Here is the DDS log, and I will attach the zipped Attach.txt file to this post as requested by the program.
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_31
Run by Martlin at 17:35:58 on 2012-08-03
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.61.1033.18.1787.602 [GMT 10:00]
.
AV: Norton Internet Security *Disabled/Outdated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton Internet Security *Disabled/Outdated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton Internet Security *Disabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
C:\Windows\SysWOW64\NlsSrv32.exe
C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\ccSvcHst.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe
C:\Users\Martlin\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
C:\Windows\SysWOW64\SupportAppXL\AutoDect.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\zumodrive.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\SuperFlexible\ExtremeSyncService.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
C:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe
C:\Program Files\Realtek\RtVOsd\RtVOsd.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
C:\Windows\system32\WUDFHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
\\?\C:\Windows\system32\wbem\WMIADAP.EXE
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page =
hxxp://www.google.com.au/uInternet Settings,ProxyOverride = *.local
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: ContributeBHO Class: {074c1dc5-9320-4a9a-947d-c042949c6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
BHO: Java(tm) Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: CatcherBHO Class: {9b4df450-dcc7-4b07-935d-0cd757a64583} - C:\Program Files (x86)\Moyea\YouTube FLV Downloader\MoyeaCatcher.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
TB: Contribute Toolbar: {517bdde4-e3a7-4570-b21e-2b52b6139fc7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll
uRun: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
uRun: [ZumoDrive] C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\ZumoLauncher.lnk
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [Registry Cleaner Scheduler] "C:\Program Files (x86)\CleanMyPC\Registry Cleaner\RCHelper.exe" /startup
uRun: [ExtremeSync Background Scheduler] C:\Program Files (x86)\SuperFlexible\ExtremeSyncService.exe /TIMERASAPP /STARTUP
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [autodetect] C:\Windows\SysWOW64\SupportAppXL\AutoDect.exe
mRun: [ZumoDrive] "C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\ZumoLauncher.lnk"
mRun: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
StartupFolder: C:\Users\Martlin\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Martlin\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\ADOBEG~1.LNK - C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\SNAPFI~1.LNK - C:\Program Files (x86)\PictureMover\Bin\PictureMover.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cabDPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cabDPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} -
hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cabTCP: DhcpNameServer = 192.168.1.1
TCP: Interfaces\{D3FC7590-7339-410A-B8D4-0938DBF388CB} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{DCDC8AAE-72CF-475D-A03D-F49970D5DD19} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{DCDC8AAE-72CF-475D-A03D-F49970D5DD19}\C6F66756C6F66756D25707374716962737D274 : DhcpNameServer = 61.9.194.49 61.9.195.193
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
BHO-X64: {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO-X64: 0x1 - No File
BHO-X64: ContributeBHO Class: {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Symantec NCO BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
BHO-X64: Symantec NCO BHO - No File
BHO-X64: Symantec Intrusion Prevention: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\IPS\IPSBHO.DLL
BHO-X64: Symantec Intrusion Prevention - No File
BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
BHO-X64: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: CatcherBHO Class: {9B4DF450-DCC7-4B07-935D-0CD757A64583} - C:\Program Files (x86)\Moyea\YouTube FLV Downloader\MoyeaCatcher.dll
BHO-X64: CacherBHO - No File
BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO-X64: URLRedirectionBHO - No File
BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB-X64: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\coIEPlg.dll
TB-X64: Contribute Toolbar: {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll
mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun-x64: [HP Quick Launch] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun-x64: [autodetect] C:\Windows\SysWOW64\SupportAppXL\AutoDect.exe
mRun-x64: [ZumoDrive] "C:\Program Files (x86)\Hewlett-Packard\HP CloudDrive\ZumoLauncher.lnk"
mRun-x64: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Martlin\AppData\Roaming\Mozilla\Firefox\Profiles\dx6bqd9s.default\
FF - prefs.js: browser.startup.homepage -
www.google.com.au.
---- FIREFOX POLICIES ----
FF - user.js: network.cookie.cookieBehavior - 0
FF - user.js: privacy.clearOnShutdown.cookies - false
FF - user.js: security.warn_viewing_mixed - false
FF - user.js: security.warn_viewing_mixed.show_once - false
FF - user.js: security.warn_submit_insecure - false
FF - user.js: security.warn_submit_insecure.show_once - false
.
============= SERVICES / DRIVERS ===============
.
R0 amd_sata;amd_sata;C:\Windows\system32\DRIVERS\amd_sata.sys --> C:\Windows\system32\DRIVERS\amd_sata.sys [?]
R0 amd_xata;amd_xata;C:\Windows\system32\DRIVERS\amd_xata.sys --> C:\Windows\system32\DRIVERS\amd_xata.sys [?]
R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]
R0 SymDS;Symantec Data Store;C:\Windows\system32\drivers\NISx64\1207020.003\SYMDS64.SYS --> C:\Windows\system32\drivers\NISx64\1207020.003\SYMDS64.SYS [?]
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\system32\drivers\NISx64\1207020.003\SYMEFA64.SYS --> C:\Windows\system32\drivers\NISx64\1207020.003\SYMEFA64.SYS [?]
R1 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\BASHDefs\20110701.001\BHDrvx64.sys [2011-7-6 1143416]
R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_18.1.0.37\Definitions\IPSDefs\20110707.031\IDSviA64.sys [2011-7-7 488056]
R1 SymIRON;Symantec Iron Driver;C:\Windows\system32\drivers\NISx64\1207020.003\Ironx64.SYS --> C:\Windows\system32\drivers\NISx64\1207020.003\Ironx64.SYS [?]
R1 SymNetS;Symantec Network Security WFP Driver;C:\Windows\system32\Drivers\NISx64\1207020.003\SYMNETS.SYS --> C:\Windows\system32\Drivers\NISx64\1207020.003\SYMNETS.SYS [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 AERTFilters;Andrea RT Filters Service;C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [2011-4-11 98208]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
R2 HP Wireless Assistant Service;HP Wireless Assistant Service;C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [2010-7-22 103992]
R2 HPClientSvc;HP Client Services;C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe [2010-8-6 291896]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service;C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe [2011-2-4 92216]
R2 HPWMISVC;HPWMISVC;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [2010-9-29 26680]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-7-14 655944]
R2 NIS;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\18.7.2.3\ccsvchst.exe [2012-6-12 130008]
R2 nlsX86cc;Nalpeiron Licensing Service;C:\Windows\System32\NlsSrv32.exe [2011-5-25 61440]
R2 NOBU;Norton Online Backup;C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-6-2 2804568]
R2 RtVOsdService;RtVOsdService Installer;C:\Program Files\Realtek\RtVOsd\RtVOsdService.exe [2010-6-25 315392]
R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
R3 anvsnddrv;AnvSoft Virtual Sound Device;C:\Windows\system32\drivers\anvsnddrv.sys --> C:\Windows\system32\drivers\anvsnddrv.sys [?]
R3 clwvd;CyberLink WebCam Virtual Driver;C:\Windows\system32\DRIVERS\clwvd.sys --> C:\Windows\system32\DRIVERS\clwvd.sys [?]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-5-10 136824]
R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
R3 usbfilter;AMD USB Filter Driver;C:\Windows\system32\DRIVERS\usbfilter.sys --> C:\Windows\system32\DRIVERS\usbfilter.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-1-22 136176]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-6-7 160944]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-11 250056]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;C:\Windows\system32\Drivers\ssadadb.sys --> C:\Windows\system32\Drivers\ssadadb.sys [?]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-1-22 136176]
S3 massfilter;ZTE Mass Storage Filter Driver;C:\Windows\system32\drivers\massfilter.sys --> C:\Windows\system32\drivers\massfilter.sys [?]
S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-3-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-5-4 113120]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\system32\DRIVERS\netw5v64.sys --> C:\Windows\system32\DRIVERS\netw5v64.sys [?]
S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\system32\Drivers\RtsUStor.sys --> C:\Windows\system32\Drivers\RtsUStor.sys [?]
S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\system32\DRIVERS\VSTAZL6.SYS --> C:\Windows\system32\DRIVERS\VSTAZL6.SYS [?]
S3 SrvHsfV92;SrvHsfV92;C:\Windows\system32\DRIVERS\VSTDPV6.SYS --> C:\Windows\system32\DRIVERS\VSTDPV6.SYS [?]
S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\system32\DRIVERS\VSTCNXT6.SYS --> C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [?]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);C:\Windows\system32\DRIVERS\ssadbus.sys --> C:\Windows\system32\DRIVERS\ssadbus.sys [?]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);C:\Windows\system32\DRIVERS\ssadmdfl.sys --> C:\Windows\system32\DRIVERS\ssadmdfl.sys [?]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;C:\Windows\system32\DRIVERS\ssadmdm.sys --> C:\Windows\system32\DRIVERS\ssadmdm.sys [?]
S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);C:\Windows\system32\DRIVERS\ssadserd.sys --> C:\Windows\system32\DRIVERS\ssadserd.sys [?]
S3 SwitchBoard;SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\system32\DRIVERS\yk62x64.sys --> C:\Windows\system32\DRIVERS\yk62x64.sys [?]
.
=============== Created Last 30 ================
.
2012-08-03 07:26:10 -------- d-sh--w- C:\$RECYCLE.BIN
2012-08-02 07:37:59 98816 ----a-w- C:\Windows\sed.exe
2012-08-02 07:37:59 518144 ----a-w- C:\Windows\SWREG.exe
2012-08-02 07:37:59 256000 ----a-w- C:\Windows\PEV.exe
2012-08-02 07:37:59 208896 ----a-w- C:\Windows\MBR.exe
2012-08-02 02:02:59 -------- d-----w- C:\FRST
2012-08-01 21:22:40 -------- d-----w- C:\Users\Martlin\AppData\Local\{B848F6A8-82F4-4D74-99E6-9AFF9EC56E0F}
2012-08-01 21:22:18 -------- d-----w- C:\Users\Martlin\AppData\Local\{DA59E293-BB45-473E-9F13-C316BB573CCF}
2012-08-01 08:10:02 -------- d-----w- C:\Users\Martlin\AppData\Local\{58A36452-ED41-41DF-880F-6100DAF7B0E1}
2012-08-01 07:22:06 -------- d-----w- C:\Users\Martlin\AppData\Local\{96B030FE-B936-4C9B-A45D-66C94E9B761D}
2012-07-31 21:29:43 -------- d-----w- C:\Users\Martlin\AppData\Local\{DC99997A-8B95-44F0-A650-9AA89E92164E}
2012-07-31 09:38:20 -------- d-----w- C:\Users\Martlin\AppData\Local\{0A10722A-C5C7-4994-92CD-E5B1AE2D0B6C}
2012-07-31 07:21:19 -------- d-----w- C:\Users\Martlin\AppData\Local\{40BE66E2-019C-46A3-9BC4-4437ACE63828}
2012-07-30 21:32:43 -------- d-----w- C:\Users\Martlin\AppData\Local\{3351B467-388C-4B05-AA08-13C5CCCB54D6}
2012-07-30 07:48:23 -------- d-----w- C:\Users\Martlin\AppData\Local\{E1EC5F3C-49D1-44E6-9C41-8C3D805EB5F1}
2012-07-30 07:37:32 -------- d-----w- C:\Users\Martlin\AppData\Local\{9319F840-AAF1-4FE6-B620-7D49E9D1598C}
2012-07-30 07:21:18 -------- d-----w- C:\Users\Martlin\AppData\Local\{8B01E12E-6341-45AC-8245-AC5FBE9D0B80}
2012-07-29 11:34:03 -------- d-----w- C:\Users\Martlin\AppData\Local\{F16AE24B-CB3C-4542-9484-A840F8C21AF1}
2012-07-28 23:34:25 -------- d-----w- C:\Users\Martlin\AppData\Local\{8C83E50B-D90C-11E1-8270-B8AC6F996F26}
2012-07-28 23:32:46 -------- d-----w- C:\Users\Martlin\AppData\Local\{1D6AF53D-13B7-4BDB-BA9C-CC4B875371BB}
2012-07-28 23:30:57 -------- d-----w- C:\Users\Martlin\AppData\Local\{3BBD742F-1F21-4365-8CC5-3F5200294796}
2012-07-28 09:38:01 -------- d-----w- C:\Users\Martlin\AppData\Roaming\Yqemo
2012-07-28 09:38:01 -------- d-----w- C:\Users\Martlin\AppData\Roaming\Orca
2012-07-27 23:27:22 -------- d-----w- C:\Users\Martlin\AppData\Local\{6BFD0C58-6B53-43CB-86F2-08952C9B8751}
2012-07-27 23:26:59 -------- d-----w- C:\Users\Martlin\AppData\Local\{F7B4B099-10F8-4279-9222-569FEE5CEADD}
2012-07-26 21:36:16 -------- d-----w- C:\Users\Martlin\AppData\Local\{EAA45DC2-D833-4AF1-8124-D13181EF0B3A}
2012-07-26 21:35:56 -------- d-----w- C:\Users\Martlin\AppData\Local\{10FDEE92-F88D-4443-9751-F8F2984B48F3}
2012-07-25 21:38:30 -------- d-----w- C:\Users\Martlin\AppData\Local\{E2AD9392-B05B-4AED-8136-E3B403FA6E77}
2012-07-25 21:38:11 -------- d-----w- C:\Users\Martlin\AppData\Local\{34AFE524-B263-47B2-9641-5A18BCAEF8B1}
2012-07-25 09:37:34 -------- d-----w- C:\Users\Martlin\AppData\Local\{FCA4A0FB-45A2-4CBE-88B7-5AE87885F6D5}
2012-07-25 09:37:21 -------- d-----w- C:\Users\Martlin\AppData\Local\{B97EFE3F-55B5-4B6F-A764-5ED51C85A309}
2012-07-24 21:36:24 -------- d-----w- C:\Users\Martlin\AppData\Local\{68263965-2E67-480D-9002-85C1B297C412}
2012-07-24 21:36:08 -------- d-----w- C:\Users\Martlin\AppData\Local\{0E96F863-50D1-4BE8-8C6E-6FCE143026A2}
2012-07-24 09:35:27 -------- d-----w- C:\Users\Martlin\AppData\Local\{2D329D76-B1B3-496E-9BD2-C577B444B643}
2012-07-24 09:35:13 -------- d-----w- C:\Users\Martlin\AppData\Local\{03B06150-D611-4E83-BDE0-886E3C6BFC00}
2012-07-23 21:33:51 -------- d-----w- C:\Users\Martlin\AppData\Local\{1BCBB1C0-93B5-4B98-BC2B-859BB9C584BA}
2012-07-23 21:33:31 -------- d-----w- C:\Users\Martlin\AppData\Local\{44691B81-33FB-4A0C-B615-D317BD88A638}
2012-07-23 09:32:48 -------- d-----w- C:\Users\Martlin\AppData\Local\{3F38A075-3C60-4481-B896-EFD91B95D58B}
2012-07-23 09:32:35 -------- d-----w- C:\Users\Martlin\AppData\Local\{47744C18-65FF-4F1C-8797-3313EB6D14E0}
2012-07-22 21:31:14 -------- d-----w- C:\Users\Martlin\AppData\Local\{7AA0AF47-C3B3-4272-9C0C-F04E38F9C88F}
2012-07-22 21:30:42 -------- d-----w- C:\Users\Martlin\AppData\Local\{5EC80708-11DA-437C-9F85-39729C1C30E7}
2012-07-22 02:57:29 -------- d-----w- C:\Users\Martlin\AppData\Local\{5CB614A6-5816-44B0-B110-31C89C0B6CE2}
2012-07-22 02:53:46 -------- d-----w- C:\Users\Martlin\AppData\Local\{B1BE1058-262C-4FA9-9783-2596A68B6143}
2012-07-21 07:13:59 -------- d-----w- C:\Users\Martlin\AppData\Local\{863393A3-3C5B-4F51-8E57-34433889A10F}
2012-07-21 07:13:35 -------- d-----w- C:\Users\Martlin\AppData\Local\{2B8708C0-8A60-445A-A845-B9A7EAB05F59}
2012-07-20 23:48:42 -------- d-----w- C:\Users\Martlin\AppData\Local\{11ACE0F3-C8D3-46A4-9451-0AB9A1017234}
2012-07-20 09:21:00 -------- d-----w- C:\Users\Martlin\AppData\Local\{2E14B339-60FD-4FFC-83B0-33B8B3A5D7E9}
2012-07-19 21:20:27 -------- d-----w- C:\Users\Martlin\AppData\Local\{E5CA2573-404B-40BF-92EA-BB87CBEF9662}
2012-07-19 21:20:13 -------- d-----w- C:\Users\Martlin\AppData\Local\{20F58424-43DB-43E2-9975-3C6436BBC294}
2012-07-19 09:19:36 -------- d-----w- C:\Users\Martlin\AppData\Local\{FE8723FD-7341-41DA-9A93-F48286066CDB}
2012-07-19 09:19:23 -------- d-----w- C:\Users\Martlin\AppData\Local\{ACCBFF81-3684-4EA0-8679-CC30D3270C74}
2012-07-18 21:18:52 -------- d-----w- C:\Users\Martlin\AppData\Local\{AA87F0BB-8FC1-4697-B671-03379095F5B2}
2012-07-18 21:18:39 -------- d-----w- C:\Users\Martlin\AppData\Local\{4B689586-DD0D-4AEC-9FCE-2FF7F4DA9790}
2012-07-18 09:18:06 -------- d-----w- C:\Users\Martlin\AppData\Local\{3517CA46-182C-4BA3-934B-49B82AAF6B1D}
2012-07-18 09:17:45 -------- d-----w- C:\Users\Martlin\AppData\Local\{AF6E1669-F539-444A-9CF0-2BAF9B537DE9}
2012-07-17 21:16:30 -------- d-----w- C:\Users\Martlin\AppData\Local\{8A8023A5-6E43-4B66-9BD9-180B5D8A2269}
2012-07-17 21:16:15 -------- d-----w- C:\Users\Martlin\AppData\Local\{949B755F-3D30-43C9-910C-3E70339E663D}
2012-07-16 21:41:53 -------- d-----w- C:\Users\Martlin\AppData\Local\{156FD38E-90E7-43BB-82D2-710857BB54F2}
2012-07-16 21:40:36 -------- d-----w- C:\Users\Martlin\AppData\Local\{01547206-4A0E-4C60-B6C3-3213A53F02A7}
2012-07-16 10:25:30 -------- d-----w- C:\Program Files (x86)\Acronis Disk Director Suite
2012-07-16 08:41:55 -------- d-----w- C:\Windows\pss
2012-07-16 07:40:58 -------- d-----w- C:\Users\Martlin\AppData\Roaming\CleanMyPC Software
2012-07-16 07:40:29 -------- d-----w- C:\Program Files (x86)\CleanMyPC
2012-07-15 21:24:39 -------- d-----w- C:\Users\Martlin\AppData\Local\{432709AF-3EDF-4CE1-ACCC-84DA7A91E5EA}
2012-07-15 21:24:19 -------- d-----w- C:\Users\Martlin\AppData\Local\{4D2FE887-FAE8-4F40-B85E-FAAD2129C1EA}
2012-07-15 01:43:08 -------- d-----w- C:\Users\Martlin\AppData\Local\{A6D822D2-567F-4706-9EE4-7E81FEF17602}
2012-07-15 01:42:46 -------- d-----w- C:\Users\Martlin\AppData\Local\{5BE768DF-8413-4309-8833-63C08C14EBAE}
2012-07-14 10:43:29 -------- d-----w- C:\Users\Martlin\AppData\Local\{C3A0B4BF-BC73-4DB3-A898-B1054790982B}
2012-07-14 10:43:16 -------- d-----w- C:\Users\Martlin\AppData\Local\{B4D8ED4F-60D7-4563-A780-D3F9245F3719}
2012-07-13 22:42:05 -------- d-----w- C:\Users\Martlin\AppData\Local\{2E0B9CBE-B88B-40A0-85D7-332909B90946}
2012-07-13 22:41:48 -------- d-----w- C:\Users\Martlin\AppData\Local\{FEFE98F8-8971-48BF-A913-3EBCBF0A5852}
2012-07-12 21:27:15 -------- d-----w- C:\Users\Martlin\AppData\Local\{94C31185-08BC-4A64-8569-FDB2FEC025A7}
2012-07-12 21:26:55 -------- d-----w- C:\Users\Martlin\AppData\Local\{8275A07F-BC3E-4170-A355-7812FEED6884}
2012-07-12 07:38:32 -------- d-----w- C:\Users\Martlin\AppData\Local\{9AF96C78-DCED-4ABB-B00D-F27F9C7BDFEB}
2012-07-12 07:38:13 -------- d-----w- C:\Users\Martlin\AppData\Local\{5B623B61-8780-424F-A712-1EDE4985BF65}
2012-07-11 12:14:16 -------- d-----w- C:\Users\Martlin\AppData\Local\{24E92400-E85B-4A49-B0AD-4F8F348456BA}
2012-07-11 12:13:58 -------- d-----w- C:\Users\Martlin\AppData\Local\{02D68A14-ED34-44F4-AA4F-9A18A5AFDD1A}
2012-07-10 21:08:29 -------- d-----w- C:\Users\Martlin\AppData\Local\{279D7BF3-741E-4F9F-91AC-19BB8D5E3E16}
2012-07-10 21:08:09 -------- d-----w- C:\Users\Martlin\AppData\Local\{F85715CA-1944-45F6-8E09-89D7E3E4A682}
2012-07-10 10:38:09 -------- d-----w- C:\Program Files (x86)\NCH Software
2012-07-10 10:38:03 -------- d-----w- C:\Users\Martlin\AppData\Roaming\NCH Software
2012-07-09 21:14:56 -------- d-----w- C:\Users\Martlin\AppData\Local\{6868937F-5B14-4872-853E-5082344B5C4B}
2012-07-09 21:14:32 -------- d-----w- C:\Users\Martlin\AppData\Local\{6BE19A82-B003-4CB1-A87B-EFDD6CA46D97}
2012-07-08 21:24:34 -------- d-----w- C:\Users\Martlin\AppData\Local\{6E299C0D-DEB0-495E-A70B-A2021C16F9DC}
2012-07-08 21:24:14 -------- d-----w- C:\Users\Martlin\AppData\Local\{41CB0006-86BA-49DD-B6F1-681A016AA4A1}
2012-07-08 01:20:35 -------- d-----w- C:\Users\Martlin\AppData\Local\{A9632B61-9AAA-43EC-8047-E37465A88FC1}
2012-07-08 01:20:19 -------- d-----w- C:\Users\Martlin\AppData\Local\{98111811-05D7-4E08-B90B-8017AA48C8D3}
2012-07-07 11:29:53 -------- d-----w- C:\Users\Martlin\AppData\Local\{515B425A-EE3D-4A60-9DCA-836D1CA8F09F}
2012-07-07 11:29:39 -------- d-----w- C:\Users\Martlin\AppData\Local\{377E7F57-1BD2-4922-B487-87616D22E22B}
2012-07-06 23:28:12 -------- d-----w- C:\Users\Martlin\AppData\Local\{22E5C143-33EE-4D80-8502-64714764645C}
2012-07-06 23:27:52 -------- d-----w- C:\Users\Martlin\AppData\Local\{189C6A00-FCE1-4FCC-82F0-8BCC8B43CCC7}
2012-07-06 09:26:18 -------- d-----w- C:\Users\Martlin\AppData\Local\{6A5B5229-07A2-408C-B773-506DDA40BF0F}
2012-07-06 09:26:02 -------- d-----w- C:\Users\Martlin\AppData\Local\{B373EAB1-8C33-4B26-8DE8-9C246F87B2BC}
2012-07-05 21:24:31 -------- d-----w- C:\Users\Martlin\AppData\Local\{83B322CB-E78D-4F17-AB8F-3D0E8DC5736C}
2012-07-05 21:23:57 -------- d-----w- C:\Users\Martlin\AppData\Local\{1372B32D-E666-4CB3-9504-5913E7C9540C}
2012-07-04 21:42:27 -------- d-----w- C:\Users\Martlin\AppData\Local\{8D1DCBFB-9C76-4656-9086-3A412DEC6857}
2012-07-04 21:42:07 -------- d-----w- C:\Users\Martlin\AppData\Local\{C55B3A43-47CF-4D92-B50B-56A59D54A339}
.
==================== Find3M ====================
.
2012-07-27 09:55:06 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-07-27 09:55:06 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-07-03 03:46:44 24904 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-06-13 04:04:13 326656 ----a-w- C:\Program Files\VOBMerge252.exe
.
============= FINISH: 17:38:20.63 ===============