
2014-09-20 05:15:22 1508864 ----a-w- C:\Windows\System32\inetcpl.cpl
2014-09-20 03:57:57 1762816 ----a-w- C:\Windows\SysWow64\wininet.dll
2014-09-20 03:57:50 44032 ----a-w- C:\Windows\SysWow64\UXInit.dll
2014-09-20 03:57:04 2861568 ----a-w- C:\Windows\SysWow64\jscript9.dll
2014-09-20 03:57:01 61440 ----a-w- C:\Windows\SysWow64\iesetup.dll
2014-09-20 03:57:01 109056 ----a-w- C:\Windows\SysWow64\iesysprep.dll
2014-09-20 03:56:33 1440768 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2014-09-20 03:38:36 2706432 ----a-w- C:\Windows\System32\mshtml.tlb
2014-09-20 03:33:44 2706432 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2014-09-20 01:06:59 534528 ----a-w- C:\Windows\SysWow64\uxtheme.dll
2014-09-13 06:24:47 2233152 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2014-09-03 02:48:48 141824 ----a-w- C:\Windows\SysWow64\rpchttp.dll
2014-09-03 02:22:00 188928 ----a-w- C:\Windows\System32\rpchttp.dll
2014-09-03 02:21:28 212992 ----a-w- C:\Windows\System32\dnsrslvr.dll
2014-08-29 04:17:04 227328 ----a-w- C:\Windows\SysWow64\WsmWmiPl.dll
2014-08-29 04:17:04 2043392 ----a-w- C:\Windows\SysWow64\WsmSvc.dll
2014-08-29 04:04:22 309248 ----a-w- C:\Windows\System32\WsmWmiPl.dll
2014-08-29 04:04:22 2837504 ----a-w- C:\Windows\System32\WsmSvc.dll
2014-08-28 06:05:35 35328 ----a-w- C:\Windows\SysWow64\wuapp.exe
2014-08-28 06:05:17 86528 ----a-w- C:\Windows\SysWow64\wudriver.dll
2014-08-28 06:05:17 128000 ----a-w- C:\Windows\SysWow64\wuwebv.dll
2014-08-28 06:04:00 499712 ----a-w- C:\Windows\SysWow64\FXSCOMEX.dll
2014-08-28 06:04:00 227840 ----a-w- C:\Windows\SysWow64\FXSAPI.dll
2014-08-28 06:02:15 40448 ----a-w- C:\Windows\System32\wuapp.exe
2014-08-28 06:01:45 253440 ----a-w- C:\Windows\System32\WUSettingsProvider.dll
2014-08-28 06:01:45 144384 ----a-w- C:\Windows\System32\wuwebv.dll
2014-08-28 06:01:45 100352 ----a-w- C:\Windows\System32\wudriver.dll
2014-08-28 06:01:44 17920 ----a-w- C:\Windows\System32\wuaext.dll
2014-08-28 06:01:44 1623552 ----a-w- C:\Windows\System32\wucltux.dll
2014-08-28 06:01:15 176640 ----a-w- C:\Windows\System32\storewuauth.dll
2014-08-28 05:59:55 616448 ----a-w- C:\Windows\System32\FXSAPI.dll
2014-08-28 05:59:55 609280 ----a-w- C:\Windows\System32\FXSCOMEX.dll
2014-08-28 05:59:55 432640 ----a-w- C:\Windows\System32\FXSTIFF.dll
2014-08-28 05:59:55 254976 ----a-w- C:\Windows\System32\FXST30.dll
2014-08-09 08:30:18 148480 ----a-w- C:\Windows\System32\poqexec.exe
2014-08-09 08:29:32 144896 ----a-w- C:\Windows\System32\tssdisai.dll
2014-08-06 14:50:04 123672 ----a-w- C:\Windows\System32\drivers\avgmfx64.sys
.
============= FINISH: 13:51:23.96 ===============
Do I need to go back and run the other scans? Did not do them yet as was told to transfer to this post and I thought I simply had a browser issue???