Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93083 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

My computer is so slow [Closed]


  • This topic is locked This topic is locked
11 replies to this topic

#1 dpennmaas

dpennmaas

    Authentic Member

  • Authentic Member
  • PipPip
  • 100 posts

Posted 01 February 2014 - 06:01 PM

Hi, my computer is running very slowly. I'm wondering if I have a virus. Or is there anything that I can take off of my computer to make it run faster. Your help is greatly appreciated!

 

Dave


Thanks, Dpennmaas

    Advertisements

Register to Remove


#2 Juliet

Juliet

    SuperHelper

  • Retired Classroom Teacher
  • 7,686 posts
  • Interests:Boo!....
  • MVP

Posted 03 February 2014 - 08:25 AM

Please download DDS and save it to your desktop.
  • Disable any script blocking protection
  • Double click dds.scr to run the tool.
  • When done, DDS will open two (2) logs:
    • DDS.txt
    • Attach.txt
  • Save both reports to your desktop.
Please include the contents of both logs in your next reply. The scan will instruct you to post the attach log as an attachment.
No need for that though ..... just post it as you would any other log.
Sometimes the angels fly close enough to you that you can hear the flutter of their wings...


MS - MVP Consumer Security 2009 - 2016, WI-MVP 2016-17
Antivirus Scanners Online Scanners Firewalls Slow Computer??

#3 Juliet

Juliet

    SuperHelper

  • Retired Classroom Teacher
  • 7,686 posts
  • Interests:Boo!....
  • MVP

Posted 04 February 2014 - 10:38 AM

still with me?


Sometimes the angels fly close enough to you that you can hear the flutter of their wings...


MS - MVP Consumer Security 2009 - 2016, WI-MVP 2016-17
Antivirus Scanners Online Scanners Firewalls Slow Computer??

#4 dpennmaas

dpennmaas

    Authentic Member

  • Authentic Member
  • PipPip
  • 100 posts

Posted 05 February 2014 - 11:42 PM

Hi, thanks so much for your help. sorry that I didn't get back to you sooner but was out of town without this computer. Here are my logs:

 

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 11.0.9600.16428  BrowserJavaVersion: 10.15.2
Run by Dave at 21:32:34 on 2014-02-05
Microsoft Windows 7 Ultimate   6.1.7601.1.1252.1.1033.18.3062.1319 [GMT -8:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\CSR\Vista Profile Pack\BthFilterHelper.exe
C:\Program Files\Cobian Backup 10\cbVSCService.exe
C:\Program Files\Cobian Backup 10\cbService.exe
C:\Users\Dave\AppData\Local\CrossLoop\CrossLoopService.exe
C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
c:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskhost.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\Dwm.exe
C:\Program Files\HP\HP UT\bin\hppusg.exe
C:\Windows\LockStatusTray.exe
C:\Windows\WindowsMobile\wmdcBase.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\OEM13Mon.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Cobian Backup 10\cbInterface.exe
C:\Program Files\HP\ToolboxFX\bin\HPTLBXFX.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files\itunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\microsoft office\Office14\MSOSYNC.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Users\Dave\AppData\Roaming\Google\Google Talk\googletalk.exe
C:\Users\Dave\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Google\Google Calendar Sync\GoogleCalendarSync.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Users\Dave\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\microsoft office\Office14\ONENOTEM.EXE
C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
C:\Program Files\Google\Drive\googledrivesync.exe
C:\Windows\explorer.exe
C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe
C:\Program Files\LogMeIn\x86\LogMeIn.exe
C:\Program Files\LogMeIn\x86\RaMaint.exe
C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Program Files\McAfee Security Scan\3.0.285\SSScheduler.exe
C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\microsoft office\Office14\OUTLOOK.EXE
C:\Windows\system32\taskhost.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\msiexec.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Program Files\Internet Explorer\iexplore.exe
c:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k hpdevmgmt
C:\Windows\system32\svchost.exe -k HPService
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k WindowsMobile
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k imgsvc
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxps://www.google.com/
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - c:\program files\hp\digital imaging\smart web printing\hpswp_printenhancer.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office14\GROOVEEX.DLL
BHO: Java™ Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre7\bin\ssv.dll
BHO: Advertising Cookie Opt-out: {8E425EB4-ADBD-4816-B1E8-49BB9DECF034} - c:\program files\google\advertising cookie opt-out\opt_out.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - c:\program files\yahoo!\companion\installs\cpn\YTSingleInstance.dll
BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - c:\program files\hp\digital imaging\smart web printing\hpswp_bho.dll
uRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe -startup
uRun: [OfficeSyncProcess] "c:\program files\microsoft office\office14\MSOSYNC.EXE"
uRun: [ISUSPM] c:\programdata\flexnet\connect\11\ISUSPM.exe -scheduler
uRun: [cdloader] "c:\users\dave\appdata\roaming\mjusbsp\cdloader2.exe" MAGICJACK
uRun: [googletalk] c:\users\dave\appdata\roaming\google\google talk\googletalk.exe /autostart
uRun: [Spotify Web Helper] "c:\users\dave\appdata\roaming\spotify\data\SpotifyWebHelper.exe"
uRun: [GoogleDriveSync] "c:\program files\google\drive\googledrivesync.exe" /autostart
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
uRun: [Google Update] "c:\users\dave\appdata\local\google\update\GoogleUpdate.exe" /c
uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil32_11_9_900_170_ActiveX.exe -update activex
mRun: [SSBkgdUpdate] "c:\program files\common files\scansoft shared\ssbkgdupdate\SSBkgdupdate.exe" -Embedding -boot
mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [HP LaserJet M1522 MFP Series Fax] c:\program files\hp\hp laserjet m1522\hppfaxprintersrv.exe "HP LaserJet M1522 MFP Series Fax"
mRun: [HPUsageTracking] "c:\program files\hp\hp ut\bin\hppusg.exe" "c:\program files\hp\hp ut\"
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [LockStatusTray] c:\windows\LockStatusTray.exe
mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
mRun: [Windows Mobile-based device management] c:\windows\windowsmobile\wmdcBase.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [hpqSRMon] c:\program files\hp\digital imaging\bin\hpqSRMon.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [OEM13Mon.exe] c:\windows\OEM13Mon.exe
mRun: [BCSSync] "c:\program files\microsoft office\office14\BCSSync.exe" /DelayServices
mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\AppleSyncNotifier.exe
mRun: [Cobian Backup 10 Interface] "c:\program files\cobian backup 10\cbInterface.exe" -service
mRun: [Intuit SyncManager] c:\program files\common files\intuit\sync\IntuitSyncManager.exe  startup
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [ToolboxFX] "c:\program files\hp\toolboxfx\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
mRun: [itype] "c:\program files\microsoft intellitype pro\itype.exe"
mRun: [IntelliPoint] "c:\program files\microsoft intellipoint\ipoint.exe"
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [LogMeIn GUI] "c:\program files\logmein\x86\LogMeInSystray.exe"
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
StartupFolder: c:\users\dave\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\dave\appdata\roaming\dropbox\bin\Dropbox.exe
StartupFolder: c:\users\dave\appdata\roaming\micros~1\windows\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office14\ONENOTEM.EXE
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\google~1.lnk - c:\program files\google\google calendar sync\GoogleCalendarSync.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\3.0.285\SSScheduler.exe
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - c:\program files\hp\digital imaging\smart web printing\hpswp_BHO.dll
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - hxxp://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 192.168.1.1
TCP: Interfaces\{6FD2D014-3DEE-49C5-BAC4-5EFC7C823EDC} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{79EE02E4-39BE-4C39-881D-F5B949F8BF5E} : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{79EE02E4-39BE-4C39-881D-F5B949F8BF5E}\44146554D27457563747 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{79EE02E4-39BE-4C39-881D-F5B949F8BF5E}\44146554D28444 : DHCPNameServer = 192.168.1.1
TCP: Interfaces\{79EE02E4-39BE-4C39-881D-F5B949F8BF5E}\6596379647F627 : DHCPNameServer = 66.7.162.122
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: intu-help-qb3 - {c5e479ea-0a65-4b05-8c6c-2fc8cc682eb4} - c:\program files\intuit\quickbooks 2010\HelpAsyncPluggableProtocol.dll
Handler: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} -
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Notify: igfxcui - igfxdev.dll
Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\dave\appdata\roaming\mozilla\firefox\profiles\qln39cgr.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - plugin: c:\progra~1\micros~2\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\micros~2\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\adobe\reader 11.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\common files\research in motion\bbwebsllauncher\NPWebSLLauncher.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\logitech\harmony remote driver\NprtHarmonyPlugin.dll
FF - plugin: c:\program files\microsoft silverlight\5.1.20913.0\npctrlui.dll
FF - plugin: c:\program files\virtual earth 3d\npVE3D.dll
FF - plugin: c:\users\dave\appdata\local\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\users\dave\appdata\roaming\facebook\npfbplugin_1_0_3.dll
FF - plugin: c:\users\dave\appdata\roaming\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\users\dave\appdata\roaming\mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: c:\users\dave\appdata\roaming\mozilla\plugins\npo1d.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_9_900_170.dll
FF - plugin: c:\windows\system32\npDeployJava1.dll
FF - plugin: c:\windows\system32\npmproxy.dll
FF - ExtSQL: !HIDDEN! 2010-08-15 23:37; smartwebprinting@hp.com; c:\program files\hp\digital imaging\smart web printing\MozillaAddOn3
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2013-9-27 214696]
R0 O2MDRDR;O2MDRDR;c:\windows\system32\drivers\o2media.sys [2005-11-14 34176]
R2 BthFilterHelper;Bluetooth Feature Support;c:\program files\csr\vista profile pack\BthFilterHelper.exe [2006-11-7 127488]
R2 cbVSCService;Cobian Backup 10 Volume Shadow Copy service;c:\program files\cobian backup 10\cbVSCService.exe [2011-2-9 67584]
R2 CobianBackup10;Cobian Backup 10;c:\program files\cobian backup 10\cbService.exe [2011-2-9 1125376]
R2 CrossLoopService;CrossLoop Service;c:\users\dave\appdata\local\crossloop\CrossLoopService.exe [2010-1-26 560792]
R2 HP LaserJet Service;HP LaserJet Service;c:\program files\hp\hplaserjetservice\HPLaserJetService.exe [2010-10-25 145920]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2009-7-3 1029456]
R2 LMIGuardianSvc;LMIGuardianSvc;c:\program files\logmein\x86\LMIGuardianSvc.exe [2013-1-25 375120]
R2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files\logmein\x86\rainfo.sys [2012-11-29 13624]
R2 LMIRfsDriver;LogMeIn Remote File System Driver;c:\windows\system32\drivers\LMIRfsDriver.sys [2013-2-7 47640]
R2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2012-3-20 104768]
R3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\NisSrv.exe [2013-10-23 280288]
R3 OEM13Vfx;Creative Camera OEM013 Video VFX Driver;c:\windows\system32\drivers\OEM13Vfx.sys [2007-3-5 7424]
R3 OEM13Vid;Creative Camera OEM013 Driver;c:\windows\system32\drivers\OEM13Vid.sys [2008-5-28 235840]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\drivers\Rt86win7.sys [2009-6-10 139776]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2013-3-1 161384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.Sys [2010-9-22 36640]
S3 HPFXBULKLEDM;HPFXBULKLEDM;c:\windows\system32\drivers\hppcbulkio.sys [2010-10-3 20504]
S3 HPFXFAX;HPFXFAX;c:\windows\system32\drivers\hpfxfax.sys [2010-1-26 20504]
S3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\ieetwcollector.exe [2014-1-22 108032]
S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\drivers\LEqdUsb.sys [2009-6-17 40720]
S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\drivers\LHidEqd.sys [2009-6-17 10384]
S3 libusb0;Jawbone LibUsb-Win32 - Kernel Driver 09/22/2011,1.2.5.0;c:\windows\system32\drivers\libusb0.sys [2012-3-13 42592]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\3.0.285\McCHSvc.exe [2012-9-5 234776]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2011-7-7 15872]
S3 SIUSBXP;SIUSBXP;c:\windows\system32\drivers\SiUSBXp.sys [2012-9-14 14592]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2011-2-12 96488]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2011-2-12 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2011-2-12 121576]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2011-7-7 52224]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2010-3-1 1343400]
S3 Zoho Assist;Zoho Assist;"c:\users\dave\documents\zohomeeting\zohomeeting.exe" run -dir "c:\users\dave\documents\zohomeeting" --> c:\users\dave\documents\zohomeeting\ZohoMeeting.exe [?]
.
=============== File Associations ===============
.
FileExt: .chm: chm.file="c:\windows\hh.exe" %1 [UserChoice]
.js: <filetype is not registered>
.
=============== Created Last 30 ================
.
2014-02-06 05:14:53 7760024 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{e745eda9-7cba-4bcc-a6dd-2dfaee759e85}\mpengine.dll
2014-02-02 00:09:48 -------- d-----w- c:\programdata\McAfee Security Scan
2014-02-02 00:09:34 -------- d-----w- c:\program files\McAfee Security Scan
2014-02-01 23:56:41 7760024 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2014-01-23 03:46:36 -------- d-----w- C:\c2da47e4a75ce49e1e1a58
2014-01-23 03:44:30 719224 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\{fea1ece9-d47d-47cf-a36d-dbc3cc9e543a}\gapaengine.dll
2014-01-23 03:37:28 240576 ----a-w- c:\windows\system32\drivers\netio.sys
2014-01-23 03:30:55 2349056 ----a-w- c:\windows\system32\win32k.sys
2014-01-23 03:30:51 43520 ----a-w- c:\windows\system32\drivers\usbehci.sys
2014-01-23 03:30:50 76288 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2014-01-23 03:30:50 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2014-01-23 03:30:50 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2014-01-23 03:30:50 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2014-01-23 03:30:49 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2014-01-23 03:30:49 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2014-01-23 03:23:00 2724864 ----a-w- c:\windows\system32\mshtml.tlb
2014-01-23 03:21:54 1928192 ----a-w- c:\windows\system32\inetcpl.cpl
2014-01-23 03:21:47 4243968 ----a-w- c:\windows\system32\jscript9.dll
2014-01-10 11:01:59 97880 ----a-w- c:\program files\internet explorer\pdmproxy100.dll
.
==================== Find3M  ====================
.
2014-02-06 05:25:23 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2014-02-06 05:25:22 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2014-02-01 23:45:30 86888 ----a-w- c:\windows\system32\LMIRfsClientNP.dll
2014-02-01 23:45:29 53064 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\LMIproc.dll
2014-02-01 23:45:27 31560 ----a-w- c:\windows\system32\LMIport.dll
2014-02-01 23:45:26 85832 ----a-w- c:\windows\system32\LMIinit.dll
2014-01-19 07:32:23 231584 ------w- c:\windows\system32\MpSigStub.exe
2014-01-10 11:01:59 61952 ----a-w- c:\windows\system32\MshtmlDac.dll
2014-01-10 11:01:59 36352 ----a-w- c:\windows\system32\imgutil.dll
2014-01-10 11:01:59 13312 ----a-w- c:\windows\system32\mshta.exe
2014-01-10 11:01:58 86016 ----a-w- c:\windows\system32\iesysprep.dll
2014-01-10 11:01:58 74240 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2014-01-10 11:01:58 48640 ----a-w- c:\windows\system32\mshtmler.dll
2014-01-10 11:01:58 111616 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-12-26 05:35:57 86888 ----a-w- c:\windows\system32\LMIRfsClientNP.dll.000.bak
2013-11-26 09:22:11 4096 ----a-w- c:\windows\system32\ieetwcollectorres.dll
2013-11-26 08:53:56 61952 ----a-w- c:\windows\system32\iesetup.dll
2013-11-26 08:52:26 51200 ----a-w- c:\windows\system32\ieetwproxystub.dll
2013-11-26 08:29:55 112128 ----a-w- c:\windows\system32\ieUnatt.exe
2013-11-26 08:29:52 108032 ----a-w- c:\windows\system32\ieetwcollector.exe
2013-11-26 08:28:16 553472 ----a-w- c:\windows\system32\jscript9diag.dll
2013-11-26 06:33:33 1820160 ----a-w- c:\windows\system32\wininet.dll
2013-11-23 18:26:20 417792 ----a-w- c:\windows\system32\WMPhoto.dll
2013-11-12 02:07:29 2048 ----a-w- c:\windows\system32\tzres.dll
.
============= FINISH: 21:39:45.65 ===============

 

 

 

 

.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume2
Install Date: 1/24/2010 3:34:30 PM
System Uptime: 2/5/2014 7:18:19 AM (14 hours ago)
.
Motherboard: Dell Inc. |  | GEA31U
Processor: Intel® Core™2 Duo CPU     T8100  @ 2.10GHz | U2E1 | 2094/800mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 288 GiB total, 109.442 GiB free.
D: is CDROM (CDFS)
.
==== Disabled Device Manager Items =============
.
Class GUID:
Description: Officejet Pro 8500 A909g
Device ID: ROOT\MULTIFUNCTION\0000
Manufacturer:
Name: Officejet Pro 8500 A909g
PNP Device ID: ROOT\MULTIFUNCTION\0000
Service:
.
Class GUID:
Description: Officejet Pro 8500 A909g
Device ID: ROOT\MULTIFUNCTION\0001
Manufacturer:
Name: Officejet Pro 8500 A909g
PNP Device ID: ROOT\MULTIFUNCTION\0001
Service:
.
Class GUID: {4d36e971-e325-11ce-bfc1-08002be10318}
Description: HP LaserJet CP1525nw
Device ID: ROOT\MULTIFUNCTION\0002
Manufacturer: Hewlett-Packard
Name: HP LaserJet CP1525nw
PNP Device ID: ROOT\MULTIFUNCTION\0002
Service:
.
Class GUID: {4d36e971-e325-11ce-bfc1-08002be10318}
Description: Officejet Pro 8500 A909g
Device ID: ROOT\MULTIFUNCTION\0003
Manufacturer: HP
Name: Officejet Pro 8500 A909g
PNP Device ID: ROOT\MULTIFUNCTION\0003
Service:
.
==== System Restore Points ===================
.
RP953: 12/21/2013 1:20:51 PM - Windows Update
RP954: 12/24/2013 9:37:10 PM - Windows Update
RP957: 1/3/2014 6:02:23 PM - Windows Update
RP958: 1/9/2014 10:04:54 PM - Windows Update
RP959: 1/10/2014 3:00:12 AM - Windows Update
RP961: 1/22/2014 7:18:29 PM - Windows Modules Installer
RP962: 1/22/2014 7:42:40 PM - Windows Update
RP963: 1/23/2014 3:00:14 AM - Windows Update
RP964: 2/1/2014 3:52:47 PM - Windows Update
RP965: 2/1/2014 4:25:02 PM - Removed Google Earth Plug-in.
RP966: 2/1/2014 4:25:58 PM - Removed Google Earth Plug-in.
RP967: 2/1/2014 4:28:37 PM - Removed Quicken 2009
RP968: 2/1/2014 4:30:52 PM - Removed Macromedia Dreamweaver 8
RP969: 2/1/2014 4:33:17 PM - Removed Dragon NaturallySpeaking 11.
RP970: 2/1/2014 4:42:38 PM - Removed Canon PhotoRecord
RP971: 2/5/2014 9:13:11 PM - Windows Update
.
==== Installed Programs ======================
.
µTorrent
32 Bit HP CIO Components Installer
7-Zip 4.65
8500A909_eDocs
8500A909_Help
8500A909g
Acrobat.com
Ad-Aware
Adobe AIR
Adobe Flash Player 12 ActiveX
Adobe Flash Player 12 Plugin
Adobe Reader XI (11.0.05)
Apple Application Support
Apple Mobile Device Support
Apple Software Update
AudibleManager
Bing Maps 3D
Blues Chapter 16 - Full Version
Blues Chapter 17 - Full Version
Bonjour
BPD_DSWizards
bpd_scan
BPDSoftware
BPDSoftware_Ini
BufferChm
Canon Camera WIA Driver
Canon EOS Kiss REBEL 300D WIA Driver
Canon MOV Decoder
Canon MOV Encoder
Canon MovieEdit Task for ZoomBrowser EX
Canon RAW Codec
Canon RAW Image Task for ZoomBrowser EX
Canon RemoteCapture Task for ZoomBrowser EX
Canon Utilities CameraWindow
Canon Utilities CameraWindow DC 8
Canon Utilities Digital Photo Professional 3.8
Canon Utilities File Viewer Utility 1.3
Canon Utilities MyCamera
Canon Utilities PhotoStitch 3.1
Canon Utilities RemoteCapture 2.7
Canon Utilities ZoomBrowser EX
Canon ZoomBrowser EX Memory Card Utility
CATS Microsoft Outlook Plug-in v1.95
CATS Microsoft Word Plug-in v1.35
CDDRV_Installer
Chap 1 - How to Match Chords up with any Melody
Chap 1 - How to play fantastic solos on the keyboard
Chap 2 - How to Match Chords up with any Melody
Chap 3 - How to Match Chords up with any Melody
Chord Voicings Vault
Cobian Backup 10
Combined Community Codec Pack 2011-07-30
CrossLoop 2.72
Dassault Systemes Software Prerequisites x86
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Dell Driver Download Manager
Destinations
DeviceDiscovery
Digsby
Diminished 7th Chords - Chapter 1
DocMgr
DocProc
Dropbox
Duplicate File Finder
Ear Training 101 V4 Full Version
erLT
ESET Online Scanner v3
Facebook Plug-In
Fax
ffdshow [rev 2527] [2008-12-19]
File Viewer Utility 1.3.2
GOM Player
Google Advertising Cookie Opt-out
Google Apps Sync™ for Microsoft Outlook® 3.2.353.947
Google Calendar Sync
Google Chrome
Google Cloud Connect for Microsoft Office
Google Drive
Google Talk (remove only)
Google Talk Plugin
Google Toolbar for Internet Explorer
Google Update Helper
GoToMeeting 5.1.0.880
GPBaseService2
gwabbit
Hewlett-Packard ACLM.NET v1.1.0.0
HP Customer Participation Program 13.0
HP Document Manager 2.0
HP FWUpdateEDO3
HP Imaging Device Functions 13.0
HP LaserJet M1522 MFP Series 4.2
HP LaserJet Professional CP1520 Series
HP Photosmart Essential 3.5
HP Product Detection
HP Smart Web Printing 4.60
HP Solution Center 13.0
HP Update
HPDiagnosticAlert
HPLaserJetHelp_LearnCenter
HPLJUT
hppCP1520LaserJetService
hppFaxDrvM1522
hppFaxUtility
hppFonts
HPPhotoSmartDiscLabelContent1
HPPhotosmartEssential
hppLaserJetService
hppLJM1522
hppManualsM1522
HPProductAssistant
hppScanTo
hppSendFaxM1522
hppTLBXFXCP1520
hppTLBXFXM1522
hppusgM1522
hpzTLBXFX
InstaCodecs
Intel® Graphics Media Accelerator Driver
Intel® TV Wizard
IrfanView (remove only)
iTunes
Java 7 Update 15
Java Auto Updater
Jawbone Updater
Keyboard Lock Status
KhalInstallWrapper
Laptop Integrated Webcam Driver (1.01.01.0529) 
Logitech Harmony Remote Software
Logitech Harmony Remote Software 7
Logitech SetPoint
LogMeIn
Macromedia Extension Manager
magicJack
magicJack Outlook Add-In 1.0.3.521
Malwarebytes Anti-Malware version 1.70.0.1100
MarketResearch
McAfee Security Scan Plus
MediaMonkey 3.2
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170)
Microsoft Default Manager
Microsoft IntelliPoint 8.2
Microsoft IntelliType Pro 8.2
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Groove MUI (English) 2010
Microsoft Office InfoPath MUI (English) 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Word MUI (English) 2010
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Microsoft SQL Server 2005
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
Microsoft SQL Server 2005 Tools Express Edition
Microsoft SQL Server Native Client
Microsoft SQL Server Setup Support Files (English)
Microsoft SQL Server VSS Writer
Microsoft UI Engine
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft WSE 3.0 Runtime
MobileMe Control Panel
Mozilla Firefox 19.0.2 (x86 en-US)
MPEG2 Codec(libmpeg2/mad)
MPM
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
MSXML 4.0 SP2 Parser and SDK
Network
OCR Software by I.R.I.S. 13.0
Officejet Pro 8500 A909 Series
OGA Notifier 2.0.0048.0
PhotoStitch
Picasa 3
Product_Min_QFolder
ProductContext
QuickBooks
QuickBooks Pro 2010
QuickTime
RAW Image Task
Remote Control USB Driver
RemoteCapture 2.7.5
RemoteCapture Task
SAMSUNG USB Driver for Mobile Phones
Scan
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2804576)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)
Security Update for Microsoft Excel 2010 (KB2826033) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2553284) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2687423) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2826023) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2826035) 32-Bit Edition
Security Update for Microsoft Office 2010 (KB2850016) 32-Bit Edition
Security Update for Microsoft Outlook 2010 (KB2837597) 32-Bit Edition
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
Shared Add-in Extensibility Update for Microsoft .NET Framework 2.0 (KB908002)
Shared Add-in Support Update for Microsoft .NET Framework 2.0 (KB908002)
Skype Click to Call
Skype™ 6.3
SmartWebPrinting
SolutionCenter
Songwriting, Chapter 1
Spotify
Status
Telephone Plug-in
Toolbox
TrayApp
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition
Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition
Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition
Vista Profile Pack
Visual C++ 8.0 ATL (x86) WinSXS MSM
Visual C++ 8.0 CRT (x86) WinSXS MSM
Visual C++ 9.0 Runtime for Dragon NaturallySpeaking
Visual C++ Runtime for Dragon NaturallySpeaking
Visual Studio Tools for the Office system 3.0 Runtime
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258)
VLC media player 1.1.7
WebEx
WebReg
WinDirStat 1.1.2
Windows Migration Assistant
WinRAR archiver
Yahoo! Toolbar
Zoho CRM Plug-in for Microsoft Outlook
.
==== Event Viewer Messages From Past Week ========
.
2/5/2014 9:07:02 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.
2/5/2014 9:04:28 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the NlaSvc service.
2/5/2014 9:03:34 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the IKEEXT service.
2/5/2014 9:03:04 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Appinfo service.
2/5/2014 9:02:48 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Netman service.
2/5/2014 9:02:18 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the iphlpsvc service.
2/5/2014 9:01:48 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the RasMan service.
2/5/2014 9:01:02 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the StiSvc service.
2/5/2014 8:59:00 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Schedule service.
2/5/2014 8:59:00 PM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the lmhosts service.
2/1/2014 3:42:40 PM, Error: Service Control Manager [7034]  - The Google Update Service (gupdate) service terminated unexpectedly.  It has done this 1 time(s).
.
==== End Of File ===========================
 


Thanks, Dpennmaas

#5 Juliet

Juliet

    SuperHelper

  • Retired Classroom Teacher
  • 7,686 posts
  • Interests:Boo!....
  • MVP

Posted 06 February 2014 - 05:30 AM

P2P software/programs are a major contributor to infections. I see you have µTorrent. Not passing judgment on file-sharing, However will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to re-infections. It may be contributing to your current situation.

Please note: Even if you are using a "safe" P2P program, it is only the program that is safe. You will be sharing files from uncertified sources, and these are often infected. The bad guys use P2P filesharing as a major conduit to spread their wares.

References for the risk of these programs can also be found
Here and Here

I would strongly recommend that you uninstall them, however that choice is up to you. If you choose to remove these programs, you can do so via Control Panel >> Add or Remove Programs.


Note: Please be advised that continued use of these programs after being warned of the danger of infections from them, may result in the discontinued help of future cleaning of your system.


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Please download Farbar Recovery Scan Tool and save it to your Desktop.

(use correct version for your system.....Which system am I using?)


Note: You need to run the version compatible with your system. If you are not sure which version applies to your system download both of them and try to run them. Only one of them will run on your system, that will be the right version.
  • Right click to run as administrator (XP users click run after receipt of Windows Security Warning - Open File). When the tool opens click Yes to disclaimer.
  • Press Scan button.
  • It will produce a log called FRST.txt in the same directory the tool is run from.
  • Please copy and paste log back here.
  • The first time the tool is run it generates another log (Addition.txt - also located in the same directory as FRST.exe/FRST64.exe). Please also paste that along with the FRST.txt into your reply.

Sometimes the angels fly close enough to you that you can hear the flutter of their wings...


MS - MVP Consumer Security 2009 - 2016, WI-MVP 2016-17
Antivirus Scanners Online Scanners Firewalls Slow Computer??

#6 Juliet

Juliet

    SuperHelper

  • Retired Classroom Teacher
  • 7,686 posts
  • Interests:Boo!....
  • MVP

Posted 09 February 2014 - 05:51 PM

still with me?
Sometimes the angels fly close enough to you that you can hear the flutter of their wings...


MS - MVP Consumer Security 2009 - 2016, WI-MVP 2016-17
Antivirus Scanners Online Scanners Firewalls Slow Computer??

#7 dpennmaas

dpennmaas

    Authentic Member

  • Authentic Member
  • PipPip
  • 100 posts

Posted 10 February 2014 - 11:18 PM

hi Juliet, thank you for your patience.

First off, I don't see that I have utorrent installed on my computer (I couldn't find it with control panel).

 

And here are my logs:

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 10-02-2014 01
Ran by Dave (administrator) on DAVE-PC on 10-02-2014 21:09:17
Running from C:\Users\Dave\Desktop
Microsoft Windows 7 Ultimate  Service Pack 1 (X86) OS Language: English(US)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: http://www.bleepingc...can-tool/dl/81/
Download link for 64-Bit Version: http://www.bleepingc...can-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: http://www.geekstogo...very-scan-tool/

==================== Processes (Whitelisted) =================

(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Lavasoft) C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(CSR, plc) C:\Program Files\CSR\Vista Profile Pack\BthFilterHelper.exe
(CobianSoft, Luis Cobian) C:\Program Files\Cobian Backup 10\cbVSCService.exe
(Luis Cobian, CobianSoft) C:\Program Files\Cobian Backup 10\cbService.exe
(CrossLoop Inc) C:\Users\Dave\AppData\Local\CrossLoop\CrossLoopService.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
(Intuit) C:\Program Files\Common Files\Intuit\QuickBooks\QBCFMonitorService.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corporation) C:\Windows\system32\wbem\unsecapp.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
() C:\Program Files\HP\HP UT\bin\hppusg.exe
(Logitech, Inc.) C:\Windows\LockStatusTray.exe
(Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Creative Technology Ltd.) C:\Windows\OEM13Mon.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Luis Cobian, CobianSoft) C:\Program Files\Cobian Backup 10\cbInterface.exe
(Hewlett-Packard Company) C:\Program Files\HP\ToolboxFX\bin\HPTLBXFX.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\dpupdchk.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Apple Inc.) C:\Program Files\itunes\iTunesHelper.exe
(Sun Microsystems, Inc.) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Program Files\microsoft office\Office14\MSOSYNC.EXE
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google) C:\Users\Dave\AppData\Roaming\Google\Google Talk\googletalk.exe
(Spotify Ltd) C:\Users\Dave\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Google Inc.) C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(Google) C:\Program Files\Google\Google Calendar Sync\GoogleCalendarSync.exe
(Hewlett-Packard Co.) C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPoint\SetPoint.exe
(Dropbox, Inc.) C:\Users\Dave\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Microsoft Corporation) C:\Program Files\microsoft office\Office14\ONENOTEM.EXE
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(LogMeIn, Inc.) C:\Program Files\LogMeIn\x86\LMIGuardianSvc.exe
(LogMeIn, Inc.) C:\Program Files\LogMeIn\x86\LogMeIn.exe
(LogMeIn, Inc.) C:\Program Files\LogMeIn\x86\RaMaint.exe
(LogMeIn, Inc.) C:\Program Files\LogMeIn\x86\LogMeInSystray.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\microsoft office\Office14\OUTLOOK.EXE
(Google Inc.) C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Program Files\Google\Google Toolbar\GoogleToolbarUser_32.exe
(Google Inc.) C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Google Inc.) C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MpCmdRun.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [SSBkgdUpdate] - C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.)
HKLM\...\Run: [ISUSScheduler] - C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [79136 2008-10-24] (Macrovision Corporation)
HKLM\...\Run: [Microsoft Default Manager] - C:\Program Files\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe [288080 2009-07-17] (Microsoft Corporation)
HKLM\...\Run: [HP LaserJet M1522 MFP Series Fax] - C:\Program Files\HP\hp LaserJet M1522\hppfaxprintersrv.exe [2453504 2009-09-22] (Hewlett-Packard Company)
HKLM\...\Run: [HPUsageTracking] - C:\Program Files\HP\HP UT\bin\hppusg.exe [36864 2007-08-31] ()
HKLM\...\Run: [Malwarebytes Anti-Malware (reboot)] - C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe [824232 2012-12-14] (Malwarebytes Corporation)
HKLM\...\Run: [LockStatusTray] - C:\Windows\LockStatusTray.exe [192512 2008-02-19] (Logitech, Inc.)
HKLM\...\Run: [Kernel and Hardware Abstraction Layer] - C:\Windows\KHALMNPR.EXE [55824 2009-06-17] (Logitech, Inc.)
HKLM\...\Run: [Windows Mobile-based device management] - C:\Windows\WindowsMobile\wmdcBase.exe [648072 2007-05-31] (Microsoft Corporation)
HKLM\...\Run: [HP Software Update] - C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM\...\Run: [hpqSRMon] - C:\Program Files\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM\...\Run: [OEM13Mon.exe] - C:\Windows\OEM13Mon.exe [36864 2008-01-07] (Creative Technology Ltd.)
HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [AppleSyncNotifier] - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [59240 2011-10-06] (Apple Inc.)
HKLM\...\Run: [Cobian Backup 10 Interface] - C:\Program Files\Cobian Backup 10\cbInterface.exe [3154432 2010-09-23] (Luis Cobian, CobianSoft)
HKLM\...\Run: [Intuit SyncManager] - C:\Program Files\Common Files\Intuit\Sync\IntuitSyncManager.exe [996616 2009-08-30] (Intuit Inc. All rights reserved.)
HKLM\...\Run: [APSDaemon] - C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-11-28] (Apple Inc.)
HKLM\...\Run: [ToolboxFX] - C:\Program Files\HP\ToolboxFX\bin\HPTLBXFX.exe [58936 2010-10-25] (Hewlett-Packard Company)
HKLM\...\Run: [itype] - c:\Program Files\Microsoft IntelliType Pro\itype.exe [1313640 2011-08-10] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] - c:\Program Files\Microsoft IntelliPoint\ipoint.exe [1821576 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [948440 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [QuickTime Task] - C:\Program Files\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM\...\Run: [iTunesHelper] - C:\Program Files\iTunes\iTunesHelper.exe [152544 2012-12-12] (Apple Inc.)
HKLM\...\Run: [LogMeIn GUI] - C:\Program Files\LogMeIn\x86\LogMeInSystray.exe [63048 2012-11-29] (LogMeIn, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [] - [X]
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [ISUSPM Startup] - C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [206112 2008-10-24] (Macrovision Corporation)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [OfficeSyncProcess] - C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [720064 2013-04-22] (Microsoft Corporation)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [ISUSPM] - C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [cdloader] - C:\Users\Dave\AppData\Roaming\mjusbsp\cdloader2.exe [50592 2010-12-03] (magicJack L.P.)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [googletalk] - C:\Users\Dave\AppData\Roaming\Google\Google Talk\googletalk.exe [3739648 2007-01-01] (Google)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [Spotify Web Helper] - C:\Users\Dave\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1199576 2012-11-14] (Spotify Ltd)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [GoogleDriveSync] - C:\Program Files\Google\Drive\googledrivesync.exe [20203904 2013-12-06] (Google)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [swg] - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-01-24] (Google Inc.)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\Run: [Google Update] - C:\Users\Dave\AppData\Local\Google\Update\GoogleUpdate.exe [135664 2010-01-24] (Google Inc.)
HKU\S-1-5-21-2557060353-3338967487-1032703843-1000\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\system32\Macromed\Flash\FlashUtil32_11_9_900_170_ActiveX.exe -update activex
Startup: C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Dave\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Screen Clipper and Launcher.lnk
ShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -> C:\Program Files\microsoft office\Office14\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft...=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.com/
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\microsoft office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java™ Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Advertising Cookie Opt-out - {8E425EB4-ADBD-4816-B1E8-49BB9DECF034} - C:\Program Files\Google\Advertising Cookie Opt-out\opt_out.dll (Google Inc)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\microsoft office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
BHO: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20270.www2.h...tDetection2.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.ad...Plus/1.6/gp.cab
Handler: intu-help-qb3 - {c5e479ea-0a65-4b05-8c6c-2fc8cc682eb4} - C:\Program Files\Intuit\QuickBooks 2010\HelpAsyncPluggableProtocol.dll (Intuit, Inc.)
Handler: qbwc - {FC598A64-626C-4447-85B8-53150405FD57} - C:\Windows\system32\mscoree.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks:  - {AEB6717E-7E19-11d0-97EE-00C04FD91972} -  No File [ ]
Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default
FF SelectedSearchEngine: Google
FF NetworkProxy: "no_proxies_on", "*.local"
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin,version=10.15.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.15.2 - C:\Program Files\java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @logitech.com/HarmonyRemote,version=1.0.0 - C:\Program Files\Logitech\Harmony Remote Driver\NprtHarmonyPlugin.dll (Logitech Inc.)
FF Plugin: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/VirtualEarth3D,version=4.0 - C:\Program Files\Virtual Earth 3D\ ()
FF Plugin: @RIM.com/WebSLLauncher,version=1.0 - C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @doubletwist.com/NPPodcast - C:\Program Files\Common Files\doubleTwist\NPPodcast.dll No File
FF Plugin HKCU: @facebook.com/FBPlugin,version=1.0.3 - C:\Users\Dave\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Dave\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Dave\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google)
FF Plugin HKCU: @talk.google.com/O3DPlugin - C:\Users\Dave\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Dave\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Dave\AppData\Local\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Dave\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google)
FF Plugin ProgramFiles/Appdata: C:\Users\Dave\AppData\Roaming\mozilla\plugins\npgtpo3dautoplugin.dll ()
FF Plugin ProgramFiles/Appdata: C:\Users\Dave\AppData\Roaming\mozilla\plugins\npo1d.dll (Google)
FF SearchPlugin: C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default\searchplugins\daemon-search.xml
FF Extension: No Name - C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default\Extensions\staged [2013-12-11]
FF Extension: Autofill Forms - C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default\Extensions\autofillForms@blueimp.net.xpi [2011-06-30]
FF Extension: Google Shortcuts - C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default\Extensions\{5C46D283-ABDE-4dce-B83C-08881401921C}.xpi [2011-03-26]
FF Extension: NoScript - C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-03-16]
FF Extension: Adblock Plus - C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-03-16]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2013-01-10]
FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-08-03]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-08-03]

Chrome:
=======
CHR HomePage: hxxp://search.conduit.com/?ctid=CT3220468&SearchSource=48
CHR Plugin: (Shockwave Flash) - C:\Users\Dave\AppData\Local\Google\Chrome\Application\32.0.1700.102\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Dave\AppData\Local\Google\Chrome\Application\32.0.1700.102\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Dave\AppData\Local\Google\Chrome\Application\32.0.1700.102\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.3) - C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (ActiveTouch General Plugin Container) - C:\Users\Dave\AppData\Local\Google\Chrome\Application\plugins\npatgpc.dll (Cisco WebEx LLC)
CHR Plugin: (Google Talk Plugin) - C:\Users\Dave\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google)
CHR Plugin: (Google Talk Plugin Video Accelerator) - C:\Users\Dave\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll ()
CHR Plugin: (Microsoft Lync 2010 Attendee Meeting Join Plug-in) - C:\Users\Dave\AppData\Roaming\Mozilla\plugins\npMeetingJoinPluginAOCUser.dll No File
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (RIM Handheld Application Loader) - C:\Program Files\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll No File
CHR Plugin: (Picasa) - C:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.123\npGoogleUpdate3.dll No File
CHR Plugin: (Harmony Firefox Plugin) - C:\Program Files\Logitech\Harmony Remote Driver\NprtHarmonyPlugin.dll (Logitech Inc.)
CHR Plugin: (iTunes Application Detector) - C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Java™ Platform SE 7 U7) - C:\Program Files\java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Facebook Plugin) - C:\Users\Dave\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll ( )
CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32_11_5_502_146.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.70.11) - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll No File
CHR Extension: (Google Drive) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-06-27]
CHR Extension: (YouTube) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2011-12-15]
CHR Extension: (Google Cast) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2013-12-25]
CHR Extension: (Google Search) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2011-12-15]
CHR Extension: (Skype Click to Call) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2011-09-06]
CHR Extension: (Google Wallet) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-25]
CHR Extension: (Docs PDF/PowerPoint Viewer (by Google)) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\nnbmlagghjjcbdhgmkedmbmedengocbn [2010-11-30]
CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2012-11-14]
CHR Extension: (Gmail) - C:\Users\Dave\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2011-12-15]
CHR HKLM\...\Chrome\Extension: [benapefjceiclcnegeilbahngccgomcj] - C:\ProgramData\SaveAs\benapefjceiclcnegeilbahngccgomcj.crx [2011-12-15]
CHR HKLM\...\Chrome\Extension: [jbpkiefagocgkmemidfngdkamloieekf] - C:\Program Files\TornTV.com\torn11.crx [2011-12-15]
CHR HKLM\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2013-01-31]
CHR HKLM\...\Chrome\Extension: [mpieaakhacmfleokhjcjnpcnmnmpfkid] - C:\Program Files\fbphotozoom\fbphotozoom13.crx [2013-01-31]
CHR HKCU\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Dave\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2013-05-15]
CHR StartMenuInternet: Google Chrome - C:\Users\Dave\AppData\Local\Google\Chrome\Application\chrome.exe

========================== Services (Whitelisted) =================

R2 BthFilterHelper; C:\Program Files\CSR\Vista Profile Pack\BthFilterHelper.exe [127488 2006-11-07] (CSR, plc)
R2 cbVSCService; C:\Program Files\Cobian Backup 10\cbVSCService.exe [67584 2010-09-23] (CobianSoft, Luis Cobian)
R2 CobianBackup10; C:\Program Files\Cobian Backup 10\cbService.exe [1125376 2010-09-23] (Luis Cobian, CobianSoft)
R2 CrossLoopService; C:\Users\Dave\AppData\Local\CrossLoop\CrossLoopService.exe [560792 2010-03-15] (CrossLoop Inc)
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [145920 2010-10-25] (HP)
R2 Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [1029456 2009-07-03] (Lavasoft)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [235216 2013-09-06] (McAfee, Inc.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22208 2013-10-23] (Microsoft Corporation)
S4 MSSQLServerADHelper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [44384 2010-12-10] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [280288 2013-10-23] (Microsoft Corporation)
S3 Zoho Assist; "C:\Users\Dave\Documents\ZohoMeeting\ZohoMeeting.exe" run -dir "C:\Users\Dave\Documents\ZohoMeeting"

==================== Drivers (Whitelisted) ====================

S3 CSRBC; C:\Windows\System32\Drivers\csrbcxp.sys [31744 2007-01-16] (CSR, plc)
S3 Dot4Scan; C:\Windows\System32\DRIVERS\Dot4Scan.sys [10752 2009-07-13] (Microsoft Corporation)
S3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36640 2010-08-23] ()
S3 HPFXBULK; C:\Windows\System32\drivers\hpfxbulk.sys [17432 2007-07-16] (Hewlett Packard)
S3 HPFXBULKLEDM; C:\Windows\System32\drivers\hppcbulkio.sys [20504 2010-10-03] (Hewlett Packard)
S3 HPFXFAX; C:\Windows\System32\drivers\hpfxfax.sys [20504 2007-07-16] (Hewlett Packard)
S3 LEqdUsb; C:\Windows\System32\Drivers\LEqdUsb.Sys [40720 2009-06-17] (Logitech, Inc.)
S3 LHidEqd; C:\Windows\System32\Drivers\LHidEqd.Sys [10384 2009-06-17] (Logitech, Inc.)
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [42592 2012-03-13] (http://libusb-win32.sourceforge.net)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [214696 2013-09-27] (Microsoft Corporation)
S3 NuidFltr; C:\Windows\System32\DRIVERS\NuidFltr.sys [14736 2009-06-01] (Microsoft Corporation)
R3 OEM13Vfx; C:\Windows\System32\DRIVERS\OEM13Vfx.sys [7424 2007-03-05] (EyePower Games Pte. Ltd.)
R3 OEM13Vid; C:\Windows\System32\DRIVERS\OEM13Vid.sys [235840 2008-05-28] (Creative Technology Ltd.)
S3 SIUSBXP; C:\Windows\System32\drivers\SiUSBXp.sys [14592 2012-09-14] (Silicon Laboratories)
S3 catchme; \??\C:\Users\Dave\AppData\Local\Temp\catchme.sys [X]
S3 dgderdrv; System32\drivers\dgderdrv.sys [X]
S4 LMIRfsClientNP; No ImagePath
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
U3 mbr; \??\C:\Users\Dave\AppData\Local\Temp\mbr.sys [X]

==================== NetSvcs (Whitelisted) ===================

==================== One Month Created Files and Folders ========

2014-02-10 21:09 - 2014-02-10 21:09 - 00029151 _____ () C:\Users\Dave\Desktop\FRST.txt
2014-02-10 21:08 - 2014-02-10 21:09 - 01139712 _____ (Farbar) C:\Users\Dave\Desktop\FRST.exe
2014-02-06 21:20 - 2014-02-06 21:20 - 00002014 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2014-02-05 21:39 - 2014-02-05 21:39 - 00023809 _____ () C:\Users\Dave\Desktop\dds.txt
2014-02-05 21:39 - 2014-02-05 21:39 - 00014314 _____ () C:\Users\Dave\Desktop\attach.txt
2014-02-05 21:31 - 2014-02-05 21:31 - 00688992 ____R (Swearware) C:\Users\Dave\Desktop\dds.scr
2014-02-01 16:09 - 2014-02-06 21:19 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2014-02-01 16:09 - 2014-02-01 16:09 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2014-01-22 19:46 - 2014-01-22 19:46 - 00000000 ____D () C:\c2da47e4a75ce49e1e1a58
2014-01-22 19:37 - 2013-11-26 03:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-22 19:30 - 2013-11-26 17:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-22 19:30 - 2013-11-26 17:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-22 19:30 - 2013-11-26 17:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-22 19:30 - 2013-11-26 17:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-22 19:30 - 2013-11-26 17:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-22 19:30 - 2013-11-26 17:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-22 19:30 - 2013-11-26 17:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-22 19:30 - 2013-11-26 02:10 - 02349056 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-22 19:23 - 2013-11-26 01:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-01-22 19:22 - 2013-11-26 01:22 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-01-22 19:22 - 2013-11-26 00:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-01-22 19:22 - 2013-11-26 00:52 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-01-22 19:22 - 2013-11-26 00:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-01-22 19:22 - 2013-11-26 00:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-01-22 19:22 - 2013-11-26 00:36 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-01-22 19:22 - 2013-11-26 00:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-01-22 19:22 - 2013-11-26 00:29 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-01-22 19:22 - 2013-11-26 00:29 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-01-22 19:22 - 2013-11-26 00:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-01-22 19:22 - 2013-11-26 00:13 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-22 19:22 - 2013-11-25 22:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-01-22 19:22 - 2013-11-25 22:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-01-22 19:22 - 2013-11-25 22:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-01-22 19:21 - 2013-11-26 02:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-01-22 19:21 - 2013-11-26 00:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-01-22 19:21 - 2013-11-25 23:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-01-22 19:21 - 2013-11-25 23:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll

==================== One Month Modified Files and Folders =======

2014-02-10 21:09 - 2014-02-10 21:09 - 00029151 _____ () C:\Users\Dave\Desktop\FRST.txt
2014-02-10 21:09 - 2014-02-10 21:08 - 01139712 _____ (Farbar) C:\Users\Dave\Desktop\FRST.exe
2014-02-10 21:09 - 2013-02-27 14:34 - 00000000 ____D () C:\FRST
2014-02-10 21:07 - 2010-01-24 22:29 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2557060353-3338967487-1032703843-1000UA.job
2014-02-10 21:07 - 2010-01-24 22:29 - 00000852 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2557060353-3338967487-1032703843-1000Core.job
2014-02-10 21:04 - 2010-01-24 15:18 - 01149379 _____ () C:\Windows\WindowsUpdate.log
2014-02-10 21:02 - 2010-01-30 21:19 - 00000882 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-10 20:54 - 2012-04-19 23:15 - 00000472 _____ () C:\Windows\Tasks\Ad-Aware Update (Weekly).job
2014-02-10 20:54 - 2012-03-31 11:00 - 00000830 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-10 20:54 - 2010-01-30 21:19 - 00000886 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-10 20:52 - 2013-02-07 23:51 - 00000000 ____D () C:\ProgramData\LogMeIn
2014-02-06 23:05 - 2009-04-14 13:42 - 00000000 ____D () C:\Users\Dave\Documents\PST Files
2014-02-06 21:21 - 2010-11-03 21:12 - 00000194 _____ () C:\Users\Dave\AppData\Local\CATSWord.ini
2014-02-06 21:20 - 2014-02-06 21:20 - 00002014 _____ () C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2014-02-06 21:19 - 2014-02-01 16:09 - 00000000 ____D () C:\Program Files\McAfee Security Scan
2014-02-05 22:53 - 2010-01-24 15:40 - 00133200 _____ () C:\Users\Dave\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-05 21:39 - 2014-02-05 21:39 - 00023809 _____ () C:\Users\Dave\Desktop\dds.txt
2014-02-05 21:39 - 2014-02-05 21:39 - 00014314 _____ () C:\Users\Dave\Desktop\attach.txt
2014-02-05 21:31 - 2014-02-05 21:31 - 00688992 ____R (Swearware) C:\Users\Dave\Desktop\dds.scr
2014-02-05 21:25 - 2012-03-31 11:00 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-02-05 21:25 - 2011-06-23 09:40 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-02-05 21:01 - 2011-01-06 08:02 - 00000000 ____D () C:\Users\Dave\Documents\Outlook Files
2014-02-01 16:42 - 2010-01-24 21:22 - 00000000 ____D () C:\Users\Dave\AppData\Roaming\Nuance
2014-02-01 16:42 - 2010-01-24 21:04 - 00000000 ____D () C:\Program Files\Nuance
2014-02-01 16:42 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Speech
2014-02-01 16:32 - 2010-03-02 19:13 - 00000000 ____D () C:\Program Files\Macromedia
2014-02-01 16:32 - 2010-03-02 19:13 - 00000000 ____D () C:\Program Files\Common Files\Macromedia
2014-02-01 16:30 - 2010-01-24 20:46 - 00000076 _____ () C:\Windows\QUICKEN.INI
2014-02-01 16:28 - 2010-01-24 21:29 - 00000000 ____D () C:\Program Files\Google
2014-02-01 16:13 - 2010-02-08 18:07 - 00000000 ____D () C:\Windows\Minidump
2014-02-01 16:09 - 2014-02-01 16:09 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2014-02-01 16:09 - 2010-02-08 11:23 - 00000000 ____D () C:\Users\Dave\AppData\Local\Adobe
2014-02-01 16:00 - 2010-01-24 21:30 - 00000000 ____D () C:\Users\Dave\AppData\Roaming\Mozilla
2014-02-01 15:48 - 2009-07-13 20:34 - 00013760 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-01 15:48 - 2009-07-13 20:34 - 00013760 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-01 15:46 - 2013-02-07 23:50 - 00000000 ____D () C:\Program Files\LogMeIn
2014-02-01 15:46 - 2011-08-17 04:29 - 00000000 ____D () C:\Users\Dave\AppData\Roaming\Dropbox
2014-02-01 15:45 - 2013-02-07 23:51 - 00086888 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIRfsClientNP.dll
2014-02-01 15:45 - 2013-02-07 23:51 - 00085832 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIinit.dll
2014-02-01 15:45 - 2013-02-07 23:51 - 00031560 _____ (LogMeIn, Inc.) C:\Windows\system32\LMIport.dll
2014-02-01 15:45 - 2012-08-30 14:19 - 00000000 ___RD () C:\Users\Dave\Google Drive
2014-02-01 15:45 - 2011-08-17 04:33 - 00000000 ___RD () C:\Users\Dave\Dropbox
2014-01-23 03:26 - 2009-07-13 20:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-01-23 03:26 - 2009-07-13 20:33 - 00497088 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-01-23 03:25 - 2012-04-21 18:33 - 00024636 _____ () C:\aaw7boot.log
2014-01-23 03:06 - 2013-08-27 16:12 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-23 03:01 - 2010-01-25 14:48 - 83425928 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-22 21:12 - 2011-08-17 04:30 - 00000000 ____D () C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-01-22 19:46 - 2014-01-22 19:46 - 00000000 ____D () C:\c2da47e4a75ce49e1e1a58
2014-01-18 23:32 - 2010-01-24 18:56 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-01-11 16:00 - 2010-01-24 21:29 - 00000000 ____D () C:\Users\Dave\AppData\Local\Google

Files to move or delete:
====================
C:\Users\Dave\AppData\Roaming\FrontEndCD.ini

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\system32\winlogon.exe => MD5 is legit
C:\Windows\system32\wininit.exe => MD5 is legit
C:\Windows\system32\svchost.exe => MD5 is legit
C:\Windows\system32\services.exe => MD5 is legit
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => MD5 is legit
C:\Windows\system32\rpcss.dll => MD5 is legit
C:\Windows\system32\Drivers\volsnap.sys => MD5 is legit

LastRegBack: 2014-02-01 23:53

==================== End Of Log ============================

 

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 10-02-2014 01
Ran by Dave at 2014-02-10 21:10:49
Running from C:\Users\Dave\Desktop
Boot Mode: Normal
==========================================================

==================== Security Center ========================

AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}

==================== Installed Programs ======================

µTorrent (Version: 3.1.3 - )
32 Bit HP CIO Components Installer (Version: 7.1.8 - Hewlett-Packard) Hidden
7-Zip 4.65 (Version:  - )
8500A909_eDocs (Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909_Help (Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909g (Version: 50.0.165.000 - Hewlett-Packard) Hidden
Acrobat.com (Version: 2.0.0 - Adobe Systems Incorporated) Hidden
Acrobat.com (Version: 2.0.0.0 - Adobe Systems Incorporated)
Ad-Aware (Version:  - Lavasoft)
Ad-Aware (Version: 8.0.7 - Lavasoft) Hidden
Adobe AIR (Version: 2.5.0.16600 - Adobe Systems Inc.)
Adobe AIR (Version: 2.5.0.16600 - Adobe Systems Inc.) Hidden
Adobe Flash Player 12 ActiveX (Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Flash Player 12 Plugin (Version: 12.0.0.44 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.05) (Version: 11.0.05 - Adobe Systems Incorporated)
Apple Application Support (Version: 2.3.2 - Apple Inc.)
Apple Mobile Device Support (Version: 6.0.1.3 - Apple Inc.)
Apple Software Update (Version: 2.1.3.127 - Apple Inc.)
AudibleManager (Version: 2006014688.48.56.8326378 - Audible, Inc.)
Bing Maps 3D (Version: 4.0.903.16005 - Microsoft Corporation)
Blues Chapter 16 - Full Version (Version:  - Music Unlimited Inc.)
Blues Chapter 17 - Full Version (Version:  - Music Unlimited Inc.)
Bonjour (Version: 3.0.0.10 - Apple Inc.)
BPD_DSWizards (Version: 1.00.0000 - Hewlett-Packard) Hidden
bpd_scan (Version: 3.00.0000 - Hewlett-Packard) Hidden
BPDSoftware (Version: 50.0.165.000 - Hewlett-Packard) Hidden
BPDSoftware_Ini (Version: 1.00.0000 - Hewlett-Packard) Hidden
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
Canon Camera WIA Driver (Version: 5.1 - Canon) Hidden
Canon EOS Kiss REBEL 300D WIA Driver (Version: 5.1 - Canon)
Canon MOV Decoder (Version: 1.5.0.7 - Canon Inc.)
Canon MOV Encoder (Version: 1.3.1.3 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (Version: 3.4.1.9 - Canon Inc.)
Canon RAW Codec (Version: 1.7.0.56 - Canon Inc.)
Canon RAW Image Task for ZoomBrowser EX (Version: 0.9.0 - Canon)
Canon RemoteCapture Task for ZoomBrowser EX (Version: 0.9.0 - Canon)
Canon Utilities CameraWindow (Version: 7.4.0.7 - Canon Inc.)
Canon Utilities CameraWindow DC 8 (Version: 8.1.0.11 - Canon Inc.)
Canon Utilities Digital Photo Professional 3.8 (Version: 3.8.0.0 - Canon Inc.)
Canon Utilities File Viewer Utility 1.3 (Version: 1.3.2 - Canon)
Canon Utilities MyCamera (Version: 7.3.0.5 - Canon Inc.)
Canon Utilities PhotoStitch 3.1 (Version: 3.1.10 - Canon)
Canon Utilities RemoteCapture 2.7 (Version: 2.7.5 - Canon)
Canon Utilities ZoomBrowser EX (Version: 6.5.1.15 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (Version: 1.3.0.4 - Canon Inc.)
CATS Microsoft Outlook Plug-in v1.95 (Version:  - CATS Software, Inc.)
CATS Microsoft Word Plug-in v1.35 (Version:  - CATS Software, Inc.)
CDDRV_Installer (Version: 4.60 - Logitech) Hidden
Chap 1 - How to Match Chords up with any Melody (Version:  - Music Unlimited Inc.)
Chap 1 - How to play fantastic solos on the keyboard (Version:  - Music Unlimited Inc.)
Chap 2 - How to Match Chords up with any Melody (Version:  - Music Unlimited Inc.)
Chap 3 - How to Match Chords up with any Melody (Version:  - Music Unlimited Inc.)
Chord Voicings Vault (Version: v. 1.1 - Music Unlimited Inc.)
Cobian Backup 10 (Version:  - )
Combined Community Codec Pack 2011-07-30 (Version: 2011.07.30.0 - CCCP Project)
CrossLoop 2.72 (Version: 2.72 - CrossLoop, Inc.)
Dassault Systemes Software Prerequisites x86 (Version: 8.1.3 - Dassault Systemes)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (Version:  - Microsoft)
Dell Driver Download Manager (HKCU Version: 2.0.0.0 - Dell Inc.)
Destinations (Version: 140.0.77.000 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden
Digsby (Version:  - dotSyntax, LLC)
Diminished 7th Chords - Chapter 1 (Version:  - Music Unlimited Inc.)
DocMgr (Version: 130.0.000.000 - Hewlett-Packard) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Dropbox (HKCU Version: 2.4.11 - Dropbox, Inc.)
Duplicate File Finder (Version:  - )
Ear Training 101 V4 Full Version (Version: v. 4.0 - Music Unlimited Inc.)
erLT (Version: 1.20.0137 - Logitech, Inc.) Hidden
ESET Online Scanner v3 (Version:  - )
Facebook Plug-In (HKCU Version:  - Facebook, Inc.)
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
ffdshow [rev 2527] [2008-12-19] (Version: 1.0 - )
File Viewer Utility 1.3.2 (Version: 1.3.2 - Canon) Hidden
GOM Player (Version: 2.1.49.5139 - Gretech Corporation)
Google Advertising Cookie Opt-out (Version: 1.0.1.0 - Google Inc)
Google Apps Sync™ for Microsoft Outlook® 3.2.353.947 (Version: 3.2.353.947 - Google, Inc.)
Google Calendar Sync (Version:  - )
Google Chrome (HKCU Version: 32.0.1700.107 - Google Inc.)
Google Cloud Connect for Microsoft Office (Version: 2.0.2662.0553 - Google, Inc)
Google Drive (Version: 1.13.5782.599 - Google, Inc.)
Google Talk (remove only) (HKCU Version:  - )
Google Talk Plugin (Version: 4.9.1.16010 - Google)
Google Toolbar for Internet Explorer (Version: 1.0.0 - Google Inc.) Hidden
Google Toolbar for Internet Explorer (Version: 7.5.4805.320 - Google Inc.)
Google Update Helper (Version: 1.3.22.3 - Google Inc.) Hidden
GoToMeeting 5.1.0.880 (HKCU Version: 5.1.0.880 - CitrixOnline)
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
gwabbit (Version: 1.2.11 - gwabbit)
Hewlett-Packard ACLM.NET v1.1.0.0 (Version: 1.00.0000 - Hewlett-Packard) Hidden
HP Customer Participation Program 13.0 (Version: 13.0 - HP)
HP Document Manager 2.0 (Version: 2.0 - HP)
HP FWUpdateEDO3 (Version: 1.0.0.0 - Hewlett-Packard Company)
HP Imaging Device Functions 13.0 (Version: 13.0 - HP)
HP LaserJet M1522 MFP Series 4.2 (Version: 4.2 - HP)
HP LaserJet Professional CP1520 Series (Version:  - Hewlett-Packard)
HP Photosmart Essential 3.5 (Version: 3.5 - HP)
HP Product Detection (Version: 11.14.0001 - HP)
HP Smart Web Printing 4.60 (Version: 4.60 - HP)
HP Solution Center 13.0 (Version: 13.0 - HP)
HP Update (Version: 5.005.000.002 - Hewlett-Packard)
HPDiagnosticAlert (Version: 1.00.0000 - Microsoft) Hidden
HPLaserJetHelp_LearnCenter (Version: 1.02.0000 - Hewlett-Packard)
HPLJUT (Version: 1.00.0012 - HP) Hidden
hppCP1520LaserJetService (Version: 001.008.00477 - Hewlett-Packard) Hidden
hppFaxDrvM1522 (Version: 003.100.00001 - Hewlett-Packard) Hidden
hppFaxUtility (Version: 000.105.00107 - Hewlett-Packard) Hidden
hppFonts (Version: 001.001.00056 - Hewlett-Packard) Hidden
HPPhotoSmartDiscLabelContent1 (Version: 2.04.0000 - Hewlett-Packard) Hidden
HPPhotosmartEssential (Version: 2.04.0000 - Hewlett-Packard) Hidden
hppLaserJetService (Version: 002.015.00599 - Hewlett-Packard) Hidden
hppLJM1522 (Version: 002.101.00002 - Hewlett-Packard) Hidden
hppManualsM1522 (Version: 002.103.00002 - Hewlett-Packard) Hidden
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
hppScanTo (Version: 002.102.00003 - Hewlett-Packard) Hidden
hppSendFaxM1522 (Version: 003.000.00001 - Hewlett-Packard) Hidden
hppTLBXFXCP1520 (Version: 001.012.00948 - Hewlett-Packard) Hidden
hppTLBXFXM1522 (Version: 001.005.00007 - Hewlett-Packard) Hidden
hppusgM1522 (Version: 000.000.00004 - Hewlett-Packard) Hidden
hpzTLBXFX (Version: 006.015.01163 - Hewlett-Packard) Hidden
InstaCodecs (Version: 1.0 - )
Intel® Graphics Media Accelerator Driver (Version: 8.15.10.1930 - Intel Corporation)
Intel® TV Wizard (Version:  - Intel Corporation)
IrfanView (remove only) (Version: 4.28 - Irfan Skiljan)
iTunes (Version: 11.0.1.12 - Apple Inc.)
Java 7 Update 15 (Version: 7.0.150 - Oracle)
Java Auto Updater (Version: 2.1.9.0 - Sun Microsystems, Inc.) Hidden
Jawbone Updater (Version: 0.1 - Aliph)
Keyboard Lock Status (Version: 1.00.0000 - Logitech)
KhalInstallWrapper (Version: 2.00.0000 - Logitech) Hidden
Laptop Integrated Webcam Driver (1.01.01.0529)   (Version:  - )
Logitech Harmony Remote Software (Version: 1.0.110307 - Logitech)
Logitech Harmony Remote Software 7 (Version: 7.7.0.0 - Logitech)
Logitech Harmony Remote Software 7 (Version: 7.7.0.0 - Logitech) Hidden
Logitech SetPoint (Version: 4.80 - Logitech)
LogMeIn (Version: 4.1.2651 - LogMeIn, Inc.)
Macromedia Extension Manager (Version: 1.7.240 - Macromedia, Inc.)
magicJack (HKCU Version: 2.0.5703.3988 - magicJack L.P.)
magicJack Outlook Add-In 1.0.3.521 (HKCU Version: 1.0.3.521 - magicJack)
Malwarebytes Anti-Malware version 1.70.0.1100 (Version: 1.70.0.1100 - Malwarebytes Corporation)
MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden
McAfee Security Scan Plus (Version: 3.8.130.10 - McAfee, Inc.)
MediaMonkey 3.2 (Version: 3.2 - Ventis Media Inc.)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6012.5000 - Microsoft Corporation) Hidden
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (Version: 3.5.30730.0 - Microsoft Corporation)
Microsoft Default Manager (Version: 2.1.54.0 - Microsoft Corporation) Hidden
Microsoft IntelliPoint 8.2 (Version: 8.20.468.0 - Microsoft Corporation)
Microsoft IntelliPoint 8.2 (Version: 8.20.468.0 - Microsoft Corporation) Hidden
Microsoft IntelliType Pro 8.2 (Version: 8.20.469.0 - Microsoft Corporation)
Microsoft IntelliType Pro 8.2 (Version: 8.20.469.0 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Security Client (Version: 4.4.0304.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (Version: 4.4.304.0 - Microsoft Corporation)
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft SQL Server 2005 (Version:  - Microsoft Corporation)
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ) (Version: 9.4.5000.00 - Microsoft Corporation) Hidden
Microsoft SQL Server 2005 Tools Express Edition (Version: 9.4.5000.00 - Microsoft Corporation) Hidden
Microsoft SQL Server Native Client (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server Setup Support Files (English) (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft SQL Server VSS Writer (Version: 9.00.5000.00 - Microsoft Corporation)
Microsoft UI Engine (Version: 4.0.0318.1 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (Version: 3.0.5305.0 - Microsoft Corp.)
MobileMe Control Panel (Version: 3.1.8.0 - Apple Inc.)
Mozilla Firefox 19.0.2 (x86 en-US) (Version: 19.0.2 - Mozilla)
MPEG2 Codec(libmpeg2/mad) (Version:  - )
MPM (Version: 1.00.0000 - Hewlett-Packard)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (Version: 4.20.9818.0 - Microsoft Corporation)
Network (Version: 130.0.579.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 13.0 (Version: 13.0 - HP)
Officejet Pro 8500 A909 Series (Version: 13.0 - HP)
OGA Notifier 2.0.0048.0 (Version: 2.0.0048.0 - Microsoft Corporation) Hidden
PhotoStitch (Version: 3.1.10 - Canon) Hidden
Picasa 3 (Version: 3.8 - Google, Inc.)
Product_Min_QFolder (Version: 1.00.0000 - Hewlett-Packard) Hidden
ProductContext (Version: 50.0.165.000 - Hewlett-Packard) Hidden
QuickBooks (Version: 20.0.4001.807 - Intuit Inc.) Hidden
QuickBooks Pro 2010 (Version: 20.0.4001.807 - Intuit Inc.)
QuickTime (Version: 7.73.80.64 - Apple Inc.)
RAW Image Task (Version: 0.9.0 - Canon) Hidden
Remote Control USB Driver (Version: 2.3.2.317 - )
RemoteCapture 2.7.5 (Version: 2.7.5 - Canon) Hidden
RemoteCapture Task (Version: 0.9.0 - Canon) Hidden
SAMSUNG USB Driver for Mobile Phones (Version: 1.3.950.0 - SAMSUNG Electronics Co., Ltd.)
Scan (Version: 140.0.80.000 - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (Version:  - Microsoft) Hidden
Shared Add-in Extensibility Update for Microsoft .NET Framework 2.0 (KB908002) (Version: 1.0.0 - Microsoft)
Shared Add-in Support Update for Microsoft .NET Framework 2.0 (KB908002) (Version: 1.0.0 - Microsoft)
Skype Click to Call (Version: 6.6.11664 - Skype Technologies S.A.)
Skype™ 6.3 (Version: 6.3.105 - Skype Technologies S.A.)
SmartWebPrinting (Version: 140.0.186.000 - Hewlett-Packard) Hidden
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Songwriting, Chapter 1 (Version:  - Music Unlimited Inc.)
Spotify (HKCU Version: 0.8.5.1333.g822e0de8 - Spotify AB)
Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden
Telephone Plug-in (Version: 1.0.2.0 - Panasonic)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2810071) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2494150) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2826026) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2810072) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (Version:  - Microsoft)
Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition (Version:  - Microsoft)
Vista Profile Pack (Version: 2.0.13.0 - CSR plc)
Visual C++ 8.0 ATL (x86) WinSXS MSM (Version: 8.0.50727.762 - Microsoft Corporation) Hidden
Visual C++ 8.0 CRT (x86) WinSXS MSM (Version: 8.0.50727.762 - Microsoft Corporation) Hidden
Visual C++ 9.0 Runtime for Dragon NaturallySpeaking (Version: 11.0.0 - Nuance Communications Inc.)
Visual C++ Runtime for Dragon NaturallySpeaking (Version: 10.00.200.184 - Nuance Communications Inc.)
Visual Studio Tools for the Office system 3.0 Runtime (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (Version: 9.0.30729 - Microsoft Corporation) Hidden
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (Version: 1 - Microsoft Corporation)
VLC media player 1.1.7 (Version: 1.1.7 - VideoLAN)
WebEx (HKCU Version:  - Cisco WebEx LLC)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
WinDirStat 1.1.2 (HKCU Version:  - )
Windows Migration Assistant (Version: 1.0.0.32 - Apple Inc.)
WinRAR archiver (Version:  - )
Yahoo! Toolbar (Version:  - )
Zoho CRM Plug-in for Microsoft Outlook (Version: 2.1.1 - ZOHO)

==================== Restore Points  =========================

21-12-2013 21:20:51 Windows Update
25-12-2013 05:37:10 Windows Update
04-01-2014 02:02:23 Windows Update
10-01-2014 06:04:54 Windows Update
10-01-2014 11:00:12 Windows Update
23-01-2014 03:18:29 Windows Modules Installer
23-01-2014 03:42:40 Windows Update
23-01-2014 11:00:14 Windows Update
01-02-2014 23:52:47 Windows Update
02-02-2014 00:25:02 Removed Google Earth Plug-in.
02-02-2014 00:25:58 Removed Google Earth Plug-in.
02-02-2014 00:28:37 Removed Quicken 2009
02-02-2014 00:30:52 Removed Macromedia Dreamweaver 8
02-02-2014 00:33:17 Removed Dragon NaturallySpeaking 11.
02-02-2014 00:42:38 Removed Canon PhotoRecord
06-02-2014 05:13:11 Windows Update

==================== Hosts content: ==========================

2009-07-13 18:04 - 2013-03-01 18:58 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {681A442A-CD3C-4735-BD58-70815B9B4EF6} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2557060353-3338967487-1032703843-1000UA => C:\Users\Dave\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-24] (Google Inc.)
Task: {74D6395F-2747-4301-A3C8-B3B4ED3E265F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {781021EC-E253-4760-A1DB-BC245FCD46E8} - System32\Tasks\HPLJCustParticipation => C:\Program Files\HP\HPLJUT\HPLJUTSCH.exe [2010-09-22] (Hewlett Packard)
Task: {A3612A83-6749-4785-B962-DE52C379D728} - System32\Tasks\Ad-Aware Update (Weekly) => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe [2009-07-03] (Lavasoft)
Task: {B3C5FDE4-3B3C-4A9C-95A2-EF50FB794293} - System32\Tasks\{A19ABCA6-57E4-4A0F-A3BD-16B1F6AA8D44} => C:\Users\Dave\Desktop\Setup.exe
Task: {CC99A470-44BD-4680-97B2-105A780BBCB1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-30] (Google Inc.)
Task: {CD094310-F3A3-4281-9A85-FE989962D47C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2010-01-30] (Google Inc.)
Task: {D4808367-DBA1-4597-B7AB-17C0C57CD51C} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => c:\Program Files\Microsoft IntelliType Pro\IType.exe [2011-08-10] (Microsoft Corporation)
Task: {DEE5E9F9-E8F7-428E-A7F5-2580CE368F2C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-05] (Adobe Systems Incorporated)
Task: {E1BD2D34-C5B3-4A41-8988-51EB74E249DA} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation)
Task: {E63B950C-14F3-4476-A1F3-04056B45C754} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2557060353-3338967487-1032703843-1000Core => C:\Users\Dave\AppData\Local\Google\Update\GoogleUpdate.exe [2010-01-24] (Google Inc.)
Task: {ECCF33F7-5557-4865-8169-7F22FE794AEA} - System32\Tasks\{2A9CC12E-C53B-41A2-8178-931CB487638F} => C:\Program Files\Skype\Phone\Skype.exe [2013-03-01] (Skype Technologies S.A.)
Task: C:\Windows\Tasks\Ad-Aware Update (Weekly).job => C:\Program Files\Lavasoft\Ad-Aware\Ad-AwareAdmin.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2557060353-3338967487-1032703843-1000Core.job => C:\Users\Dave\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2557060353-3338967487-1032703843-1000UA.job => C:\Users\Dave\AppData\Local\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2007-08-31 08:59 - 2007-08-31 08:59 - 00036864 _____ () C:\Program Files\HP\HP UT\bin\hppusg.exe
2007-08-31 08:59 - 2007-08-31 08:59 - 00057344 _____ () C:\Program Files\HP\HP UT\bin\HPUsageTracking.dll
2007-08-31 08:59 - 2007-08-31 08:59 - 00065536 _____ () C:\Program Files\HP\HP UT\bin\HPTools.dll
2007-08-31 08:59 - 2007-08-31 08:59 - 00114688 _____ () C:\Program Files\HP\HP UT\bin\HPToolkit.dll
2007-08-31 08:59 - 2007-08-31 08:59 - 00036864 _____ () C:\Program Files\HP\HP UT\bin\Enumeration.dll
2010-10-25 14:36 - 2010-10-25 14:36 - 00119864 _____ () C:\Program Files\HP\ToolboxFX\bin\nativeutils.dll
2011-06-24 21:56 - 2011-06-24 21:56 - 00087328 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2011-06-24 21:56 - 2011-06-24 21:56 - 01241888 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2010-04-20 13:58 - 2009-07-20 11:27 - 00017936 _____ () C:\Program Files\Logitech\SetPoint\khalwrapper.dll
2013-10-18 15:55 - 2013-10-18 15:55 - 25100288 _____ () C:\Users\Dave\AppData\Roaming\Dropbox\bin\libcef.dll
2014-02-01 15:43 - 2014-02-01 15:43 - 00098816 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32api.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00110080 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\pywintypes27.dll
2014-02-01 15:43 - 2014-02-01 15:43 - 00364544 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\pythoncom27.dll
2014-02-01 15:43 - 2014-02-01 15:43 - 00044032 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\_socket.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 01153024 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\_ssl.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00320512 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32com.shell.shell.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00711680 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\_hashlib.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 01175040 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\wx._core_.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00805888 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\wx._gdi_.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00811008 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\wx._windows_.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 01062400 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\wx._controls_.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00735232 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\wx._misc_.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00128512 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\_elementtree.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00127488 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\pyexpat.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00557056 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\pysqlite2._sqlite.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00087040 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\_ctypes.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00119808 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32file.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00108544 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32security.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00018432 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32event.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00038912 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32inet.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00122368 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\wx._wizard.pyd
2014-02-01 15:44 - 2014-02-01 15:44 - 00026624 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\_multiprocessing.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00070656 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\wx._html2.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00010240 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\select.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00686080 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\unicodedata.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00025600 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32pdh.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00521680 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\windows._lib_cacheinvalidation.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00011264 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32crypt.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00024064 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32pipe.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00035840 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32process.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00017408 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32profile.pyd
2014-02-01 15:43 - 2014-02-01 15:43 - 00022528 _____ () C:\Users\Dave\AppData\Local\Temp\_MEI58442\win32ts.pyd
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2010-10-20 15:45 - 2010-10-20 15:45 - 08801120 _____ () C:\Program Files\microsoft office\Office14\1033\GrooveIntlResource.dll
2014-02-01 16:36 - 2014-01-22 21:56 - 00715544 _____ () C:\Users\Dave\AppData\Local\Google\Chrome\Application\32.0.1700.102\libglesv2.dll
2014-02-01 16:36 - 2014-01-22 21:56 - 00100120 _____ () C:\Users\Dave\AppData\Local\Google\Chrome\Application\32.0.1700.102\libegl.dll
2014-02-01 16:36 - 2014-01-22 21:56 - 04055320 _____ () C:\Users\Dave\AppData\Local\Google\Chrome\Application\32.0.1700.102\pdf.dll
2014-02-01 16:36 - 2014-01-22 21:57 - 00399640 _____ () C:\Users\Dave\AppData\Local\Google\Chrome\Application\32.0.1700.102\ppGoogleNaClPluginChrome.dll
2014-02-01 16:36 - 2014-01-22 21:55 - 01634584 _____ () C:\Users\Dave\AppData\Local\Google\Chrome\Application\32.0.1700.102\ffmpegsumo.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\office14\Cultures\office.odf

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\Temp:0FF263E8
AlternateDataStreams: C:\ProgramData\Temp:F35A93AD
AlternateDataStreams: C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Welcome!  LinkedIn.website:TASKICON_0favicon_ie9-269793901
AlternateDataStreams: C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Welcome!  LinkedIn.website:TASKICON_1favicon_ie9-183076185
AlternateDataStreams: C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Welcome!  LinkedIn.website:TASKICON_2favicon_ie9-221541860
AlternateDataStreams: C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Welcome!  LinkedIn.website:TASKICON_3favicon_ie9-419618610
AlternateDataStreams: C:\Users\Dave\AppData\Roaming\Microsoft\Windows\Start Menu\Welcome!  LinkedIn.website:TASKICON_4favicon_ie9-1153463527

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Lavasoft Ad-Aware Service => ""="Service"

==================== Disabled items from MSCONFIG ==============

==================== Faulty Device Manager Devices =============

Name: Officejet Pro 8500 A909g
Description: Officejet Pro 8500 A909g
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Officejet Pro 8500 A909g
Description: Officejet Pro 8500 A909g
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: HP LaserJet CP1525nw
Description: HP LaserJet CP1525nw
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: Hewlett-Packard
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet Pro 8500 A909g
Description: Officejet Pro 8500 A909g
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

==================== Event log errors: =========================

Application errors:
==================
Error: (02/07/2014 05:19:11 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10468

Error: (02/07/2014 05:19:11 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10468

Error: (02/07/2014 05:19:11 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (02/07/2014 05:19:08 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8175

Error: (02/07/2014 05:19:08 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8175

Error: (02/07/2014 05:19:08 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (02/07/2014 05:19:07 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 6927

Error: (02/07/2014 05:19:07 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 6927

Error: (02/07/2014 05:19:07 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (02/07/2014 05:19:06 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5460

System errors:
=============
Error: (02/10/2014 08:52:59 PM) (Source: Service Control Manager) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Google Software Updater service to connect.

Error: (02/10/2014 08:53:00 PM) (Source: DCOM) (User: )
Description: 1053gusvc{89DAE4CD-9F17-4980-902A-99BA84A8F5C8}

Error: (02/10/2014 08:52:21 PM) (Source: DCOM) (User: )
Description: {1F87137D-0E7C-44D5-8C73-4EFFB68962F2}

Error: (02/10/2014 08:52:16 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the ShellHWDetection service.

Error: (02/06/2014 09:15:15 PM) (Source: Server) (User: )
Description: The server could not bind to the transport \Device\NetBT_Tcpip_{79EE02E4-39BE-4C39-881D-F5B949F8BF5E} because another computer on the network has the same name.  The server could not start.

Error: (02/06/2014 09:14:43 PM) (Source: DCOM) (User: )
Description: {1F87137D-0E7C-44D5-8C73-4EFFB68962F2}

Error: (02/05/2014 09:07:02 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service.

Error: (02/05/2014 09:04:28 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the NlaSvc service.

Error: (02/05/2014 09:03:34 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the IKEEXT service.

Error: (02/05/2014 09:03:04 PM) (Source: Service Control Manager) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Appinfo service.

Microsoft Office Sessions:
=========================
Error: (02/07/2014 05:19:11 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 10468

Error: (02/07/2014 05:19:11 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 10468

Error: (02/07/2014 05:19:11 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (02/07/2014 05:19:08 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8175

Error: (02/07/2014 05:19:08 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8175

Error: (02/07/2014 05:19:08 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (02/07/2014 05:19:07 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 6927

Error: (02/07/2014 05:19:07 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 6927

Error: (02/07/2014 05:19:07 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (02/07/2014 05:19:06 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 5460

==================== Memory info ===========================

Percentage of memory in use: 58%
Total physical RAM: 3062.43 MB
Available physical RAM: 1275.89 MB
Total Pagefile: 6123.15 MB
Available Pagefile: 3383.03 MB
Total Virtual: 2047.88 MB
Available Virtual: 1920.45 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:288.29 GB) (Free:108.84 GB) NTFS ==>[Drive with boot components (obtained from BCD)]

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: A42D04A3)
Partition 1: (Not Active) - (Size=39 MB) - (Type=DE)
Partition 2: (Active) - (Size=288 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=10 GB) - (Type=DB)

==================== End Of Log ============================


Thanks, Dpennmaas

#8 Juliet

Juliet

    SuperHelper

  • Retired Classroom Teacher
  • 7,686 posts
  • Interests:Boo!....
  • MVP

Posted 11 February 2014 - 05:34 AM

I don't see that I have utorrent installed on my computer (I couldn't find it with control panel)

 
It showed in the logs,  let me know if you want me to take it out?
 
~~~~~~~~~~~~~~~


Open notepad. Please copy the contents of the quote box below. To do this highlight the contents of the box and right click on it and select copy.
Paste this into the open notepad. save it to the Desktop as fixlist.txt
NOTE. It's important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work.
It needs to be saved Next to the "Farbar Recovery Scan Tool" (FRST) program (If asked to overwrite existing one please allow)
 

start
HKLM\...\Run: [] - [X]
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
ShellExecuteHooks: - {AEB6717E-7E19-11d0-97EE-00C04FD91972} - No File [ ]
FF SearchPlugin: C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default\searchplugins\daemon-search.xml
FF Extension: No Name - C:\Users\Dave\AppData\Roaming\Mozilla\Firefox\Profiles\qln39cgr.default\Extensions\staged [2013-12-11]
CHR HomePage: hxxp://search.conduit.com/?ctid=CT3220468&SearchSource=48
S3 catchme; \??\C:\Users\Dave\AppData\Local\Temp\catchme.sys [X]
U3 mbr; \??\C:\Users\Dave\AppData\Local\Temp\mbr.sys [X]
AlternateDataStreams: C:\ProgramData\Temp:0FF263E8
AlternateDataStreams: C:\ProgramData\Temp:F35A93AD
end



Run FRST/FRST64 and press the Fix button just once and wait.
If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run.
When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.


NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to the operating system

**********************

-AdwCleaner-by Xplode

Click on this link to download : ADWCleaner
Click on ONE of the Two Blue Download Now buttons That have a blue arrow beside them and save it to your desktop.

Do not click on any links in the top Advertisment.


adwcleaner_download.png
  • Close all open programs and internet browsers.
  • Double click on AdwCleaner.exe to run the tool.
  • Click on Scan.
  • After the scan is complete click on "Clean"
  • Confirm each time with Ok.
  • Your computer will be rebooted automatically. A text file will open after the restart.
  • Please post the content of that logfile with your next answer.
  • You can find the logfile at C:\AdwCleaner[S1].txt as well.
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~


thisisujrt.gif
Please download Junkware Removal Tool to your desktop.
  • Shut down your protection software now to avoid potential conflicts.
  • Run the tool by double-clicking it. If you are using Windows Vista, 7, or 8; instead of double-clicking, right-mouse click JRT.exe and select "Run as Administrator".
  • The tool will open and start scanning your system.
  • Please be patient as this can take a while to complete depending on your system's specifications.
  • On completion, a log (JRT.txt) is saved to your desktop and will automatically open.
  • Post the contents of JRT.txt into your next message.
************************
In your next reply please post:
Fixlog.txt
C:\AdwCleaner[S1].txt
JRT.txt
Sometimes the angels fly close enough to you that you can hear the flutter of their wings...


MS - MVP Consumer Security 2009 - 2016, WI-MVP 2016-17
Antivirus Scanners Online Scanners Firewalls Slow Computer??

#9 dpennmaas

dpennmaas

    Authentic Member

  • Authentic Member
  • PipPip
  • 100 posts

Posted 13 February 2014 - 12:43 PM

Hi Juliet,

 

I've been trying to follow your instructions but my computer is not cooperating. It won't save the Notepad files when I do a "save as". And now I have just a dark screen... I do cntrl, alt, delete and start task manager but I can't seem to get out of the dark screen mode (where I can't see anything). Do you have any coaching for me. I'm wondering if I just scrape everything off of the old computer so that it gets back to running at a decent speed. I will be mostly using it as a web browser. Your thoughts are appreciated.

 

Dave


Thanks, Dpennmaas

#10 Juliet

Juliet

    SuperHelper

  • Retired Classroom Teacher
  • 7,686 posts
  • Interests:Boo!....
  • MVP

Posted 13 February 2014 - 02:21 PM

scrape everything off ?, reinstall?


OK
Try rebooting the machine to see if that makes any difference.

IF not, boot into safe mode and try to run the instructions from there.
http://www.sevenforu...ot-options.html
follow the instructions here to boot into safe mode, scroll down to #3

See if we can get it to run that way, then reboot back into normal mode and post the logs.
Sometimes the angels fly close enough to you that you can hear the flutter of their wings...


MS - MVP Consumer Security 2009 - 2016, WI-MVP 2016-17
Antivirus Scanners Online Scanners Firewalls Slow Computer??

#11 Juliet

Juliet

    SuperHelper

  • Retired Classroom Teacher
  • 7,686 posts
  • Interests:Boo!....
  • MVP

Posted 18 February 2014 - 10:09 AM

Due to the lack of feedback this Topic is closed.
Sometimes the angels fly close enough to you that you can hear the flutter of their wings...


MS - MVP Consumer Security 2009 - 2016, WI-MVP 2016-17
Antivirus Scanners Online Scanners Firewalls Slow Computer??

#12 Juliet

Juliet

    SuperHelper

  • Retired Classroom Teacher
  • 7,686 posts
  • Interests:Boo!....
  • MVP

Posted 18 February 2014 - 10:09 AM

Due to inactivity this topic will be closed.
If you need help please start a new thread.

New members follow the instructions here http://forums.whatth...ed_t106388.html and start a new topic
Sometimes the angels fly close enough to you that you can hear the flutter of their wings...


MS - MVP Consumer Security 2009 - 2016, WI-MVP 2016-17
Antivirus Scanners Online Scanners Firewalls Slow Computer??

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users