My computer is running slower than normal. It takes a while to open up programs and my Internet freezes after about 10 minutes or so. The other computer in the house is running normally. It is just this one. Did a full system scan with Malwarebytes, Superantispyware, and Microsoft Security Essentials, cleaned up a few tracking cookies and some java malware that essentials picked up and it is still slow.
Download
DDS from one of the links below to your desktop
Link 1
Link 2
Double click the tool to run it.A black Screen will open, just read the contents and do nothing. When the tool finishes, it will open 2 reports, DDS.txt and attach.txt Copy/Paste the contents of 'DDS.txt' into your post. 'attach.txt' should be zipped using Windows native zip utility and attached to your post. Compress and uncompress files (zip files)
Download
aswMBR.exe ( 511KB ) to your desktop.
Double click the aswMBR.exe to run it
Click the "Scan" button to start scan
[external image: Posted Image]
On completion of the scan click save log, save it to your desktop and post in your next reply
[external image: Posted Image]
DDS (Ver_2011-07-14.01) - NTFS_x86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_24
Run by [removed] at 15:14:50 on 2011-07-15
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.447.73 [GMT -4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
AV: Microsoft Security Essentials *Disabled/Updated* {BCF43643-A118-4432-AEDE-D861FCBCFCDF}
FW: COMODO Firewall Pro *Enabled*
.
============== Running Processes ================
.
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\alg.exe
C:\windows\system\hpsysdrv.exe
C:\Program Files\USB Storage RW\udsi.exe
C:\WINDOWS\system32\ps2.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
C:\Program Files\Common Files\Java\Java Update\jucheck.exe
C:\Program Files\Windows NT\Accessories\WORDPAD.EXE
C:\Program Files\Windows NT\Accessories\wordpad.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\System32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uWindow Title = Powered by Charter Communications
uSearch Page = hxxp://www.charter.net/google/index.php?q=
uDefault_Search_URL = hxxp://srch-qus8.hpwis.com/
mSearch Bar = hxxp://srch-qus8.hpwis.com/
uInternet Connection Wizard,ShellNext = iexplore
uProxyServer = :
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} -
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RoboForm BHO: {724d43a9-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\roboform.dll
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: &RoboForm: {724D43A0-0D85-11D4-9908-00400523E39A} - c:\program files\siber systems\ai roboform\roboform.dll
TB: &RoboForm: {724d43a0-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\roboform.dll
EB: {32683183-48a0-441b-a342-7c2a440a9478} -
uRun: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Google Update] "c:\documents and settings\owner\local settings\application data\google\update\GoogleUpdate.exe" /c
uRun: [Aim] "c:\program files\aim\aim.exe" /d locale=en-US
uRun: [RoboForm] "c:\program files\siber systems\ai roboform\RoboTaskBarIcon.exe"
mRun: [hpsysdrv] c:\windows\system\hpsysdrv.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [KYE_UDSI] "c:\program files\usb storage rw\udsi.exe
mRun: [Recguard] c:\windows\sminst\RECGUARD.EXE
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
mRun: [PS2] c:\windows\system32\ps2.exe
mRun: [AlcxMonitor] ALCXMNTR.EXE
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
dRun: [DWQueuedReporting] "c:\progra~1\common~1\micros~1\dw\dwtrig20.exe" -t
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\netgea~1.lnk - c:\program files\netgear\wg111v3\WG111v3.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:323
uPolicies-Explorer: NoDriveAutoRun = dword:67108863
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDrives = dword:0
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:323
mPolicies-Explorer: NoDriveAutoRun = dword:67108863
IE: Customize Menu - c:\program files\siber systems\ai roboform\RoboFormComCustomizeIEMenu.html
IE: Fill Forms - c:\program files\siber systems\ai roboform\RoboFormComFillForms.html
IE: RoboForm Toolbar - c:\program files\siber systems\ai roboform\RoboFormComShowToolbar.html
IE: Save Forms - c:\program files\siber systems\ai roboform\RoboFormComSavePass.html
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - c:\program files\siber systems\ai roboform\RoboFormComFillForms.html
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - c:\program files\siber systems\ai roboform\RoboFormComSavePass.html
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - c:\program files\siber systems\ai roboform\RoboFormComShowToolbar.html
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
DPF: DirectAnimation Java Classes - file://c:\windows\java\classes\dajava.cab
DPF: Microsoft XML Parser for Java - file://c:\windows\java\classes\xmldso.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1260052568484
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1283464440046
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 24.178.162.3 97.81.22.195 24.159.64.23
TCP: Interfaces\{A20CE155-E076-40E4-B720-03307CE1641A} : DHCPNameServer = [removed] [removed] [removed]
TCP: Interfaces\{D214F094-AF00-4983-A7A3-BA0CCE1FDA14} : DHCPNameServer = [removed] [removed] [removed]
Handler: ipp -
Handler: msdaipp -
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.dll
Notify: igfxcui - igfxsrvc.dll
Notify: OPXPGina - c:\program files\softex\omnipass\opxpgina.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - c:\program files\superantispyware\SASSEH.DLL
mASetup: {44BBA840-CC51-11CF-AAFA-00AA00B6015C} - "c:\program files\outlook express\setup50.exe" /APP:OE /CALLER:WINNT /user /install
mASetup: {7790769C-0471-11d2-AF11-00C04FA35D02} - "c:\program files\outlook express\setup50.exe" /APP:WAB /CALLER:WINNT /user /install
IFEO: Your Image File Name Here without a path - ntsd -d
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\owner\application data\mozilla\firefox\profiles\ft8wpwv9.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com
FF - prefs.js: keyword.URL - hxxp://search.addthis.com/search?pco=fxe-3.1.1&locale=en-US&sl=ub&q=
FF - plugin: c:\documents and settings\owner\local settings\application data\google\update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: c:\documents and settings\owner\local settings\application data\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdnu.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdnupdater2.dll
FF - plugin: c:\program files\nos\bin\np_gp.dll
.
—- FIREFOX POLICIES —-
FF - user.js: network.protocol-handler.warn-external.dnupdate - false);user_pref(yahoo.ytff.general.dontshowhpoffer, true);user_pref(network.protocol-handler.warn-external.dnupdate, false
============= SERVICES / DRIVERS ===============
.
R1 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-3-25 165264]
R1 MpKsl1694499b;MpKsl1694499b;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e0f38e1d-7207-472f-b75d-36574618df9e}\mpksl1694499b.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e0f38e1d-7207-472f-b75d-36574618df9e}\MpKsl1694499b.sys [?]
R1 MpKsla5034a4d;MpKsla5034a4d;c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{38ddbe7b-5ad0-47fa-82fd-d71c41537908}\MpKsla5034a4d.sys [2011-7-15 28752]
R1 MpKsldbb3bf73;MpKsldbb3bf73;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e0f38e1d-7207-472f-b75d-36574618df9e}\mpksldbb3bf73.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{e0f38e1d-7207-472f-b75d-36574618df9e}\MpKsldbb3bf73.sys [?]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\SASDIFSV.SYS [2009-11-23 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2009-11-23 67656]
R2 EAPPkt;Realtek EAPPkt Protocol;c:\windows\system32\drivers\EAPPkt.sys [2007-10-9 38144]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2009-12-5 366640]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2009-12-5 22712]
R3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver;c:\windows\system32\drivers\wg111v3.sys [2010-11-18 287232]
S1 MpKsl0ad598c3;MpKsl0ad598c3;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{def7e82e-742e-4867-bdeb-8a82f6b67e1a}\mpksl0ad598c3.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{def7e82e-742e-4867-bdeb-8a82f6b67e1a}\MpKsl0ad598c3.sys [?]
S1 MpKsl311e2c5e;MpKsl311e2c5e;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{8e5ac98d-2bcd-437b-bb59-fc27b236409a}\mpksl311e2c5e.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{8e5ac98d-2bcd-437b-bb59-fc27b236409a}\MpKsl311e2c5e.sys [?]
S1 MpKsl429c08bb;MpKsl429c08bb;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{90fbcc54-ac87-4d10-a196-5ed23a3e068e}\mpksl429c08bb.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{90fbcc54-ac87-4d10-a196-5ed23a3e068e}\MpKsl429c08bb.sys [?]
S1 MpKsl5e67763d;MpKsl5e67763d;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{487a2bd2-630d-4917-b2de-34e3c2e3cfd7}\mpksl5e67763d.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{487a2bd2-630d-4917-b2de-34e3c2e3cfd7}\MpKsl5e67763d.sys [?]
S1 MpKsl6458ff66;MpKsl6458ff66;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{4ba121d7-adcb-4929-bef9-5f3fb64683f0}\mpksl6458ff66.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{4ba121d7-adcb-4929-bef9-5f3fb64683f0}\MpKsl6458ff66.sys [?]
S1 MpKsl8a94aae8;MpKsl8a94aae8;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{508dac57-d3b1-463d-9a59-c704f2676ee2}\mpksl8a94aae8.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{508dac57-d3b1-463d-9a59-c704f2676ee2}\MpKsl8a94aae8.sys [?]
S1 MpKsl90384343;MpKsl90384343;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{53f55467-6083-40b6-a119-8b8f3cde6c9a}\mpksl90384343.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{53f55467-6083-40b6-a119-8b8f3cde6c9a}\MpKsl90384343.sys [?]
S1 MpKsl90f5b3af;MpKsl90f5b3af;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{53f55467-6083-40b6-a119-8b8f3cde6c9a}\mpksl90f5b3af.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{53f55467-6083-40b6-a119-8b8f3cde6c9a}\MpKsl90f5b3af.sys [?]
S1 MpKsla93b9982;MpKsla93b9982;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{86a9455e-2b8e-4059-886c-75de7bf73a43}\mpksla93b9982.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{86a9455e-2b8e-4059-886c-75de7bf73a43}\MpKsla93b9982.sys [?]
S1 MpKslb6cfbbb3;MpKslb6cfbbb3;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{7dd670ec-07f2-4659-b96e-fbfb578a89ff}\mpkslb6cfbbb3.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{7dd670ec-07f2-4659-b96e-fbfb578a89ff}\MpKslb6cfbbb3.sys [?]
S1 MpKsld52baa85;MpKsld52baa85;\??\c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{487a2bd2-630d-4917-b2de-34e3c2e3cfd7}\mpksld52baa85.sys –> c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{487a2bd2-630d-4917-b2de-34e3c2e3cfd7}\MpKsld52baa85.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2009-11-23 12872]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
.
=============== Created Last 30 ================
.
2011-07-15 19:07:54 28752 —-a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{38ddbe7b-5ad0-47fa-82fd-d71c41537908}\MpKsla5034a4d.sys
2011-07-15 19:05:21 7074640 —-a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{38ddbe7b-5ad0-47fa-82fd-d71c41537908}\mpengine.dll
2011-06-24 02:53:13 2106216 —-a-w- c:\program files\mozilla firefox\D3DCompiler_43.dll
2011-06-24 02:53:12 1998168 —-a-w- c:\program files\mozilla firefox\d3dx9_43.dll
2011-06-16 20:55:13 105472 -c—-w- c:\windows\system32\dllcache\mup.sys
.
==================== Find3M ====================
.
2011-07-12 22:08:23 72080 —-a-w- c:\documents and settings\owner\g2mdlhlpx.exe
2011-06-17 18:31:28 404640 —-a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-06-02 14:02:05 1858944 —-a-w- c:\windows\system32\win32k.sys
2011-05-29 13:11:30 39984 —-a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-05-29 13:11:20 22712 —-a-w- c:\windows\system32\drivers\mbam.sys
2011-05-02 15:31:52 692736 —-a-w- c:\windows\system32\inetcomm.dll
2011-04-29 17:25:27 151552 —-a-w- c:\windows\system32\schannel.dll
2011-04-29 16:19:43 456320 —-a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-04-26 11:07:50 33280 —-a-w- c:\windows\system32\csrsrv.dll
2011-04-26 11:07:50 293376 —-a-w- c:\windows\system32\winsrv.dll
2011-04-25 16:11:12 916480 —-a-w- c:\windows\system32\wininet.dll
2011-04-25 16:11:11 43520 —-a-w- c:\windows\system32\licmgr10.dll
2011-04-25 16:11:11 1469440 ——w- c:\windows\system32\inetcpl.cpl
2011-04-25 12:01:22 385024 —-a-w- c:\windows\system32\html.iec
2011-04-21 13:37:43 105472 —-a-w- c:\windows\system32\drivers\mup.sys
.
============= FINISH: 15:17:28.62 ===============
aswMBR version 0.9.7.750 Copyright© 2011 AVAST Software
Run date: 2011-07-15 15:15:09
—————————–
15:15:09.078 OS Version: Windows 5.1.2600 Service Pack 3
15:15:09.078 Number of processors: 1 586 0xA00
15:15:09.125 ComputerName: MEKA UserName:
15:15:16.515 Initialize success
15:15:42.984 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IdeDeviceP0T0L0-3
15:15:42.984 Disk 0 Vendor: WDC_WD800EB-00DJF0 77.07W77 Size: 76319MB BusType: 3
15:15:45.062 Disk 0 MBR read successfully
15:15:45.062 Disk 0 MBR scan
15:15:45.062 Disk 0 unknown MBR code
15:15:47.062 Disk 0 scanning sectors +156280320
15:15:47.218 Disk 0 scanning C:\WINDOWS\system32\drivers
15:17:24.812 Service scanning
15:17:29.000 Disk 0 trace - called modules:
15:17:29.015 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys hal.dll atapi.sys pciide.sys
15:17:29.015 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0x84abd030]
15:17:29.015 3 CLASSPNP.SYS[f74c7fd7] -> nt!IofCallDriver -> \Device\0000006d[0x84a92f18]
15:17:29.015 5 ACPI.sys[f743e620] -> nt!IofCallDriver -> \Device\Ide\IdeDeviceP0T0L0-3[0x84aa3218]
15:17:29.015 Scan finished successfully
15:19:47.171 Disk 0 MBR has been saved successfully to "C:\Documents and Settings\Owner\Desktop\MBR.dat"
15:19:47.218 The log file has been saved successfully to "C:\Documents and Settings\Owner\Desktop\aswMBR.txt"
Nothing jumping out at me, lets do this
Please download
ATF Cleaner by Atribune to your desktop.
Double-click ATF-Cleaner.exe to run the program. Under Main choose: Select All Click the Empty Selected button. Your system may start up slower after running ATF Cleaner, this is expected but will be back to normal after the first or second boot up
Please note: If you use online banking or are registered online with any other organizations, ensure you have memorized password and other personal information as removing cookies will temporarily disable the auto-login facility.
OTL by OldTimer
Download OTL to your desktop. Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted. When the window appears, underneath Output at the top change it to Minimal Output . Click the "Scan All Users" checkbox. Check the boxes beside LOP Check and Purity Check . Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt .
Note:These logs can be located in the OTL. folder on you C:\ drive if they fail to open automatically. Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply. You may need two posts to fit them both in.
Due to inactivity this topic will be closed.
If you need help please start a new thread.
New members follow the instructions here
http://forums.whatthetech.com/you_Infected_t106388.html and start a new topic