First-time poster here. Thanks in advance to whomever takes the time to look into this for me. My issue began with a BSOD a couple days ago while browsing Reddit.com (not exactly a malicious site). After that BSOD I couldn't seem to start windows. It would fail during startup and try to repair itself but the repair tool wasn't able to fix whatever the issue was. On the advice of tech support for ASUS, I decided to do a factory restore of the hard drive. This seems to work, but when I go to update Windows (there are 86 updates initially, so it's quite a large update), the failed startup issue pops up again once I try to restart following the install of the updates. Now, however, the repair tool runs for awhile (10 minutes?) then when I get into Windows I see that all of the updates failed. On top of this, I've noticed these random redirects whenever I open a website in Firefox. Ever since installing MBAM, I'm constantly getting notifications of blocked outgoing attempts from svchost, ping, or firefox (I guess you'll see that in the logs below). I'm trying to include everything in accordance with the "I'm infected - what do I do now?" post. Computer Stats: ASUS K52J Notebook i3 - 350M / 4GB RAM Windows 7 Home Premium 64-bit +++++++++++++++++++++++++++++++++++++++ Latest MBAM Protection Log +++++++++++++++++++++++++++++++++++++++ 09:45:24 Kevin MESSAGE Protection started successfully 09:45:29 Kevin MESSAGE IP Protection started successfully 09:47:37 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 49989, Process: svchost.exe) 09:51:33 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 50592, Process: svchost.exe) 09:55:39 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 52257, Process: svchost.exe) 09:59:39 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 52371, Process: svchost.exe) 10:03:42 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 52589, Process: svchost.exe) 10:07:39 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53349, Process: svchost.exe) 10:11:42 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53373, Process: svchost.exe) 10:15:45 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53473, Process: svchost.exe) 10:19:48 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53530, Process: svchost.exe) 10:23:42 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53629, Process: svchost.exe) 10:27:45 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53665, Process: svchost.exe) 10:31:48 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53705, Process: svchost.exe) 10:35:51 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53740, Process: svchost.exe) 10:39:54 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53764, Process: svchost.exe) 10:43:55 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53791, Process: svchost.exe) 10:47:56 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53823, Process: svchost.exe) 13:54:27 Kevin MESSAGE Protection started successfully 13:54:31 Kevin MESSAGE IP Protection started successfully 14:04:58 Kevin IP-BLOCK 62.122.75.230 (Type: outgoing, Port: 49621, Process: ping.exe) 14:06:12 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 49859, Process: ping.exe) 14:06:20 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 49883, Process: ping.exe) 14:06:52 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 49952, Process: ping.exe) 14:07:09 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50036, Process: ping.exe) 14:07:49 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50406, Process: ping.exe) 14:07:49 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50409, Process: ping.exe) 14:08:06 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50463, Process: ping.exe) 14:08:06 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50464, Process: ping.exe) 14:08:22 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 50592, Process: ping.exe) 14:08:22 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 50593, Process: ping.exe) 14:08:38 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50604, Process: ping.exe) 14:08:38 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50605, Process: ping.exe) 14:08:46 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50668, Process: ping.exe) 14:08:46 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50669, Process: ping.exe) 14:08:54 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 50721, Process: ping.exe) 14:08:54 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 50722, Process: ping.exe) 14:08:54 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50724, Process: ping.exe) 14:08:54 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50725, Process: ping.exe) 14:09:11 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50757, Process: ping.exe) 14:09:11 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50758, Process: ping.exe) 14:09:27 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50881, Process: ping.exe) 14:09:27 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50886, Process: ping.exe) 14:09:51 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50971, Process: ping.exe) 14:09:51 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50972, Process: ping.exe) 14:10:16 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51050, Process: ping.exe) 14:10:16 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51051, Process: ping.exe) 14:10:16 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51122, Process: ping.exe) 14:10:16 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51123, Process: ping.exe) 14:10:24 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51135, Process: ping.exe) 14:10:24 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51136, Process: ping.exe) 14:10:24 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51147, Process: ping.exe) 14:10:24 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51148, Process: ping.exe) 14:10:24 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51160, Process: ping.exe) 14:10:24 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51161, Process: ping.exe) 14:10:32 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51174, Process: ping.exe) 14:10:32 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51175, Process: ping.exe) 14:10:40 Kevin IP-BLOCK 195.3.145.182 (Type: outgoing, Port: 51222, Process: firefox.exe) 14:10:40 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51254, Process: ping.exe) 14:10:40 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51255, Process: ping.exe) 14:10:48 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51257, Process: ping.exe) 14:10:48 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51258, Process: ping.exe) 14:10:48 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51284, Process: ping.exe) 14:10:48 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51287, Process: ping.exe) 14:10:48 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51302, Process: ping.exe) 14:10:48 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51303, Process: ping.exe) 14:10:48 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51305, Process: ping.exe) 14:10:48 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51306, Process: ping.exe) 14:11:13 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 51377, Process: svchost.exe) 14:13:30 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 52021, Process: ping.exe) 14:13:55 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 52282, Process: ping.exe) 14:15:03 Kevin IP-BLOCK 62.122.75.230 (Type: outgoing, Port: 53002, Process: ping.exe) 14:15:11 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53130, Process: svchost.exe) 14:15:43 Kevin IP-BLOCK 195.3.145.184 (Type: outgoing, Port: 53372, Process: firefox.exe) 14:15:44 Kevin IP-BLOCK 195.3.145.184 (Type: outgoing, Port: 53373, Process: firefox.exe) 14:16:08 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 53660, Process: firefox.exe) 14:16:25 Kevin IP-BLOCK 61.155.154.174 (Type: outgoing, Port: 53760, Process: daemonupd.exe) 14:17:58 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 54317, Process: ping.exe) 14:18:30 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54417, Process: ping.exe) 14:18:38 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54434, Process: ping.exe) 14:18:54 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54452, Process: ping.exe) 14:19:02 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54460, Process: ping.exe) 14:19:10 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54482, Process: ping.exe) 14:19:18 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 54495, Process: svchost.exe) 14:19:51 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 54676, Process: daemonupd.exe) 14:19:51 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 54678, Process: daemonupd.exe) 14:19:51 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 54679, Process: ping.exe) 14:19:51 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 54680, Process: ping.exe) 14:19:51 Kevin IP-BLOCK 95.169.186.116 (Type: outgoing, Port: 54710, Process: daemonupd.exe) 14:20:16 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 54929, Process: ping.exe) 14:20:24 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 54977, Process: ping.exe) 14:20:24 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 54978, Process: ping.exe) 14:20:24 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 55002, Process: ping.exe) 14:20:24 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 55003, Process: ping.exe) 14:20:32 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55027, Process: ping.exe) 14:20:32 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55114, Process: ping.exe) 14:20:32 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55116, Process: ping.exe) 14:20:40 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55181, Process: ping.exe) 14:20:40 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55188, Process: ping.exe) 14:20:40 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55189, Process: ping.exe) 14:21:04 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55626, Process: ping.exe) 14:21:04 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55634, Process: ping.exe) 14:21:04 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55716, Process: ping.exe) 14:21:12 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55793, Process: ping.exe) 14:21:12 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55872, Process: ping.exe) 14:21:12 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55874, Process: ping.exe) 14:21:12 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55884, Process: ping.exe) 14:21:12 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55930, Process: ping.exe) 14:21:20 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 55994, Process: ping.exe) 14:21:20 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 56107, Process: ping.exe) 14:21:20 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 56108, Process: ping.exe) 14:21:21 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 56110, Process: ping.exe) 14:21:21 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 56119, Process: ping.exe) 14:21:21 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 56156, Process: ping.exe) 14:21:37 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 56441, Process: ping.exe) 14:21:37 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 56491, Process: ping.exe) 14:21:45 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 56624, Process: ping.exe) 14:21:45 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 56638, Process: ping.exe) 14:22:01 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 56943, Process: ping.exe) 14:22:01 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 56946, Process: ping.exe) 14:22:59 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 57082, Process: ping.exe) 14:23:08 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 57084, Process: ping.exe) 14:23:08 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 57085, Process: ping.exe) 14:23:08 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 57088, Process: ping.exe) 14:23:16 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 57108, Process: svchost.exe) 14:24:40 Kevin IP-BLOCK 95.169.186.116 (Type: outgoing, Port: 57249, Process: daemonupd.exe) 14:24:56 Kevin IP-BLOCK 212.95.51.64 (Type: outgoing, Port: 57261, Process: daemonupd.exe) 14:27:21 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 57517, Process: svchost.exe) 14:31:15 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 57886, Process: svchost.exe) 14:31:23 Kevin IP-BLOCK 82.146.52.114 (Type: outgoing, Port: 57891, Process: daemonupd.exe) 14:34:44 Kevin IP-BLOCK 195.3.145.251 (Type: outgoing, Port: 58140, Process: ping.exe) 14:34:44 Kevin IP-BLOCK 195.3.145.252 (Type: outgoing, Port: 58141, Process: ping.exe) 14:35:09 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 58194, Process: ping.exe) 14:35:17 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 58250, Process: svchost.exe) 14:36:30 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 58975, Process: ping.exe) 14:36:54 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 59092, Process: ping.exe) 14:37:26 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 59561, Process: ping.exe) 14:37:26 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 59562, Process: ping.exe) 14:37:43 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 59624, Process: ping.exe) 14:37:43 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 59625, Process: ping.exe) 14:38:07 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 59891, Process: ping.exe) 14:38:15 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 59986, Process: ping.exe) 14:38:15 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 59987, Process: ping.exe) 14:38:31 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 60154, Process: ping.exe) 14:38:31 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 60155, Process: ping.exe) 14:38:31 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 60165, Process: ping.exe) 14:38:31 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 60166, Process: ping.exe) 14:38:39 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 60200, Process: ping.exe) 14:38:39 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 60201, Process: ping.exe) 14:38:56 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 60397, Process: ping.exe) 14:39:04 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 60419, Process: ping.exe) 14:39:04 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 60420, Process: ping.exe) 14:39:20 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 60497, Process: svchost.exe) 14:39:36 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 60519, Process: ping.exe) 14:40:09 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 60853, Process: ping.exe) 14:40:09 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 60854, Process: ping.exe) 14:40:41 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 61106, Process: ping.exe) 14:40:41 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 61107, Process: ping.exe) 14:41:38 Kevin IP-BLOCK 82.146.52.114 (Type: outgoing, Port: 61263, Process: daemonupd.exe) 14:42:34 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 61456, Process: daemonupd.exe) 14:43:22 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 61603, Process: svchost.exe) 14:46:44 Kevin IP-BLOCK 195.3.145.252 (Type: outgoing, Port: 61943, Process: ping.exe) 14:47:24 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 62125, Process: svchost.exe) 14:48:05 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 62350, Process: ping.exe) 14:48:13 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 62391, Process: ping.exe) 14:48:37 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 62452, Process: ping.exe) 14:48:53 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 62519, Process: ping.exe) 14:49:02 Kevin IP-BLOCK 212.95.51.64 (Type: outgoing, Port: 62531, Process: daemonupd.exe) 14:49:02 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 62534, Process: ping.exe) 14:50:08 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 63364, Process: ping.exe) 14:50:17 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 63412, Process: ping.exe) 14:50:17 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 63429, Process: ping.exe) 14:50:17 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 63430, Process: ping.exe) 14:51:22 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 63796, Process: svchost.exe) 14:51:39 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 63831, Process: ping.exe) 14:51:39 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 63835, Process: ping.exe) 14:51:39 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 63842, Process: ping.exe) 14:51:55 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 64082, Process: ping.exe) 14:52:05 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 64276, Process: ping.exe) 14:52:05 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 64279, Process: ping.exe) 14:52:05 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 64281, Process: ping.exe) 14:52:21 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 64307, Process: ping.exe) 14:52:21 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 64310, Process: ping.exe) 14:52:21 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 64311, Process: ping.exe) 14:53:37 Kevin IP-BLOCK 82.146.53.138 (Type: outgoing, Port: 64438, Process: daemonupd.exe) 14:55:23 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 64524, Process: svchost.exe) 14:59:27 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 64835, Process: svchost.exe) 15:01:37 Kevin IP-BLOCK 82.146.52.114 (Type: outgoing, Port: 65035, Process: daemonupd.exe) 15:03:30 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 65179, Process: svchost.exe) 15:05:59 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 49724, Process: ping.exe) 15:06:15 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 49900, Process: ping.exe) 15:06:24 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50085, Process: ping.exe) 15:06:44 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50217, Process: ping.exe) 15:06:44 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50225, Process: ping.exe) 15:07:17 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50484, Process: ping.exe) 15:07:17 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50485, Process: ping.exe) 15:07:25 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50524, Process: ping.exe) 15:07:33 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 50542, Process: svchost.exe) 15:07:42 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50638, Process: ping.exe) 15:07:50 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 50703, Process: ping.exe) 15:07:50 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 50704, Process: ping.exe) 15:07:50 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50708, Process: ping.exe) 15:07:50 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50709, Process: ping.exe) 15:07:58 Kevin IP-BLOCK 208.87.32.68 (Type: outgoing, Port: 50722, Process: ping.exe) 15:07:58 Kevin IP-BLOCK 208.87.32.68 (Type: outgoing, Port: 50723, Process: ping.exe) 15:08:14 Kevin IP-BLOCK 212.95.51.64 (Type: outgoing, Port: 50811, Process: daemonupd.exe) 15:08:14 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50813, Process: ping.exe) 15:08:31 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50865, Process: ping.exe) 15:08:31 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50924, Process: ping.exe) 15:08:31 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50954, Process: ping.exe) 15:08:31 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50957, Process: ping.exe) 15:08:39 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 51010, Process: ping.exe) 15:09:15 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51096, Process: ping.exe) 15:09:15 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51097, Process: ping.exe) 15:09:44 Kevin IP-BLOCK 208.87.32.68 (Type: outgoing, Port: 51189, Process: ping.exe) 15:09:44 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51214, Process: ping.exe) 15:09:44 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51215, Process: ping.exe) 15:10:08 Kevin IP-BLOCK 208.87.32.68 (Type: outgoing, Port: 51329, Process: ping.exe) 15:10:08 Kevin IP-BLOCK 208.87.32.68 (Type: outgoing, Port: 51330, Process: ping.exe) 15:11:30 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 51711, Process: svchost.exe) 15:11:46 Kevin IP-BLOCK 82.146.52.114 (Type: outgoing, Port: 51745, Process: daemonupd.exe) 15:12:18 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 51855, Process: ping.exe) 15:12:35 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 51955, Process: ping.exe) 15:15:33 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 52612, Process: svchost.exe) 15:16:41 Kevin IP-BLOCK 195.3.145.182 (Type: outgoing, Port: 52775, Process: firefox.exe) 15:16:49 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 52791, Process: firefox.exe) 15:17:13 Kevin IP-BLOCK 206.161.121.100 (Type: outgoing, Port: 52853, Process: firefox.exe) 15:18:51 Kevin IP-BLOCK 82.146.53.138 (Type: outgoing, Port: 53263, Process: daemonupd.exe) 15:19:07 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 53330, Process: ping.exe) 15:19:23 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53409, Process: ping.exe) 15:19:31 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53440, Process: svchost.exe) 15:19:31 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53443, Process: ping.exe) 15:20:20 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53708, Process: ping.exe) 15:20:20 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53767, Process: ping.exe) 15:20:28 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53785, Process: ping.exe) 15:20:36 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53840, Process: ping.exe) 15:20:36 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53850, Process: ping.exe) 15:20:36 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53854, Process: ping.exe) 15:20:53 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54017, Process: ping.exe) 15:21:09 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54170, Process: ping.exe) 15:21:17 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54211, Process: ping.exe) 15:21:34 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54279, Process: ping.exe) 15:21:34 Kevin IP-BLOCK 82.146.53.138 (Type: outgoing, Port: 54325, Process: daemonupd.exe) 15:21:51 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54460, Process: ping.exe) 15:23:36 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 54676, Process: svchost.exe) 15:30:12 Kevin MESSAGE Protection started successfully 15:30:16 Kevin MESSAGE IP Protection started successfully 15:33:04 Kevin MESSAGE IP Protection stopped 15:33:06 Kevin MESSAGE Database updated successfully 15:33:08 Kevin MESSAGE IP Protection started successfully 15:33:38 Kevin IP-BLOCK 195.3.145.182 (Type: outgoing, Port: 49227, Process: firefox.exe) 15:40:12 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 49844, Process: firefox.exe) 15:40:20 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 49856, Process: ping.exe) 15:40:20 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 49859, Process: firefox.exe) 15:41:01 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50057, Process: ping.exe) 15:41:17 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50162, Process: ping.exe) 15:41:17 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 50189, Process: ping.exe) 15:41:33 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 50352, Process: ping.exe) 15:41:33 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 50353, Process: ping.exe) 15:41:50 Kevin IP-BLOCK 67.29.139.153 (Type: outgoing, Port: 50471, Process: ping.exe) 15:42:38 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50851, Process: ping.exe) 15:42:38 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50852, Process: ping.exe) 15:42:55 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50990, Process: ping.exe) 15:42:55 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 50991, Process: ping.exe) 15:43:35 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51469, Process: ping.exe) 15:43:35 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51472, Process: ping.exe) 15:43:51 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51527, Process: ping.exe) 15:43:51 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51535, Process: ping.exe) 15:43:51 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51551, Process: ping.exe) 15:43:51 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 51554, Process: ping.exe) 15:44:00 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51571, Process: ping.exe) 15:44:00 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51573, Process: ping.exe) 15:44:08 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51617, Process: ping.exe) 15:44:08 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51618, Process: ping.exe) 15:44:08 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 51630, Process: svchost.exe) 15:44:24 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51781, Process: ping.exe) 15:44:24 Kevin IP-BLOCK 208.87.33.151 (Type: outgoing, Port: 51783, Process: ping.exe) 15:45:33 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 51952, Process: ping.exe) 15:45:51 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 51970, Process: ping.exe) 15:46:09 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 52008, Process: ping.exe) 15:48:10 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 52045, Process: svchost.exe) 15:52:12 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 52071, Process: svchost.exe) 15:56:13 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 52092, Process: svchost.exe) 15:58:47 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 52707, Process: ping.exe) 15:59:28 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53003, Process: ping.exe) 15:59:44 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53045, Process: ping.exe) 16:00:00 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 53152, Process: ping.exe) 16:00:16 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 53284, Process: svchost.exe) 16:00:24 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 53481, Process: ping.exe) 16:00:24 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 53482, Process: ping.exe) 16:00:48 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 53634, Process: ping.exe) 16:00:48 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 53638, Process: ping.exe) 16:00:48 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 53660, Process: ping.exe) 16:00:57 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 53777, Process: ping.exe) 16:00:57 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 53780, Process: ping.exe) 16:01:05 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 53869, Process: ping.exe) 16:01:13 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 53925, Process: ping.exe) 16:01:21 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54009, Process: ping.exe) 16:01:29 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54045, Process: ping.exe) 16:01:53 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 54186, Process: ping.exe) 16:01:53 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 54187, Process: ping.exe) 16:04:18 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 54301, Process: svchost.exe) 16:08:20 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 54324, Process: svchost.exe) 16:12:13 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 54347, Process: svchost.exe) 16:12:46 Kevin IP-BLOCK 188.95.52.162 (Type: outgoing, Port: 54352, Process: ping.exe) 16:12:54 Kevin IP-BLOCK 62.122.75.230 (Type: outgoing, Port: 54356, Process: ping.exe) 16:13:02 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54387, Process: ping.exe) 16:13:10 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54393, Process: ping.exe) 16:13:34 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54454, Process: ping.exe) 16:13:42 Kevin IP-BLOCK 91.228.133.56 (Type: outgoing, Port: 54472, Process: ping.exe) 16:13:43 Kevin IP-BLOCK 91.228.133.56 (Type: outgoing, Port: 54473, Process: ping.exe) 16:13:51 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54481, Process: ping.exe) 16:13:59 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54516, Process: ping.exe) 16:14:15 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54562, Process: ping.exe) 16:14:31 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54608, Process: ping.exe) 16:14:39 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54613, Process: ping.exe) 16:14:47 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54667, Process: ping.exe) 16:14:55 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54745, Process: ping.exe) 16:15:03 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54814, Process: ping.exe) 16:15:03 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54815, Process: ping.exe) 16:15:12 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54824, Process: ping.exe) 16:15:20 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54842, Process: ping.exe) 16:15:20 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54850, Process: ping.exe) 16:15:28 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54858, Process: ping.exe) 16:15:28 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54866, Process: ping.exe) 16:15:28 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54868, Process: ping.exe) 16:15:44 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54878, Process: ping.exe) 16:15:44 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54882, Process: ping.exe) 16:15:52 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54894, Process: ping.exe) 16:16:00 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 54914, Process: ping.exe) 16:16:00 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54916, Process: ping.exe) 16:16:08 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 54941, Process: ping.exe) 16:16:17 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 54959, Process: ping.exe) 16:16:17 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 54960, Process: ping.exe) 16:16:17 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 54963, Process: svchost.exe) 16:16:25 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55014, Process: ping.exe) 16:16:33 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55040, Process: ping.exe) 16:16:33 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55041, Process: ping.exe) 16:16:41 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 55046, Process: ping.exe) 16:16:41 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 55051, Process: ping.exe) 16:16:49 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55053, Process: ping.exe) 16:16:49 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55054, Process: ping.exe) 16:16:57 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55064, Process: ping.exe) 16:16:57 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 55069, Process: ping.exe) 16:16:57 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55073, Process: ping.exe) 16:17:05 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 55082, Process: ping.exe) 16:17:05 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55096, Process: ping.exe) 16:17:14 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55101, Process: ping.exe) 16:17:22 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55147, Process: ping.exe) 16:17:22 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55157, Process: ping.exe) 16:17:22 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55158, Process: ping.exe) 16:17:46 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55310, Process: ping.exe) 16:17:46 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55311, Process: ping.exe) 16:17:54 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55352, Process: ping.exe) 16:17:54 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55358, Process: ping.exe) 16:17:54 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55359, Process: ping.exe) 16:18:10 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55374, Process: ping.exe) 16:18:11 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55381, Process: ping.exe) 16:18:11 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55383, Process: ping.exe) 16:18:11 Kevin IP-BLOCK 208.87.32.69 (Type: outgoing, Port: 55384, Process: ping.exe) 16:18:27 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55396, Process: ping.exe) 16:18:27 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55401, Process: ping.exe) 16:18:27 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55402, Process: ping.exe) 16:18:59 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55573, Process: ping.exe) 16:18:59 Kevin IP-BLOCK 208.73.210.29 (Type: outgoing, Port: 55574, Process: ping.exe) 16:20:03 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 55713, Process: ping.exe) 16:20:19 Kevin IP-BLOCK 206.161.121.115 (Type: outgoing, Port: 55722, Process: ping.exe) 16:20:19 Kevin IP-BLOCK 98.126.43.227 (Type: outgoing, Port: 55727, Process: svchost.exe) 16:20:36 Kevin IP-BLOCK 206.161.121.126 (Type: outgoing, Port: 55737, Process: ping.exe) +++++++++++++++++++++++++++++++++++++++ Latest MBAM scanner log +++++++++++++++++++++++++++++++++++++++ Malwarebytes' Anti-Malware 1.51.1.1800 www.malwarebytes.org Database version: 7703 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 9/12/2011 3:33:00 PM mbam-log-2011-09-12 (15-33-00).txt Scan type: Quick scan Objects scanned: 173364 Time elapsed: 47 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected) +++++++++++++++++++++++++++++++++++++++ DDS Log +++++++++++++++++++++++++++++++++++++++ . DDS (Ver_2011-08-26.01) - NTFSAMD64 Internet Explorer: 8.0.7600.16385 Run by Kevin at 15:46:29 on 2011-09-12 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3949.2656 [GMT -5:00] . AV: AntiVir Desktop *Enabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: AntiVir Desktop *Enabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A} . ============== Running Processes =============== . C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\atieclxx.exe C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\FBAgent.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe C:\Windows\System32\spoolsv.exe C:\Avira\AntiVir Desktop\sched.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Windows\system32\taskhost.exe C:\Windows\system32\Dwm.exe C:\Windows\system32\taskeng.exe C:\Windows\Explorer.EXE C:\Program Files\P4G\BatteryLife.exe C:\Program Files (x86)\ASUS\ASUS CopyProtect\aspg.exe C:\Program Files (x86)\ASUS\ControlDeck\ControlDeckStartUp.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe C:\Avira\AntiVir Desktop\avguard.exe C:\Windows\SysWOW64\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Avira\AntiVir Desktop\avshadow.exe C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe C:\Windows\system32\conhost.exe C:\Avira\AntiVir Desktop\avgnt.exe C:\Malwarebytes' Anti-Malware\mbamgui.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMSrv.exe C:\Program Files (x86)\ASUS\ASUS Data Security Manager\ADSMTray.exe C:\Windows\AsScrPro.exe C:\Malwarebytes' Anti-Malware\mbamservice.exe C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe C:\Firefox\firefox.exe C:\Windows\System32\svchost.exe -k WerSvcGroup C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\DllHost.exe C:\Windows\system32\DllHost.exe C:\Windows\SysWOW64\cmd.exe C:\Windows\system32\conhost.exe C:\Windows\SysWOW64\cscript.exe C:\Windows\system32\wbem\wmiprvse.exe . ============== Pseudo HJT Report =============== . mWinlogon: Userinit=userinit.exe, BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll mRun: [avgnt] "C:\Avira\AntiVir Desktop\avgnt.exe" /min mRun: [Malwarebytes' Anti-Malware] "C:\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray dRun: [Google Update] C:\Windows\system32\config\systemprofile\AppData\Local\Google\Update\gupdate.exe mPolicies-explorer: NoActiveDesktop = 1 (0x1) mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1) mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) mPolicies-system: PromptOnSecureDesktop = 0 (0x0) TCP: DhcpNameServer = 192.168.0.1 TCP: Interfaces\{8260747D-F637-49FE-9161-3D607FE45F27} : DhcpNameServer = 192.168.0.1 BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO-X64: AcroIEHelperStub - No File mRun-x64: [avgnt] "C:\Avira\AntiVir Desktop\avgnt.exe" /min mRun-x64: [Malwarebytes' Anti-Malware] "C:\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray . ================= FIREFOX =================== . FF - ProfilePath - C:\Users\Kevin\AppData\Roaming\Mozilla\Firefox\Profiles\trsia0tk.default\ FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll . ============= SERVICES / DRIVERS =============== . R0 lullaby;lullaby;C:\Windows\system32\DRIVERS\lullaby.sys --> C:\Windows\system32\DRIVERS\lullaby.sys [?] R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?] R2 AFBAgent;AFBAgent;"C:\Windows\system32\FBAgent.exe" --> C:\Windows\system32\FBAgent.exe [?] R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?] R2 AntiVirSchedulerService;Avira AntiVir Scheduler;C:\Avira\AntiVir Desktop\sched.exe [2011-9-11 136360] R2 AntiVirService;Avira AntiVir Guard;C:\Avira\AntiVir Desktop\avguard.exe [2011-9-11 269480] R2 ASMMAP64;ASMMAP64;C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-7-2 15416] R2 avgntflt;avgntflt;C:\Windows\system32\DRIVERS\avgntflt.sys --> C:\Windows\system32\DRIVERS\avgntflt.sys [?] R2 MBAMService;MBAMService;C:\Malwarebytes' Anti-Malware\mbamservice.exe [2011-9-12 366640] R2 UNS;Intel® Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel® Management Engine Components\UNS\UNS.exe [2011-9-11 2314240] R3 ETD;ELAN PS/2 Port Input Device;C:\Windows\system32\DRIVERS\ETD.sys --> C:\Windows\system32\DRIVERS\ETD.sys [?] R3 HECIx64;Intel® Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?] R3 JMCR;JMCR;C:\Windows\system32\DRIVERS\jmcr.sys --> C:\Windows\system32\DRIVERS\jmcr.sys [?] R3 JME;JMicron Ethernet Adapter NDIS6 Driver (Amd64 Bits);C:\Windows\system32\DRIVERS\JME.sys --> C:\Windows\system32\DRIVERS\JME.sys [?] R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?] S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-9-12 136176] S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-9-12 136176] S3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;C:\Windows\system32\DRIVERS\SiSG664.sys --> C:\Windows\system32\DRIVERS\SiSG664.sys [?] . =============== Created Last 30 ================ . 2011-09-12 16:06:01 -------- d-----w- C:\Users\Kevin\AppData\Local\ElevatedDiagnostics 2011-09-12 14:45:01 -------- d-----w- C:\Users\Kevin\AppData\Roaming\Malwarebytes 2011-09-12 14:44:55 41272 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys 2011-09-12 14:44:54 -------- d-----w- C:\ProgramData\Malwarebytes 2011-09-12 14:44:51 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys 2011-09-12 14:44:51 -------- d-----w- C:\Malwarebytes' Anti-Malware 2011-09-12 14:37:23 -------- d-----w- C:\Users\Kevin\AppData\Local\Google 2011-09-12 14:37:09 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl 2011-09-12 14:29:17 311808 ----a-w- C:\Windows\System32\msv1_0.dll 2011-09-12 14:29:17 257024 ----a-w- C:\Windows\SysWow64\msv1_0.dll 2011-09-12 01:08:56 243712 ----a-w- C:\Windows\System32\drivers\ks.sys 2011-09-12 01:08:56 184832 ----a-w- C:\Windows\System32\drivers\usbvideo.sys 2011-09-11 21:52:48 -------- d-----w- C:\Users\Kevin\AppData\Roaming\Avira 2011-09-11 21:49:28 -------- d-----w- C:\Windows\pss 2011-09-11 21:35:36 -------- d-----w- C:\Users\Kevin\AppData\Local\Adobe 2011-09-11 21:20:42 88288 ----a-w- C:\Windows\System32\drivers\avgntflt.sys 2011-09-11 21:20:41 -------- d-----w- C:\ProgramData\Avira 2011-09-11 21:20:41 -------- d-----w- C:\Avira 2011-09-11 21:19:05 8862544 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F90A96B5-FD3A-4152-BEF0-ED49D70A345A}\mpengine.dll 2011-09-11 21:19:04 270720 ------w- C:\Windows\System32\MpSigStub.exe 2011-09-11 21:14:53 -------- d-----w- C:\Users\Kevin\AppData\Local\Mozilla 2011-09-11 21:13:25 -------- d-----w- C:\Firefox 2011-09-11 21:06:51 220672 ----a-w- C:\Windows\System32\wintrust.dll 2011-09-11 21:06:51 172032 ----a-w- C:\Windows\SysWow64\wintrust.dll 2011-09-11 21:06:51 139264 ----a-w- C:\Windows\System32\cabview.dll 2011-09-11 21:06:51 132608 ----a-w- C:\Windows\SysWow64\cabview.dll 2011-09-11 21:05:15 -------- d-----w- C:\Users\Kevin\AppData\Local\ATI 2011-09-11 21:05:06 -------- d-----w- C:\Users\Kevin\AppData\Local\SRS Labs 2011-09-11 21:02:32 -------- d-----w- C:\Users\Kevin\AppData\Local\VirtualStore 2011-09-11 19:58:56 408600 ----a-w- C:\Windows\System32\drivers\iaStor.sys 2011-09-11 19:58:53 102000 ----a-w- C:\Windows\System32\drivers\JME.sys 2011-09-11 19:56:33 143472 ----a-w- C:\Windows\System32\drivers\jmcr.sys 2011-09-11 19:56:33 110080 ----a-w- C:\Windows\System32\jmcricon.dll 2011-09-11 19:56:27 42176 ----a-w- C:\Windows\System32\drivers\sncduvc.sys 2011-09-11 19:56:27 19008 ----a-w- C:\Windows\DrvInst.exe 2011-09-11 19:56:27 1806400 ----a-w- C:\Windows\System32\drivers\snp2uvc.sys 2011-09-11 19:56:26 386 ----a-w- C:\Windows\Uninstuxga.reg 2011-09-11 19:56:26 386 ----a-w- C:\Windows\Uninstsxga.reg 2011-09-11 19:56:26 384 ----a-w- C:\Windows\Uninstvga.reg 2011-09-11 19:56:26 2266 ----a-w- C:\Windows\Uninstvga.bat 2011-09-11 19:56:26 2008 ----a-w- C:\Windows\Uninstsxga.bat 2011-09-11 19:56:26 1682 ----a-w- C:\Windows\Uninstuxga.bat 2011-09-11 19:55:31 704512 ----a-w- C:\Windows\System32\drivers\CHDRT64.sys 2011-09-11 19:55:31 421888 ----a-w- C:\Windows\System32\UCI64A43.dll 2011-09-11 19:55:31 1745920 ----a-w- C:\Windows\System32\CX64OP19.dll 2011-09-11 19:53:47 2097152 ---h--r- C:\K62Jr.BIN 2011-09-11 19:53:46 2097152 ---h--r- C:\K52Jr.BIN 2011-09-11 19:53:42 4649472 ----a-w- C:\Windows\System32\ETDUI.cpl 2011-09-11 19:53:41 117760 ----a-w- C:\Windows\System32\drivers\ETD.sys 2011-09-11 19:53:40 1542656 ----a-w- C:\Windows\System32\drivers\athrx.sys 2011-09-11 19:53:40 15416 ----a-w- C:\Windows\System32\drivers\kbfiltr.sys 2011-09-11 19:53:39 15928 ----a-w- C:\Windows\System32\drivers\ATK64AMD.sys 2011-09-11 19:25:22 -------- d-----w- C:\Windows\SysWow64\K_Series_ScreenSaver_EN dir 2011-09-11 19:25:20 3054136 ----a-w- C:\Windows\AsScrPro.exe 2011-09-11 19:25:16 -------- d-----w- C:\eSupport 2011-09-11 19:25:09 183296 ----a-w- C:\Windows\SysWow64\ACEngSvr.exe 2011-09-11 19:25:02 359552 ----a-w- C:\Windows\System32\FBAgent.exe 2011-09-11 19:25:02 -------- d-----w- C:\Program Files\ASUS 2011-09-11 19:25:00 15928 ----a-w- C:\Windows\System32\drivers\lullaby.sys 2011-09-11 19:24:55 35384 ----a-w- C:\Windows\System32\drivers\AsDsm.sys 2011-09-11 19:24:37 -------- d-----w- C:\ProgramData\P4G 2011-09-11 19:24:37 -------- d-----w- C:\Program Files\P4G 2011-09-11 19:24:34 77824 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\ctor.dll 2011-09-11 19:24:34 32768 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\objectps.dll 2011-09-11 19:24:34 225280 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\IScript\iscript.dll 2011-09-11 19:24:34 176128 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\iuser.dll 2011-09-11 19:24:33 614532 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Engine\6\Intel 32\IKernel.exe 2011-09-11 19:24:30 53248 ----a-w- C:\Windows\SysWow64\LogonStart.dll 2011-09-11 19:24:03 -------- d-----w- C:\Program Files (x86)\ASUS 2011-09-11 19:23:52 -------- d-----w- C:\Program Files (x86)\JMicron 2011-09-11 19:23:39 -------- d-----w- C:\Program Files (x86)\Common Files\postureAgent 2011-09-11 19:23:35 56344 ----a-w- C:\Windows\System32\drivers\HECIx64.sys 2011-09-11 19:23:21 -------- d-----w- C:\Program Files\SRS Labs 2011-09-11 19:22:44 -------- d-----w- C:\Windows\System32\SRSLabs 2011-09-11 19:22:44 -------- d-----w- C:\Program Files\CONEXANT 2011-09-11 19:22:06 0 ----a-w- C:\Windows\ativpsrm.bin 2011-09-11 19:20:31 -------- d-----w- C:\Program Files\ATI 2011-09-11 19:20:30 -------- d-----w- C:\Program Files (x86)\ATI Technologies 2011-09-11 19:20:19 -------- d-sh--w- C:\Windows\Installer 2011-09-11 19:17:43 53248 ----a-w- C:\Windows\SysWow64\CSVer.dll 2011-09-11 19:17:38 -------- d-----w- C:\Intel 2011-09-11 19:15:57 -------- d-----w- C:\Program Files\Elantech . ==================== Find3M ==================== . 2009-04-08 17:31:56 106496 ----a-w- C:\Program Files (x86)\Common Files\CPInstallAction.dll 2008-08-12 04:45:20 155648 ----a-w- C:\Program Files (x86)\Common Files\MSIactionall.dll . ============= FINISH: 15:48:22.67 =============== Attach.zip