Hi
My parents laptop was infected by TROJAN.RANSOM.BV.
I used system restore which seems to have cleared it but would like to be given a clean bill of health please.
Thanks
Running W7
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Database version: v2013.11.05.03
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16721
nanaginge :: NANAGINGE-TOSH [administrator]
05/11/2013 13:22:27
mbam-log-2013-11-05 (13-22-27).txt
Scan type: Quick scan
Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
Scan options disabled: P2P
Objects scanned: 202611
Time elapsed: 8 minute(s), 14 second(s)
Memory Processes Detected: 0
(No malicious items detected)
Memory Modules Detected: 0
(No malicious items detected)
Registry Keys Detected: 0
(No malicious items detected)
Registry Values Detected: 0
(No malicious items detected)
Registry Data Items Detected: 0
(No malicious items detected)
Folders Detected: 0
(No malicious items detected)
Files Detected: 0
(No malicious items detected)
(end)
DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16720
Run by nanaginge at 13:31:53 on 2013-11-05
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.44.1033.18.1787.752 [GMT 0:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {641105E6-77ED-3F35-A304-765193BCB75F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Microsoft Security Essentials *Enabled/Updated* {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\ToshibaServiceStation.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\system32\TODDSrv.exe
C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Microsoft Security Client\NisSrv.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files (x86)\Nero\Update\NASvc.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxps://www.google.co.uk/
uDefault_Page_URL = hxxp://toshiba.msn.com
uURLSearchHooks: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - <orphaned>
mWinlogon: Userinit = userinit.exe,
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - <orphaned>
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: TOSHIBA Media Controller Plug-in: {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\Toshiba\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
dRun: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{26EC3EB8-97F3-4D9A-8401-434C0149835B} : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{26EC3EB8-97F3-4D9A-8401-434C0149835B}\244584572633D243253393 : DHCPNameServer = 192.168.1.254 192.168.1.254
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - <orphaned>
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - <orphaned>
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - <orphaned>
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
x64-Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t
x64-Run: [TPwrMain] C:\Program Files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE
x64-Run: [SmoothView] C:\Program Files (x86)\Toshiba\SmoothView\SmoothView.exe
x64-Run: [00TCrdMain] C:\Program Files (x86)\TOSHIBA\FlashCards\TCrdMain.exe
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [TosReelTimeMonitor] C:\Program Files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
x64-Run: [TosNC] C:\Program Files (x86)\Toshiba\BulletinBoard\TosNcCore.exe
x64-Run: [Toshiba TEMPRO] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
x64-Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe
x64-Run: [TosVolRegulator] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe
x64-Run: [MSC] "C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - <orphaned>
x64-Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - <orphaned>
x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\nanaginge\AppData\Roaming\Mozilla\Firefox\Profiles\5e5h98zi.default\
FF - prefs.js: browser.startup.homepage - hxxps://www.google.co.uk/
FF - plugin: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2013-6-18 247216]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2013-10-10 144152]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2010-4-6 202752]
R2 cfWiMAXService;ConfigFree WiMAX Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFIWmxSvcs64.exe [2010-1-28 249200]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
R2 ConfigFree Service;ConfigFree Service;C:\Program Files (x86)\Toshiba\ConfigFree\CFSvcs.exe [2009-3-10 46448]
R2 NAUpdate;Nero Update;C:\Program Files (x86)\Nero\Update\NASvc.exe [2013-7-18 762192]
R2 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2013-6-18 139616]
R2 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [2011-2-10 112080]
R3 FwLnk;FwLnk Driver;C:\Windows\System32\drivers\FwLnk.sys [2010-4-6 9216]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2011-4-20 169584]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\NisSrv.exe [2013-8-12 366600]
R3 TMachInfo;TMachInfo;C:\Program Files (x86)\Toshiba\TOSHIBA Service Station\TMachInfo.exe [2010-4-6 54136]
R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-2-5 137560]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-9-5 171680]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2013-11-1 19456]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-4-6 232992]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-11-1 57856]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-11-1 1255736]
.
=============== Created Last 30 ================
.
2013-11-05 12:59:18 10280728 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{37D64927-3A9A-4170-BC7F-9DECD57FBE44}\mpengine.dll
2013-11-04 16:27:37 -------- d-----w- C:\Users\nanaginge\AppData\Roaming\MusicBrainz
2013-11-04 16:27:37 -------- d-----w- C:\Users\nanaginge\AppData\Local\cache
2013-11-04 16:27:22 -------- d-----w- C:\Program Files (x86)\MusicBrainz Picard
2013-11-04 15:22:48 -------- d-----w- C:\Users\nanaginge\AppData\Local\Apple Computer
2013-11-04 15:21:17 -------- d-----w- C:\Program Files\iPod
2013-11-04 15:21:15 -------- d-----w- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-11-04 15:21:15 -------- d-----w- C:\Program Files (x86)\iTunes
2013-11-04 15:20:18 -------- d-----w- C:\Users\nanaginge\AppData\Local\Apple
2013-11-04 15:19:33 -------- d-----w- C:\Program Files\Bonjour
2013-11-04 15:19:33 -------- d-----w- C:\Program Files (x86)\Bonjour
2013-11-03 17:41:43 -------- d-----w- C:\Users\nanaginge\AppData\Local\Microsoft Games
2013-11-02 16:13:39 -------- d-----w- C:\Users\nanaginge\AppData\Roaming\SUPERAntiSpyware.com
2013-11-02 16:12:44 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com
2013-11-02 16:12:44 -------- d-----w- C:\Program Files\SUPERAntiSpyware
2013-11-02 15:51:56 -------- d-----w- C:\Users\nanaginge\AppData\Roaming\Malwarebytes
2013-11-02 15:51:40 -------- d-----w- C:\ProgramData\Malwarebytes
2013-11-02 15:51:37 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
2013-11-02 15:51:37 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-11-02 15:51:19 -------- d-----w- C:\Users\nanaginge\AppData\Local\Programs
2013-11-02 15:31:56 -------- d-----w- C:\Windows\Options
2013-11-02 15:31:49 -------- d-----w- C:\Windows\System32\nn-NO
2013-11-02 15:31:48 63648 ----a-w- C:\Windows\System32\athihvui.dll
2013-11-02 15:31:48 443040 ----a-w- C:\Windows\System32\athihvs.dll
2013-11-02 15:31:48 429312 ----a-w- C:\Windows\SysWow64\wgapi.dll
2013-11-02 15:31:48 417000 ----a-w- C:\Windows\SysWow64\wcapi.dll
2013-11-02 15:31:48 339200 ----a-w- C:\Windows\SysWow64\wcapiU.dll
2013-11-02 15:31:48 314624 ----a-w- C:\Windows\SysWow64\athcfg20U.dll
2013-11-02 15:31:48 130312 ----a-w- C:\Windows\SysWow64\athcfg20resU.dll
2013-11-02 15:31:48 130288 ----a-w- C:\Windows\SysWow64\athcfg20res.dll
2013-11-02 15:31:46 302312 ----a-w- C:\Windows\SysWow64\athcfg20.dll
2013-11-02 15:22:57 -------- d-----w- C:\Users\nanaginge\AppData\Local\Google
2013-11-02 15:22:50 -------- d-----w- C:\Program Files (x86)\BonanzaDeals
2013-11-02 14:42:46 -------- d-----w- C:\Users\nanaginge\AppData\Local\Macromedia
2013-11-01 22:54:44 -------- d-----w- C:\Users\nanaginge\AppData\Local\calibre-cache
2013-11-01 22:53:58 -------- d-----w- C:\Users\nanaginge\AppData\Roaming\calibre
2013-11-01 22:51:44 -------- d-----w- C:\Program Files\Calibre2
2013-11-01 22:44:46 -------- d-----w- C:\Users\nanaginge\AppData\Local\Apps
2013-11-01 22:44:45 -------- d-----w- C:\Users\nanaginge\AppData\Local\Deployment
2013-11-01 22:39:34 1424384 ----a-w- C:\Windows\System32\WindowsCodecs.dll
2013-11-01 22:39:34 1230336 ----a-w- C:\Windows\SysWow64\WindowsCodecs.dll
2013-11-01 22:33:44 -------- d-----w- C:\Users\nanaginge\AppData\Roaming\Windows Live Writer
2013-11-01 22:33:44 -------- d-----w- C:\Users\nanaginge\AppData\Local\Windows Live Writer
2013-11-01 22:22:52 10280728 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2013-11-01 22:18:32 458712 ----a-w- C:\Windows\System32\drivers\cng.sys
2013-11-01 22:17:59 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2013-11-01 22:15:44 461312 ----a-w- C:\Windows\System32\scavengeui.dll
2013-11-01 22:14:14 -------- d-----w- C:\Windows\en-gb
2013-11-01 22:13:26 -------- d-----w- C:\Windows\en
2013-11-01 22:07:55 22240 ----a-w- C:\ProgramData\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-11-01 22:07:16 99840 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2013-11-01 22:07:16 52736 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2013-11-01 22:07:16 325120 ----a-w- C:\Windows\System32\drivers\usbport.sys
2013-11-01 22:07:15 7808 ----a-w- C:\Windows\System32\drivers\usbd.sys
2013-11-01 22:07:15 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2013-11-01 22:07:15 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2013-11-01 22:07:15 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2013-11-01 22:06:09 77656 ----a-w- C:\Windows\System32\XAPOFX1_5.dll
2013-11-01 22:06:09 74072 ----a-w- C:\Windows\SysWow64\XAPOFX1_5.dll
2013-11-01 22:06:09 527192 ----a-w- C:\Windows\SysWow64\XAudio2_7.dll
2013-11-01 22:06:09 518488 ----a-w- C:\Windows\System32\XAudio2_7.dll
2013-11-01 22:06:08 276832 ----a-w- C:\Windows\System32\d3dx11_43.dll
2013-11-01 22:06:08 2526056 ----a-w- C:\Windows\System32\D3DCompiler_43.dll
2013-11-01 22:06:08 248672 ----a-w- C:\Windows\SysWow64\d3dx11_43.dll
2013-11-01 22:06:08 2106216 ----a-w- C:\Windows\SysWow64\D3DCompiler_43.dll
2013-11-01 21:59:14 537432 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\97f296671ced74d04\DXSETUP.exe
2013-11-01 21:59:14 1801048 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\97f296671ced74d04\dsetup32.dll
2013-11-01 21:59:13 89944 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\97f296671ced74d04\DSETUP.dll
2013-11-01 21:59:09 94040 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\94ef588f1ced74d03\DSETUP.dll
2013-11-01 21:59:09 525656 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\94ef588f1ced74d03\DXSETUP.exe
2013-11-01 21:59:09 1691480 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\94ef588f1ced74d03\dsetup32.dll
2013-11-01 21:59:04 537432 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\92d60ad21ced74d02\DXSETUP.exe
2013-11-01 21:59:03 89944 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\92d60ad21ced74d02\DSETUP.dll
2013-11-01 21:59:03 1801048 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\92d60ad21ced74d02\dsetup32.dll
2013-11-01 21:23:56 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-11-01 21:21:04 1887232 ----a-w- C:\Windows\System32\d3d11.dll
2013-11-01 21:21:04 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll
2013-11-01 20:49:39 224256 ----a-w- C:\Windows\System32\wintrust.dll
2013-11-01 20:49:39 184320 ----a-w- C:\Windows\System32\cryptsvc.dll
2013-11-01 20:49:39 175104 ----a-w- C:\Windows\SysWow64\wintrust.dll
2013-11-01 20:49:39 1472512 ----a-w- C:\Windows\System32\crypt32.dll
2013-11-01 20:49:39 139776 ----a-w- C:\Windows\System32\cryptnet.dll
2013-11-01 20:49:39 1166848 ----a-w- C:\Windows\SysWow64\crypt32.dll
2013-11-01 20:49:38 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2013-11-01 20:49:38 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2013-11-01 20:49:23 39936 ----a-w- C:\Windows\System32\drivers\tssecsrv.sys
2013-11-01 20:49:21 3155968 ----a-w- C:\Windows\System32\win32k.sys
2013-11-01 20:47:19 1930752 ----a-w- C:\Windows\System32\authui.dll
2013-11-01 20:47:18 70144 ----a-w- C:\Windows\System32\appinfo.dll
2013-11-01 20:47:18 1796096 ----a-w- C:\Windows\SysWow64\authui.dll
2013-11-01 20:47:18 111448 ----a-w- C:\Windows\System32\consent.exe
2013-11-01 20:47:03 785624 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys
2013-11-01 20:47:01 663552 ----a-w- C:\Windows\SysWow64\rpcrt4.dll
2013-11-01 20:47:01 1217024 ----a-w- C:\Windows\System32\rpcrt4.dll
2013-11-01 20:45:49 751104 ----a-w- C:\Windows\System32\win32spl.dll
2013-11-01 20:45:49 492544 ----a-w- C:\Windows\SysWow64\win32spl.dll
2013-11-01 20:45:44 903168 ----a-w- C:\Windows\SysWow64\certutil.exe
2013-11-01 20:45:44 1192448 ----a-w- C:\Windows\System32\certutil.exe
2013-11-01 20:45:43 52224 ----a-w- C:\Windows\System32\certenc.dll
2013-11-01 20:45:42 43008 ----a-w- C:\Windows\SysWow64\certenc.dll
2013-11-01 20:44:47 624128 ----a-w- C:\Windows\System32\qedit.dll
2013-11-01 20:44:47 509440 ----a-w- C:\Windows\SysWow64\qedit.dll
2013-11-01 20:43:57 983488 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2013-11-01 20:43:57 265064 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2013-11-01 20:43:57 144384 ----a-w- C:\Windows\System32\cdd.dll
2013-11-01 20:43:56 124112 ----a-w- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2013-11-01 20:43:56 102608 ----a-w- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2013-11-01 17:58:37 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2013-11-01 17:58:36 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2013-11-01 17:41:05 -------- d-----w- C:\Windows\System32\SPReview
2013-11-01 17:39:50 -------- d-----w- C:\Windows\System32\EventProviders
2013-11-01 17:35:59 753664 ----a-w- C:\Windows\System32\drivers\http.sys
2013-11-01 17:34:59 475136 ----a-w- C:\Windows\System32\wlangpui.dll
2013-11-01 17:33:59 692736 ----a-w- C:\Windows\SysWow64\bthprops.cpl
2013-11-01 17:32:59 47104 ----a-w- C:\Windows\System32\wshbth.dll
2013-11-01 17:31:40 363008 ----a-w- C:\Windows\SysWow64\wbemcomn.dll
2013-11-01 17:31:40 189952 ----a-w- C:\Program Files (x86)\Windows Portable Devices\sqmapi.dll
2013-11-01 17:31:39 606208 ----a-w- C:\Windows\SysWow64\wbem\fastprox.dll
2013-11-01 17:27:11 529408 ----a-w- C:\Windows\System32\wbemcomn.dll
2013-11-01 17:27:11 244736 ----a-w- C:\Program Files\Windows Portable Devices\sqmapi.dll
2013-11-01 17:26:54 244736 ----a-w- C:\Windows\System32\sqmapi.dll
2013-11-01 16:41:42 -------- d-----w- C:\ProgramData\Oracle
2013-11-01 16:41:18 108968 ----a-w- C:\Windows\System32\WindowsAccessBridge-64.dll
2013-11-01 16:35:49 -------- d-----w- C:\Users\nanaginge\AppData\Local\Adobe
2013-11-01 16:21:25 2565632 ----a-w- C:\Windows\System32\esent.dll
2013-11-01 16:21:25 1699328 ----a-w- C:\Windows\SysWow64\esent.dll
2013-11-01 16:21:23 166272 ----a-w- C:\Windows\System32\drivers\nvstor.sys
2013-11-01 16:21:23 148352 ----a-w- C:\Windows\System32\drivers\nvraid.sys
2013-11-01 16:21:23 107904 ----a-w- C:\Windows\System32\drivers\amdsata.sys
2013-11-01 16:21:22 96768 ----a-w- C:\Windows\System32\fsutil.exe
2013-11-01 16:21:22 410496 ----a-w- C:\Windows\System32\drivers\iaStorV.sys
2013-11-01 16:21:22 27008 ----a-w- C:\Windows\System32\drivers\amdxata.sys
2013-11-01 16:21:22 189824 ----a-w- C:\Windows\System32\drivers\storport.sys
2013-11-01 16:21:21 74240 ----a-w- C:\Windows\SysWow64\fsutil.exe
2013-11-01 15:41:53 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
2013-11-01 15:41:50 9728 ----a-w- C:\Windows\System32\Wdfres.dll
2013-11-01 15:41:50 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2013-11-01 14:38:35 -------- d-----w- C:\Program Files (x86)\MSXML 4.0
2013-11-01 14:26:26 -------- d-----w- C:\Windows\SysWow64\Wat
2013-11-01 14:26:26 -------- d-----w- C:\Windows\System32\Wat
2013-11-01 14:06:09 -------- d-----w- C:\Program Files (x86)\FileHippo.com
2013-11-01 13:55:34 69464 ----a-w- C:\Windows\SysWow64\XAPOFX1_3.dll
2013-11-01 13:55:34 523088 ----a-w- C:\Windows\System32\d3dx10_42.dll
2013-11-01 13:55:34 515416 ----a-w- C:\Windows\SysWow64\XAudio2_5.dll
2013-11-01 13:55:34 453456 ----a-w- C:\Windows\SysWow64\d3dx10_42.dll
2013-11-01 13:55:25 4398360 ----a-w- C:\Windows\System32\d3dx9_32.dll
2013-11-01 13:55:25 3426072 ----a-w- C:\Windows\SysWow64\d3dx9_32.dll
2013-11-01 13:39:58 -------- d-----w- C:\Users\nanaginge\AppData\Local\Windows Live
2013-11-01 13:24:39 294912 ----a-w- C:\Windows\System32\browserchoice.exe
2013-11-01 13:00:31 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2013-11-01 13:00:31 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2013-11-01 13:00:30 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll
2013-11-01 13:00:30 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll
2013-11-01 13:00:29 744448 ----a-w- C:\Windows\System32\WUDFx.dll
2013-11-01 13:00:29 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll
2013-11-01 13:00:29 229888 ----a-w- C:\Windows\System32\WUDFHost.exe
2013-11-01 12:51:44 -------- d-----w- C:\Windows\System32\MRT
2013-11-01 12:49:20 81408 ----a-w- C:\Windows\System32\imagehlp.dll
2013-11-01 12:49:20 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2013-11-01 12:49:20 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2013-11-01 12:49:19 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2013-11-01 12:49:19 5120 ----a-w- C:\Windows\System32\wmi.dll
2013-11-01 12:41:29 509952 ----a-w- C:\Windows\System32\ntshrui.dll
2013-11-01 12:41:28 442880 ----a-w- C:\Windows\SysWow64\ntshrui.dll
2013-11-01 12:39:36 2315776 ----a-w- C:\Windows\System32\tquery.dll
2013-11-01 12:38:51 2871808 ----a-w- C:\Windows\explorer.exe
2013-11-01 12:37:59 800768 ----a-w- C:\Windows\System32\usp10.dll
2013-11-01 12:26:37 75120 ----a-w- C:\Windows\System32\drivers\partmgr.sys
2013-11-01 12:25:04 642944 ----a-w- C:\Windows\System32\winload.efi
2013-11-01 12:25:04 605552 ----a-w- C:\Windows\System32\winload.exe
2013-11-01 12:25:04 566208 ----a-w- C:\Windows\System32\winresume.efi
2013-11-01 12:25:04 518672 ----a-w- C:\Windows\System32\winresume.exe
2013-11-01 12:25:03 63488 ----a-w- C:\Windows\System32\setbcdlocale.dll
2013-11-01 12:25:03 20352 ----a-w- C:\Windows\System32\kdusb.dll
2013-11-01 12:25:03 19328 ----a-w- C:\Windows\System32\kd1394.dll
2013-11-01 12:25:03 17792 ----a-w- C:\Windows\System32\kdcom.dll
2013-11-01 12:24:27 974336 ----a-w- C:\Windows\System32\WFS.exe
2013-11-01 12:24:27 267776 ----a-w- C:\Windows\System32\FXSCOVER.exe
2013-11-01 12:24:16 956928 ----a-w- C:\Windows\System32\localspl.dll
2013-11-01 12:24:15 39424 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\winprint.dll
2013-11-01 12:24:10 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys
2013-11-01 12:24:06 861696 ----a-w- C:\Windows\System32\oleaut32.dll
2013-11-01 12:24:05 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
2013-11-01 12:24:05 331776 ----a-w- C:\Windows\System32\oleacc.dll
2013-11-01 12:24:05 233472 ----a-w- C:\Windows\SysWow64\oleacc.dll
2013-11-01 12:23:59 723456 ----a-w- C:\Windows\System32\EncDec.dll
2013-11-01 12:23:58 534528 ----a-w- C:\Windows\SysWow64\EncDec.dll
2013-11-01 12:23:52 2164224 ----a-w- C:\Program Files\Windows Journal\Journal.exe
2013-11-01 12:23:30 77312 ----a-w- C:\Windows\System32\packager.dll
2013-11-01 12:23:30 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2013-11-01 11:45:28 1572864 ----a-w- C:\Windows\System32\quartz.dll
2013-11-01 11:45:28 1328128 ----a-w- C:\Windows\SysWow64\quartz.dll
2013-11-01 11:45:11 288768 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2013-11-01 11:45:11 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2013-11-01 11:45:10 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2013-11-01 11:44:54 19968 ----a-w- C:\Windows\System32\drivers\usb8023.sys
2013-11-01 11:44:39 1395712 ----a-w- C:\Windows\System32\mfc42.dll
2013-11-01 11:44:39 1359872 ----a-w- C:\Windows\System32\mfc42u.dll
2013-11-01 11:44:38 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll
2013-11-01 11:44:38 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll
2013-11-01 11:44:33 376688 ----a-w- C:\Windows\System32\drivers\netio.sys
2013-11-01 11:44:33 288088 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2013-11-01 11:42:57 715776 ----a-w- C:\Windows\System32\kerberos.dll
2013-11-01 11:42:57 542208 ----a-w- C:\Windows\SysWow64\kerberos.dll
2013-11-01 11:40:26 95744 ----a-w- C:\Windows\System32\synceng.dll
2013-11-01 11:40:26 78336 ----a-w- C:\Windows\SysWow64\synceng.dll
2013-11-01 11:38:10 965000 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{97534CF2-9D79-4F0F-BFAC-AC81F3D4B821}\gapaengine.dll
2013-11-01 11:37:44 278800 ------w- C:\Windows\System32\MpSigStub.exe
2013-11-01 11:29:43 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client
2013-11-01 11:29:31 -------- d-----w- C:\Program Files\Microsoft Security Client
2013-11-01 11:24:42 1031680 ----a-w- C:\Windows\System32\rdpcore.dll
2013-11-01 11:24:41 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll
2013-11-01 11:24:41 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys
2013-11-01 11:20:29 -------- d-----w- C:\Users\nanaginge\AppData\Roaming\WinBatch
2013-11-01 11:10:13 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2013-11-01 11:10:03 99840 ----a-w- C:\Windows\System32\wudriver.dll
2013-11-01 11:09:55 36864 ----a-w- C:\Windows\System32\wuapp.exe
2013-11-01 11:09:55 186752 ----a-w- C:\Windows\System32\wuwebv.dll
2013-11-01 11:09:33 -------- d-----w- C:\Users\nanaginge\AppData\Local\WindowsUpdate
2013-11-01 11:05:36 -------- d-----w- C:\Users\nanaginge\AppData\Local\TOSHIBA_Corporation
2013-11-01 10:54:56 -------- d-----w- C:\Windows\pss
2013-11-01 10:52:45 -------- d-----w- C:\Program Files\CCleaner
2013-11-01 10:51:40 -------- d-s---w- C:\Windows\SysWow64\Microsoft
2013-11-01 10:42:38 -------- d-----w- C:\ProgramData\TOSHIBA Tempro
2013-11-01 10:42:38 -------- d-----w- C:\ProgramData\IsolatedStorage
2013-11-01 10:40:19 -------- d-----w- C:\Users\nanaginge\AppData\Local\ATI
2013-11-01 10:40:15 -------- d-----w- C:\Users\nanaginge\AppData\Local\Toshiba
2013-11-01 10:39:33 -------- d-----w- C:\Users\nanaginge\AppData\Local\VirtualStore
2013-11-01 10:24:08 -------- d-----w- C:\Windows\OemDrv
2013-11-01 10:15:10 -------- d-----w- C:\Works
2013-11-01 10:14:16 -------- d-----w- C:\Windows\Downloaded Installations
2013-11-01 10:10:29 2750464 ----a-w- C:\Windows\System32\drivers\athrx.sys
2013-11-01 10:10:29 -------- d-----w- C:\Program Files (x86)\Atheros
2013-11-01 10:10:23 -------- d-----w- C:\ProgramData\Atheros
2013-11-01 10:09:46 -------- d-sh--w- C:\$RECYCLE.BIN
.
==================== Find3M ====================
.
2013-11-01 21:23:56 9728 ---ha-w- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-11-01 17:56:50 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2013-11-01 17:56:48 175616 ----a-w- C:\Windows\System32\msclmd.dll
2013-09-14 01:10:19 497152 ----a-w- C:\Windows\System32\drivers\afd.sys
2013-09-08 02:30:37 1903552 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2013-09-08 02:27:14 327168 ----a-w- C:\Windows\System32\mswsock.dll
2013-09-08 02:03:58 231424 ----a-w- C:\Windows\SysWow64\mswsock.dll
2013-08-29 02:17:48 5549504 ----a-w- C:\Windows\System32\ntoskrnl.exe
2013-08-29 02:16:35 1732032 ----a-w- C:\Windows\System32\ntdll.dll
2013-08-29 02:16:28 243712 ----a-w- C:\Windows\System32\wow64.dll
2013-08-29 02:16:14 859648 ----a-w- C:\Windows\System32\tdh.dll
2013-08-29 02:13:28 878080 ----a-w- C:\Windows\System32\advapi32.dll
2013-08-29 01:51:45 3969472 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2013-08-29 01:51:45 3914176 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2013-08-29 01:50:31 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2013-08-29 01:50:30 1292192 ----a-w- C:\Windows\SysWow64\ntdll.dll
2013-08-29 01:50:16 619520 ----a-w- C:\Windows\SysWow64\tdh.dll
2013-08-29 01:48:17 640512 ----a-w- C:\Windows\SysWow64\advapi32.dll
2013-08-29 01:48:15 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2013-08-29 00:49:53 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2013-08-29 00:49:52 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2013-08-29 00:49:49 2048 ----a-w- C:\Windows\SysWow64\user.exe
.
============= FINISH: 13:34:57.35 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 01/11/2013 10:34:51
System Uptime: 05/11/2013 13:14:26 (0 hours ago)
.
Motherboard: TOSHIBA | | Portable PC
Processor: AMD Athlon(tm) II P320 Dual-Core Processor | Socket S1G4 | 798/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 149 GiB total, 106.319 GiB free.
D: is FIXED (NTFS) - 149 GiB total, 141.704 GiB free.
E: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP23: 01/11/2013 20:49:58 - Windows Update
RP24: 01/11/2013 21:58:57 - Windows Live Essentials
RP25: 01/11/2013 22:01:01 - Removed Skype Toolbars
RP26: 01/11/2013 22:01:13 - Installed DirectX
RP27: 01/11/2013 22:03:50 - Installed DirectX
RP28: 01/11/2013 22:04:57 - Installed DirectX
RP29: 01/11/2013 22:08:13 - WLSetup
RP30: 01/11/2013 22:18:51 - Windows Update
RP31: 01/11/2013 22:39:40 - Windows Update
RP32: 01/11/2013 22:51:10 - Installed calibre 64bit
RP33: 02/11/2013 15:48:10 - Installed 7-Zip 9.20 (x64 edition)
RP34: 02/11/2013 18:23:17 - Windows Update
RP35: 04/11/2013 15:20:24 - Installed iTunes
RP36: 05/11/2013 13:12:50 - Windows Update
.
==== Installed Programs ======================
.
7-Zip 9.20
7-Zip 9.20 (x64 edition)
Adobe AIR
Adobe Flash Player 11 ActiveX
Adobe Flash Player 11 Plugin
Adobe Reader XI (11.0.05)
Advertising Center
Amazon.co.uk
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
Atheros Driver Installation Program
ATI Catalyst Install Manager
Bejeweled 2 Deluxe
calibre 64bit
Catalyst Control Center - Branding
Catalyst Control Center Core Implementation
Catalyst Control Center Graphics Full Existing
Catalyst Control Center Graphics Full New
Catalyst Control Center Graphics Light
Catalyst Control Center Graphics Previews Common
Catalyst Control Center Graphics Previews Vista
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-core-static
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
CCleaner
Chuzzle Deluxe
Conexant HD Audio
D3DX10
Diner Dash 2 Restaurant Rescue
eBay
FATE
FileHippo.com Update Checker
Google Update Helper
ImagXpress
Java 7 Update 45 (64-bit)
Java(TM) 6 Update 17
Jewel Quest II
Junk Mail filter update
Malwarebytes Anti-Malware version 1.75.0.1300
Microsoft .NET Framework 4 Client Profile
Microsoft Application Error Reporting
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Security Client
Microsoft Security Essentials
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Movie Maker
Mozilla Firefox 25.0 (x86 en-US)
Mozilla Maintenance Service
MSVCRT
MSVCRT_amd64
MSVCRT110
MSVCRT110_amd64
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Nero 9 Essentials
Nero BackItUp
Nero BackItUp and Burn
Nero BurnLite 10
Nero BurnRights
Nero BurnRights Help
Nero Control Center 10
Nero ControlCenter
Nero ControlCenter 10 Help (CHM)
Nero Core Components 10
Nero DiscSpeed
Nero DiscSpeed Help
Nero DriveSpeed
Nero DriveSpeed Help
Nero Express
Nero Express Help
Nero InfoTool
Nero InfoTool Help
Nero Installer
Nero Online Upgrade
Nero RescueAgent
Nero StartSmart
Nero StartSmart Help
Nero Update
NeroExpress
neroxml
Penguins!
Photo Common
Photo Gallery
Photo Service - powered by myphotobook
Plants vs. Zombies
PlayReady PC Runtime amd64
Polar Bowler
Realtek USB 2.0 Card Reader
Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2835393)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2)
Skype™ 6.10
SUPERAntiSpyware
Synaptics Pointing Device Driver
Toshiba Assist
TOSHIBA Bulletin Board
TOSHIBA ConfigFree
TOSHIBA Disc Creator
TOSHIBA Hardware Setup
TOSHIBA HDD/SSD Alert
Toshiba Manuals
TOSHIBA Media Controller
TOSHIBA Media Controller Plug-in
TOSHIBA Online Product Information
TOSHIBA Recovery Media Creator
TOSHIBA Recovery Media Creator Reminder
TOSHIBA ReelTime
TOSHIBA Service Station
TOSHIBA Supervisor Password
TOSHIBA TEMPRO
TOSHIBA Value Added Package
TRORMCLauncher
Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
WildTangent Games
WildTangent ORB Game Console
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Mail
Windows Live Messenger
Windows Live MIME IFilter
Windows Live Photo Common
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live Sync
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
Zuma Deluxe
.
==== Event Viewer Messages From Past Week ========
.
05/11/2013 13:30:57, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Definition Update for Microsoft Security Essentials - KB2310138 (Definition 1.161.1453.0).
05/11/2013 13:29:51, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.161.1309.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.10003.0 Error code: 0x80070643 Error description: Fatal error during installation.
05/11/2013 13:13:34, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.161.1309.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.10003.0 Error code: 0x8024001e Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
05/11/2013 12:59:18, Error: Microsoft Antimalware [2004] - Microsoft Antimalware has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures. Signatures Attempted: Current Error Code: 0x80070002 Error description: The system cannot find the file specified. Signature version: 0.0.0.0;0.0.0.0 Engine version: 0.0.0.0
05/11/2013 12:49:14, Error: Microsoft-Windows-WLAN-AutoConfig [10000] - WLAN Extensibility Module has failed to start. Module Path: C:\Windows\system32\athihvs.dll Error Code: 21
05/11/2013 12:49:06, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
05/11/2013 12:48:59, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: discache MpFilter SASDIFSV SASKUTIL spldr Wanarpv6
05/11/2013 12:48:58, Error: Service Control Manager [7001] - The Microsoft Network Inspection System service depends on the Microsoft Malware Protection Driver service which failed to start because of the following error: A device attached to the system is not functioning.
04/11/2013 21:28:42, Error: Microsoft Antimalware [2001] - Microsoft Antimalware has encountered an error trying to update signatures. New Signature Version: Previous Signature Version: 1.161.1340.0 Update Source: Microsoft Update Server Update Stage: Install Source Path: http://www.microsoft.com Signature Type: AntiVirus Update Type: Full User: NT AUTHORITY\SYSTEM Current Engine Version: Previous Engine Version: 1.1.10003.0 Error code: 0x8024001e Error description: An unexpected problem occurred while checking for updates. For information on installing or troubleshooting updates, see Help and Support.
04/11/2013 20:59:56, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service.
04/11/2013 20:59:54, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error %%-1073473535.
.
==== End Of File ===========================