BubbleRap
Topic Starter
I was browsing quiz sites and one of them gave me the AV Antivirus virus. I think I cleared it from my files, but my task manager has some processes (listed in the title) that won't let me open, end process, or see the file location. I suspect that they came with the AV antivirus virus.. This is my DDS txt log. I hope I did this right. I have Malwarebytes and SuperAntiSpyware installed. SuperAntiSpyware, i think got rid of it but why are these tasks shown in my task manager? Do I have a keylogger?
Please help. This is my first time posting on here.
.
DDS (Ver_11-03-05.01) - NTFS_AMD64
Run by [removed] at 19:19:45.96 on Sat 11/19/2011
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_26
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.6007.2651 [GMT -8:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
C:\Windows\system32\mfevtps.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Users\jellybean\AppData\Local\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Gateway Photo Frame\ButtonMonitor.exe
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\taskmgr.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
C:\Program Files\Common Files\McAfee\Core\mchost.exe
C:\Program Files\McAfee\VirusScan\mcods.exe
C:\Program Files (x86)\iTunes\iTunes.exe
C:\Program Files (x86)\Last.fm\LastFM.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Windows\system32\mrt.exe
C:\Windows\system32\mrt.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\Downloads\HiJackThis.exe
C:\Windows\system32\notepad.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Users\jellybean\Downloads\dds.scr
C:\Windows\system32\conhost.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://my.att.net/
uDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l;=0409&m;=dx4831&r;=17360310p106p0415v185k4401r266
uSearch Page = hxxp://search.netzero.net/search?action=minisearch&source;=minisearch_dsl
uSearch Bar = hxxp://search.netzero.net/search?action=minisearch&source;=minisearch_dsl
mDefault_Search_URL = hxxp://search.netzero.net/search?action=search&source;=minisearch_dsl
mDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l;=0409&m;=dx4831&r;=17360310p106p0415v185k4401r266
mStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l;=0409&m;=dx4831&r;=17360310p106p0415v185k4401r266
mSearch Page = hxxp://search.netzero.net/search?action=search&source;=minisearch_dsl
uInternet Settings,ProxyOverride = *.local
uInternet Settings,ProxyServer = http=127.0.0.1:62606
uSearchURL,(Default) = hxxp://search.netzero.net/search?action=minisearch&source;=minisearch_dsl&mn;=87470779
mSearchAssistant = hxxp://search.netzero.net/search?action=minisearch&source;=minisearch_dsl&mn;=87470779
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
mURLSearchHooks: DVDVideoSoftTB Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files (x86)\DVDVideoSoftTB\tbDVDV.dll
mURLSearchHooks: XfireXO Toolbar: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files (x86)\XfireXO\prxtbXfir.dll
mWinlogon: Userinit=userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: XfireXO Toolbar: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files (x86)\XfireXO\prxtbXfir.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20111107164202.dll
BHO: DVDVideoSoftTB Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files (x86)\DVDVideoSoftTB\tbDVDV.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: DVDVideoSoftTB Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files (x86)\DVDVideoSoftTB\tbDVDV.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
TB: XfireXO Toolbar: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files (x86)\XfireXO\prxtbXfir.dll
TB: {8E613EAF-E16E-415C-BD39-F71D6A3B5518} - No File
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
uRun: [Google Update] "C:\Users\jellybean\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [Logitech Vid] "C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode
uRun: [cdloader] "C:\Users\jellybean\AppData\Roaming\mjusbsp\cdloader2.exe" MAGICJACK
uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
mRun: [JMB36X IDE Setup] "C:\Windows\RaidTool\xInsIDE.exe"
mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [EEventManager] "C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe"
mRun: [Gateway Photo Frame] "C:\Program Files (x86)\Gateway Photo Frame\ButtonMonitor.exe" -A
mRun: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\GAMERS~1.LNK - C:\Program Files (x86)\GamersFirst\LIVE!\Live.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport; to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Free YouTube to MP3 Converter - C:\Users\jellybean\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: Google Sidewiki… - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
DPF: {32C3FEAE-0877-4767-8C20-62A5829A0945} - hxxp://static.ak.facebook.com/fbplugin/win32/axfbootloader.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
BHO-X64: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20111106235253.dll
BHO-X64: scriptproxy - No File
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll
TB-X64: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll
TB-X64: {8E613EAF-E16E-415C-BD39-F71D6A3B5518} - No File
TB-X64: {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - No File
TB-X64: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
TB-X64: {5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} - No File
mRun-x64: [IAAnotif] "C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe"
mRun-x64: [RtHDVCpl] "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
mRun-x64: [IgfxTray] C:\Windows\system32\igfxtray.exe
mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\JELLYB~1\AppData\Roaming\Mozilla\Firefox\Profiles\g67v93s4.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=greentree_ff1&ei;=utf-8&ilc;=12&type;=723823&p;=
FF - prefs.js: network.proxy.http - 127.0.0.1
FF - prefs.js: network.proxy.http_port - 62606
FF - prefs.js: network.proxy.type - 1
FF - plugin: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.53\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
FF - plugin: C:\Users\jellybean\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: C:\Users\jellybean\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\System32\drivers\mfehidk.sys [2011-3-13 639216]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\System32\drivers\mfewfpk.sys [2011-11-5 283744]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2009-11-16 55856]
R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\System32\drivers\mfenlfk.sys [2011-11-3 75160]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2011-7-18 146816]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 LVPrcS64;Process Monitor;C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2009-10-7 191000]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-11-3 355440]
R2 McNaiAnn;McAfee VirusScan Announcer;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-11-3 355440]
R2 McProxy;McAfee Proxy Service;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-11-3 355440]
R2 McShield;McShield;C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe [2011-11-3 200056]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2011-11-3 245352]
R2 mfevtp;McAfee Validation Trust Protection Service;C:\Windows\System32\mfevtps.exe [2011-11-3 158832]
R2 UNS;Intel® Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-1-25 2314240]
R2 Updater Service;Updater Service;C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe [2009-11-16 240160]
R3 e1kexpress;Intel® PRO/1000 PCI Express Network Connection Driver K;C:\Windows\System32\drivers\e1k62x64.sys [2009-11-16 283824]
R3 HECIx64;Intel® Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2009-11-16 56344]
R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2009-11-16 233984]
R3 LVPr2M64;Logitech LVPr2M64 Driver;C:\Windows\System32\drivers\LVPr2M64.sys [2009-10-7 30232]
R3 LVUVC64;Logitech Webcam 120(UVC);C:\Windows\System32\drivers\lvuvc64.sys [2010-4-3 6379288]
R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\System32\drivers\mfeavfk.sys [2011-11-3 190520]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\System32\drivers\mfefirek.sys [2011-11-3 441840]
R3 mferkdet;McAfee Inc. mferkdet;C:\Windows\System32\drivers\mferkdet.sys [2011-11-3 94992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-5-1 135664]
S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-2-28 183560]
S3 cfwids;McAfee Inc. cfwids;C:\Windows\System32\drivers\cfwids.sys [2011-11-3 63056]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2011-1-30 48488]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-5-1 135664]
S3 nosGetPlusHelper;getPlus® Helper 3004;C:\Windows\System32\svchost.exe -k nosGetPlusHelper [2009-7-13 27136]
S3 npggsvc;nProtect GameGuard Service;C:\Windows\system32\GameMon.des -service –> C:\Windows\system32\GameMon.des -service [?]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-6-30 59392]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2010-9-28 51712]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-5-6 1255736]
.
=============== Created Last 30 ================
.
2011-11-20 03:00:09 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\TuneUp Software
2011-11-20 02:58:53 ——– d—–w- C:\PROGRA~3\TuneUp Software
2011-11-20 02:58:41 ——– d-sh–w- C:\PROGRA~3\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2011-11-20 02:45:38 ——– d—–w- C:\PROGRA~3\Webroot
2011-11-20 02:19:33 ——– d—–w- C:\PROGRA~3\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
2011-11-20 02:16:38 ——– dc-h–w- C:\PROGRA~3\~0
2011-11-20 02:05:22 ——– d—–w- C:\PROGRA~3\IObit
2011-11-20 02:05:20 ——– d—–w- C:\Program Files (x86)\IObit
2011-11-20 01:10:03 69000 —-a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{23EEE84C-12CB-4FB4-8CA6-CA76832F3F4F}\offreg.dll
2011-11-20 01:09:57 8570192 —-a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{23EEE84C-12CB-4FB4-8CA6-CA76832F3F4F}\mpengine.dll
2011-11-19 23:41:31 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\GetRightToGo
2011-11-19 22:18:22 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\SUPERAntiSpyware.com
2011-11-19 22:18:04 ——– d—–w- C:\PROGRA~3\!SASCORE
2011-11-19 22:18:02 ——– d—–w- C:\Program Files\SUPERAntiSpyware
2011-11-19 22:18:02 ——– d—–w- C:\PROGRA~3\SUPERAntiSpyware.com
2011-11-19 01:14:44 ——– d—–w- C:\Windows\pss
2011-11-19 01:00:59 ——– d—–w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-11-19 00:33:55 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\YwjUVelIBzNc1v2
2011-11-19 00:33:55 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\pF4pmH5sQ7E8R9Y
2011-11-18 16:18:32 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\v3pnG5aQHdKfLgq
2011-11-18 16:18:32 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\AjUCekIBrNx0v2b
2011-11-18 05:26:28 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\5C083
2011-11-18 05:25:56 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\UhTTXXqjUCe
2011-11-18 05:25:56 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\kGG55aQJJ6WK8R9
2011-11-18 05:25:56 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\7C35C
2011-11-18 05:25:51 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\ALLL9ggTXqjYekV
2011-11-18 05:25:50 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\YyyyxAA1uv
2011-11-18 02:42:35 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{4BA10DAF-267B-45F5-A9D4-3DA25DF160E1}
2011-11-18 02:42:21 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{5CDDD184-575A-4D0C-899B-665C0FF9C0D4}
2011-11-16 04:32:33 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{0E7F43D2-F896-4D16-B7DD-7A1AD19D6F1F}
2011-11-16 04:32:18 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{B1F03812-C733-4709-B023-16A86B53CCA6}
2011-11-15 02:55:57 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{435B87A1-975A-4052-A079-E209E2B18E81}
2011-11-15 02:55:35 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{1B032429-7406-4CDD-A1B7-BBE254811C8A}
2011-11-14 00:37:49 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{38E5AF4E-4009-431B-B4EF-CAE73B413BE8}
2011-11-14 00:37:27 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{0138FFC3-DE3D-4382-AB36-AF405A0F4042}
2011-11-13 19:35:04 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{0247DB32-1D31-4418-8DDE-5431A3110AE9}
2011-11-13 19:34:40 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{E22072AD-895F-4D4F-BEB2-185EBD61CACD}
2011-11-12 20:01:50 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{06ACD685-954E-4275-98F6-07D296265B28}
2011-11-12 20:01:38 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{6492CB06-9F3A-402A-8869-9A343A2B8261}
2011-11-12 07:33:47 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{90286628-F7A2-4D77-A4FC-AF0A4FE1026E}
2011-11-12 07:33:34 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{B2DEE17A-C336-4415-BC6F-6B592DDAE841}
2011-11-11 01:23:27 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{2AAC5308-B03C-4474-8146-FD56FEA02079}
2011-11-11 01:23:14 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{D036990A-D5DE-466F-ACAB-A9BB4904069F}
2011-11-09 22:54:53 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{CFF9ABB1-3B88-4D00-9EE2-236C47FBF3A7}
2011-11-09 22:54:39 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{A59C7A4F-01D6-4391-8CA7-6A15D89315FF}
2011-11-09 00:41:41 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{B8B9C5CE-6F91-451E-8792-BC46CF774814}
2011-11-09 00:41:19 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{CFDBB833-40CA-4ADF-A36E-98485DEA9788}
2011-11-09 00:16:12 886784 —-a-w- C:\Program Files\Common Files\System\wab32.dll
2011-11-09 00:16:12 708608 —-a-w- C:\Program Files (x86)\Common Files\System\wab32.dll
2011-11-09 00:16:12 1923952 —-a-w- C:\Windows\System32\drivers\tcpip.sys
2011-11-09 00:16:11 3144704 —-a-w- C:\Windows\System32\win32k.sys
2011-11-08 00:42:02 24376 —-a-w- C:\Program Files (x86)\Mozilla Firefox\components\Scriptff.dll
2011-11-06 07:50:13 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{29224BFB-34AE-4906-8708-179CAC3F020A}
2011-11-06 07:49:58 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{46DB3B01-5FED-4286-ACCB-25BF0A913BED}
2011-11-06 03:52:51 281656 —-a-w- C:\Windows\SysWow64\PnkBstrB.xtr
2011-11-06 03:52:46 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\PunkBuster
2011-11-06 03:47:39 ——– d—–w- C:\Program Files (x86)\NVIDIA Corporation
2011-11-06 03:47:32 ——– d—–w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2011-11-06 03:36:59 35840 —-a-w- C:\Windows\SysWow64\imgutil.dll
2011-11-06 03:31:58 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\Conduit
2011-11-06 03:31:58 ——– d—–w- C:\Program Files (x86)\XfireXO
2011-11-06 03:31:48 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\Xfire
2011-11-06 03:31:46 ——– d—–w- C:\PROGRA~3\Xfire
2011-11-06 03:31:45 ——– d—–w- C:\Program Files (x86)\Xfire
2011-11-06 03:31:24 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\OpenCandy
2011-11-06 03:22:58 283744 —-a-w- C:\Windows\System32\drivers\mfewfpk.sys
2011-11-06 02:35:16 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\GamersFirst LIVE!
2011-11-06 02:34:20 ——– d—–w- C:\Program Files (x86)\GamersFirst
2011-11-04 02:25:05 ——– d—–w- C:\Program Files (x86)\McAfee.com
2011-11-04 02:24:50 9984 —-a-w- C:\Windows\System32\drivers\mfeclnk.sys
2011-11-04 02:24:50 ——– d—–w- C:\Program Files (x86)\Common Files\McAfee
2011-11-04 02:24:39 75160 —-a-w- C:\Windows\System32\drivers\mfenlfk.sys
2011-11-04 02:24:38 94992 —-a-w- C:\Windows\System32\drivers\mferkdet.sys
2011-11-04 02:24:38 63056 —-a-w- C:\Windows\System32\drivers\cfwids.sys
2011-11-04 02:24:38 441840 —-a-w- C:\Windows\System32\drivers\mfefirek.sys
2011-11-04 02:24:38 190520 —-a-w- C:\Windows\System32\drivers\mfeavfk.sys
2011-11-04 02:24:35 ——– d—–w- C:\Program Files\Common Files\McAfee
2011-11-04 02:24:34 ——– d—–w- C:\Program Files\McAfee.com
2011-11-04 02:24:34 ——– d—–w- C:\Program Files\McAfee
2011-11-04 02:24:33 ——– d—–w- C:\Program Files (x86)\McAfee
2011-11-04 02:17:50 158832 —-a-w- C:\Windows\System32\mfevtps.exe
2011-11-03 23:10:57 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{543FA25A-7BB7-4A1D-AF6D-C999481E38FB}
2011-11-03 23:10:44 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{5008F20E-C300-473E-8080-EE6AA0D530F5}
2011-11-02 01:17:14 737072 —-a-w- C:\PROGRA~3\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore-2\Microsoft.MediaCenter.Sports.UI.dll
2011-11-01 04:56:59 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{A41F6779-E6D8-4267-8AD3-B95DC77FF577}
.
==================== Find3M ====================
.
2011-11-20 02:49:28 414368 —-a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-06 03:52:51 281200 —-a-w- C:\Windows\SysWow64\PnkBstrB.ex0
2011-11-06 03:36:57 89088 —-a-w- C:\Windows\System32\RegisterIEPKEYs.exe
2011-10-13 20:29:40 42392 —-a-w- C:\Windows\SysWow64\xfcodec.dll
2011-10-13 20:29:40 28056 —-a-w- C:\Windows\System32\xfcodec64.dll
2011-09-01 01:00:50 25416 —-a-w- C:\Windows\System32\drivers\mbam.sys
2011-08-28 18:10:50 175616 —-a-w- C:\Windows\System32\msclmd.dll
2011-08-28 18:10:50 152576 —-a-w- C:\Windows\SysWow64\msclmd.dll
2011-08-27 05:37:49 861696 —-a-w- C:\Windows\System32\oleaut32.dll
2011-08-27 05:37:48 331776 —-a-w- C:\Windows\System32\oleacc.dll
2011-08-27 04:26:27 571904 —-a-w- C:\Windows\SysWow64\oleaut32.dll
2011-08-27 04:26:27 233472 —-a-w- C:\Windows\SysWow64\oleacc.dll
.
============= FINISH: 19:21:28.82 ===============
Please help. This is my first time posting on here.
.
DDS (Ver_11-03-05.01) - NTFS_AMD64
Run by [removed] at 19:19:45.96 on Sat 11/19/2011
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_26
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.6007.2651 [GMT -8:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Program Files (x86)\Common Files\LogiShrd\LVMVFM\LVPrS64H.exe
C:\Windows\system32\mfevtps.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Users\jellybean\AppData\Local\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Program Files (x86)\Logitech\Vid HD\Vid.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Gateway Photo Frame\ButtonMonitor.exe
C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\taskmgr.exe
C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe
C:\Program Files\Common Files\McAfee\Core\mchost.exe
C:\Program Files\McAfee\VirusScan\mcods.exe
C:\Program Files (x86)\iTunes\iTunes.exe
C:\Program Files (x86)\Last.fm\LastFM.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Windows\system32\mrt.exe
C:\Windows\system32\mrt.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\jellybean\Downloads\HiJackThis.exe
C:\Windows\system32\notepad.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Users\jellybean\Downloads\dds.scr
C:\Windows\system32\conhost.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://my.att.net/
uDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l;=0409&m;=dx4831&r;=17360310p106p0415v185k4401r266
uSearch Page = hxxp://search.netzero.net/search?action=minisearch&source;=minisearch_dsl
uSearch Bar = hxxp://search.netzero.net/search?action=minisearch&source;=minisearch_dsl
mDefault_Search_URL = hxxp://search.netzero.net/search?action=search&source;=minisearch_dsl
mDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l;=0409&m;=dx4831&r;=17360310p106p0415v185k4401r266
mStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l;=0409&m;=dx4831&r;=17360310p106p0415v185k4401r266
mSearch Page = hxxp://search.netzero.net/search?action=search&source;=minisearch_dsl
uInternet Settings,ProxyOverride = *.local
uInternet Settings,ProxyServer = http=127.0.0.1:62606
uSearchURL,(Default) = hxxp://search.netzero.net/search?action=minisearch&source;=minisearch_dsl&mn;=87470779
mSearchAssistant = hxxp://search.netzero.net/search?action=minisearch&source;=minisearch_dsl&mn;=87470779
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
mURLSearchHooks: DVDVideoSoftTB Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files (x86)\DVDVideoSoftTB\tbDVDV.dll
mURLSearchHooks: XfireXO Toolbar: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files (x86)\XfireXO\prxtbXfir.dll
mWinlogon: Userinit=userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: XfireXO Toolbar: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files (x86)\XfireXO\prxtbXfir.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20111107164202.dll
BHO: DVDVideoSoftTB Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files (x86)\DVDVideoSoftTB\tbDVDV.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: DVDVideoSoftTB Toolbar: {872b5b88-9db5-4310-bdd0-ac189557e5f5} - C:\Program Files (x86)\DVDVideoSoftTB\tbDVDV.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
TB: XfireXO Toolbar: {5e5ab302-7f65-44cd-8211-c1d4caaccea3} - C:\Program Files (x86)\XfireXO\prxtbXfir.dll
TB: {8E613EAF-E16E-415C-BD39-F71D6A3B5518} - No File
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
uRun: [Google Update] "C:\Users\jellybean\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [Logitech Vid] "C:\Program Files (x86)\Logitech\Vid HD\Vid.exe" -bootmode
uRun: [cdloader] "C:\Users\jellybean\AppData\Roaming\mjusbsp\cdloader2.exe" MAGICJACK
uRun: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
mRun: [JMB36X IDE Setup] "C:\Windows\RaidTool\xInsIDE.exe"
mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [EEventManager] "C:\PROGRA~2\EPSONS~1\EVENTM~1\EEventManager.exe"
mRun: [Gateway Photo Frame] "C:\Program Files (x86)\Gateway Photo Frame\ButtonMonitor.exe" -A
mRun: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\GAMERS~1.LNK - C:\Program Files (x86)\GamersFirst\LIVE!\Live.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport; to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Free YouTube to MP3 Converter - C:\Users\jellybean\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm
IE: Google Sidewiki… - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
DPF: {32C3FEAE-0877-4767-8C20-62A5829A0945} - hxxp://static.ak.facebook.com/fbplugin/win32/axfbootloader.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
BHO-X64: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20111106235253.dll
BHO-X64: scriptproxy - No File
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll
TB-X64: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll
TB-X64: {8E613EAF-E16E-415C-BD39-F71D6A3B5518} - No File
TB-X64: {872B5B88-9DB5-4310-BDD0-AC189557E5F5} - No File
TB-X64: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
TB-X64: {5E5AB302-7F65-44CD-8211-C1D4CAACCEA3} - No File
mRun-x64: [IAAnotif] "C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe"
mRun-x64: [RtHDVCpl] "C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
mRun-x64: [IgfxTray] C:\Windows\system32\igfxtray.exe
mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\JELLYB~1\AppData\Roaming\Mozilla\Firefox\Profiles\g67v93s4.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=greentree_ff1&ei;=utf-8&ilc;=12&type;=723823&p;=
FF - prefs.js: network.proxy.http - 127.0.0.1
FF - prefs.js: network.proxy.http_port - 62606
FF - prefs.js: network.proxy.type - 1
FF - plugin: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.53\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\McAfee\SiteAdvisor\NPMcFFPlg32.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
FF - plugin: C:\Users\jellybean\AppData\Local\Google\Update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: C:\Users\jellybean\AppData\Local\Yahoo!\BrowserPlus\2.9.8\Plugins\npybrowserplus_2.9.8.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\System32\drivers\mfehidk.sys [2011-3-13 639216]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\System32\drivers\mfewfpk.sys [2011-11-5 283744]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2009-11-16 55856]
R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\System32\drivers\mfenlfk.sys [2011-11-3 75160]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2011-7-18 146816]
R2 Greg_Service;GRegService;C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe [2009-8-28 1150496]
R2 LVPrcS64;Process Monitor;C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe [2009-10-7 191000]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-11-3 355440]
R2 McNaiAnn;McAfee VirusScan Announcer;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-11-3 355440]
R2 McProxy;McAfee Proxy Service;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-11-3 355440]
R2 McShield;McShield;C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe [2011-11-3 200056]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2011-11-3 245352]
R2 mfevtp;McAfee Validation Trust Protection Service;C:\Windows\System32\mfevtps.exe [2011-11-3 158832]
R2 UNS;Intel® Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2010-1-25 2314240]
R2 Updater Service;Updater Service;C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe [2009-11-16 240160]
R3 e1kexpress;Intel® PRO/1000 PCI Express Network Connection Driver K;C:\Windows\System32\drivers\e1k62x64.sys [2009-11-16 283824]
R3 HECIx64;Intel® Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2009-11-16 56344]
R3 IntcDAud;Intel® Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2009-11-16 233984]
R3 LVPr2M64;Logitech LVPr2M64 Driver;C:\Windows\System32\drivers\LVPr2M64.sys [2009-10-7 30232]
R3 LVUVC64;Logitech Webcam 120(UVC);C:\Windows\System32\drivers\lvuvc64.sys [2010-4-3 6379288]
R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\System32\drivers\mfeavfk.sys [2011-11-3 190520]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\System32\drivers\mfefirek.sys [2011-11-3 441840]
R3 mferkdet;McAfee Inc. mferkdet;C:\Windows\System32\drivers\mferkdet.sys [2011-11-3 94992]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-5-1 135664]
S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-2-28 183560]
S3 cfwids;McAfee Inc. cfwids;C:\Windows\System32\drivers\cfwids.sys [2011-11-3 63056]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2011-1-30 48488]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-5-1 135664]
S3 nosGetPlusHelper;getPlus® Helper 3004;C:\Windows\System32\svchost.exe -k nosGetPlusHelper [2009-7-13 27136]
S3 npggsvc;nProtect GameGuard Service;C:\Windows\system32\GameMon.des -service –> C:\Windows\system32\GameMon.des -service [?]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-6-30 59392]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2010-9-28 51712]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-5-6 1255736]
.
=============== Created Last 30 ================
.
2011-11-20 03:00:09 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\TuneUp Software
2011-11-20 02:58:53 ——– d—–w- C:\PROGRA~3\TuneUp Software
2011-11-20 02:58:41 ——– d-sh–w- C:\PROGRA~3\{32364CEA-7855-4A3C-B674-53D8E9B97936}
2011-11-20 02:45:38 ——– d—–w- C:\PROGRA~3\Webroot
2011-11-20 02:19:33 ——– d—–w- C:\PROGRA~3\{83C3B2FD-37EA-4C06-A228-E9B5E32FF0B1}
2011-11-20 02:16:38 ——– dc-h–w- C:\PROGRA~3\~0
2011-11-20 02:05:22 ——– d—–w- C:\PROGRA~3\IObit
2011-11-20 02:05:20 ——– d—–w- C:\Program Files (x86)\IObit
2011-11-20 01:10:03 69000 —-a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{23EEE84C-12CB-4FB4-8CA6-CA76832F3F4F}\offreg.dll
2011-11-20 01:09:57 8570192 —-a-w- C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{23EEE84C-12CB-4FB4-8CA6-CA76832F3F4F}\mpengine.dll
2011-11-19 23:41:31 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\GetRightToGo
2011-11-19 22:18:22 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\SUPERAntiSpyware.com
2011-11-19 22:18:04 ——– d—–w- C:\PROGRA~3\!SASCORE
2011-11-19 22:18:02 ——– d—–w- C:\Program Files\SUPERAntiSpyware
2011-11-19 22:18:02 ——– d—–w- C:\PROGRA~3\SUPERAntiSpyware.com
2011-11-19 01:14:44 ——– d—–w- C:\Windows\pss
2011-11-19 01:00:59 ——– d—–w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-11-19 00:33:55 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\YwjUVelIBzNc1v2
2011-11-19 00:33:55 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\pF4pmH5sQ7E8R9Y
2011-11-18 16:18:32 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\v3pnG5aQHdKfLgq
2011-11-18 16:18:32 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\AjUCekIBrNx0v2b
2011-11-18 05:26:28 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\5C083
2011-11-18 05:25:56 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\UhTTXXqjUCe
2011-11-18 05:25:56 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\kGG55aQJJ6WK8R9
2011-11-18 05:25:56 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\7C35C
2011-11-18 05:25:51 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\ALLL9ggTXqjYekV
2011-11-18 05:25:50 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\YyyyxAA1uv
2011-11-18 02:42:35 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{4BA10DAF-267B-45F5-A9D4-3DA25DF160E1}
2011-11-18 02:42:21 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{5CDDD184-575A-4D0C-899B-665C0FF9C0D4}
2011-11-16 04:32:33 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{0E7F43D2-F896-4D16-B7DD-7A1AD19D6F1F}
2011-11-16 04:32:18 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{B1F03812-C733-4709-B023-16A86B53CCA6}
2011-11-15 02:55:57 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{435B87A1-975A-4052-A079-E209E2B18E81}
2011-11-15 02:55:35 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{1B032429-7406-4CDD-A1B7-BBE254811C8A}
2011-11-14 00:37:49 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{38E5AF4E-4009-431B-B4EF-CAE73B413BE8}
2011-11-14 00:37:27 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{0138FFC3-DE3D-4382-AB36-AF405A0F4042}
2011-11-13 19:35:04 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{0247DB32-1D31-4418-8DDE-5431A3110AE9}
2011-11-13 19:34:40 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{E22072AD-895F-4D4F-BEB2-185EBD61CACD}
2011-11-12 20:01:50 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{06ACD685-954E-4275-98F6-07D296265B28}
2011-11-12 20:01:38 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{6492CB06-9F3A-402A-8869-9A343A2B8261}
2011-11-12 07:33:47 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{90286628-F7A2-4D77-A4FC-AF0A4FE1026E}
2011-11-12 07:33:34 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{B2DEE17A-C336-4415-BC6F-6B592DDAE841}
2011-11-11 01:23:27 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{2AAC5308-B03C-4474-8146-FD56FEA02079}
2011-11-11 01:23:14 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{D036990A-D5DE-466F-ACAB-A9BB4904069F}
2011-11-09 22:54:53 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{CFF9ABB1-3B88-4D00-9EE2-236C47FBF3A7}
2011-11-09 22:54:39 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{A59C7A4F-01D6-4391-8CA7-6A15D89315FF}
2011-11-09 00:41:41 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{B8B9C5CE-6F91-451E-8792-BC46CF774814}
2011-11-09 00:41:19 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{CFDBB833-40CA-4ADF-A36E-98485DEA9788}
2011-11-09 00:16:12 886784 —-a-w- C:\Program Files\Common Files\System\wab32.dll
2011-11-09 00:16:12 708608 —-a-w- C:\Program Files (x86)\Common Files\System\wab32.dll
2011-11-09 00:16:12 1923952 —-a-w- C:\Windows\System32\drivers\tcpip.sys
2011-11-09 00:16:11 3144704 —-a-w- C:\Windows\System32\win32k.sys
2011-11-08 00:42:02 24376 —-a-w- C:\Program Files (x86)\Mozilla Firefox\components\Scriptff.dll
2011-11-06 07:50:13 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{29224BFB-34AE-4906-8708-179CAC3F020A}
2011-11-06 07:49:58 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{46DB3B01-5FED-4286-ACCB-25BF0A913BED}
2011-11-06 03:52:51 281656 —-a-w- C:\Windows\SysWow64\PnkBstrB.xtr
2011-11-06 03:52:46 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\PunkBuster
2011-11-06 03:47:39 ——– d—–w- C:\Program Files (x86)\NVIDIA Corporation
2011-11-06 03:47:32 ——– d—–w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2011-11-06 03:36:59 35840 —-a-w- C:\Windows\SysWow64\imgutil.dll
2011-11-06 03:31:58 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\Conduit
2011-11-06 03:31:58 ——– d—–w- C:\Program Files (x86)\XfireXO
2011-11-06 03:31:48 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\Xfire
2011-11-06 03:31:46 ——– d—–w- C:\PROGRA~3\Xfire
2011-11-06 03:31:45 ——– d—–w- C:\Program Files (x86)\Xfire
2011-11-06 03:31:24 ——– d—–w- C:\Users\JELLYB~1\AppData\Roaming\OpenCandy
2011-11-06 03:22:58 283744 —-a-w- C:\Windows\System32\drivers\mfewfpk.sys
2011-11-06 02:35:16 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\GamersFirst LIVE!
2011-11-06 02:34:20 ——– d—–w- C:\Program Files (x86)\GamersFirst
2011-11-04 02:25:05 ——– d—–w- C:\Program Files (x86)\McAfee.com
2011-11-04 02:24:50 9984 —-a-w- C:\Windows\System32\drivers\mfeclnk.sys
2011-11-04 02:24:50 ——– d—–w- C:\Program Files (x86)\Common Files\McAfee
2011-11-04 02:24:39 75160 —-a-w- C:\Windows\System32\drivers\mfenlfk.sys
2011-11-04 02:24:38 94992 —-a-w- C:\Windows\System32\drivers\mferkdet.sys
2011-11-04 02:24:38 63056 —-a-w- C:\Windows\System32\drivers\cfwids.sys
2011-11-04 02:24:38 441840 —-a-w- C:\Windows\System32\drivers\mfefirek.sys
2011-11-04 02:24:38 190520 —-a-w- C:\Windows\System32\drivers\mfeavfk.sys
2011-11-04 02:24:35 ——– d—–w- C:\Program Files\Common Files\McAfee
2011-11-04 02:24:34 ——– d—–w- C:\Program Files\McAfee.com
2011-11-04 02:24:34 ——– d—–w- C:\Program Files\McAfee
2011-11-04 02:24:33 ——– d—–w- C:\Program Files (x86)\McAfee
2011-11-04 02:17:50 158832 —-a-w- C:\Windows\System32\mfevtps.exe
2011-11-03 23:10:57 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{543FA25A-7BB7-4A1D-AF6D-C999481E38FB}
2011-11-03 23:10:44 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{5008F20E-C300-473E-8080-EE6AA0D530F5}
2011-11-02 01:17:14 737072 —-a-w- C:\PROGRA~3\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore-2\Microsoft.MediaCenter.Sports.UI.dll
2011-11-01 04:56:59 ——– d—–w- C:\Users\JELLYB~1\AppData\Local\{A41F6779-E6D8-4267-8AD3-B95DC77FF577}
.
==================== Find3M ====================
.
2011-11-20 02:49:28 414368 —-a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-06 03:52:51 281200 —-a-w- C:\Windows\SysWow64\PnkBstrB.ex0
2011-11-06 03:36:57 89088 —-a-w- C:\Windows\System32\RegisterIEPKEYs.exe
2011-10-13 20:29:40 42392 —-a-w- C:\Windows\SysWow64\xfcodec.dll
2011-10-13 20:29:40 28056 —-a-w- C:\Windows\System32\xfcodec64.dll
2011-09-01 01:00:50 25416 —-a-w- C:\Windows\System32\drivers\mbam.sys
2011-08-28 18:10:50 175616 —-a-w- C:\Windows\System32\msclmd.dll
2011-08-28 18:10:50 152576 —-a-w- C:\Windows\SysWow64\msclmd.dll
2011-08-27 05:37:49 861696 —-a-w- C:\Windows\System32\oleaut32.dll
2011-08-27 05:37:48 331776 —-a-w- C:\Windows\System32\oleacc.dll
2011-08-27 04:26:27 571904 —-a-w- C:\Windows\SysWow64\oleaut32.dll
2011-08-27 04:26:27 233472 —-a-w- C:\Windows\SysWow64\oleacc.dll
.
============= FINISH: 19:21:28.82 ===============