We'd like to remind Forumites to please avoid political debate on the Forum... Read More »
We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
Spam Pop Up's
Options
Comments
-
The pop ups are back!.
Any ideas?
My computer was scanned clean with
Ccleaner
Superantispywaer
Have
Malewarebytes working & up to date
Avira free Working & up to date
Online Armor Working & Up to date.
Which one would be letting the popup's in?
LuckyOne xxxThis Post Has Been Sponsored ByChocolate0 -
Download DDS from the link below and save it to your desktop:
Link
After you've downloaded it and saved it to your desktop:- Double click DDS to run it.
- Click Start
- When it's finished, DDS will open two logs:
- DDS.txt
- Attach.txt
Save both reports to your desktop.
Copy & paste the contents of just DDS.txt for now and post it here (you may need to split the log over separate posts)0 -
I am clicking on your link but there is just a white blank page?
Luckyone xxxThis Post Has Been Sponsored ByChocolate0 -
Try it again now.0
-
Thank You.
Here it comes
DDS (Ver_2012-10-19.01) - NTFS_AMD64
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 10.9.2
Run by Tracey at 16:13:41 on 2012-10-28
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.44.1033.18.3764.1083 [GMT 0:00]
.
AV: Norton Internet Security *Disabled/Updated* {88C95A36-8C3B-2F2C-1B8B-30FCCFDC4855}
AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton Internet Security *Disabled/Updated* {33A8BBD2-AA01-20A2-213B-0B8EB45B02E8}
FW: Norton Internet Security *Disabled* {B0F2DB13-C654-2E74-30D4-99C9310F0F2E}
FW: Online Armor Firewall *Enabled* {BD3F5FCA-866B-1E2E-0A68-58900A751EA1}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files (x86)\Online Armor\OAcat.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Online Armor\oasrv.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\taskhost.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files (x86)\Launch Manager\dsiwmis.exe
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe
C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe
C:\Program Files (x86)\Norton Internet Security\Engine\17.1.0.19\ccSvcHst.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe
C:\Program Files\Packard Bell\Optical Drive Power Management\ODDPWRSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Windows\PLFSetI.exe
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
C:\Program Files\Packard Bell\Optical Drive Power Management\ODDPWR.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files (x86)\Online Armor\oaui.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
C:\Program Files (x86)\Online Armor\OAhlp.exe
C:\Users\Tracey\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
C:\Program Files (x86)\SAMSUNG\Kies\External\FirmwareUpdate\KiesPDLR.exe
C:\Program Files (x86)\Siber Systems\AI RoboForm\robotaskbaricon.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe
C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe
C:\Program Files (x86)\Launch Manager\LManager.exe
C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe
C:\Program Files (x86)\SAMSUNG\Kies\KiesTrayAgent.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\Launch Manager\LMworker.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\igfxext.exe
C:\Program Files (x86)\NortonInstaller\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS\A5E82D02\17.1.0.19\InstStub.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerEvent.exe
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Apoint2K\HidFind.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Program Files\Microsoft Games\solitaire\solitaire.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\iTunes\iTunes.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0809&m=easynote_tx86&r=2736121033b6l0490z195f4691b27s
uSearch Bar = Preserve
mStart Page = hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0809&m=easynote_tx86&r=2736121033b6l0490z195f4691b27s
mDefault_Page_URL = hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0809&m=easynote_tx86&r=2736121033b6l0490z195f4691b27s
mWinlogon: Userinit = userinit.exe
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: SpoofStick: {4D46ED77-1429-4CF6-8F63-C84B5D710BAF} - C:\Program Files (x86)\CoreStreet\SpoofStick\SpoofStick.dll
TB: &RoboForm Toolbar: {724D43A0-0D85-11D4-9908-00400523E39A} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\17.1.0.19\CoIEPlg.dll
TB: SpoofStick: {4D46ED77-1429-4CF6-8F63-C84B5D710BAF} - C:\Program Files (x86)\CoreStreet\SpoofStick\SpoofStick.dll
TB: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [SansaDispatch] C:\Users\Tracey\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
uRun: [AROReminder] <no file>
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
mRun: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\BackupManagerTray.exe" -h -k
mRun: [NortonOnlineBackupReminder] "C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe" UNATTENDED
mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe
mRun: [VideoWebCamera] "C:\Program Files (x86)\VideoWebCamera\VideoWebCamera.exe" -a
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [KiesTrayAgent] C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [IJNetworkScanUtility] C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.EXE
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {724d43aa-0d85-11d4-9908-00400523e39a} - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\roboform.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 194.168.4.100 194.168.8.100
TCP: Interfaces\{51A254BF-8E2F-48C6-8229-DE2C0257A99C} : DHCPNameServer = 194.168.4.100 194.168.8.100
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg pku2u livessp
x64-mStart Page = hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0809&m=easynote_tx86&r=2736121033b6l0490z195f4691b27s
x64-mDefault_Page_URL = hxxp://homepage.packardbell.com/rdr.aspx?b=ACPW&l=0809&m=easynote_tx86&r=2736121033b6l0490z195f4691b27s
x64-TB: &RoboForm Toolbar: {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\System32\NvCpl.dll,NvStartup
x64-Run: [cAudioFilterAgent] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
x64-Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
x64-Run: [PLFSetI] C:\Windows\PLFSetI.exe
x64-Run: [Acer ePower Management] C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerTray.exe
x64-Run: [ODDPwr] "C:\Program Files\Packard Bell\Optical Drive Power Management\ODDPwr.exe"
x64-Run: [IntelliPoint] "c:\Program Files\Microsoft IntelliPoint\ipoint.exe"
x64-Run: [CanonSolutionMenu] C:\Program Files (x86)\Canon\SolutionMenu\CNSLMAIN.exe /logon
x64-Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe /logon
x64-Run: [@OnlineArmor GUI] "C:\Program Files (x86)\Online Armor\oaui.exe"
x64-IE: {320AF880-6646-11D3-ABEE-C5DBF3571F46} - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {320AF880-6646-11D3-ABEE-C5DBF3571F49} - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-IE: {724d43aa-0d85-11d4-9908-00400523e39a} - {724d43aa-0d85-11d4-9908-00400523e39a} - C:\Program Files (x86)\Siber Systems\AI RoboForm\RoboForm-x64.dll
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>This Post Has Been Sponsored ByChocolate0 -
============= SERVICES / DRIVERS ===============
.
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-6-29 55024]
R1 avkmgr;avkmgr;C:\Windows\System32\drivers\avkmgr.sys [2012-10-27 27800]
R1 OADevice;OADriver;C:\Windows\SysWOW64\drivers\OADriver.sys [2012-10-27 61632]
R1 oahlpXX;Online Armor helper driver;C:\Windows\SysWOW64\drivers\oahlp64.sys [2012-10-27 62016]
R1 OAmon;OAmon;C:\Windows\SysWOW64\drivers\OAmon.sys [2012-10-27 40520]
R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]
R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-14 59904]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2012-7-11 140672]
R2 AntiVirSchedulerService;Avira Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2012-10-27 84256]
R2 AntiVirService;Avira Real-Time Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2012-10-27 108320]
R2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgntflt.sys [2012-10-27 99248]
R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-6-30 312400]
R2 ePowerSvc;Acer ePower Service;C:\Program Files\Packard Bell\Packard Bell Power Management\ePowerSvc.exe [2010-6-29 867360]
R2 GREGService;GREGService;C:\Program Files (x86)\Packard Bell\Registration\GREGsvc.exe [2010-1-8 23584]
R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-10-27 399432]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2010-12-27 676936]
R2 NIS;Norton Internet Security;C:\Program Files (x86)\Norton Internet Security\Engine\17.1.0.19\ccSvcHst.exe [2010-4-22 126392]
R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Packard Bell MyBackup\IScheduleSvc.exe [2010-3-8 250368]
R2 OAcat;Online Armor Helper Service;C:\Program Files (x86)\Online Armor\oacat.exe [2012-10-27 216072]
R2 ODDPwrSvc;Acer ODD Power Service;C:\Program Files\Packard Bell\Optical Drive Power Management\ODDPWRSvc.exe [2010-6-29 171040]
R2 SvcOnlineArmor;Online Armor;C:\Program Files (x86)\Online Armor\oasrv.exe [2012-10-27 4463864]
R2 TurboB;Turbo Boost UI Monitor driver;C:\Windows\System32\drivers\TurboB.sys [2009-11-2 13784]
R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-4-22 2320920]
R2 Updater Service;Updater Service;C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [2010-4-22 243232]
R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2010-4-22 56344]
R3 Impcd;Impcd;C:\Windows\System32\drivers\Impcd.sys [2010-6-30 158976]
R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2010-6-30 271872]
R3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;C:\Windows\System32\drivers\L1C62x64.sys [2010-4-22 74280]
R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2010-12-27 25928]
R3 OAnet;OnlineArmor Service;C:\Windows\System32\drivers\OAnet.sys [2012-10-27 35376]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-27 135664]
S3 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;C:\Program Files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [2009-10-9 169312]
S3 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.1.0.19\Definitions\BASHDefs\20091013.001\BHDrvx64.sys [2010-4-22 643632]
S3 ccHP;Symantec Hash Provider;C:\Windows\System32\drivers\NISx64\1101000.013\cchpx64.sys [2010-4-22 615040]
S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);C:\Windows\System32\drivers\ssudbus.sys [2012-1-3 98616]
S3 fssfltr;fssfltr;C:\Windows\System32\drivers\fssfltr.sys [2012-4-14 48488]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
S3 GamesAppService;GamesAppService;C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-12-27 135664]
S3 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_17.1.0.19\Definitions\IPSDefs\20090911.001\IDSVia64.sys [2010-4-22 466480]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-4-22 242720]
S3 ssudmdm;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.);C:\Windows\System32\drivers\ssudmdm.sys [2012-1-3 203320]
S3 SymEFA;Symantec Extended File Attributes;C:\Windows\System32\drivers\NISx64\1101000.013\SymEFA64.sys [2010-4-22 219184]
S3 SYMTDIv;Symantec Vista Network Dispatch Driver;C:\Windows\System32\drivers\NISx64\1101000.013\symtdiv.sys [2010-4-22 450608]
S3 TurboBoost;TurboBoost;C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2009-11-2 126352]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-12-27 1255736]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2012-10-28 08:18:46
d
w- C:\Users\Tracey\AppData\Local\{9067C369-32D6-4574-8DFA-01F0DEEA3763}
2012-10-27 21:47:30
d
w- C:\Users\Tracey\AppData\Roaming\Avira
2012-10-27 21:41:53 99248 ----a-w- C:\Windows\System32\drivers\avgntflt.sys
2012-10-27 21:41:53 27800 ----a-w- C:\Windows\System32\drivers\avkmgr.sys
2012-10-27 21:41:50
d
w- C:\ProgramData\Avira
2012-10-27 21:41:50
d
w- C:\Program Files (x86)\Avira
2012-10-27 20:49:29 374664 ----a-w- C:\Windows\System32\drivers\netio.sys
2012-10-27 20:05:34
d
w- C:\Program Files\CCleaner
2012-10-27 19:54:31
d
w- C:\Users\Tracey\AppData\Local\{61BAF0CC-8318-44B8-A6FE-B57CE878E52A}
2012-10-27 17:05:18
d
w- C:\Users\Tracey\AppData\Roaming\SUPERAntiSpyware.com
2012-10-27 17:05:07
d
w- C:\ProgramData\SUPERAntiSpyware.com
2012-10-27 17:05:07
d
w- C:\Program Files\SUPERAntiSpyware
2012-10-27 16:46:10
d
w- C:\Users\Tracey\AppData\Roaming\OnlineArmor
2012-10-27 16:46:10
d
w- C:\ProgramData\OnlineArmor
2012-10-27 16:43:45 62016 ----a-w- C:\Windows\SysWow64\drivers\oahlp64.sys
2012-10-27 16:43:45 61632 ----a-w- C:\Windows\SysWow64\drivers\OADriver.sys
2012-10-27 16:43:45 40520 ----a-w- C:\Windows\SysWow64\drivers\OAmon.sys
2012-10-27 16:43:45 35376 ----a-w- C:\Windows\System32\drivers\OAnet.sys
2012-10-27 16:43:39
d
w- C:\Program Files (x86)\Online Armor
2012-10-27 07:53:55
d
w- C:\Users\Tracey\AppData\Local\{244C57DC-7B40-4401-B688-336D4B6F1458}
2012-10-26 19:53:19
d
w- C:\Users\Tracey\AppData\Local\{5D055217-2A64-498B-AE66-96536256C53D}
2012-10-26 07:52:56
d
w- C:\Users\Tracey\AppData\Local\{DCE313D9-3E06-489E-8A54-126C433CA7E4}
2012-10-25 19:52:21
d
w- C:\Users\Tracey\AppData\Local\{B92AA63F-E96C-4229-A011-98F0DBB9A528}
2012-10-25 09:22:50 95208 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll
2012-10-25 07:51:44
d
w- C:\Users\Tracey\AppData\Local\{62A89653-F8E9-4915-95D8-6BEE9C33F822}
2012-10-24 19:51:09
d
w- C:\Users\Tracey\AppData\Local\{A9689508-7CEC-441C-A1F4-A32D20F21D98}
2012-10-24 07:50:33
d
w- C:\Users\Tracey\AppData\Local\{FD002D67-9910-42F4-BEBD-E3D82DF9A34F}
2012-10-23 19:49:57
d
w- C:\Users\Tracey\AppData\Local\{B2AF54C0-F8B6-492E-AEF2-3581A5ED62AD}
2012-10-23 07:49:35
d
w- C:\Users\Tracey\AppData\Local\{79CC46F2-111D-4C35-B56E-D518295DB87F}
2012-10-22 19:48:58
d
w- C:\Users\Tracey\AppData\Local\{7DD334CB-562E-421F-9447-0829BDC9F4BC}
2012-10-22 07:48:22
d
w- C:\Users\Tracey\AppData\Local\{1C407B44-EAE3-4C3D-ACD1-8F421544247E}
2012-10-21 19:47:46
d
w- C:\Users\Tracey\AppData\Local\{B0AEEDD8-9EB3-40CE-8CD9-009923F414AA}
2012-10-21 07:47:23
d
w- C:\Users\Tracey\AppData\Local\{84BBBE51-1F4F-48F6-941F-8800DAE5E3E4}
2012-10-20 19:46:47
d
w- C:\Users\Tracey\AppData\Local\{5D10FBE8-96D4-406F-BF8A-E02152BCB944}
2012-10-20 07:46:35
d
w- C:\Users\Tracey\AppData\Local\{E8AFBC23-B91E-4D3F-8C57-F9BF193ECD7F}
2012-10-19 19:45:59
d
w- C:\Users\Tracey\AppData\Local\{6D8B0F2C-288A-4624-9512-C72568480191}
2012-10-19 12:22:50
d--h--w- C:\Windows\msdownld.tmp
2012-10-19 11:22:25 982912 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2012-10-19 11:22:25 265088 ----a-w- C:\Windows\System32\drivers\dxgmms1.sys
2012-10-19 11:22:25 144384 ----a-w- C:\Windows\System32\cdd.dll
2012-10-19 07:45:24
d
w- C:\Users\Tracey\AppData\Local\{16EE8039-2271-4294-AD55-CFD9D5E2645B}
2012-10-18 19:44:47
d
w- C:\Users\Tracey\AppData\Local\{7DD97E26-80F0-4698-AE62-3CA52C7CE1DD}
2012-10-18 07:44:24
d
w- C:\Users\Tracey\AppData\Local\{ACAFA1FD-53DA-48D6-835D-851FA35D04C1}
2012-10-17 19:43:48
d
w- C:\Users\Tracey\AppData\Local\{BA2E31D4-F4A7-43CF-AC93-373940ECED55}
2012-10-17 07:43:13
d
w- C:\Users\Tracey\AppData\Local\{AF269B0D-0CD5-4C3D-B098-91A419BDB4E1}
2012-10-16 19:42:37
d
w- C:\Users\Tracey\AppData\Local\{84B01C1D-0A5B-4934-BF28-AF2DBE4C3D76}
2012-10-16 07:42:01
d
w- C:\Users\Tracey\AppData\Local\{00FD277D-B402-41F8-959A-3103BEDAF658}
2012-10-15 19:41:25
d
w- C:\Users\Tracey\AppData\Local\{D410AC4F-EFB4-41AF-965C-127F93C96CC7}
2012-10-15 07:40:50
d
w- C:\Users\Tracey\AppData\Local\{4C55476D-83C1-4B8A-AD7C-471654614452}
2012-10-14 19:40:14
d
w- C:\Users\Tracey\AppData\Local\{2FF73C48-4EDE-4AC9-90FE-5A490276D614}
2012-10-14 07:39:51
d
w- C:\Users\Tracey\AppData\Local\{865B57F3-7989-4CA4-A331-AE22E3FB393E}
2012-10-13 19:39:15
d
w- C:\Users\Tracey\AppData\Local\{7FD34CD3-6E1F-47F6-BF9A-AD8A2BD45C44}
2012-10-13 07:38:53
d
w- C:\Users\Tracey\AppData\Local\{28CA8549-C9FE-40B2-BBD6-6358F726C26C}
2012-10-12 19:38:17
d
w- C:\Users\Tracey\AppData\Local\{70CD1B29-0A23-4E79-BF50-D2E3C972BE04}
2012-10-12 07:38:05
d
w- C:\Users\Tracey\AppData\Local\{F234F02F-796D-4D87-93FC-A11C8ADDF845}
2012-10-11 19:37:29
d
w- C:\Users\Tracey\AppData\Local\{F50E3149-EB29-49C7-9798-1334B7AF3D25}
2012-10-11 07:37:17
d
w- C:\Users\Tracey\AppData\Local\{5DA13F96-7B3E-43D8-B0DC-FBFF879AC0C1}
2012-10-10 19:36:41
d
w- C:\Users\Tracey\AppData\Local\{7F51FA32-7E85-410C-BB49-A6F323DA826D}
2012-10-10 07:41:59 714752 ----a-w- C:\Windows\System32\kerberos.dll
2012-10-10 07:41:59 541184 ----a-w- C:\Windows\SysWow64\kerberos.dll
2012-10-10 07:41:55 182272 ----a-w- C:\Windows\System32\cryptsvc.dll
2012-10-10 07:41:55 1462784 ----a-w- C:\Windows\System32\crypt32.dll
2012-10-10 07:41:55 140288 ----a-w- C:\Windows\System32\cryptnet.dll
2012-10-10 07:41:55 139264 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2012-10-10 07:41:55 1157632 ----a-w- C:\Windows\SysWow64\crypt32.dll
2012-10-10 07:41:55 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2012-10-10 07:36:06
d
w- C:\Users\Tracey\AppData\Local\{66812A59-EE7C-42C0-B80E-323561AB49DD}
2012-10-09 19:35:29
d
w- C:\Users\Tracey\AppData\Local\{5AC24946-87D4-4357-95FB-CD1C7A6B3594}
2012-10-09 07:34:52
d
w- C:\Users\Tracey\AppData\Local\{95D617FE-CDB9-41AD-AD76-97DF17C78ABB}
2012-10-08 19:34:27
d
w- C:\Users\Tracey\AppData\Local\{6BF8FD8D-61E3-4EDA-9AD6-D6FC46E9710A}
2012-10-08 07:34:04
d
w- C:\Users\Tracey\AppData\Local\{E7DDC11D-053D-4269-905D-2FF2A2E9FB41}
2012-10-07 19:33:28
d
w- C:\Users\Tracey\AppData\Local\{12B6871B-D0EC-493C-91DD-E20E6A72BA30}
2012-10-07 07:33:04
d
w- C:\Users\Tracey\AppData\Local\{BAAE68DB-5805-49C9-9B78-EED5ABEB8F1D}
2012-10-06 19:32:28
d
w- C:\Users\Tracey\AppData\Local\{E106EFAD-A426-466F-BE83-94EF10747BCC}
2012-10-06 07:32:15
d
w- C:\Users\Tracey\AppData\Local\{8B1B17E9-D7E1-4920-A047-D03A54ACBD0D}
2012-10-05 19:27:43
d
w- C:\Users\Tracey\AppData\Local\{3D5471EA-9B76-4B65-A6AB-702E82218F1B}
2012-10-05 07:27:17
d
w- C:\Users\Tracey\AppData\Local\{882C151A-07C8-4523-AF47-03846B340FEF}
2012-10-04 19:26:41
d
w- C:\Users\Tracey\AppData\Local\{1DBB0068-6935-40D2-9495-CA9086335155}
2012-10-04 07:25:55
d
w- C:\Users\Tracey\AppData\Local\{019BDEA1-4F2D-48A5-B3A4-DD3734BD49AD}
2012-10-03 19:24:10
d
w- C:\Users\Tracey\AppData\Local\{B5A84798-F44A-4992-974A-35D8BA65FBB1}
2012-10-03 07:23:28
d
w- C:\Users\Tracey\AppData\Local\{59CDF502-0891-46A1-ACF6-AF9D516C3952}
2012-10-02 11:00:19
d
w- C:\Users\Tracey\AppData\Local\{D667D566-3625-4148-B9CC-104771629E7B}
2012-10-01 20:19:43
d
w- C:\Users\Tracey\AppData\Local\{01BF50B9-5A9F-4F93-BD93-72A5B638A6B0}
2012-10-01 08:19:20
d
w- C:\Users\Tracey\AppData\Local\{DFB6369B-A655-4F46-9941-C05B507C9EE6}
2012-09-30 20:18:44
d
w- C:\Users\Tracey\AppData\Local\{53AB90FA-8EF2-4CD6-B693-653F2FF18A93}
2012-09-30 08:18:21
d
w- C:\Users\Tracey\AppData\Local\{0C77955C-641E-4A1F-8AD6-A88E3B3BD9D8}
2012-09-29 20:17:46
d
w- C:\Users\Tracey\AppData\Local\{7FC6129D-F3CF-4453-BAE1-162D74F4EDB2}
2012-09-29 08:17:23
d
w- C:\Users\Tracey\AppData\Local\{85E0C599-5231-4348-9A1A-6E99452F99F3}
2012-09-28 20:16:47
d
w- C:\Users\Tracey\AppData\Local\{7E7474A1-2376-4895-B54A-809060168F48}
.
==================== Find3M ====================
.
2012-09-29 18:54:26 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys
2012-09-14 19:23:40 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-09-14 18:30:38 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2012-09-10 07:17:24 821736 ----a-w- C:\Windows\SysWow64\npDeployJava1.dll
2012-09-10 07:17:24 746984 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2012-08-31 18:02:20 1656688 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2012-08-30 18:11:29 5505904 ----a-w- C:\Windows\System32\ntoskrnl.exe
2012-08-30 17:18:33 3958128 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2012-08-30 17:18:33 3902832 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2012-08-24 18:05:28 220160 ----a-w- C:\Windows\System32\wintrust.dll
2012-08-24 18:05:27 1197568 ----a-w- C:\Windows\System32\wininet.dll
2012-08-24 18:02:20 57856 ----a-w- C:\Windows\System32\licmgr10.dll
2012-08-24 17:10:47 981504 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-08-24 17:10:47 172544 ----a-w- C:\Windows\SysWow64\wintrust.dll
2012-08-24 17:08:47 44544 ----a-w- C:\Windows\SysWow64\licmgr10.dll
2012-08-24 16:45:23 482816 ----a-w- C:\Windows\System32\html.iec
2012-08-24 16:02:45 1638912 ----a-w- C:\Windows\System32\mshtml.tlb
2012-08-24 16:01:45 386048 ----a-w- C:\Windows\SysWow64\html.iec
2012-08-24 15:27:17 1638912 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-08-21 12:01:20 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
2012-08-21 12:01:20 125872 ----a-w- C:\Windows\System32\GEARAspi64.dll
2012-08-21 12:01:20 106928 ----a-w- C:\Windows\SysWow64\GEARAspi.dll
2012-08-18 15:43:05 362496 ----a-w- C:\Windows\System32\wow64win.dll
2012-08-18 15:43:05 243200 ----a-w- C:\Windows\System32\wow64.dll
2012-08-18 15:43:05 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2012-08-18 15:42:31 215040 ----a-w- C:\Windows\System32\winsrv.dll
2012-08-18 15:40:26 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2012-08-18 15:37:49 425984 ----a-w- C:\Windows\System32\KernelBase.dll
2012-08-18 15:34:13 338432 ----a-w- C:\Windows\System32\conhost.exe
2012-08-18 11:22:55 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2012-08-18 11:19:45 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2012-08-18 11:19:22 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2012-08-18 11:17:56 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2012-08-18 11:17:56 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2012-08-18 09:12:09 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2012-08-18 09:12:09 2048 ----a-w- C:\Windows\SysWow64\user.exe
2012-08-18 09:07:02 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2012-08-18 09:07:02 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2012-08-18 09:07:02 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2012-08-18 09:07:02 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2012-08-02 17:55:04 574464 ----a-w- C:\Windows\System32\d3d10level9.dll
2012-08-02 17:05:42 490496 ----a-w- C:\Windows\SysWow64\d3d10level9.dll
.
============= FINISH: 16:16:03.46 ===============This Post Has Been Sponsored ByChocolate0 -
That is all of it.
My word you are brainy if you know what all of that means!
Thank You
Luckyone xxxThis Post Has Been Sponsored ByChocolate0 -
Do the popups only occur when using Google chrome, or do they occur when using other browsers - Internet Explorer for example?
Download aswMBR and save it to your Desktop.
http://public.avast.com/~gmerek/aswMBR.exe- Right click aswMBR.exe & choose "Run as Administrator" to run it.
- Click NO to the prompt to download Avast virus definitions
- click the Scan button.
- Wait till the scan reports "Scan finished successfully"
- Click Save log & save the log to your desktop.
- Click OK
- Two files will be created, aswMBR.txt & a file named MBR.dat
- Click EXIT.
- Copy & Paste the contents of aswMBR.txt into your next reply.
0 -
To be honest I don't know as I only open windows I.E to complete surveys on Toluna as it dosen't work as well in Chrome.
Ok will do the next oneThis Post Has Been Sponsored ByChocolate0 -
Sorry I'm having trouble with this one. I click on it, it shows at the bottom of my screen & I right click I get the options:
open
Always Open Files Of This Type
Show In Folder
When I click open I get a black box pop up with a white box ontop saying:
This application can use the Avast! free antivirus for scanning. It is recommended that you download it for better detection results would you like to download it yes or no?
Behind that box I can not see Run as administrater
Sorry not very good with computers as you can tell.
Luckyone xxxThis Post Has Been Sponsored ByChocolate0
This discussion has been closed.
Confirm your email address to Create Threads and Reply

Categories
- All Categories
- 350.8K Banking & Borrowing
- 253.1K Reduce Debt & Boost Income
- 453.5K Spending & Discounts
- 243.8K Work, Benefits & Business
- 598.7K Mortgages, Homes & Bills
- 176.8K Life & Family
- 257.1K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.1K Discuss & Feedback
- 37.6K Read-Only Boards