updated to the new version, it is reporting it's database is out of date.
un-installed then reinstalled and i got the same problem.
i went back to the previous version and it updates with no problems.
updated to new program version then the problem came back,
it just will not update.
the time and date are set correctly on the computer.
the database version it has installed is 6705.
it will not update past that database version.
computer is running windows 7
malwarebytes is running beside bitdefender internet security.
never ever had any problems untill this program update.
any ideas as to what is wrong ?
is it a program fault ?
.
#1
Posted 02 June 2011 - 11:10 PM
#2
Posted 03 June 2011 - 12:01 AM
We are still checking into the issue. I'm aware of about 6 users that are having an issue but there could be a few more.
Not exactly sure at this time what the root cause is but I can work with you if you to see if we can track it down if you have both time and patience to work on it.
Initially I'd like to get the following if you're willing to work on it.
[indent]Download DDS and save it to your desktop
http://download.bleepingcomputer.com/sUBs/dds.scr
Disable any script blocker if your Anti-Virus/Anti-Malware has it.
Once downloaded you can disconnect from the Internet and disable your Ant-Virus temporarily if needed.
Then double click dds.scr to run the tool.
When done, the DDS.txt will open.
Click Yes at the next prompt for Optional Scan.
Then I'd also like to get the following
Create an Autoruns Log:
Not exactly sure at this time what the root cause is but I can work with you if you to see if we can track it down if you have both time and patience to work on it.
Initially I'd like to get the following if you're willing to work on it.
[indent]Download DDS and save it to your desktop
http://download.bleepingcomputer.com/sUBs/dds.scr
Disable any script blocker if your Anti-Virus/Anti-Malware has it.
Once downloaded you can disconnect from the Internet and disable your Ant-Virus temporarily if needed.
Then double click dds.scr to run the tool.
When done, the DDS.txt will open.
Click Yes at the next prompt for Optional Scan.
- When done, DDS will open two (2) logs:
- DDS.txt
- Attach.txt
- Save both reports to your desktop
- Please include the following logs in your next reply: DDS.txt and Attach.txt
Then I'd also like to get the following
Create an Autoruns Log:
- Please download Sysinternals Autoruns from here.
- Save Autoruns.exe to your desktop and double-click it to run it.
- Once it starts, please press the Esc key on your keyboard.
- Now that scanning is stopped, click on the Options button at the top of the program and select Verify Code Signatures
- Once that's done press the F5 key on your keyboard, this will start the scan again, this time let it finish.
- When it's finished, please click on the File button at the top of the program and select Save and save the Autoruns.arn file to your desktop and close Autoruns.
- Right click on the Autoruns.arn file on your desktop and hover your mouse over Send To and select Compressed (zipped) Folder
- Attach the Autoruns.zip folder you just created to your next reply
#3
Posted 03 June 2011 - 07:43 AM
.
DDS (Ver_2011-06-03.01) - NTFSx86
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_25
Run by Dean at 13:22:05 on 2011-06-03
Microsoft Windows 7 Professional 6.1.7601.1.1252.44.1033.18.1983.1312 [GMT 1:00]
.
AV: BitDefender Antivirus *Disabled/Updated* {50909708-FF80-02AF-F814-B28405891E92}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: BitDefender AntiSpyware *Disabled/Updated* {EBF176EC-D9BA-0D21-C2A4-89F67E0E542F}
FW: BitDefender Firewall *Enabled* {68AB162D-B5EF-03F7-D34B-1BB1FB5A59E9}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\BitDefender\BitDefender 2011\vsserv.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\BitDefender\BitDefender 2011\updatesrv.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Raxco\PerfectDisk\PDAgentS1.exe
C:\Program Files\BitDefender\BitDefender 2011\bdagent.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\BitDefender\BitDefender 2011\pchooklaunch32.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\system32\notepad.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://uk.my.yahoo.com/
uWindow Title =
mStart Page = about:blank
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~3\office14\URLREDIR.DLL
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Bitdefender Toolbar: {381ffde8-2394-4f90-b10d-fc6124a40f8c} - c:\program files\bitdefender\bitdefender 2011\IEToolbar.dll
mRun: [BitDefender Antiphishing Helper] "c:\program files\bitdefender\bitdefender 2011\ieshow.exe"
mRun: [BDAgent] "c:\program files\bitdefender\bitdefender 2011\bdagent.exe"
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
mPolicies-explorer: NoResolveTrack = 0 (0x0)
mPolicies-explorer: NoFileAssociate = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: NoDispSettingsPage = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~3\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{E09DD335-044A-4919-9649-2022D1D1107D} : DhcpNameServer = 192.168.1.254
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\dean\appdata\roaming\mozilla\firefox\profiles\nfjs0ayv.default\
FF - prefs.js: browser.startup.homepage - hxxp://uk.my.yahoo.com/
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\progra~1\micros~3\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\micros~3\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60310.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
.
---- FIREFOX POLICIES ----
FF - user.js: browser.blink_allowed - true
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.search.openintab - false
FF - user.js: browser.tabs.closeButtons - 1
FF - user.js: browser.tabs.opentabfor.middleclick - true
FF - user.js: browser.tabs.tabMinWidth - 100
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autoFill - false
FF - user.js: browser.urlbar.autofill - true
FF - user.js: browser.urlbar.hideGoButton - false
FF - user.js: browser.xul.error_pages.enabled - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 3000000
FF - user.js: content.maxtextrun - 8191
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: layout.spellcheckDefault - 1
FF - user.js: network.http.max-connections - 32
FF - user.js: network.http.max-connections-per-server - 8
FF - user.js: network.http.max-persistent-connections-per-proxy - 8
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: network.prefetch-next - true
FF - user.js: nglayout.initialpaint.delay - 0
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
============= SERVICES / DRIVERS ===============
.
R1 Bdfndisf;BitDefender Firewall NDIS 6 Filter Driver;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [2010-8-20 72784]
R1 bdfwfpf;bdfwfpf;c:\program files\common files\bitdefender\bitdefender firewall\bdfwfpf.sys [2010-8-20 88144]
R1 CbFs;CbFs;c:\windows\system32\drivers\cbfs.sys [2011-5-16 147416]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-6-3 366640]
R2 Updatesrv;BitDefender Desktop Update Service;c:\program files\bitdefender\bitdefender 2011\updatesrv.exe [2011-6-3 43936]
R3 bdfm;bdfm;c:\windows\system32\drivers\bdfm.sys [2010-5-13 152528]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-5-7 22712]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 avc3;avc3;c:\windows\system32\drivers\avc3.sys [2010-11-29 535824]
S3 avckf;avckf;c:\windows\system32\drivers\avckf.sys [2010-11-29 1066232]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 62464]
S3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 Update Server;BitDefender Update Server v2;c:\program files\common files\bitdefender\bitdefender arrakis server\bin\arrakis3.exe [2010-11-30 307544]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2011-5-8 1343400]
S4 AdvancedSystemCareService;Advanced SystemCare Service;c:\program files\iobit\advanced systemcare 4\ASCService.exe [2011-5-12 352656]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\common files\pc tools\smonitor\StartManSvc.exe [2011-5-7 632792]
S4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\windows live\mesh\wlcrasvc.exe [2010-9-22 51040]
S4 WO_LiveService;Ashampoo LiveTuner Service;c:\program files\ashampoo\ashampoo winoptimizer 8\LiveTunerService.exe [2011-5-9 884608]
.
=============== Created Last 30 ================
.
2011-06-03 03:10:08 306320 ----a-w- c:\windows\system32\drivers\trufos.sys
2011-05-26 22:00:39 20268032 ----a-w- c:\users\dean\imageres.dll
2011-05-26 20:53:43 -------- d-----w- C:\wavs
2011-05-26 20:14:51 -------- dc----w- c:\users\dean\appdata\local\MigWiz
2011-05-26 11:14:58 -------- d-----w- c:\users\dean\appdata\local\Apple Computer
2011-05-26 07:57:03 -------- d-----w- c:\users\dean\appdata\local\Apple
2011-05-25 06:45:05 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-05-25 00:17:15 -------- d-----w- c:\users\dean\appdata\local\ElevatedDiagnostics
2011-05-25 00:16:54 -------- d-----w- c:\users\dean\appdata\local\Diagnostics
2011-05-23 11:52:30 -------- d-----w- c:\users\dean\appdata\roaming\EurekaLog
2011-05-23 11:42:46 -------- d-----w- c:\users\dean\appdata\roaming\thecleaner
2011-05-23 11:41:56 -------- d-----w- c:\program files\The Cleaner
2011-05-21 18:58:25 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2011-05-21 18:58:25 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-05-21 14:36:25 -------- d-----w- c:\program files\SuperTux
2011-05-19 09:23:36 -------- d-----w- c:\users\dean\appdata\roaming\Pingus
2011-05-19 09:23:11 -------- d-----w- c:\program files\Pingus
2011-05-18 23:52:26 -------- d-sh--w- C:\$RECYCLE.BIN
2011-05-17 13:12:10 -------- d-----w- c:\users\dean\appdata\roaming\SynthMaker
2011-05-17 12:57:16 -------- d-----w- c:\users\dean\appdata\roaming\Acoustica
2011-05-17 12:57:15 57344 ----a-w- c:\windows\system32\Wnaspint.dll
2011-05-17 12:56:45 -------- d-----w- c:\program files\Acoustica Shared Effects
2011-05-17 12:54:47 -------- d-----w- c:\programdata\Acoustica
2011-05-17 12:54:47 -------- d-----w- c:\program files\VST
2011-05-17 12:54:47 -------- d-----w- c:\program files\Acoustica Mixcraft 5
2011-05-17 12:50:12 348160 ----a-w- c:\windows\system32\msvcr71.dll
2011-05-16 19:38:50 89600 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\HPZPPLHN.DLL
2011-05-16 12:01:41 -------- d-----w- c:\users\dean\appdata\roaming\ZumoDrive
2011-05-16 12:01:19 147416 ----a-w- c:\windows\system32\drivers\cbfs.sys
2011-05-16 12:01:18 -------- d-----w- c:\program files\Zecter
2011-05-14 11:28:35 15712 ----a-w- c:\program files\common files\windows live\.cache\f308c001cc122a03\MeshBetaRemover.exe
2011-05-14 11:27:55 -------- d-----w- c:\users\dean\appdata\local\Windows Live
2011-05-14 11:27:54 -------- d-----w- c:\program files\common files\Windows Live
2011-05-14 01:31:15 -------- d-----w- c:\users\dean\appdata\roaming\Ashampoo
2011-05-14 01:30:52 -------- d-----w- c:\users\dean\appdata\local\ashampoo
2011-05-12 22:51:42 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2011-05-12 22:51:39 2414360 ----a-w- c:\windows\system32\d3dx9_31.dll
2011-05-12 22:50:09 -------- d-----w- c:\program files\Winamp Detect
2011-05-12 22:49:36 -------- d-----w- c:\program files\common files\PX Storage Engine
2011-05-12 19:04:39 14744 ----a-w- c:\users\dean\appdata\roaming\microsoft\identitycrl\production\ppcrlconfig.dll
2011-05-12 19:00:59 -------- d-----w- c:\program files\MSECache
2011-05-12 10:28:53 -------- d-----w- c:\users\dean\appdata\roaming\IObit
2011-05-12 10:28:49 -------- d-----w- c:\program files\IObit
2011-05-12 06:59:04 -------- d-----w- c:\program files\Raxco
2011-05-12 00:47:05 123904 ----a-w- c:\windows\system32\poqexec.exe
2011-05-12 00:46:39 75776 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2011-05-12 00:46:39 5888 ----a-w- c:\windows\system32\drivers\usbd.sys
2011-05-12 00:46:39 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-05-12 00:46:39 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2011-05-12 00:46:39 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2011-05-12 00:46:39 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2011-05-12 00:46:39 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2011-05-12 00:46:30 3967872 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-05-12 00:46:29 3912576 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-05-11 00:52:09 -------- d-----w- c:\programdata\Ashampoo
2011-05-11 00:31:42 -------- d-----w- c:\users\dean\appdata\roaming\Azureus
2011-05-11 00:30:31 -------- d-----w- c:\program files\Vuze
2011-05-10 23:56:00 -------- d-----w- c:\users\dean\appdata\roaming\Ashampoo Slideshow Studio Elements
2011-05-10 17:55:39 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-05-10 17:55:39 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2011-05-10 17:54:25 -------- d-----w- c:\program files\iPod
2011-05-10 17:54:24 -------- d-----w- c:\programdata\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2011-05-10 17:54:24 -------- d-----w- c:\program files\iTunes
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin7.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin6.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin5.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin4.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin3.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin2.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin.dll
2011-05-10 17:50:43 -------- d-----w- c:\program files\Bonjour
2011-05-10 12:44:20 -------- d-----w- c:\users\dean\appdata\roaming\BitDefender
2011-05-10 12:43:45 -------- d-----w- c:\program files\BitDefender
2011-05-10 12:41:17 -------- d-----w- c:\programdata\BitDefender
2011-05-10 12:40:55 353096 ----a-w- c:\windows\system32\drivers\bdfsfltr.sys
2011-05-10 07:26:34 805376 ----a-w- c:\windows\system32\FntCache.dll
2011-05-10 07:26:34 1076736 ----a-w- c:\windows\system32\DWrite.dll
2011-05-10 07:26:33 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-05-10 00:54:10 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-05-09 14:55:58 -------- d-----w- c:\windows\PCHEALTH
2011-05-09 14:53:35 -------- d-----w- c:\program files\Microsoft Analysis Services
2011-05-09 14:53:23 -------- d-----w- c:\windows\SHELLNEW
2011-05-09 14:53:02 -------- d-----w- c:\users\dean\appdata\local\Microsoft Help
2011-05-09 13:34:57 28160 ----a-w- c:\windows\system32\DfSdkBt.exe
2011-05-09 13:34:37 -------- d-----w- c:\program files\Ashampoo
2011-05-08 07:48:53 -------- d-----w- c:\windows\system32\Wat
2011-05-08 01:41:46 -------- d-----w- c:\windows\Panther
2011-05-07 20:29:00 -------- d-----w- c:\users\dean\appdata\local\Chromium
2011-05-07 20:28:46 -------- d-----w- c:\program files\SRWare Iron
2011-05-07 20:24:16 -------- d-----w- c:\users\dean\appdata\local\Mozilla
2011-05-07 20:21:59 19416 ----a-w- c:\program files\mozilla firefox\AccessibleMarshal.dll
2011-05-07 20:01:05 17480 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys
2011-05-07 20:00:25 -------- d-----w- c:\programdata\Hitman Pro
2011-05-07 19:09:29 -------- d-----w- c:\programdata\bdch
2011-05-07 19:01:19 -------- d-----w- c:\users\dean\appdata\roaming\Malwarebytes
2011-05-07 19:01:09 39984 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-05-07 19:01:07 -------- d-----w- c:\programdata\Malwarebytes
2011-05-07 19:01:03 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-05-07 19:01:03 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-05-07 18:45:52 -------- d-----w- c:\users\dean\appdata\roaming\QuickScan
2011-05-07 18:44:41 -------- d-sh--w- c:\windows\Installer
2011-05-07 18:44:22 -------- d-----w- c:\program files\common files\BitDefender
2011-05-07 18:44:15 148316 ----a-w- c:\programdata\bdinstall.bin
2011-05-07 18:29:37 -------- d-----w- c:\program files\CCleaner
2011-05-07 17:53:07 -------- d-----w- c:\users\dean\appdata\roaming\Registry Mechanic
2011-05-07 17:46:16 880640 ----a-w- c:\windows\system32\UniBox10.ocx
2011-05-07 17:46:16 658432 ----a-w- c:\windows\system32\MSCOMCT2.OCX
2011-05-07 17:46:16 506368 ----a-w- c:\windows\system32\msxml.dll
2011-05-07 17:46:16 37336 ----a-w- c:\windows\system32\CleanMFT32.exe
2011-05-07 17:46:16 212992 ----a-w- c:\windows\system32\UniBoxVB12.ocx
2011-05-07 17:46:16 1101824 ----a-w- c:\windows\system32\UniBox210.ocx
2011-05-07 17:46:11 -------- d-----w- c:\program files\common files\PC Tools
2011-05-07 17:37:09 -------- d-----w- c:\program files\Microsoft Games
2011-05-07 17:18:06 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-05-07 17:18:05 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-05-07 17:18:05 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-05-07 17:18:05 223232 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-05-07 17:18:05 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-05-07 17:18:04 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-05-07 17:15:39 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
.
==================== Find3M ====================
.
2011-04-06 15:20:16 91424 ----a-w- c:\windows\system32\dnssd.dll
2011-04-06 15:20:16 75040 ----a-w- c:\windows\system32\jdns_sd.dll
2011-04-06 15:20:16 197920 ----a-w- c:\windows\system32\dnssdX.dll
2011-04-06 15:20:16 107808 ----a-w- c:\windows\system32\dns-sd.exe
2011-03-15 14:17:54 237320 ----a-w- c:\windows\system32\PDBoot.exe
2011-03-12 11:23:45 870912 ----a-w- c:\windows\system32\XpsPrint.dll
2011-03-11 05:39:05 148864 ----a-w- c:\windows\system32\drivers\storport.sys
2011-03-11 05:39:00 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys
2011-03-11 05:39:00 1211264 ----a-w- c:\windows\system32\drivers\ntfs.sys
2011-03-11 05:39:00 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys
2011-03-11 05:38:51 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2011-03-11 05:38:37 80256 ----a-w- c:\windows\system32\drivers\amdsata.sys
2011-03-11 05:38:37 22400 ----a-w- c:\windows\system32\drivers\amdxata.sys
2011-03-11 05:33:59 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-03-11 05:33:59 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-03-11 05:33:09 1699328 ----a-w- c:\windows\system32\esent.dll
2011-03-11 05:31:07 74240 ----a-w- c:\windows\system32\fsutil.exe
2010-07-08 09:37:14 101544 ----a-w- c:\program files\common files\LinkInstaller.exe
.
============= FINISH: 13:25:19.67 ===============
DDS (Ver_2011-06-03.01) - NTFSx86
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_25
Run by Dean at 13:22:05 on 2011-06-03
Microsoft Windows 7 Professional 6.1.7601.1.1252.44.1033.18.1983.1312 [GMT 1:00]
.
AV: BitDefender Antivirus *Disabled/Updated* {50909708-FF80-02AF-F814-B28405891E92}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: BitDefender AntiSpyware *Disabled/Updated* {EBF176EC-D9BA-0D21-C2A4-89F67E0E542F}
FW: BitDefender Firewall *Enabled* {68AB162D-B5EF-03F7-D34B-1BB1FB5A59E9}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\BitDefender\BitDefender 2011\vsserv.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Raxco\PerfectDisk\PDAgent.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\BitDefender\BitDefender 2011\updatesrv.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Raxco\PerfectDisk\PDEngine.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\Raxco\PerfectDisk\PDAgentS1.exe
C:\Program Files\BitDefender\BitDefender 2011\bdagent.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\BitDefender\BitDefender 2011\pchooklaunch32.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\system32\notepad.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://uk.my.yahoo.com/
uWindow Title =
mStart Page = about:blank
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~3\office14\URLREDIR.DLL
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Bitdefender Toolbar: {381ffde8-2394-4f90-b10d-fc6124a40f8c} - c:\program files\bitdefender\bitdefender 2011\IEToolbar.dll
mRun: [BitDefender Antiphishing Helper] "c:\program files\bitdefender\bitdefender 2011\ieshow.exe"
mRun: [BDAgent] "c:\program files\bitdefender\bitdefender 2011\bdagent.exe"
mRun: [Malwarebytes' Anti-Malware] "c:\program files\malwarebytes' anti-malware\mbamgui.exe" /starttray
mPolicies-explorer: NoResolveTrack = 0 (0x0)
mPolicies-explorer: NoFileAssociate = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: NoDispSettingsPage = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~3\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{E09DD335-044A-4919-9649-2022D1D1107D} : DhcpNameServer = 192.168.1.254
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\dean\appdata\roaming\mozilla\firefox\profiles\nfjs0ayv.default\
FF - prefs.js: browser.startup.homepage - hxxp://uk.my.yahoo.com/
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\progra~1\micros~3\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\micros~3\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60310.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npwachk.dll
.
---- FIREFOX POLICIES ----
FF - user.js: browser.blink_allowed - true
FF - user.js: browser.cache.memory.capacity - 65536
FF - user.js: browser.chrome.favicons - false
FF - user.js: browser.display.show_image_placeholders - true
FF - user.js: browser.search.openintab - false
FF - user.js: browser.tabs.closeButtons - 1
FF - user.js: browser.tabs.opentabfor.middleclick - true
FF - user.js: browser.tabs.tabMinWidth - 100
FF - user.js: browser.turbo.enabled - true
FF - user.js: browser.urlbar.autocomplete.enabled - true
FF - user.js: browser.urlbar.autoFill - false
FF - user.js: browser.urlbar.autofill - true
FF - user.js: browser.urlbar.hideGoButton - false
FF - user.js: browser.xul.error_pages.enabled - true
FF - user.js: content.interrupt.parsing - true
FF - user.js: content.max.tokenizing.time - 3000000
FF - user.js: content.maxtextrun - 8191
FF - user.js: content.notify.backoffcount - 5
FF - user.js: content.notify.interval - 750000
FF - user.js: content.notify.ontimer - true
FF - user.js: content.switch.threshold - 750000
FF - user.js: layout.spellcheckDefault - 1
FF - user.js: network.http.max-connections - 32
FF - user.js: network.http.max-connections-per-server - 8
FF - user.js: network.http.max-persistent-connections-per-proxy - 8
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: network.http.pipelining - true
FF - user.js: network.http.pipelining.maxrequests - 8
FF - user.js: network.http.proxy.pipelining - true
FF - user.js: network.http.request.max-start-delay - 0
FF - user.js: network.prefetch-next - true
FF - user.js: nglayout.initialpaint.delay - 0
FF - user.js: plugin.expose_full_path - true
FF - user.js: ui.submenuDelay - 0
.
============= SERVICES / DRIVERS ===============
.
R1 Bdfndisf;BitDefender Firewall NDIS 6 Filter Driver;c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [2010-8-20 72784]
R1 bdfwfpf;bdfwfpf;c:\program files\common files\bitdefender\bitdefender firewall\bdfwfpf.sys [2010-8-20 88144]
R1 CbFs;CbFs;c:\windows\system32\drivers\cbfs.sys [2011-5-16 147416]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-6-3 366640]
R2 Updatesrv;BitDefender Desktop Update Service;c:\program files\bitdefender\bitdefender 2011\updatesrv.exe [2011-6-3 43936]
R3 bdfm;bdfm;c:\windows\system32\drivers\bdfm.sys [2010-5-13 152528]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-5-7 22712]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 avc3;avc3;c:\windows\system32\drivers\avc3.sys [2010-11-29 535824]
S3 avckf;avckf;c:\windows\system32\drivers\avckf.sys [2010-11-29 1066232]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys [2010-11-21 62464]
S3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
S3 StorSvc;Storage Service;c:\windows\system32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-14 20992]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2010-11-20 52224]
S3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys [2010-11-20 27264]
S3 Update Server;BitDefender Update Server v2;c:\program files\common files\bitdefender\bitdefender arrakis server\bin\arrakis3.exe [2010-11-30 307544]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2011-5-8 1343400]
S4 AdvancedSystemCareService;Advanced SystemCare Service;c:\program files\iobit\advanced systemcare 4\ASCService.exe [2011-5-12 352656]
S4 PCToolsSSDMonitorSvc;PC Tools Startup and Shutdown Monitor service;c:\program files\common files\pc tools\smonitor\StartManSvc.exe [2011-5-7 632792]
S4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\windows live\mesh\wlcrasvc.exe [2010-9-22 51040]
S4 WO_LiveService;Ashampoo LiveTuner Service;c:\program files\ashampoo\ashampoo winoptimizer 8\LiveTunerService.exe [2011-5-9 884608]
.
=============== Created Last 30 ================
.
2011-06-03 03:10:08 306320 ----a-w- c:\windows\system32\drivers\trufos.sys
2011-05-26 22:00:39 20268032 ----a-w- c:\users\dean\imageres.dll
2011-05-26 20:53:43 -------- d-----w- C:\wavs
2011-05-26 20:14:51 -------- dc----w- c:\users\dean\appdata\local\MigWiz
2011-05-26 11:14:58 -------- d-----w- c:\users\dean\appdata\local\Apple Computer
2011-05-26 07:57:03 -------- d-----w- c:\users\dean\appdata\local\Apple
2011-05-25 06:45:05 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-05-25 00:17:15 -------- d-----w- c:\users\dean\appdata\local\ElevatedDiagnostics
2011-05-25 00:16:54 -------- d-----w- c:\users\dean\appdata\local\Diagnostics
2011-05-23 11:52:30 -------- d-----w- c:\users\dean\appdata\roaming\EurekaLog
2011-05-23 11:42:46 -------- d-----w- c:\users\dean\appdata\roaming\thecleaner
2011-05-23 11:41:56 -------- d-----w- c:\program files\The Cleaner
2011-05-21 18:58:25 444952 ----a-w- c:\windows\system32\wrap_oal.dll
2011-05-21 18:58:25 109080 ----a-w- c:\windows\system32\OpenAL32.dll
2011-05-21 14:36:25 -------- d-----w- c:\program files\SuperTux
2011-05-19 09:23:36 -------- d-----w- c:\users\dean\appdata\roaming\Pingus
2011-05-19 09:23:11 -------- d-----w- c:\program files\Pingus
2011-05-18 23:52:26 -------- d-sh--w- C:\$RECYCLE.BIN
2011-05-17 13:12:10 -------- d-----w- c:\users\dean\appdata\roaming\SynthMaker
2011-05-17 12:57:16 -------- d-----w- c:\users\dean\appdata\roaming\Acoustica
2011-05-17 12:57:15 57344 ----a-w- c:\windows\system32\Wnaspint.dll
2011-05-17 12:56:45 -------- d-----w- c:\program files\Acoustica Shared Effects
2011-05-17 12:54:47 -------- d-----w- c:\programdata\Acoustica
2011-05-17 12:54:47 -------- d-----w- c:\program files\VST
2011-05-17 12:54:47 -------- d-----w- c:\program files\Acoustica Mixcraft 5
2011-05-17 12:50:12 348160 ----a-w- c:\windows\system32\msvcr71.dll
2011-05-16 19:38:50 89600 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\HPZPPLHN.DLL
2011-05-16 12:01:41 -------- d-----w- c:\users\dean\appdata\roaming\ZumoDrive
2011-05-16 12:01:19 147416 ----a-w- c:\windows\system32\drivers\cbfs.sys
2011-05-16 12:01:18 -------- d-----w- c:\program files\Zecter
2011-05-14 11:28:35 15712 ----a-w- c:\program files\common files\windows live\.cache\f308c001cc122a03\MeshBetaRemover.exe
2011-05-14 11:27:55 -------- d-----w- c:\users\dean\appdata\local\Windows Live
2011-05-14 11:27:54 -------- d-----w- c:\program files\common files\Windows Live
2011-05-14 01:31:15 -------- d-----w- c:\users\dean\appdata\roaming\Ashampoo
2011-05-14 01:30:52 -------- d-----w- c:\users\dean\appdata\local\ashampoo
2011-05-12 22:51:42 1892184 ----a-w- c:\windows\system32\D3DX9_42.dll
2011-05-12 22:51:39 2414360 ----a-w- c:\windows\system32\d3dx9_31.dll
2011-05-12 22:50:09 -------- d-----w- c:\program files\Winamp Detect
2011-05-12 22:49:36 -------- d-----w- c:\program files\common files\PX Storage Engine
2011-05-12 19:04:39 14744 ----a-w- c:\users\dean\appdata\roaming\microsoft\identitycrl\production\ppcrlconfig.dll
2011-05-12 19:00:59 -------- d-----w- c:\program files\MSECache
2011-05-12 10:28:53 -------- d-----w- c:\users\dean\appdata\roaming\IObit
2011-05-12 10:28:49 -------- d-----w- c:\program files\IObit
2011-05-12 06:59:04 -------- d-----w- c:\program files\Raxco
2011-05-12 00:47:05 123904 ----a-w- c:\windows\system32\poqexec.exe
2011-05-12 00:46:39 75776 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2011-05-12 00:46:39 5888 ----a-w- c:\windows\system32\drivers\usbd.sys
2011-05-12 00:46:39 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-05-12 00:46:39 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2011-05-12 00:46:39 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2011-05-12 00:46:39 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2011-05-12 00:46:39 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2011-05-12 00:46:30 3967872 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-05-12 00:46:29 3912576 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-05-11 00:52:09 -------- d-----w- c:\programdata\Ashampoo
2011-05-11 00:31:42 -------- d-----w- c:\users\dean\appdata\roaming\Azureus
2011-05-11 00:30:31 -------- d-----w- c:\program files\Vuze
2011-05-10 23:56:00 -------- d-----w- c:\users\dean\appdata\roaming\Ashampoo Slideshow Studio Elements
2011-05-10 17:55:39 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-05-10 17:55:39 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2011-05-10 17:54:25 -------- d-----w- c:\program files\iPod
2011-05-10 17:54:24 -------- d-----w- c:\programdata\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2011-05-10 17:54:24 -------- d-----w- c:\program files\iTunes
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin7.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin6.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin5.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin4.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin3.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin2.dll
2011-05-10 17:53:20 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin.dll
2011-05-10 17:50:43 -------- d-----w- c:\program files\Bonjour
2011-05-10 12:44:20 -------- d-----w- c:\users\dean\appdata\roaming\BitDefender
2011-05-10 12:43:45 -------- d-----w- c:\program files\BitDefender
2011-05-10 12:41:17 -------- d-----w- c:\programdata\BitDefender
2011-05-10 12:40:55 353096 ----a-w- c:\windows\system32\drivers\bdfsfltr.sys
2011-05-10 07:26:34 805376 ----a-w- c:\windows\system32\FntCache.dll
2011-05-10 07:26:34 1076736 ----a-w- c:\windows\system32\DWrite.dll
2011-05-10 07:26:33 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-05-10 00:54:10 472808 ----a-w- c:\windows\system32\deployJava1.dll
2011-05-09 14:55:58 -------- d-----w- c:\windows\PCHEALTH
2011-05-09 14:53:35 -------- d-----w- c:\program files\Microsoft Analysis Services
2011-05-09 14:53:23 -------- d-----w- c:\windows\SHELLNEW
2011-05-09 14:53:02 -------- d-----w- c:\users\dean\appdata\local\Microsoft Help
2011-05-09 13:34:57 28160 ----a-w- c:\windows\system32\DfSdkBt.exe
2011-05-09 13:34:37 -------- d-----w- c:\program files\Ashampoo
2011-05-08 07:48:53 -------- d-----w- c:\windows\system32\Wat
2011-05-08 01:41:46 -------- d-----w- c:\windows\Panther
2011-05-07 20:29:00 -------- d-----w- c:\users\dean\appdata\local\Chromium
2011-05-07 20:28:46 -------- d-----w- c:\program files\SRWare Iron
2011-05-07 20:24:16 -------- d-----w- c:\users\dean\appdata\local\Mozilla
2011-05-07 20:21:59 19416 ----a-w- c:\program files\mozilla firefox\AccessibleMarshal.dll
2011-05-07 20:01:05 17480 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys
2011-05-07 20:00:25 -------- d-----w- c:\programdata\Hitman Pro
2011-05-07 19:09:29 -------- d-----w- c:\programdata\bdch
2011-05-07 19:01:19 -------- d-----w- c:\users\dean\appdata\roaming\Malwarebytes
2011-05-07 19:01:09 39984 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-05-07 19:01:07 -------- d-----w- c:\programdata\Malwarebytes
2011-05-07 19:01:03 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-05-07 19:01:03 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-05-07 18:45:52 -------- d-----w- c:\users\dean\appdata\roaming\QuickScan
2011-05-07 18:44:41 -------- d-sh--w- c:\windows\Installer
2011-05-07 18:44:22 -------- d-----w- c:\program files\common files\BitDefender
2011-05-07 18:44:15 148316 ----a-w- c:\programdata\bdinstall.bin
2011-05-07 18:29:37 -------- d-----w- c:\program files\CCleaner
2011-05-07 17:53:07 -------- d-----w- c:\users\dean\appdata\roaming\Registry Mechanic
2011-05-07 17:46:16 880640 ----a-w- c:\windows\system32\UniBox10.ocx
2011-05-07 17:46:16 658432 ----a-w- c:\windows\system32\MSCOMCT2.OCX
2011-05-07 17:46:16 506368 ----a-w- c:\windows\system32\msxml.dll
2011-05-07 17:46:16 37336 ----a-w- c:\windows\system32\CleanMFT32.exe
2011-05-07 17:46:16 212992 ----a-w- c:\windows\system32\UniBoxVB12.ocx
2011-05-07 17:46:16 1101824 ----a-w- c:\windows\system32\UniBox210.ocx
2011-05-07 17:46:11 -------- d-----w- c:\program files\common files\PC Tools
2011-05-07 17:37:09 -------- d-----w- c:\program files\Microsoft Games
2011-05-07 17:18:06 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-05-07 17:18:05 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-05-07 17:18:05 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-05-07 17:18:05 223232 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-05-07 17:18:05 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-05-07 17:18:04 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-05-07 17:15:39 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
.
==================== Find3M ====================
.
2011-04-06 15:20:16 91424 ----a-w- c:\windows\system32\dnssd.dll
2011-04-06 15:20:16 75040 ----a-w- c:\windows\system32\jdns_sd.dll
2011-04-06 15:20:16 197920 ----a-w- c:\windows\system32\dnssdX.dll
2011-04-06 15:20:16 107808 ----a-w- c:\windows\system32\dns-sd.exe
2011-03-15 14:17:54 237320 ----a-w- c:\windows\system32\PDBoot.exe
2011-03-12 11:23:45 870912 ----a-w- c:\windows\system32\XpsPrint.dll
2011-03-11 05:39:05 148864 ----a-w- c:\windows\system32\drivers\storport.sys
2011-03-11 05:39:00 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys
2011-03-11 05:39:00 1211264 ----a-w- c:\windows\system32\drivers\ntfs.sys
2011-03-11 05:39:00 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys
2011-03-11 05:38:51 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2011-03-11 05:38:37 80256 ----a-w- c:\windows\system32\drivers\amdsata.sys
2011-03-11 05:38:37 22400 ----a-w- c:\windows\system32\drivers\amdxata.sys
2011-03-11 05:33:59 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-03-11 05:33:59 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-03-11 05:33:09 1699328 ----a-w- c:\windows\system32\esent.dll
2011-03-11 05:31:07 74240 ----a-w- c:\windows\system32\fsutil.exe
2010-07-08 09:37:14 101544 ----a-w- c:\program files\common files\LinkInstaller.exe
.
============= FINISH: 13:25:19.67 ===============
Attached Files
#4
Posted 03 June 2011 - 07:45 AM
Autoruns Log attached.
Attached Files
#5
Posted 03 June 2011 - 08:57 AM
posted what you requested.
#6
Posted 03 June 2011 - 10:19 AM
attached is a problem steps recording,
just so you can see for yourself what is happening.
just so you can see for yourself what is happening.
Attached Files
#7
Posted 03 June 2011 - 01:14 PM
From my experience of a similar problem it might be worth trying;-
1) Manually Updating Malwarebytes' Anti-Malware (MBAM)
Download the offline database installer (mbam-rules.exe) from
http://malwarebytes.gt500.org/
2) Run mbam-rules.exe
3) Start Malwarebytes
DO NOT click the "Yes" button on the popup telling you the dbase is out of date
click "NO"
4) The program may now run - do a quick or full scan
5) Check that the dbase is No. 6763 either in the log or on main page update tab.
6) If it works good - but you may have to repeat 1-3
1) Manually Updating Malwarebytes' Anti-Malware (MBAM)
Download the offline database installer (mbam-rules.exe) from
http://malwarebytes.gt500.org/
2) Run mbam-rules.exe
3) Start Malwarebytes
DO NOT click the "Yes" button on the popup telling you the dbase is out of date
click "NO"
4) The program may now run - do a quick or full scan
5) Check that the dbase is No. 6763 either in the log or on main page update tab.
6) If it works good - but you may have to repeat 1-3
#8
Posted 03 June 2011 - 03:28 PM
UPDATE
i just updated my laptop with the new version,
it too is having the same problems.
i just updated my laptop with the new version,
it too is having the same problems.
#9
Posted 03 June 2011 - 08:05 PM
Sorry for the late reply.
Okay since there are less than a dozen reports of this and you now have this issue on 2 computers I would have to think it's something common on both systems.
Do you run the same Anti-Virus on both systems?
Do you have some other security application that runs on both systems?
Please see if you can temporarily disable your Bitdefender AV and Firewall. I think this may be how but if not and you know how please give that a try.
Then click on the Start flag/icon bottom left and type CMD in the search and when it show up on the menu right click it and chose Run as administrator
Then type in the following commands one-by-one and press the ENTER key after each line.
Then restart the computer (make sure Bitdefender is still disabled after the reboot - DO NOT go surfing the Web)
Then start MBAM and see if it can now obtain updates or not and let me know please.
Make sure you re-enable your Anti-Virus when done testing.
Thanks
Okay since there are less than a dozen reports of this and you now have this issue on 2 computers I would have to think it's something common on both systems.
Do you run the same Anti-Virus on both systems?
Do you have some other security application that runs on both systems?
Please see if you can temporarily disable your Bitdefender AV and Firewall. I think this may be how but if not and you know how please give that a try.
Quote
To temporarily disable BitDefender,you need to press the Settings button (upper right corner) and remove all checkmarks under all modules (Antivirus,Firewall,Antispam.. etc).
Hit Apply and OK to save the changes.
Hit Apply and OK to save the changes.
Then click on the Start flag/icon bottom left and type CMD in the search and when it show up on the menu right click it and chose Run as administrator
Then type in the following commands one-by-one and press the ENTER key after each line.
IPCONFIG /FLUSHDNS netsh interface ip delete arpcache netsh int ip reset c:\resetlog.txt
Then restart the computer (make sure Bitdefender is still disabled after the reboot - DO NOT go surfing the Web)
Then start MBAM and see if it can now obtain updates or not and let me know please.
Make sure you re-enable your Anti-Virus when done testing.
Thanks
#10
Posted 04 June 2011 - 07:11 AM
Never had a problem with bitdefender and malwarebytes before
so i do not see why i should now.
i uninstalled every program on the computer,(including the internet security system)
one at a time,
making sure i removed every reg entry i could find
for each program,
i stripped it back bit by bit hoping to find something.
after many hours of work and only 4 hours sleep,
still the problem persisted,
with the system stripped back i then uninstalled malwarebytes
and removed every reg entry i could find,
then reinstalled it.
But still the same problem persisted.
i decide to read over the notes i had been making,
that i saved on my external hard drive,
while i was looking for my notes i passed by the back ups i made of each step,
and there was the problem.
The date on the back ups was three months in the future,
yet the date and time on the computers clock showed the correct time and date.
now i have to work this out because just reinstalling the operating system,
would be too easy to do,
and if i done that then nobody would ever know what this strange occurance is/was.
or why it happened.
if you have any ideas then please say so,
i have plenty of spare time at the moment, so i am going to get stuck in to it.
hopefully i will find an answer soon then i will let you know.
.
so i do not see why i should now.
i uninstalled every program on the computer,(including the internet security system)
one at a time,
making sure i removed every reg entry i could find
for each program,
i stripped it back bit by bit hoping to find something.
after many hours of work and only 4 hours sleep,
still the problem persisted,
with the system stripped back i then uninstalled malwarebytes
and removed every reg entry i could find,
then reinstalled it.
But still the same problem persisted.
i decide to read over the notes i had been making,
that i saved on my external hard drive,
while i was looking for my notes i passed by the back ups i made of each step,
and there was the problem.
The date on the back ups was three months in the future,
yet the date and time on the computers clock showed the correct time and date.
now i have to work this out because just reinstalling the operating system,
would be too easy to do,
and if i done that then nobody would ever know what this strange occurance is/was.
or why it happened.
if you have any ideas then please say so,
i have plenty of spare time at the moment, so i am going to get stuck in to it.
hopefully i will find an answer soon then i will let you know.
.
#11
Posted 04 June 2011 - 02:13 PM
Okay, i have Bitdefender internet security and Malwarebytes installed. I was having updating problems and did this process just like you posted, rebooted and disabled my av and my firewall. I checked to see if i could update and it updated. So what do i do now??
#12
Posted 04 June 2011 - 03:27 PM
@KBurleson
Well if updating is now working for you then you should be all set. If updating stops when BitDefender is re-enabled then let us know as that would certainly indicate you need to set/re-set file exclusions within the program.
Well if updating is now working for you then you should be all set. If updating stops when BitDefender is re-enabled then let us know as that would certainly indicate you need to set/re-set file exclusions within the program.
#13
Posted 04 June 2011 - 03:29 PM
@TheArfen
I'm not really sure what's going on there. We've had a couple more reports of users with the issue as well so I doubt it's a time issue for everyone.
At this point not really sure what the issue is on your system.
You should be able to install the older version and go to the settings and uncheck the setting to download program updates. It will still update the database just not the program until we figure out what is causing this issue.
I'm not really sure what's going on there. We've had a couple more reports of users with the issue as well so I doubt it's a time issue for everyone.
At this point not really sure what the issue is on your system.
You should be able to install the older version and go to the settings and uncheck the setting to download program updates. It will still update the database just not the program until we figure out what is causing this issue.
#14
Posted 04 June 2011 - 05:10 PM
AdvancedSetup, on 04 June 2011 - 03:27 PM, said:
@KBurleson
Well if updating is now working for you then you should be all set. If updating stops when BitDefender is re-enabled then let us know as that would certainly indicate you need to set/re-set file exclusions within the program.
Well if updating is now working for you then you should be all set. If updating stops when BitDefender is re-enabled then let us know as that would certainly indicate you need to set/re-set file exclusions within the program.
This is what i've found out, i clicked default level then custom level went into settings and unchecked scan Http traffic in my bitdefender internet security A.V. and clicked ok or i could disable to be able to update my Malwarebytes database. What should i do from there? I guess in the meantime if you guys can figure out how to bypass this or if you don't, well any ways thats what i'll be doing to update. Anybody else with Bitdefender can temp. disable their a.v. to update their Mbam.
#15
Posted 04 June 2011 - 11:59 PM
Please try the following and see if it helps.
Setting Exclusions for Malwarebytes' Anti-Malware in BitDefender 2011 Products:
Setting Exclusions for BitDefender 2011 Products in Malwarebytes' Anti-Malware:
Setting Exclusions for Malwarebytes' Anti-Malware in BitDefender 2011 Products:
- Open BitDefender
- Click Options and select Expert View
- Click on Antivirus on the left, then click on the Exclusions
- Click the checkbox next to Exclusions are disabled so that it says Exclusions are enabled
- Click the + on the upper right to add a new exclusion
- Ensure Exclude by file/folder path is set, then click Next
- Click Browse
- Click the + next to My Computer or Computer
- Click the + next to C:
- Click the + next to Program Files Note: In 64 bit Windows versions this will be C:\Program Files (x86)
- Click once on Malwarebytes' Anti-Malware and click on OK
- Repeat steps 5-9 and then click the + next to Windows
- Click the + next to System32
- Click the + next to drivers
- Click once on mbam.sys and click on OK
- Do the same for the following file:
- C:\Windows\System32\Drivers\mbamswissarmy.sys Note: In 64 bit Windows versions this will be C:\Windows\SysWOW64\Drivers\mbamswissarmy.sys
- click Next
- click Finish
- click Apply
- In the Antivirus tab click on the Whitelist button on the bottom and add the following URL:
data-cdn.mbamupdates.com
- Click on Apply and then close the BitDefender window
Setting Exclusions for BitDefender 2011 Products in Malwarebytes' Anti-Malware:
- Open Malwarebytes' Anti-Malware and click on the Ignore List tab
- Click the Add button on the lower left
- In the small browse window that opens, navigate to C:\Program Files and click once on BitDefender and click OK
- Click the Add button on the lower left
- In the small browse window that opens, navigate to C:\Program Files\Common Files and click once on BitDefender and click OK
- Close Malwarebytes' Anti-Malware
#16
Posted 05 June 2011 - 10:15 AM
AdvancedSetup, on 04 June 2011 - 11:59 PM, said:
Please try the following and see if it helps.
Setting Exclusions for Malwarebytes' Anti-Malware in BitDefender 2011 Products:
Setting Exclusions for BitDefender 2011 Products in Malwarebytes' Anti-Malware:
Setting Exclusions for Malwarebytes' Anti-Malware in BitDefender 2011 Products:
- Open BitDefender
- Click Options and select Expert View
- Click on Antivirus on the left, then click on the Exclusions
- Click the checkbox next to Exclusions are disabled so that it says Exclusions are enabled
- Click the + on the upper right to add a new exclusion
- Ensure Exclude by file/folder path is set, then click Next
- Click Browse
- Click the + next to My Computer or Computer
- Click the + next to C:
- Click the + next to Program Files Note: In 64 bit Windows versions this will be C:\Program Files (x86)
- Click once on Malwarebytes' Anti-Malware and click on OK
- Repeat steps 5-9 and then click the + next to Windows
- Click the + next to System32
- Click the + next to drivers
- Click once on mbam.sys and click on OK
- Do the same for the following file:
- C:\Windows\System32\Drivers\mbamswissarmy.sys Note: In 64 bit Windows versions this will be C:\Windows\SysWOW64\Drivers\mbamswissarmy.sys
- click Next
- click Finish
- click Apply
- In the Antivirus tab click on the Whitelist button on the bottom and add the following URL:
data-cdn.mbamupdates.com
- Click on Apply and then close the BitDefender window
Setting Exclusions for BitDefender 2011 Products in Malwarebytes' Anti-Malware:
- Open Malwarebytes' Anti-Malware and click on the Ignore List tab
- Click the Add button on the lower left
- In the small browse window that opens, navigate to C:\Program Files and click once on BitDefender and click OK
- Click the Add button on the lower left
- In the small browse window that opens, navigate to C:\Program Files\Common Files and click once on BitDefender and click OK
- Close Malwarebytes' Anti-Malware
Well, i tried all this and it doesn't work. Do you have any other ideas i might be able to try? I might try to see what i can find out again. There is another exclusion box in the advanced tab, i've even put the same files in that exclusion box. Thanks for helping!!
#17
Posted 05 June 2011 - 10:27 AM
Okay this is what i found out, for any and all readers.....go to Game and Laptop mode in your Bitdefender, turn on Automatic Game Mode is enabled. Go into Manage Games, and what i did was added was files from C:/ programfiles/malwarebytes/ of course i added mbam.exe, mbamgui.exe, and mbamservice.exe. I hope this helps anybody and everybody. You don't have to do anything else but this to update your Mbam. Later everybody!!
#18
Posted 05 June 2011 - 03:03 PM
KBurleson, on 05 June 2011 - 10:27 AM, said:
Okay this is what i found out, for any and all readers.....go to Game and Laptop mode in your Bitdefender, turn on Automatic Game Mode is enabled. Go into Manage Games, and what i did was added was files from C:/ programfiles/malwarebytes/ of course i added mbam.exe, mbamgui.exe, and mbamservice.exe. I hope this helps anybody and everybody. You don't have to do anything else but this to update your Mbam. Later everybody!! 
Going back, to my A.V. I noticed that my http traffic scan was disabled after doing this, and a few other things so doing the whole game mode thing, changes the traffic scanning and turns off a few other things. So it all lies in the disabling your http traffic in your A.V. Nothing else i've seen has really worked or helped. If anybody has any ideas, i'd be appreciative of hearing from you.
#19
Posted 05 June 2011 - 03:46 PM
OK here we go.
the problem seems to definitely be with bitdefender
Two machines were loaded with fresh installs of windows 7.
one had malwarebytes loaded in first,
then it had bitdefender internet security 2011 added.
no update problems with malwarebytes have shown.
The machine that had bitdefender loaded in first
then followed by malwarebytes.
problems were found in the updating of malwarebytes,
the same problem has arisen that i had in the first place.
at least i know now how to put it right.
(i think)
could it possibly be a registry thing ?
i don't want to spend hours and hours comparing the registry's of both machines.
the problem seems to definitely be with bitdefender
Two machines were loaded with fresh installs of windows 7.
one had malwarebytes loaded in first,
then it had bitdefender internet security 2011 added.
no update problems with malwarebytes have shown.
The machine that had bitdefender loaded in first
then followed by malwarebytes.
problems were found in the updating of malwarebytes,
the same problem has arisen that i had in the first place.
at least i know now how to put it right.
(i think)
could it possibly be a registry thing ?
i don't want to spend hours and hours comparing the registry's of both machines.
#20
Posted 06 June 2011 - 02:31 AM
It could simply be the complexity of the firewall. Trying to set/fix a firewall properly is not always easy even for experienced users.
During the install the program attempts to white list many/most of your currently installed programs, but after its a different story and then you as the user get to try and set all the proper settings.
For now if it's working then I'd suggest doing a full removal of both products, then re-install MBAM first and get it setup and updating and then install BitDefender and if it's working as you say then you should be all set.
During the install the program attempts to white list many/most of your currently installed programs, but after its a different story and then you as the user get to try and set all the proper settings.
For now if it's working then I'd suggest doing a full removal of both products, then re-install MBAM first and get it setup and updating and then install BitDefender and if it's working as you say then you should be all set.
1 user(s) are reading this topic
0 members, 1 guests, 0 anonymous users

Sign In
Create Account
This topic is locked
Back to top











