Quantcast
Channel: Tech Support Guy - Virus & Other Malware Removal
Viewing all articles
Browse latest Browse all 4746

popups re directs and dpc watchdog violation

$
0
0
Problem began 15 Jan, after win 8 updated.
Computer now in selective startup, only microsoft services & no startup items.
If in normal mode,or selec startup with AVG running, computer freezes after about 2 min; will freeze before logging into win 8.
Blue screen, dpc watchdog violation
IE's home page had been changed to search conduit.
I checked OEM for driver & firmware of SSD; nothing other than originals.


Tech Support Guy System Info Utility version 1.0.0.2
OS Version: Microsoft Windows 8, 64 bit
Processor: AMD A6-5400K APU with Radeon(tm) HD Graphics, AMD64 Family 21 Model 16 Stepping 1
Processor Count: 2
RAM: 7575 Mb
Graphics Card: AMD Radeon HD 7540D, 512 Mb
Hard Drives: C: Total - 932197 MB, Free - 861223 MB; D: Total - 20158 MB, Free - 2520 MB;
Motherboard: MSI, 2AE0
Antivirus: AVG Internet Security 2014, Disabled


ESET online scan
C:\Program Files (x86)\Allyrics-16\Allyrics-16-bho64.dll a variant of Win64/Toolbar.Crossrider.B application
C:\Program Files (x86)\Allyrics-16\Allyrics-16-buttonutil64.dll probably a variant of Win64/Toolbar.Crossrider.B application
C:\Program Files (x86)\Allyrics-16\Allyrics-16-buttonutil64.exe probably a variant of Win64/Toolbar.Crossrider.B application
C:\Program Files (x86)\Allyrics-16\Allyrics-16-codedownloader.exe a variant of Win32/Toolbar.CrossRider.K application
C:\Program Files (x86)\Allyrics-16\Allyrics-16-enabler.exe a variant of Win32/Toolbar.CrossRider.K application
C:\Program Files (x86)\Allyrics-16\Allyrics-16-updater.exe a variant of Win32/Toolbar.CrossRider.K application
C:\Program Files (x86)\Allyrics-16\utils.exe a variant of Win32/Packed.VMDetector.C application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\APNSetup.exe a variant of Win32/Bundled.Toolbar.Ask.E application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\searchhook.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ServiceLocator.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\SO.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\toolbar.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Toolbar.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ToolbarPS.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\toolbar_x64.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\UpdateManager.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Passport.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Passport_x64.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\apnmcp.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\searchhook.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\ServiceLocator.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\SO.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\toolbar.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\Toolbar.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\ToolbarPS.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\toolbar_x64.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\UpdateManager.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\{PartnerID}\Passport.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\AskPartnerNetwork\Toolbar\{PartnerID}\Passport_x64.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Source\program files\VNT\vntldr.exe a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Program Files (x86)\BetterBrowse\BetterBrowseBHO.dll a variant of Win32/BrowseFox.F application
C:\Program Files (x86)\BetterBrowse\BetterBrowseUninstall.exe Win32/BrowseFox.C application
C:\Program Files (x86)\BetterBrowse\updateBetterBrowse.exe a variant of Win32/BrowseFox.G application
C:\Program Files (x86)\BetterBrowse\bin\utilBetterBrowse.exe a variant of Win32/BrowseFox.G application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\CREXT.DLL Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\CrExtPgt.exe Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtauxstb.dll Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbar.dll Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbarsvc.exe Win32/Toolbar.MyWebSearch.X application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbrmon.exe Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtdatact.dll a variant of Win32/Toolbar.MyWebSearch.A application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gthtmlmu.dll probably a variant of Win32/Toolbar.MyWebSearch.B application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtieovr.dll probably a variant of Win32/Toolbar.MyWebSearch.P application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtimpipe.exe Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtPlugin.dll probably a variant of Win32/Toolbar.MyWebSearch application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtreghk.dll a variant of Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtskin.dll a variant of Win32/Toolbar.MyWebSearch.P application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtskplay.exe Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtSrchMn.exe a variant of Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\NPgtStub.dll Win32/Toolbar.MyWebSearch.T application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\T8HTML.DLL probably a variant of Win32/Toolbar.MyWebSearch.F application
C:\Program Files (x86)\GamingWonderland\bar\1.bin\T8TICKER.DLL Win32/Toolbar.MyWebSearch.W application
C:\Program Files (x86)\Plus-HD-4.8\Plus-HD-4.8-bho64.dll a variant of Win64/Toolbar.Crossrider.B application
C:\Program Files (x86)\SaveValet\ie\SaveValetIE_32.dll Win32/SaveValet.A application
C:\Program Files (x86)\SaveValet\ie\SaveValetIE_64.dll Win64/SaveValet.A application
C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-bho64.dll a variant of Win64/Toolbar.Crossrider.B application
C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-buttonutil64.dll probably a variant of Win64/Toolbar.Crossrider.B application
C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-buttonutil64.exe a variant of Win64/Toolbar.Crossrider.B application
C:\Program Files (x86)\W3i\UninstallHelper\UninstallHelper.exe probably a variant of Win32/InstallIQ.A application
C:\ProgramData\APN\APN-Stub\W3IV6-G\APNIC.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Users\All Users\APN\APN-Stub\W3IV6-G\APNIC.dll a variant of Win32/Bundled.Toolbar.Ask.F application
C:\Users\Frank\AppData\Local\Temp\1371786419_Cloud_Backup_Setup.exe Win32/MyPCBackup.A application
C:\Users\Frank\AppData\Local\Temp\APNStub.exe a variant of Win32/Bundled.Toolbar.Ask application
C:\Users\Frank\AppData\Local\Temp\Offercast2802_WBV5_.exe a variant of Win32/Bundled.Toolbar.Ask.D application
C:\Users\Frank\AppData\Local\Temp\sp-downloader.exe Win32/Toolbar.Conduit.R application
C:\Users\Frank\AppData\Local\Temp\sp_downloader.exe Win32/Toolbar.Conduit.R application
C:\Users\Frank\AppData\Local\Temp\{1C0BA3D4-73D5-47CB-A44D-25C0C1C196A7}\setup.exe multiple threats
C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll a variant of Win32/Toolbar.DefaultTab.B application
C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabStart.exe a variant of Win32/Toolbar.DefaultTab.B application
C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabWrap.dll a variant of Win32/Toolbar.DefaultTab.B application
C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe Win32/Toolbar.DefaultTab.A application
Operating memory a variant of Win32/BrowseFox.F application

HiJackThis Report
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:08:50 PM, on 1/17/2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v10.0 (10.00.9200.16537)
Boot mode: Normal
Running processes:
C:\program files (x86)\the wedownload manager\the wedownload manager-bg.exe
C:\program files (x86)\allyrics-16\allyrics-16-bg.exe
C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Users\Frank\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPDSK13/1
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Preserve
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://g.msn.com/HPDSK13/1
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://g.msn.com/HPDSK13/1
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: (no name) - {a8625cb7-85fe-4936-92a4-b2a7c925209e} - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtSrcAs.dll
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: CrossriderApp0044178 - {11111111-1111-1111-1111-110411411178} - C:\Program Files (x86)\Allyrics-16\Allyrics-16-bho.dll
O2 - BHO: CrossriderApp0045914 - {11111111-1111-1111-1111-110411591114} - C:\Program Files (x86)\Plus-HD-4.8\Plus-HD-4.8-bho.dll
O2 - BHO: CrossriderApp0049074 - {11111111-1111-1111-1111-110411901174} - C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-bho.dll
O2 - BHO: Ask Toolbar BHO - {57425637-0076-A76A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Passport.dll" (file missing)
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: Toolbar BHO - {7c8f8fe5-9785-4f74-bcf8-895ef9752d97} - C:\PROGRA~2\GAMING~2\bar\1.bin\gtbar.dll
O2 - BHO: DefaultTabBHO - {7F6AFBF1-E065-4627-A2FD-810366367D01} - C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll
O2 - BHO: Highlightly - {83F2328D-0D6A-42B4-B0C4-02A929EDD4BE} - C:\Program Files (x86)\Highlightly\IE\HighlightlyClientIE.dll
O2 - BHO: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.3.0.49\AVG SafeGuard toolbar_toolbar.dll
O2 - BHO: BetterBrowse - {964cfd95-89cb-4ba5-a122-36258ea0662a} - C:\Program Files (x86)\BetterBrowse\BetterBrowsebho.dll
O2 - BHO: DefaultTabToolbarBHO - {96A25A24-2E87-4374-8A50-CC6F943FCE4D} - C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\Apps\RelatedLinksBHO.d ll
O2 - BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O2 - BHO: Search Assistant BHO - {ab5d199e-9659-47a2-930b-fc3b69061353} - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtSrcAs.dll
O2 - BHO: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O2 - BHO: Science BHO - {F0F12903-DE76-4DF7-BCDC-0A0689151189} - C:\Program Files (x86)\SaveValet\ie\SaveValetIE_32.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll" (file missing)
O3 - Toolbar: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
O3 - Toolbar: GamingWonderland - {a899079d-206f-43a6-be6a-07e0fa648ea0} - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbar.dll
O3 - Toolbar: Ask Toolbar - {57425637-0076-A76A-76A7-7A786E7484D7} - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\WBV7\Passport.dll" (file missing)
O3 - Toolbar: AVG SafeGuard toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.3.0.49\AVG SafeGuard toolbar_toolbar.dll
O3 - Toolbar: Related Searches - {96A25A24-2E87-4374-8A50-CC6F943FCE4D} - C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\Apps\RelatedLinksBHO.d ll
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
O4 - HKLM\..\Run: [GamingWonderland Search Scope Monitor] "C:\PROGRA~2\GAMING~2\bar\1.bin\gtsrchmn.exe" /m=2 /w /h
O4 - HKLM\..\Run: [GamingWonderland Browser Plugin Loader] C:\PROGRA~2\GAMING~2\bar\1.bin\gtbrmon.exe
O4 - HKLM\..\Run: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
O4 - HKLM\..\Run: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
O4 - HKLM\..\Run: [StartCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [TomTomHOME.exe] "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: Logo Calibration Loader.lnk = C:\Monitor Calibration Software\Eye-One Match 3\CalibrationLoader\CalibrationLoader.exe
O4 - Global Startup: ProfileReminder.lnk = C:\Monitor Calibration Software\Eye-One Match 3\ProfileReminder.exe
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Companion\companionlang.dll,-600 - {0000036B-C524-4050-81A0-243669A86B9F} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - (no file)
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://www.time.gov
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - http://h20614.www2.hp.com/ediags/gmd...pdetect121.cab
O18 - Protocol: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\17.3.0\ViProtocol.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing)
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Support Solutions Framework Service (HPSupportSolutionsFrameworkService) - Hewlett-Packard Company - C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12256 bytes
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2012-11-20.01)
.
Microsoft Windows 8
Boot Device: \Device\HarddiskVolume2
Install Date: 2/21/2013 2:28:17 PM
System Uptime: 1/17/2014 1:08:14 AM (12 hours ago)
.
Motherboard: MSI | | 2AE0
Processor: AMD A6-5400K APU with Radeon(tm) HD Graphics | P0 | 3600/100mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 910 GiB total, 841.041 GiB free.
D: is FIXED (NTFS) - 20 GiB total, 2.462 GiB free.
F: is Removable
G: is Removable
H: is Removable
I: is CDROM ()
J: is Removable
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP68: 12/27/2013 6:00:04 AM - Scheduled Checkpoint
RP69: 1/4/2014 3:58:36 AM - Scheduled Checkpoint
RP70: 1/11/2014 8:11:10 AM - Scheduled Checkpoint
RP71: 1/15/2014 9:16:07 AM - Windows Update
RP72: 1/16/2014 12:22:54 PM - Installed Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
RP73: 1/16/2014 3:50:58 PM - Restore Operation
.
==== Installed Programs ======================
.
4 Elements II
7-zip v9.20
Allyrics-16
AMD APP SDK Runtime
AMD Catalyst Control Center
AMD Catalyst Install Manager
AMD Wireless Display v3.0
Ask Toolbar
Ask Toolbar Updater
AVG 2014
AVG SafeGuard toolbar
Bejeweled 3
BetterBrowse
Bing Bar
Bonjour
Broadcom 802.11 Wireless LAN Adapter
Broadcom Bluetooth Software
Broadcom Wireless Utility
Build-a-lot 4 - Power Source
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
Catalyst Control Center Localization All
ccc-utility64
CCC Help Chinese Standard
CCC Help Chinese Traditional
CCC Help Czech
CCC Help Danish
CCC Help Dutch
CCC Help English
CCC Help Finnish
CCC Help French
CCC Help German
CCC Help Greek
CCC Help Hungarian
CCC Help Italian
CCC Help Japanese
CCC Help Korean
CCC Help Norwegian
CCC Help Polish
CCC Help Portuguese
CCC Help Russian
CCC Help Spanish
CCC Help Swedish
CCC Help Thai
CCC Help Turkish
Chuzzle Deluxe
Cradle Of Egypt Collector's Edition
Cradle of Rome 2
CyberLink LabelPrint
CyberLink Media Suite 10
CyberLink PhotoDirector
CyberLink Power2Go 8
CyberLink PowerDirector 10
CyberLink PowerDVD
D3DX10
DefaultTab
DriverUpdate
ESET Online Scanner v3
Eye-One Match 3.6.2
Farm Frenzy
FATE: The Cursed King
Final Drive Fury
FlatOut 2
GamingWonderland Toolbar
Google Earth
Google Update Helper
GoToMeeting 5.4.0.1082
Governor of Poker 2 Premium Edition
Hewlett-Packard ACLM.NET v1.2.1.1
Highlightly
Hoyle Card Games
HP Connected Music (Meridian - installer)
HP Connected Music (Meridian - player)
HP Connected Remote
HP Customer Experience Enhancements
HP Games
HP MyRoom
HP Postscript Converter
HP Quick Start
HP Registration Service
HP Support Assistant
HP Support Information
HP Support Solutions Framework
i1_driver_installer_utility_i1Match version 1.0
IDT Audio
Java 7 Update 45
Java Auto Updater
Jewel Match 3
John Deere Drive Green
Junk Mail filter update
Luxor Evolved
Mahjongg Dimensions Deluxe: Tiles in Time
Mesh Runtime
Messenger Companion
Microsoft Application Error Reporting
Microsoft Office
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Home and Student 2007
Microsoft Office Office 64-bit Components 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Shared 64-bit MUI (English) 2007
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2005 Redistributable (x64)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106
Mortimer Beckett and the Crimson Thief Premium Edition
MSVCRT
MSVCRT_amd64
Mystery P.I. - Curious Case of Counterfeit Cove
Nik Collection
Peggle Nights
Penguins!
Plus-HD-4.8
PocketWizard Utility
Polar Bowler
Polar Golfer
Recovery Manager
Roads of Rome 3
SaveValet IE - Stop overpaying! Instantly get the lowest price and best deals right as you shop.
Search Protect
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2817641) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2837615) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2837617) 32-Bit Edition
Shared C Run-time for x64
Tales of Lagoona
The weDownload Manager
TomTom HOME
TomTom HOME Visual Studio Merge Modules
Uninstall Helper
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Update Installer for WildTangent Games App
Vacation Quest™ - Australia
Visual Studio 2012 x64 Redistributables
Visual Studio 2012 x86 Redistributables
VisualBee for Microsoft PowerPoint
WildTangent Games
WildTangent Games App
Windows Live Communications Platform
Windows Live Essentials
Windows Live Installer
Windows Live Language Selector
Windows Live Mail
Windows Live Mesh
Windows Live Mesh ActiveX Control for Remote Connections
Windows Live Messenger
Windows Live Messenger Companion Core
Windows Live MIME IFilter
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live Remote Client
Windows Live Remote Client Resources
Windows Live Remote Service
Windows Live Remote Service Resources
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
Windows Live Writer
Windows Live Writer Resources
Yahoo! Software Update
Yahoo! Toolbar
Zuma's Revenge
.
==== Event Viewer Messages From Past Week ========
.
1/17/2014 12:50:27 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server: {9E175B68-F52A-11D8-B9A5-505054503030}
1/17/2014 12:49:34 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service wuauserv with arguments "Unavailable" in order to run the server: {9B1F122C-2982-4E91-AA8B-E071D54F2A4D}
1/17/2014 12:42:47 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "Unavailable" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
1/17/2014 12:42:33 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "Unavailable" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
1/17/2014 12:41:38 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service dps with arguments "Unavailable" in order to run the server: {7022A3B3-D004-4F52-AF11-E9E987FEE25F}
1/17/2014 12:41:31 AM, Error: Service Control Manager [7001] - The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start.
1/17/2014 12:41:27 AM, Error: Microsoft-Windows-WLAN-AutoConfig [10000] - WLAN Extensibility Module has failed to start. Module Path: C:\windows\System32\bcmihvsrv64.dll Error Code: 21
1/17/2014 12:41:07 AM, Error: Service Control Manager [7001] - The AVGIDSAgent service depends on the AVGIDSDriver service which failed to start because of the following error: A device attached to the system is not functioning.
1/17/2014 12:39:24 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\Minidump\011714-23540-01.dmp. Report Id: 011714-23540-01.
1/17/2014 12:36:09 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\Minidump\011714-26254-01.dmp. Report Id: 011714-26254-01.
1/17/2014 12:32:50 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\Minidump\011714-26005-01.dmp. Report Id: 011714-26005-01.
1/17/2014 12:31:03 AM, Error: Service Control Manager [7006] - The ScRegSetValueExW call failed for Start with the following error: Access is denied.
1/17/2014 12:14:26 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\Minidump\011714-29686-01.dmp. Report Id: 011714-29686-01.
1/17/2014 1:08:37 AM, Error: Service Control Manager [7000] - The PDIHWCTL service failed to start due to the following error: The system cannot find the file specified.
1/17/2014 1:08:04 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "Unavailable" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
1/17/2014 1:07:46 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service dps with arguments "Unavailable" in order to run the server: {DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}
1/17/2014 1:07:06 AM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service MSIServer with arguments "" in order to run the server: {000C101C-0000-0000-C000-000000000046}
1/17/2014 1:00:10 PM, Error: Schannel [36888] - A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 10. The Windows SChannel error state is 10.
1/16/2014 4:55:08 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-24008-01.
1/16/2014 4:51:21 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27580-01.
1/16/2014 4:47:28 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-29094-01.
1/16/2014 4:43:37 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-29140-01.
1/16/2014 4:01:16 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28220-01.
1/16/2014 3:57:32 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28501-01.
1/16/2014 3:53:32 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-29109-02.
1/16/2014 3:49:28 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-25568-01.
1/16/2014 3:45:48 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-24460-01.
1/16/2014 3:42:14 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28875-01.
1/16/2014 3:38:27 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-31512-01.
1/16/2014 3:34:55 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26286-01.
1/16/2014 3:30:59 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Computer Backup (MyPC Backup) service to connect.
1/16/2014 3:30:59 PM, Error: Service Control Manager [7000] - The Computer Backup (MyPC Backup) service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
1/16/2014 3:30:33 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-23758-01.
1/16/2014 3:26:23 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-29109-01.
1/16/2014 3:22:16 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-30919-01.
1/16/2014 3:18:00 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-29983-01.
1/16/2014 3:13:44 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26972-01.
1/16/2014 3:09:41 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26816-01.
1/16/2014 3:05:37 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26114-01.
1/16/2014 3:01:34 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26613-01.
1/16/2014 2:57:21 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-25396-01.
1/16/2014 2:53:22 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26956-02.
1/16/2014 2:49:41 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26317-01.
1/16/2014 2:45:38 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27206-01.
1/16/2014 2:41:36 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-29172-01.
1/16/2014 2:37:55 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26910-01.
1/16/2014 2:33:51 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28173-01.
1/16/2014 2:30:17 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28204-01.
1/16/2014 2:26:29 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26769-01.
1/16/2014 2:22:20 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27237-01.
1/16/2014 2:18:05 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27019-01.
1/16/2014 2:14:33 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26878-01.
1/16/2014 2:10:27 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26676-01.
1/16/2014 2:06:23 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26270-01.
1/16/2014 2:02:18 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26941-01.
1/16/2014 11:45:52 PM, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the DHCP Client service which failed to start because of the following error: The dependency service or group failed to start.
1/16/2014 11:45:52 PM, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start.
1/16/2014 11:45:52 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "Unavailable" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub System service which failed to start because of the following error: A device attached to the system is not functioning.
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI Proxy Service Driver service which failed to start because of the following error: A device attached to the system is not functioning.
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning.
1/16/2014 11:45:26 PM, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
1/16/2014 11:43:48 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1005] - Unable to produce a minidump file from the full dump file.
1/16/2014 11:43:48 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: .
1/16/2014 11:34:03 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28610-01.
1/16/2014 11:29:07 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28360-01.
1/16/2014 11:27:28 PM, Error: Schannel [36870] - A fatal error occurred when attempting to access the SSL server credential private key. The error code returned from the cryptographic module is 0x8009030D. The internal error state is 10001.
1/16/2014 11:24:13 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-29562-01.
1/16/2014 11:20:33 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27783-01.
1/16/2014 11:16:46 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28750-01.
1/16/2014 1:58:14 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28407-01.
1/16/2014 1:54:32 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-25864-01.
1/16/2014 1:50:23 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26223-01.
1/16/2014 1:46:21 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26208-01.
1/16/2014 1:42:13 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26551-01.
1/16/2014 1:38:10 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27378-01.
1/16/2014 1:34:30 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-25818-01.
1/16/2014 1:30:22 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27190-01.
1/16/2014 1:26:19 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27612-01.
1/16/2014 1:22:37 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26036-01.
1/16/2014 1:18:28 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-26473-01.
1/16/2014 1:14:25 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-27471-01.
1/16/2014 1:10:23 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000133 (0x0000000000000000, 0x0000000000000504, 0x0000000000000503, 0x0000000000000000). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 011614-28438-01.
1/16/2014 1:03:28 PM, Error: Schannel [36888] - A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 40. The Windows SChannel error state is 107.
1/16/2014 1:03:28 PM, Error: Schannel [36874] - An SSL 3.0 connection request was received from a remote client application, but none of the cipher suites supported by the client application are supported by the server. The SSL connection request has failed.
1/14/2014 5:13:34 AM, Error: Microsoft-Windows-DistributedCOM [10016] - The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} and APPID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} to the user internet\Frank SID (S-1-5-21-4032234827-3162501254-2042679413-1001) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
.
==== End Of File ===========================

DDS (Ver_2012-11-20.01) - NTFS_AMD64
Internet Explorer: 10.0.9200.16537 BrowserJavaVersion: 10.45.2
Run by Frank at 13:10:02 on 2014-01-17
Microsoft Windows 8 6.2.9200.0.1252.1.1033.18.7575.5440 [GMT -7:00]
.
AV: AVG Internet Security 2014 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AV: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: AVG Internet Security 2014 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: AVG Internet Security 2014 *Disabled* {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}
.
============== Running Processes ===============
.
C:\PROGRA~2\AVG\AVG2014\avgrsa.exe
C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalService
C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\WLANExt.exe
C:\windows\System32\spoolsv.exe
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k apphost
C:\windows\system32\dashost.exe
C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
C:\windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler64.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPDeviceDetection3.exe
C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
C:\windows\System32\dwm.exe
C:\windows\system32\taskhostex.exe
C:\windows\Explorer.EXE
C:\windows\system32\taskeng.exe
C:\Program Files (x86)\DriverUpdate\DriverUpdate.exe
C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4206.722_x64__8w ekyb3d8bbwe\LiveComm.exe
C:\Windows\System32\RuntimeBroker.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\program files (x86)\the wedownload manager\the wedownload manager-bg.exe
C:\program files (x86)\allyrics-16\allyrics-16-bg.exe
C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe
C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\IELowutil.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\windows\system32\notepad.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\windows\system32\SearchProtocolHost.exe
C:\Users\Frank\Desktop\HijackThis.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\windows\SysWOW64\NOTEPAD.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\windows\system32\SearchFilterHost.exe
C:\windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
uSearch Bar = Preserve
uURLSearchHooks: <No Name>: {a8625cb7-85fe-4936-92a4-b2a7c925209e} - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtSrcAs.dll
mWinlogon: Userinit = userinit.exe
BHO: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
BHO: Allyrics-16: {11111111-1111-1111-1111-110411411178} - C:\Program Files (x86)\Allyrics-16\Allyrics-16-bho.dll
BHO: Plus-HD-4.8: {11111111-1111-1111-1111-110411591114} - C:\Program Files (x86)\Plus-HD-4.8\Plus-HD-4.8-bho.dll
BHO: The weDownload Manager: {11111111-1111-1111-1111-110411901174} - C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-bho.dll
BHO: Ask Toolbar: {57425637-0076-A76A-76A7-7A786E7484D7} -
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Toolbar BHO: {7c8f8fe5-9785-4f74-bcf8-895ef9752d97} - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbar.dll
BHO: DefaultTab Browser Helper: {7F6AFBF1-E065-4627-A2FD-810366367D01} - C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll
BHO: Highlightly: {83F2328D-0D6A-42B4-B0C4-02A929EDD4BE} - C:\Program Files (x86)\Highlightly\IE\HighlightlyClientIE.dll
BHO: AVG SafeGuard toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.3.0.49\AVG SafeGuard toolbar_toolbar.dll
BHO: BetterBrowse: {964cfd95-89cb-4ba5-a122-36258ea0662a} - C:\Program Files (x86)\BetterBrowse\BetterBrowsebho.dll
BHO: Related Searches: {96A25A24-2E87-4374-8A50-CC6F943FCE4D} - C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\Apps\RelatedLinksBHO.d ll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Search Assistant BHO: {ab5d199e-9659-47a2-930b-fc3b69061353} - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtSrcAs.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -
BHO: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
BHO: HP Network Check Helper: {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
BHO: Save Valet: {F0F12903-DE76-4DF7-BCDC-0A0689151189} - C:\Program Files (x86)\SaveValet\ie\SaveValetIE_32.dll
TB: <No Name>: {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - LocalServer32 - <no file>
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn0\yt.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
TB: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB: GamingWonderland: {a899079d-206f-43a6-be6a-07e0fa648ea0} - C:\Program Files (x86)\GamingWonderland\bar\1.bin\gtbar.dll
TB: Ask Toolbar: {57425637-0076-A76A-76A7-7A786E7484D7} -
TB: AVG SafeGuard toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG SafeGuard toolbar\17.3.0.49\AVG SafeGuard toolbar_toolbar.dll
TB: Related Searches: {96A25A24-2E87-4374-8A50-CC6F943FCE4D} - C:\Users\Frank\AppData\Roaming\DefaultTab\DefaultTab\Apps\RelatedLinksBHO.d ll
uRun: [TomTomHOME.exe] "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
mRun: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
mRun: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe"
mRun: [GamingWonderland Search Scope Monitor] "C:\PROGRA~2\GAMING~2\bar\1.bin\gtsrchmn.exe" /m=2 /w /h
mRun: [GamingWonderland Browser Plugin Loader] C:\PROGRA~2\GAMING~2\bar\1.bin\gtbrmon.exe
mRun: [ApnTBMon] "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe"
mRun: [vProt] "C:\Program Files (x86)\AVG SafeGuard toolbar\vprot.exe"
mRun: [StartCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
mRun: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2014\avgui.exe" /TRAYONLY
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\StartUp\BLUETO~1.LNK - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\StartUp\LOGOCA~1.LNK - C:\Monitor Calibration Software\Eye-One Match 3\CalibrationLoader\CalibrationLoader.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\StartUp\PROFIL~1.LNK - C:\Monitor Calibration Software\Eye-One Match 3\ProfileReminder.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-001045-0002-0045-ABCDEFFEDCBC} - <orphaned>
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - hxxp://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect121.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_25-windows-i586.cab
TCP: NameServer = 192.168.10.1
TCP: Interfaces\{3C112C0B-1844-4AB3-A062-5690E2992164} : DHCPNameServer = 192.168.10.1
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\17.3.0\ViProtocol.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
AppInit_DLLs= c:\progra~2\searchprotect\searchprotect\bin\spvc32loader.dll
SSODL: WebCheck - <orphaned>
x64-BHO: Allyrics-16: {11111111-1111-1111-1111-110411411178} - C:\Program Files (x86)\Allyrics-16\Allyrics-16-bho64.dll
x64-BHO: Plus-HD-4.8: {11111111-1111-1111-1111-110411591114} - C:\Program Files (x86)\Plus-HD-4.8\Plus-HD-4.8-bho64.dll
x64-BHO: The weDownload Manager: {11111111-1111-1111-1111-110411901174} - C:\Program Files (x86)\The weDownload Manager\The weDownload Manager-bho64.dll
x64-BHO: Ask Toolbar: {57425637-0076-A76A-76A7-7A786E7484D7} -
x64-BHO: Highlightly: {83F2328D-0D6A-42B4-B0C4-02A929EDD4BE} - C:\Program Files\Highlightly\IE\HighlightlyClientIE.dll
x64-BHO: HP Network Check Helper: {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll
x64-BHO: Save Valet: {F0F12903-DE76-4DF7-BCDC-0A0689151189} - C:\Program Files (x86)\SaveValet\ie\SaveValetIE_64.dll
x64-TB: Ask Toolbar: {57425637-0076-A76A-76A7-7A786E7484D7} -
x64-Run: [BeatsOSDApp] C:\Program Files\IDT\WDM\beats64.exe
x64-Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
x64-Run: [Broadcom Wireless Manager UI] C:\Program Files\Broadcom\Broadcom 802.11\WLTRAY.exe
x64-RunOnce: [NCPluginUpdater] "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update
x64-IE: {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
x64-Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - <orphaned>
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 amd_sata;amd_sata;C:\windows\System32\Drivers\amd_sata.sys [2013-3-31 80552]
R0 amd_xata;amd_xata;C:\windows\System32\Drivers\amd_xata.sys [2013-3-31 26280]
R0 AVGIDSHA;AVGIDSHA;C:\windows\System32\Drivers\avgidsha.sys [2013-10-24 194872]
R0 Avgloga;AVG Logging Driver;C:\windows\System32\Drivers\avgloga.sys [2013-10-31 294712]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\windows\System32\Drivers\avgmfx64.sys [2013-10-1 123704]
R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\windows\System32\Drivers\avgrkx64.sys [2013-9-10 31544]
R1 Avgdiska;AVG Disk Driver;C:\windows\System32\Drivers\avgdiska.sys [2013-11-5 150808]
R1 Avgfwfd;AVG network filter service;C:\windows\System32\Drivers\avgfwd6a.sys [2013-9-26 57144]
R1 AVGIDSDriver;AVGIDSDriver;C:\windows\System32\Drivers\avgidsdrivera.sys [2013-11-4 240920]
R1 Avgldx64;AVG AVI Loader Driver;C:\windows\System32\Drivers\avgldx64.sys [2013-10-31 212280]
R1 Avgwfpa;AVG Firewall Driver;C:\windows\System32\Drivers\avgwfpa.sys [2013-10-21 252728]
R1 CLVirtualDrive;CLVirtualDrive;C:\windows\System32\Drivers\CLVirtualDrive.sy s [2012-12-21 92536]
R1 hlnfd;hlnfd;C:\windows\System32\Drivers\hlnfd.sys [2013-12-4 58256]
R2 HP Support Assistant Service;HP Support Assistant Service;C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe [2012-9-27 86528]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service;C:\Program Files (x86)\Hp\Common\HPSupportSolutionsFrameworkService.exe [2013-12-17 46904]
R3 bcbtums;Bluetooth RAM Firmware Download USB Filter;C:\windows\System32\Drivers\bcbtums.sys [2013-8-9 170712]
R3 BthLEEnum;Bluetooth Low Energy Driver;C:\windows\System32\Drivers\BthLEEnum.sys [2012-7-25 202752]
R3 btwampfl;btwampfl;C:\windows\System32\Drivers\btwampfl.sys [2013-8-9 166104]
R3 btwl2cap;Bluetooth L2CAP Service;C:\windows\System32\Drivers\btwl2cap.sys [2013-8-22 40248]
R3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller;C:\windows\System32\Drivers\L1C63x64.sys [2012-7-30 110744]
R3 usbfilter;AMD USB Filter Driver;C:\windows\System32\Drivers\usbfilter.sys [2012-7-16 57000]
S0 Avgboota;AVG Early Launch Anti-Malware Driver;C:\windows\System32\Drivers\avgboota.sys [2013-9-4 20496]
S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-4-1 183560]
S3 BTWPANFL;BTW PAN filter driver;C:\windows\System32\Drivers\btwpanfl.sys [2013-8-22 44912]
S3 EyeOneDisplay;EyeOneDisplay;C:\windows\System32\Drivers\i1display_x64.sys [2013-8-12 7808]
S3 SWDUMon;SWDUMon;C:\windows\System32\Drivers\SWDUMon.sys [2013-8-20 16152]
S4 AMD External Events Utility;AMD External Events Utility;C:\windows\System32\atiesrxx.exe [2013-11-8 239616]
S4 APNMCP;Ask Update Service;C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [2014-1-5 166352]
S4 avgfws;AVG Firewall;C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [2013-9-24 1358944]
S4 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [2013-11-11 3478544]
S4 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [2013-9-24 348008]
S4 BcmBtRSupport;Bluetooth Radio Control Service;C:\windows\System32\BtwRSupportService.exe [2013-8-9 2252504]
S4 CltMngSvc;Search Protect by Conduit Service;C:\PROGRA~2\SearchProtect\Main\bin\CltMngSvc.exe [2014-1-1 2301216]
S4 DefaultTabUpdate;DefaultTabUpdate;C:\Users\Frank\AppData\Roaming\DefaultTab \DefaultTab\DTUpdate.exe [2013-2-21 107520]
S4 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S4 GamingWonderlandService;GamingWonderlandService;C:\PROGRA~2\GAMING~2\bar\1. bin\gtbarsvc.exe [2013-3-6 42504]
S4 hlsvc;Highlightly Client Service;C:\Program Files (x86)\Highlightly\Service\hlsvc.exe [2013-12-4 273000]
S4 HPConnectedRemote;HP Connected Remote Service;C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [2012-8-29 35232]
S4 TomTomHOMEService;TomTomHOMEService;C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe [2013-3-22 93072]
S4 Update BetterBrowse;Update BetterBrowse;C:\Program Files (x86)\BetterBrowse\updateBetterBrowse.exe [2014-1-10 97064]
S4 Util BetterBrowse;Util BetterBrowse;C:\Program Files (x86)\BetterBrowse\bin\utilBetterBrowse.exe [2014-1-11 97064]
S4 vToolbarUpdater17.3.0;vToolbarUpdater17.3.0;C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\17.3.0\ToolbarUpdater.exe [2014-1-5 1771544]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2014-01-17 08:55:27 -------- d-----w- C:\Program Files (x86)\ESET
2014-01-17 08:20:48 -------- d-----w- C:\drivers_16_jan_2014
2014-01-17 08:12:13 -------- d-----w- C:\Program Files (x86)\Hp
2014-01-17 07:37:41 -------- d-----w- C:\Users\Frank\AppData\Local\{BCB34096-29D8-44D3-A9A8-467D64037BFD}
2014-01-17 07:19:03 -------- d-----w- C:\Users\Frank\AppData\Local\{D866BBD7-45AF-491A-AE50-41BE73929C02}
2014-01-17 07:05:38 -------- d-----w- C:\Active_Directory_export_16_Jan_2014
2014-01-17 07:03:45 -------- d-----w- C:\email_16_Jan_2014
2014-01-17 06:59:19 -------- d-----w- C:\Users\Frank\AppData\Local\{B7932BBC-B3A7-49D3-9C98-DA3B5506D96E}
2014-01-17 06:44:48 -------- d-----w- C:\windows\pss
2014-01-17 06:19:05 -------- d-----w- C:\Users\Frank\AppData\Local\{FBC0AB05-986A-4FFC-8191-8EF151D80E18}
2014-01-16 19:23:01 -------- d-----w- C:\Program Files\Highlightly
2014-01-16 19:22:55 -------- d-----w- C:\Program Files (x86)\Highlightly
2014-01-16 19:22:47 -------- d-----w- C:\Users\Frank\AppData\Local\Programs
2014-01-16 19:22:36 -------- d-----w- C:\Users\Frank\AppData\Local\VisualBeeClient
2014-01-16 19:22:35 -------- d-----w- C:\Program Files (x86)\Plus-HD-4.8
2014-01-16 19:22:31 -------- d-----w- C:\Users\Frank\AppData\Local\VisualBeeExe
2014-01-16 19:22:19 -------- d-----w- C:\ProgramData\VisualBee
2014-01-16 19:06:53 -------- d-----w- C:\Program Files (x86)\Allyrics-16
2014-01-16 16:00:43 -------- d-----w- C:\Users\Frank\AppData\Local\{B452E986-1814-4F36-8FFC-815F523F3705}
2014-01-16 03:57:58 -------- d-----w- C:\Users\Frank\AppData\Local\{1FE98229-2094-4232-94DB-2411141CF2B8}
2014-01-15 17:35:21 -------- d-----w- C:\windows\SysWow64\SearchProtect
2014-01-15 15:57:40 -------- d-----w- C:\Users\Frank\AppData\Local\{5A87603E-F0F5-45D5-B9FF-9309D7507A93}
2014-01-15 12:36:12 915968 ----a-w- C:\windows\System32\MPSSVC.dll
2014-01-15 12:36:12 86016 ----a-w- C:\windows\SysWow64\davclnt.dll
2014-01-15 12:36:12 758784 ----a-w- C:\windows\System32\FirewallAPI.dll
2014-01-15 12:36:12 74752 ----a-w- C:\windows\System32\drivers\mpsdrv.sys
2014-01-15 12:36:12 588288 ----a-w- C:\windows\System32\SHCore.dll
2014-01-15 12:36:12 550400 ----a-w- C:\windows\SysWow64\FirewallAPI.dll
2014-01-15 12:36:12 452608 ----a-w- C:\windows\SysWow64\SHCore.dll
2014-01-15 12:36:12 227840 ----a-w- C:\windows\System32\WebClnt.dll
2014-01-15 12:36:12 199168 ----a-w- C:\windows\SysWow64\WebClnt.dll
2014-01-15 12:36:12 104448 ----a-w- C:\windows\System32\davclnt.dll
2014-01-15 12:36:12 100696 ----a-w- C:\windows\System32\drivers\disk.sys
2014-01-15 01:53:00 -------- d-----w- C:\Users\Frank\AppData\Local\{F20F3852-E2F0-49F4-9462-1BFB4E4AE6C8}
2014-01-14 12:28:08 -------- d-----w- C:\Users\Frank\AppData\Local\{7B3B69FD-0440-40C9-A08E-C4D941BC9648}
2014-01-13 16:24:22 -------- d-----w- C:\Users\Frank\AppData\Local\{8869B2FC-3267-4DDF-89C7-4BDF36412F6C}
2014-01-13 04:07:29 -------- d-----w- C:\Users\Frank\AppData\Local\{EFC061E5-BDDC-41EC-ADD2-05A8CE82503A}
2014-01-12 14:27:27 -------- d-----w- C:\Users\Frank\AppData\Local\{351850F0-A48D-4882-8C8E-65FE9B93F594}
2014-01-11 19:14:13 -------- d-----w- C:\Users\Frank\AppData\Local\{4D6D453F-9CFB-413A-A949-88C3055DCF7E}
2014-01-11 17:58:29 -------- d-----w- C:\Program Files (x86)\BetterBrowse
2014-01-11 17:58:06 -------- d-----w- C:\Program Files (x86)\The weDownload Manager
2014-01-11 17:57:57 -------- d-----w- C:\Program Files (x86)\MyPC Backup
2014-01-11 17:57:44 -------- d-----w- C:\Users\Frank\AppData\Local\Adobe
2014-01-11 17:57:40 -------- d-----w- C:\Users\Frank\AppData\Local\SearchProtect
2014-01-11 17:57:40 -------- d-----w- C:\Program Files (x86)\SearchProtect
2014-01-11 06:18:07 -------- d-----w- C:\Users\Frank\AppData\Local\{C797B188-213F-41F2-90BE-676D5FA39844}
2014-01-10 14:49:19 -------- d-----w- C:\Users\Frank\AppData\Local\{1BD393EE-D3F4-4889-B6D4-0808D8F67D75}
2014-01-10 01:47:58 -------- d-----w- C:\Users\Frank\AppData\Local\{23241B76-EA74-4FC9-8899-8FC7F81D9346}
2014-01-09 12:11:13 -------- d-----w- C:\Users\Frank\AppData\Local\{A82B079F-E221-4B14-98B5-FACC5CB345A9}
2014-01-08 17:24:18 -------- d-----w- C:\Users\Frank\AppData\Local\{D1CC5077-86AB-45FA-AB42-C33DEABBF2BD}
2014-01-08 03:29:39 -------- d-----w- C:\Users\Frank\AppData\Local\{9A5B6F8D-2719-491E-97B1-731913ED650F}
2014-01-07 04:21:09 -------- d-----w- C:\Users\Frank\AppData\Local\{8C43DA4C-4C7B-4240-BD12-00DF820EEFBD}
2014-01-06 14:50:51 -------- d-----w- C:\Users\Frank\AppData\Local\{89C71243-4AAD-4CBA-91E4-664DE01F0D28}
2014-01-05 18:01:42 -------- d-----w- C:\Users\Frank\AppData\Local\{F66096AF-CF13-48AD-96F6-3E9E21EFB6A4}
2014-01-04 23:07:27 -------- d-----w- C:\Users\Frank\AppData\Local\{CADD7DB5-FD56-4123-B139-AFB06ACBB306}
2014-01-04 04:52:56 -------- d-----w- C:\Users\Frank\AppData\Local\{393723B7-3060-4A41-B351-93B209A31C4F}
2014-01-03 16:31:09 -------- d-----w- C:\Users\Frank\AppData\Local\{4BE140FA-5AB2-4F76-A1C6-2252CCCAF65A}
2014-01-03 04:14:31 -------- d-----w- C:\Users\Frank\AppData\Local\{36F16594-12DB-4035-AD7B-BCB67B2D0415}
2014-01-02 10:31:14 -------- d-----w- C:\Users\Frank\AppData\Local\{6B89989A-D638-4720-9594-E8494EB9343E}
2014-01-01 15:37:14 -------- d-----w- C:\Users\Frank\AppData\Local\{2D8B0BA9-31C6-4B93-A928-AAC46AE8CB9A}
2013-12-31 15:34:03 -------- d-----w- C:\Users\Frank\AppData\Local\{54373059-AB35-44A3-8F26-AC21CB46AE47}
2013-12-31 03:06:11 -------- d-----w- C:\Users\Frank\AppData\Local\{3584EEA4-CC58-4384-874C-B83A821B2E9C}
2013-12-30 16:26:18 236208 ----a-w- C:\ProgramData\Microsoft\Windows\Sqm\Manifest\Sqm10229.bin
2013-12-30 13:28:11 -------- d-----w- C:\Users\Frank\AppData\Local\{C414AEE4-14DE-4ACF-8932-68427283EA2E}
2013-12-29 18:59:37 -------- d-----w- C:\Users\Frank\AppData\Local\{E1AA518D-3D5F-4626-B252-6FB69380FB7A}
2013-12-29 06:52:18 -------- d-----w- C:\Users\Frank\AppData\Local\{9CC4D36B-6096-4A9A-9B71-1605E2B33A90}
2013-12-28 16:29:30 -------- d-----w- C:\Users\Frank\AppData\Local\{18C7B609-BAB9-4967-8BF1-8F91B509684D}
2013-12-27 21:48:22 -------- d-----w- C:\Users\Frank\AppData\Local\{B668205F-0D08-4B22-9CAA-CBDD6BBE3DAE}
2013-12-27 04:59:38 -------- d-----w- C:\Users\Frank\AppData\Local\{C44092A2-3D62-4ABB-9771-AB82FD943B25}
2013-12-26 16:42:15 -------- d-----w- C:\Users\Frank\AppData\Local\{8E1B527B-10D8-4355-A0ED-69686C2A5CA2}
2013-12-26 01:13:38 -------- d-----w- C:\Users\Frank\AppData\Local\{8B22B118-67E9-4CE7-A457-B121E30EBB24}
2013-12-25 09:26:26 -------- d-----w- C:\Users\Frank\AppData\Local\{83F2FDB5-E02E-418F-9061-B1EA6B80131D}
2013-12-24 18:34:35 -------- d-----w- C:\Users\Frank\AppData\Local\{8FB0E03C-FDC7-4D9A-AE9D-3D1BDD48D05F}
2013-12-24 06:20:54 -------- d-----w- C:\Users\Frank\AppData\Local\{2968E8F3-0D73-46EB-9FAC-56BD181BFE60}
2013-12-23 17:56:29 -------- d-----w- C:\Users\Frank\AppData\Local\{EAC0EFC0-2353-4BA6-AC6F-308F3B1EBB22}
2013-12-23 05:04:44 -------- d-----w- C:\Users\Frank\AppData\Local\{2B9561FF-85CE-46B8-9F2B-6916088662DE}
2013-12-22 15:57:59 -------- d-----w- C:\Users\Frank\AppData\Local\{B8F1EC8D-C063-4CF7-8B8F-05ECB1C1E5FF}
2013-12-22 03:57:40 -------- d-----w- C:\Users\Frank\AppData\Local\{32E6D8CA-63B2-4C87-BDEC-7D19AA6246CF}
2013-12-21 14:46:17 -------- d-----w- C:\Users\Frank\AppData\Local\{9FD8C771-EC39-4C79-9816-2A0A0AD404C2}
2013-12-21 04:14:36 -------- d-sh--w- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2013-12-20 16:53:59 -------- d-----w- C:\Users\Frank\AppData\Local\{083C891F-CC88-4DB5-9681-68DB9ACDE617}
2013-12-20 04:33:26 -------- d-----w- C:\Users\Frank\AppData\Local\{D8121274-4737-457A-9851-0D394E23994C}
2013-12-19 14:48:47 -------- d-----w- C:\Users\Frank\AppData\Local\{A1F6A1E5-9EED-4DBF-86D0-00BAFF122CE1}
2013-12-19 02:00:35 -------- d-----w- C:\Users\Frank\AppData\Local\{2F59A692-6BCF-42C0-B24F-579A6F7D008A}
.
==================== Find3M ====================
.
2014-01-17 19:38:31 16152 ----a-w- C:\windows\System32\drivers\SWDUMon.sys
2014-01-09 08:02:07 78296 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-01-09 08:02:07 694240 ----a-w- C:\windows\SysWow64\FlashPlayerApp.exe
2013-12-09 01:38:35 96168 ----a-w- C:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-12-04 19:46:36 58256 ----a-w- C:\windows\System32\drivers\hlnfd.sys
2013-11-20 19:05:34 46368 ----a-w- C:\windows\System32\drivers\avgtpx64.sys
2013-11-19 10:21:41 267936 ------w- C:\windows\System32\MpSigStub.exe
2013-11-16 00:04:26 29480 ----a-w- C:\windows\SysWow64\msxml3a.dll
2013-11-06 23:18:57 4036608 ----a-w- C:\windows\System32\win32k.sys
2013-11-06 04:55:48 150808 ----a-w- C:\windows\System32\drivers\avgdiska.sys
2013-11-05 04:52:42 240920 ----a-w- C:\windows\System32\drivers\avgidsdrivera.sys
2013-11-01 06:00:18 212280 ----a-w- C:\windows\System32\drivers\avgldx64.sys
2013-11-01 05:49:46 294712 ----a-w- C:\windows\System32\drivers\avgloga.sys
2013-10-25 06:19:22 2241536 ----a-w- C:\windows\System32\wininet.dll
2013-10-25 06:19:12 915968 ----a-w- C:\windows\System32\uxtheme.dll
2013-10-25 06:17:57 3959808 ----a-w- C:\windows\System32\jscript9.dll
2013-10-25 05:25:58 194872 ----a-w- C:\windows\System32\drivers\avgidsha.sys
2013-10-25 04:45:11 1767936 ----a-w- C:\windows\SysWow64\wininet.dll
2013-10-25 04:43:42 2877952 ----a-w- C:\windows\SysWow64\jscript9.dll
2013-10-22 05:28:28 252728 ----a-w- C:\windows\System32\drivers\avgwfpa.sys
.
============= FINISH: 13:10:26.18 ===============

Viewing all articles
Browse latest Browse all 4746

Trending Articles