Alright. did what you said. found some threats with the online scanner. but on the performance side, everything has been running smoothly and the symptoms (Google redirecting and the disembodied ads) have disappeared. Thanks for all the help, couldnt have done this without it

.
Here are4 the logs in order
(Combo, TDSS, ESET, Security Check)
ComboFix 12-07-30.01 - Jim 07/30/2012 15:01:27.3.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2046.1036 [GMT -7:00]
Running from: c:\documents and settings\Jim\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free *Enabled/Updated* {17DDD097-36FF-435F-9E1B-52D74245D6BF}
.
.
((((((((((((((((((((((((( Files Created from 2012-06-28 to 2012-07-30 )))))))))))))))))))))))))))))))
.
.
2012-07-26 21:49 . 2012-07-26 21:49 -------- d-----w- C:\TDSSKiller_Quarantine
2012-07-24 05:24 . 2012-07-24 05:24 -------- d-----w- c:\program files\Oracle
2012-07-24 05:24 . 2012-07-24 05:22 143872 ----a-w- c:\windows\system32javacpl.cpl
2012-07-21 09:54 . 2012-07-21 09:54 -------- d-----w- c:\program files\Mozilla Maintenance Service
2012-07-15 07:40 . 2012-07-15 07:40 -------- d-----w- c:\documents and settings\LocalService.NT AUTHORITY\Local Settings\Application Data\Sun
2012-07-10 10:32 . 2012-07-10 10:33 -------- d-----w- c:\program files\MonitorDriver
2012-07-10 10:32 . 2012-07-10 10:32 -------- d-----w- c:\documents and settings\Jim\Application Data\InstallShield
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-07-26 22:14 . 2012-04-16 09:10 70344 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-07-26 22:14 . 2012-04-16 09:10 426184 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2012-07-06 05:07 . 2007-04-19 16:16 143872 ----a-w- c:\windows\system32\javacpl.cpl
2012-07-06 05:06 . 2012-04-08 18:59 772544 ----a-w- c:\windows\system32\npdeployJava1.dll
2012-07-06 05:06 . 2010-06-08 19:33 687544 ----a-w- c:\windows\system32\deployJava1.dll
2012-07-03 20:46 . 2009-03-15 18:24 22344 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-06-13 13:19 . 2001-08-23 12:00 1866112 ----a-w- c:\windows\system32\win32k.sys
2012-06-05 15:50 . 2007-05-15 22:43 1372672 ----a-w- c:\windows\system32\msxml6.dll
2012-06-05 15:50 . 2001-08-23 12:00 1172480 ----a-w- c:\windows\system32\msxml3.dll
2012-06-04 04:32 . 2001-08-23 12:00 152576 ----a-w- c:\windows\system32\schannel.dll
2012-06-02 22:19 . 2007-06-21 20:12 22040 ----a-w- c:\windows\system32\wucltui.dll.mui
2012-06-02 22:19 . 2007-06-21 20:12 15384 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2012-06-02 22:19 . 2006-09-11 08:15 329240 ----a-w- c:\windows\system32\wucltui.dll
2012-06-02 22:19 . 2006-09-11 08:15 219160 ----a-w- c:\windows\system32\wuaucpl.cpl
2012-06-02 22:19 . 2005-05-26 11:19 210968 ----a-w- c:\windows\system32\wuweb.dll
2012-06-02 22:19 . 2007-06-21 20:12 15384 ----a-w- c:\windows\system32\wuapi.dll.mui
2012-06-02 22:19 . 2006-09-11 08:15 45080 ----a-w- c:\windows\system32\wups2.dll
2012-06-02 22:19 . 2006-09-11 08:15 35864 ----a-w- c:\windows\system32\wups.dll
2012-06-02 22:19 . 2006-09-11 07:49 53784 ----a-w- c:\windows\system32\wuauclt.exe
2012-06-02 22:19 . 2001-08-23 12:00 97304 ----a-w- c:\windows\system32\cdm.dll
2012-06-02 22:19 . 2007-06-21 20:12 17944 ----a-w- c:\windows\system32\wuaueng.dll.mui
2012-06-02 22:19 . 2006-09-11 08:15 577048 ----a-w- c:\windows\system32\wuapi.dll
2012-06-02 22:19 . 2006-09-11 07:49 1933848 ----a-w- c:\windows\system32\wuaueng.dll
2012-06-02 22:18 . 2007-06-22 15:59 17136 ----a-w- c:\windows\system32\mucltui.dll.mui
2012-06-02 22:18 . 2006-09-11 08:58 275696 ----a-w- c:\windows\system32\mucltui.dll
2012-06-02 22:18 . 2005-05-26 11:19 214256 ----a-w- c:\windows\system32\muweb.dll
2012-05-31 13:22 . 2002-09-23 22:10 599040 ----a-w- c:\windows\system32\crypt32.dll
2012-05-16 15:08 . 2004-01-08 22:23 916992 ----a-w- c:\windows\system32\wininet.dll
2012-05-15 10:18 . 2011-11-24 22:05 883008 ----a-w- c:\windows\system32\nvgenco32.dll
2012-05-15 10:18 . 2011-11-24 22:05 65536 ----a-w- c:\windows\system32\OpenCL.dll
2012-05-15 10:18 . 2011-11-24 22:05 17543168 ----a-w- c:\windows\system32\nvcompiler.dll
2012-05-15 10:18 . 2011-11-24 22:05 1000768 ----a-w- c:\windows\system32\nvdispco32.dll
2012-05-15 10:18 . 2009-08-17 07:57 2530624 ----a-w- c:\windows\system32\nvcuvid.dll
2012-05-15 10:18 . 2009-08-17 07:57 2445120 ----a-w- c:\windows\system32\nvcuvenc.dll
2012-05-15 10:18 . 2008-05-03 05:46 6012928 ----a-w- c:\windows\system32\nvcuda.dll
2012-05-15 10:18 . 2008-03-16 00:46 18771968 ----a-w- c:\windows\system32\nvoglnt.dll
2012-05-15 10:18 . 2008-03-16 00:45 2359808 ----a-w- c:\windows\system32\nvapi.dll
2012-05-15 10:18 . 2004-08-04 07:56 4373248 ----a-w- c:\windows\system32\nv4_disp.dll
2012-05-15 10:18 . 2004-08-04 05:29 14014656 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2012-05-15 09:40 . 2009-08-17 10:04 54272 ----a-w- c:\windows\system32\nvwddi.dll
2012-05-15 09:40 . 2009-08-17 10:03 15504192 ----a-w- c:\windows\system32\nvcpl.dll
2012-05-15 09:40 . 2009-08-17 10:03 143680 ----a-w- c:\windows\system32\nvcolor.exe
2012-05-15 09:40 . 2009-08-17 10:03 164160 ----a-w- c:\windows\system32\nvsvc32.exe
2012-05-15 09:40 . 2009-08-17 10:03 108352 ----a-w- c:\windows\system32\nvmctray.dll
2012-05-11 14:42 . 2001-08-23 12:00 43520 ------w- c:\windows\system32\licmgr10.dll
2012-05-11 14:42 . 2001-08-23 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl
2012-05-11 11:38 . 2004-08-04 05:59 385024 ------w- c:\windows\system32\html.iec
2012-05-04 19:33 . 2010-06-06 01:48 477240 ----a-w- c:\windows\system32\drivers\sptd.sys
2012-05-04 13:16 . 2001-08-23 12:00 2148352 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-05-04 12:32 . 2001-08-17 13:48 2026496 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-05-02 13:46 . 2006-09-11 07:49 139656 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2008-06-10 19:26 . 2008-06-10 19:26 62910 -c--a-w- c:\program files\Uninstall.exe
2007-11-15 07:20 . 2007-11-15 07:20 774144 ----a-w- c:\program files\RngInterstitial.dll
2012-07-14 00:17 . 2012-07-21 09:54 136672 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((( SnapShot@2012-07-26_05.24.46 )))))))))))))))))))))))))))))))))))))))))
.
+ 2012-07-28 00:39 . 2012-07-28 00:39 16384 c:\windows\Temp\Perflib_Perfdata_718.dat
+ 2012-07-26 22:14 . 2012-07-26 22:14 686792 c:\windows\system32\Macromed\Flash\FlashUtil32_11_3_300_268_Plugin.exe
+ 2012-07-26 21:14 . 2012-07-26 21:14 686792 c:\windows\system32\Macromed\Flash\FlashUtil32_11_3_300_268_ActiveX.exe
+ 2012-07-26 21:14 . 2012-07-26 21:14 466632 c:\windows\system32\Macromed\Flash\FlashUtil32_11_3_300_268_ActiveX.dll
+ 2012-04-16 09:10 . 2012-07-26 22:14 250056 c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
- 2012-04-16 09:10 . 2012-07-12 04:15 250056 c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
+ 2012-07-26 22:14 . 2012-07-26 22:14 9465032 c:\windows\system32\Macromed\Flash\NPSWF32_11_3_300_268.dll
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-05-14 68856]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Google Updater"="c:\program files\Google\Google Updater\GoogleUpdater.exe" [2011-10-07 161336]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-03 843712]
"Monitor"="e:\program files\LeapFrog Connect\Monitor.exe" [2011-11-12 268640]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-21 59240]
"SoundMan"="SOUNDMAN.EXE" [2007-04-16 577536]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS6ServiceManager"="c:\program files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-06-25 1073352]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-27 421736]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2012-05-15 15504192]
"NvMediaCenter"="NvMCTray.dll" [2012-05-15 108352]
"nwiz"="c:\program files\NVIDIA Corporation\nview\nwiz.exe" [2012-05-15 1634112]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe" [2012-02-23 59240]
"QuickTime Task"="e:\program files\QuickTime\QTTask.exe" [2012-04-19 421888]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2012-01-17 252296]
.
c:\documents and settings\All Users.WINDOWS\Start Menu\Programs\Startup\
WDDMStatus.lnk - c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe [2011-3-9 3986944]
WG111v2 Smart Wizard Wireless Setting.lnk - c:\program files\NETGEAR\WG111v2 Configuration Utility\RtlWake.exe [2009-1-12 745472]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2010-07-15 21:00 12536 ----a-w- c:\windows\system32\avgrsstx.dll
.
[HKLM\~\startupfolder\C:^Documents and Settings^Jim^Start Menu^Programs^Startup^GameFly.lnk]
path=c:\documents and settings\Jim\Start Menu\Programs\Startup\GameFly.lnk
backup=c:\windows\pss\GameFly.lnkStartup
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
2012-02-29 15:55 17148552 ----a-r- c:\program files\Skype\Phone\Skype.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify]
2012-07-12 12:44 9478320 ----a-w- c:\documents and settings\Jim\Application Data\Spotify\spotify.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Steam]
2011-11-24 06:53 1242448 ----a-w- e:\program files\Steam\Steam.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Java\\jre7\\bin\\javaw.exe"=
.
R0 sptd;sptd;\SystemRoot\\SystemRoot\System32\Drivers\sptd.sys --> \SystemRoot\\SystemRoot\System32\Drivers\sptd.sys [?]
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2/21/2009 3:08 PM 216400]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2/21/2009 3:08 PM 243152]
R2 avg9emc;AVG Free E-mail Scanner;c:\program files\AVG\AVG9\avgemc.exe [7/15/2010 1:59 PM 921952]
R2 avg9wd;AVG Free WatchDog;c:\program files\AVG\AVG9\avgwdsvc.exe [7/15/2010 1:59 PM 308136]
R2 EAPPkt;Realtek EAPPkt Protocol;c:\windows\system32\drivers\EAPPkt.sys [1/12/2009 5:03 PM 66048]
R2 WDDMService;WDDMService;c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [3/9/2011 11:07 AM 238592]
R2 WDFME;WD File Management Engine;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe [3/9/2011 11:18 AM 1060864]
R2 WDSC;WD File Management Shadow Engine;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSC.exe [3/9/2011 11:16 AM 484352]
R3 WsAudio_DeviceS(1);WsAudio_DeviceS(1);c:\windows\system32\drivers\WsAudio_DeviceS(1).sys [9/15/2011 7:18 PM 25704]
R3 WsAudio_DeviceS(2);WsAudio_DeviceS(2);c:\windows\system32\drivers\WsAudio_DeviceS(2).sys [9/15/2011 7:19 PM 25704]
R3 WsAudio_DeviceS(3);WsAudio_DeviceS(3);c:\windows\system32\drivers\WsAudio_DeviceS(3).sys [9/15/2011 7:19 PM 25704]
R3 WsAudio_DeviceS(4);WsAudio_DeviceS(4);c:\windows\system32\drivers\WsAudio_DeviceS(4).sys [9/15/2011 7:19 PM 25704]
R3 WsAudio_DeviceS(5);WsAudio_DeviceS(5);c:\windows\system32\drivers\WsAudio_DeviceS(5).sys [9/15/2011 7:19 PM 25704]
S0 tpcdrdrv;tpcdrdrv;c:\windows\system32\DRIVERS\tpcdrdrv.sys --> c:\windows\system32\DRIVERS\tpcdrdrv.sys [?]
S2 gupdate;Google Update Service (gupdate);c:\program files\Google\Update\GoogleUpdate.exe [1/6/2010 7:34 AM 135664]
S2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [6/7/2012 2:59 PM 1262400]
S2 Skype C2C Service;Skype C2C Service;c:\documents and settings\All Users.WINDOWS\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe [7/5/2012 6:41 PM 3048136]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2/29/2012 8:50 AM 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [4/16/2012 2:10 AM 250056]
S3 Alpham;Ideazon Merc Composite Keyboard Driver;c:\windows\system32\drivers\Alpham.sys [3/12/2006 1:11 PM 37248]
S3 AsAudioDevice_349;AsAudioDevice_349;c:\windows\system32\drivers\AsAudioDevice_349.sys [9/15/2011 2:05 PM 16640]
S3 brfilt;Brother MFC Filter Driver;c:\windows\system32\drivers\BrFilt.sys [7/7/2010 12:53 AM 2944]
S3 brparimg;Brother Multi Function Parallel Image driver;c:\windows\system32\drivers\BrParImg.sys [7/7/2010 12:54 AM 3168]
S3 BrParWdm;Brother WDM Parallel Driver;c:\windows\system32\drivers\BrParwdm.sys [7/7/2010 12:53 AM 39552]
S3 BrSerWDM;Brother WDM Serial driver;c:\windows\system32\drivers\BrSerWdm.sys [7/7/2010 12:53 AM 60416]
S3 gupdatem;Google Update Service (gupdatem);c:\program files\Google\Update\GoogleUpdate.exe [1/6/2010 7:34 AM 135664]
S3 ivusb;Initio Driver for USB Default Controller;c:\windows\system32\drivers\ivusb.sys [7/29/2010 12:25 AM 25112]
S3 motccgp;Motorola USB Composite Device Driver;c:\windows\system32\drivers\motccgp.sys [8/21/2008 11:49 PM 18688]
S3 motccgpfl;MotCcgpFlService;c:\windows\system32\drivers\motccgpfl.sys [8/21/2008 11:49 PM 8320]
S3 motport;Motorola USB Diagnostic Port;c:\windows\system32\drivers\motport.sys [6/18/2007 8:18 PM 23680]
S3 MozillaMaintenance;Mozilla Maintenance Service;c:\program files\Mozilla Maintenance Service\maintenanceservice.exe [7/21/2012 2:54 AM 113120]
S3 RTLWUSB;NETGEAR WG111v2 54Mbps Wireless USB 2.0 Adapter NT Driver;c:\windows\system32\drivers\wg111v2.sys [1/12/2009 5:03 PM 167808]
S3 SjyPkt;SjyPkt;c:\windows\system32\drivers\SjyPkt.sys [1/12/2009 5:03 PM 13532]
S3 SwitchBoard;Adobe SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2/19/2010 1:37 PM 517096]
S3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\drivers\wdcsam.sys [6/16/2012 3:39 AM 11520]
.
Contents of the 'Scheduled Tasks' folder
.
2012-07-30 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-16 22:14]
.
2012-07-30 c:\windows\Tasks\AdobeAAMUpdater-1.0-DUFIS-D-Jim.job
- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2012-05-05 13:09]
.
2012-07-28 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2011-06-02 00:57]
.
2012-07-30 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-05-14 17:03]
.
2012-07-29 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-06 14:34]
.
2012-07-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2010-01-06 14:34]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://search.babylon.com/?babsrc=HP_ss&affID=108844&mntrId=1b0529e00000000000000016ec2fa0b3
uSearchMigratedDefaultURL = 687474703a2f2f7777772e676f6f676c652e636f6d2f
uDefault_Search_URL = 687474703a2f2f7777772e676f6f676c652e636f6d2f
mSearch Bar = 687474703a2f2f7777772e676f6f676c652e636f6d2f
mSearchMigratedDefaultURL = 687474703a2f2f7777772e676f6f676c652e636f6d2f
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyOverride = *.local;<local>
uSearchAssistant = 687474703a2f2f7777772e676f6f676c652e636f6d2f
mSearchURL = 687474703a2f2f7777772e676f6f676c652e636f6d2f
TCP: DhcpNameServer = 209.18.47.61 209.18.47.62
DPF: RaptisoftGameLoader - hxxp://www.gamehouse.com/realarcade-webgames/hamsterball/raptisoftgameloader.cab
FF - ProfilePath - c:\documents and settings\Jim\Application Data\Mozilla\Firefox\Profiles\1ig2pwy8.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.youtube.com/
.
.
------- File Associations -------
.
.scr=SageThumbsImage.scr
.
- - - - ORPHANS REMOVED - - - -
.
BHO-{F443A627-5009-4323-9C1D-7FD598D0D712} - (no file)
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.net
Rootkit scan 2012-07-30 15:12
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ...
.
scanning hidden autostart entries ...
.
scanning hidden files ...
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,03,cc,57,59,1d,a3,38,48,aa,fd,13,\
.
[HKEY_USERS\S-1-5-21-57989841-2025429265-725345543-1003\Software\SecuROM\License information*]
"datasecu"=hex:94,c5,e7,2e,4a,b8,d8,b9,ed,8f,60,54,17,2a,56,04,e8,5c,78,84,f0,
49,54,43,a3,1d,7c,99,f2,95,50,71,a3,55,33,9b,f0,04,20,fa,22,a8,55,9a,7c,2d,\
"rkeysecu"=hex:82,c3,15,4f,bb,1d,3b,7f,84,f5,53,93,76,d6,d1,ff
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{BEB3C0C7-B648-4257-96D9-B5D024816E27}\Version*Version]
"Version"=hex:de,5e,c5,e5,35,85,69,83,85,07,c1,0b,47,0d,7d,d0,fb,59,e4,6b,99,
0f,f2,91,cc,2e,15,99,50,fa,26,22,28,18,c9,53,0a,e5,bd,3d,0e,66,6e,47,0d,c6,\
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\Reinstall\æHõwæ*]
"DisplayName"="?\11\09"
"DeviceDesc"="?\11\09"
"ProviderName"="???\11? H\11??"
"MFG"="???"
"ReinstallString"=".10.1000.5"
"DeviceInstanceIds"=multi:"d:\\raid\\ati\\sbdrv\\smbus\\smbusati.inf\00"
.
[HKEY_LOCAL_MACHINE\software\Minnetonka Audio Software\SurCode Dolby Digital Premiere\Version*Version]
"Version"=hex:de,5e,c5,e5,35,85,69,83,85,07,c1,0b,47,0d,7d,d0,fb,59,e4,6b,99,
0f,f2,91,cc,2e,15,99,50,fa,26,22,28,18,c9,53,0a,e5,bd,3d,0e,66,6e,47,0d,c6,\
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'explorer.exe'(12024)
c:\windows\system32\WININET.dll
c:\progra~1\WINDOW~3\wmpband.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\mshtml.dll
e:\program files\SageThumbs\32\SageThumbs.dll
e:\program files\SageThumbs\32\sqlite3.dll
e:\program files\SageThumbs\32\libgfl340.dll
e:\program files\SageThumbs\32\libgfle340.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
Completion time: 2012-07-30 15:15:30
ComboFix-quarantined-files.txt 2012-07-30 22:15
ComboFix2.txt 2012-07-26 05:32
.
Pre-Run: 26,640,621,568 bytes free
Post-Run: 26,619,232,256 bytes free
.
WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /fastdetect /NoExecute=OptIn /usepmtimer
.
- - End Of File - - FA54A8D3FE01A305981BE7C23C794EB3
15:17:24.0984 12708 TDSS rootkit removing tool 2.7.48.0 Jul 24 2012 13:16:32
15:17:26.0156 12708 ============================================================
15:17:26.0156 12708 Current date / time: 2012/07/30 15:17:26.0156
15:17:26.0156 12708 SystemInfo:
15:17:26.0156 12708
15:17:26.0156 12708 OS Version: 5.1.2600 ServicePack: 3.0
15:17:26.0156 12708 Product type: Workstation
15:17:26.0156 12708 ComputerName: DUFIS-D
15:17:26.0156 12708 UserName: Jim
15:17:26.0156 12708 Windows directory: C:\WINDOWS
15:17:26.0156 12708 System windows directory: C:\WINDOWS
15:17:26.0156 12708 Processor architecture: Intel x86
15:17:26.0156 12708 Number of processors: 2
15:17:26.0156 12708 Page size: 0x1000
15:17:26.0156 12708 Boot type: Normal boot
15:17:26.0156 12708 ============================================================
15:17:28.0281 12708 Drive \Device\Harddisk0\DR0 - Size: 0x1315740000 (76.34 Gb), SectorSize: 0x200, Cylinders: 0x26EC, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
15:17:28.0296 12708 Drive \Device\Harddisk1\DR1 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000054
15:17:28.0500 12708 ============================================================
15:17:28.0500 12708 \Device\Harddisk0\DR0:
15:17:28.0500 12708 MBR partitions:
15:17:28.0500 12708 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x98A7FAD
15:17:28.0500 12708 \Device\Harddisk1\DR1:
15:17:28.0500 12708 MBR partitions:
15:17:28.0500 12708 \Device\Harddisk1\DR1\Partition0: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x1D1C4542
15:17:28.0500 12708 ============================================================
15:17:28.0531 12708 C: <-> \Device\Harddisk0\DR0\Partition0
15:17:28.0562 12708 E: <-> \Device\Harddisk1\DR1\Partition0
15:17:28.0562 12708 ============================================================
15:17:28.0562 12708 Initialize success
15:17:28.0562 12708 ============================================================
15:17:33.0296 8008 ============================================================
15:17:33.0296 8008 Scan started
15:17:33.0296 8008 Mode: Manual;
15:17:33.0296 8008 ============================================================
15:17:35.0281 8008 Abiosdsk - ok
15:17:35.0281 8008 abp480n5 - ok
15:17:35.0328 8008 ACPI (8fd99680a539792a30e97944fdaecf17) C:\WINDOWS\system32\DRIVERS\ACPI.sys
15:17:35.0328 8008 ACPI - ok
15:17:35.0375 8008 ACPIEC (9859c0f6936e723e4892d7141b1327d5) C:\WINDOWS\system32\drivers\ACPIEC.sys
15:17:35.0375 8008 ACPIEC - ok
15:17:35.0437 8008 AdobeFlashPlayerUpdateSvc (6c40d5ed8951ab7b90d08af655224ee4) C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
15:17:35.0437 8008 AdobeFlashPlayerUpdateSvc - ok
15:17:35.0453 8008 adpu160m - ok
15:17:35.0468 8008 aec (8bed39e3c35d6a489438b8141717a557) C:\WINDOWS\system32\drivers\aec.sys
15:17:35.0468 8008 aec - ok
15:17:35.0500 8008 AFD (1e44bc1e83d8fd2305f8d452db109cf9) C:\WINDOWS\System32\drivers\afd.sys
15:17:35.0500 8008 AFD - ok
15:17:35.0515 8008 Aha154x - ok
15:17:35.0515 8008 aic78u2 - ok
15:17:35.0515 8008 aic78xx - ok
15:17:35.0734 8008 ALCXWDM (dd8520280304b6145a6be31008748c7c) C:\WINDOWS\system32\drivers\ALCXWDM.SYS
15:17:35.0765 8008 ALCXWDM - ok
15:17:35.0859 8008 Alerter (a9a3daa780ca6c9671a19d52456705b4) C:\WINDOWS\system32\alrsvc.dll
15:17:35.0859 8008 Alerter - ok
15:17:35.0890 8008 ALG (8c515081584a38aa007909cd02020b3d) C:\WINDOWS\System32\alg.exe
15:17:35.0890 8008 ALG - ok
15:17:35.0890 8008 AliIde - ok
15:17:35.0921 8008 Alpham (5c6b6686f14b6e9549e320f59fec1469) C:\WINDOWS\system32\DRIVERS\Alpham.sys
15:17:35.0921 8008 Alpham - ok
15:17:35.0937 8008 AmdK8 (efbb0956baed786e137351b5ca272aef) C:\WINDOWS\system32\DRIVERS\AmdK8.sys
15:17:35.0937 8008 AmdK8 - ok
15:17:35.0953 8008 amsint - ok
15:17:36.0046 8008 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
15:17:36.0046 8008 Apple Mobile Device - ok
15:17:36.0093 8008 AppMgmt (d8849f77c0b66226335a59d26cb4edc6) C:\WINDOWS\System32\appmgmts.dll
15:17:36.0093 8008 AppMgmt - ok
15:17:36.0125 8008 Arp1394 (b5b8a80875c1dededa8b02765642c32f) C:\WINDOWS\system32\DRIVERS\arp1394.sys
15:17:36.0125 8008 Arp1394 - ok
15:17:36.0171 8008 AsAudioDevice_349 (85ece26f326c2d07ba77a60343468272) C:\WINDOWS\system32\drivers\AsAudioDevice_349.sys
15:17:36.0171 8008 AsAudioDevice_349 - ok
15:17:36.0171 8008 asc - ok
15:17:36.0187 8008 asc3350p - ok
15:17:36.0187 8008 asc3550 - ok
15:17:36.0296 8008 aspnet_state (776acefa0ca9df0faa51a5fb2f435705) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
15:17:36.0296 8008 aspnet_state - ok
15:17:36.0312 8008 AsyncMac (b153affac761e7f5fcfa822b9c4e97bc) C:\WINDOWS\system32\DRIVERS\asyncmac.sys
15:17:36.0312 8008 AsyncMac - ok
15:17:36.0328 8008 atapi (9f3a2f5aa6875c72bf062c712cfa2674) C:\WINDOWS\system32\DRIVERS\atapi.sys
15:17:36.0328 8008 atapi - ok
15:17:36.0343 8008 Atdisk - ok
15:17:36.0390 8008 atksgt (f0d933b42cd0594048e4d5200ae9e417) C:\WINDOWS\system32\DRIVERS\atksgt.sys
15:17:36.0390 8008 atksgt - ok
15:17:36.0406 8008 Atmarpc (9916c1225104ba14794209cfa8012159) C:\WINDOWS\system32\DRIVERS\atmarpc.sys
15:17:36.0406 8008 Atmarpc - ok
15:17:36.0437 8008 AudioSrv (def7a7882bec100fe0b2ce2549188f9d) C:\WINDOWS\System32\audiosrv.dll
15:17:36.0437 8008 AudioSrv - ok
15:17:36.0453 8008 audstub (d9f724aa26c010a217c97606b160ed68) C:\WINDOWS\system32\DRIVERS\audstub.sys
15:17:36.0453 8008 audstub - ok
15:17:36.0609 8008 avg9emc (aa054cd537357f03d5ba6aba7562b35f) C:\Program Files\AVG\AVG9\avgemc.exe
15:17:36.0609 8008 avg9emc - ok
15:17:36.0640 8008 avg9wd (c4d15594db5be042d3346ea58df87d89) C:\Program Files\AVG\AVG9\avgwdsvc.exe
15:17:36.0640 8008 avg9wd - ok
15:17:36.0796 8008 AvgLdx86 (b8c187439d27aba430dd69fdcf1fa657) C:\WINDOWS\System32\Drivers\avgldx86.sys
15:17:36.0796 8008 AvgLdx86 - ok
15:17:36.0812 8008 AvgMfx86 (80ff2b1b7eeda966394f0baa895bbf4b) C:\WINDOWS\System32\Drivers\avgmfx86.sys
15:17:36.0812 8008 AvgMfx86 - ok
15:17:36.0859 8008 AvgTdiX (9a7a93388f503a34e7339ae7f9997449) C:\WINDOWS\System32\Drivers\avgtdix.sys
15:17:36.0859 8008 AvgTdiX - ok
15:17:36.0937 8008 BCM43XX (2ee34b694d1ce077678662d7884f6c79) C:\WINDOWS\system32\DRIVERS\bcmwl5.sys
15:17:36.0953 8008 BCM43XX - ok
15:17:37.0015 8008 Beep (da1f27d85e0d1525f6621372e7b685e9) C:\WINDOWS\system32\drivers\Beep.sys
15:17:37.0015 8008 Beep - ok
15:17:37.0046 8008 BITS (574738f61fca2935f5265dc4e5691314) C:\WINDOWS\system32\qmgr.dll
15:17:37.0062 8008 BITS - ok
15:17:37.0187 8008 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
15:17:37.0187 8008 Bonjour Service - ok
15:17:37.0218 8008 brfilt (4ba311473e0d8557827e6f2fe33a8095) C:\WINDOWS\system32\Drivers\Brfilt.sys
15:17:37.0218 8008 brfilt - ok
15:17:37.0250 8008 Browser (a06ce3399d16db864f55faeb1f1927a9) C:\WINDOWS\System32\browser.dll
15:17:37.0250 8008 Browser - ok
15:17:37.0265 8008 brparimg (e05d9eda91c1b2c4c4f6f5a6d5b14b58) C:\WINDOWS\system32\DRIVERS\BrParImg.sys
15:17:37.0265 8008 brparimg - ok
15:17:37.0281 8008 BrParWdm (108d5c678411ac5b53d51756177d50a4) C:\WINDOWS\system32\Drivers\BrParwdm.sys
15:17:37.0281 8008 BrParWdm - ok
15:17:37.0296 8008 BrSerWDM (8e06cd96e00472c03770a697d04031c0) C:\WINDOWS\system32\Drivers\BrSerWdm.sys
15:17:37.0296 8008 BrSerWDM - ok
15:17:37.0406 8008 catchme - ok
15:17:37.0437 8008 cbidf2k (90a673fc8e12a79afbed2576f6a7aaf9) C:\WINDOWS\system32\drivers\cbidf2k.sys
15:17:37.0437 8008 cbidf2k - ok
15:17:37.0453 8008 cd20xrnt - ok
15:17:37.0453 8008 Cdaudio (c1b486a7658353d33a10cc15211a873b) C:\WINDOWS\system32\drivers\Cdaudio.sys
15:17:37.0453 8008 Cdaudio - ok
15:17:37.0484 8008 Cdfs (c885b02847f5d2fd45a24e219ed93b32) C:\WINDOWS\system32\drivers\Cdfs.sys
15:17:37.0500 8008 Cdfs - ok
15:17:37.0531 8008 Cdrom (1f4260cc5b42272d71f79e570a27a4fe) C:\WINDOWS\system32\DRIVERS\cdrom.sys
15:17:37.0531 8008 Cdrom - ok
15:17:37.0531 8008 Changer - ok
15:17:37.0546 8008 cisvc (1cfe720eb8d93a7158a4ebc3ab178bde) C:\WINDOWS\system32\cisvc.exe
15:17:37.0546 8008 cisvc - ok
15:17:37.0578 8008 ClipSrv (34cbe729f38138217f9c80212a2a0c82) C:\WINDOWS\system32\clipsrv.exe
15:17:37.0578 8008 ClipSrv - ok
15:17:37.0656 8008 clr_optimization_v2.0.50727_32 (d87acaed61e417bba546ced5e7e36d9c) C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
15:17:37.0671 8008 clr_optimization_v2.0.50727_32 - ok
15:17:37.0781 8008 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
15:17:37.0781 8008 clr_optimization_v4.0.30319_32 - ok
15:17:37.0781 8008 CmdIde - ok
15:17:37.0796 8008 COMSysApp - ok
15:17:37.0796 8008 Cpqarray - ok
15:17:37.0843 8008 CryptSvc (3d4e199942e29207970e04315d02ad3b) C:\WINDOWS\System32\cryptsvc.dll
15:17:37.0843 8008 CryptSvc - ok
15:17:37.0843 8008 dac2w2k - ok
15:17:37.0843 8008 dac960nt - ok
15:17:37.0890 8008 DcomLaunch (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\system32\rpcss.dll
15:17:37.0906 8008 DcomLaunch - ok
15:17:37.0921 8008 Dhcp (5e38d7684a49cacfb752b046357e0589) C:\WINDOWS\System32\dhcpcsvc.dll
15:17:37.0921 8008 Dhcp - ok
15:17:37.0937 8008 Disk (044452051f3e02e7963599fc8f4f3e25) C:\WINDOWS\system32\DRIVERS\disk.sys
15:17:37.0937 8008 Disk - ok
15:17:37.0937 8008 dmadmin - ok
15:17:37.0984 8008 dmboot (d992fe1274bde0f84ad826acae022a41) C:\WINDOWS\system32\drivers\dmboot.sys
15:17:37.0984 8008 dmboot - ok
15:17:38.0000 8008 dmio (7c824cf7bbde77d95c08005717a95f6f) C:\WINDOWS\system32\drivers\dmio.sys
15:17:38.0000 8008 dmio - ok
15:17:38.0031 8008 dmload (e9317282a63ca4d188c0df5e09c6ac5f) C:\WINDOWS\system32\drivers\dmload.sys
15:17:38.0031 8008 dmload - ok
15:17:38.0062 8008 dmserver (57edec2e5f59f0335e92f35184bc8631) C:\WINDOWS\System32\dmserver.dll
15:17:38.0062 8008 dmserver - ok
15:17:38.0078 8008 DMusic (8a208dfcf89792a484e76c40e5f50b45) C:\WINDOWS\system32\drivers\DMusic.sys
15:17:38.0078 8008 DMusic - ok
15:17:38.0109 8008 Dnscache (5f7e24fa9eab896051ffb87f840730d2) C:\WINDOWS\System32\dnsrslvr.dll
15:17:38.0109 8008 Dnscache - ok
15:17:38.0140 8008 Dot3svc (0f0f6e687e5e15579ef4da8dd6945814) C:\WINDOWS\System32\dot3svc.dll
15:17:38.0156 8008 Dot3svc - ok
15:17:38.0156 8008 dpti2o - ok
15:17:38.0187 8008 drmkaud (8f5fcff8e8848afac920905fbd9d33c8) C:\WINDOWS\system32\drivers\drmkaud.sys
15:17:38.0187 8008 drmkaud - ok
15:17:38.0218 8008 EapHost (2187855a7703adef0cef9ee4285182cc) C:\WINDOWS\System32\eapsvc.dll
15:17:38.0218 8008 EapHost - ok
15:17:38.0250 8008 EAPPkt (efacd8d57a42a93e244a0dbd357e8cb8) C:\WINDOWS\system32\DRIVERS\EAPPkt.sys
15:17:38.0250 8008 EAPPkt - ok
15:17:38.0250 8008 ERSvc (bc93b4a066477954555966d77fec9ecb) C:\WINDOWS\System32\ersvc.dll
15:17:38.0250 8008 ERSvc - ok
15:17:38.0265 8008 Eventlog (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
15:17:38.0265 8008 Eventlog - ok
15:17:38.0296 8008 EventSystem (d4991d98f2db73c60d042f1aef79efae) C:\WINDOWS\System32\es.dll
15:17:38.0296 8008 EventSystem - ok
15:17:38.0312 8008 Fastfat (38d332a6d56af32635675f132548343e) C:\WINDOWS\system32\drivers\Fastfat.sys
15:17:38.0312 8008 Fastfat - ok
15:17:38.0343 8008 FastUserSwitchingCompatibility (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
15:17:38.0359 8008 FastUserSwitchingCompatibility - ok
15:17:38.0359 8008 Fdc (92cdd60b6730b9f50f6a1a0c1f8cdc81) C:\WINDOWS\system32\DRIVERS\fdc.sys
15:17:38.0359 8008 Fdc - ok
15:17:38.0375 8008 Fips (d45926117eb9fa946a6af572fbe1caa3) C:\WINDOWS\system32\drivers\Fips.sys
15:17:38.0375 8008 Fips - ok
15:17:38.0484 8008 FLEXnet Licensing Service (1f63900e2eb00101b9aca2b7a870704e) C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
15:17:38.0484 8008 FLEXnet Licensing Service - ok
15:17:38.0531 8008 Flpydisk (9d27e7b80bfcdf1cdd9b555862d5e7f0) C:\WINDOWS\system32\DRIVERS\flpydisk.sys
15:17:38.0531 8008 Flpydisk - ok
15:17:38.0562 8008 FltMgr (b2cf4b0786f8212cb92ed2b50c6db6b0) C:\WINDOWS\system32\drivers\fltmgr.sys
15:17:38.0562 8008 FltMgr - ok
15:17:38.0656 8008 FontCache3.0.0.0 (8ba7c024070f2b7fdd98ed8a4ba41789) C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
15:17:38.0656 8008 FontCache3.0.0.0 - ok
15:17:38.0687 8008 FreshIO - ok
15:17:38.0734 8008 Fs_Rec (3e1e2bd4f39b0e2b7dc4f4d2bcc2779a) C:\WINDOWS\system32\drivers\Fs_Rec.sys
15:17:38.0734 8008 Fs_Rec - ok
15:17:38.0734 8008 Ftdisk (6ac26732762483366c3969c9e4d2259d) C:\WINDOWS\system32\DRIVERS\ftdisk.sys
15:17:38.0734 8008 Ftdisk - ok
15:17:38.0765 8008 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys
15:17:38.0765 8008 GEARAspiWDM - ok
15:17:38.0765 8008 Gpc (0a02c63c8b144bd8c86b103dee7c86a2) C:\WINDOWS\system32\DRIVERS\msgpc.sys
15:17:38.0781 8008 Gpc - ok
15:17:38.0781 8008 GTNDIS5 - ok
15:17:38.0859 8008 gupdate (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
15:17:38.0859 8008 gupdate - ok
15:17:38.0859 8008 gupdatem (8f0de4fef8201e306f9938b0905ac96a) C:\Program Files\Google\Update\GoogleUpdate.exe
15:17:38.0859 8008 gupdatem - ok
15:17:38.0921 8008 gusvc (408ddd80eede47175f6844817b90213e) C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
15:17:38.0921 8008 gusvc - ok
15:17:38.0968 8008 hamachi (833051c6c6c42117191935f734cfbd97) C:\WINDOWS\system32\DRIVERS\hamachi.sys
15:17:38.0968 8008 hamachi - ok
15:17:39.0031 8008 helpsvc (4fcca060dfe0c51a09dd5c3843888bcd) C:\WINDOWS\PCHealth\HelpCtr\Binaries\pchsvc.dll
15:17:39.0031 8008 helpsvc - ok
15:17:39.0062 8008 HidServ (deb04da35cc871b6d309b77e1443c796) C:\WINDOWS\System32\hidserv.dll
15:17:39.0062 8008 HidServ - ok
15:17:39.0078 8008 hidusb (ccf82c5ec8a7326c3066de870c06daf1) C:\WINDOWS\system32\DRIVERS\hidusb.sys
15:17:39.0078 8008 hidusb - ok
15:17:39.0109 8008 hkmsvc (8878bd685e490239777bfe51320b88e9) C:\WINDOWS\System32\kmsvc.dll
15:17:39.0109 8008 hkmsvc - ok
15:17:39.0109 8008 hpn - ok
15:17:39.0125 8008 hpt3xx - ok
15:17:39.0171 8008 HTTP (f80a415ef82cd06ffaf0d971528ead38) C:\WINDOWS\system32\Drivers\HTTP.sys
15:17:39.0171 8008 HTTP - ok
15:17:39.0203 8008 HTTPFilter (6100a808600f44d999cebdef8841c7a3) C:\WINDOWS\System32\w3ssl.dll
15:17:39.0203 8008 HTTPFilter - ok
15:17:39.0203 8008 i2omgmt - ok
15:17:39.0218 8008 i2omp - ok
15:17:39.0250 8008 i8042prt (4a0b06aa8943c1e332520f7440c0aa30) C:\WINDOWS\system32\DRIVERS\i8042prt.sys
15:17:39.0250 8008 i8042prt - ok
15:17:39.0359 8008 IDriverT (1cf03c69b49acb70c722df92755c0c8c) C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
15:17:39.0359 8008 IDriverT - ok
15:17:39.0484 8008 idsvc (c01ac32dc5c03076cfb852cb5da5229c) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
15:17:39.0484 8008 idsvc - ok
15:17:39.0531 8008 Imapi (083a052659f5310dd8b6a6cb05edcf8e) C:\WINDOWS\system32\DRIVERS\imapi.sys
15:17:39.0531 8008 Imapi - ok
15:17:39.0593 8008 ImapiService (30deaf54a9755bb8546168cfe8a6b5e1) C:\WINDOWS\system32\imapi.exe
15:17:39.0593 8008 ImapiService - ok
15:17:39.0609 8008 ini910u - ok
15:17:39.0609 8008 IntelIde - ok
15:17:39.0640 8008 ip6fw (3bb22519a194418d5fec05d800a19ad0) C:\WINDOWS\system32\drivers\ip6fw.sys
15:17:39.0640 8008 ip6fw - ok
15:17:39.0671 8008 IpFilterDriver (731f22ba402ee4b62748adaf6363c182) C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
15:17:39.0671 8008 IpFilterDriver - ok
15:17:39.0687 8008 IpInIp (b87ab476dcf76e72010632b5550955f5) C:\WINDOWS\system32\DRIVERS\ipinip.sys
15:17:39.0687 8008 IpInIp - ok
15:17:39.0718 8008 IpNat (cc748ea12c6effde940ee98098bf96bb) C:\WINDOWS\system32\DRIVERS\ipnat.sys
15:17:39.0718 8008 IpNat - ok
15:17:39.0828 8008 iPod Service (57edb35ea2feca88f8b17c0c095c9a56) C:\Program Files\iPod\bin\iPodService.exe
15:17:39.0843 8008 iPod Service - ok
15:17:39.0859 8008 IPSec (23c74d75e36e7158768dd63d92789a91) C:\WINDOWS\system32\DRIVERS\ipsec.sys
15:17:39.0859 8008 IPSec - ok
15:17:39.0875 8008 IRENUM (c93c9ff7b04d772627a3646d89f7bf89) C:\WINDOWS\system32\DRIVERS\irenum.sys
15:17:39.0875 8008 IRENUM - ok
15:17:39.0906 8008 isapnp (05a299ec56e52649b1cf2fc52d20f2d7) C:\WINDOWS\system32\DRIVERS\isapnp.sys
15:17:39.0906 8008 isapnp - ok
15:17:39.0937 8008 ivusb (de96bbf842059a67d876b692076d8875) C:\WINDOWS\system32\DRIVERS\ivusb.sys
15:17:39.0937 8008 ivusb - ok
15:17:40.0015 8008 JavaQuickStarterService (4f2143570d2250ca4c4a4c98553c82cd) C:\Program Files\Oracle\JavaFX 2.1 Runtime\bin\jqs.exe
15:17:40.0015 8008 JavaQuickStarterService - ok
15:17:40.0015 8008 Kbdclass (463c1ec80cd17420a542b7f36a36f128) C:\WINDOWS\system32\DRIVERS\kbdclass.sys
15:17:40.0015 8008 Kbdclass - ok
15:17:40.0031 8008 kbdhid (9ef487a186dea361aa06913a75b3fa99) C:\WINDOWS\system32\DRIVERS\kbdhid.sys
15:17:40.0031 8008 kbdhid - ok
15:17:40.0046 8008 kmixer (692bcf44383d056aed41b045a323d378) C:\WINDOWS\system32\drivers\kmixer.sys
15:17:40.0046 8008 kmixer - ok
15:17:40.0078 8008 KSecDD (b467646c54cc746128904e1654c750c1) C:\WINDOWS\system32\drivers\KSecDD.sys
15:17:40.0078 8008 KSecDD - ok
15:17:40.0125 8008 lanmanserver (3a7c3cbe5d96b8ae96ce81f0b22fb527) C:\WINDOWS\System32\srvsvc.dll
15:17:40.0125 8008 lanmanserver - ok
15:17:40.0156 8008 lanmanworkstation (a8888a5327621856c0cec4e385f69309) C:\WINDOWS\System32\wkssvc.dll
15:17:40.0156 8008 lanmanworkstation - ok
15:17:40.0156 8008 lbrtfdc - ok
15:17:40.0531 8008 LeapFrog Connect Device Service (3c879d04bb6466e2853c3155b635cc45) E:\Program Files\LeapFrog Connect\CommandService.exe
15:17:40.0578 8008 LeapFrog Connect Device Service - ok
15:17:40.0609 8008 lirsgt (f8a7212d0864ef5e9185fb95e6623f4d) C:\WINDOWS\system32\DRIVERS\lirsgt.sys
15:17:40.0609 8008 lirsgt - ok
15:17:40.0609 8008 LmHosts (a7db739ae99a796d91580147e919cc59) C:\WINDOWS\System32\lmhsvc.dll
15:17:40.0625 8008 LmHosts - ok
15:17:40.0640 8008 Messenger (986b1ff5814366d71e0ac5755c88f2d3) C:\WINDOWS\System32\msgsvc.dll
15:17:40.0640 8008 Messenger - ok
15:17:40.0671 8008 mf (a7da20ab18a1bdae28b0f349e57da0d1) C:\WINDOWS\system32\DRIVERS\mf.sys
15:17:40.0671 8008 mf - ok
15:17:40.0718 8008 mnmdd (4ae068242760a1fb6e1a44bf4e16afa6) C:\WINDOWS\system32\drivers\mnmdd.sys
15:17:40.0718 8008 mnmdd - ok
15:17:40.0765 8008 mnmsrvc (d18f1f0c101d06a1c1adf26eed16fcdd) C:\WINDOWS\System32\mnmsrvc.exe
15:17:40.0765 8008 mnmsrvc - ok
15:17:40.0781 8008 Modem (dfcbad3cec1c5f964962ae10e0bcc8e1) C:\WINDOWS\system32\drivers\Modem.sys
15:17:40.0781 8008 Modem - ok
15:17:40.0812 8008 motccgp (201bfc4ef8b33d02d133fbf6535e515b) C:\WINDOWS\system32\DRIVERS\motccgp.sys
15:17:40.0812 8008 motccgp - ok
15:17:40.0875 8008 motccgpfl (d0242a3832eb7c97801bb25889561e23) C:\WINDOWS\system32\DRIVERS\motccgpfl.sys
15:17:40.0875 8008 motccgpfl - ok
15:17:40.0921 8008 motmodem (fe80c18ba448ddd76b7bead9eb203d37) C:\WINDOWS\system32\DRIVERS\motmodem.sys
15:17:40.0921 8008 motmodem - ok
15:17:40.0953 8008 motport (fe80c18ba448ddd76b7bead9eb203d37) C:\WINDOWS\system32\DRIVERS\motport.sys
15:17:40.0953 8008 motport - ok
15:17:40.0984 8008 Mouclass (35c9e97194c8cfb8430125f8dbc34d04) C:\WINDOWS\system32\DRIVERS\mouclass.sys
15:17:40.0984 8008 Mouclass - ok
15:17:41.0031 8008 mouhid (b1c303e17fb9d46e87a98e4ba6769685) C:\WINDOWS\system32\DRIVERS\mouhid.sys
15:17:41.0031 8008 mouhid - ok
15:17:41.0046 8008 MountMgr (a80b9a0bad1b73637dbcbba7df72d3fd) C:\WINDOWS\system32\drivers\MountMgr.sys
15:17:41.0046 8008 MountMgr - ok
15:17:41.0156 8008 MozillaMaintenance (46297fa8e30a6007f14118fc2b942fbc) C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
15:17:41.0156 8008 MozillaMaintenance - ok
15:17:41.0156 8008 mraid35x - ok
15:17:41.0187 8008 MRxDAV (11d42bb6206f33fbb3ba0288d3ef81bd) C:\WINDOWS\system32\DRIVERS\mrxdav.sys
15:17:41.0187 8008 MRxDAV - ok
15:17:41.0218 8008 MRxSmb (7d304a5eb4344ebeeab53a2fe3ffb9f0) C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
15:17:41.0234 8008 MRxSmb - ok
15:17:41.0265 8008 MSDTC (a137f1470499a205abbb9aafb3b6f2b1) C:\WINDOWS\System32\msdtc.exe
15:17:41.0265 8008 MSDTC - ok
15:17:41.0296 8008 Msfs (c941ea2454ba8350021d774daf0f1027) C:\WINDOWS\system32\drivers\Msfs.sys
15:17:41.0296 8008 Msfs - ok
15:17:41.0296 8008 MSIServer - ok
15:17:41.0328 8008 MSKSSRV (d1575e71568f4d9e14ca56b7b0453bf1) C:\WINDOWS\system32\drivers\MSKSSRV.sys
15:17:41.0328 8008 MSKSSRV - ok
15:17:41.0343 8008 MSPCLOCK (325bb26842fc7ccc1fcce2c457317f3e) C:\WINDOWS\system32\drivers\MSPCLOCK.sys
15:17:41.0343 8008 MSPCLOCK - ok
15:17:41.0343 8008 MSPQM (bad59648ba099da4a17680b39730cb3d) C:\WINDOWS\system32\drivers\MSPQM.sys
15:17:41.0359 8008 MSPQM - ok
15:17:41.0375 8008 mssmbios (af5f4f3f14a8ea2c26de30f7a1e17136) C:\WINDOWS\system32\DRIVERS\mssmbios.sys
15:17:41.0375 8008 mssmbios - ok
15:17:41.0421 8008 Mup (de6a75f5c270e756c5508d94b6cf68f5) C:\WINDOWS\system32\drivers\Mup.sys
15:17:41.0421 8008 Mup - ok
15:17:41.0468 8008 napagent (0102140028fad045756796e1c685d695) C:\WINDOWS\System32\qagentrt.dll
15:17:41.0468 8008 napagent - ok
15:17:41.0484 8008 NDIS (1df7f42665c94b825322fae71721130d) C:\WINDOWS\system32\drivers\NDIS.sys
15:17:41.0484 8008 NDIS - ok
15:17:41.0515 8008 NdisTapi (0109c4f3850dfbab279542515386ae22) C:\WINDOWS\system32\DRIVERS\ndistapi.sys
15:17:41.0515 8008 NdisTapi - ok
15:17:41.0515 8008 Ndisuio (f927a4434c5028758a842943ef1a3849) C:\WINDOWS\system32\DRIVERS\ndisuio.sys
15:17:41.0515 8008 Ndisuio - ok
15:17:41.0531 8008 NdisWan (edc1531a49c80614b2cfda43ca8659ab) C:\WINDOWS\system32\DRIVERS\ndiswan.sys
15:17:41.0531 8008 NdisWan - ok
15:17:41.0562 8008 NDProxy (9282bd12dfb069d3889eb3fcc1000a9b) C:\WINDOWS\system32\drivers\NDProxy.sys
15:17:41.0562 8008 NDProxy - ok
15:17:41.0578 8008 NetBIOS (5d81cf9a2f1a3a756b66cf684911cdf0) C:\WINDOWS\system32\DRIVERS\netbios.sys
15:17:41.0578 8008 NetBIOS - ok
15:17:41.0593 8008 NetBT (74b2b2f5bea5e9a3dc021d685551bd3d) C:\WINDOWS\system32\DRIVERS\netbt.sys
15:17:41.0593 8008 NetBT - ok
15:17:41.0625 8008 NetDDE (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
15:17:41.0625 8008 NetDDE - ok
15:17:41.0625 8008 NetDDEdsdm (b857ba82860d7ff85ae29b095645563b) C:\WINDOWS\system32\netdde.exe
15:17:41.0625 8008 NetDDEdsdm - ok
15:17:41.0656 8008 Netlogon (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
15:17:41.0656 8008 Netlogon - ok
15:17:41.0687 8008 Netman (13e67b55b3abd7bf3fe7aae5a0f9a9de) C:\WINDOWS\System32\netman.dll
15:17:41.0687 8008 Netman - ok
15:17:41.0796 8008 NetTcpPortSharing (d34612c5d02d026535b3095d620626ae) C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
15:17:41.0796 8008 NetTcpPortSharing - ok
15:17:41.0828 8008 NIC1394 (e9e47cfb2d461fa0fc75b7a74c6383ea) C:\WINDOWS\system32\DRIVERS\nic1394.sys
15:17:41.0828 8008 NIC1394 - ok
15:17:41.0859 8008 Nla (943337d786a56729263071623bbb9de5) C:\WINDOWS\System32\mswsock.dll
15:17:41.0875 8008 Nla - ok
15:17:41.0890 8008 Npfs (3182d64ae053d6fb034f44b6def8034a) C:\WINDOWS\system32\drivers\Npfs.sys
15:17:41.0890 8008 Npfs - ok
15:17:41.0953 8008 npkcmsvc (b28873f1a04dffd29d03d6eb201f9e49) C:\Nexon\Mabinogi\npkcmsvc.exe
15:17:41.0953 8008 npkcmsvc - ok
15:17:41.0968 8008 npkcrypt - ok
15:17:41.0968 8008 npkcusb - ok
15:17:42.0031 8008 Ntfs (78a08dd6a8d65e697c18e1db01c5cdca) C:\WINDOWS\system32\drivers\Ntfs.sys
15:17:42.0031 8008 Ntfs - ok
15:17:42.0046 8008 NtLmSsp (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\System32\lsass.exe
15:17:42.0046 8008 NtLmSsp - ok
15:17:42.0078 8008 NtmsSvc (156f64a3345bd23c600655fb4d10bc08) C:\WINDOWS\system32\ntmssvc.dll
15:17:42.0078 8008 NtmsSvc - ok
15:17:42.0125 8008 Null (73c1e1f395918bc2c6dd67af7591a3ad) C:\WINDOWS\system32\drivers\Null.sys
15:17:42.0125 8008 Null - ok
15:17:42.0687 8008 nv (7b5a17bd54bb9142843dbe99a1caaed8) C:\WINDOWS\system32\DRIVERS\nv4_mini.sys
15:17:42.0796 8008 nv - ok
15:17:42.0937 8008 NVSvc (5150b108ea88831e1c599603d8b89621) C:\WINDOWS\system32\nvsvc32.exe
15:17:42.0937 8008 NVSvc - ok
15:17:43.0046 8008 nvUpdatusService (83e8ab7bb3c8956c53fec071c94f0bbb) C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
15:17:43.0062 8008 nvUpdatusService - ok
15:17:43.0140 8008 NwlnkFlt (b305f3fad35083837ef46a0bbce2fc57) C:\WINDOWS\system32\DRIVERS\nwlnkflt.sys
15:17:43.0140 8008 NwlnkFlt - ok
15:17:43.0156 8008 NwlnkFwd (c99b3415198d1aab7227f2c88fd664b9) C:\WINDOWS\system32\DRIVERS\nwlnkfwd.sys
15:17:43.0156 8008 NwlnkFwd - ok
15:17:43.0187 8008 ohci1394 (ca33832df41afb202ee7aeb05145922f) C:\WINDOWS\system32\DRIVERS\ohci1394.sys
15:17:43.0187 8008 ohci1394 - ok
15:17:43.0218 8008 PalmUSBD (240c0d4049a833b16b63b636acf01672) C:\WINDOWS\system32\drivers\PalmUSBD.sys
15:17:43.0218 8008 PalmUSBD - ok
15:17:43.0250 8008 Parport (5575faf8f97ce5e713d108c2a58d7c7c) C:\WINDOWS\system32\DRIVERS\parport.sys
15:17:43.0250 8008 Parport - ok
15:17:43.0265 8008 PartMgr (beb3ba25197665d82ec7065b724171c6) C:\WINDOWS\system32\drivers\PartMgr.sys
15:17:43.0265 8008 PartMgr - ok
15:17:43.0312 8008 ParVdm (70e98b3fd8e963a6a46a2e6247e0bea1) C:\WINDOWS\system32\drivers\ParVdm.sys
15:17:43.0312 8008 ParVdm - ok
15:17:43.0328 8008 PCI (a219903ccf74233761d92bef471a07b1) C:\WINDOWS\system32\DRIVERS\pci.sys
15:17:43.0328 8008 PCI - ok
15:17:43.0328 8008 PCIDump - ok
15:17:43.0375 8008 PCIIde (ccf5f451bb1a5a2a522a76e670000ff0) C:\WINDOWS\system32\DRIVERS\pciide.sys
15:17:43.0375 8008 PCIIde - ok
15:17:43.0406 8008 Pcmcia (9e89ef60e9ee05e3f2eef2da7397f1c1) C:\WINDOWS\system32\drivers\Pcmcia.sys
15:17:43.0406 8008 Pcmcia - ok
15:17:43.0406 8008 PDCOMP - ok
15:17:43.0421 8008 PDFRAME - ok
15:17:43.0421 8008 PDRELI - ok
15:17:43.0437 8008 PDRFRAME - ok
15:17:43.0437 8008 perc2 - ok
15:17:43.0437 8008 perc2hib - ok
15:17:43.0500 8008 PlugPlay (65df52f5b8b6e9bbd183505225c37315) C:\WINDOWS\system32\services.exe
15:17:43.0500 8008 PlugPlay - ok
15:17:43.0515 8008 PolicyAgent (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
15:17:43.0515 8008 PolicyAgent - ok
15:17:43.0531 8008 PptpMiniport (efeec01b1d3cf84f16ddd24d9d9d8f99) C:\WINDOWS\system32\DRIVERS\raspptp.sys
15:17:43.0531 8008 PptpMiniport - ok
15:17:43.0546 8008 Processor (a32bebaf723557681bfc6bd93e98bd26) C:\WINDOWS\system32\DRIVERS\processr.sys
15:17:43.0546 8008 Processor - ok
15:17:43.0546 8008 ProtectedStorage (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
15:17:43.0546 8008 ProtectedStorage - ok
15:17:43.0562 8008 PSched (09298ec810b07e5d582cb3a3f9255424) C:\WINDOWS\system32\DRIVERS\psched.sys
15:17:43.0562 8008 PSched - ok
15:17:43.0593 8008 Ptilink (80d317bd1c3dbc5d4fe7b1678c60cadd) C:\WINDOWS\system32\DRIVERS\ptilink.sys
15:17:43.0593 8008 Ptilink - ok
15:17:43.0625 8008 PxHelp20 (e42e3433dbb4cffe8fdd91eab29aea8e) C:\WINDOWS\system32\Drivers\PxHelp20.sys
15:17:43.0625 8008 PxHelp20 - ok
15:17:43.0640 8008 ql1080 - ok
15:17:43.0640 8008 Ql10wnt - ok
15:17:43.0640 8008 ql12160 - ok
15:17:43.0656 8008 ql1240 - ok
15:17:43.0656 8008 ql1280 - ok
15:17:43.0703 8008 RasAcd (fe0d99d6f31e4fad8159f690d68ded9c) C:\WINDOWS\system32\DRIVERS\rasacd.sys
15:17:43.0703 8008 RasAcd - ok
15:17:43.0750 8008 RasAuto (ad188be7bdf94e8df4ca0a55c00a5073) C:\WINDOWS\System32\rasauto.dll
15:17:43.0750 8008 RasAuto - ok
15:17:43.0750 8008 Rasl2tp (11b4a627bc9614b885c4969bfa5ff8a6) C:\WINDOWS\system32\DRIVERS\rasl2tp.sys
15:17:43.0750 8008 Rasl2tp - ok
15:17:43.0812 8008 RasMan (76a9a3cbeadd68cc57cda5e1d7448235) C:\WINDOWS\System32\rasmans.dll
15:17:43.0812 8008 RasMan - ok
15:17:43.0812 8008 RasPppoe (5bc962f2654137c9909c3d4603587dee) C:\WINDOWS\system32\DRIVERS\raspppoe.sys
15:17:43.0812 8008 RasPppoe - ok
15:17:43.0828 8008 Raspti (fdbb1d60066fcfbb7452fd8f9829b242) C:\WINDOWS\system32\DRIVERS\raspti.sys
15:17:43.0828 8008 Raspti - ok
15:17:43.0843 8008 Rdbss (7ad224ad1a1437fe28d89cf22b17780a) C:\WINDOWS\system32\DRIVERS\rdbss.sys
15:17:43.0859 8008 Rdbss - ok
15:17:43.0859 8008 RDPCDD (4912d5b403614ce99c28420f75353332) C:\WINDOWS\system32\DRIVERS\RDPCDD.sys
15:17:43.0859 8008 RDPCDD - ok
15:17:43.0875 8008 rdpdr (15cabd0f7c00c47c70124907916af3f1) C:\WINDOWS\system32\DRIVERS\rdpdr.sys
15:17:43.0875 8008 rdpdr - ok
15:17:43.0921 8008 RDPWD (6589db6e5969f8eee594cf71171c5028) C:\WINDOWS\system32\drivers\RDPWD.sys
15:17:43.0921 8008 RDPWD - ok
15:17:43.0953 8008 RDSessMgr (3c37bf86641bda977c3bf8a840f3b7fa) C:\WINDOWS\system32\sessmgr.exe
15:17:43.0953 8008 RDSessMgr - ok
15:17:43.0984 8008 redbook (f828dd7e1419b6653894a8f97a0094c5) C:\WINDOWS\system32\DRIVERS\redbook.sys
15:17:43.0984 8008 redbook - ok
15:17:44.0015 8008 RemoteAccess (7e699ff5f59b5d9de5390e3c34c67cf5) C:\WINDOWS\System32\mprdim.dll
15:17:44.0015 8008 RemoteAccess - ok
15:17:44.0046 8008 RemoteRegistry (5b19b557b0c188210a56a6b699d90b8f) C:\WINDOWS\system32\regsvc.dll
15:17:44.0046 8008 RemoteRegistry - ok
15:17:44.0140 8008 RichVideo (7728b6aedc83bc0defd0a53371d4613b) C:\Program Files\Cyberlink\Shared files\RichVideo.exe
15:17:44.0156 8008 RichVideo - ok
15:17:44.0203 8008 RpcLocator (aaed593f84afa419bbae8572af87cf6a) C:\WINDOWS\System32\locator.exe
15:17:44.0203 8008 RpcLocator - ok
15:17:44.0250 8008 RpcSs (6b27a5c03dfb94b4245739065431322c) C:\WINDOWS\System32\rpcss.dll
15:17:44.0250 8008 RpcSs - ok
15:17:44.0312 8008 RSVP (471b3f9741d762abe75e9deea4787e47) C:\WINDOWS\System32\rsvp.exe
15:17:44.0312 8008 RSVP - ok
15:17:44.0359 8008 RTL8023xp (7f0413bdd7d53eb4c7a371e7f6f84df1) C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
15:17:44.0359 8008 RTL8023xp - ok
15:17:44.0406 8008 RTLWUSB (691db86b09e13ca5d3e8881141738cc5) C:\WINDOWS\system32\DRIVERS\wg111v2.sys
15:17:44.0406 8008 RTLWUSB - ok
15:17:44.0421 8008 SamSs (bf2466b3e18e970d8a976fb95fc1ca85) C:\WINDOWS\system32\lsass.exe
15:17:44.0421 8008 SamSs - ok
15:17:44.0453 8008 sbp2port (b244960e5a1db8e9d5d17086de37c1e4) C:\WINDOWS\system32\DRIVERS\sbp2port.sys
15:17:44.0453 8008 sbp2port - ok
15:17:44.0484 8008 SCardSvr (86d007e7a654b9a71d1d7d856b104353) C:\WINDOWS\System32\SCardSvr.exe
15:17:44.0484 8008 SCardSvr - ok
15:17:44.0515 8008 Schedule (0a9a7365a1ca4319aa7c1d6cd8e4eafa) C:\WINDOWS\system32\schedsvc.dll
15:17:44.0515 8008 Schedule - ok
15:17:44.0531 8008 Secdrv (90a3935d05b494a5a39d37e71f09a677) C:\WINDOWS\system32\DRIVERS\secdrv.sys
15:17:44.0531 8008 Secdrv - ok
15:17:44.0546 8008 seclogon (cbe612e2bb6a10e3563336191eda1250) C:\WINDOWS\System32\seclogon.dll
15:17:44.0546 8008 seclogon - ok
15:17:44.0578 8008 SENS (7fdd5d0684eca8c1f68b4d99d124dcd0) C:\WINDOWS\system32\sens.dll
15:17:44.0578 8008 SENS - ok
15:17:44.0593 8008 serenum (0f29512ccd6bead730039fb4bd2c85ce) C:\WINDOWS\system32\DRIVERS\serenum.sys
15:17:44.0593 8008 serenum - ok
15:17:44.0593 8008 Serial (cca207a8896d4c6a0c9ce29a4ae411a7) C:\WINDOWS\system32\DRIVERS\serial.sys
15:17:44.0593 8008 Serial - ok
15:17:44.0656 8008 Sfloppy (8e6b8c671615d126fdc553d1e2de5562) C:\WINDOWS\system32\drivers\Sfloppy.sys
15:17:44.0656 8008 Sfloppy - ok
15:17:44.0687 8008 SharedAccess (83f41d0d89645d7235c051ab1d9523ac) C:\WINDOWS\System32\ipnathlp.dll
15:17:44.0687 8008 SharedAccess - ok
15:17:44.0750 8008 ShellHWDetection (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
15:17:44.0750 8008 ShellHWDetection - ok
15:17:44.0765 8008 Simbad - ok
15:17:44.0796 8008 SjyPkt (3d7ef286e806f9bd9339aa52e28dcd67) C:\WINDOWS\System32\Drivers\SjyPkt.sys
15:17:44.0796 8008 SjyPkt - ok
15:17:45.0093 8008 Skype C2C Service (0f97e7a47a52f4a36969f0fc319654c2) C:\Documents and Settings\All Users.WINDOWS\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe
15:17:45.0109 8008 Skype C2C Service - ok
15:17:45.0234 8008 SkypeUpdate (6128e98eaaed364ed1a32708d2fd22cb) C:\Program Files\Skype\Updater\Updater.exe
15:17:45.0234 8008 SkypeUpdate - ok
15:17:45.0343 8008 Sparrow - ok
15:17:45.0359 8008 splitter (ab8b92451ecb048a4d1de7c3ffcb4a9f) C:\WINDOWS\system32\drivers\splitter.sys
15:17:45.0359 8008 splitter - ok
15:17:45.0390 8008 Spooler (60784f891563fb1b767f70117fc2428f) C:\WINDOWS\system32\spoolsv.exe
15:17:45.0390 8008 Spooler - ok
15:17:45.0437 8008 sptd (0022cfff1a41e5ce3a764050a7ddf22a) C:\WINDOWS\System32\Drivers\sptd.sys
15:17:45.0453 8008 sptd - ok
15:17:45.0453 8008 sr (76bb022c2fb6902fd5bdd4f78fc13a5d) C:\WINDOWS\system32\DRIVERS\sr.sys
15:17:45.0453 8008 sr - ok
15:17:45.0484 8008 srservice (3805df0ac4296a34ba4bf93b346cc378) C:\WINDOWS\system32\srsvc.dll
15:17:45.0484 8008 srservice - ok
15:17:45.0531 8008 Srv (47ddfc2f003f7f9f0592c6874962a2e7) C:\WINDOWS\system32\DRIVERS\srv.sys
15:17:45.0531 8008 Srv - ok
15:17:45.0562 8008 SSDPSRV (0a5679b3714edab99e357057ee88fca6) C:\WINDOWS\System32\ssdpsrv.dll
15:17:45.0562 8008 SSDPSRV - ok
15:17:45.0609 8008 Steam Client Service - ok
15:17:45.0640 8008 stisvc (8bad69cbac032d4bbacfce0306174c30) C:\WINDOWS\system32\wiaservc.dll
15:17:45.0640 8008 stisvc - ok
15:17:45.0656 8008 swenum (3941d127aef12e93addf6fe6ee027e0f) C:\WINDOWS\system32\DRIVERS\swenum.sys
15:17:45.0656 8008 swenum - ok
15:17:45.0718 8008 SwitchBoard (f577910a133a592234ebaad3f3afa258) C:\Program Files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
15:17:45.0734 8008 SwitchBoard - ok
15:17:45.0750 8008 swmidi (8ce882bcc6cf8a62f2b2323d95cb3d01) C:\WINDOWS\system32\drivers\swmidi.sys
15:17:45.0750 8008 swmidi - ok
15:17:45.0750 8008 SwPrv - ok
15:17:45.0765 8008 symc810 - ok
15:17:45.0765 8008 symc8xx - ok
15:17:45.0765 8008 sym_hi - ok
15:17:45.0781 8008 sym_u3 - ok
15:17:45.0843 8008 sysaudio (8b83f3ed0f1688b4958f77cd6d2bf290) C:\WINDOWS\system32\drivers\sysaudio.sys
15:17:45.0843 8008 sysaudio - ok
15:17:45.0875 8008 SysmonLog (c7abbc59b43274b1109df6b24d617051) C:\WINDOWS\system32\smlogsvc.exe
15:17:45.0875 8008 SysmonLog - ok
15:17:45.0906 8008 TapiSrv (3cb78c17bb664637787c9a1c98f79c38) C:\WINDOWS\System32\tapisrv.dll
15:17:45.0906 8008 TapiSrv - ok
15:17:45.0953 8008 Tcpip (9aefa14bd6b182d61e3119fa5f436d3d) C:\WINDOWS\system32\DRIVERS\tcpip.sys
15:17:45.0953 8008 Tcpip - ok
15:17:46.0000 8008 TDPIPE (6471a66807f5e104e4885f5b67349397) C:\WINDOWS\system32\drivers\TDPIPE.sys
15:17:46.0000 8008 TDPIPE - ok
15:17:46.0000 8008 TDTCP (c56b6d0402371cf3700eb322ef3aaf61) C:\WINDOWS\system32\drivers\TDTCP.sys
15:17:46.0000 8008 TDTCP - ok
15:17:46.0031 8008 TermDD (88155247177638048422893737429d9e) C:\WINDOWS\system32\DRIVERS\termdd.sys
15:17:46.0031 8008 TermDD - ok
15:17:46.0062 8008 TermService (ff3477c03be7201c294c35f684b3479f) C:\WINDOWS\System32\termsrv.dll
15:17:46.0062 8008 TermService - ok
15:17:46.0093 8008 Themes (99bc0b50f511924348be19c7c7313bbf) C:\WINDOWS\System32\shsvcs.dll
15:17:46.0093 8008 Themes - ok
15:17:46.0125 8008 TlntSvr (db7205804759ff62c34e3efd8a4cc76a) C:\WINDOWS\System32\tlntsvr.exe
15:17:46.0140 8008 TlntSvr - ok
15:17:46.0140 8008 TosIde - ok
15:17:46.0140 8008 tpcdrdrv - ok
15:17:46.0171 8008 TrkWks (55bca12f7f523d35ca3cb833c725f54e) C:\WINDOWS\system32\trkwks.dll
15:17:46.0171 8008 TrkWks - ok
15:17:46.0187 8008 Udfs (5787b80c2e3c5e2f56c2a233d91fa2c9) C:\WINDOWS\system32\drivers\Udfs.sys
15:17:46.0187 8008 Udfs - ok
15:17:46.0187 8008 ultra - ok
15:17:46.0218 8008 Update (402ddc88356b1bac0ee3dd1580c76a31) C:\WINDOWS\system32\DRIVERS\update.sys
15:17:46.0218 8008 Update - ok
15:17:46.0250 8008 upnphost (1ebafeb9a3fbdc41b8d9c7f0f687ad91) C:\WINDOWS\System32\upnphost.dll
15:17:46.0250 8008 upnphost - ok
15:17:46.0281 8008 UPS (05365fb38fca1e98f7a566aaaf5d1815) C:\WINDOWS\System32\ups.exe
15:17:46.0281 8008 UPS - ok
15:17:46.0312 8008 USBAAPL (eafe1e00739afe6c51487a050e772e17) C:\WINDOWS\system32\Drivers\usbaapl.sys
15:17:46.0328 8008 USBAAPL - ok
15:17:46.0328 8008 usbaudio (e919708db44ed8543a7c017953148330) C:\WINDOWS\system32\drivers\usbaudio.sys
15:17:46.0328 8008 usbaudio - ok
15:17:46.0343 8008 usbccgp (173f317ce0db8e21322e71b7e60a27e8) C:\WINDOWS\system32\DRIVERS\usbccgp.sys
15:17:46.0343 8008 usbccgp - ok
15:17:46.0359 8008 usbehci (65dcf09d0e37d4c6b11b5b0b76d470a7) C:\WINDOWS\system32\DRIVERS\usbehci.sys
15:17:46.0359 8008 usbehci - ok
15:17:46.0359 8008 usbhub (1ab3cdde553b6e064d2e754efe20285c) C:\WINDOWS\system32\DRIVERS\usbhub.sys
15:17:46.0359 8008 usbhub - ok
15:17:46.0375 8008 usbohci (0daecce65366ea32b162f85f07c6753b) C:\WINDOWS\system32\DRIVERS\usbohci.sys
15:17:46.0375 8008 usbohci - ok
15:17:46.0390 8008 usbscan (a0b8cf9deb1184fbdd20784a58fa75d4) C:\WINDOWS\system32\DRIVERS\usbscan.sys
15:17:46.0390 8008 usbscan - ok
15:17:46.0406 8008 USBSTOR (a32426d9b14a089eaa1d922e0c5801a9) C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS
15:17:46.0406 8008 USBSTOR - ok
15:17:46.0421 8008 VgaSave (0d3a8fafceacd8b7625cd549757a7df1) C:\WINDOWS\System32\drivers\vga.sys
15:17:46.0421 8008 VgaSave - ok
15:17:46.0421 8008 ViaIde - ok
15:17:46.0437 8008 VolSnap (4c8fcb5cc53aab716d810740fe59d025) C:\WINDOWS\system32\drivers\VolSnap.sys
15:17:46.0437 8008 VolSnap - ok
15:17:46.0468 8008 VSS (7a9db3a67c333bf0bd42e42b8596854b) C:\WINDOWS\System32\vssvc.exe
15:17:46.0484 8008 VSS - ok
15:17:46.0500 8008 W32Time (54af4b1d5459500ef0937f6d33b1914f) C:\WINDOWS\system32\w32time.dll
15:17:46.0500 8008 W32Time - ok
15:17:46.0515 8008 Wanarp (e20b95baedb550f32dd489265c1da1f6) C:\WINDOWS\system32\DRIVERS\wanarp.sys
15:17:46.0515 8008 Wanarp - ok
15:17:46.0562 8008 WDC_SAM (d6efaf429fd30c5df613d220e344cce7) C:\WINDOWS\system32\DRIVERS\wdcsam.sys
15:17:46.0562 8008 WDC_SAM - ok
15:17:46.0656 8008 WDDMService (bf847a3972cc6b5ce26e0ea742dd52d9) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
15:17:46.0656 8008 WDDMService - ok
15:17:46.0718 8008 Wdf01000 (fd47474bd21794508af449d9d91af6e6) C:\WINDOWS\system32\DRIVERS\Wdf01000.sys
15:17:46.0718 8008 Wdf01000 - ok
15:17:46.0812 8008 WDFME (b5966f1dff6e20576f3c8c2d93d129fd) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDFME\WDFME.exe
15:17:46.0828 8008 WDFME - ok
15:17:46.0937 8008 WDICA - ok
15:17:46.0953 8008 wdmaud (6768acf64b18196494413695f0c3a00f) C:\WINDOWS\system32\drivers\wdmaud.sys
15:17:46.0953 8008 wdmaud - ok
15:17:47.0000 8008 WDSC (92f0088ca18bb08bb596ef2608256f8a) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSC.exe
15:17:47.0000 8008 WDSC - ok
15:17:47.0015 8008 WebClient (77a354e28153ad2d5e120a5a8687bc06) C:\WINDOWS\System32\webclnt.dll
15:17:47.0015 8008 WebClient - ok
15:17:47.0031 8008 WINFLASH - ok
15:17:47.0093 8008 winmgmt (2d0e4ed081963804ccc196a0929275b5) C:\WINDOWS\system32\wbem\WMIsvc.dll
15:17:47.0093 8008 winmgmt - ok
15:17:47.0140 8008 WmdmPmSN (c51b4a5c05a5475708e3c81c7765b71d) C:\WINDOWS\system32\MsPMSNSv.dll
15:17:47.0140 8008 WmdmPmSN - ok
15:17:47.0203 8008 Wmi (e76f8807070ed04e7408a86d6d3a6137) C:\WINDOWS\System32\advapi32.dll
15:17:47.0203 8008 Wmi - ok
15:17:47.0234 8008 WmiApSrv (e0673f1106e62a68d2257e376079f821) C:\WINDOWS\System32\wbem\wmiapsrv.exe
15:17:47.0234 8008 WmiApSrv - ok
15:17:47.0343 8008 WMPNetworkSvc (f74e3d9a7fa9556c3bbb14d4e5e63d3b) C:\Program Files\Windows Media Player\WMPNetwk.exe
15:17:47.0359 8008 WMPNetworkSvc - ok
15:17:47.0406 8008 WpdUsb (cf4def1bf66f06964dc0d91844239104) C:\WINDOWS\system32\DRIVERS\wpdusb.sys
15:17:47.0406 8008 WpdUsb - ok
15:17:47.0531 8008 WPFFontCache_v0400 (dcf3e3edf5109ee8bc02fe6e1f045795) C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe
15:17:47.0546 8008 WPFFontCache_v0400 - ok
15:17:47.0578 8008 WS2IFSL (6abe6e225adb5a751622a9cc3bc19ce8) C:\WINDOWS\System32\drivers\ws2ifsl.sys
15:17:47.0578 8008 WS2IFSL - ok
15:17:47.0609 8008 WsAudio_DeviceS(1) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(1).sys
15:17:47.0609 8008 WsAudio_DeviceS(1) - ok
15:17:47.0625 8008 WsAudio_DeviceS(2) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(2).sys
15:17:47.0625 8008 WsAudio_DeviceS(2) - ok
15:17:47.0625 8008 WsAudio_DeviceS(3) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(3).sys
15:17:47.0625 8008 WsAudio_DeviceS(3) - ok
15:17:47.0640 8008 WsAudio_DeviceS(4) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(4).sys
15:17:47.0656 8008 WsAudio_DeviceS(4) - ok
15:17:47.0687 8008 WsAudio_DeviceS(5) (4160cbe59d9b5be22e4c3897e8db9d56) C:\WINDOWS\system32\drivers\WsAudio_DeviceS(5).sys
15:17:47.0687 8008 WsAudio_DeviceS(5) - ok
15:17:47.0734 8008 wscsvc (7c278e6408d1dce642230c0585a854d5) C:\WINDOWS\system32\wscsvc.dll
15:17:47.0734 8008 wscsvc - ok
15:17:47.0734 8008 wuauserv (35321fb577cdc98ce3eb3a3eb9e4610a) C:\WINDOWS\system32\wuauserv.dll
15:17:47.0750 8008 wuauserv - ok
15:17:47.0765 8008 WudfPf (f15feafffbb3644ccc80c5da584e6311) C:\WINDOWS\system32\DRIVERS\WudfPf.sys
15:17:47.0765 8008 WudfPf - ok
15:17:47.0796 8008 WudfRd (28b524262bce6de1f7ef9f510ba3985b) C:\WINDOWS\system32\DRIVERS\wudfrd.sys
15:17:47.0796 8008 WudfRd - ok
15:17:47.0812 8008 WudfSvc (05231c04253c5bc30b26cbaae680ed89) C:\WINDOWS\System32\WUDFSvc.dll
15:17:47.0812 8008 WudfSvc - ok
15:17:47.0875 8008 WZCSVC (81dc3f549f44b1c1fff022dec9ecf30b) C:\WINDOWS\System32\wzcsvc.dll
15:17:47.0875 8008 WZCSVC - ok
15:17:47.0921 8008 xmlprov (295d21f14c335b53cb8154e5b1f892b9) C:\WINDOWS\System32\xmlprov.dll
15:17:47.0921 8008 xmlprov - ok
15:17:47.0953 8008 MBR (0x1B8) (8f558eb6672622401da993e1e865c861) \Device\Harddisk0\DR0
15:17:48.0296 8008 \Device\Harddisk0\DR0 - ok
15:17:48.0328 8008 MBR (0x1B8) (35c6b2fcde68facbefe0a4a7200bae58) \Device\Harddisk1\DR1
15:17:51.0656 8008 \Device\Harddisk1\DR1 - ok
15:17:51.0656 8008 Boot (0x1200) (008fdcbe0d81be7095aa970d8aed2d0b) \Device\Harddisk0\DR0\Partition0
15:17:51.0656 8008 \Device\Harddisk0\DR0\Partition0 - ok
15:17:51.0656 8008 Boot (0x1200) (bf1b769e2afc4dc10a89f1ecd4f5379d) \Device\Harddisk1\DR1\Partition0
15:17:51.0656 8008 \Device\Harddisk1\DR1\Partition0 - ok
15:17:51.0671 8008 ============================================================
15:17:51.0671 8008 Scan finished
15:17:51.0671 8008 ============================================================
15:17:51.0671 7896 Detected object count: 0
15:17:51.0671 7896 Actual detected object count: 0
15:17:57.0484 6664 Deinitialize success
ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
# version=7
# iexplore.exe=8.00.6001.18702 (longhorn_ie8_rtm(wmbla).090308-0339)
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=5d73789d4f46c748a4fbebaf3c228684
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-07-31 01:35:12
# local_time=2012-07-30 06:35:12 (-0800, Pacific Daylight Time)
# country="United States"
# lang=1033
# osver=5.1.2600 NT Service Pack 3
# compatibility_mode=1024 16777175 100 0 75448845 75448845 0 0
# compatibility_mode=8192 67108863 100 0 0 0 0 0
# scanned=304728
# found=21
# cleaned=20
# scan_time=11186
C:\Documents and Settings\Jim\My Documents\Downloads\cnet2_rpc412_zip.exe a variant of Win32/InstallCore.D application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\Documents and Settings\Jim\My Documents\Downloads\HotAndMean-Lizz_Tayler,_Missy_Martinez_&_Dani_Daniels_(What_It's_Like_To_Be_A_Lesbian).exe Win32/Adware.1ClickDownload.C application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\Program Files\1ClickDownload\uninstall.exe Win32/Adware.1ClickDownload application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarApp.dll a variant of Win32/Toolbar.Babylon application (cleaned by deleting (after the next restart) - quarantined) 00000000000000000000000000000000 C
C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarEng.dll Win32/Toolbar.Babylon application (cleaned by deleting (after the next restart) - quarantined) 00000000000000000000000000000000 C
C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll Win32/Toolbar.Babylon application (cleaned by deleting (after the next restart) - quarantined) 00000000000000000000000000000000 C
C:\Program Files\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll Win32/Toolbar.Babylon application (cleaned by deleting (after the next restart) - quarantined) 00000000000000000000000000000000 C
C:\Program Files\Netscape\Netscape Browser\chrome\m3ntstbr.jar Win32/Toolbar.MyWebSearch application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{A3EE3C0C-BD20-4C89-8C87-AC00B2960B06}\RP2139\A0579819.exe probably a variant of Win32/Toolbar.Babylon application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{A3EE3C0C-BD20-4C89-8C87-AC00B2960B06}\RP2155\A0586104.exe Win32/Adware.1ClickDownload application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{A3EE3C0C-BD20-4C89-8C87-AC00B2960B06}\RP2155\A0586105.dll a variant of Win32/Toolbar.Babylon application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{A3EE3C0C-BD20-4C89-8C87-AC00B2960B06}\RP2155\A0586106.dll Win32/Toolbar.Babylon application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\System Volume Information\_restore{A3EE3C0C-BD20-4C89-8C87-AC00B2960B06}\RP2155\A0586107.dll Win32/Toolbar.Babylon application (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\TDSSKiller_Quarantine\26.07.2012_14.48.26\mbr0000\tdlfs0000\tsk0001.dta Win64/Olmarik.AK trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\TDSSKiller_Quarantine\26.07.2012_14.48.26\mbr0000\tdlfs0000\tsk0002.dta Win32/Olmarik.AYH trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\TDSSKiller_Quarantine\26.07.2012_14.48.26\mbr0000\tdlfs0000\tsk0003.dta Win64/Olmarik.AL trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\TDSSKiller_Quarantine\26.07.2012_14.48.26\mbr0000\tdlfs0000\tsk0004.dta a variant of Win32/Rootkit.Kryptik.NH trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\TDSSKiller_Quarantine\26.07.2012_14.48.26\mbr0000\tdlfs0000\tsk0005.dta Win64/Olmarik.AK trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\TDSSKiller_Quarantine\26.07.2012_14.48.26\mbr0000\tdlfs0000\tsk0009.dta Win32/Olmarik.AFK trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
C:\TDSSKiller_Quarantine\26.07.2012_14.48.26\mbr0000\tdlfs0000\tsk0010.dta Win64/Olmarik.AK trojan (cleaned by deleting - quarantined) 00000000000000000000000000000000 C
${Memory} Win32/Toolbar.Babylon application 00000000000000000000000000000000 I
Results of screen317's Security Check version 0.99.43
Windows XP Service Pack 3 x86
Internet Explorer 8
``````````````Antivirus/Firewall Check:``````````````
Windows Firewall Enabled!
AVG Anti-Virus Free
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
Malwarebytes Anti-Malware version 1.62.0.1300
JavaFX 2.1.1
Java™ 6 Update 26
Java™ 7 Update 5
Java™ SE Runtime Environment 6 Update 1
Java™ 6 Update 2
Java™ 6 Update 3
Java™ 6 Update 5
Java™ SE Development Kit 7
Adobe Flash Player 11.3.300.268
Adobe Reader X (10.1.3)
Mozilla Firefox (14.0.1)
````````Process Check: objlist.exe by Laurent````````
AVG avgwdsvc.exe
AVG avgrsx.exe
AVG avgnsx.exe
AVG avgemc.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:: 18%
Defragment your hard drive soon!
````````````````````End of Log``````````````````````