Hello, thanks for offering to help, here are the reports.
DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 9.0.8112.16464
Run by [removed] at 8:24:08 on 2013-03-11
#Option Extended Search is enabled.
Microsoft Windows 7 Professional 6.1.7601.1.1252.44.1033.18.1982.1071 [GMT 0:00]
.
AV: Microsoft Security Essentials *Disabled/Updated* {3F839487-C7A2-C958-E30C-E2825BA31FB5}
SP: Microsoft Security Essentials *Disabled/Updated* {84E27563-E198-C6D6-D9BC-D9F020245508}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\BillP Studios\WinPatrol\WinPatrol.exe
C:\Program Files\Gadwin Systems\PrintScreen\PrintScreen.exe
C:\Users\Jo\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\wbengine.exe
C:\Windows\System32\vds.exe
C:\Windows\system32\wbem\WmiPrvSE.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Program Files\Google\Chrome\Application\chrome.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\WmiPrvSE.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Windows\System32\svchost.exe -k swprv
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.co.uk
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
uRun: [Gadwin PrintScreen] "c:\program files\gadwin systems\printscreen\PrintScreen.exe" /nosplash
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [WinPatrol] c:\program files\billp studios\winpatrol\WinPatrol.exe -expressboot
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
StartupFolder: c:\users\jo\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\jo\appdata\roaming\dropbox\bin\Dropbox.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Add to Google Photos Screensa&ver; - c:\windows\system32\GPhotos.scr/200
IE: E&xport; to Microsoft Excel - c:\progra~1\micros~1\office12\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
TCP: NameServer = 192.168.1.1 192.168.1.1
TCP: Interfaces\{3028E9AA-0C2D-45B0-A428-1EDCE1C22515} : DHCPNameServer = 192.168.1.1 192.168.1.1
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\25.0.1364.160\installer\chrmstp.exe" –configure-user-settings –verbose-logging –system-level –multi-install –chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\jo\appdata\roaming\mozilla\firefox\profiles\w4ru7rcf.default\
FF - prefs.js: browser.search.selectedEngine - Delta Search
FF - prefs.js: browser.startup.homepage - hxxp://www.delta-search.com/?affID=119370&babsrc;=HP_ss&mntrId;=582c72280000000000000015584b1524
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_168.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
.
—- FIREFOX POLICIES —-
FF - user.js: extensions.delta.tlbrSrchUrl -
FF - user.js: extensions.delta.id - 582c72280000000000000015584b1524
FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
FF - user.js: extensions.delta.instlDay - 15771
FF - user.js: extensions.delta.vrsn - [removed]
FF - user.js: extensions.delta.vrsni - [removed]
FF - user.js: extensions.delta.vrsnTs - 1.8.10.09:30:15
FF - user.js: extensions.delta.prtnrId - delta
FF - user.js: extensions.delta.prdct - delta
FF - user.js: extensions.delta.aflt - babsst
FF - user.js: extensions.delta.smplGrp - none
FF - user.js: extensions.delta.tlbrId - base
FF - user.js: extensions.delta.instlRef - sst
FF - user.js: extensions.delta.dfltLng - en
FF - user.js: extensions.delta.excTlbr - false
FF - user.js: extensions.delta.admin - false
FF - user.js: extensions.delta.autoRvrt - false
FF - user.js: extensions.delta.rvrt - false
FF - user.js: extensions.delta.newTab - false
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2013-1-20 195296]
R3 AVEO;STARTEC UVC Driver;c:\windows\system32\drivers\AVEOdcnt.sys [2011-10-24 278528]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2009-11-5 230912]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-1-8 161536]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [2012-9-19 83168]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2010-11-10 39272]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2011-5-13 1492840]
S3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2012-8-30 100328]
S3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\NisSrv.exe [2013-1-27 295232]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-11-18 14848]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
S3 SWDUMon;SWDUMon;c:\windows\system32\drivers\SWDUMon.sys [2012-8-17 13024]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2012-11-18 49664]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-7-27 1343400]
.
=============== Created Last 60 ================
.
2013-03-10 19:36:54 6954968 —-a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{fc2124a3-b006-447b-aeed-c99148f123c6}\mpengine.dll
2013-03-10 12:20:37 ——– d—–w- c:\users\jo\appdata\local\Apps
2013-03-09 21:32:45 ——– d—–w- c:\users\jo\appdata\local\Apple Computer
2013-03-09 21:31:15 ——– d—–w- c:\programdata\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-03-09 21:18:58 88323920 —-a-w- c:\program files\iTunesSetup.exe
2013-03-09 20:58:22 6955968 —-a-w- c:\program files\Silverlight.exe
2013-03-09 18:04:58 6954968 —-a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2013-03-07 09:29:41 ——– d—–w- c:\users\jo\appdata\roaming\Babylon
2013-03-07 09:29:41 ——– d—–w- c:\programdata\Babylon
2013-03-07 09:29:38 ——– d—–w- c:\program files\AudioConverter
2013-03-07 09:28:46 666896 —-a-w- c:\program files\AudioConverterSetup.exe
2013-03-07 09:00:13 ——– d—–w- c:\windows\XSxS
2013-03-07 09:00:13 ——– d—–w- c:\program files\Xenocode
2013-03-05 08:41:20 ——– d—–w- c:\windows\system32\catroot2
2013-02-28 19:21:55 ——– d—–w- c:\users\jo\appdata\roaming\Malwarebytes
2013-02-28 17:45:58 ——– d—–w- c:\program files\Free PDF Solutions
2013-02-28 17:31:48 ——– d—–w- c:\users\jo\appdata\local\Adobe
2013-02-28 08:25:43 ——– d—–w- C:\RegBackup
2013-02-28 08:20:56 ——– d—–w- c:\program files\Tweaking.com
2013-02-27 11:58:03 187392 —-a-w- c:\windows\system32\UIAnimation.dll
2013-02-26 17:10:59 ——– d—–w- c:\users\jo\appdata\local\Diagnostics
2013-02-26 11:53:59 ——– d—–w- c:\users\jo\appdata\local\VirtualStore
2013-02-26 11:19:53 ——– d—–w- c:\users\jo\appdata\local\Mozilla
2013-02-26 11:15:10 ——– d—–w- c:\users\jo\appdata\local\Google
2013-02-25 16:21:29 ——– d—–w- c:\programdata\ArcSoft
2013-02-23 20:22:59 ——– d-sh–w- C:\$RECYCLE.BIN
2013-02-17 21:44:19 ——– d—–w- c:\users\jo\appdata\roaming\FlvtoConverter
2013-02-14 09:24:26 ——– d—–w- c:\windows\AxInstSV
2013-02-13 08:36:16 2347008 —-a-w- c:\windows\system32\win32k.sys
2013-02-13 08:35:50 3967848 —-a-w- c:\windows\system32\ntkrnlpa.exe
2013-02-13 08:35:49 3913064 —-a-w- c:\windows\system32\ntoskrnl.exe
2013-02-13 08:35:44 1293672 —-a-w- c:\windows\system32\drivers\tcpip.sys
2013-02-13 08:35:43 187752 —-a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2013-02-13 08:35:39 169984 —-a-w- c:\windows\system32\winsrv.dll
2013-02-12 12:58:49 71024 —-a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-02-12 12:58:49 691568 —-a-w- c:\windows\system32\FlashPlayerApp.exe
2013-02-10 11:28:50 81920 —-a-w- c:\windows\eSellerateControl350.dll
2013-02-10 11:28:50 356352 —-a-w- c:\windows\eSellerateEngine.dll
2013-02-10 11:28:50 274432 —-a-w- c:\windows\system32\ssleay32.dll
2013-02-10 11:28:50 1122304 —-a-w- c:\windows\system32\libeay32.dll
2013-02-07 18:57:18 21104 —-a-w- c:\windows\system32\drivers\mbam.sys
2013-02-07 18:57:18 ——– d—–w- c:\program files\Malwarebytes' Anti-Malware
2013-02-07 10:24:34 ——– d—–w- c:\users\jo\appdata\roaming\SmartSoftOCRHelper
2013-02-07 10:21:12 ——– d—–w- c:\users\jo\appdata\roaming\Smart PDF Converter
2013-02-07 09:28:36 ——– d—–w- c:\program files\common files\MSSoap
2013-02-07 09:27:48 ——– d-sh–w- c:\windows\system32\AI_RecycleBin
2013-02-07 09:26:17 ——– d—–w- c:\users\jo\appdata\roaming\DSite
2013-01-28 09:32:59 ——– d—–r- c:\program files\Skype
2013-01-21 20:16:03 1474832 —-a-w- c:\windows\system32\drivers\sfi.dat
2013-01-20 15:59:04 195296 —-a-w- c:\windows\system32\drivers\MpFilter.sys
2013-01-14 17:51:11 18688 —-a-w- c:\windows\system32\drivers\afc.sys
.
==================== Find6M ====================
.
2013-02-25 11:38:23 861088 —-a-w- c:\windows\system32\npDeployJava1.dll
2013-02-25 11:38:23 782240 —-a-w- c:\windows\system32\deployJava1.dll
2013-02-05 22:58:22 13024 —-a-w- c:\windows\system32\drivers\SWDUMon.sys
2013-01-20 15:59:04 100328 —-a-w- c:\windows\system32\drivers\NisDrvWFP.sys
2013-01-17 01:28:58 232336 ——w- c:\windows\system32\MpSigStub.exe
2013-01-13 21:17:03 9728 —-a-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-01-13 21:17:02 2560 —-a-w- c:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-01-13 21:16:42 10752 —-a-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-01-13 21:12:46 3584 —-a-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-01-13 21:11:21 4096 —-a-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-01-13 21:11:08 5632 —-a-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-01-13 21:11:07 5632 —-a-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-01-13 21:11:07 3072 —-a-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-01-13 21:11:07 3072 —-a-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-01-13 20:31:00 1247744 —-a-w- c:\windows\system32\DWrite.dll
2013-01-13 20:30:34 906240 —-a-w- c:\windows\system32\FntCache.dll
2013-01-13 20:22:22 1988096 —-a-w- c:\windows\system32\d3d10warp.dll
2013-01-13 20:20:31 293376 —-a-w- c:\windows\system32\dxgi.dll
2013-01-13 20:09:00 249856 —-a-w- c:\windows\system32\d3d10_1core.dll
2013-01-13 20:08:43 220160 —-a-w- c:\windows\system32\d3d10core.dll
2013-01-13 20:08:35 1504768 —-a-w- c:\windows\system32\d3d11.dll
2013-01-13 19:54:01 604160 —-a-w- c:\windows\system32\d3d10level9.dll
2013-01-13 19:53:58 207872 —-a-w- c:\windows\system32\WindowsCodecsExt.dll
2013-01-13 19:48:47 161792 —-a-w- c:\windows\system32\d3d10_1.dll
2013-01-13 19:46:25 1080832 —-a-w- c:\windows\system32\d3d10.dll
2013-01-13 19:43:21 1230336 —-a-w- c:\windows\system32\WindowsCodecs.dll
2013-01-13 19:37:57 3419136 —-a-w- c:\windows\system32\d2d1.dll
2013-01-13 19:02:06 417792 —-a-w- c:\windows\system32\WMPhoto.dll
2013-01-13 18:34:58 364544 —-a-w- c:\windows\system32\XpsGdiConverter.dll
2013-01-13 17:26:42 1158144 —-a-w- c:\windows\system32\XpsPrint.dll
2013-01-08 22:11:21 1800704 —-a-w- c:\windows\system32\jscript9.dll
2013-01-08 22:03:20 1129472 —-a-w- c:\windows\system32\wininet.dll
2013-01-08 22:03:12 1427968 —-a-w- c:\windows\system32\inetcpl.cpl
2013-01-08 21:59:02 142848 —-a-w- c:\windows\system32\ieUnatt.exe
2013-01-08 21:58:29 420864 —-a-w- c:\windows\system32\vbscript.dll
2013-01-08 21:56:23 2382848 —-a-w- c:\windows\system32\mshtml.tlb
2013-01-04 06:11:21 2284544 —-a-w- c:\windows\system32\msmpeg2vdec.dll
2012-12-16 14:13:28 295424 —-a-w- c:\windows\system32\atmfd.dll
2012-12-16 14:13:20 34304 —-a-w- c:\windows\system32\atmlib.dll
2012-12-12 21:37:56 4472832 —-a-w- c:\windows\system32\GPhotos.scr
2012-12-07 12:26:17 308736 —-a-w- c:\windows\system32\Wpc.dll
2012-12-07 12:20:43 2576384 —-a-w- c:\windows\system32\gameux.dll
2012-11-30 04:47:45 293376 —-a-w- c:\windows\system32\KernelBase.dll
2012-11-30 02:55:25 271360 —-a-w- c:\windows\system32\conhost.exe
2012-11-30 02:38:59 6144 —-a-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2012-11-30 02:38:59 4608 —-a-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2012-11-30 02:38:59 3584 —-a-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2012-11-30 02:38:59 3072 —-a-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2012-11-23 02:48:41 49152 —-a-w- c:\windows\system32\taskhost.exe
2012-11-22 04:45:03 626688 —-a-w- c:\windows\system32\usp10.dll
2012-11-20 04:51:09 220160 —-a-w- c:\windows\system32\ncrypt.dll
2012-11-09 04:43:04 492032 —-a-w- c:\windows\system32\win32spl.dll
2012-11-09 04:42:49 2048 —-a-w- c:\windows\system32\tzres.dll
2012-11-08 11:29:12 1402312 —-a-w- c:\windows\system32\msxml4.dll
2012-11-07 23:37:56 494416 —-a-w- c:\windows\system32\drivers\cmdGuard.sys
2012-11-07 23:37:56 36072 —-a-w- c:\windows\system32\drivers\cmdhlp.sys
2012-11-07 23:37:54 19632 —-a-w- c:\windows\system32\drivers\cmderd.sys
2012-11-07 23:37:36 34024 —-a-w- c:\windows\system32\cmdcsr.dll
2012-11-02 05:11:31 376832 —-a-w- c:\windows\system32\dpnet.dll
2012-11-01 04:47:54 1389568 —-a-w- c:\windows\system32\msxml6.dll
2012-10-29 12:10:02 4659712 —-a-w- c:\windows\system32\Redemption.dll
2012-10-16 07:39:52 561664 —-a-w- c:\windows\apppatch\AcLayers.dll
2012-10-09 17:40:31 44032 —-a-w- c:\windows\system32\dhcpcsvc6.dll
2012-10-09 17:40:31 193536 —-a-w- c:\windows\system32\dhcpcore6.dll
2012-10-03 16:42:26 52224 —-a-w- c:\windows\system32\nlaapi.dll
2012-10-03 16:42:26 242176 —-a-w- c:\windows\system32\nlasvc.dll
2012-10-03 16:42:24 18944 —-a-w- c:\windows\system32\netevent.dll
2012-10-03 16:42:24 175104 —-a-w- c:\windows\system32\netcorehc.dll
2012-10-03 16:42:23 156672 —-a-w- c:\windows\system32\ncsi.dll
2012-10-03 16:40:35 499712 —-a-w- c:\windows\system32\iphlpsvc.dll
2012-10-03 15:21:38 35328 —-a-w- c:\windows\system32\drivers\tcpipreg.sys
2012-09-25 22:47:43 78336 —-a-w- c:\windows\system32\synceng.dll
2012-09-19 10:02:06 83168 —-a-w- c:\windows\system32\drivers\ssudbus.sys
.
============= FINISH: 8:24:56.47 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Professional
Boot Device: \Device\HarddiskVolume1
Install Date: 27/07/2010 20:45:10
System Uptime: 11/03/2013 07:14:16 (1 hours ago)
.
Motherboard: Foxconn | | P4M890-8237
Processor: Intel® Pentium® D CPU 2.80GHz | Socket 775 | 2800/200mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 35 GiB total, 9.393 GiB free.
D: is FIXED (NTFS) - 114 GiB total, 44.016 GiB free.
E: is CDROM (UDF)
.
==== Disabled Device Manager Items =============
.
Class GUID: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Description: adfs
Device ID: ROOT\LEGACY_ADFS\0000
Manufacturer:
Name: adfs
PNP Device ID: ROOT\LEGACY_ADFS\0000
Service: adfs
.
Class GUID:
Description: PCI Modem
Device ID: PCI\VEN_2000&DEV;_2800&SUBSYS;_2800122D&REV;_02\3&2411E6FE&1&30
Manufacturer:
Name: PCI Modem
PNP Device ID: PCI\VEN_2000&DEV;_2800&SUBSYS;_2800122D&REV;_02\3&2411E6FE&1&30
Service:
.
==== System Restore Points ===================
.
RP749: 09/03/2013 21:39:57 - Removed iTunes
RP750: 09/03/2013 21:42:26 - Removed Bonjour
RP751: 10/03/2013 19:36:25 - Windows Update
RP753: 11/03/2013 08:18:08 - Removed V92 PCI Voice Faxmodem
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Premiere Pro CS4
Adobe Reader XI (11.0.02)
Adobe Setup
Apple Software Update
CCleaner
D3DX10
Dropbox
Free PDF Solutions PDF to WORD version 1.0
Gadwin PrintScreen
Google Chrome
Google Update Helper
Hotfix for Microsoft .NET Framework 4 Client Profile (KB2461678)
Junk Mail filter update
Malwarebytes Anti-Malware version 1.70.0.1100
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook Connector
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Mozilla Firefox 19.0 (x86 en-US)
MrSmooth
MSVC80_x86_v2
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
MSXML 4.0 SP3 Parser
MSXML 4.0 SP3 Parser (KB2721691)
MSXML 4.0 SP3 Parser (KB2758694)
OGA Notifier 2.0.0048.0
Olympus DSS Player 2002
Picasa 3
Realtek AC'97 Audio
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft Office 2007 suites (KB2596615) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596672) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596785) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687311) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687441) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2687499) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760416) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2687307) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Publisher 2007 (KB2596705) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2760421) 32-Bit Edition
Skype™ 6.1
Spotify
Strongvault Online Backup
TuneUp Utilities Language Pack (en-GB)
Tweaking.com - Registry Backup
Tweaking.com - Windows Repair (All in One)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596660) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596802) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2596848) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Access 2007 Help (KB963663)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office Infopath 2007 Help (KB963662)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition
Update for Microsoft Office Outlook 2007 Help (KB963677)
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2767848) 32-Bit Edition
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Publisher 2007 Help (KB963667)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
VLC media player 1.0.1
Windows Live Communications Platform
Windows Live Essentials
Windows Live Family Safety
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Mail
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
.
==== Event Viewer Messages From Past Week ========
.
11/03/2013 07:14:38, Error: Service Control Manager [7000] - The adfs service failed to start due to the following error: The system cannot find the file specified.
10/03/2013 15:23:55, Error: Service Control Manager [7043] - The Group Policy Client service did not shut down properly after receiving a preshutdown control.
09/03/2013 21:38:58, Error: Service Control Manager [7031] - The Apple Mobile Device service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.
07/03/2013 15:19:53, Error: Service Control Manager [7023] - The Server service terminated with the following error: The data is invalid.
07/03/2013 15:19:53, Error: Service Control Manager [7023] - The Computer Browser service terminated with the following error: A system shutdown is in progress.
07/03/2013 15:19:51, Error: Service Control Manager [7038] - The upnphost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The security account manager (SAM) or local security authority (LSA) server was in the wrong state to perform the security operation. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
07/03/2013 15:19:51, Error: Service Control Manager [7038] - The PolicyAgent service was unable to log on as NT Authority\NetworkService with the currently configured password due to the following error: The security account manager (SAM) or local security authority (LSA) server was in the wrong state to perform the security operation. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
07/03/2013 15:19:51, Error: Service Control Manager [7000] - The UPnP Device Host service failed to start due to the following error: The service did not start due to a logon failure.
07/03/2013 15:19:51, Error: Service Control Manager [7000] - The IPsec Policy Agent service failed to start due to the following error: The service did not start due to a logon failure.
07/03/2013 15:19:51, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1069" attempting to start the service upnphost with arguments "" in order to run the server: {204810B9-73B2-11D4-BF42-00B0D0118B56}
07/03/2013 15:14:14, Error: Service Control Manager [7038] - The WdiServiceHost service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
07/03/2013 15:14:14, Error: Service Control Manager [7038] - The PolicyAgent service was unable to log on as NT Authority\NetworkService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
07/03/2013 15:14:14, Error: Service Control Manager [7038] - The NisSrv service was unable to log on as NT AUTHORITY\LocalService with the currently configured password due to the following error: The request is not supported. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
07/03/2013 15:14:14, Error: Service Control Manager [7001] - The UPnP Device Host service depends on the SSDP Discovery service which failed to start because of the following error: The operation completed successfully.
07/03/2013 15:14:14, Error: Service Control Manager [7000] - The Portable Device Enumerator Service service failed to start due to the following error: A system shutdown is in progress.
07/03/2013 15:14:14, Error: Service Control Manager [7000] - The Microsoft Network Inspection service failed to start due to the following error: The service did not start due to a logon failure.
07/03/2013 15:14:14, Error: Service Control Manager [7000] - The Human Interface Device Access service failed to start due to the following error: A system shutdown is in progress.
07/03/2013 15:14:14, Error: Service Control Manager [7000] - The Diagnostic Service Host service failed to start due to the following error: The service did not start due to a logon failure.
07/03/2013 15:14:14, Error: Service Control Manager [7000] - The Computer Browser service failed to start due to the following error: A system shutdown is in progress.
07/03/2013 15:14:14, Error: Microsoft Antimalware [3002] - Microsoft Antimalware Real-Time Protection feature has encountered an error and failed. Feature: Network Inspection System Error Code: 0x8007042d Error description: The service did not start due to a logon failure. Reason: The system is missing updates that are required for running Network Inspection System. Install the required updates and restart the computer.
07/03/2013 15:14:14, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service upnphost with arguments "" in order to run the server: {204810B9-73B2-11D4-BF42-00B0D0118B56}
04/03/2013 20:42:37, Error: Microsoft-Windows-WMPNSS-Service [14332] - Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.
04/03/2013 19:12:29, Error: Microsoft-Windows-WMPNSS-Service [14324] - Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(WindowsMediaPlayer) encountered error '0x80004002'. If possible, reinstall Windows Media Player.
04/03/2013 19:10:51, Error: Service Control Manager [7024] - The HomeGroup Listener service terminated with service-specific error %%-2147467262.
.
==== End Of File ===========================
RogueKiller V8.5.2 [Mar 9 2013] by Tigzy
mail : tigzyRKgmailcom
Feedback : http://www.geekstogo.com/forum/files/file/413-roguekiller/
Website : http://tigzy.geekstogo.com/roguekiller.php
Blog :
http://tigzyrk.blogspot.com/
Operating System : Windows 7 (6.1.7601 Service Pack 1) 32 bits version
Started in : Normal mode
User : Jo [Admin rights]
Mode : Scan – Date : 03/11/2013 08:30:54
| ARK || FAK || MBR |
¤¤¤ Bad processes : 0 ¤¤¤
¤¤¤ Registry Entries : 3 ¤¤¤
[TASK][SUSP PATH] DSite : C:\Users\Jo\AppData\Roaming\DSite\UpdateProc\UpdateTask.exe /Check [-] -> FOUND
[HJ DESK] HKCU\[…]\ClassicStartMenu : {59031A47-3F72-44A7-89C5-5595FE6B30EE} (1) -> FOUND
[HJ DESK] HKCU\[…]\NewStartPanel : {59031A47-3F72-44A7-89C5-5595FE6B30EE} (1) -> FOUND
¤¤¤ Particular Files / Folders: ¤¤¤
¤¤¤ Driver : [LOADED] ¤¤¤
¤¤¤ HOSTS File: ¤¤¤
–> C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
¤¤¤ MBR Check: ¤¤¤
+++++ PhysicalDrive0: SAMSUNG HD161HJ ATA Device +++++
— User —
[MBR] 7deebf12d198d3bc2ac6ac518087e61d
[BSP] ca07b0d23736edac83f88f6210dd1ff7 : Windows 7/8 MBR Code
Partition table:
0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 35900 Mo
2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 73730048 | Size: 116625 Mo
User = LL1 … OK!
User = LL2 … OK!
Finished : << RKreport[1]_S_03112013_02d0830.txt >>
RKreport[1]_S_03112013_02d0830.txt