It's Cyber Monday - fantastic 70% discount

Buy Now

Limited time offer:

03

Days

/

00

Hrs

/

04

Min

/

04

Sec

Need Help Removing Popups

Posted 2/17/2013 9:30 PM
#95106
User avatar

RunninTurtle Member

Date Joined Nov 2016
Total Posts: 2
When I am on Google chrome I get random annoying popups randomly. This does not happen when I am on incognito mode for Google Chrome. I Looked up the address that popped up on the addres bar of the window and it led me to these forums. Ive followed the steps of malware, dds, and hijackthis. Below are the logs requested. <br/> <br/> <br/>Logfile of Trend Micro HijackThis v2.0.2 <br/>Scan saved at 1:15:50 PM, on 2/17/2013 <br/>Platform: Unknown Windows (WinNT 6.01.3505 SP1) <br/>MSIE: Internet Explorer v9.00 (9.00.8112.16464) <br/>Boot mode: Normal <br/> <br/>Running processes: <br/>C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe <br/>C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe <br/>C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe <br/>C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe <br/>C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe <br/>C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe <br/>C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe <br/>C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe <br/>C:\Program Files (x86)\iTunes\iTunesHelper.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Program Files (x86)\Trend Micro\HijackThis\HijackThis.exe <br/> <br/>R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 <br/>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896 <br/>R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896 <br/>R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = <br/>R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = <br/>R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm <br/>R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = <br/>R3 - URLSearchHook: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll <br/>R3 - URLSearchHook: (no name) - {7473b6bd-4691-4744-a82b-7854eb3d70b6} - (no file) <br/>O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll <br/>O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll <br/>O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coIEPlg.dll <br/>O2 - BHO: uTorrentControl2 - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll <br/>O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\IPS\IPSBHO.DLL <br/>O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll <br/>O2 - BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll <br/>O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll <br/>O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~4\Office14\URLREDIR.DLL <br/>O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll <br/>O2 - BHO: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll <br/>O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coIEPlg.dll <br/>O3 - Toolbar: uTorrentControl2 Toolbar - {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll <br/>O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun <br/>O4 - HKLM\..\Run: [TWebCamera] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" autorun <br/>O4 - HKLM\..\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60 <br/>O4 - HKLM\..\Run: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe" UNATTENDED <br/>O4 - HKLM\..\Run: [ToshibaAppPlace] "C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe" <br/>O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" <br/>O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" <br/>O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot <br/>O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" <br/>O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime <br/>O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" <br/>O4 - HKLM\..\Run: [autoauto] c.bat <br/>O4 - HKCU\..\Run: [Google Update] "C:\Users\Pedro Uriostegue\AppData\Local\Google\Update\GoogleUpdate.exe" /c <br/>O4 - HKCU\..\Run: [Facebook Update] "C:\Users\Pedro Uriostegue\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver <br/>O4 - HKCU\..\Run: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED <br/>O4 - HKCU\..\Run: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe <br/>O4 - HKCU\..\Run: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe <br/>O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun <br/>O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE') <br/>O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE') <br/>O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE') <br/>O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE') <br/>O4 - Startup: CurseClientStartup.ccip <br/>O4 - Global Startup: vpngui.exe.lnk = ? <br/>O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000 <br/>O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105 <br/>O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre7\bin\jp2iexp.dll <br/>O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files (x86)\Java\jre7\bin\jp2iexp.dll <br/>O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll <br/>O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll <br/>O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll <br/>O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll <br/>O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll <br/>O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll <br/>O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll <br/>O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll <br/>O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll <br/>O10 - Unknown file in Winsock LSP: c:\program files (x86)\common files\microsoft shared\windows live\wlidnsp.dll <br/>O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics <br/>O13 - Gopher Prefix: <br/>O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://www.popcap.com/webgames/popcaploader_v10.cab <br/>O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll <br/>O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL <br/>O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll <br/>O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL <br/>O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\windows\System32\alg.exe (file missing) <br/>O23 - Service: AMD External Events Utility - Unknown owner - C:\windows\system32\atiesrxx.exe (file missing) <br/>O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe <br/>O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe <br/>O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe <br/>O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\windows\System32\lsass.exe (file missing) <br/>O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\windows\system32\fxssvc.exe (file missing) <br/>O23 - Service: GameConsoleService - WildTangent, Inc. - C:\Program Files (x86)\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe <br/>O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe <br/>O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe <br/>O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe <br/>O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe <br/>O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\windows\system32\lsass.exe (file missing) <br/>O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe <br/>O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe <br/>O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\windows\System32\msdtc.exe (file missing) <br/>O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\windows\system32\lsass.exe (file missing) <br/>O23 - Service: Norton Internet Security (NIS) - Symantec Corporation - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe <br/>O23 - Service: Toshiba Laptop Checkup Application Launcher (Norton PC Checkup Application Launcher) - Symantec Corporation - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\SymcPCCULaunchSvc.exe <br/>O23 - Service: Common Client Job Manager Service (PCCUJobMgr) - Symantec Corporation - C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe <br/>O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\windows\system32\lsass.exe (file missing) <br/>O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\windows\system32\locator.exe (file missing) <br/>O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\windows\system32\lsass.exe (file missing) <br/>O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe <br/>O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\windows\System32\snmptrap.exe (file missing) <br/>O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\windows\System32\spoolsv.exe (file missing) <br/>O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\windows\system32\sppsvc.exe (file missing) <br/>O23 - Service: TMachInfo - TOSHIBA Corporation - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe <br/>O23 - Service: TOSHIBA Optical Disc Drive Service (TODDSrv) - Unknown owner - C:\Windows\system32\TODDSrv.exe (file missing) <br/>O23 - Service: TOSHIBA Power Saver (TosCoSrv) - TOSHIBA Corporation - C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe <br/>O23 - Service: TOSHIBA HDD SSD Alert Service - TOSHIBA Corporation - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe <br/>O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\windows\system32\UI0Detect.exe (file missing) <br/>O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\windows\system32\lsass.exe (file missing) <br/>O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\windows\System32\vds.exe (file missing) <br/>O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\windows\system32\vssvc.exe (file missing) <br/>O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\windows\system32\Wat\WatAdminSvc.exe (file missing) <br/>O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\windows\system32\wbengine.exe (file missing) <br/>O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\windows\system32\wbem\WmiApSrv.exe (file missing) <br/>O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) <br/> <br/>-- <br/>End of file - 14625 bytes <br/> <br/> <br/> <br/>Malwarebytes Anti-Malware (Trial) 1.70.0.1100 <br/>www.malwarebytes.org <br/> <br/>Database version: v2013.02.17.02 <br/> <br/>Windows 7 Service Pack 1 x64 NTFS <br/>Internet Explorer 9.0.8112.16421 <br/>Pedro Uriostegue :: RUNNINTURTLE [administrator] <br/> <br/>Protection: Enabled <br/> <br/>2/17/2013 2:03:18 AM <br/>mbam-log-2013-02-17 (02-03-18).txt <br/> <br/>Scan type: Full scan (C:\|) <br/>Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM <br/>Scan options disabled: P2P <br/>Objects scanned: 368025 <br/>Time elapsed: 1 hour(s), 1 minute(s), 50 second(s) <br/> <br/>Memory Processes Detected: 0 <br/>(No malicious items detected) <br/> <br/>Memory Modules Detected: 0 <br/>(No malicious items detected) <br/> <br/>Registry Keys Detected: 3 <br/>HKCU\SOFTWARE\NtWqIVLZEWZU (Trojan.FakeAlert) -> Quarantined and deleted successfully. <br/>HKCU\SOFTWARE\XML (Trojan.FakeAlert) -> Quarantined and deleted successfully. <br/>HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\ (Hijack.Zones) -> Quarantined and deleted successfully. <br/> <br/>Registry Values Detected: 1 <br/>HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Run|Wcudoje (Trojan.Agent.U) -> Data: rundll32.exe "C:\Users\Pedro Uriostegue\AppData\Local\ivocecisuwaqiqam.dll",Startup -> Quarantined and deleted successfully. <br/> <br/>Registry Data Items Detected: 1 <br/>HKCR\CLSID\{871C5380-42A0-1069-A2EA-08002B30309D}\shell\OpenHomePage\Command| (Hijack.HomePage) -> Bad: (http://securityresponse.symantec.com/avcenter/fix_homepage/) Good: (iexplore.exe) -> Delete on reboot. <br/> <br/>Folders Detected: 0 <br/>(No malicious items detected) <br/> <br/>Files Detected: 0 <br/>(No malicious items detected) <br/> <br/>(end)
Posted 2/17/2013 9:30 PM
#95107
User avatar

RunninTurtle Member

Date Joined Nov 2016
Total Posts: 2
DDS (Ver_2012-11-20.01) - NTFS_AMD64 <br/>Internet Explorer: 9.0.8112.16464 <br/>Run by Pedro Uriostegue at 10:55:34 on 2013-02-17 <br/>Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3835.1620 [GMT -8:00] <br/>. <br/>AV: Norton Internet Security *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF} <br/>SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} <br/>SP: Norton Internet Security *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202} <br/>FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4} <br/>. <br/>============== Running Processes =============== <br/>. <br/>C:\windows\system32\lsm.exe <br/>C:\windows\system32\svchost.exe -k DcomLaunch <br/>C:\windows\system32\svchost.exe -k RPCSS <br/>C:\windows\system32\atiesrxx.exe <br/>C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted <br/>C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted <br/>C:\windows\system32\svchost.exe -k netsvcs <br/>C:\windows\system32\svchost.exe -k LocalService <br/>C:\windows\system32\svchost.exe -k NetworkService <br/>C:\windows\System32\spoolsv.exe <br/>C:\windows\system32\svchost.exe -k LocalServiceNoNetwork <br/>C:\windows\system32\atieclxx.exe <br/>C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe <br/>C:\Program Files\Bonjour\mDNSResponder.exe <br/>C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe <br/>C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation <br/>C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe <br/>C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe <br/>C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe <br/>C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe <br/>C:\windows\system32\svchost.exe -k imgsvc <br/>C:\Windows\system32\TODDSrv.exe <br/>C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe <br/>C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE <br/>C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe <br/>C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted <br/>C:\windows\system32\SearchIndexer.exe <br/>C:\windows\system32\SearchProtocolHost.exe <br/>C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\SymcPCCULaunchSvc.exe <br/>C:\Program Files\Windows Media Player\wmpnetwk.exe <br/>C:\windows\system32\taskhost.exe <br/>C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccSvcHst.exe <br/>C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe <br/>C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe <br/>C:\windows\system32\Dwm.exe <br/>C:\windows\Explorer.EXE <br/>C:\Program Files\Synaptics\SynTP\SynTPEnh.exe <br/>C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe <br/>C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe <br/>C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe <br/>C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe <br/>C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe <br/>C:\Program Files\Microsoft IntelliPoint\ipoint.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Update\GoogleUpdate.exe <br/>C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe <br/>C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe <br/>C:\Program Files (x86)\Skype\Phone\Skype.exe <br/>C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe <br/>C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe <br/>C:\Program Files (x86)\TOSHIBA\Toshiba App Place\ToshibaAppPlace.exe <br/>C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe <br/>C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe <br/>C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe <br/>C:\Program Files (x86)\iTunes\iTunesHelper.exe <br/>C:\Program Files\Synaptics\SynTP\SynTPHelper.exe <br/>C:\Program Files\iPod\bin\iPodService.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Apps\2.0\3AMHWOEW.BAV\GK6BZ6XE.4A3\curs..tion_9e9e83ddf3ed3ead_0005.0001_f98d05d4713e76ec\CurseClient.exe <br/>C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe <br/>C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe <br/>C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\Users\Pedro Uriostegue\AppData\Local\Google\Chrome\Application\chrome.exe <br/>C:\windows\system32\SearchFilterHost.exe <br/>C:\windows\system32\wbem\wmiprvse.exe <br/>C:\windows\System32\cscript.exe <br/>. <br/>============== Pseudo HJT Report =============== <br/>. <br/>uStart Page = hxxp://www.google.com/ig?brand=TSND&bmod=TSND <br/>uDefault_Page_URL = hxxp://www.google.com/ig?brand=TSND&bmod=TSND <br/>mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=TSND&bmod=TSND <br/>mDefault_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=TSND&bmod=TSND <br/>uProxyOverride = <local> <br/>uURLSearchHooks: uTorrentControl2 Toolbar: {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll <br/>uURLSearchHooks: {7473b6bd-4691-4744-a82b-7854eb3d70b6} - <orphaned> <br/>mURLSearchHooks: uTorrentControl2 Toolbar: {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll <br/>BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll <br/>BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\IE\rpbrowserrecordplugin.dll <br/>BHO: Norton Identity Protection: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coieplg.dll <br/>BHO: uTorrentControl2 Toolbar: {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll <br/>BHO: Norton Vulnerability Protection: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ips\ipsbho.dll <br/>BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll <br/>BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll <br/>BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll <br/>BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL <br/>BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll <br/>BHO: TOSHIBA Media Controller Plug-in: {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll <br/>TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coieplg.dll <br/>TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\coieplg.dll <br/>TB: uTorrentControl2 Toolbar: {687578b9-7132-4a7a-80e4-30ee31099e03} - C:\Program Files (x86)\uTorrentControl2\prxtbuTor.dll <br/>uRun: [Google Update] "C:\Users\Pedro Uriostegue\AppData\Local\Google\Update\GoogleUpdate.exe" /c <br/>uRun: [Facebook Update] "C:\Users\Pedro Uriostegue\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver <br/>uRun: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe" /MINIMIZED <br/>uRun: [iCloudServices] C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe <br/>uRun: [ApplePhotoStreams] C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe <br/>uRun: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun <br/>mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun <br/>mRun: [TWebCamera] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" autorun <br/>mRun: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60 <br/>mRun: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Toshiba\Toshiba Online Backup\Activation\TOBuActivation.exe" UNATTENDED <br/>mRun: [ToshibaAppPlace] "C:\Program Files (x86)\Toshiba\Toshiba App Place\ToshibaAppPlace.exe" <br/>mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" <br/>mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" <br/>mRun: [TkBellExe] "C:\Program Files (x86)\Real\RealPlayer\update\realsched.exe" -osboot <br/>mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" <br/>mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" <br/>mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime <br/>mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" <br/>mRun: [autoauto] c.bat <br/>StartupFolder: C:\Users\Pedro Uriostegue\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip <br/>StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\VPNGUI~1.LNK - C:\windows\Installer\{467D5E81-8349-4892-9E81-C3674ED8E451}\Icon09DB8A851.exe <br/>mPolicies-Explorer: NoActiveDesktop = dword:1 <br/>mPolicies-System: ConsentPromptBehaviorAdmin = dword:5 <br/>mPolicies-System: ConsentPromptBehaviorUser = dword:3 <br/>mPolicies-System: EnableUIADesktopToggle = dword:0 <br/>IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~4\Office14\EXCEL.EXE/3000 <br/>IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~4\Office14\ONBttnIE.dll/105 <br/>IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBC} - C:\Program Files (x86)\Java\jre6\bin\jp2iexp.dll <br/>IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll <br/>IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll <br/>IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll <br/>IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll <br/>DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab <br/>DPF: {CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab <br/>DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_35-windows-i586.cab <br/>DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - hxxp://www.popcap.com/webgames/popcaploader_v10.cab <br/>TCP: NameServer = 192.168.1.1 <br/>TCP: Interfaces\{3A998BCE-C5DF-4A8C-B4AB-5F49BFDBA326} : DHCPNameServer = 192.168.1.1 <br/>TCP: Interfaces\{3A998BCE-C5DF-4A8C-B4AB-5F49BFDBA326}\6427565694E6475627E65647 : DHCPNameServer = 10.0.0.1 <br/>TCP: Interfaces\{3A998BCE-C5DF-4A8C-B4AB-5F49BFDBA326}\74F602749616E6473712121212 : DHCPNameServer = 192.168.1.1 <br/>TCP: Interfaces\{3A998BCE-C5DF-4A8C-B4AB-5F49BFDBA326}\85E485A474 : DHCPNameServer = 192.168.1.1 <br/>TCP: Interfaces\{3A998BCE-C5DF-4A8C-B4AB-5F49BFDBA326}\B4F6F60716024527F6F6071637 : DHCPNameServer = 10.0.1.1 <br/>TCP: Interfaces\{3A998BCE-C5DF-4A8C-B4AB-5F49BFDBA326}\D41627175756A7 : DHCPNameServer = 192.168.2.1 <br/>TCP: Interfaces\{3A998BCE-C5DF-4A8C-B4AB-5F49BFDBA326}\D416469637F6E60224561627027416274656E6 : DHCPNameServer = 192.168.0.1 <br/>Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL <br/>Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll <br/>Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll <br/>Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll <br/>SSODL: WebCheck - <orphaned> <br/>x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll <br/>x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL <br/>x64-Run: [SmartAudio] C:\Program Files\CONEXANT\SAII\SAIICpl.exe /t <br/>x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe <br/>x64-Run: [TPwrMain] C:\Program Files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE <br/>x64-Run: [SmoothView] C:\Program Files (x86)\Toshiba\SmoothView\SmoothView.exe <br/>x64-Run: [00TCrdMain] C:\Program Files (x86)\TOSHIBA\FlashCards\TCrdMain.exe <br/>x64-Run: [SmartFaceVWatcher] C:\Program Files (x86)\Toshiba\SmartFaceV\SmartFaceVWatcher.exe <br/>x64-Run: [TosVolRegulator] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe <br/>x64-Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe <br/>x64-Run: [TosNC] C:\Program Files (x86)\Toshiba\BulletinBoard\TosNcCore.exe <br/>x64-Run: [TosReelTimeMonitor] C:\Program Files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe <br/>x64-Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe" <br/>x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll <br/>x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll <br/>x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL <br/>x64-Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - <orphaned> <br/>x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned> <br/>x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned> <br/>x64-SSODL: WebCheck - <orphaned> <br/>. <br/>================= FIREFOX =================== <br/>. <br/>FF - ProfilePath - C:\Users\Pedro Uriostegue\AppData\Roaming\Mozilla\Firefox\Profiles\i8g4ierg.default\ <br/>FF - prefs.js: browser.search.selectedEngine - Ask.com <br/>FF - prefs.js: browser.startup.homepage - www.bing.com <br/>FF - component: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\components\nprpffbrowserrecordext.dll <br/>FF - component: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\Firefox\Ext\components\nprpffbrowserrecordlegacyext.dll <br/>FF - plugin: C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL <br/>FF - plugin: C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL <br/>FF - plugin: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll <br/>FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll <br/>FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll <br/>FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll <br/>FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll <br/>FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll <br/>FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.99\npGoogleUpdate3.dll <br/>FF - plugin: C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll <br/>FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll <br/>FF - plugin: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprpchromebrowserrecordext.dll <br/>FF - plugin: C:\ProgramData\Real\RealPlayer\BrowserRecordPlugin\MozillaPlugins\nprphtml5videoshim.dll <br/>FF - plugin: C:\Users\Pedro Uriostegue\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll <br/>FF - plugin: C:\Users\Pedro Uriostegue\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll <br/>FF - plugin: C:\Users\Pedro Uriostegue\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll <br/>FF - plugin: C:\Users\Pedro Uriostegue\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll <br/>FF - plugin: C:\windows\SysWOW64\Macromed\Flash\NPSWF32.dll <br/>FF - plugin: C:\windows\SysWOW64\npdeployJava1.dll <br/>. <br/>============= SERVICES / DRIVERS =============== <br/>. <br/>R0 SymDS;Symantec Data Store;C:\windows\System32\drivers\NISx64\1309010.00E\symds64.sys [2013-2-5 451192] <br/>R0 SymEFA;Symantec Extended File Attributes;C:\windows\System32\drivers\NISx64\1309010.00E\symefa64.sys [2013-2-5 1129120] <br/>R1 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\BASHDefs\20130208.001\BHDrvx64.sys [2013-2-12 1388120] <br/>R1 ccSet_NIS;Norton Internet Security Settings Manager;C:\windows\System32\drivers\NISx64\1309010.00E\ccsetx64.sys [2013-2-5 167072] <br/>R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_19.7.1.5\Definitions\IPSDefs\20130215.002\IDSviA64.sys [2013-2-15 513184] <br/>R1 SymIRON;Symantec Iron Driver;C:\windows\System32\drivers\NISx64\1309010.00E\ironx64.sys [2013-2-5 190072] <br/>R1 SymNetS;Symantec Network Security WFP Driver;C:\windows\System32\drivers\NISx64\1309010.00E\symnets.sys [2013-2-5 405624] <br/>R2 AMD External Events Utility;AMD External Events Utility;C:\windows\System32\atiesrxx.exe [2011-2-10 202752] <br/>R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-2-17 398184] <br/>R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-2-17 682344] <br/>R2 NIS;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\19.9.1.14\ccsvchst.exe [2013-2-5 138272] <br/>R2 Norton PC Checkup Application Launcher;Toshiba Laptop Checkup Application Launcher;C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\SymcPCCULaunchSvc.exe [2011-2-10 123320] <br/>R2 PCCUJobMgr;Common Client Job Manager Service;C:\Program Files (x86)\Norton PC Checkup\Engine\2.0.3.198\ccSvcHst.exe [2011-2-10 126392] <br/>R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2012-8-13 138912] <br/>R3 FwLnk;FwLnk Driver;C:\windows\System32\drivers\FwLnk.sys [2011-2-10 9216] <br/>R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\windows\System32\drivers\L1C62x64.sys [2010-3-4 75816] <br/>R3 MBAMProtector;MBAMProtector;C:\windows\System32\drivers\mbam.sys [2013-2-17 24176] <br/>R3 PGEffect;Pangu effect driver;C:\windows\System32\drivers\PGEffect.sys [2011-2-10 35008] <br/>R3 TMachInfo;TMachInfo;C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [2011-2-10 51512] <br/>R3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [2010-2-5 137560] <br/>S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] <br/>S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] <br/>S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-1-8 161536] <br/>S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\windows\System32\drivers\RtsUStor.sys [2011-2-10 232992] <br/>S3 TsUsbFlt;TsUsbFlt;C:\windows\System32\drivers\TsUsbFlt.sys [2011-7-1 59392] <br/>S3 USBAAPL64;Apple Mobile USB Driver;C:\windows\System32\drivers\usbaapl64.sys [2012-9-28 53760] <br/>S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\System32\Wat\WatAdminSvc.exe [2011-2-17 1255736] <br/>. <br/>=============== Created Last 30 ================ <br/>. <br/>2013-02-17 10:02:15 -------- d-----w- C:\Users\Pedro Uriostegue\AppData\Roaming\Malwarebytes <br/>2013-02-17 10:01:53 -------- d-----w- C:\ProgramData\Malwarebytes <br/>2013-02-17 10:01:52 24176 ----a-w- C:\windows\System32\drivers\mbam.sys <br/>2013-02-17 10:01:51 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware <br/>2013-02-17 10:01:31 -------- d-----w- C:\Users\Pedro Uriostegue\AppData\Local\Programs <br/>2013-02-17 09:48:24 -------- d-----w- C:\Program Files\CCleaner <br/>2013-02-14 17:01:09 996352 ----a-w- C:\Program Files\Common Files\Microsoft Shared\VGX\VGX.dll <br/>2013-02-14 17:01:09 768000 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll <br/>2013-02-14 00:26:29 5553512 ----a-w- C:\windows\System32\ntoskrnl.exe <br/>2013-02-14 00:26:28 3967848 ----a-w- C:\windows\SysWow64\ntkrnlpa.exe <br/>2013-02-14 00:26:27 3913064 ----a-w- C:\windows\SysWow64\ntoskrnl.exe <br/>2013-02-14 00:26:20 3153408 ----a-w- C:\windows\System32\win32k.sys <br/>2013-02-14 00:26:18 215040 ----a-w- C:\windows\System32\winsrv.dll <br/>2013-02-14 00:26:17 7680 ----a-w- C:\windows\SysWow64\instnm.exe <br/>2013-02-14 00:26:17 5120 ----a-w- C:\windows\SysWow64\wow32.dll <br/>2013-02-14 00:26:17 25600 ----a-w- C:\windows\SysWow64\setup16.exe <br/>2013-02-14 00:26:17 2048 ----a-w- C:\windows\SysWow64\user.exe <br/>2013-02-14 00:26:17 14336 ----a-w- C:\windows\SysWow64\ntvdm64.dll <br/>2013-02-14 00:26:14 288088 ----a-w- C:\windows\System32\drivers\FWPKCLNT.SYS <br/>2013-02-14 00:26:14 1913192 ----a-w- C:\windows\System32\drivers\tcpip.sys <br/>2013-02-06 01:30:13 737952 ----a-w- C:\windows\System32\drivers\NISx64\1309010.00E\srtsp64.sys <br/>2013-02-06 01:30:13 451192 ----a-r- C:\windows\System32\drivers\NISx64\1309010.00E\symds64.sys <br/>2013-02-06 01:30:13 405624 ----a-w- C:\windows\System32\drivers\NISx64\1309010.00E\symnets.sys <br/>2013-02-06 01:30:13 37536 ----a-w- C:\windows\System32\drivers\NISx64\1309010.00E\srtspx64.sys <br/>2013-02-06 01:30:13 190072 ----a-w- C:\windows\System32\drivers\NISx64\1309010.00E\ironx64.sys <br/>2013-02-06 01:30:13 167072 ----a-w- C:\windows\System32\drivers\NISx64\1309010.00E\ccsetx64.sys <br/>2013-02-06 01:30:13 1129120 ----a-w- C:\windows\System32\drivers\NISx64\1309010.00E\symefa64.sys <br/>2013-02-06 01:30:02 -------- d-----w- C:\windows\System32\drivers\NISx64\1309010.00E <br/>2013-01-19 15:21:59 -------- d-----w- C:\a <br/>2013-01-19 15:16:53 -------- d-----w- C:\windows\System32\%LOCALAPPDATA% <br/>. <br/>==================== Find3M ==================== <br/>. <br/>2013-01-09 01:19:09 2312704 ----a-w- C:\windows\System32\jscript9.dll <br/>2013-01-09 01:12:03 1392128 ----a-w- C:\windows\System32\wininet.dll <br/>2013-01-09 01:11:06 1494528 ----a-w- C:\windows\System32\inetcpl.cpl <br/>2013-01-09 01:07:51 173056 ----a-w- C:\windows\System32\ieUnatt.exe <br/>2013-01-09 01:07:47 599040 ----a-w- C:\windows\System32\vbscript.dll <br/>2013-01-09 01:04:42 2382848 ----a-w- C:\windows\System32\mshtml.tlb <br/>2013-01-08 22:11:21 1800704 ----a-w- C:\windows\SysWow64\jscript9.dll <br/>2013-01-08 22:03:20 1129472 ----a-w- C:\windows\SysWow64\wininet.dll <br/>2013-01-08 22:03:12 1427968 ----a-w- C:\windows\SysWow64\inetcpl.cpl <br/>2013-01-08 21:59:02 142848 ----a-w- C:\windows\SysWow64\ieUnatt.exe <br/>2013-01-08 21:58:29 420864 ----a-w- C:\windows\SysWow64\vbscript.dll <br/>2013-01-08 21:56:23 2382848 ----a-w- C:\windows\SysWow64\mshtml.tlb <br/>2013-01-04 04:43:21 44032 ----a-w- C:\windows\apppatch\acwow64.dll <br/>2012-12-20 19:10:12 741 ----a-w- C:\windows\SysWow64\lod1.vbs <br/>2012-12-16 17:11:22 46080 ----a-w- C:\windows\System32\atmlib.dll <br/>2012-12-16 14:45:03 367616 ----a-w- C:\windows\System32\atmfd.dll <br/>2012-12-16 14:13:28 295424 ----a-w- C:\windows\SysWow64\atmfd.dll <br/>2012-12-16 14:13:20 34304 ----a-w- C:\windows\SysWow64\atmlib.dll <br/>2012-12-07 13:20:16 441856 ----a-w- C:\windows\System32\Wpc.dll <br/>2012-12-07 13:15:31 2746368 ----a-w- C:\windows\System32\gameux.dll <br/>2012-12-07 12:26:17 308736 ----a-w- C:\windows\SysWow64\Wpc.dll <br/>2012-12-07 12:20:43 2576384 ----a-w- C:\windows\SysWow64\gameux.dll <br/>2012-12-07 11:20:04 30720 ----a-w- C:\windows\System32\usk.rs <br/>2012-12-07 11:20:03 43520 ----a-w- C:\windows\System32\csrr.rs <br/>2012-12-07 11:20:03 23552 ----a-w- C:\windows\System32\oflc.rs <br/>2012-12-07 11:20:01 45568 ----a-w- C:\windows\System32\oflc-nz.rs <br/>2012-12-07 11:20:01 44544 ----a-w- C:\windows\System32\pegibbfc.rs <br/>2012-12-07 11:20:01 20480 ----a-w- C:\windows\System32\pegi-fi.rs <br/>2012-12-07 11:20:00 20480 ----a-w- C:\windows\System32\pegi-pt.rs <br/>2012-12-07 11:19:59 20480 ----a-w- C:\windows\System32\pegi.rs <br/>2012-12-07 11:19:58 46592 ----a-w- C:\windows\System32\fpb.rs <br/>2012-12-07 11:19:57 40960 ----a-w- C:\windows\System32\cob-au.rs <br/>2012-12-07 11:19:57 21504 ----a-w- C:\windows\System32\grb.rs <br/>2012-12-07 11:19:57 15360 ----a-w- C:\windows\System32\djctq.rs <br/>2012-12-07 11:19:56 55296 ----a-w- C:\windows\System32\cero.rs <br/>2012-12-07 11:19:55 51712 ----a-w- C:\windows\System32\esrb.rs <br/>2012-12-04 00:33:28 76384 ----a-w- C:\windows\SysWow64\libusb0.dll <br/>2012-12-04 00:33:28 52832 ----a-w- C:\windows\SysWow64\drivers\libusb0.sys <br/>2012-11-30 05:45:35 362496 ----a-w- C:\windows\System32\wow64win.dll <br/>2012-11-30 05:45:35 243200 ----a-w- C:\windows\System32\wow64.dll <br/>2012-11-30 05:45:35 13312 ----a-w- C:\windows\System32\wow64cpu.dll <br/>2012-11-30 05:43:12 16384 ----a-w- C:\windows\System32\ntvdm64.dll <br/>2012-11-30 05:41:07 424448 ----a-w- C:\windows\System32\KernelBase.dll <br/>2012-11-30 04:53:59 274944 ----a-w- C:\windows\SysWow64\KernelBase.dll <br/>2012-11-30 03:23:48 338432 ----a-w- C:\windows\System32\conhost.exe <br/>2012-11-30 02:38:59 6144 ---ha-w- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll <br/>2012-11-30 02:38:59 4608 ---ha-w- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll <br/>2012-11-30 02:38:59 3584 ---ha-w- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll <br/>2012-11-30 02:38:59 3072 ---ha-w- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll <br/>2012-11-23 03:13:57 68608 ----a-w- C:\windows\System32\taskhost.exe <br/>2012-11-22 05:44:23 800768 ----a-w- C:\windows\System32\usp10.dll <br/>2012-11-22 04:45:03 626688 ----a-w- C:\windows\SysWow64\usp10.dll <br/>2012-11-20 05:48:49 307200 ----a-w- C:\windows\System32\ncrypt.dll <br/>2012-11-20 04:51:09 220160 ----a-w- C:\windows\SysWow64\ncrypt.dll <br/>. <br/>============= FINISH: 10:56:36.44 =============== <br/> <br/> <br/> <br/>. <br/>UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG. <br/>IF REQUESTED, ZIP IT UP & ATTACH IT <br/>. <br/>DDS (Ver_2012-11-20.01) <br/>. <br/>Microsoft Windows 7 Home Premium <br/>Boot Device: \Device\HarddiskVolume1 <br/>Install Date: 2/15/2011 9:20:00 PM <br/>System Uptime: 2/17/2013 10:30:39 AM (0 hours ago) <br/>. <br/>Motherboard: TOSHIBA | | Portable PC <br/>Processor: AMD Athlon(tm) II P360 Dual-Core Processor | Socket S1G4 | 2300/200mhz <br/>. <br/>==== Disk Partitions ========================= <br/>. <br/>C: is FIXED (NTFS) - 287 GiB total, 204.136 GiB free. <br/>D: is CDROM () <br/>. <br/>==== Disabled Device Manager Items ============= <br/>. <br/>Class GUID: {4d36e972-e325-11ce-bfc1-08002be10318} <br/>Description: Cisco Systems VPN Adapter for 64-bit Windows <br/>Device ID: ROOT\NET\0000 <br/>Manufacturer: Cisco Systems <br/>Name: Cisco Systems VPN Adapter for 64-bit Windows <br/>PNP Device ID: ROOT\NET\0000 <br/>Service: CVirtA <br/>. <br/>==== System Restore Points =================== <br/>. <br/>No restore point in system. <br/>. <br/>==== Installed Programs ====================== <br/>. <br/>Adobe Flash Player 10 ActiveX <br/>Adobe Flash Player 10 Plugin <br/>Adobe Reader 9.5.0 <br/>Amazon Links <br/>Apple Application Support <br/>Apple Mobile Device Support <br/>Apple Software Update <br/>Ask Toolbar Updater <br/>Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver <br/>Atheros Driver Installation Program <br/>ATI Catalyst Install Manager <br/>Bejeweled 2 Deluxe <br/>Bonjour <br/>Build-a-lot 2 <br/>Catalyst Control Center - Branding <br/>Catalyst Control Center Core Implementation <br/>Catalyst Control Center Graphics Full Existing <br/>Catalyst Control Center Graphics Full New <br/>Catalyst Control Center Graphics Light <br/>Catalyst Control Center Graphics Previews Common <br/>Catalyst Control Center Graphics Previews Vista <br/>Catalyst Control Center InstallProxy <br/>Catalyst Control Center Localization All <br/>ccc-core-static <br/>ccc-utility64 <br/>CCC Help Chinese Standard <br/>CCC Help Chinese Traditional <br/>CCC Help Czech <br/>CCC Help Danish <br/>CCC Help Dutch <br/>CCC Help English <br/>CCC Help Finnish <br/>CCC Help French <br/>CCC Help German <br/>CCC Help Greek <br/>CCC Help Hungarian <br/>CCC Help Italian <br/>CCC Help Japanese <br/>CCC Help Korean <br/>CCC Help Norwegian <br/>CCC Help Polish <br/>CCC Help Portuguese <br/>CCC Help Russian <br/>CCC Help Spanish <br/>CCC Help Swedish <br/>CCC Help Thai <br/>CCC Help Turkish <br/>CCleaner <br/>Chuzzle Deluxe <br/>Cisco Systems VPN Client 5.0.07.0290 <br/>Conexant HD Audio <br/>Curse Client <br/>D3DX10 <br/>Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition <br/>Facebook Video Calling 1.2.0.159 <br/>FATE <br/>Google Chrome <br/>Google Talk Plugin <br/>Google Update Helper <br/>iCloud <br/>iTunes <br/>Java Auto Updater <br/>Java(TM) 6 Update 35 <br/>Jewel Quest - Heritage <br/>Junk Mail filter update <br/>Label@Once 1.0 <br/>League of Legends <br/>Malwarebytes Anti-Malware version 1.70.0.1100 <br/>Microsoft .NET Framework 4 Client Profile <br/>Microsoft Application Error Reporting <br/>Microsoft IntelliPoint 8.2 <br/>Microsoft Office 2010 <br/>Microsoft Office 2010 Service Pack 1 (SP1) <br/>Microsoft Office Access MUI (English) 2010 <br/>Microsoft Office Access Setup Metadata MUI (English) 2010 <br/>Microsoft Office Excel MUI (English) 2010 <br/>Microsoft Office Office 64-bit Components 2010 <br/>Microsoft Office OneNote MUI (English) 2010 <br/>Microsoft Office Outlook MUI (English) 2010 <br/>Microsoft Office PowerPoint MUI (English) 2010 <br/>Microsoft Office Professional 2010 <br/>Microsoft Office Proof (English) 2010 <br/>Microsoft Office Proof (French) 2010 <br/>Microsoft Office Proof (Spanish) 2010 <br/>Microsoft Office Proofing (English) 2010 <br/>Microsoft Office Publisher MUI (English) 2010 <br/>Microsoft Office Shared 64-bit MUI (English) 2010 <br/>Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2010 <br/>Microsoft Office Shared MUI (English) 2010 <br/>Microsoft Office Shared Setup Metadata MUI (English) 2010 <br/>Microsoft Office Single Image 2010 <br/>Microsoft Office Word MUI (English) 2010 <br/>Microsoft Silverlight <br/>Microsoft SQL Server 2005 Compact Edition [ENU] <br/>Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 <br/>Microsoft Visual C++ 2005 Redistributable <br/>Microsoft Visual C++ 2008 Redistributable - KB2467174 - x64 9.0.30729.5570 <br/>Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 <br/>Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 <br/>Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 <br/>Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 <br/>Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 <br/>Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 <br/>Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 <br/>Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 <br/>Mozilla Firefox (3.6.23) <br/>MSVCRT <br/>MSVCRT_amd64 <br/>Norton Internet Security <br/>Pando Media Booster <br/>Plants vs. Zombies <br/>PlayReady PC Runtime amd64 <br/>Polar Bowler <br/>PopCap Browser Plugin <br/>Quickbooks Financial Center <br/>QuickTime <br/>RealNetworks - Microsoft Visual C++ 2008 Runtime <br/>RealPlayer <br/>Realtek USB 2.0 Card Reader <br/>RealUpgrade 1.1 <br/>Recuva <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2539636) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2572078) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2633870) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595) <br/>Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642) <br/>Security Update for Microsoft Excel 2010 (KB2597126) 32-Bit Edition <br/>Security Update for Microsoft InfoPath 2010 (KB2687417) 32-Bit Edition <br/>Security Update for Microsoft Office 2010 (KB2553091) <br/>Security Update for Microsoft Office 2010 (KB2553096) <br/>Security Update for Microsoft Office 2010 (KB2553371) 32-Bit Edition <br/>Security Update for Microsoft Office 2010 (KB2553447) 32-Bit Edition <br/>Security Update for Microsoft Office 2010 (KB2589320) 32-Bit Edition <br/>Security Update for Microsoft Office 2010 (KB2597986) 32-Bit Edition <br/>Security Update for Microsoft Office 2010 (KB2598243) 32-Bit Edition <br/>Security Update for Microsoft Office 2010 (KB2687501) 32-Bit Edition <br/>Security Update for Microsoft Office 2010 (KB2687510) 32-Bit Edition <br/>Security Update for Microsoft Visio Viewer 2010 (KB2598287) 32-Bit Edition <br/>Security Update for Microsoft Word 2010 (KB2760410) 32-Bit Edition <br/>Skype Click to Call <br/>Skype Launcher <br/>Skype™ 6.1 <br/>Synaptics Pointing Device Driver <br/>Toshiba App Place <br/>TOSHIBA Application Installer <br/>TOSHIBA Assist <br/>Toshiba Book Place <br/>TOSHIBA Bulletin Board <br/>TOSHIBA Disc Creator <br/>TOSHIBA Face Recognition <br/>TOSHIBA Hardware Setup <br/>TOSHIBA HDD/SSD Alert <br/>Toshiba Laptop Checkup <br/>TOSHIBA Media Controller <br/>TOSHIBA Media Controller Plug-in <br/>Toshiba Online Backup <br/>TOSHIBA Quality Application <br/>TOSHIBA Recovery Media Creator <br/>TOSHIBA ReelTime <br/>TOSHIBA Service Station <br/>TOSHIBA Supervisor Password <br/>TOSHIBA Value Added Package <br/>TOSHIBA Web Camera Application <br/>ToshibaRegistration <br/>Update for Microsoft .NET Framework 4 Client Profile (KB2468871) <br/>Update for Microsoft .NET Framework 4 Client Profile (KB2473228) <br/>Update for Microsoft .NET Framework 4 Client Profile (KB2533523) <br/>Update for Microsoft .NET Framework 4 Client Profile (KB2600217) <br/>Update for Microsoft Office 2010 (KB2494150) <br/>Update for Microsoft Office 2010 (KB2553065) <br/>Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition <br/>Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition <br/>Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition <br/>Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition <br/>Update for Microsoft Office 2010 (KB2566458) <br/>Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition <br/>Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition <br/>Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition <br/>Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition <br/>Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition <br/>Update for Microsoft OneNote 2010 (KB2687277) 32-Bit Edition <br/>Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition <br/>Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition <br/>Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition <br/>Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition <br/>Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition <br/>uTorrentControl2 Toolbar <br/>Ventrilo Client <br/>Virtual Villagers 4 - The Tree of Life <br/>Wheel of Fortune 2 <br/>WildTangent Games <br/>WildTangent ORB Game Console <br/>Windows Live Communications Platform <br/>Windows Live Essentials <br/>Windows Live ID Sign-in Assistant <br/>Windows Live Installer <br/>Windows Live Language Selector <br/>Windows Live Mail <br/>Windows Live Messenger <br/>Windows Live MIME IFilter <br/>Windows Live Movie Maker <br/>Windows Live Photo Common <br/>Windows Live Photo Gallery <br/>Windows Live PIMT Platform <br/>Windows Live SOXE <br/>Windows Live SOXE Definitions <br/>Windows Live Sync <br/>Windows Live UX Platform <br/>Windows Live UX Platform Language Pack <br/>Windows Live Writer <br/>Windows Live Writer Resources <br/>WinRAR 4.20 (64-bit) <br/>Wondershare Dr.Fone (iPhone 4)(Build 1.5.1.0) <br/>World of Warcraft <br/>Yahoo! Detect <br/>Zuma's Revenge <br/>. <br/>==== Event Viewer Messages From Past Week ======== <br/>. <br/>2/17/2013 9:10:02 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the Wlansvc service. <br/>2/17/2013 2:44:44 AM, Error: Service Control Manager [7031] - The Windows Event Log service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. <br/>2/17/2013 2:44:44 AM, Error: Service Control Manager [7031] - The Windows Audio service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. <br/>2/17/2013 2:44:44 AM, Error: Service Control Manager [7031] - The TCP/IP NetBIOS Helper service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 100 milliseconds: Restart the service. <br/>2/17/2013 2:44:44 AM, Error: Service Control Manager [7031] - The Security Center service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service. <br/>2/17/2013 2:44:44 AM, Error: Service Control Manager [7031] - The DHCP Client service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service. <br/>2/17/2013 2:44:24 AM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the eventlog service. <br/>2/17/2013 2:44:07 AM, Error: volsnap [14] - The shadow copies of volume C: were aborted because of an IO failure on volume C:. <br/>2/17/2013 10:33:49 AM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Google Update Service (gupdate) service to connect. <br/>2/17/2013 10:33:49 AM, Error: Service Control Manager [7000] - The Google Update Service (gupdate) service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion. <br/>2/17/2013 10:32:08 AM, Error: Service Control Manager [7032] - The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the Windows Search service, but this action failed with the following error: An instance of the service is already running. <br/>2/17/2013 10:31:38 AM, Error: Service Control Manager [7031] - The Windows Search service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 30000 milliseconds: Restart the service. <br/>2/17/2013 10:31:38 AM, Error: Service Control Manager [7024] - The Windows Search service terminated with service-specific error %%-1073473535. <br/>2/15/2013 10:18:38 PM, Error: atapi [11] - The driver detected a controller error on \Device\Ide\IdePort0. <br/>2/14/2013 11:14:36 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x000000d1 (0x0000000000000010, 0x0000000000000002, 0x0000000000000000, 0xfffff880016f4ac4). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 021413-52525-01. <br/>2/13/2013 8:25:45 PM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x0000007a (0xfffff6fc500328e0, 0xffffffffc0000185, 0x00000000c2a05880, 0xfffff8a00651c380). A dump was saved in: C:\windows\MEMORY.DMP. Report Id: 021313-81338-01. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The WLAN AutoConfig service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The Windows Driver Foundation - User-mode Driver Framework service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The Windows Audio Endpoint Builder service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The Tablet PC Input Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The Superfetch service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The Program Compatibility Assistant Service service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The Network Connections service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 100 milliseconds: Restart the service. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The Distributed Link Tracking Client service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service. <br/>2/11/2013 1:36:57 PM, Error: Service Control Manager [7031] - The Desktop Window Manager Session Manager service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 120000 milliseconds: Restart the service. <br/>2/11/2013 1:36:56 PM, Error: Service Control Manager [7011] - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the WerSvc service. <br/>. <br/>==== End Of File ===========================
  • Unread posts or replies
  • No unread posts or replies
  • Unread Posts (Read Only Forum)
  • No Unread Posts (Read Only Forum)

Forum Information

Currently it is Saturday, December 3, 2016, 12:46 PM (GMT +1)
There are a total of 61,158 posts in 13,448 threads.
In the last 3 days there were 2 new threads and 2 reply posts.

Who's online

This forum has 37,967 registered members. Please welcome our newest member, Tipz2k16.
There are currently no users on-line.