{"id":8961,"date":"2021-11-30T11:18:39","date_gmt":"2021-11-30T11:18:39","guid":{"rendered":"https:\/\/lgildv5i97.onrocket.site\/answers\/?post_type=question&#038;p=8961"},"modified":"2021-11-30T11:25:55","modified_gmt":"2021-11-30T11:25:55","slug":"can-anyone-help-me-with-this-replicating-virus","status":"publish","type":"question","link":"https:\/\/computing.net\/answers\/security\/can-anyone-help-me-with-this-replicating-virus\/39277.html","title":{"rendered":"Can Anyone Help Me With This REPLICATING VIRUS?"},"content":{"rendered":"<p>I also have the same problem. I am using windows 8. Here are the logs that came up after I ran the DDS. Please help. Thanks<\/p>\n<p>.<br \/>\nUNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.<br \/>\nIF REQUESTED, ZIP IT UP &amp; ATTACH IT<br \/>\n.<br \/>\nDDS (Ver_2012-11-20.01)<br \/>\n.<br \/>\nMicrosoft Windows 8 Pro<br \/>\nBoot Device: \\Device\\HarddiskVolume1<br \/>\nInstall Date: 12\/5\/2012 2:40:32 AM<br \/>\nSystem Uptime: 8\/1\/2013 10:14:59 PM (19 hours ago)<br \/>\n.<br \/>\nMotherboard: ASUSTeK COMPUTER INC. | | K55VD<br \/>\nProcessor: Intel(R) Core(TM) i7-3610QM CPU @ 2.30GHz | SOCKET 0 | 2301\/100mhz<br \/>\n.<br \/>\n==== Disk Partitions =========================<br \/>\n.<br \/>\nC: is FIXED (NTFS) &#8211; 279 GiB total, 0.001 GiB free.<br \/>\nD: is FIXED (NTFS) &#8211; 394 GiB total, 116.566 GiB free.<br \/>\nE: is CDROM ()<br \/>\nF: is CDROM ()<br \/>\nG: is FIXED (NTFS) &#8211; 932 GiB total, 764.43 GiB free.<br \/>\n.<br \/>\n==== Disabled Device Manager Items =============<br \/>\n.<br \/>\nClass GUID:<br \/>\nDescription:<br \/>\nDevice ID: USB\\VID_13D3&amp;PID;_3362\\ALASKA_DAY_2006<br \/>\nManufacturer:<br \/>\nName:<br \/>\nPNP Device ID: USB\\VID_13D3&amp;PID;_3362\\ALASKA_DAY_2006<br \/>\nService:<br \/>\n.<br \/>\n==== System Restore Points ===================<br \/>\n.<br \/>\nNo restore point in system.<br \/>\n.<br \/>\n==== Installed Programs ======================<br \/>\n.<br \/>\n???? ??? Windows Live<br \/>\n???? ???? ActiveX ????? ?? Windows Live Mesh ????????? ???????<br \/>\n???? Windows Live<br \/>\n??????? Windows Live Mesh ActiveX ??(????)<br \/>\n??????? Windows Live Mesh ActiveX ???<br \/>\n????????? ActiveX ?? Windows Live Mesh ????????????????????????? (???)<br \/>\n\u00b5Torrent<br \/>\nAdobe Flash Player 10 Plugin<br \/>\nAdobe Reader X (10.1.7) MUI<br \/>\nAkamai NetSession Interface<br \/>\nApple Application Support<br \/>\nApple Mobile Device Support<br \/>\nApple Software Update<br \/>\nAsk Toolbar<br \/>\nAssassin&#8217;s Creed \u00ae III<br \/>\nASUS AI Recovery<br \/>\nASUS FaceLogon<br \/>\nASUS Instant Connect<br \/>\nASUS InstantOn<br \/>\nASUS LifeFrame3<br \/>\nASUS Live Update<br \/>\nASUS Power4Gear Hybrid<br \/>\nASUS Smart Gesture<br \/>\nASUS Splendid Video Enhancement Technology<br \/>\nASUS USB Charger Plus<br \/>\nASUS Virtual Camera<br \/>\nASUS Virtual Touch<br \/>\nASUS WebStorage<br \/>\nASUSDVD<br \/>\nAsusVibe2.0<br \/>\nATK Package<br \/>\nAutoCAD 2013 &#8211; English<br \/>\nAutoCAD 2013 Language Pack &#8211; English<br \/>\nAutodesk Content Service<br \/>\nAutodesk Content Service Language Pack<br \/>\nAutodesk Design Review 2013<br \/>\nAutodesk Inventor Fusion 2013<br \/>\nAutodesk Inventor Fusion plug-in for AutoCAD 2013<br \/>\nAutodesk Inventor Fusion plug-in language pack for AutoCAD 2013<br \/>\nAutodesk Material Library 2013<br \/>\nAutodesk Material Library Base Resolution Image Library 2013<br \/>\nAutodesk Sync<br \/>\nBattle Realms<br \/>\nBing Bar<br \/>\nBlueStacks Notification Center<br \/>\nBonjour<br \/>\nBubbletown<br \/>\nCall of Duty Black Ops II<br \/>\nCombined Community Codec Pack 2012-12-30<br \/>\nCompany of Heroes 2<br \/>\nContr\u00f4le ActiveX Windows Live Mesh pour connexions \u00e0 distance<br \/>\nControl ActiveX de Windows Live Mesh para conexiones remotas<br \/>\nControle ActiveX do Windows Live Mesh para Conex\u00f5es Remotas<br \/>\nCrysis\u00ae 2<br \/>\nCrysis\u00ae 3<br \/>\nCyberLink LabelPrint<br \/>\nCyberLink Media Suite<br \/>\nCyberLink Power2Go<br \/>\nD3DX10<br \/>\nDAEMON Tools Lite<br \/>\nDead Island Riptide 1.1.0<br \/>\nDead Space\u2122 3<br \/>\nDeadtime Stories<br \/>\nDefaultTab<br \/>\nDishonored<br \/>\nDream Day First Home<br \/>\nDream Vacation Solitaire<br \/>\nEVGA Precision X 4.0.0<br \/>\nFacebook Video Calling 1.2.0.287<br \/>\nFar Cry 3<br \/>\nFarm Frenzy 3 &#8211; Madagascar<br \/>\nFARO LS 1.1.406.58<br \/>\nFIFA 13 Crack<br \/>\nFront Mission Evolved<br \/>\nGalapago<br \/>\nGalerie de photos Windows Live<br \/>\nGaler\u00eda fotogr\u00e1fica de Windows Live<br \/>\nGame Park Console<br \/>\nGarena &#8211; Heroes of Newerth<br \/>\nGarena Plus<br \/>\nGo Go Gourmet Chef of the Year<br \/>\nGoogle Chrome<br \/>\nGoogle Update Helper<br \/>\nGrand Theft Auto IV<br \/>\nHitman Absolution<br \/>\nIntel(R) Manageability Engine Firmware Recovery Agent<br \/>\nIntel(R) Management Engine Components<br \/>\nIntel(R) Processor Graphics<br \/>\nIntel(R) PROSet\/Wireless Software for Bluetooth(R) Technology<br \/>\nIntel\u00ae Trusted Connect Service Client<br \/>\niTunes<br \/>\nJava 7 Update 25<br \/>\nJava Auto Updater<br \/>\nJunk Mail filter update<br \/>\nMahjong Memoirs<br \/>\nMass Effect 3<br \/>\nMesh Runtime<br \/>\nMetro: Last Light (c) Deep Silver version 1<br \/>\nMicrosoft Application Error Reporting<br \/>\nMicrosoft Games for Windows &#8211; LIVE Redistributable<br \/>\nMicrosoft Office 2010<br \/>\nMicrosoft Office Click-to-Run 2010<br \/>\nMicrosoft Office Starter 2010 &#8211; English<br \/>\nMicrosoft PowerPoint Viewer<br \/>\nMicrosoft Save as PDF Add-in for 2007 Microsoft Office programs<br \/>\nMicrosoft Silverlight<br \/>\nMicrosoft SQL Server 2005 Compact Edition [ENU]<br \/>\nMicrosoft Visual C++ 2005 Redistributable<br \/>\nMicrosoft Visual C++ 2005 Redistributable (x64)<br \/>\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.17<br \/>\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.4148<br \/>\nMicrosoft Visual C++ 2008 Redistributable &#8211; x64 9.0.30729.6161<br \/>\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.21022<br \/>\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.17<br \/>\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.4148<br \/>\nMicrosoft Visual C++ 2008 Redistributable &#8211; x86 9.0.30729.6161<br \/>\nMicrosoft Visual C++ 2010 x64 Redistributable &#8211; 10.0.40219<br \/>\nMicrosoft Visual C++ 2010 x86 Redistributable &#8211; 10.0.40219<br \/>\nMicrosoft WSE 3.0 Runtime<br \/>\nMozilla Firefox 22.0 (x86 en-US)<br \/>\nMozilla Maintenance Service<br \/>\nMSVCRT<br \/>\nMSVCRT_amd64<br \/>\nmyBitCast 1.0.0.3<br \/>\nNBA 2K13<br \/>\nNBA 2K13 Crack<br \/>\nNeed for Speed\u2122 Carbon<br \/>\nNVIDIA Control Panel 326.19<br \/>\nNVIDIA GeForce Experience 1.6<br \/>\nNVIDIA Graphics Driver 326.19<br \/>\nNVIDIA Install Application<br \/>\nNVIDIA Optimus 7.2.17<br \/>\nNVIDIA PhysX<br \/>\nNVIDIA PhysX System Software 9.13.0604<br \/>\nNVIDIA Update 7.2.17<br \/>\nNVIDIA Update Components<br \/>\nNVIDIA Virtual Audio 1.2.1<br \/>\nOpenAL<br \/>\nPlants vs Zombies<br \/>\nPunkBuster Services<br \/>\nQualcomm Atheros Bluetooth Suite (64)<br \/>\nQualcomm Atheros Client Installation Program<br \/>\nQualcomm Atheros WiFi Driver Installation<br \/>\nRealtek Ethernet Controller Driver<br \/>\nRealtek High Definition Audio Driver<br \/>\nRealtek PCIE Card Reader<br \/>\nSceneSwitch<br \/>\nSecure Download Manager<br \/>\nSHIELD Streaming<br \/>\nSilent Hill Homecoming<br \/>\nSkype Click to Call<br \/>\nSkype\u2122 6.5<br \/>\nSniper: Ghost Warrior 2<br \/>\nSpec Ops The Line<br \/>\nSpeedFan (remove only)<br \/>\nStar Wars: The Force Unleashed 2<br \/>\nSteam<br \/>\nSystem Requirements Lab CYRI<br \/>\nThe Sims\u2122 3<br \/>\nTitanium Internet Security<br \/>\nTom Clancy&#8217;s H.A.W.X. 2<br \/>\nTomb Raider<br \/>\nTrend Micro Titanium<br \/>\nTurbo Fiesta<br \/>\nUplay<br \/>\nuTorrentControl_v2 Toolbar<br \/>\nUzak Baglantilar I\u00e7in Windows Live Mesh ActiveX Denetimi<br \/>\nViber<br \/>\nVirtualDJ Home FREE<br \/>\nVLC media player 2.0.5<br \/>\nWebCake 3.00<br \/>\nWindows Driver Package &#8211; ASUS (ATP) Mouse (10\/29\/2012 1.0.0.148)<br \/>\nWindows Live<br \/>\nWindows Live ???<br \/>\nWindows Live ????<br \/>\nWindows Live Communications Platform<br \/>\nWindows Live Essentials<br \/>\nWindows Live Family Safety<br \/>\nWindows Live Fotograf Galerisi<br \/>\nWindows Live Galeria de Fotos<br \/>\nWindows Live ID Sign-in Assistant<br \/>\nWindows Live Installer<br \/>\nWindows Live Language Selector<br \/>\nWindows Live Mail<br \/>\nWindows Live Mesh<br \/>\nWindows Live Mesh ActiveX Control for Remote Connections<br \/>\nWindows Live Messenger<br \/>\nWindows Live MIME IFilter<br \/>\nWindows Live Movie Maker<br \/>\nWindows Live Photo Common<br \/>\nWindows Live Photo Gallery<br \/>\nWindows Live PIMT Platform<br \/>\nWindows Live Remote Client<br \/>\nWindows Live Remote Client Resources<br \/>\nWindows Live Remote Service<br \/>\nWindows Live Remote Service Resources<br \/>\nWindows Live SOXE<br \/>\nWindows Live SOXE Definitions<br \/>\nWindows Live Temel Par\u00e7alar<br \/>\nWindows Live UX Platform<br \/>\nWindows Live UX Platform Language Pack<br \/>\nWindows Live Writer<br \/>\nWindows Live Writer Resources<br \/>\nWinFlash<br \/>\nWinRAR 4.20 (32-bit)<br \/>\nWinRAR 4.20 (64-bit)<br \/>\nWireless Console 3<br \/>\nWorld of Goo<br \/>\nYahoo! Messenger<br \/>\n.<br \/>\n==== Event Viewer Messages From Past Week ========<br \/>\n.<br \/>\n8\/2\/2013 3:02:27 AM, Error: Schannel [36888] &#8211; A fatal alert was generated and sent to the remote endpoint. This may result in termination of the connection. The TLS protocol defined fatal error code is 10. The Windows SChannel error state is 10.<br \/>\n8\/1\/2013 8:48:04 PM, Error: Service Control Manager [7022] &#8211; The Intel(R) Management and Security Application User Notification Service service hung on starting.<br \/>\n8\/1\/2013 10:18:18 PM, Error: Service Control Manager [7009] &#8211; A timeout was reached (30000 milliseconds) while waiting for the Trend Micro Solution Platform service to connect.<br \/>\n8\/1\/2013 10:18:18 PM, Error: Service Control Manager [7000] &#8211; The Trend Micro Solution Platform service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.<br \/>\n8\/1\/2013 10:17:26 PM, Error: Service Control Manager [7024] &#8211; The HomeGroup Listener service terminated with the following service-specific error: There are no more endpoints available from the endpoint mapper.<br \/>\n8\/1\/2013 10:17:20 PM, Error: Service Control Manager [7034] &#8211; The DefaultTabSearch service terminated unexpectedly. It has done this 1 time(s).<br \/>\n8\/1\/2013 10:16:25 PM, Error: Service Control Manager [7000] &#8211; The Globe Tattoo Broadband. OUC service failed to start due to the following error: The system cannot find the file specified.<br \/>\n8\/1\/2013 10:14:30 PM, Error: Service Control Manager [7011] &#8211; A timeout (30000 milliseconds) was reached while waiting for a transaction response from the FontCache3.0.0.0 service.<br \/>\n7\/31\/2013 10:12:32 PM, Error: Microsoft-Windows-DistributedCOM [10016] &#8211; The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID {D63B10C5-BB46-4990-A94F-E40B9D520160} and APPID {9CA88EE3-ACB7-47C8-AFC4-AB702511C276} to the user NT AUTHORITY\\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.<br \/>\n7\/30\/2013 8:26:40 PM, Error: Service Control Manager [7009] &#8211; A timeout was reached (30000 milliseconds) while waiting for the Steam Client Service service to connect.<br \/>\n7\/30\/2013 8:26:40 PM, Error: Service Control Manager [7000] &#8211; The Steam Client Service service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.<br \/>\n.<br \/>\n==== End Of File ===========================<\/p>\n<p>AND THIS IS THE OTHER===============<\/p>\n<p>DDS (Ver_2012-11-20.01) &#8211; NTFS_AMD64<br \/>\nInternet Explorer: 10.0.9200.16453 BrowserJavaVersion: 10.25.2<br \/>\nRun by john edmund at 17:07:11 on 2013-08-02<br \/>\nMicrosoft Windows 8 Pro 6.2.9200.0.1252.63.1033.18.3982.1259 [GMT 8:00]<br \/>\n.<br \/>\nAV: Titanium Internet Security *Enabled\/Updated* {B7599298-8445-728A-A5C7-A26A082C8BDA}<br \/>\nAV: Windows Defender *Disabled\/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}<br \/>\nSP: Titanium Internet Security *Enabled\/Updated* {0C38737C-A27F-7D04-9F77-991873ABC167}<br \/>\nSP: Windows Defender *Disabled\/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}<br \/>\n.<br \/>\n============== Running Processes ===============<br \/>\n.<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k DcomLaunch<br \/>\nC:\\WINDOWS\\system32\\nvvsvc.exe<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k RPCSS<br \/>\nC:\\WINDOWS\\System32\\svchost.exe -k LocalServiceNetworkRestricted<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k netsvcs<br \/>\nC:\\WINDOWS\\system32\\dwm.exe<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k LocalService<br \/>\nC:\\Program Files\\NVIDIA Corporation\\Display\\nvxdsync.exe<br \/>\nC:\\WINDOWS\\system32\\nvvsvc.exe<br \/>\nC:\\WINDOWS\\System32\\svchost.exe -k LocalSystemNetworkRestricted<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k NetworkService<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k LocalServiceNoNetwork<br \/>\nC:\\Program Files (x86)\\ASUS\\ATK Package\\ATK Hotkey\\ASLDRSrv.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ATK Package\\ATKGFNEX\\GFNEXSrv.exe<br \/>\nC:\\WINDOWS\\System32\\spoolsv.exe<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k LocalServiceAndNoImpersonation<br \/>\nC:\\WINDOWS\\SysWOW64\\rundll32.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS InstantOn\\InsOnCfg.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ATK Package\\ATK Hotkey\\HControl.exe<br \/>\nC:\\WINDOWS\\system32\\taskhostex.exe<br \/>\nC:\\WINDOWS\\system32\\taskeng.exe<br \/>\nC:\\WINDOWS\\Explorer.EXE<br \/>\nC:\\Program Files (x86)\\ASUS\\ATK Package\\ATK Hotkey\\KBFiltr.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS Virtual Touch\\QuickGesture\\x64\\QuickGesture64.exe<br \/>\nC:\\WINDOWS\\system32\\taskeng.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS Virtual Touch\\QuickGesture\\x86\\QuickGesture.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\USBChargerPlus\\USBChargerPlus.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\FaceLogon\\sensorsrv.exe<br \/>\nC:\\Program Files\\ASUS\\P4G\\BatteryLife.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ATK Package\\ATKOSD2\\ATKOSD2.exe<br \/>\nC:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\armsvc.exe<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k apphost<br \/>\nC:\\Program Files (x86)\\Common Files\\Apple\\Mobile Device Support\\AppleMobileDeviceService.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS InstantOn\\InsOnSrv.exe<br \/>\nC:\\Program Files (x86)\\Autodesk\\Content Service\\Connect.Service.ContentService.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS InstantOn\\InsOnWMI.exe<br \/>\nC:\\Program Files\\NVIDIA Corporation\\Display\\nvtray.exe<br \/>\nC:\\Program Files\\Bonjour\\mDNSResponder.exe<br \/>\nC:\\Program Files (x86)\\BlueStacks\\HD-LogRotatorService.exe<br \/>\nC:\\Users\\john edmund\\AppData\\Roaming\\DefaultTab\\DefaultTab\\DTUpdate.exe<br \/>\nC:\\ProgramData\\DatacardService\\HWDeviceService64.exe<br \/>\nC:\\WINDOWS\\system32\\dashost.exe<br \/>\nC:\\ProgramData\\DatacardService\\DCSHelper.exe<br \/>\nC:\\Program Files\\Intel\\iCLS Client\\HeciServer.exe<br \/>\nC:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\FWService\\IntelMeFWService.exe<br \/>\nC:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\DAL\\jhi_service.exe<br \/>\nC:\\WINDOWS\\system32\\mqsvc.exe<br \/>\nC:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe<br \/>\nC:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe<br \/>\nC:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe<br \/>\nC:\\WINDOWS\\SysWOW64\\PnkBstrA.exe<br \/>\nC:\\Program Files (x86)\\Microsoft Application Virtualization Client\\sftvsa.exe<br \/>\nC:\\ProgramData\\Skype\\Toolbars\\Skype C2C Service\\c2c_service.exe<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k imgsvc<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k iissvcs<br \/>\nC:\\Program Files (x86)\\WebCake\\WebCakeDesktop.Updater.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS Live Update\\LiveUpdate.exe<br \/>\nC:\\WINDOWS\\Microsoft.NET\\Framework64\\v4.0.30319\\SMSvcHost.exe<br \/>\nC:\\WINDOWS\\system32\\wbem\\wmiprvse.exe<br \/>\nC:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA Update Core\\ComUpdatus.exe<br \/>\nC:\\WINDOWS\\Microsoft.NET\\Framework64\\v4.0.30319\\SMSvcHost.exe<br \/>\nC:\\Program Files (x86)\\Microsoft Application Virtualization Client\\sftlist.exe<br \/>\nC:\\Program Files (x86)\\Common Files\\Microsoft Shared\\Virtualization Handler\\CVHSVC.EXE<br \/>\nC:\\WINDOWS\\system32\\SearchIndexer.exe<br \/>\nC:\\WINDOWS\\system32\\svchost.exe -k NetworkServiceNetworkRestricted<br \/>\nC:\\WINDOWS\\System32\\svchost.exe -k LocalServicePeerNet<br \/>\nC:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe<br \/>\nC:\\Program Files (x86)\\Bluetooth Suite\\BtTray.exe<br \/>\nC:\\Program Files (x86)\\Bluetooth Suite\\BtvStack.exe<br \/>\nC:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA Update Core\\NvTmru.exe<br \/>\nC:\\Windows\\System32\\igfxtray.exe<br \/>\nC:\\Windows\\System32\\hkcmd.exe<br \/>\nC:\\Windows\\System32\\igfxpers.exe<br \/>\nC:\\Users\\john edmund\\AppData\\Local\\Akamai\\netsession_win.exe<br \/>\nD:\\uTorrent.exe<br \/>\nC:\\Users\\john edmund\\AppData\\Roaming\\WebCake\\WebCakeDesktop.exe<br \/>\nD:\\STEAM\\Steam.exe<br \/>\nC:\\Users\\john edmund\\AppData\\Local\\Akamai\\netsession_win.exe<br \/>\nC:\\WINDOWS\\SysWOW64\\WScript.exe<br \/>\nC:\\Program Files (x86)\\Ask.com\\Updater\\Updater.exe<br \/>\nC:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe<br \/>\nC:\\Program Files (x86)\\BlueStacks\\HD-Agent.exe<br \/>\nC:\\Program Files (x86)\\Intel\\Bluetooth\\devmonsrv.exe<br \/>\nC:\\Program Files (x86)\\Intel\\Bluetooth\\obexsrv.exe<br \/>\nC:\\Program Files (x86)\\Realtek\\Realtek PCIE Card Reader\\RIconMan.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS Smart Gesture\\AsTPCenter\\x64\\AsusTPLoader.exe<br \/>\nC:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\LMS\\LMS.exe<br \/>\nC:\\Program Files (x86)\\Common Files\\Steam\\SteamService.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS Smart Gesture\\AsTPCenter\\x64\\AsusTPCenter.exe<br \/>\nC:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\UNS\\UNS.exe<br \/>\nC:\\Program Files\\Windows Media Player\\wmpnetwk.exe<br \/>\nC:\\WINDOWS\\system32\\AdminService.exe<br \/>\nC:\\Program Files (x86)\\ASUS\\ASUS Smart Gesture\\AsTPCenter\\x64\\AsusTPHelper.exe<br \/>\nC:\\WINDOWS\\Microsoft.Net\\Framework64\\v3.0\\WPF\\PresentationFontCache.exe<br \/>\nC:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.391.0\\SeaPort.exe<br \/>\nC:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA GeForce Experience\\GFExperience.exe<br \/>\nC:\\Program Files\\iPod\\bin\\iPodService.exe<br \/>\nC:\\Program Files (x86)\\Yahoo!\\Messenger\\ymsgr_tray.exe<br \/>\nC:\\Program Files (x86)\\BlueStacks\\HD-Frontend.exe<br \/>\nC:\\Program Files (x86)\\BlueStacks\\HD-Service.exe<br \/>\nC:\\Program Files (x86)\\BlueStacks\\HD-Network.exe<br \/>\nC:\\Program Files (x86)\\BlueStacks\\HD-BlockDevice.exe<br \/>\nC:\\Program Files (x86)\\BlueStacks\\HD-SharedFolder.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\CCleaner64.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\Program Files (x86)\\Java\\jre7\\bin\\jp2launcher.exe<br \/>\nC:\\Program Files (x86)\\Java\\jre7\\bin\\java.exe<br \/>\nC:\\Program Files (x86)\\Google\\Chrome\\Application\\chrome.exe<br \/>\nC:\\WINDOWS\\system32\\wbem\\wmiprvse.exe<br \/>\nC:\\WINDOWS\\System32\\cscript.exe<br \/>\n.<br \/>\n============== Pseudo HJT Report ===============<br \/>\n.<br \/>\nuStart Page = hxxp:\/\/www.delta-search.com\/?affID=119776&amp;babsrc;=HP_ss&amp;mntrId;=E0945E85DE320805<br \/>\nuDefault_Page_URL = hxxp:\/\/asus.msn.com<br \/>\nuProxyOverride = &lt;local&gt;;*.local<br \/>\nuURLSearchHooks: {c95a4e8e-816d-4655-8c79-d736da1adb6d} &#8211; &lt;orphaned&gt;<br \/>\nuURLSearchHooks: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} &#8211; C:\\Program Files (x86)\\uTorrentControl_v2\\prxtbuTor.dll<br \/>\nmURLSearchHooks: {c95a4e8e-816d-4655-8c79-d736da1adb6d} &#8211; &lt;orphaned&gt;<br \/>\nmWinlogon: Userinit = userinit.exe<br \/>\nBHO: TmIEPlugInBHO Class: {1CA1377B-DC1D-4A52-9585-6E06050FAC53} &#8211; C:\\Program Files\\Trend Micro\\AMSP\\module\\20004\\2.0.1361\\6.8.1078\\TmIEPlg32.dll<br \/>\nBHO: WebCake: {2A5A2A90-3B30-4E6E-A955-2F232C6EF517} &#8211; C:\\Program Files (x86)\\WebCake\\WebCakeIEClient.dll<br \/>\nBHO: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} &#8211; C:\\Program Files (x86)\\uTorrentControl_v2\\prxtbuTor.dll<br \/>\nBHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} &#8211; C:\\Program Files (x86)\\Java\\jre7\\bin\\ssv.dll<br \/>\nBHO: DefaultTab Browser Helper: {7F6AFBF1-E065-4627-A2FD-810366367D01} &#8211; C:\\Users\\john edmund\\AppData\\Roaming\\DefaultTab\\DefaultTab\\DefaultTabBHO.dll<br \/>\nBHO: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} &#8211; LocalServer32 &#8211; &lt;no file&gt;<br \/>\nBHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} &#8211; C:\\Program Files (x86)\\Skype\\Toolbars\\Internet Explorer\\skypeieplugin.dll<br \/>\nBHO: TmBpIeBHO Class: {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} &#8211; C:\\Program Files\\Trend Micro\\AMSP\\module\\20002\\7.1.1104\\7.1.1104\\TmBpIe32.dll<br \/>\nBHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} &#8211; C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.391.0\\BingExt.dll<br \/>\nBHO: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} &#8211; C:\\Program Files (x86)\\Ask.com\\GenericAskToolbar.dll<br \/>\nBHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} &#8211; C:\\Program Files (x86)\\Java\\jre7\\bin\\jp2ssv.dll<br \/>\nTB: uTorrentControl_v2 Toolbar: {7473B6BD-4691-4744-A82B-7854EB3D70B6} &#8211; C:\\Program Files (x86)\\uTorrentControl_v2\\prxtbuTor.dll<br \/>\nTB: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} &#8211; C:\\Program Files (x86)\\Ask.com\\GenericAskToolbar.dll<br \/>\nTB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} &#8211;<br \/>\nTB: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} &#8211; LocalServer32 &#8211; &lt;no file&gt;<br \/>\nTB: uTorrentControl_v2 Toolbar: {7473b6bd-4691-4744-a82b-7854eb3d70b6} &#8211; C:\\Program Files (x86)\\uTorrentControl_v2\\prxtbuTor.dll<br \/>\nTB: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} &#8211; C:\\Program Files (x86)\\Ask.com\\GenericAskToolbar.dll<br \/>\nuRun: [Akamai NetSession Interface] &#8220;C:\\Users\\john edmund\\AppData\\Local\\Akamai\\netsession_win.exe&#8221;<br \/>\nuRun: [DAEMON Tools Lite] &#8220;C:\\Program Files (x86)\\DAEMON Tools Lite\\DTLite.exe&#8221; -autorun<br \/>\nuRun: [GarenaPlus] &#8220;C:\\Program Files (x86)\\Garena Plus\\GarenaMessenger.exe&#8221; -autolaunch<br \/>\nuRun: [uTorrent] &#8220;D:\\uTorrent.exe&#8221; \/MINIMIZED<br \/>\nuRun: [Skype] &#8220;C:\\Program Files (x86)\\Skype\\Phone\\Skype.exe&#8221; \/minimized \/regrun<br \/>\nuRun: [Viber] &#8220;C:\\Users\\john edmund\\AppData\\Local\\Viber\\Viber.exe&#8221; StartMinimized<br \/>\nuRun: [WebCake Desktop] &#8220;C:\\Users\\john edmund\\AppData\\Roaming\\WebCake\\WebCakeDesktop.exe&#8221;<br \/>\nuRun: [Steam] &#8220;D:\\STEAM\\Steam.exe&#8221; -silent<br \/>\nmRun: [APSDaemon] &#8220;C:\\Program Files (x86)\\Common Files\\Apple\\Apple Application Support\\APSDaemon.exe&#8221;<br \/>\nmRun: [Adobe] C:\\ProgramData\\Adobe\\97C3E8D.vbe<br \/>\nmRun: [Adobe ARM] &#8220;C:\\Program Files (x86)\\Common Files\\Adobe\\ARM\\1.0\\AdobeARM.exe&#8221;<br \/>\nmRun: [ApnUpdater] &#8220;C:\\Program Files (x86)\\Ask.com\\Updater\\Updater.exe&#8221;<br \/>\nmRun: [iTunesHelper] &#8220;D:\\iTunesHelper.exe&#8221;<br \/>\nmRun: [SunJavaUpdateSched] &#8220;C:\\Program Files (x86)\\Common Files\\Java\\Java Update\\jusched.exe&#8221;<br \/>\nmRun: [BlueStacks Agent] C:\\Program Files (x86)\\BlueStacks\\HD-Agent.exe<br \/>\nStartupFolder: C:\\Users\\john edmund\\AppData\\Roaming\\Microsoft\\Windows\\Start Menu\\Programs\\Startup\\PowerReg Scheduler.exe<br \/>\nuPolicies-Explorer: NoDriveTypeAutoRun = dword:145<br \/>\nmPolicies-Explorer: HideSCAHealth = dword:1<br \/>\nIE: Send to Bluetooth &#8211; C:\\Program Files (x86)\\Intel\\Bluetooth\\btSendToObject.htm<br \/>\nIE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} &#8211; {5F7B1267-94A9-47F5-98DB-E99415F33AEC} &#8211; C:\\Program Files (x86)\\Windows Live\\Writer\\WriterBrowserExtension.dll<br \/>\nIE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} &#8211; {898EA8C8-E7FF-479B-8935-AEC46303B9E5} &#8211; C:\\Program Files (x86)\\Skype\\Toolbars\\Internet Explorer\\skypeieplugin.dll<br \/>\nTCP: NameServer = 121.1.3.81 121.1.3.16 121.1.3.66<br \/>\nTCP: Interfaces\\{201133BC-8A28-40D4-971F-FCF0C071A237} : DHCPNameServer = 121.1.3.81 121.1.3.16 121.1.3.66<br \/>\nTCP: Interfaces\\{4DD3553D-20B8-4533-9519-84E946BA014C}\\05C44445D4974435C4 : DHCPNameServer = 192.168.1.1<br \/>\nTCP: Interfaces\\{4DD3553D-20B8-4533-9519-84E946BA014C}\\24F4747435 : DHCPNameServer = 192.168.1.1 192.168.1.1<br \/>\nTCP: Interfaces\\{4DD3553D-20B8-4533-9519-84E946BA014C}\\44D4050545F425255435 : DHCPNameServer = 192.168.0.1<br \/>\nTCP: Interfaces\\{4DD3553D-20B8-4533-9519-84E946BA014C}\\6796275737030373 : DHCPNameServer = 121.1.3.81 121.1.3.16 121.1.3.66<br \/>\nTCP: Interfaces\\{4DD3553D-20B8-4533-9519-84E946BA014C}\\C696E6B6379737 : DHCPNameServer = 192.168.1.1<br \/>\nTCP: Interfaces\\{4DD3553D-20B8-4533-9519-84E946BA014C}\\D4140555140264275656027596D26696 : DHCPNameServer = 8.8.8.8<br \/>\nTCP: Interfaces\\{4DD3553D-20B8-4533-9519-84E946BA014C}\\F40756E6752747 : DHCPNameServer = 192.168.1.1<br \/>\nHandler: skype-ie-addon-data &#8211; {91774881-D725-4E58-B298-07617B9B86A8} &#8211; C:\\Program Files (x86)\\Skype\\Toolbars\\Internet Explorer\\skypeieplugin.dll<br \/>\nHandler: skype4com &#8211; {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} &#8211; C:\\Program Files (x86)\\Common Files\\Skype\\Skype4COM.dll<br \/>\nHandler: tmbp &#8211; {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} &#8211; C:\\Program Files\\Trend Micro\\AMSP\\module\\20002\\7.1.1104\\7.1.1104\\TmBpIe32.dll<br \/>\nHandler: tmpx &#8211; {0E526CB5-7446-41D1-A403-19BFE95E8C23} &#8211; C:\\Program Files\\Trend Micro\\AMSP\\module\\20004\\2.0.1361\\6.8.1078\\TmIEPlg32.dll<br \/>\nHandler: wlpg &#8211; {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} &#8211; C:\\Program Files (x86)\\Windows Live\\Photo Gallery\\AlbumDownloadProtocolHandler.dll<br \/>\nAppInit_DLLs= C:\\WINDOWS\\SysWOW64\\nvinit.dll, C:\\PROGRA~2\\NVIDIA~1\\NVSTRE~1\\rxinput.dll<br \/>\nSSODL: WebCheck &#8211; &lt;orphaned&gt;<br \/>\nmASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} &#8211; &#8220;C:\\Program Files (x86)\\Google\\Chrome\\Application\\28.0.1500.72\\Installer\\chrmstp.exe&#8221; &#8211;configure-user-settings &#8211;verbose-logging &#8211;system-level &#8211;multi-install &#8211;chrome<br \/>\nx64-mStart Page = hxxp:\/\/asus.msn.com<br \/>\nx64-BHO: TmIEPlugInBHO Class: {1CA1377B-DC1D-4A52-9585-6E06050FAC53} &#8211; C:\\Program Files\\Trend Micro\\AMSP\\module\\20004\\2.0.1361\\6.8.1078\\TmIEPlg.dll<br \/>\nx64-BHO: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} &#8211; LocalServer32 &#8211; &lt;no file&gt;<br \/>\nx64-BHO: Skype add-on for Internet Explorer: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} &#8211; C:\\Program Files (x86)\\Skype\\Toolbars\\Internet Explorer x64\\skypeieplugin.dll<br \/>\nx64-BHO: TmBpIeBHO Class: {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} &#8211; C:\\Program Files\\Trend Micro\\AMSP\\module\\20002\\7.1.1104\\7.1.1104\\TmBpIe64.dll<br \/>\nx64-BHO: {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} &#8211; &lt;orphaned&gt;<br \/>\nx64-TB: avast! WebRep: {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} &#8211; LocalServer32 &#8211; &lt;no file&gt;<br \/>\nx64-Run: [Trend Micro Client Framework] &#8220;C:\\Program Files\\Trend Micro\\UniClient\\UiFrmWrk\\UIWatchDog.exe&#8221;<br \/>\nx64-Run: [Trend Micro Titanium] &#8220;C:\\Program Files\\Trend Micro\\Titanium\\UIFramework\\uiWinMgr.exe&#8221; -set Silent &#8220;1&#8221; SplashURL &#8220;&#8221;<br \/>\nx64-Run: [Autodesk Sync] C:\\Program Files\\Autodesk\\Autodesk Sync\\AdSync.exe<br \/>\nx64-Run: [RTHDVCPL] C:\\Program Files\\Realtek\\Audio\\HDA\\RAVCpl64.exe -s<br \/>\nx64-Run: [BtTray] &#8220;C:\\Program Files (x86)\\Bluetooth Suite\\BtTray.exe&#8221;<br \/>\nx64-Run: [BtvStack] &#8220;C:\\Program Files (x86)\\Bluetooth Suite\\BtvStack.exe&#8221;<br \/>\nx64-Run: [Nvtmru] &#8220;C:\\Program Files (x86)\\NVIDIA Corporation\\NVIDIA Update Core\\nvtmru.exe&#8221;<br \/>\nx64-Run: [IgfxTray] C:\\WINDOWS\\System32\\igfxtray.exe<br \/>\nx64-Run: [HotKeysCmds] C:\\WINDOWS\\System32\\hkcmd.exe<br \/>\nx64-Run: [Persistence] C:\\WINDOWS\\System32\\igfxpers.exe<br \/>\nx64-mPolicies-Explorer: HideSCAHealth = dword:1<br \/>\nx64-IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} &#8211; {898EA8C8-E7FF-479B-8935-AEC46303B9E5} &#8211; C:\\Program Files (x86)\\Skype\\Toolbars\\Internet Explorer x64\\skypeieplugin.dll<br \/>\nx64-Handler: skype-ie-addon-data &#8211; {91774881-D725-4E58-B298-07617B9B86A8} &#8211; C:\\Program Files (x86)\\Skype\\Toolbars\\Internet Explorer x64\\skypeieplugin.dll<br \/>\nx64-Handler: skype4com &#8211; {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} &#8211; &lt;orphaned&gt;<br \/>\nx64-Handler: tmbp &#8211; {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} &#8211; C:\\Program Files\\Trend Micro\\AMSP\\module\\20002\\7.1.1104\\7.1.1104\\TmBpIe64.dll<br \/>\nx64-Handler: tmpx &#8211; {0E526CB5-7446-41D1-A403-19BFE95E8C23} &#8211; C:\\Program Files\\Trend Micro\\AMSP\\module\\20004\\2.0.1361\\6.8.1078\\TmIEPlg.dll<br \/>\nx64-Handler: wlpg &#8211; {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} &#8211; &lt;orphaned&gt;<br \/>\nx64-Notify: igfxcui &#8211; igfxdev.dll<br \/>\nx64-SSODL: WebCheck &#8211; &lt;orphaned&gt;<br \/>\n.<br \/>\n================= FIREFOX ===================<br \/>\n.<br \/>\nFF &#8211; ProfilePath &#8211; C:\\Users\\john edmund\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\eu8al5sl.default\\<br \/>\nFF &#8211; prefs.js: browser.search.selectedEngine &#8211; Search Here<br \/>\nFF &#8211; plugin: C:\\PROGRA~2\\MICROS~1\\Office14\\NPSPWRAP.DLL<br \/>\nFF &#8211; plugin: C:\\Program Files (x86)\\Adobe\\Reader 10.0\\Reader\\AIR\\nppdf32.dll<br \/>\nFF &#8211; plugin: C:\\Program Files (x86)\\Garena Plus\\bbtalk\\plugins\\npPlugin\\npGarenaTalkPlugin.dll<br \/>\nFF &#8211; plugin: C:\\Program Files (x86)\\Google\\Update\\1.3.21.153\\npGoogleUpdate3.dll<br \/>\nFF &#8211; plugin: C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\IPT\\npIntelWebAPIIPT.dll<br \/>\nFF &#8211; plugin: C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\IPT\\npIntelWebAPIUpdater.dll<br \/>\nFF &#8211; plugin: C:\\Program Files (x86)\\Java\\jre7\\bin\\plugin2\\npjp2.dll<br \/>\nFF &#8211; plugin: C:\\Program Files (x86)\\Microsoft Silverlight\\4.1.10329.0\\npctrlui.dll<br \/>\nFF &#8211; plugin: C:\\Program Files (x86)\\Windows Live\\Photo Gallery\\NPWLPG.dll<br \/>\nFF &#8211; plugin: C:\\Users\\john edmund\\AppData\\Local\\Facebook\\Video\\Skype\\npFacebookVideoCalling.dll<br \/>\nFF &#8211; plugin: C:\\WINDOWS\\SysWOW64\\npDeployJava1.dll<br \/>\nFF &#8211; plugin: C:\\WINDOWS\\SysWOW64\\npmproxy.dll<br \/>\nFF &#8211; plugin: D:\\Mozilla Plugins\\npitunes.dll<br \/>\nFF &#8211; plugin: D:\\Tom Clancys HAWX 2\\orbitlauncher\\npuplaypc.dll<br \/>\nFF &#8211; plugin: D:\\Tom Clancys HAWX 2\\orbitlauncher\\npuplaypchub.dll<br \/>\nFF &#8211; plugin: D:\\VLC\\npvlc.dll<br \/>\nFF &#8211; ExtSQL: 2013-06-23 23:47; torntv2@torntv.com; C:\\Users\\john edmund\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\eu8al5sl.default\\extensions\\torntv2@torntv.com.xpi<br \/>\nFF &#8211; ExtSQL: 2013-06-23 23:48; plugin@getwebcake.com; C:\\Users\\john edmund\\AppData\\Roaming\\Mozilla\\Firefox\\Profiles\\eu8al5sl.default\\extensions\\plugin@getwebcake.com<br \/>\n.<br \/>\n&#8212;- FIREFOX POLICIES &#8212;-<br \/>\nFF &#8211; user.js: extentions.webcake.installId &#8211; 095bfc2a-34c6-47ff-863d-35d78f8b2b24<br \/>\nFF &#8211; user.js: extentions.webcake.defaultEnableAppsList &#8211; layers,brain\/features,newOffers\/wc<br \/>\nFF &#8211; user.js: extensions.delta.tlbrSrchUrl &#8211;<br \/>\nFF &#8211; user.js: extensions.delta.id &#8211; e094a2d20000000000005e85de320805<br \/>\nFF &#8211; user.js: extensions.delta.appId &#8211; {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}<br \/>\nFF &#8211; user.js: extensions.delta.instlDay &#8211; 15879<br \/>\nFF &#8211; user.js: extensions.delta.vrsn &#8211; 1.8.21.5<br \/>\nFF &#8211; user.js: extensions.delta.vrsni &#8211; 1.8.21.5<br \/>\nFF &#8211; user.js: extensions.delta.vrsnTs &#8211; 1.8.21.523:48:39<br \/>\nFF &#8211; user.js: extensions.delta.prtnrId &#8211; delta<br \/>\nFF &#8211; user.js: extensions.delta.prdct &#8211; delta<br \/>\nFF &#8211; user.js: extensions.delta.aflt &#8211; babsst<br \/>\nFF &#8211; user.js: extensions.delta.smplGrp &#8211; none<br \/>\nFF &#8211; user.js: extensions.delta.tlbrId &#8211; base<br \/>\nFF &#8211; user.js: extensions.delta.instlRef &#8211; sst<br \/>\nFF &#8211; user.js: extensions.delta.dfltLng &#8211; en<br \/>\nFF &#8211; user.js: extensions.delta.excTlbr &#8211; false<br \/>\nFF &#8211; user.js: extensions.delta.ffxUnstlRst &#8211; true<br \/>\nFF &#8211; user.js: extensions.delta.admin &#8211; false<br \/>\nFF &#8211; user.js: extensions.delta_i.babTrack &#8211; affID=119776<br \/>\nFF &#8211; user.js: extensions.delta_i.babExt &#8211;<br \/>\nFF &#8211; user.js: extensions.delta_i.srcExt &#8211; ss<br \/>\nFF &#8211; user.js: extensions.delta.autoRvrt &#8211; false<br \/>\nFF &#8211; user.js: extensions.delta.rvrt &#8211; false<br \/>\nFF &#8211; user.js: extensions.delta.newTab &#8211; false<br \/>\n.<br \/>\n============= SERVICES \/ DRIVERS ===============<br \/>\n.<br \/>\nR0 nvpciflt;nvpciflt;C:\\WINDOWS\\System32\\Drivers\\nvpciflt.sys [2013-7-19 30496]<br \/>\nR1 ATKWMIACPIIO;ATKWMIACPI Driver;C:\\Program Files (x86)\\ASUS\\ATK Package\\ATK WMIACPI\\atkwmiacpi64.sys [2011-9-8 17536]<br \/>\nR1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\\WINDOWS\\System32\\Drivers\\dtsoftbus01.sys [2012-12-4 283200]<br \/>\nR1 tmevtmgr;tmevtmgr;C:\\WINDOWS\\System32\\Drivers\\tmevtmgr.sys [2012-3-10 77184]<br \/>\nR2 ASMMAP64;ASMMAP64;C:\\Program Files (x86)\\ASUS\\ATK Package\\ATKGFNEX\\ASMMAP64.sys [2009-7-3 15416]<br \/>\nR2 ASUS InstantOn;ASUS InstantOn Service;C:\\Program Files (x86)\\ASUS\\ASUS InstantOn\\InsOnSrv.exe [2012-4-13 277120]<br \/>\nR2 aswFsBlk;aswFsBlk;C:\\WINDOWS\\System32\\Drivers\\aswFsBlk.sys [2012-11-27 25232]<br \/>\nR2 aswMonFlt;aswMonFlt;C:\\WINDOWS\\System32\\Drivers\\aswMonFlt.sys [2012-11-27 71064]<br \/>\nR2 Autodesk Content Service;Autodesk Content Service;C:\\Program Files (x86)\\Autodesk\\Content Service\\Connect.Service.ContentService.exe [2012-1-31 19232]<br \/>\nR2 Bluetooth Device Monitor;Bluetooth Device Monitor;C:\\Program Files (x86)\\Intel\\Bluetooth\\devmonsrv.exe [2012-8-27 1112000]<br \/>\nR2 Bluetooth OBEX Service;Bluetooth OBEX Service;C:\\Program Files (x86)\\Intel\\Bluetooth\\obexsrv.exe [2012-9-6 1124288]<br \/>\nR2 BstHdAndroidSvc;BlueStacks Android Service;C:\\Program Files (x86)\\BlueStacks\\HD-Service.exe [2013-7-4 393032]<br \/>\nR2 BstHdDrv;BlueStacks Hypervisor;C:\\Program Files (x86)\\BlueStacks\\HD-Hypervisor-amd64.sys [2013-7-4 70984]<br \/>\nR2 BstHdLogRotatorSvc;BlueStacks Log Rotator Service;C:\\Program Files (x86)\\BlueStacks\\HD-LogRotatorService.exe [2013-7-4 384840]<br \/>\nR2 cvhsvc;Client Virtualization Handler;C:\\Program Files (x86)\\Common Files\\Microsoft Shared\\Virtualization Handler\\CVHSVC.EXE [2012-1-4 822624]<br \/>\nR2 DefaultTabUpdate;DefaultTabUpdate;C:\\Users\\john edmund\\AppData\\Roaming\\DefaultTab\\DefaultTab\\DTUpdate.exe [2013-3-17 107520]<br \/>\nR2 HWDeviceService64.exe;HWDeviceService64.exe;C:\\ProgramData\\DatacardService\\HWDeviceService64.exe [2011-3-14 346976]<br \/>\nR2 IconMan_R;IconMan_R;C:\\Program Files (x86)\\Realtek\\Realtek PCIE Card Reader\\RIconMan.exe [2013-1-22 2451456]<br \/>\nR2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\\Program Files\\Intel\\iCLS Client\\HeciServer.exe [2011-12-9 607456]<br \/>\nR2 Intel(R) ME Service;Intel(R) ME Service;C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\FWService\\IntelMeFWService.exe [2012-7-31 128280]<br \/>\nR2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\DAL\\Jhi_service.exe [2012-7-31 161560]<br \/>\nR2 NvStreamSvc;NVIDIA Streamer Service;C:\\Program Files\\NVIDIA Corporation\\NvStreamSrv\\nvstreamsvc.exe [2013-8-1 14984480]<br \/>\nR2 sftlist;Application Virtualization Client;C:\\Program Files (x86)\\Microsoft Application Virtualization Client\\sftlist.exe [2011-10-1 508776]<br \/>\nR2 Skype C2C Service;Skype C2C Service;C:\\ProgramData\\Skype\\Toolbars\\Skype C2C Service\\c2c_service.exe [2013-7-12 3289472]<br \/>\nR2 UNS;Intel(R) Management and Security Application User Notification Service;C:\\Program Files (x86)\\Intel\\Intel(R) Management Engine Components\\UNS\\UNS.exe [2012-7-31 363800]<br \/>\nR2 WebCake Desktop Updater;WebCake Desktop Updater;C:\\Program Files (x86)\\WebCake\\WebCakeDesktop.Updater.exe [2013-6-23 23552]<br \/>\nR3 AiCharger;ASUS Charger Driver;C:\\WINDOWS\\System32\\Drivers\\AiCharger.sys [2012-7-31 17152]<br \/>\nR3 ATP;ASUS PS\/2 Port Input Device;C:\\WINDOWS\\System32\\Drivers\\AsusTP.sys [2012-10-31 61824]<br \/>\nR3 BBUpdate;BBUpdate;C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.391.0\\SeaPort.EXE [2012-6-11 240208]<br \/>\nR3 huawei_enumerator;huawei_enumerator;C:\\WINDOWS\\System32\\Drivers\\ew_jubusenum.sys [2013-4-7 87040]<br \/>\nR3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);C:\\WINDOWS\\System32\\Drivers\\nvvad64v.sys [2013-8-1 39712]<br \/>\nR3 RSBASTOR;Realtek PCIE CardReader Driver &#8211; BA;C:\\WINDOWS\\System32\\Drivers\\RtsBaStor.sys [2013-1-22 295056]<br \/>\nR3 RTL8168;Realtek 8168 NT Driver;C:\\WINDOWS\\System32\\Drivers\\Rt630x64.sys [2012-6-2 589824]<br \/>\nR3 Sftfs;Sftfs;C:\\WINDOWS\\System32\\Drivers\\Sftfslh.sys [2011-10-1 764264]<br \/>\nR3 Sftplay;Sftplay;C:\\WINDOWS\\System32\\Drivers\\Sftplaylh.sys [2011-10-1 268648]<br \/>\nR3 Sftredir;Sftredir;C:\\WINDOWS\\System32\\Drivers\\Sftredirlh.sys [2011-10-1 25960]<br \/>\nR3 Sftvol;Sftvol;C:\\WINDOWS\\System32\\Drivers\\Sftvollh.sys [2011-10-1 22376]<br \/>\nR3 sftvsa;Application Virtualization Service Agent;C:\\Program Files (x86)\\Microsoft Application Virtualization Client\\sftvsa.exe [2011-10-1 219496]<br \/>\nR4 AtherosSvc;AtherosSvc;C:\\WINDOWS\\System32\\AdminService.exe [2012-8-29 208384]<br \/>\nS1 aswSnx;aswSnx;C:\\WINDOWS\\System32\\Drivers\\aswSnx.sys [2012-11-27 958400]<br \/>\nS1 aswSP;aswSP;C:\\WINDOWS\\System32\\Drivers\\aswSP.sys [2012-11-27 355856]<br \/>\nS1 HssDRV6;Hotspot Shield Routing Driver 6;C:\\WINDOWS\\System32\\Drivers\\hssdrv6.sys [2012-11-15 42248]<br \/>\nS2 Amsp;Trend Micro Solution Platform;C:\\Program Files\\Trend Micro\\AMSP\\coreServiceShell.exe [2012-3-10 275912]<br \/>\nS2 BBSvc;BingBar Service;C:\\Program Files (x86)\\Microsoft\\BingBar\\7.1.391.0\\BBSvc.EXE [2012-6-11 193616]<br \/>\nS2 DefaultTabSearch;DefaultTabSearch;C:\\Program Files (x86)\\DefaultTab\\DefaultTabSearch.exe [2013-2-11 572928]<br \/>\nS2 Globe Tattoo Broadband. RunOuc;Globe Tattoo Broadband. OUC;D:\\Globe Tattoo Broadband\\UpdateDog\\ouc.exe &#8211;&gt; D:\\Globe Tattoo Broadband\\UpdateDog\\ouc.exe [?]<br \/>\nS2 SkypeUpdate;Skype Updater;C:\\Program Files (x86)\\Skype\\Updater\\Updater.exe [2013-6-3 162408]<br \/>\nS3 BtFilter;BtFilter;C:\\WINDOWS\\System32\\Drivers\\btfilter.sys [2012-8-29 565760]<br \/>\nS3 BthLEEnum;Bluetooth Low Energy Driver;C:\\WINDOWS\\System32\\Drivers\\BthLEEnum.sys [2012-7-26 202752]<br \/>\nS3 btmaux;Intel Bluetooth Auxiliary Service;C:\\WINDOWS\\System32\\Drivers\\btmaux.sys [2012-8-27 121728]<br \/>\nS3 DrvAgent64;DrvAgent64;C:\\Windows\\SysWOW64\\drivers\\DrvAgent64.SYS [2013-1-22 21712]<br \/>\nS3 ewusbmbb;HUAWEI USB-WWAN miniport;C:\\WINDOWS\\System32\\Drivers\\ewusbwwan.sys [2013-4-7 421888]<br \/>\nS3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;C:\\Program Files\\Common Files\\Macrovision Shared\\FLEXnet Publisher\\FNPLicensingService64.exe [2013-1-28 1432400]<br \/>\nS3 fssfltr;fssfltr;C:\\WINDOWS\\System32\\Drivers\\fssfltr.sys [2012-3-10 48488]<br \/>\nS3 fsssvc;Windows Live Family Safety Service;C:\\Program Files (x86)\\Windows Live\\Family Safety\\fsssvc.exe [2011-5-14 1492840]<br \/>\nS3 IntcDAud;Intel(R) Display Audio;C:\\WINDOWS\\System32\\Drivers\\IntcDAud.sys [2012-10-26 342528]<br \/>\nS3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\\WINDOWS\\System32\\Drivers\\iusb3hub.sys [2012-5-25 356120]<br \/>\nS3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\\WINDOWS\\System32\\Drivers\\iusb3xhc.sys [2012-5-25 787736]<br \/>\nS3 USBAAPL64;Apple Mobile USB Driver;C:\\WINDOWS\\System32\\Drivers\\usbaapl64.sys [2012-12-13 54784]<br \/>\nS3 vmbusr;Virtual Machine Bus Provider;C:\\WINDOWS\\System32\\Drivers\\vmbusr.sys [2012-7-26 117248]<br \/>\nS3 WDC_SAM;WD SCSI Pass Thru driver;C:\\WINDOWS\\System32\\Drivers\\wdcsam64.sys [2008-5-6 14464]<br \/>\nS3 WUDFWpdComp;WUDFWpdComp;C:\\WINDOWS\\System32\\Drivers\\WUDFRd.sys [2012-7-26 198656]<br \/>\nS3 WUDFWpdMtp;WUDFWpdMtp;C:\\WINDOWS\\System32\\Drivers\\WUDFRd.sys [2012-7-26 198656]<br \/>\nS4 wlcrasvc;Windows Live Mesh remote connections service;C:\\Program Files\\Windows Live\\Mesh\\wlcrasvc.exe [2010-9-23 57184]<br \/>\n.<br \/>\n=============== File Associations ===============<br \/>\n.<br \/>\nFileExt: .scr: AutoCADScriptFile=C:\\WINDOWS\\System32\\notepad.exe &#8220;%1&#8221;<br \/>\n.<br \/>\n=============== Created Last 30 ================<br \/>\n.<br \/>\n2013-08-01 14:14:34 0 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\sho8D0B.tmp<br \/>\n2013-08-01 13:09:11 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\NvidiaLogging<br \/>\n2013-08-01 13:07:57 39712 &#8212;-a-w- C:\\WINDOWS\\System32\\drivers\\nvvad64v.sys<br \/>\n2013-08-01 13:07:57 29984 &#8212;-a-w- C:\\WINDOWS\\System32\\nvaudcap64v.dll<br \/>\n2013-08-01 13:07:57 28448 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\nvaudcap32v.dll<br \/>\n2013-08-01 01:10:14 262832 &#8212;-a-w- C:\\ProgramData\\Microsoft\\Windows\\Sqm\\Manifest\\Sqm10212.bin<br \/>\n2013-07-27 14:16:23 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\Program Files (x86)\\Common Files\\Steam<br \/>\n2013-07-23 09:53:14 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\Users\\john edmund\\AppData\\Local\\EA Games<br \/>\n2013-07-23 07:10:43 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\ProgramData\\Origin<br \/>\n2013-07-22 23:22:29 &#8212;&#8212;&#8211; d&#8211;h&#8211;w- C:\\Program Files (x86)\\Common Files\\EAInstaller<br \/>\n2013-07-18 23:03:11 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\WINDOWS\\SysWow64\\NV<br \/>\n2013-07-18 23:03:11 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\WINDOWS\\System32\\NV<br \/>\n2013-07-16 16:44:40 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\Program Files (x86)\\BlueStacks<br \/>\n2013-07-16 16:44:22 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\ProgramData\\BlueStacksSetup<br \/>\n2013-07-16 16:44:21 &#8212;&#8212;&#8211; d&#8212;&#8211;w- C:\\ProgramData\\BlueStacks<br \/>\n2013-07-12 06:42:18 6129024 &#8212;-a-w- C:\\Program Files (x86)\\Mozilla Firefox\\extensions\\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\\components\\SkypeFfComponent.dll<br \/>\n2013-07-12 06:42:18 6129024 &#8212;-a-w- C:\\Program Files (x86)\\Mozilla Firefox\\browser\\extensions\\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}\\components\\SkypeFfComponent.dll<br \/>\n2013-07-09 15:08:21 53248 &#8212;-a-r- C:\\Users\\john edmund\\AppData\\Roaming\\Microsoft\\Installer\\{9AA761E6-CA51-4FF2-A552-D51638BF0595}\\_F522ED7EA612_4117_B86D_78467DE01E30.exe<br \/>\n.<br \/>\n==================== Find3M ====================<br \/>\n.<br \/>\n2013-07-18 10:46:26 281688 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\PnkBstrB.xtr<br \/>\n2013-07-18 10:46:26 281688 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\PnkBstrB.exe<br \/>\n2013-07-13 19:49:00 6598432 &#8212;-a-w- C:\\WINDOWS\\System32\\nvcpl.dll<br \/>\n2013-07-13 19:49:00 3447072 &#8212;-a-w- C:\\WINDOWS\\System32\\nvsvc64.dll<br \/>\n2013-07-13 19:48:57 911136 &#8212;-a-w- C:\\WINDOWS\\System32\\nvvsvc.exe<br \/>\n2013-07-13 19:48:57 67072 &#8212;-a-w- C:\\WINDOWS\\System32\\nv3dappshextr.dll<br \/>\n2013-07-13 19:48:57 63776 &#8212;-a-w- C:\\WINDOWS\\System32\\nvshext.dll<br \/>\n2013-07-13 19:48:57 2559776 &#8212;-a-w- C:\\WINDOWS\\System32\\nvsvcr.dll<br \/>\n2013-07-13 19:48:57 219424 &#8212;-a-w- C:\\WINDOWS\\System32\\nvmctray.dll<br \/>\n2013-07-13 19:48:57 1042208 &#8212;-a-w- C:\\WINDOWS\\System32\\nv3dappshext.dll<br \/>\n2013-07-13 19:48:55 3274475 &#8212;-a-w- C:\\WINDOWS\\System32\\nvcoproc.bin<br \/>\n2013-07-09 03:47:12 281688 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\PnkBstrB.ex0<br \/>\n2013-07-03 02:23:33 96168 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\WindowsAccessBridge-32.dll<br \/>\n2013-07-03 02:23:32 867240 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\npDeployJava1.dll<br \/>\n2013-07-03 02:23:32 789416 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\deployJava1.dll<br \/>\n2013-06-21 17:11:43 76888 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\PnkBstrA.exe<br \/>\n2013-05-12 21:42:27 1832224 &#8212;-a-w- C:\\WINDOWS\\System32\\nvdispco6432018.dll<br \/>\n2013-05-12 21:42:27 1511712 &#8212;-a-w- C:\\WINDOWS\\System32\\nvdispgenco6432018.dll<br \/>\n2013-05-09 02:47:13 0 &#8212;-a-w- C:\\WINDOWS\\SysWow64\\sho65C9.tmp<br \/>\n.<br \/>\n============= FINISH: 17:07:40.92 ===============<\/p>\n<p>PS: I hope you can help me with this. i will greatly appreciate it. Thank you<\/p>\n","protected":false},"author":5,"featured_media":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"inline_featured_image":false,"iawp_total_views":49},"question-category":[56],"question_tags":[],"class_list":["post-8961","question","type-question","status-publish","hentry","question-category-security"],"jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/computing.net\/answers\/wp-json\/wp\/v2\/question\/8961","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/computing.net\/answers\/wp-json\/wp\/v2\/question"}],"about":[{"href":"https:\/\/computing.net\/answers\/wp-json\/wp\/v2\/types\/question"}],"author":[{"embeddable":true,"href":"https:\/\/computing.net\/answers\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/computing.net\/answers\/wp-json\/wp\/v2\/comments?post=8961"}],"wp:attachment":[{"href":"https:\/\/computing.net\/answers\/wp-json\/wp\/v2\/media?parent=8961"}],"wp:term":[{"taxonomy":"question-category","embeddable":true,"href":"https:\/\/computing.net\/answers\/wp-json\/wp\/v2\/question-category?post=8961"},{"taxonomy":"question_tags","embeddable":true,"href":"https:\/\/computing.net\/answers\/wp-json\/wp\/v2\/question_tags?post=8961"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}