We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

PC or connection issues?

12467

Comments

  • soolin
    soolin Posts: 74,468 Ambassador
    Part of the Furniture 10,000 Posts Photogenic Name Dropper
    Figment wrote: »
    I hope you're not installing these new anti-virus programs without removing the previous one(s) or you could give yourself a load of new problems - especially if they have on-access scanners

    These aren't they downloaded type, these are the ones from the sticky thread that do it online .
    I’m a Forum Ambassador and I support the Forum Team on the eBay, Auctions, Car Boot & Jumble Sales, Boost Your Income, Praise, Vents & Warnings, Overseas Holidays & Travel Planning , UK Holidays, Days Out & Entertainments boards. If you need any help on these boards, do let me know.. Please note that Ambassadors are not moderators. Any posts you spot in breach of the Forum Rules should be reported via the report button, or by emailing forumteam@moneysavingexpert.com.All views are my own and not the official line of MoneySavingExpert.
  • debitcardmayhem
    debitcardmayhem Posts: 13,181 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    soolin wrote: »
    These aren't they downloaded type, these are the ones from the sticky thread that do it online .
    waddler_8 wrote: »
    It'll be far quicker to do the DDS scan rather than all these long scans that could take hours.
    DDS will be lots quicker
    4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 tracker again+ Octopus Intelligent Flux leccy
  • debitcardmayhem
    debitcardmayhem Posts: 13,181 Forumite
    Part of the Furniture 10,000 Posts Name Dropper Photogenic
    soolin wrote: »
    ...snipped....
    Is downloading Firefox normally a problem like this?
    Not if you get it from a reliable source e.g. mozilla.org
    4.8kWp 12x400W Longhi 9.6 kWh battery Giv-hy 5.0 Inverter, WSW facing Essex . Aint no sunshine ☀️ Octopus gas fixed dec 24 @ 5.74 tracker again+ Octopus Intelligent Flux leccy
  • soolin
    soolin Posts: 74,468 Ambassador
    Part of the Furniture 10,000 Posts Photogenic Name Dropper
    waddler_8 wrote: »
    This should take 2-3 minutes and should give an indication if anything is untoward.

    Download DDS from the link below and save it to your desktop:

    Link

    After you've downloaded it and saved it to your desktop:
    • Double click DDS to run it.
    • When it's finished, DDS will open two logs:
    1. DDS.txt
    2. Attach.txt
    Save both reports to your desktop.

    Copy & paste the contents of just DDS.txt for now and post it here (you may need to split the log over separate posts)

    Ok, I've done this now and will attach the log.
    I’m a Forum Ambassador and I support the Forum Team on the eBay, Auctions, Car Boot & Jumble Sales, Boost Your Income, Praise, Vents & Warnings, Overseas Holidays & Travel Planning , UK Holidays, Days Out & Entertainments boards. If you need any help on these boards, do let me know.. Please note that Ambassadors are not moderators. Any posts you spot in breach of the Forum Rules should be reported via the report button, or by emailing forumteam@moneysavingexpert.com.All views are my own and not the official line of MoneySavingExpert.
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    You'll have to copy/paste & post it, you can't attach files to the posts here.
  • soolin
    soolin Posts: 74,468 Ambassador
    Part of the Furniture 10,000 Posts Photogenic Name Dropper
    .
    DDS (Ver_2011-08-26.01) - NTFSAMD64
    Internet Explorer: 9.0.8112.16421
    Run by D at 21:20:15 on 2012-08-20
    Microsoft Windows 7 Home Premium 6.1.7600.0.1252.44.1033.18.3839.1933 [GMT 1:00]
    .
    AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
    SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
    FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\wininit.exe
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\svchost.exe -k RPCSS
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    c:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe
    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    C:\Program Files (x86)\Bonjour\mDNSResponder.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe
    C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
    C:\Windows\system32\mfevtps.exe
    C:\Windows\system32\rundll32.exe
    C:\Windows\system32\rundll32.exe
    C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe
    C:\Windows\SysWOW64\rundll32.exe
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtWlan.exe
    C:\Windows\system32\svchost.exe -k imgsvc
    C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
    C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
    C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
    C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe
    C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
    C:\Windows\System32\alg.exe
    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\Program Files (x86)\McAfeeMOBK\WrapperTrayIcon.exe
    C:\Windows\system32\WUDFHost.exe
    C:\Program Files\McAfee.com\Agent\mcagent.exe
    C:\Program Files (x86)\iTunes\iTunesHelper.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Windows\System32\svchost.exe -k LocalServicePeerNet
    C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
    C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
    C:\Windows\system32\wuauclt.exe
    C:\Windows\system32\svchost.exe -k SDRSVC
    C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
    C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
    C:\Windows\system32\taskhost.exe
    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
    C:\Program Files (x86)\Internet Explorer\iexplore.exe
    C:\Program Files (x86)\Internet Explorer\iexplore.exe
    C:\Windows\System32\svchost.exe -k swprv
    C:\Windows\system32\SearchProtocolHost.exe
    C:\Windows\system32\SearchFilterHost.exe
    C:\Program Files (x86)\Internet Explorer\iexplore.exe
    c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
    C:\Windows\SysWOW64\cmd.exe
    C:\Windows\system32\conhost.exe
    C:\Windows\SysWOW64\cscript.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = hxxp://www.google.co.uk/
    uSearch Bar = Preserve
    mDefault_Page_URL = hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0809&m=ixtreme_m3720&r=173602100216p0305v1k5y47j1920p
    mStart Page = hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0809&m=ixtreme_m3720&r=173602100216p0305v1k5y47j1920p
    uInternet Settings,ProxyOverride = *.local
    mWinlogon: Userinit=userinit.exe,
    BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO: McAfee Phishing Filter: {27b4851a-3207-45a2-b947-be8afe6163ab} - c:\progra~1\mcafee\msk\mskapbho.dll
    BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120627234224.dll
    BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
    BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
    TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
    mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
    mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    mPolicies-explorer: NoActiveDesktop = 1 (0x1)
    mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
    mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
    mPolicies-system: EnableLUA = 0 (0x0)
    mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
    mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
    IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
    IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
    IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
    IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
    DPF: {0A43D7AC-D6C1-4622-B309-BF975F427C0E} - hxxps://internetbankingplus2.firstdirect.com/ibplus/frontdoorFD.cab
    DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} - hxxp://download.bitdefender.com/resources/scanner/sources/en/scan8/oscan8.cab
    DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} - hxxp://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    DPF: {9191F686-7F0A-441D-8A98-2FE3AC1BD913} - hxxp://acs.pandasoftware.com/activescan/cabs/as2stubie.cab
    DPF: {BEA7310D-06C4-4339-A784-DC3804819809} - hxxp://cards.hallmark.co.uk/upload/activex/v3_0_0_7/PhotoCenter_ActiveX_Control.cab
    DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
    TCP: DhcpNameServer = 192.168.0.1
    TCP: Interfaces\{613D26D9-465C-40FE-8A73-D9CD673D59F6} : DhcpNameServer = 192.168.0.1
    TCP: Interfaces\{91F1F219-9CA6-42D4-89E6-F6A8DF458031} : DhcpNameServer = 192.168.0.1
    Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\McAfee\MSC\McSnIePl.dll
    Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll
    Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll
    Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO-X64: AcroIEHelperStub - No File
    BHO-X64: McAfee Phishing Filter: {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\progra~1\mcafee\msk\mskapbho.dll
    BHO-X64: McAfee Phishing Filter - No File
    BHO-X64: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120627234224.dll
    BHO-X64: scriptproxy - No File
    BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO-X64: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
    BHO-X64: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
    TB-X64: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
    mRun-x64: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
    mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    IE-X64: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - C:\Users\D\AppData\Roaming\Mozilla\Firefox\Profiles\a351s4p9.default\
    FF - prefs.js: browser.search.selectedEngine - Secure Search
    FF - prefs.js: browser.startup.homepage - hxxp://www.google.co.uk/
    FF - prefs.js: keyword.URL - hxxp://uk.search.yahoo.com/search?fr=mcafee&p=
    .
    I’m a Forum Ambassador and I support the Forum Team on the eBay, Auctions, Car Boot & Jumble Sales, Boost Your Income, Praise, Vents & Warnings, Overseas Holidays & Travel Planning , UK Holidays, Days Out & Entertainments boards. If you need any help on these boards, do let me know.. Please note that Ambassadors are not moderators. Any posts you spot in breach of the Forum Rules should be reported via the report button, or by emailing forumteam@moneysavingexpert.com.All views are my own and not the official line of MoneySavingExpert.
  • soolin
    soolin Posts: 74,468 Ambassador
    Part of the Furniture 10,000 Posts Photogenic Name Dropper
    ============= SERVICES / DRIVERS ===============
    .
    R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\system32\drivers\mfehidk.sys --> C:\Windows\system32\drivers\mfehidk.sys [?]
    R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\system32\drivers\mfewfpk.sys --> C:\Windows\system32\drivers\mfewfpk.sys [?]
    R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]
    R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\system32\DRIVERS\mfenlfk.sys --> C:\Windows\system32\DRIVERS\mfenlfk.sys [?]
    R1 MOBKFilter;MOBKFilter;C:\Windows\system32\DRIVERS\MOBK.sys --> C:\Windows\system32\DRIVERS\MOBK.sys [?]
    R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
    R2 AdobeActiveFileMonitor7.0;Adobe Active File Monitor V7;C:\Program Files (x86)\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe [2008-12-8 169312]
    R2 Greg_Service;GRegService;C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe [2009-8-28 1150496]
    R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-6-10 249936]
    R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-6-10 249936]
    R2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-6-10 249936]
    R2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2011-6-10 249936]
    R2 McShield;McAfee McShield;C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe [2011-1-29 199272]
    R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2011-1-29 210584]
    R2 mfevtp;McAfee Validation Trust Protection Service;"C:\Windows\system32\mfevtps.exe" --> C:\Windows\system32\mfevtps.exe [?]
    R2 MOBKbackup;McAfee Online Backup;C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [2010-4-13 231224]
    R2 Realtek11nCU;Realtek11nCU;C:\Program Files (x86)\Realtek\11n USB Wireless LAN Utility\RtlService.exe [2012-8-20 36864]
    R2 Updater Service;Updater Service;C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2009-10-28 240160]
    R2 vseamps;vseamps;C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe [2010-4-8 149544]
    R2 vsedsps;vsedsps;C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe [2010-4-8 148008]
    R2 vseqrts;vseqrts;C:\Program Files\Common Files\Authentium\AntiVirus5\vseqrts.exe [2010-4-8 205352]
    R3 cfwids;McAfee Inc. cfwids;C:\Windows\system32\drivers\cfwids.sys --> C:\Windows\system32\drivers\cfwids.sys [?]
    R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\system32\drivers\mfeavfk.sys --> C:\Windows\system32\drivers\mfeavfk.sys [?]
    R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\system32\drivers\mfefirek.sys --> C:\Windows\system32\drivers\mfefirek.sys [?]
    R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]
    R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
    R3 RTL8192cu;Realtek RTL8192CU Wireless LAN 802.11n USB 2.0 Network Adapter;C:\Windows\system32\DRIVERS\RTL8192cu.sys --> C:\Windows\system32\DRIVERS\RTL8192cu.sys [?]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-2-25 135664]
    S3 fssfltr;fssfltr;C:\Windows\system32\DRIVERS\fssfltr.sys --> C:\Windows\system32\DRIVERS\fssfltr.sys [?]
    S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
    S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-2-25 135664]
    S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\system32\drivers\mferkdet.sys --> C:\Windows\system32\drivers\mferkdet.sys [?]
    S3 Sony Ericsson PCCompanion;Sony Ericsson PCCompanion;C:\Program Files (x86)\Sony Ericsson\Sony Ericsson PC Companion\PCCService.exe [2010-10-14 152064]
    S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
    S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
    S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
    .
    =============== Created Last 30 ================
    .
    2012-08-20 17:35:04 33800 ----a-w- C:\Windows\System32\drivers\pavboot64.sys
    2012-08-20 17:34:57
    d
    w- C:\Program Files (x86)\Panda Security
    2012-08-20 12:18:01
    d
    w- C:\ProgramData\Sophos
    2012-08-20 12:16:57 73728 ----a-r- C:\Users\Debra\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\SVRTgui.exe1_810EDD9E2F0A4E2BACF86673C38D9F48.exe
    2012-08-20 12:16:56 73728 ----a-r- C:\Users\Debra\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\SVRTgui.exe_810EDD9E2F0A4E2BACF86673C38D9F48.exe
    2012-08-20 12:16:56 73728 ----a-r- C:\Users\Debra\AppData\Roaming\Microsoft\Installer\{B829E117-D072-41EA-9606-9826A38D34C1}\ARPPRODUCTICON.exe
    2012-08-20 12:16:49
    d
    w- C:\Program Files (x86)\Sophos
    2012-08-20 11:57:35
    d
    w- C:\Users\Debra\AppData\Local\{F7270C22-0A74-421A-B339-B1C561411431}
    2012-08-20 09:19:14
    d
    w- C:\Users\Debra\AppData\Local\{49F6C886-5E6B-4B25-8CA2-F63DF8FBA83D}
    2012-08-20 08:25:27
    d
    w- C:\Users\Debra\AppData\Local\{DABA96C4-E12E-4CCD-88E5-F87B7782C40F}
    2012-08-19 20:25:02
    d
    w- C:\Users\Debra\AppData\Local\{0F4146D8-FEEE-4666-8280-B1F941DC9E61}
    2012-08-19 08:24:49
    d
    w- C:\Users\Debra\AppData\Local\{AA7CD8BF-5C4D-4F4D-A5CB-66C39D7323CC}
    2012-08-19 08:02:03 503808 ----a-w- C:\Windows\System32\srcore.dll
    2012-08-19 08:02:03 43008 ----a-w- C:\Windows\SysWow64\srclient.dll
    2012-08-19 08:01:55 751104 ----a-w- C:\Windows\System32\win32spl.dll
    2012-08-19 08:01:55 67584 ----a-w- C:\Windows\splwow64.exe
    2012-08-19 08:01:54 559104 ----a-w- C:\Windows\System32\spoolsv.exe
    2012-08-19 08:01:54 492032 ----a-w- C:\Windows\SysWow64\win32spl.dll
    2012-08-19 08:01:36 58880 ----a-w- C:\Windows\System32\browcli.dll
    2012-08-19 08:01:36 41472 ----a-w- C:\Windows\SysWow64\browcli.dll
    2012-08-19 08:01:36 136704 ----a-w- C:\Windows\System32\browser.dll
    2012-08-19 08:01:18 3146752 ----a-w- C:\Windows\System32\win32k.sys
    2012-08-19 08:01:14 956416 ----a-w- C:\Windows\System32\localspl.dll
    2012-08-19 07:26:39
    d
    w- C:\Windows\SysWow64\Extensions
    2012-08-19 07:26:38
    d
    w- C:\Windows\SysWow64\searchplugins
    2012-08-18 21:23:00
    d
    w- C:\ProgramData\Browser Manager
    2012-08-18 20:01:08
    d
    w- C:\Users\Debra\AppData\Local\{54C33D5B-6E96-4AF6-8396-EDF801022F41}
    2012-08-18 20:00:56
    d
    w- C:\Users\Debra\AppData\Local\{3E5718F3-5F11-4622-B672-D19568CBE63E}
    2012-08-18 08:00:38
    d
    w- C:\Users\Debra\AppData\Local\{8CB23E9B-12C3-4010-B4F6-9EA53D63D327}
    2012-08-18 08:00:25
    d
    w- C:\Users\Debra\AppData\Local\{5496B0B8-7962-4F8B-B4F1-F4AE7989BE71}
    2012-08-17 19:16:16
    d
    w- C:\Users\Debra\AppData\Local\{B214A222-313D-4A68-90D1-69B3FC9F77DF}
    2012-08-17 19:16:04
    d
    w- C:\Users\Debra\AppData\Local\{BBE7EACB-F5E0-4C5C-9B35-4BC3A5205BAE}
    2012-08-17 07:15:36
    d
    w- C:\Users\Debra\AppData\Local\{3B359078-7C33-49CB-9B8C-6AF0C32F1B88}
    2012-08-17 07:15:23
    d
    w- C:\Users\Debra\AppData\Local\{22D95A82-2440-4B06-A103-D673F00F08A9}
    2012-08-16 19:00:00
    d
    w- C:\Users\Debra\AppData\Local\{D568F826-DB83-4FF5-A464-FA5261BDC756}
    2012-08-16 18:59:48
    d
    w- C:\Users\Debra\AppData\Local\{E0FA9C5B-6684-425C-891B-58280EFF85D4}
    2012-08-16 06:59:32
    d
    w- C:\Users\Debra\AppData\Local\{C9745B33-6ACC-4717-A7E6-D38CFF6432F6}
    2012-08-16 06:59:20
    d
    w- C:\Users\Debra\AppData\Local\{6A484A59-26B7-409D-BE26-5206CC8D6C83}
    2012-08-15 10:56:43
    d
    w- C:\Users\Debra\AppData\Local\{C6168152-2350-4A36-A9D2-858DCC76726F}
    2012-08-15 10:56:31
    d
    w- C:\Users\Debra\AppData\Local\{326ABD35-2443-4FCE-94FE-581F0680F2EF}
    2012-08-14 19:43:43
    d
    w- C:\Users\Debra\AppData\Local\{FAE79151-23BA-40E7-980B-35F7F4C54A98}
    2012-08-14 19:43:31
    d
    w- C:\Users\Debra\AppData\Local\{9D17AC13-B7D6-4C63-8CA9-E7FEE22E4947}
    2012-08-14 15:50:08
    d
    w- C:\Users\Debra\AppData\Local\Deployment
    2012-08-14 07:43:02
    d
    w- C:\Users\Debra\AppData\Local\{4F5EB9CE-0379-4FDB-AA2C-386CE7FFCAEF}
    2012-08-14 07:42:50
    d
    w- C:\Users\Debra\AppData\Local\{45F3477A-AD3A-449E-8DB2-DC0084B8B574}
    2012-08-13 12:35:41
    d
    w- C:\Users\Debra\AppData\Local\{F8372BE3-5C19-4E4D-A9AB-7AA208870178}
    2012-08-13 12:35:29
    d
    w- C:\Users\Debra\AppData\Local\{3EBA98B1-FA94-4E1A-A94E-A5E2F5D0F79D}
    2012-08-12 12:25:59
    d
    w- C:\Users\Debra\AppData\Local\{4AB5FB8D-8F3C-4961-A644-7E9ED8137A8E}
    2012-08-12 12:25:45
    d
    w- C:\Users\Debra\AppData\Local\{7D19D751-5D1B-4867-BA08-3619A0A0F305}
    2012-08-12 08:02:51
    d
    w- C:\Users\Debra\AppData\Local\{276CB924-FBC7-4F07-9167-195848CA9038}
    2012-08-12 08:02:39
    d
    w- C:\Users\Debra\AppData\Local\{65641DA3-6C81-4B4F-8F3F-2FA92CF609D9}
    2012-08-11 20:02:10
    d
    w- C:\Users\Debra\AppData\Local\{F724AD50-E876-42A7-BBB0-AD9E8F3BB411}
    2012-08-11 20:01:58
    d
    w- C:\Users\Debra\AppData\Local\{3D5B4499-041D-41F5-96DD-1759ED585A5F}
    2012-08-11 10:54:35
    d
    w- C:\ProgramData\Tarma Installer
    2012-08-11 10:54:33
    d
    w- C:\Users\Debra\AppData\Roaming\Babylon
    2012-08-11 10:54:33
    d
    w- C:\ProgramData\Babylon
    2012-08-11 08:01:42
    d
    w- C:\Users\Debra\AppData\Local\{FE79B8B4-0B19-4AE5-A273-043F0CA108F1}
    2012-08-11 08:01:29
    d
    w- C:\Users\Debra\AppData\Local\{C0C15968-1AAE-4965-A161-1D5AC939BA75}
    2012-08-10 20:00:57
    d
    w- C:\Users\Debra\AppData\Local\{2494534D-F5D7-462C-858C-0A7D8446BBD1}
    2012-08-10 20:00:44
    d
    w- C:\Users\Debra\AppData\Local\{63ED563C-63FA-4B45-A0E9-C658A5148064}
    2012-08-10 07:05:18
    d
    w- C:\Users\Debra\AppData\Local\{F70832F9-E94C-4BF2-8415-BD72D7FC90AC}
    2012-08-10 07:05:05
    d
    w- C:\Users\Debra\AppData\Local\{C81EA0F7-3EC5-491D-8383-D1A500CC66E3}
    2012-08-09 18:44:33
    d
    w- C:\Users\Debra\AppData\Local\{C4288ED6-ED80-4396-A283-ED0F44D7C81D}
    2012-08-09 18:44:21
    d
    w- C:\Users\Debra\AppData\Local\{DDAAC82A-4942-4A14-A77A-3FD5FE0C1F67}
    2012-08-09 06:44:04
    d
    w- C:\Users\Debra\AppData\Local\{9DA67C08-52DC-49E8-A8BF-7CD0D9997CF4}
    2012-08-09 06:43:52
    d
    w- C:\Users\Debra\AppData\Local\{5CECCAB2-CA90-4205-8D48-691915C4C6CE}
    2012-08-08 18:43:22
    d
    w- C:\Users\Debra\AppData\Local\{32FC0A99-920D-4479-A73F-8212E68BD098}
    2012-08-08 18:43:10
    d
    w- C:\Users\Debra\AppData\Local\{4C1F3131-934E-4816-9752-3044BA8BAE33}
    2012-08-08 06:42:54
    d
    w- C:\Users\Debra\AppData\Local\{71BC1052-EEE0-4EAC-A9AC-13EE5345367F}
    2012-08-08 06:42:41
    d
    w- C:\Users\Debra\AppData\Local\{05B81EC7-AC67-44EC-BAD0-960F1608FDB2}
    2012-08-07 08:59:35
    d
    w- C:\Users\Debra\AppData\Local\{3D34E6F5-D299-458F-A072-0758A16E2FD8}
    2012-08-07 08:59:23
    d
    w- C:\Users\Debra\AppData\Local\{613A6F07-88F3-4E42-BCA5-01A5103509E9}
    2012-08-06 20:58:56
    d
    w- C:\Users\Debra\AppData\Local\{7B16252A-3C3F-4DF9-BA97-7BEBBC1D8242}
    2012-08-06 20:58:43
    d
    w- C:\Users\Debra\AppData\Local\{60F4BE40-153F-4CC7-BAD6-3AA17C062D61}
    2012-08-06 08:58:14
    d
    w- C:\Users\Debra\AppData\Local\{57EE0BA0-6757-42FB-8929-BA25D0868C5B}
    2012-08-06 08:58:02
    d
    w- C:\Users\Debra\AppData\Local\{4B6173C0-6B2B-4DEE-9897-E593403E3A4C}
    2012-08-05 20:57:31
    d
    w- C:\Users\Debra\AppData\Local\{F082A12C-C7C1-46CB-A566-DBE568826C6C}
    2012-08-05 20:57:18
    d
    w- C:\Users\Debra\AppData\Local\{8E0FC403-1A18-4327-9126-0468B696043F}
    2012-08-05 08:57:03
    d
    w- C:\Users\Debra\AppData\Local\{4E294D34-A3CC-431E-9B88-9E07739D5B6D}
    2012-08-05 08:56:51
    d
    w- C:\Users\Debra\AppData\Local\{4053FDFC-9504-48D3-BE67-258EC4740A1B}
    2012-08-04 20:56:23
    d
    w- C:\Users\Debra\AppData\Local\{873117FB-46B3-40CC-A23B-ADC8C2FE0A7E}
    2012-08-04 20:56:11
    d
    w- C:\Users\Debra\AppData\Local\{5447C642-C01F-4700-A16B-2958328E57EF}
    2012-08-04 08:55:39
    d
    w- C:\Users\Debra\AppData\Local\{3AE1C2C2-0F16-40E8-ADE6-57EFE726C7BF}
    2012-08-04 08:55:26
    d
    w- C:\Users\Debra\AppData\Local\{C3217F3D-20A6-4A5C-80B3-8818E2AB15EC}
    2012-08-03 20:54:56
    d
    w- C:\Users\Debra\AppData\Local\{ECCECEDB-AD1C-4CB9-B0AC-A1D111D83845}
    2012-08-03 20:54:44
    d
    w- C:\Users\Debra\AppData\Local\{F288DDAF-7B36-453A-B1E4-F515BF63DCCB}
    2012-08-03 08:54:29
    d
    w- C:\Users\Debra\AppData\Local\{653FAFE6-303C-4544-8C04-44ABD5D532EC}
    2012-08-03 08:54:17
    d
    w- C:\Users\Debra\AppData\Local\{921AC37E-5E86-4758-BCFB-34197B25E7AF}
    2012-08-02 20:53:50
    d
    w- C:\Users\Debra\AppData\Local\{261C1B6B-41CD-43A8-A26B-D776F24EC2C0}
    2012-08-02 20:53:38
    d
    w- C:\Users\Debra\AppData\Local\{67E10229-8107-4238-8D4D-D62BFA3F0EE2}
    2012-08-02 08:53:22
    d
    w- C:\Users\Debra\AppData\Local\{6710034A-F0F5-46B1-BCCD-DB4FB0890264}
    2012-08-02 08:53:10
    d
    w- C:\Users\Debra\AppData\Local\{878E5A35-83CA-4306-A8F6-089E35CAD4C3}
    2012-08-01 20:52:42
    d
    w- C:\Users\Debra\AppData\Local\{ABA510DE-CCDD-4976-84CF-01B2096D8180}
    2012-08-01 20:52:30
    d
    w- C:\Users\Debra\AppData\Local\{5DAAA8AB-B317-4438-B4B9-4FE3067D5A8C}
    2012-08-01 08:52:01
    d
    w- C:\Users\Debra\AppData\Local\{9C5FBC89-F3AD-4E22-B6DA-DA4DB8C73197}
    2012-08-01 08:51:45
    d
    w- C:\Users\Debra\AppData\Local\{BA42DA62-A4E9-4E5E-A9F9-DBFBF4104DC8}
    2012-07-31 20:51:15
    d
    w- C:\Users\Debra\AppData\Local\{7327FBEE-271F-4B2C-B3A3-2C41060BBAED}
    2012-07-31 20:51:02
    d
    w- C:\Users\Debra\AppData\Local\{E4C8FB08-0F03-48B5-ADE7-7458CC208344}
    2012-07-31 08:50:34
    d
    w- C:\Users\Debra\AppData\Local\{A3B10D66-2D6E-4A0B-AEAF-6E4363851384}
    2012-07-31 08:50:22
    d
    w- C:\Users\Debra\AppData\Local\{9DAEF8E2-5ADD-42E7-BDE1-87AE1F6FCC12}
    2012-07-30 20:49:53
    d
    w- C:\Users\Debra\AppData\Local\{CB82B4A1-E352-488A-AF7D-AF8FE69BE1A6}
    2012-07-30 20:49:40
    d
    w- C:\Users\Debra\AppData\Local\{22C34CFD-1311-42F2-BAAA-52AA1ADB5263}
    2012-07-30 08:49:10
    d
    w- C:\Users\Debra\AppData\Local\{49E3EC44-649D-4B5B-8252-D7B11B7E20BA}
    2012-07-30 08:48:57
    d
    w- C:\Users\Debra\AppData\Local\{91C3862C-3E2C-4D59-99E4-3E06B8545B3B}
    2012-07-29 20:48:26
    d
    w- C:\Users\Debra\AppData\Local\{FB5B80D7-93A4-46C9-9804-0686B5E53F0D}
    2012-07-29 20:48:12
    d
    w- C:\Users\Debra\AppData\Local\{40CBF53D-AAA6-434B-884F-C71290443948}
    2012-07-29 08:47:56
    d
    w- C:\Users\Debra\AppData\Local\{6FC688DF-7DCC-49AD-A7A0-78A7CA5C93AB}
    2012-07-29 08:47:44
    d
    w- C:\Users\Debra\AppData\Local\{A6B8BF01-6B6B-437B-A3DF-DF4007E86374}
    2012-07-28 20:47:13
    d
    w- C:\Users\Debra\AppData\Local\{7BB365DB-237C-4CB8-A457-E82E616CF34F}
    2012-07-28 20:47:00
    d
    w- C:\Users\Debra\AppData\Local\{947B489A-C797-44A6-A385-499ECB241007}
    2012-07-28 08:46:46
    d
    w- C:\Users\Debra\AppData\Local\{113A3248-2C8B-4A36-B972-32ECCD216A83}
    2012-07-28 08:46:33
    d
    w- C:\Users\Debra\AppData\Local\{0CFADD67-50B5-4A76-9DFF-76D1E4FF36F9}
    2012-07-27 20:46:01
    d
    w- C:\Users\Debra\AppData\Local\{59D71093-5A3A-47D9-9F47-193A23D1F7C5}
    2012-07-27 20:45:47
    d
    w- C:\Users\Debra\AppData\Local\{170460B9-8F1F-452F-BEC5-1A8FA7A86C2D}
    2012-07-27 08:45:05
    d
    w- C:\Users\Debra\AppData\Local\{7B2B2001-9DB7-41DA-8C96-479DFECC1B05}
    2012-07-27 08:44:52
    d
    w- C:\Users\Debra\AppData\Local\{560DCAED-4B23-469A-AA5B-E0BB3FEE5691}
    2012-07-26 20:44:22
    d
    w- C:\Users\Debra\AppData\Local\{B86E7A69-6812-4425-8329-7EB0F8DDA2D5}
    2012-07-26 20:44:10
    d
    w- C:\Users\Debra\AppData\Local\{90D90E40-603F-4EB1-83E4-6595CA571149}
    2012-07-26 08:43:55
    d
    w- C:\Users\Debra\AppData\Local\{0CCC5CF3-9E8B-47A2-B751-C6B62A6DA563}
    2012-07-26 08:43:43
    d
    w- C:\Users\Debra\AppData\Local\{C9FD9E50-6922-45AA-847B-64A9D26DAD01}
    2012-07-25 20:43:13
    d
    w- C:\Users\Debra\AppData\Local\{35818350-F976-4778-A6B9-0AC9F7FE05E5}
    2012-07-25 20:43:01
    d
    w- C:\Users\Debra\AppData\Local\{5F01B3D0-B682-484F-B335-C77EF96761A2}
    2012-07-25 08:42:43
    d
    w- C:\Users\Debra\AppData\Local\{7F12CB11-838D-463C-A6FB-D84315576FE9}
    2012-07-25 08:42:31
    d
    w- C:\Users\Debra\AppData\Local\{71ED40F0-E43B-4BC7-802B-DE378D98BA0E}
    2012-07-24 20:19:14
    d
    w- C:\Users\Debra\AppData\Local\{AF01BA5D-9D6B-451A-A0BC-44B001FC6AD4}
    2012-07-24 20:19:02
    d
    w- C:\Users\Debra\AppData\Local\{3AEED311-CF03-4192-A12E-8CBA5BF4C54F}
    2012-07-24 08:18:33
    d
    w- C:\Users\D\AppData\Local\{FDB6B215-D1A1-4E3E-A3CC-48656B9F03CA}
    2012-07-24 08:18:21
    d
    w- C:\Users\D\AppData\Local\{FB7F5882-D443-4347-BD8A-268675ABC602}
    2012-07-23 20:17:50
    d
    w- C:\Users\D\AppData\Local\{E81740FB-9763-4ABB-AD06-20AB68652CC0}
    2012-07-23 20:17:35
    d
    w- C:\Users\D\AppData\Local\{5A22D2D4-5BD1-4A24-9968-1B1FE9AD0E90}
    2012-07-23 08:17:02
    d
    w- C:\Users\D\AppData\Local\{DC3A1DBE-666C-44C9-B24B-BEA053A73EB3}
    2012-07-23 08:16:50
    d
    w- C:\Users\D\AppData\Local\{DAD299A5-5D2C-4171-99B4-4E1DD8ED207E}
    2012-07-22 20:16:17
    d
    w- C:\Users\D\AppData\Local\{AB598994-6047-4DB4-9CFD-497BF194263A}
    2012-07-22 20:16:05
    d
    w- C:\Users\D\AppData\Local\{6E4AC15F-4426-41FE-9C52-80A5C13F8104}
    2012-07-22 08:15:50
    d
    w- C:\Users\D\AppData\Local\{C77C35DA-78E5-4C79-8335-8AE75E3A1635}
    2012-07-22 08:15:38
    d
    w- C:\Users\D\AppData\Local\{44B37E2B-EDA5-4701-8A0D-969D282649FE}
    .
    ==================== Find3M ====================
    .
    2012-07-03 12:46:44 24904 ----a-w- C:\Windows\System32\drivers\mbam.sys
    2012-06-29 03:56:34 2312704 ----a-w- C:\Windows\System32\jscript9.dll
    2012-06-29 03:49:11 1392128 ----a-w- C:\Windows\System32\wininet.dll
    2012-06-29 03:48:07 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
    2012-06-29 03:43:49 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
    2012-06-29 03:39:48 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
    2012-06-29 00:16:58 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll
    2012-06-29 00:09:01 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
    2012-06-29 00:08:59 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
    2012-06-29 00:04:43 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
    2012-06-29 00:00:45 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
    2012-06-18 12:56:04 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
    2012-06-18 12:56:04 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
    2012-06-06 19:59:42 1070152 ----a-w- C:\Windows\SysWow64\MSCOMCTL.OCX
    2012-06-06 05:50:50 2003968 ----a-w- C:\Windows\System32\msxml6.dll
    2012-06-06 05:50:50 1880064 ----a-w- C:\Windows\System32\msxml3.dll
    2012-06-06 05:09:46 1389568 ----a-w- C:\Windows\SysWow64\msxml6.dll
    2012-06-06 05:09:46 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll
    2012-06-02 22:15:31 2622464 ----a-w- C:\Windows\System32\wucltux.dll
    2012-06-02 22:15:08 99840 ----a-w- C:\Windows\System32\wudriver.dll
    2012-06-02 14:19:42 186752 ----a-w- C:\Windows\System32\wuwebv.dll
    2012-06-02 14:15:12 36864 ----a-w- C:\Windows\System32\wuapp.exe
    2012-06-02 05:38:26 95088 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
    2012-06-02 05:38:24 152432 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
    2012-06-02 05:37:45 459216 ----a-w- C:\Windows\System32\drivers\cng.sys
    2012-06-02 05:27:02 340992 ----a-w- C:\Windows\System32\schannel.dll
    2012-06-02 05:27:00 307200 ----a-w- C:\Windows\System32\ncrypt.dll
    2012-06-02 04:48:39 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
    2012-06-02 04:48:35 225280 ----a-w- C:\Windows\SysWow64\schannel.dll
    2012-06-02 04:47:31 219136 ----a-w- C:\Windows\SysWow64\ncrypt.dll
    2012-06-02 04:42:51 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
    .
    ============= FINISH: 21:28:20.57 ===============
    I’m a Forum Ambassador and I support the Forum Team on the eBay, Auctions, Car Boot & Jumble Sales, Boost Your Income, Praise, Vents & Warnings, Overseas Holidays & Travel Planning , UK Holidays, Days Out & Entertainments boards. If you need any help on these boards, do let me know.. Please note that Ambassadors are not moderators. Any posts you spot in breach of the Forum Rules should be reported via the report button, or by emailing forumteam@moneysavingexpert.com.All views are my own and not the official line of MoneySavingExpert.
  • waddler_8
    waddler_8 Posts: 3,588 Forumite
    There's some things to clear out another quick check first. This should take around a minute.

    Download aswMBR and save it to your Desktop.

    http://public.avast.com/~gmerek/aswMBR.exe

    • Right click aswMBR.exe & choose "Run as Administrator" to run it.
    • Click NO to the prompt to download Avast virus definitions
    • Click the Scan button.
    • Wait till the scan reports "Scan finished successfully"
    • Click Save log & save the log to your desktop.
    • Click OK
    • Two files will be created, aswMBR.txt & a file named MBR.dat
    • Click EXIT.
    • Copy & Paste the contents of aswMBR.txt into your next reply.
    Don't click to fix anything yet, just post the log
  • soolin
    soolin Posts: 74,468 Ambassador
    Part of the Furniture 10,000 Posts Photogenic Name Dropper
    Ok off to do that now
    I’m a Forum Ambassador and I support the Forum Team on the eBay, Auctions, Car Boot & Jumble Sales, Boost Your Income, Praise, Vents & Warnings, Overseas Holidays & Travel Planning , UK Holidays, Days Out & Entertainments boards. If you need any help on these boards, do let me know.. Please note that Ambassadors are not moderators. Any posts you spot in breach of the Forum Rules should be reported via the report button, or by emailing forumteam@moneysavingexpert.com.All views are my own and not the official line of MoneySavingExpert.
  • soolin
    soolin Posts: 74,468 Ambassador
    Part of the Furniture 10,000 Posts Photogenic Name Dropper
    I haven't got one that says 'text' at the end but i have this one, the other save dlog won't open:

    aswMBR version 0.9.9.1665 Copyright(c) 2011 AVAST Software
    Run date: 2012-08-20 21:56:39
    21:56:39.602 OS Version: Windows x64 6.1.7600
    21:56:39.602 Number of processors: 4 586 0x170A
    21:56:39.602 ComputerName: DEBRA-PC UserName: Debra
    21:56:40.726 Initialize success
    21:56:52.894 Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\0000005f
    21:56:52.894 Disk 0 Vendor: WDC_WD64 01.0 Size: 610480MB BusType: 3
    21:56:52.910 Disk 0 MBR read successfully
    21:56:52.910 Disk 0 MBR scan
    21:56:52.910 Disk 0 unknown MBR code
    21:56:52.925 Disk 0 Partition 1 00 27 Hidden NTFS WinRE NTFS 30720 MB offset 2048
    21:56:52.925 Disk 0 Partition 2 80 (A) 07 HPFS/NTFS NTFS 100 MB offset 62916608
    21:56:52.941 Disk 0 Partition 3 00 07 HPFS/NTFS NTFS 289828 MB offset 63121408
    21:56:52.956 Disk 0 Partition 4 00 07 HPFS/NTFS NTFS 289830 MB offset 656689152
    21:56:52.972 Disk 0 scanning C:\Windows\system32\drivers
    21:56:57.839 Service scanning
    21:57:07.277 Modules scanning
    21:57:07.277 Disk 0 trace - called modules:
    21:57:07.293 ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys storport.sys hal.dll nvstor64.sys
    21:57:07.308 1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa8004d59060]
    21:57:07.308 3 CLASSPNP.SYS[fffff880013d043f] -> nt!IofCallDriver -> [0xfffffa80046b1120]
    21:57:07.308 5 ACPI.sys[fffff88000fa5781] -> nt!IofCallDriver -> \Device\0000005f[0xfffffa80046ac590]
    21:57:07.324 Scan finished successfully
    21:57:26.465 Disk 0 MBR has been saved successfully to "C:\Users\Debra\Desktop\MBR.dat"
    21:57:26.481 The log file has been saved successfully to "C:\Users\Debra\Desktop\aswMBR.txt"
    I’m a Forum Ambassador and I support the Forum Team on the eBay, Auctions, Car Boot & Jumble Sales, Boost Your Income, Praise, Vents & Warnings, Overseas Holidays & Travel Planning , UK Holidays, Days Out & Entertainments boards. If you need any help on these boards, do let me know.. Please note that Ambassadors are not moderators. Any posts you spot in breach of the Forum Rules should be reported via the report button, or by emailing forumteam@moneysavingexpert.com.All views are my own and not the official line of MoneySavingExpert.
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 352.3K Banking & Borrowing
  • 253.7K Reduce Debt & Boost Income
  • 454.4K Spending & Discounts
  • 245.3K Work, Benefits & Business
  • 601.1K Mortgages, Homes & Bills
  • 177.6K Life & Family
  • 259.2K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16K Discuss & Feedback
  • 37.7K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.