WiredWX Christian Hobby Weather Tools
Would you like to react to this message? Create an account in a few clicks or log in to continue.

WiredWX Christian Hobby Weather ToolsLog in

 


descriptionaswMBR help! EmptyaswMBR help!

more_horiz
Been trying to see if I have a keylogger on my system, so far everything points to no (malwarebytes,avast,kaspersky) so I decided to run aswMBR... does this mean im infected or clean?


aswMBR version 0.9.5.256 Copyright(c) 2011 AVAST Software
Run date: 2011-05-25 07:04:02
-----------------------------
07:04:02.354 OS Version: Windows x64 6.1.7600
07:04:02.354 Number of processors: 2 586 0x170A
07:04:02.356 ComputerName: ALEXMINCHEW-PC UserName: Alex Minchew
07:04:04.660 Initialize success
07:04:06.788 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\00000066
07:04:06.790 Disk 0 Vendor: ST375052 CC44 Size: 715404MB BusType: 3
07:04:08.812 Disk 0 MBR read successfully
07:04:08.815 Disk 0 MBR scan
07:04:08.816 Disk 0 unknown MBR code
07:04:08.819 Service scanning
07:04:10.201 Disk 0 trace - called modules:
07:04:10.226 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys >>UNKNOWN [0xfffffa80049d22c0]<<
07:04:10.228 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004c841f0]
07:04:10.232 3 CLASSPNP.SYS[fffff88001a5543f] -> nt!IofCallDriver -> [0xfffffa8004b15d10]
07:04:10.236 5 ACPI.sys[fffff88001095781] -> nt!IofCallDriver -> \Device\00000066[0xfffffa8004b17690]
07:04:10.241 \Driver\nvstor64[0xfffffa8004b0b500] -> IRP_MJ_CREATE -> 0xfffffa80049d22c0
07:04:10.246 Scan finished successfully
07:04:19.737 Disk 0 MBR has been saved successfully to "C:\Users\Alex Minchew\Documents\MBR.dat"
07:04:19.756 The log file has been saved successfully to "C:\Users\Alex Minchew\Documents\aswMBR.txt"

descriptionaswMBR help! EmptyRe: aswMBR help!

more_horiz
Oh, I also forgot to mention.. my computer isnt in any real danger, it works just fine yet my WoW account has been constantly compromised since last week and so far the issue seems to be some sort of keylogger. I BELIEVE I have removed it but ive been doing all sorts of scans juuust to be sure my computer is in tip top condition.

descriptionaswMBR help! EmptyRe: aswMBR help!

more_horiz
Hi Heroshi and Welcome to GeekPolice!

Your log is fine. As for World of Warcraft, this is with WOW itself and not your computer. But let's make sure:


We need to look at some information about what is going on in your computer:

Please perform the following scan:

  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explanation about the tool.
  • When done, DDS will open two (2) logs
    1. DDS.txt
    2. Attach.txt
  • Save both reports to your desktop.
  • The instructions here ask you to attach the Attach.txt.
    aswMBR help! DDS

  • Instead of attaching, please copy/past both logs into your Thread

  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run.
After downloading the tool, disconnect from the internet and disable all antivirus protection.
Run the scan, enable your A/V and reconnect to the internet.
Information on A/V control HEREThen post your DDS (DDS.txt and Attach.txt

descriptionaswMBR help! EmptyRe: aswMBR help!

more_horiz
Here is the DDS report




.
DDS (Ver_11-05-19.01) - NTFSx86
Internet Explorer: 8.0.7600.16385
Run by Alex Minchew at 9:18:09 on 2011-05-25
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.3839.1822 [GMT -4:00]
.
AV: Kaspersky Anti-Virus *Disabled/Updated* {56547CC9-C9B2-849D-8FEF-A496150D6A06}
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Kaspersky Anti-Virus *Disabled/Updated* {ED359D2D-EF88-8B13-B55F-9FE46E8A20BB}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe
C:\Users\Alex Minchew\Documents\Zsnes\hamachi-2.exe
C:\Program Files (x86)\HiPatchService.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Windows\SysWOW64\PnkBstrA.exe
C:\Windows\SysWOW64\WinService.exe
C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Users\Alex Minchew\Documents\Diablo\DAEMON Tools Lite\DTLite.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\WUDFHost.exe
C:\Program Files (x86)\NETGEAR\WG111v2\WG111v2.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Users\Alex Minchew\Documents\Zsnes\hamachi-2-ui.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\ctfmon.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Skype\Plugin Manager\skypePM.exe
C:\Windows\system32\taskhost.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\wuauclt.exe
C:\Users\Alex Minchew\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Alex Minchew\Downloads\aswMBR (1).exe
C:\Windows\system32\NOTEPAD.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Alex Minchew\Downloads\dds.scr
C:\Windows\SysWOW64\WSCRIPT.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.ask.com?o=102868&l=dis&gct=hp
uDefault_Page_URL = hxxp://homepage.emachines.com/rdr.aspx?b=ACEW&l=0409&m=et1831&r=173611092206p0305v155r4741s28q
uSearch Page =
uSearch Bar =
mDefault_Page_URL = hxxp://homepage.emachines.com/rdr.aspx?b=ACEW&l=0409&m=et1831&r=173611092206p0305v155r4741s28q
mStart Page = hxxp://homepage.emachines.com/rdr.aspx?b=ACEW&l=0409&m=et1831&r=173611092206p0305v155r4741s28q
mWinlogon: Userinit=userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: IEVkbdBHO Class: {59273ab4-e7d3-40f9-a1a8-6fa9cca1862c} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\ievkbd.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: FilterBHO Class: {e33cf602-d945-461a-83f0-819f76a199f8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
uRun: [Global Registration] "C:\Program Files (x86)\eMachines\Registration\GREG.exe" BOOT
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
uRun: [igndlm.exe] C:\Program Files (x86)\Download Manager\DLM.exe /windowsstart /startifwork
uRun: [DAEMON Tools Lite] "C:\Users\Alex Minchew\Documents\Diablo\DAEMON Tools Lite\DTLite.exe" -autorun
uRun: [GateWay] C:\Users\Alex Minchew\Documents\Gravity\GateWayMain.exe
uRun: [Google Update] "C:\Users\Alex Minchew\AppData\Local\Google\Update\GoogleUpdate.exe" /c
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [LogMeIn Hamachi Ui] "C:\Users\Alex Minchew\Documents\Zsnes\hamachi-2-ui.exe" --auto-start
mRun: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRun: [avp] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe"
mRun: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
StartupFolder: C:\Users\ALEXMI~1\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\PCRPGC~1.LNK - C:\Users\Alex Minchew\AppData\Roaming\Microsoft\Installer\{18B91BF0-501A-4E57-AD77-8C4722D40B8A}\_41D28FD1B49BBD84566CA6.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\NETGEA~1.LNK - C:\Program Files (x86)\NETGEAR\WG111v2\WG111v2.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
IE: {4248FE82-7FCB-46AC-B270-339F08212110} - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
IE: {CCF151D8-D089-449F-A5A4-D9909053F20F} - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\klwtbbho.dll
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
DPF: {140E4DF8-9E14-4A34-9577-C77561ED7883} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.1.71.0.cab
DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} - hxxp://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - hxxp://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.10.115.cab
DPF: {40F576AD-8680-4F9E-9490-99D069CD665F} - hxxp://srtest-cdn.systemrequirementslab.com.s3.amazonaws.com/bin/sysreqlabdetect.cab
DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/Default/mjss/MJSS.cab109791.cab
DPF: {5AC92D18-A752-4CDC-90FD-7B923A4832E8} - hxxp://mgameweb.nefficient.co.kr/mgameweb/download/cab/mgwirc_v1005.cab
DPF: {5D6F45B3-9043-443D-A792-115447494D24} - hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/Default/uno1/GAME_UNO1.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {BC1B2B87-020B-41B4-B654-AA594DF17C9C} - hxxp://mgameweb.nefficient.co.kr/mgameweb/download/cab/mglaunch_v1019.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {E6F480FC-BD44-4CBA-B74A-89AF7842937D} - hxxp://content.systemrequirementslab.com.s3.amazonaws.com/global/bin/srldetect_cyri_4.4.16.0.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
AppInit_DLLs: C:\PROGRA~2\KASPER~1\KASPER~1\mzvkbd3.dll
BHO-X64: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
BHO-X64: IEVkbdBHO Class: {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\ievkbd.dll
BHO-X64: IEVkbdBHO - No File
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: FilterBHO Class: {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\x64\klwtbbho.dll
BHO-X64: link filter bho - No File
TB-X64: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll
TB-X64: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
mRun-x64: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
.
============= SERVICES / DRIVERS ===============
.
R0 SCMNdisP;General NDIS Protocol Driver;C:\Windows\system32\DRIVERS\scmndisp.sys --> C:\Windows\system32\DRIVERS\scmndisp.sys [?]
R1 aswSnx;aswSnx;C:\Windows\system32\drivers\aswSnx.sys --> C:\Windows\system32\drivers\aswSnx.sys [?]
R1 aswSP;aswSP;C:\Windows\system32\drivers\aswSP.sys --> C:\Windows\system32\drivers\aswSP.sys [?]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\system32\DRIVERS\dtsoftbus01.sys --> C:\Windows\system32\DRIVERS\dtsoftbus01.sys [?]
R1 kl2;kl2;C:\Windows\system32\DRIVERS\kl2.sys --> C:\Windows\system32\DRIVERS\kl2.sys [?]
R1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;C:\Windows\system32\DRIVERS\klim6.sys --> C:\Windows\system32\DRIVERS\klim6.sys [?]
R2 aswFsBlk;aswFsBlk;C:\Windows\system32\drivers\aswFsBlk.sys --> C:\Windows\system32\drivers\aswFsBlk.sys [?]
R2 aswMonFlt;aswMonFlt;\??\C:\Windows\system32\drivers\aswMonFlt.sys --> C:\Windows\system32\drivers\aswMonFlt.sys [?]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2011-5-24 42184]
R2 Greg_Service;GRegService;C:\Program Files (x86)\eMachines\Registration\GregHSRW.exe [2009-6-4 1150496]
R2 Hamachi2Svc;LogMeIn Hamachi 2.0 Tunneling Engine;C:\Users\Alex Minchew\Documents\Zsnes\hamachi-2.exe [2010-12-6 2101640]
R2 HiPatchService;Hi-Rez Studios Authenticate and Update Service;C:\Program Files (x86)\HiPatchService.exe [2010-9-30 23680]
R2 SCM_Service;SCM_Service;C:\Windows\SysWOW64\WinService.exe [2009-11-27 180224]
R2 Updater Service;Updater Service;C:\Program Files\eMachines\eMachines Updater\UpdaterService.exe [2009-8-14 240160]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
R3 RTL8187;NETGEAR WG111v2 54Mbps Wireless USB 2.0 Adapter Vista Driver;C:\Windows\system32\DRIVERS\wg111v2.sys --> C:\Windows\system32\DRIVERS\wg111v2.sys [?]
R3 VCSVADHWSer;Avnex Virtual Audio Device (WDM);C:\Windows\system32\DRIVERS\vcsvad.sys --> C:\Windows\system32\DRIVERS\vcsvad.sys [?]
S2 AVP;Kaspersky Anti-Virus Service;C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2011\avp.exe [2010-11-2 365336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-18 136176]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-4-18 136176]
S3 klmouflt;Kaspersky Lab KLMOUFLT;C:\Windows\system32\DRIVERS\klmouflt.sys --> C:\Windows\system32\DRIVERS\klmouflt.sys [?]
S3 lvpopf64;Logitech POP Suppression Filter;C:\Windows\system32\DRIVERS\lvpopf64.sys --> C:\Windows\system32\DRIVERS\lvpopf64.sys [?]
S3 LVRS64;Logitech RightSound Filter Driver;C:\Windows\system32\DRIVERS\lvrs64.sys --> C:\Windows\system32\DRIVERS\lvrs64.sys [?]
S3 LVUVC64;Logitech HD Webcam C310(UVC);C:\Windows\system32\DRIVERS\lvuvc64.sys --> C:\Windows\system32\DRIVERS\lvuvc64.sys [?]
S3 ManyCam;ManyCam Virtual Webcam, WDM Video Capture Driver;C:\Windows\system32\DRIVERS\ManyCam_x64.sys --> C:\Windows\system32\DRIVERS\ManyCam_x64.sys [?]
S3 npggsvc;nProtect GameGuard Service;C:\Windows\system32\GameMon.des -service --> C:\Windows\system32\GameMon.des -service [?]
S3 ScreamBAudioSvc;ScreamBee Audio;C:\Windows\system32\drivers\ScreamingBAudio64.sys --> C:\Windows\system32\drivers\ScreamingBAudio64.sys [?]
S3 UsbFltr;WayTech USB Filter Driver;C:\Windows\system32\Drivers\UsbFltr.sys --> C:\Windows\system32\Drivers\UsbFltr.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2011-05-25 02:25:06 27008 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
2011-05-25 02:22:56 8718160 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{54512A8E-0459-45BB-BF48-9749F33EFAAE}\mpengine.dll
2011-05-25 00:36:41 -------- d-----w- C:\ProgramData\Kaspersky Lab
2011-05-25 00:36:41 -------- d-----w- C:\Program Files (x86)\Kaspersky Lab
2011-05-25 00:34:38 -------- d-----w- C:\ProgramData\Kaspersky Lab Setup Files
2011-05-24 18:51:12 142336 ----a-w- C:\Windows\System32\poqexec.exe
2011-05-24 18:51:12 123904 ----a-w- C:\Windows\SysWow64\poqexec.exe
2011-05-24 04:05:14 600920 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2011-05-24 04:05:12 64344 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2011-05-24 04:05:03 40112 ----a-w- C:\Windows\avastSS.scr
2011-05-24 04:04:52 -------- d-----w- C:\ProgramData\AVAST Software
2011-05-24 04:04:52 -------- d-----w- C:\Program Files\AVAST Software
2011-05-24 03:26:56 -------- d-----w- C:\Users\Alex Minchew\AppData\Roaming\AVG10
2011-05-24 03:25:43 -------- d--h--w- C:\ProgramData\Common Files
2011-05-24 03:24:20 -------- d-----w- C:\ProgramData\AVG10
2011-05-24 03:23:29 -------- d-----w- C:\Program Files (x86)\AVG
2011-05-24 03:16:09 -------- d-----w- C:\ProgramData\MFAData
2011-05-21 21:58:51 -------- d-----w- C:\Windows\SysWow64\xlive
2011-05-21 21:58:42 -------- d-----w- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2011-05-20 07:02:04 -------- d-----w- C:\Users\Alex Minchew\AppData\Roaming\Malwarebytes
2011-05-20 07:01:58 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2011-05-20 07:01:58 -------- d-----w- C:\ProgramData\Malwarebytes
2011-05-20 07:01:55 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-05-20 07:01:55 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-05-19 17:12:44 -------- d-----w- C:\ProgramData\Skype Extras
2011-05-19 04:02:16 -------- d-----w- C:\Users\Alex Minchew\AppData\Local\The Witcher
2011-05-18 21:56:11 -------- d-----w- C:\Program Files (x86)\The Witcher Enhanced Edition
2011-05-17 22:42:18 -------- d-----w- C:\Program Files (x86)\Free YouTube Downloader
2011-05-17 22:30:51 -------- d-----w- C:\Program Files\Sony
2011-05-17 21:52:56 -------- d-----w- C:\Users\Alex Minchew\AppData\Local\Sony
2011-05-17 21:50:19 -------- d-----w- C:\Program Files (x86)\Sony
2011-05-16 02:48:18 -------- d-----w- C:\Users\Alex Minchew\AppData\Roaming\UDP Software
2011-05-14 19:19:43 -------- d-----w- C:\Fraps
2011-05-11 21:34:54 5509504 ----a-w- C:\Windows\System32\ntoskrnl.exe
2011-05-11 21:34:51 3957632 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2011-05-11 21:34:51 3901824 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2011-05-11 21:34:40 98816 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2011-05-11 21:34:40 52224 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2011-05-11 21:34:40 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2011-05-11 21:34:40 324608 ----a-w- C:\Windows\System32\drivers\usbport.sys
2011-05-11 21:34:40 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2011-05-11 21:34:40 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2011-05-11 21:34:39 7936 ----a-w- C:\Windows\System32\drivers\usbd.sys
2011-05-05 07:36:08 79256 ----a-w- C:\Windows\SysWow64\npOGPPlugin.dll
2011-05-05 07:36:07 271768 ----a-w- C:\Windows\SysWow64\OGPIEPlugin.ocx
2011-05-05 07:08:15 -------- d-----w- C:\Program Files (x86)\OGPlanet
2011-05-05 02:28:12 -------- d-----w- C:\Users\Alex Minchew\AppData\Roaming\Dwarfs
2011-05-01 17:41:55 -------- d-----w- C:\Program Files (x86)\LucasArts
2011-04-26 19:52:48 -------- d-----w- C:\Users\Alex Minchew\AppData\Roaming\Need for Speed World
2011-04-26 19:27:27 -------- d-----w- C:\Users\Alex Minchew\AppData\Local\Electronic_Arts_Inc
.
==================== Find3M ====================
.
2011-04-20 13:43:35 94208 ----a-w- C:\Windows\DIIUnin.exe
2011-04-20 13:43:35 2829 ----a-w- C:\Windows\DIIUnin.pif
2011-04-16 04:13:54 466456 ----a-w- C:\Windows\System32\wrap_oal.dll
2011-04-16 04:13:54 122904 ----a-w- C:\Windows\System32\OpenAL32.dll
2011-04-16 04:13:53 444952 ----a-w- C:\Windows\SysWow64\wrap_oal.dll
2011-04-16 04:13:53 109080 ----a-w- C:\Windows\SysWow64\OpenAL32.dll
2011-04-09 22:55:44 15453336 ----a-w- C:\Windows\SysWow64\xlive.dll
2011-04-09 22:55:42 13642904 ----a-w- C:\Windows\SysWow64\xlivefnt.dll
2011-03-26 18:45:35 258352 ----a-w- C:\Windows\SysWow64\unicows.dll
2011-03-18 02:27:15 1890 --sha-w- C:\ProgramData\KGyGaAvL.sys
2011-03-12 12:03:46 662528 ----a-w- C:\Windows\System32\XpsPrint.dll
2011-03-12 11:31:58 442880 ----a-w- C:\Windows\SysWow64\XpsPrint.dll
2011-03-11 06:23:13 187264 ----a-w- C:\Windows\System32\drivers\storport.sys
2011-03-11 06:23:06 166272 ----a-w- C:\Windows\System32\drivers\nvstor.sys
2011-03-11 06:23:06 1657216 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2011-03-11 06:23:06 148352 ----a-w- C:\Windows\System32\drivers\nvraid.sys
2011-03-11 06:23:00 410496 ----a-w- C:\Windows\System32\drivers\iaStorV.sys
2011-03-11 06:22:41 107904 ----a-w- C:\Windows\System32\drivers\amdsata.sys
2011-03-11 06:22:40 27008 ----a-w- C:\Windows\System32\drivers\amdxata.sys
2011-03-11 06:19:26 1395712 ----a-w- C:\Windows\System32\mfc42.dll
2011-03-11 06:19:26 1359872 ----a-w- C:\Windows\System32\mfc42u.dll
2011-03-11 06:18:20 2566144 ----a-w- C:\Windows\System32\esent.dll
2011-03-11 06:15:54 96768 ----a-w- C:\Windows\System32\fsutil.exe
2011-03-11 05:40:24 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll
2011-03-11 05:40:24 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll
2011-03-11 05:39:35 1686016 ----a-w- C:\Windows\SysWow64\esent.dll
2011-03-11 05:37:34 74240 ----a-w- C:\Windows\SysWow64\fsutil.exe
2011-03-08 06:14:30 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2011-03-08 05:38:13 740864 ----a-w- C:\Windows\SysWow64\inetcomm.dll
2011-03-04 06:17:25 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll
2011-03-04 06:17:24 347648 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll
2011-03-03 06:17:10 182272 ----a-w- C:\Windows\System32\dnsrslvr.dll
2011-03-03 06:14:38 30208 ----a-w- C:\Windows\System32\dnscacheugc.exe
2011-03-03 05:27:30 28672 ----a-w- C:\Windows\SysWow64\dnscacheugc.exe
2011-03-03 03:58:32 3133440 ----a-w- C:\Windows\System32\win32k.sys
2011-02-26 06:23:14 2870272 ----a-w- C:\Windows\explorer.exe
2011-02-26 05:33:07 2614784 ----a-w- C:\Windows\SysWow64\explorer.exe
2011-02-25 19:47:17 40064 ----a-w- C:\Program Files (x86)\HiPatchInstHelper.exe
2011-02-25 19:47:17 2059392 ----a-w- C:\Program Files (x86)\HiRezLauncherUI.exe
2011-02-25 19:47:16 23680 ----a-w- C:\Program Files (x86)\HiPatchService.exe
2011-02-25 19:47:05 40960 ----a-w- C:\Program Files (x86)\HiPatchMasterServer.dll
2011-02-25 19:47:05 122880 ----a-w- C:\Program Files (x86)\PatcherEngine.dll
2011-02-21 22:35:14 45056 ----a-w- C:\Program Files (x86)\PatcherData.dll
2011-02-21 22:35:14 24576 ----a-w- C:\Program Files (x86)\RTPatch.dll
2010-12-21 16:04:51 94208 ----a-w- C:\Program Files (x86)\HirezUtils.dll
2010-11-12 13:10:44 20480 ----a-w- C:\Program Files (x86)\HiPatchSelfUpdateWindow.exe
2010-11-12 13:10:41 20480 ----a-w- C:\Program Files (x86)\GlobalAgendaLauncherControls.dll
2010-08-20 18:38:30 146 ----a-w- C:\Program Files (x86)\Uninstall.cmd
2010-04-02 22:01:00 211280 ----a-w- C:\Program Files (x86)\expapply64.dll
2010-04-02 22:01:00 185680 ----a-w- C:\Program Files (x86)\expapply.dll
.
============= FINISH: 9:19:07.86 ===============

descriptionaswMBR help! EmptyRe: aswMBR help!

more_horiz
and the attach file.





.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_11-05-19.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume2
Install Date: 11/27/2009 1:09:06 AM
System Uptime: 5/24/2011 3:30:22 PM (18 hours ago)
.
Motherboard: eMachines | | EMCP73VT-PM
Processor: Pentium(R) Dual-Core CPU E5300 @ 2.60GHz | CPU 1 | 2603/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 684 GiB total, 396.683 GiB free.
D: is CDROM (CDFS)
E: is Removable
F: is Removable
G: is Removable
H: is Removable
I: is Removable
J: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e968-e325-11ce-bfc1-08002be10318}
Description: NVIDIA GeForce 7050 / NVIDIA nForce 620i
Device ID: PCI\VEN_10DE&DEV_07E5&SUBSYS_02451025&REV_A2\3&267A616A&0&80
Manufacturer: NVIDIA
Name: NVIDIA GeForce 7050 / NVIDIA nForce 620i
PNP Device ID: PCI\VEN_10DE&DEV_07E5&SUBSYS_02451025&REV_A2\3&267A616A&0&80
Service: nvlddmkm
.
Class GUID: {4d36e96f-e325-11ce-bfc1-08002be10318}
Description: Microsoft PS/2 Mouse
Device ID: ACPI\PNP0F03\4&EABE7E6&0
Manufacturer: Microsoft
Name: Microsoft PS/2 Mouse
PNP Device ID: ACPI\PNP0F03\4&EABE7E6&0
Service: i8042prt
.
Class GUID: {4D36E97B-E325-11CE-BFC1-08002BE10318}
Description: ASYA5LCO IDE Controller
Device ID: ACPI\PNPA000\4&5D18F2DF&0
Manufacturer: (Standard mass storage controllers)
Name: ASYA5LCO IDE Controller
PNP Device ID: ACPI\PNPA000\4&5D18F2DF&0
Service: awpi5sgc
.
==== System Restore Points ===================
.
RP372: 5/24/2011 2:52:17 PM - Removed AGEIA GAME System Software 2.8.0
RP373: 5/24/2011 2:58:43 PM - Removed Google Earth.
RP374: 5/24/2011 2:59:46 PM - Removed Microsoft Games for Windows Marketplace
RP375: 5/24/2011 3:28:46 PM - Windows Update
RP376: 5/24/2011 8:35:42 PM - Installed Kaspersky Anti-Virus 2011.
RP377: 5/24/2011 10:21:36 PM - Windows Update
RP378: 5/25/2011 3:00:16 AM - Windows Update
.
==== Installed Programs ======================
.
Update for Microsoft Office 2007 (KB2508958)
¶óÇǽº
µTorrent
1... 2... 3... KICK IT! (Drop That Beat Like an Ugly Baby)
2007 Microsoft Office Suite Service Pack 2 (SP2)
AaAaAA!!! - A Reckless Disregard for Gravity
Acrobat.com
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader 9.1 MUI
Adobe Shockwave Player 11.5
Advertising Center
Age of Chivalry
Amnesia: The Dark Descent
Audacity 1.3.12 (Unicode)
Audiosurf
avast! Free Antivirus
Bandisoft MPEG-1 Decoder
BIT.TRIP BEAT
CDisplay 1.8
Clonk Rage
Cogs
Compatibility Pack for the 2007 Office system
Counter-Strike: Source
DAEMON Tools Lite
Defense Grid: The Awakening
DFOLauncher
Diablo II
Download Manager 2.3.10
Dual-Core Optimizer
Dwarfs!?
Earth's Special Forces
eMachines Recovery Management
eMachines Registration
eMachines ScreenSaver
eMachines Updater
Eternal Silence
Font_Setup
Fraps (remove only)
Garry's Mod
Global Agenda Launcher
Google Chrome
Google Update Helper
Half-Life
Half-Life 2
Half-Life 2: Episode One
Half-Life 2: Episode Two
Heroes of Newerth
Identity Card
ijji REACTOR
ImagXpress
Java Auto Updater
Java(TM) 6 Update 18
Junk Mail filter update
Kaspersky Anti-Virus 2011
Killing Floor
Launchpad Enhanced
League of Legends
Left 4 Dead 2
LogMeIn Hamachi
Mabinogi
Magicka
Malwarebytes' Anti-Malware
Microsoft .NET Framework 1.1
Microsoft Choice Guard
Microsoft Games for Windows - LIVE Redistributable
Microsoft Games for Windows Marketplace
Microsoft Office Excel MUI (English) 2007
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office PowerPoint Viewer 2007 (English)
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Suite Activation Assistant
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319
Microsoft Works
Microsoft XNA Framework Redistributable 3.1
Microsoft XNA Framework Redistributable 4.0
Mount and Blade: Warband
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
Nero 9 Essentials
Nero ControlCenter
Nero DiscSpeed
Nero DiscSpeed Help
Nero DriveSpeed
Nero DriveSpeed Help
Nero Express Help
Nero InfoTool
Nero InfoTool Help
Nero Installer
Nero Online Upgrade
Nero StartSmart
Nero StartSmart Help
Nero StartSmart OEM
NeroExpress
neroxml
NETGEAR WG111v2 wireless USB 2.0 adapter
Nexon Game Manager
NVIDIA PhysX
“Œ•û”ê‘z“V Ver1.06
OpenAL
Pando Media Booster
PCRPG Client Updater v1.02
PunkBuster Services
Realtek High Definition Audio Driver
Roblox for Alex Minchew
RPG Maker VX
RPG Maker VX 1.02
RPG Maker VX RTP
RUSH
SCHTHACK PSOBB
Security Update for 2007 Microsoft Office System (KB2288621)
Security Update for 2007 Microsoft Office System (KB2288931)
Security Update for 2007 Microsoft Office System (KB2345043)
Security Update for 2007 Microsoft Office System (KB2466156)
Security Update for 2007 Microsoft Office System (KB2509488)
Security Update for 2007 Microsoft Office System (KB969559)
Security Update for 2007 Microsoft Office System (KB976321)
Security Update for CAPICOM (KB931906)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2160841)
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
Security Update for Microsoft Office Excel 2007 (KB2464583)
Security Update for Microsoft Office InfoPath 2007 (KB979441)
Security Update for Microsoft Office PowerPoint 2007 (KB2535818)
Security Update for Microsoft Office PowerPoint Viewer 2007 (KB2464623)
Security Update for Microsoft Office system 2007 (972581)
Security Update for Microsoft Office system 2007 (KB974234)
Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
Security Update for Microsoft Office Word 2007 (KB2344993)
Skype™ 5.3
SOAP Toolkit
Source SDK Base 2006
Star Wars Jedi Knight Jedi Academy
StarCraft II
Steam
Super Meat Boy
Synergy
System Requirements Lab CYRI
Team Fortress 2
The Ball
The Wonderful End of the World
Toki Tori
Unity Web Player
Update for 2007 Microsoft Office System (KB2284654)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 (KB980729)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Visual C++ 8.0 Runtime Setup Package
Visual Studio 2008 x64 Redistributables
VLC media player 1.1.0
Welcome Center
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Mail
Windows Live Messenger
Windows Live Movie Maker
Windows Live OneCare safety scanner
Windows Live Photo Gallery
Windows Live Sync
Windows Live Upload Tool
Windows Live Writer
Windows Movie Maker 2.6
World of Warcraft
XSplit
.
==== End Of File ===========================

descriptionaswMBR help! EmptyRe: aswMBR help!

more_horiz
I see you have avast! and Kaspersky Anti-Virus 2011 in your computer.Two Anti-Virus Programs take up an enormous amount of your computer's resources when they are actively scanning your computer. Having two anti-virus programs running at the same time can cause your computer to run very slow, become unstable and even, in rare cases, crash. Please remove one of them.


Update Run Malwarebytes



  • Launch Malwarebytes' Anti-Malware
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply.

Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly.

descriptionaswMBR help! EmptyRe: aswMBR help!

more_horiz
I never have both antivirus programs running at once. I only downloaded multiple just so I could preform multiple scans to make sure I never missed anything.

Anyways, heres what you asked for! With malwarebytes updated.


Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org

Database version: 6674

Windows 6.1.7600
Internet Explorer 8.0.7600.16385

5/25/2011 9:55:37 AM
mbam-log-2011-05-25 (09-55-37).txt

Scan type: Quick scan
Objects scanned: 161701
Time elapsed: 3 minute(s), 12 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

descriptionaswMBR help! EmptyRe: aswMBR help!

more_horiz
Your logs look fine. There are some older versions of Java and Adobe Acrobat Reader on your computer. These can cause infection/infections.

You should remove the olds one and install the updated versions.

Other than this your good to go.

descriptionaswMBR help! EmptyRe: aswMBR help!

more_horiz
privacy_tip Permissions in this forum:
You cannot reply to topics in this forum