The title pretty much says it all. I can't really identify any symptoms other than that. I ran DDS in safe mode, because the machine is almost inoperable otherwise. I don't have access to a boot CD or installation disc.
DDS (Ver_2012-11-20.01) - NTFS_x86 NETWORK
Internet Explorer: 9.0.8112.16450 BrowserJavaVersion: 10.10.2
Run by 100035350 at 22:34:23 on 2013-03-30
Microsoft Windows 7 Enterprise 6.1.7600.0.1252.1.1033.18.2996.2320 [GMT 4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}
SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\windows\system32\wininit.exe
C:\windows\system32\lsm.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\windows\Explorer.EXE
C:\windows\system32\ctfmon.exe
C:\Users\100035350\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\100035350\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\100035350\AppData\Local\Google\Chrome\Application\chrome.exe
c:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\windows\system32\conhost.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\Users\100035350\AppData\Local\Google\Chrome\Application\chrome.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://google.com/
uWindow Title = Windows Internet Explorer provided by Khalifa University
uProxyServer = hxxp=127.0.0.1:8555
uProxyOverride = 127.0.0.1;localhost;10.*;192.168.*;127.0.0.1:895;127.0.0.1:896;<local>
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Babylon toolbar helper: {2EECD738-5844-4a99-B4B6-146BF802613B} - c:\program files\babylontoolbar\babylontoolbar\1.5.3.17\bh\BabylonToolbar.dll
BHO: DivX Plus Web Player HTML5 <video>: {326E768D-4182-46FD-9C16-1449A49795F4} - c:\program files\divx\divx plus web player\ie\divxhtml5\DivXHTML5.dll
BHO: BitComet Helper: {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - c:\program files\bitcomet\tools\BitCometBHO_1.4.12.6.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files\avg secure search\14.2.0.1\AVG Secure Search_toolbar.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - c:\program files\windows live\companion\companioncore.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -
BHO: Yontoo: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - c:\program files\yontoo\YontooIEClient.dll
BHO: SimpleAdblock Class: {FFCB3198-32F3-4E8B-9539-4324694ED664} - c:\program files\common files\simple adblock\SimpleAdblock.dll
TB: <No Name>: {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - LocalServer32 - <no file>
TB: Lenovo ThinkVantage Toolbox: {86B9B5DD-FB75-4035-BD52-3C94F7849CAF} - c:\program files\pc-doctor\ATLPcdToolbar544928.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
TB: Babylon Toolbar: {98889811-442D-49dd-99D7-DC866BE87DBC} - c:\program files\babylontoolbar\babylontoolbar\1.5.3.17\BabylonToolbarTlbr.dll
TB: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files\avg secure search\14.2.0.1\AVG Secure Search_toolbar.dll
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [ares] "c:\program files\ares\Ares.exe" -h
uRun: [Google Update] "c:\users\100035350\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [Vidalia] "d:\tor browser\app\vidalia.exe"
uRun: [RSS] wscript "c:\users\100035350\appdata\roaming\adobe\flash player\file cache\file.vbs" "c:\users\100035350\appdata\roaming\adobe\flash player\file cache\rss.bat"
mRun: [TpShocks] TpShocks.exe
mRun: [picon] "c:\program files\common files\intel\privacy icon\PrivacyIconClient.exe" -startup
mRun: [PWMTRV] rundll32 c:\progra~1\thinkpad\utilit~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
mRun: [AcWin7Hlpr] c:\program files\lenovo\access connections\AcTBenabler.exe
mRun: [TPHOTKEY] c:\program files\lenovo\hotkey\TPOSDSVC.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [LPManager] c:\progra~1\thinkv~2\prdctr\LPMGR.exe
mRun: [LPMailChecker] c:\progra~1\thinkv~2\prdctr\LPMLCHK.exe
mRun: [RoxioDragToDisc] "c:\program files\lenovo\drag-to-disc\DrgToDsc.exe"
mRun: [CameraApplicationLauncher] c:\program files\lenovo\camera center\bin\CameraApplicationLaunchpadLauncher.exe
mRun: [TrueImageMonitor.exe] c:\program files\acronis\trueimagehome\TrueImageMonitor.exe
mRun: [AcronisTimounterMonitor] c:\program files\acronis\trueimagehome\TimounterMonitor.exe
mRun: [Acronis Scheduler2 Service] "c:\program files\common files\acronis\schedule2\schedhlp.exe"
mRun: [IMSS] "c:\program files\intel\intel(r) management engine components\imss\PIconStartup.exe"
mRun: [LENOVO.TPKNRRES] c:\program files\lenovo\communications utility\TPKNRRES.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [nwiz] nwiz.exe /installquiet
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [jEdit Server] "c:\program files\jedit\jedit.exe" -background -nogui --l4j-dont-wait
mRun: [NI Background Service] c:\program files\national instruments\shared\update service\niupdate.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
mRun: [SwitchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
mRun: [AdobeCS5.5ServiceManager] "c:\program files\common files\adobe\cs5.5servicemanager\CS5.5ServiceManager.exe" -launchedbylogin
mRun: [NeroFilterCheck] c:\program files\common files\ahead\lib\NeroCheck.exe
mRun: [vProt] "c:\program files\avg secure search\vprot.exe"
mRun: [Communicator] "c:\program files\microsoft office communicator\communicator.exe" /fromrunkey
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [vmware-tray.exe] "c:\program files\vmware\vmware workstation\vmware-tray.exe"
mRun: [DivXMediaServer] c:\program files\divx\divx media server\DivXMediaServer.exe
mRun: [DivXUpdate] "c:\program files\divx\divx update\DivXUpdate.exe" /CHECKNOW
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
StartupFolder: c:\users\100035~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\facebo~1.lnk - c:\users\100035350\appdata\local\facebook\messenger\2.1.4814.0\FacebookMessenger.exe
StartupFolder: c:\users\100035~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\paltalk.lnk - c:\program files\paltalk messenger\paltalk.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\thinkpad\bluetooth software\BTTray.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\rcimgd~1.lnk - c:\program files\rotateimage\RCIMGDIR.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: &D&ownload &with BitComet - c:\program files\bitcomet\BitComet.exe/AddLink.htm
IE: &D&ownload all with BitComet - c:\program files\bitcomet\BitComet.exe/AddAllLink.htm
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - c:\program files\windows live\companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - c:\program files\paltalk messenger\Paltalk.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\thinkpad\bluetooth software\btsendto_ie.htm
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - c:\program files\bitcomet\tools\BitCometBHO_1.4.12.6.dll/206
LSP: %SystemRoot%\system32\PrxerDrv.dll
LSP: %windir%\system32\vsocklib.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} - hxxp://clients.futuremark.com/calico/systeminfodeploy/FMSI.cab
DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.5.1.0.cab
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{1AA5EC39-BBE0-4F77-91C9-106BF5698474} : DHCPNameServer = 10.10.2.11 10.10.2.12
TCP: Interfaces\{3084E78C-52CC-4291-9533-AE195FC51CD6}\C496E6B6379737 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{7E8F0389-8304-467E-915B-81582624C5B8} : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{D6D1A264-5352-42FD-BEA8-9FC2313BD925} : DHCPNameServer = 10.10.100.100
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\14.2.0\ViProtocol.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
Notify: igfxcui - igfxdev.dll
Notify: psfus - c:\program files\thinkvantage fingerprint software\psqlpwd.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
LSA: Notification Packages = scecli c:\program files\thinkvantage fingerprint software\psqlpwd.dll ACGina
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\100035350\appdata\roaming\mozilla\firefox\profiles\sbhry99b.default-1357209289400\
FF - prefs.js: network.proxy.ftp - proxy1.emirates.net.ae
FF - prefs.js: network.proxy.ftp_port - 8080
FF - prefs.js: network.proxy.http - proxy1.emirates.net.ae
FF - prefs.js: network.proxy.http_port - 8080
FF - prefs.js: network.proxy.socks - proxy1.emirates.net.ae
FF - prefs.js: network.proxy.socks_port - 8080
FF - prefs.js: network.proxy.ssl - proxy1.emirates.net.ae
FF - prefs.js: network.proxy.ssl_port - 8080
FF - prefs.js: network.proxy.type - 4
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\common files\avg secure search\sitesafetyinstaller\14.2.0\npsitesafety.dll
FF - plugin: c:\program files\divx\divx ovs helper\npovshelper.dll
FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\microsoft silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\nplv86win32.dll
FF - plugin: c:\program files\mozilla firefox\plugins\nplv90win32.dll
FF - plugin: c:\program files\onlive\plugin\npolgdet.dll
FF - plugin: c:\program files\veetle\player\npvlc.dll
FF - plugin: c:\program files\veetle\plugins\npVeetle.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\100035350\appdata\local\facebook\messenger\2.1.4814.0\npFbDesktopPlugin.dll
FF - plugin: c:\users\100035350\appdata\local\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\users\100035350\appdata\locallow\square enix\nprun3d.dll
FF - plugin: c:\users\100035350\appdata\locallow\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\wat\npWatWeb.dll
FF - ExtSQL: 2013-02-10 14:22; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\100035350\appdata\roaming\mozilla\firefox\profiles\sbhry99b.default-1357209289400\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 tdrpman147;Acronis Try&Decide and Restore Points filter (build 147);c:\windows\system32\drivers\tdrpm147.sys [2010-2-16 971232]
R0 TPDIGIMN;TPDIGIMN;c:\windows\system32\drivers\ApsHM86.sys [2009-6-30 20520]
R0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys [2013-1-7 61464]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2012-7-30 33112]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2012-6-17 232512]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K;c:\windows\system32\drivers\e1k6232.sys [2010-10-27 215208]
R3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.10.1;c:\windows\system32\drivers\libusb0.sys [2011-10-14 33792]
R3 NETw5s32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 32 Bit;c:\windows\system32\drivers\NETw5s32.sys [2009-9-16 6114816]
S0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2012-8-30 193552]
S1 lenovo.smi;Lenovo System Interface Driver;c:\windows\system32\drivers\smiif32.sys [2010-12-15 13480]
S1 MpKsla438c2bd;MpKsla438c2bd;c:\programdata\microsoft\microsoft antimalware\definition updates\{67a52696-97cc-4d00-82c3-dd88cd1f324f}\MpKsla438c2bd.sys [2013-3-30 29904]
S2 BBSvc;Bing Bar Update Service;c:\program files\microsoft\bingbar\BBSvc.EXE [2011-10-21 196176]
S2 BBUpdate;BBUpdate;c:\program files\microsoft\bingbar\SeaPort.EXE [2011-10-13 249648]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912]
S2 LENOVO.CAMMUTE;Lenovo Camera Mute;c:\program files\lenovo\communications utility\CamMute.exe [2010-12-15 50536]
S2 LENOVO.MICMUTE;Lenovo Microphone Mute;c:\program files\lenovo\hotkey\micmute.exe [2010-12-15 45496]
S2 LENOVO.TPKNRSVC;Lenovo Keyboard Noise Reduction;c:\program files\lenovo\communications utility\TPKNRSVC.exe [2010-12-15 74088]
S2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll;c:\program files\lenovo\virtscrl\lvvsst.exe [2010-12-15 93032]
S2 libusbd;LibUsb-Win32 - Daemon, Version 0.1.10.1;system32\libusbd-nt.exe --> system32\libusbd-nt.exe [?]
S2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2010-10-24 99272]
S2 rimspci;rimspci;c:\windows\system32\drivers\rimspe86.sys [2009-12-21 47104]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-6-7 160944]
S2 smihlp;SMI Helper Driver (smihlp);c:\program files\thinkvantage fingerprint software\smihlp.sys [2009-3-14 12560]
S2 TeamViewer6;TeamViewer 6;c:\program files\teamviewer\version6\TeamViewer_Service.exe [2011-4-14 2271608]
S2 TPHKSVC;On Screen Display;c:\program files\lenovo\hotkey\TPHKSVC.exe [2010-12-15 63928]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files\intel\intel(r) management engine components\uns\UNS.exe [2010-12-15 2533400]
S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files\common files\vmware\usb\vmware-usbarbitrator.exe [2012-10-11 721048]
S2 VMwareHostd;VMware Workstation Server;c:\program files\vmware\vmware workstation\vmware-hostd.exe [2012-11-1 13234176]
S2 vstor2-mntapi10-shared;Vstor2 MntApi 1.0 Driver (shared);c:\windows\system32\drivers\vstor2-mntapi10-shared.sys [2011-7-12 22768]
S2 vToolbarUpdater14.2.0;vToolbarUpdater14.2.0;c:\program files\common files\avg secure search\vtoolbarupdater\14.2.0\ToolbarUpdater.exe [2013-2-18 968880]
S3 5U877;USB Video Device;c:\windows\system32\drivers\5U877.sys [2009-12-21 125824]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service;c:\program files\bitcomet\tools\bitcometservice.exe -service --> c:\program files\bitcomet\tools\BitCometService.exe -service [?]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2009-12-21 29472]
S3 CGVPNCliSrvc;CyberGhost VPN Client;c:\program files\cyberghost vpn\CGVPNCliService.exe [2012-11-1 2430128]
S3 cpuz134;cpuz134;c:\program files\cpuid\pc wizard 2010\pcwiz_x32.sys [2012-7-9 20328]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\drivers\e1y6032.sys [2009-7-14 214016]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2012-4-6 39272]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2012-3-8 1492840]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files\futuremark\futuremark systeminfo\FMSISvc.exe [2011-4-25 130976]
S3 Impcd;Impcd;c:\windows\system32\drivers\Impcd.sys [2010-10-27 132480]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\drivers\IntcDAud.sys [2010-10-27 247808]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2013-3-30 40776]
S3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\drivers\MijXfilt.sys [2011-10-14 95304]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\drivers\netw5v32.sys [2009-6-11 4231168]
S3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\NisSrv.exe [2012-9-12 287824]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2011-11-1 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2011-11-1 8576]
S3 PCDSRVC{3037D694-FD904ACA-06000000}_0;PCDSRVC{3037D694-FD904ACA-06000000}_0 - PCDR Kernel Mode Service Helper Driver;c:\program files\pc-doctor\pcdsrvc.pkms [2009-11-20 20848]
S3 Power Manager DBC Service;Power Manager DBC Service;c:\program files\thinkpad\utilities\PWMDBSVC.exe [2009-12-21 75040]
S3 rixdpcie;rixdpcie;c:\windows\system32\drivers\rixdpe86.sys [2009-12-21 38400]
S3 RoxMediaDB10;RoxMediaDB10;c:\program files\common files\roxio shared\10.0\sharedcom\RoxMediaDB10.exe [2008-4-25 1120752]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 SwitchBoard;SwitchBoard;c:\program files\common files\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 taphss6;Anchorfree HSS VPN Adapter;c:\windows\system32\drivers\taphss6.sys [2013-1-10 37064]
S3 TVTI2C;Lenovo SM bus driver;c:\windows\system32\drivers\tvti2c.sys [2009-7-2 38336]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2011-4-8 1343400]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [2008-5-6 11520]
S4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\windows live\mesh\wlcrasvc.exe [2010-9-22 51040]
.
=============== Created Last 30 ================
.
2013-03-30 18:10:04 29904 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{67a52696-97cc-4d00-82c3-dd88cd1f324f}\MpKsla438c2bd.sys
2013-03-30 15:42:01 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2013-03-30 15:41:21 -------- d-----w- c:\users\100035350\appdata\local\Programs
2013-03-30 11:28:50 7108640 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{67a52696-97cc-4d00-82c3-dd88cd1f324f}\mpengine.dll
2013-03-30 08:23:36 -------- d-----w- c:\users\100035350\appdata\local\{FDB45ABF-7C57-4B60-8F31-247C81483C3F}
2013-03-29 20:23:03 -------- d-----w- c:\users\100035350\appdata\local\{81A29BC2-33E7-416F-9382-0B73CA8BF760}
2013-03-29 08:35:06 7108640 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2013-03-29 08:21:51 -------- d-----w- c:\users\100035350\appdata\local\{9C551126-5503-47BD-8770-002324825BEE}
2013-03-28 19:46:23 -------- d-----w- c:\users\100035350\appdata\local\{91A2B1E6-9159-48A2-B7A9-8D869D02304A}
2013-03-28 06:03:57 -------- d-----w- c:\users\100035350\appdata\local\{B5FDDA2C-2799-4D81-BC8F-D6C8D605FC32}
2013-03-27 17:35:27 -------- d-----w- c:\program files\DVDVideoMedia
2013-03-27 15:04:10 -------- d-----w- c:\users\100035350\appdata\local\{40C3168B-0561-4073-AAFD-CB8DC4DA787F}
2013-03-26 14:17:54 -------- d-----w- c:\users\100035350\appdata\local\{FCA137A9-321A-41B9-8F48-1DFFA02FCF76}
2013-03-25 16:04:27 -------- d-----w- c:\users\100035350\appdata\local\{876A6DA9-2D5E-40A6-BAF9-B6C3097C82C9}
2013-03-24 18:36:55 -------- d-----w- c:\users\100035350\appdata\local\{456A81B7-E789-4CA1-B58C-75ED0C0C83A9}
2013-03-23 20:56:10 -------- d-----w- c:\users\100035350\appdata\local\{C90998C9-6052-4DE0-A747-7ADB53A4F73A}
2013-03-23 08:55:12 -------- d-----w- c:\users\100035350\appdata\local\{4D732C97-3C36-4FF7-991C-DE2055934046}
2013-03-22 23:00:50 7443384 ----a-w- c:\users\100035350\appdata\roaming\ConnectifyDispatchInstaller.exe
2013-03-22 11:36:04 -------- d-----w- c:\users\100035350\appdata\local\{8CA91EC3-3664-49B9-998C-A5AF115027FE}
2013-03-21 13:09:23 -------- d-----w- c:\users\100035350\appdata\local\{C3D4D490-E09D-48DF-9328-D08BB4633B5D}
2013-03-21 09:04:32 740840 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\{96b3d57a-0371-43f7-81a6-a455da2fb3d6}\gapaengine.dll
2013-03-20 16:24:39 -------- d-----w- c:\users\100035350\appdata\local\{6F64D394-D771-4809-9D3C-02D07B94A999}
2013-03-19 16:03:47 -------- d-----w- c:\users\100035350\appdata\local\{72908B66-78AA-407C-829F-0A0F593CCA1C}
2013-03-18 21:17:32 -------- d-----w- c:\users\100035350\appdata\local\{E9C537D9-8592-425B-A2BF-6926D8306092}
2013-03-17 08:24:59 -------- d-----w- c:\users\100035350\appdata\local\{1D08D2E3-9C5B-4356-84D1-703FA5008EDB}
2013-03-16 20:24:10 -------- d-----w- c:\users\100035350\appdata\local\{3A728DE8-6D63-49C7-A582-053D22969DED}
2013-03-16 11:11:50 -------- d-----w- c:\programdata\YTD Video Downloader
2013-03-16 11:11:47 -------- d-----w- c:\program files\GreenTree Applications
2013-03-16 08:23:15 -------- d-----w- c:\users\100035350\appdata\local\{FE19CA11-7EE5-42D9-8601-5B57F088C10B}
2013-03-16 08:16:43 -------- d-----w- c:\users\100035350\appdata\local\{FF9EC724-081E-40A6-A2AB-C8E560EFC8E3}
2013-03-15 10:30:39 -------- d-----w- c:\users\100035350\appdata\local\{A4BDDD48-F1C6-4784-8C94-68898FF79D57}
2013-03-14 22:18:23 -------- d-----w- c:\users\100035350\appdata\local\{5F4B5912-6600-4309-A578-3B1D664B77F3}
2013-03-14 05:03:52 -------- d-----w- c:\users\100035350\appdata\local\{978C92A5-41F7-441C-872B-C6440D27D5D7}
2013-03-13 17:03:16 -------- d-----w- c:\users\100035350\appdata\local\{EA452A1F-C69D-4BF5-9335-B8FAFE66C2DC}
2013-03-13 17:02:21 -------- d-----w- c:\users\100035350\appdata\local\{19A7081E-B418-419D-B5A1-4988B4056616}
2013-03-12 15:15:07 -------- d-----w- c:\users\100035350\appdata\local\{80C3EA4D-41CF-4038-AA8B-E129DF032723}
2013-03-11 17:54:56 -------- d-----w- c:\users\100035350\appdata\local\{FDDF8045-545B-4FA3-B4D7-8F47C9ADD95A}
2013-03-10 17:02:47 -------- d-----w- c:\users\100035350\appdata\local\{12B67021-FE77-4559-BB70-558C3EDB5112}
2013-03-10 03:47:58 -------- d-----w- c:\users\100035350\appdata\local\{66BCEC22-9471-4DE7-9D59-0564559CE902}
2013-03-09 12:12:18 -------- d-----w- c:\users\100035350\appdata\local\{9C608340-1653-4477-B531-D2757D5287FE}
2013-03-08 21:45:41 -------- d-----w- c:\users\100035350\appdata\local\{C66B161C-D0F3-414D-8354-7071027C9DA4}
2013-03-08 09:29:01 96664 ----a-w- c:\program files\mozilla firefox\webapprt-stub.exe
2013-03-08 09:29:01 19352 ----a-w- c:\program files\mozilla firefox\xpcom.dll
2013-03-08 09:29:01 17887640 ----a-w- c:\program files\mozilla firefox\xul.dll
2013-03-08 09:29:01 170232 ----a-w- c:\program files\mozilla firefox\webapp-uninstaller.exe
2013-03-08 09:29:00 92056 ----a-w- c:\program files\mozilla firefox\smime3.dll
2013-03-08 09:29:00 865744 ----a-w- c:\program files\mozilla firefox\uninstall\helper.exe
2013-03-08 09:29:00 272280 ----a-w- c:\program files\mozilla firefox\updater.exe
2013-03-08 09:29:00 155544 ----a-w- c:\program files\mozilla firefox\ssl3.dll
2013-03-08 09:29:00 151960 ----a-w- c:\program files\mozilla firefox\softokn3.dll
2013-03-07 21:44:17 -------- d-----w- c:\users\100035350\appdata\local\{777F1BD9-C32D-4C29-BAE1-2718C4198B13}
2013-03-07 09:43:11 -------- d-----w- c:\users\100035350\appdata\local\{FD186BBD-8BED-4311-8D1B-CBB5BB63B150}
2013-03-06 17:03:36 -------- d-----w- c:\users\100035350\appdata\local\{B9190873-2C83-4139-9757-18FCED5B5E33}
2013-03-05 17:22:23 -------- d-----w- c:\users\100035350\appdata\local\{91581E3D-879C-46C4-8299-B12AFCEC0816}
2013-03-04 18:04:00 -------- d-----w- c:\users\100035350\appdata\local\{9A7B5591-FB1A-41B5-BBBE-623A29537304}
2013-03-03 22:13:51 -------- d-----w- c:\users\100035350\appdata\local\{F44C5BCF-6CE1-4FF4-A923-60871F2C470D}
2013-03-03 17:15:12 -------- d-----w- c:\program files\VitalSource Bookshelf
2013-03-03 10:13:25 -------- d-----w- c:\users\100035350\appdata\local\{AB526552-6576-424F-B235-7640AC935B28}
2013-03-02 21:52:49 -------- d-----w- c:\users\100035350\appdata\local\{E58E0EBB-050D-4759-B96B-259892FD29AF}
2013-03-02 09:52:11 -------- d-----w- c:\users\100035350\appdata\local\{3AE92CF6-A395-4AFF-A403-48F64986F061}
2013-03-01 21:51:30 -------- d-----w- c:\users\100035350\appdata\local\{F0E975C6-C358-4EB4-89EC-5B15CA562DD5}
2013-03-01 08:22:24 -------- d-----w- c:\users\100035350\appdata\local\{13A7FE6B-2582-417A-91B4-2FDCFAAEF382}
.
==================== Find3M ====================
.
2013-03-13 19:09:04 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-13 19:09:04 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-02-22 01:37:16 40136 ----a-w- c:\windows\system32\drivers\hssdrv6.sys
2013-02-18 18:25:54 33112 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-01-30 10:53:21 232336 ------w- c:\windows\system32\MpSigStub.exe
2013-01-10 19:41:34 37064 ----a-w- c:\windows\system32\drivers\taphss6.sys
.
============= FINISH: 22:37:26.22 ===============
DDS (Ver_2012-11-20.01) - NTFS_x86 NETWORK
Internet Explorer: 9.0.8112.16450 BrowserJavaVersion: 10.10.2
Run by 100035350 at 22:34:23 on 2013-03-30
Microsoft Windows 7 Enterprise 6.1.7600.0.1252.1.1033.18.2996.2320 [GMT 4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {B140BF4E-23BB-4198-90AB-A51A4C60A69C}
SP: Microsoft Security Essentials *Enabled/Updated* {0A215EAA-0581-4E16-AA1B-9E6837E7EC21}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ================
.
C:\windows\system32\wininit.exe
C:\windows\system32\lsm.exe
c:\Program Files\Microsoft Security Client\MsMpEng.exe
C:\windows\Explorer.EXE
C:\windows\system32\ctfmon.exe
C:\Users\100035350\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\100035350\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\100035350\AppData\Local\Google\Chrome\Application\chrome.exe
c:\Program Files\Microsoft Security Client\MpCmdRun.exe
C:\windows\system32\conhost.exe
C:\windows\system32\wbem\wmiprvse.exe
C:\Users\100035350\AppData\Local\Google\Chrome\Application\chrome.exe
C:\windows\system32\svchost.exe -k DcomLaunch
C:\windows\system32\svchost.exe -k RPCSS
C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\windows\system32\svchost.exe -k netsvcs
C:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\windows\system32\svchost.exe -k LocalService
C:\windows\system32\svchost.exe -k NetworkService
C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://google.com/
uWindow Title = Windows Internet Explorer provided by Khalifa University
uProxyServer = hxxp=127.0.0.1:8555
uProxyOverride = 127.0.0.1;localhost;10.*;192.168.*;127.0.0.1:895;127.0.0.1:896;<local>
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Babylon toolbar helper: {2EECD738-5844-4a99-B4B6-146BF802613B} - c:\program files\babylontoolbar\babylontoolbar\1.5.3.17\bh\BabylonToolbar.dll
BHO: DivX Plus Web Player HTML5 <video>: {326E768D-4182-46FD-9C16-1449A49795F4} - c:\program files\divx\divx plus web player\ie\divxhtml5\DivXHTML5.dll
BHO: BitComet Helper: {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - c:\program files\bitcomet\tools\BitCometBHO_1.4.12.6.dll
BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files\avg secure search\14.2.0.1\AVG Secure Search_toolbar.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - c:\program files\windows live\companion\companioncore.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -
BHO: Yontoo: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - c:\program files\yontoo\YontooIEClient.dll
BHO: SimpleAdblock Class: {FFCB3198-32F3-4E8B-9539-4324694ED664} - c:\program files\common files\simple adblock\SimpleAdblock.dll
TB: <No Name>: {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - LocalServer32 - <no file>
TB: Lenovo ThinkVantage Toolbox: {86B9B5DD-FB75-4035-BD52-3C94F7849CAF} - c:\program files\pc-doctor\ATLPcdToolbar544928.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
TB: Babylon Toolbar: {98889811-442D-49dd-99D7-DC866BE87DBC} - c:\program files\babylontoolbar\babylontoolbar\1.5.3.17\BabylonToolbarTlbr.dll
TB: AVG Security Toolbar: {95B7759C-8C7F-4BF1-B163-73684A933233} - c:\program files\avg secure search\14.2.0.1\AVG Secure Search_toolbar.dll
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [ares] "c:\program files\ares\Ares.exe" -h
uRun: [Google Update] "c:\users\100035350\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [Vidalia] "d:\tor browser\app\vidalia.exe"
uRun: [RSS] wscript "c:\users\100035350\appdata\roaming\adobe\flash player\file cache\file.vbs" "c:\users\100035350\appdata\roaming\adobe\flash player\file cache\rss.bat"
mRun: [TpShocks] TpShocks.exe
mRun: [picon] "c:\program files\common files\intel\privacy icon\PrivacyIconClient.exe" -startup
mRun: [PWMTRV] rundll32 c:\progra~1\thinkpad\utilit~1\PWMTR32V.DLL,PwrMgrBkGndMonitor
mRun: [AcWin7Hlpr] c:\program files\lenovo\access connections\AcTBenabler.exe
mRun: [TPHOTKEY] c:\program files\lenovo\hotkey\TPOSDSVC.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [LPManager] c:\progra~1\thinkv~2\prdctr\LPMGR.exe
mRun: [LPMailChecker] c:\progra~1\thinkv~2\prdctr\LPMLCHK.exe
mRun: [RoxioDragToDisc] "c:\program files\lenovo\drag-to-disc\DrgToDsc.exe"
mRun: [CameraApplicationLauncher] c:\program files\lenovo\camera center\bin\CameraApplicationLaunchpadLauncher.exe
mRun: [TrueImageMonitor.exe] c:\program files\acronis\trueimagehome\TrueImageMonitor.exe
mRun: [AcronisTimounterMonitor] c:\program files\acronis\trueimagehome\TimounterMonitor.exe
mRun: [Acronis Scheduler2 Service] "c:\program files\common files\acronis\schedule2\schedhlp.exe"
mRun: [IMSS] "c:\program files\intel\intel(r) management engine components\imss\PIconStartup.exe"
mRun: [LENOVO.TPKNRRES] c:\program files\lenovo\communications utility\TPKNRRES.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [nwiz] nwiz.exe /installquiet
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [jEdit Server] "c:\program files\jedit\jedit.exe" -background -nogui --l4j-dont-wait
mRun: [NI Background Service] c:\program files\national instruments\shared\update service\niupdate.exe
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
mRun: [SwitchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
mRun: [AdobeCS5.5ServiceManager] "c:\program files\common files\adobe\cs5.5servicemanager\CS5.5ServiceManager.exe" -launchedbylogin
mRun: [NeroFilterCheck] c:\program files\common files\ahead\lib\NeroCheck.exe
mRun: [vProt] "c:\program files\avg secure search\vprot.exe"
mRun: [Communicator] "c:\program files\microsoft office communicator\communicator.exe" /fromrunkey
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [vmware-tray.exe] "c:\program files\vmware\vmware workstation\vmware-tray.exe"
mRun: [DivXMediaServer] c:\program files\divx\divx media server\DivXMediaServer.exe
mRun: [DivXUpdate] "c:\program files\divx\divx update\DivXUpdate.exe" /CHECKNOW
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
StartupFolder: c:\users\100035~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\facebo~1.lnk - c:\users\100035350\appdata\local\facebook\messenger\2.1.4814.0\FacebookMessenger.exe
StartupFolder: c:\users\100035~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\paltalk.lnk - c:\program files\paltalk messenger\paltalk.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\thinkpad\bluetooth software\BTTray.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\rcimgd~1.lnk - c:\program files\rotateimage\RCIMGDIR.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: &D&ownload &with BitComet - c:\program files\bitcomet\BitComet.exe/AddLink.htm
IE: &D&ownload all with BitComet - c:\program files\bitcomet\BitComet.exe/AddAllLink.htm
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - c:\program files\windows live\companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - c:\program files\paltalk messenger\Paltalk.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\thinkpad\bluetooth software\btsendto_ie.htm
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - c:\program files\bitcomet\tools\BitCometBHO_1.4.12.6.dll/206
LSP: %SystemRoot%\system32\PrxerDrv.dll
LSP: %windir%\system32\vsocklib.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} - hxxp://clients.futuremark.com/calico/systeminfodeploy/FMSI.cab
DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.5.1.0.cab
TCP: NameServer = 192.168.2.1
TCP: Interfaces\{1AA5EC39-BBE0-4F77-91C9-106BF5698474} : DHCPNameServer = 10.10.2.11 10.10.2.12
TCP: Interfaces\{3084E78C-52CC-4291-9533-AE195FC51CD6}\C496E6B6379737 : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{7E8F0389-8304-467E-915B-81582624C5B8} : DHCPNameServer = 192.168.2.1
TCP: Interfaces\{D6D1A264-5352-42FD-BEA8-9FC2313BD925} : DHCPNameServer = 10.10.100.100
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\14.2.0\ViProtocol.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
Notify: igfxcui - igfxdev.dll
Notify: psfus - c:\program files\thinkvantage fingerprint software\psqlpwd.dll
SSODL: WebCheck - <orphaned>
SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
LSA: Notification Packages = scecli c:\program files\thinkvantage fingerprint software\psqlpwd.dll ACGina
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\100035350\appdata\roaming\mozilla\firefox\profiles\sbhry99b.default-1357209289400\
FF - prefs.js: network.proxy.ftp - proxy1.emirates.net.ae
FF - prefs.js: network.proxy.ftp_port - 8080
FF - prefs.js: network.proxy.http - proxy1.emirates.net.ae
FF - prefs.js: network.proxy.http_port - 8080
FF - prefs.js: network.proxy.socks - proxy1.emirates.net.ae
FF - prefs.js: network.proxy.socks_port - 8080
FF - prefs.js: network.proxy.ssl - proxy1.emirates.net.ae
FF - prefs.js: network.proxy.ssl_port - 8080
FF - prefs.js: network.proxy.type - 4
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\common files\avg secure search\sitesafetyinstaller\14.2.0\npsitesafety.dll
FF - plugin: c:\program files\divx\divx ovs helper\npovshelper.dll
FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
FF - plugin: c:\program files\google\picasa3\npPicasa3.dll
FF - plugin: c:\program files\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\program files\microsoft silverlight\4.1.10329.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\nplv86win32.dll
FF - plugin: c:\program files\mozilla firefox\plugins\nplv90win32.dll
FF - plugin: c:\program files\onlive\plugin\npolgdet.dll
FF - plugin: c:\program files\veetle\player\npvlc.dll
FF - plugin: c:\program files\veetle\plugins\npVeetle.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\100035350\appdata\local\facebook\messenger\2.1.4814.0\npFbDesktopPlugin.dll
FF - plugin: c:\users\100035350\appdata\local\google\update\1.3.21.135\npGoogleUpdate3.dll
FF - plugin: c:\users\100035350\appdata\locallow\square enix\nprun3d.dll
FF - plugin: c:\users\100035350\appdata\locallow\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_6_602_180.dll
FF - plugin: c:\windows\system32\wat\npWatWeb.dll
FF - ExtSQL: 2013-02-10 14:22; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\100035350\appdata\roaming\mozilla\firefox\profiles\sbhry99b.default-1357209289400\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
.
============= SERVICES / DRIVERS ===============
.
R0 tdrpman147;Acronis Try&Decide and Restore Points filter (build 147);c:\windows\system32\drivers\tdrpm147.sys [2010-2-16 971232]
R0 TPDIGIMN;TPDIGIMN;c:\windows\system32\drivers\ApsHM86.sys [2009-6-30 20520]
R0 vsock;vSockets Driver;c:\windows\system32\drivers\vsock.sys [2013-1-7 61464]
R1 avgtp;avgtp;c:\windows\system32\drivers\avgtpx86.sys [2012-7-30 33112]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2012-6-17 232512]
R3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K;c:\windows\system32\drivers\e1k6232.sys [2010-10-27 215208]
R3 libusb0;LibUsb-Win32 - Kernel Driver, Version 0.1.10.1;c:\windows\system32\drivers\libusb0.sys [2011-10-14 33792]
R3 NETw5s32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 32 Bit;c:\windows\system32\drivers\NETw5s32.sys [2009-9-16 6114816]
S0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2012-8-30 193552]
S1 lenovo.smi;Lenovo System Interface Driver;c:\windows\system32\drivers\smiif32.sys [2010-12-15 13480]
S1 MpKsla438c2bd;MpKsla438c2bd;c:\programdata\microsoft\microsoft antimalware\definition updates\{67a52696-97cc-4d00-82c3-dd88cd1f324f}\MpKsla438c2bd.sys [2013-3-30 29904]
S2 BBSvc;Bing Bar Update Service;c:\program files\microsoft\bingbar\BBSvc.EXE [2011-10-21 196176]
S2 BBUpdate;BBUpdate;c:\program files\microsoft\bingbar\SeaPort.EXE [2011-10-13 249648]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2012-7-9 104912]
S2 LENOVO.CAMMUTE;Lenovo Camera Mute;c:\program files\lenovo\communications utility\CamMute.exe [2010-12-15 50536]
S2 LENOVO.MICMUTE;Lenovo Microphone Mute;c:\program files\lenovo\hotkey\micmute.exe [2010-12-15 45496]
S2 LENOVO.TPKNRSVC;Lenovo Keyboard Noise Reduction;c:\program files\lenovo\communications utility\TPKNRSVC.exe [2010-12-15 74088]
S2 Lenovo.VIRTSCRLSVC;Lenovo Auto Scroll;c:\program files\lenovo\virtscrl\lvvsst.exe [2010-12-15 93032]
S2 libusbd;LibUsb-Win32 - Daemon, Version 0.1.10.1;system32\libusbd-nt.exe --> system32\libusbd-nt.exe [?]
S2 NisDrv;Microsoft Network Inspection System;c:\windows\system32\drivers\NisDrvWFP.sys [2010-10-24 99272]
S2 rimspci;rimspci;c:\windows\system32\drivers\rimspe86.sys [2009-12-21 47104]
S2 SkypeUpdate;Skype Updater;c:\program files\skype\updater\Updater.exe [2012-6-7 160944]
S2 smihlp;SMI Helper Driver (smihlp);c:\program files\thinkvantage fingerprint software\smihlp.sys [2009-3-14 12560]
S2 TeamViewer6;TeamViewer 6;c:\program files\teamviewer\version6\TeamViewer_Service.exe [2011-4-14 2271608]
S2 TPHKSVC;On Screen Display;c:\program files\lenovo\hotkey\TPHKSVC.exe [2010-12-15 63928]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files\intel\intel(r) management engine components\uns\UNS.exe [2010-12-15 2533400]
S2 VMUSBArbService;VMware USB Arbitration Service;c:\program files\common files\vmware\usb\vmware-usbarbitrator.exe [2012-10-11 721048]
S2 VMwareHostd;VMware Workstation Server;c:\program files\vmware\vmware workstation\vmware-hostd.exe [2012-11-1 13234176]
S2 vstor2-mntapi10-shared;Vstor2 MntApi 1.0 Driver (shared);c:\windows\system32\drivers\vstor2-mntapi10-shared.sys [2011-7-12 22768]
S2 vToolbarUpdater14.2.0;vToolbarUpdater14.2.0;c:\program files\common files\avg secure search\vtoolbarupdater\14.2.0\ToolbarUpdater.exe [2013-2-18 968880]
S3 5U877;USB Video Device;c:\windows\system32\drivers\5U877.sys [2009-12-21 125824]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 BITCOMET_HELPER_SERVICE;BitComet Disk Boost Service;c:\program files\bitcomet\tools\bitcometservice.exe -service --> c:\program files\bitcomet\tools\BitCometService.exe -service [?]
S3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2009-12-21 29472]
S3 CGVPNCliSrvc;CyberGhost VPN Client;c:\program files\cyberghost vpn\CGVPNCliService.exe [2012-11-1 2430128]
S3 cpuz134;cpuz134;c:\program files\cpuid\pc wizard 2010\pcwiz_x32.sys [2012-7-9 20328]
S3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\drivers\e1y6032.sys [2009-7-14 214016]
S3 fssfltr;fssfltr;c:\windows\system32\drivers\fssfltr.sys [2012-4-6 39272]
S3 fsssvc;Windows Live Family Safety Service;c:\program files\windows live\family safety\fsssvc.exe [2012-3-8 1492840]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;c:\program files\futuremark\futuremark systeminfo\FMSISvc.exe [2011-4-25 130976]
S3 Impcd;Impcd;c:\windows\system32\drivers\Impcd.sys [2010-10-27 132480]
S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\drivers\IntcDAud.sys [2010-10-27 247808]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2013-3-30 40776]
S3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\drivers\MijXfilt.sys [2011-10-14 95304]
S3 netw5v32;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 32 Bit;c:\windows\system32\drivers\netw5v32.sys [2009-6-11 4231168]
S3 NisSrv;Microsoft Network Inspection;c:\program files\microsoft security client\NisSrv.exe [2012-9-12 287824]
S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [2011-11-1 137600]
S3 nmwcdnsuc;Nokia USB Flashing Generic;c:\windows\system32\drivers\nmwcdnsuc.sys [2011-11-1 8576]
S3 PCDSRVC{3037D694-FD904ACA-06000000}_0;PCDSRVC{3037D694-FD904ACA-06000000}_0 - PCDR Kernel Mode Service Helper Driver;c:\program files\pc-doctor\pcdsrvc.pkms [2009-11-20 20848]
S3 Power Manager DBC Service;Power Manager DBC Service;c:\program files\thinkpad\utilities\PWMDBSVC.exe [2009-12-21 75040]
S3 rixdpcie;rixdpcie;c:\windows\system32\drivers\rixdpe86.sys [2009-12-21 38400]
S3 RoxMediaDB10;RoxMediaDB10;c:\program files\common files\roxio shared\10.0\sharedcom\RoxMediaDB10.exe [2008-4-25 1120752]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 SwitchBoard;SwitchBoard;c:\program files\common files\adobe\switchboard\SwitchBoard.exe [2010-2-19 517096]
S3 taphss6;Anchorfree HSS VPN Adapter;c:\windows\system32\drivers\taphss6.sys [2013-1-10 37064]
S3 TVTI2C;Lenovo SM bus driver;c:\windows\system32\drivers\tvti2c.sys [2009-7-2 38336]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2011-4-8 1343400]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [2008-5-6 11520]
S4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\windows live\mesh\wlcrasvc.exe [2010-9-22 51040]
.
=============== Created Last 30 ================
.
2013-03-30 18:10:04 29904 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{67a52696-97cc-4d00-82c3-dd88cd1f324f}\MpKsla438c2bd.sys
2013-03-30 15:42:01 40776 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2013-03-30 15:41:21 -------- d-----w- c:\users\100035350\appdata\local\Programs
2013-03-30 11:28:50 7108640 ----a-w- c:\programdata\microsoft\microsoft antimalware\definition updates\{67a52696-97cc-4d00-82c3-dd88cd1f324f}\mpengine.dll
2013-03-30 08:23:36 -------- d-----w- c:\users\100035350\appdata\local\{FDB45ABF-7C57-4B60-8F31-247C81483C3F}
2013-03-29 20:23:03 -------- d-----w- c:\users\100035350\appdata\local\{81A29BC2-33E7-416F-9382-0B73CA8BF760}
2013-03-29 08:35:06 7108640 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
2013-03-29 08:21:51 -------- d-----w- c:\users\100035350\appdata\local\{9C551126-5503-47BD-8770-002324825BEE}
2013-03-28 19:46:23 -------- d-----w- c:\users\100035350\appdata\local\{91A2B1E6-9159-48A2-B7A9-8D869D02304A}
2013-03-28 06:03:57 -------- d-----w- c:\users\100035350\appdata\local\{B5FDDA2C-2799-4D81-BC8F-D6C8D605FC32}
2013-03-27 17:35:27 -------- d-----w- c:\program files\DVDVideoMedia
2013-03-27 15:04:10 -------- d-----w- c:\users\100035350\appdata\local\{40C3168B-0561-4073-AAFD-CB8DC4DA787F}
2013-03-26 14:17:54 -------- d-----w- c:\users\100035350\appdata\local\{FCA137A9-321A-41B9-8F48-1DFFA02FCF76}
2013-03-25 16:04:27 -------- d-----w- c:\users\100035350\appdata\local\{876A6DA9-2D5E-40A6-BAF9-B6C3097C82C9}
2013-03-24 18:36:55 -------- d-----w- c:\users\100035350\appdata\local\{456A81B7-E789-4CA1-B58C-75ED0C0C83A9}
2013-03-23 20:56:10 -------- d-----w- c:\users\100035350\appdata\local\{C90998C9-6052-4DE0-A747-7ADB53A4F73A}
2013-03-23 08:55:12 -------- d-----w- c:\users\100035350\appdata\local\{4D732C97-3C36-4FF7-991C-DE2055934046}
2013-03-22 23:00:50 7443384 ----a-w- c:\users\100035350\appdata\roaming\ConnectifyDispatchInstaller.exe
2013-03-22 11:36:04 -------- d-----w- c:\users\100035350\appdata\local\{8CA91EC3-3664-49B9-998C-A5AF115027FE}
2013-03-21 13:09:23 -------- d-----w- c:\users\100035350\appdata\local\{C3D4D490-E09D-48DF-9328-D08BB4633B5D}
2013-03-21 09:04:32 740840 ------w- c:\programdata\microsoft\microsoft antimalware\definition updates\{96b3d57a-0371-43f7-81a6-a455da2fb3d6}\gapaengine.dll
2013-03-20 16:24:39 -------- d-----w- c:\users\100035350\appdata\local\{6F64D394-D771-4809-9D3C-02D07B94A999}
2013-03-19 16:03:47 -------- d-----w- c:\users\100035350\appdata\local\{72908B66-78AA-407C-829F-0A0F593CCA1C}
2013-03-18 21:17:32 -------- d-----w- c:\users\100035350\appdata\local\{E9C537D9-8592-425B-A2BF-6926D8306092}
2013-03-17 08:24:59 -------- d-----w- c:\users\100035350\appdata\local\{1D08D2E3-9C5B-4356-84D1-703FA5008EDB}
2013-03-16 20:24:10 -------- d-----w- c:\users\100035350\appdata\local\{3A728DE8-6D63-49C7-A582-053D22969DED}
2013-03-16 11:11:50 -------- d-----w- c:\programdata\YTD Video Downloader
2013-03-16 11:11:47 -------- d-----w- c:\program files\GreenTree Applications
2013-03-16 08:23:15 -------- d-----w- c:\users\100035350\appdata\local\{FE19CA11-7EE5-42D9-8601-5B57F088C10B}
2013-03-16 08:16:43 -------- d-----w- c:\users\100035350\appdata\local\{FF9EC724-081E-40A6-A2AB-C8E560EFC8E3}
2013-03-15 10:30:39 -------- d-----w- c:\users\100035350\appdata\local\{A4BDDD48-F1C6-4784-8C94-68898FF79D57}
2013-03-14 22:18:23 -------- d-----w- c:\users\100035350\appdata\local\{5F4B5912-6600-4309-A578-3B1D664B77F3}
2013-03-14 05:03:52 -------- d-----w- c:\users\100035350\appdata\local\{978C92A5-41F7-441C-872B-C6440D27D5D7}
2013-03-13 17:03:16 -------- d-----w- c:\users\100035350\appdata\local\{EA452A1F-C69D-4BF5-9335-B8FAFE66C2DC}
2013-03-13 17:02:21 -------- d-----w- c:\users\100035350\appdata\local\{19A7081E-B418-419D-B5A1-4988B4056616}
2013-03-12 15:15:07 -------- d-----w- c:\users\100035350\appdata\local\{80C3EA4D-41CF-4038-AA8B-E129DF032723}
2013-03-11 17:54:56 -------- d-----w- c:\users\100035350\appdata\local\{FDDF8045-545B-4FA3-B4D7-8F47C9ADD95A}
2013-03-10 17:02:47 -------- d-----w- c:\users\100035350\appdata\local\{12B67021-FE77-4559-BB70-558C3EDB5112}
2013-03-10 03:47:58 -------- d-----w- c:\users\100035350\appdata\local\{66BCEC22-9471-4DE7-9D59-0564559CE902}
2013-03-09 12:12:18 -------- d-----w- c:\users\100035350\appdata\local\{9C608340-1653-4477-B531-D2757D5287FE}
2013-03-08 21:45:41 -------- d-----w- c:\users\100035350\appdata\local\{C66B161C-D0F3-414D-8354-7071027C9DA4}
2013-03-08 09:29:01 96664 ----a-w- c:\program files\mozilla firefox\webapprt-stub.exe
2013-03-08 09:29:01 19352 ----a-w- c:\program files\mozilla firefox\xpcom.dll
2013-03-08 09:29:01 17887640 ----a-w- c:\program files\mozilla firefox\xul.dll
2013-03-08 09:29:01 170232 ----a-w- c:\program files\mozilla firefox\webapp-uninstaller.exe
2013-03-08 09:29:00 92056 ----a-w- c:\program files\mozilla firefox\smime3.dll
2013-03-08 09:29:00 865744 ----a-w- c:\program files\mozilla firefox\uninstall\helper.exe
2013-03-08 09:29:00 272280 ----a-w- c:\program files\mozilla firefox\updater.exe
2013-03-08 09:29:00 155544 ----a-w- c:\program files\mozilla firefox\ssl3.dll
2013-03-08 09:29:00 151960 ----a-w- c:\program files\mozilla firefox\softokn3.dll
2013-03-07 21:44:17 -------- d-----w- c:\users\100035350\appdata\local\{777F1BD9-C32D-4C29-BAE1-2718C4198B13}
2013-03-07 09:43:11 -------- d-----w- c:\users\100035350\appdata\local\{FD186BBD-8BED-4311-8D1B-CBB5BB63B150}
2013-03-06 17:03:36 -------- d-----w- c:\users\100035350\appdata\local\{B9190873-2C83-4139-9757-18FCED5B5E33}
2013-03-05 17:22:23 -------- d-----w- c:\users\100035350\appdata\local\{91581E3D-879C-46C4-8299-B12AFCEC0816}
2013-03-04 18:04:00 -------- d-----w- c:\users\100035350\appdata\local\{9A7B5591-FB1A-41B5-BBBE-623A29537304}
2013-03-03 22:13:51 -------- d-----w- c:\users\100035350\appdata\local\{F44C5BCF-6CE1-4FF4-A923-60871F2C470D}
2013-03-03 17:15:12 -------- d-----w- c:\program files\VitalSource Bookshelf
2013-03-03 10:13:25 -------- d-----w- c:\users\100035350\appdata\local\{AB526552-6576-424F-B235-7640AC935B28}
2013-03-02 21:52:49 -------- d-----w- c:\users\100035350\appdata\local\{E58E0EBB-050D-4759-B96B-259892FD29AF}
2013-03-02 09:52:11 -------- d-----w- c:\users\100035350\appdata\local\{3AE92CF6-A395-4AFF-A403-48F64986F061}
2013-03-01 21:51:30 -------- d-----w- c:\users\100035350\appdata\local\{F0E975C6-C358-4EB4-89EC-5B15CA562DD5}
2013-03-01 08:22:24 -------- d-----w- c:\users\100035350\appdata\local\{13A7FE6B-2582-417A-91B4-2FDCFAAEF382}
.
==================== Find3M ====================
.
2013-03-13 19:09:04 73432 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-03-13 19:09:04 693976 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-02-22 01:37:16 40136 ----a-w- c:\windows\system32\drivers\hssdrv6.sys
2013-02-18 18:25:54 33112 ----a-w- c:\windows\system32\drivers\avgtpx86.sys
2013-01-30 10:53:21 232336 ------w- c:\windows\system32\MpSigStub.exe
2013-01-10 19:41:34 37064 ----a-w- c:\windows\system32\drivers\taphss6.sys
.
============= FINISH: 22:37:26.22 ===============