Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Hard drive partitions not found on bootup.  (Read 9568 times)

0 Members and 1 Guest are viewing this topic.

Dko

    Topic Starter


    Greenhorn

    • Experience: Expert
    • OS: Windows 7
    Hard drive partitions not found on bootup.
    « on: November 20, 2012, 06:57:56 AM »
    I originally made a thread here: http://www.computerhope.com/forum/index.php/topic,134564.0.html
    There I stated how two partitions on my hard drive disappear on reboot.  I can make them reappear, but it's a pain bringing up the disk manager every reboot.

    Well I followed the posted guide and here is my logs. Thanks in advance for any help

    ADW Cleaner Logs
    # AdwCleaner v2.008 - Logfile created 11/20/2012 at 08:29:26
    # Updated 17/11/2012 by Xplode
    # Operating system : Windows 7 Ultimate Service Pack 1 (64 bits)
    # User : Jesse - THEBEAST
    # Boot Mode : Normal
    # Running from : C:\Users\Jesse\Downloads\adwcleaner.exe
    # Option [Search]


    ***** [Services] *****


    ***** [Files / Folders] *****


    ***** [Registry] *****

    Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}

    ***** [Internet Browsers] *****

    -\\ Internet Explorer v9.0.8112.16421

    [OK] Registry is clean.

    -\\ Mozilla Firefox v16.0.2 (en-US)

    Profile name : default
    File : C:\Users\Jesse\AppData\Roaming\Mozilla\Firefox\Profiles\6ppfvw8z.default\prefs.js

    [OK] File is clean.

    *************************

    AdwCleaner[R1].txt - [778 octets] - [20/11/2012 08:29:26]

    ########## EOF - C:\AdwCleaner[R1].txt - [837 octets] ##########

    Malwarebytes Log
    Malwarebytes Anti-Malware 1.65.1.1000
    www.malwarebytes.org

    Database version: v2012.11.20.02

    Windows 7 Service Pack 1 x64 NTFS
    Internet Explorer 9.0.8112.16421
    Jesse :: THEBEAST [administrator]

    11/20/2012 8:34:13 AM
    mbam-log-2012-11-20 (08-34-13).txt

    Scan type: Quick scan
    Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
    Scan options disabled: P2P
    Objects scanned: 259375
    Time elapsed: 3 minute(s), 1 second(s)

    Memory Processes Detected: 1
    C:\Windows\svchost.exe (Trojan.Agent) -> 9928 -> Delete on reboot.

    Memory Modules Detected: 0
    (No malicious items detected)

    Registry Keys Detected: 0
    (No malicious items detected)

    Registry Values Detected: 0
    (No malicious items detected)

    Registry Data Items Detected: 0
    (No malicious items detected)

    Folders Detected: 0
    (No malicious items detected)

    Files Detected: 1
    C:\Windows\svchost.exe (Trojan.Agent) -> Delete on reboot.

    (end)

    DDS Logs
    DDS (Ver_2012-11-20.01) - NTFS_AMD64
    Internet Explorer: 9.0.8112.16455  BrowserJavaVersion: 10.9.2
    Run by Jesse at 8:39:33 on 2012-11-20
    Microsoft Windows 7 Ultimate   6.1.7601.1.1252.1.1033.18.8159.4930 [GMT -5:00]
    .
    AV: AVG Anti-Virus 2013 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
    SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
    SP: AVG Anti-Virus 2013 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
    .
    ============== Running Processes ===============
    .
    C:\Windows\system32\lsm.exe
    C:\Windows\system32\svchost.exe -k DcomLaunch
    C:\Windows\system32\nvvsvc.exe
    C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
    C:\Windows\system32\svchost.exe -k RPCSS
    C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
    C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
    C:\Windows\system32\svchost.exe -k netsvcs
    C:\Windows\system32\svchost.exe -k LocalService
    C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
    C:\Windows\system32\nvvsvc.exe
    C:\Windows\system32\svchost.exe -k NetworkService
    C:\Windows\System32\spoolsv.exe
    C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
    C:\Windows\system32\taskhost.exe
    C:\Windows\system32\taskeng.exe
    C:\Windows\system32\Dwm.exe
    C:\Windows\Explorer.EXE
    C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
    C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\VRMHelp.exe
    C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
    C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
    C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe
    C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
    C:\Windows\SysWOW64\UMonit.exe
    C:\Windows\System32\rundll32.exe
    C:\Program Files (x86)\Windows Sidebar\sidebar.exe
    C:\Program Files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe
    C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe
    C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
    C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe
    C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Windows\system32\IProsetMonitor.exe
    C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
    C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
    C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
    C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
    C:\Program Files (x86)\AVG\AVG2013\avgnsa.exe
    C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
    C:\Windows\system32\svchost.exe -k imgsvc
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
    C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
    C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
    C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
    C:\Program Files (x86)\iTunes\iTunesHelper.exe
    C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe
    C:\Program Files (x86)\Roxio\CinePlayer\DMXLauncher.exe
    C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
    C:\Program Files (x86)\AVG\AVG2013\avgui.exe
    C:\Program Files (x86)\AVG\AVG2013\avgcsrva.exe
    C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
    C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
    C:\Windows\system32\wbem\wmiprvse.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Windows\system32\SearchIndexer.exe
    C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
    C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
    C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\CPSHelpRunner10.exe
    C:\Program Files\Windows Media Player\wmpnetwk.exe
    C:\Windows\System32\svchost.exe -k LocalServicePeerNet
    C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
    C:\Program Files (x86)\Internet Explorer\iexplore.exe
    C:\Program Files (x86)\Internet Explorer\iexplore.exe
    \\.\globalroot\systemroot\svchost.exe -netsvcs
    C:\Program Files (x86)\Mozilla Firefox\firefox.exe
    C:\Program Files (x86)\AVG\AVG2013\avgcfgex.exe
    C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
    C:\Windows\servicing\TrustedInstaller.exe
    C:\Windows\notepad.exe
    C:\Windows\system32\svchost.exe -k SDRSVC
    C:\Windows\System32\cscript.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uURLSearchHooks: SearchHook Class: {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
    BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - <orphaned>
    BHO: Shareaza Web Download Hook: {0EEDB912-C5FA-486F-8334-57288578C627} - C:\Program Files\Shareaza\RazaWebHook32.dll
    BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
    BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
    BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
    BHO: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
    BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
    BHO: Microsoft Web Test Recorder 10.0 Helper: {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - D:\Microsoft Visual Studio 10\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll
    BHO: SmartSelect Class: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    TB: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll
    EB: Web Test Recorder 10.0: {5802D092-1784-4908-8CDB-99B6842D353D} -
    uRun: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
    uRun: [Sidebar] C:\Program Files (x86)\Windows Sidebar\sidebar.exe /autoRun
    uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
    uRun: [Google Update] "C:\Users\Jesse\AppData\Local\Google\Update\GoogleUpdate.exe" /c
    mRun: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
    mRun: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
    mRun: [JMB36X IDE Setup] C:\Windows\RaidTool\xInsIDE.exe
    mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
    mRun: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
    mRun: [Adobe Acrobat Speed Launcher] "D:\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe"
    mRun: [Acrobat Assistant 8.0] "D:\Adobe\Acrobat 10.0\Acrobat\Acrotray.exe"
    mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
    mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
    mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
    mRun: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe"
    mRun: [DMXLauncher] "C:\Program Files (x86)\Roxio\CinePlayer\DMXLauncher.exe"
    mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
    mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
    mRun: [ZoneAlarm Installer] "C:\Program Files (x86)\CheckPoint\Install\Launcher.exe" "C:\Program Files (x86)\CheckPoint\Install\Install.exe" /r  /c "C:\Program Files (x86)\CheckPoint\Install\Install.xml"
    mRun: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2013\avgui.exe" /TRAYONLY
    mRunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
    mRunOnce: [Malwarebytes Anti-Malware (cleanup)] rundll32.exe "C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll",ProcessCleanupScript
    StartupFolder: C:\Users\Jesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MCSave.exe
    uPolicies-Explorer: NoDrives = dword:0
    mPolicies-Explorer: NoDrives = dword:0
    mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
    mPolicies-System: ConsentPromptBehaviorUser = dword:3
    mPolicies-System: EnableUIADesktopToggle = dword:0
    IE: Download with &Shareaza - C:\Program Files\Shareaza\RazaWebHook64.dll/3000
    IE: E&xport to Microsoft Excel - D:\MICROS~2\Office14\EXCEL.EXE/3000
    IE: Se&nd to OneNote - D:\MICROS~2\Office14\ONBttnIE.dll/105
    IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
    IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
    IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    Trusted Zone: clonewarsadventures.com
    Trusted Zone: freerealms.com
    Trusted Zone: soe.com
    Trusted Zone: sony.com
    TCP: NameServer = 192.168.3.1
    TCP: Interfaces\{E8DBAC49-CE75-4047-BC62-1FDE2A9B6F00} : DHCPNameServer = 192.168.3.1
    Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
    Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
    SSODL: WebCheck - <orphaned>
    SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL
    x64-BHO: Shareaza Web Download Hook: {0EEDB912-C5FA-486F-8334-57288578C627} - C:\Program Files\Shareaza\RazaWebHook64.dll
    x64-BHO: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - D:\Microsoft Office\Office14\GROOVEEX.DLL
    x64-BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll
    x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\Microsoft Office\Office14\URLREDIR.DLL
    x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll
    x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
    x64-Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
    x64-Run: [BCSSync] "D:\Microsoft Office\Office14\BCSSync.exe" /DelayServices
    x64-Run: [UMonit] C:\Windows\SysWOW64\UMonit.exe
    x64-Run: [PD0620 STISvc] RunDLL32.exe P0620Pin.dll,RunDLL32EP 513
    x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - D:\Microsoft Office\Office14\ONBttnIE.dll
    x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - D:\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
    x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
    x64-Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - <orphaned>
    x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
    x64-SEH: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - D:\Microsoft Office\Office14\GROOVEEX.DLL
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - C:\Users\Jesse\AppData\Roaming\Mozilla\Firefox\Profiles\6ppfvw8z.default\
    FF - prefs.js: browser.startup.homepage - www.google.com
    FF - plugin: C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL
    FF - plugin: C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL
    FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
    FF - plugin: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
    FF - plugin: C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll
    FF - plugin: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
    FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrlui.dll
    FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll
    FF - plugin: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll
    FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
    FF - plugin: C:\Users\Jesse\AppData\Local\Google\Update\1.3.21.123\npGoogleUpdate3.dll
    FF - plugin: C:\Users\Jesse\AppData\LocalLow\Sony Online Entertainment\npsoe.dll
    FF - plugin: C:\Users\Jesse\AppData\LocalLow\Sony Online Entertainment\npsoeact.dll
    FF - plugin: C:\Users\Jesse\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
    FF - plugin: C:\Users\Jesse\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
    FF - plugin: C:\Users\Jesse\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
    FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_110.dll
    FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
    FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
    FF - plugin: D:\Adobe\Acrobat 10.0\Acrobat\Air\nppdf32.dll
    FF - ExtSQL: 2012-10-12 05:13; {59c81df5-4b7a-477b-912d-4e0fdf64e5f2}; C:\Users\Jesse\AppData\Roaming\Mozilla\Firefox\Profiles\6ppfvw8z.default\extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2}
    .
    ---- FIREFOX POLICIES ----
    FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
    .
    ============= SERVICES / DRIVERS ===============
    .
    R0 AVGIDSHA;AVGIDSHA;C:\Windows\System32\drivers\avgidsha.sys [2012-10-15 63328]
    R0 Avgloga;AVG Logging Driver;C:\Windows\System32\drivers\avgloga.sys [2012-9-21 225120]
    R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\System32\drivers\avgmfx64.sys [2012-10-5 111456]
    R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\System32\drivers\avgrkx64.sys [2012-9-14 40800]
    R0 mv91xx;mv91xx;C:\Windows\System32\drivers\mv91xx.sys [2010-8-27 297000]
    R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2012-7-30 56208]
    R1 AVGIDSDriver;AVGIDSDriver;C:\Windows\System32\drivers\avgidsdrivera.sys [2012-10-22 154464]
    R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\System32\drivers\avgldx64.sys [2012-10-2 185696]
    R1 Avgtdia;AVG TDI Driver;C:\Windows\System32\drivers\avgtdia.sys [2012-9-21 200032]
    R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\System32\drivers\dtsoftbus01.sys [2012-7-1 283200]
    R2 asComSvc;ASUS Com Service;C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [2010-11-3 918144]
    R2 asHmComSvc;ASUS HM Com Service;C:\Program Files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe [2010-12-1 915584]
    R2 AsSysCtrlService;ASUS System Control Service;C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [2012-10-12 586880]
    R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664]
    R2 BCUService;Browser Configuration Utility Service;C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-26 223464]
    R2 Intel® PROSet Monitoring Service;Intel® PROSet Monitoring Service;C:\Windows\System32\IPROSetMonitor.exe [2012-7-1 133800]
    R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-2 382824]
    R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);C:\Windows\System32\drivers\ICCWDT.sys [2010-8-17 26136]
    R3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;C:\Windows\System32\drivers\nusb3hub.sys [2010-9-30 80384]
    R3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;C:\Windows\System32\drivers\nusb3xhc.sys [2010-9-30 180736]
    R3 P0620VID;Creative WebCam Instant;C:\Windows\System32\drivers\P0620Vid.sys [2012-9-29 126848]
    R3 USTOR2K;USB Mass Storage Windows Driver;C:\Windows\System32\drivers\ustor2k.sys [2012-9-29 52224]
    S2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-6 5814392]
    S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
    S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
    S2 mi-raysat_3dsmax2013_64;mental ray 3.10 Satellite for Autodesk 3ds Max 2013 64-bit;D:\AutoDesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64server.exe [2011-9-14 86016]
    S2 Roxio Upnp Server 10;Roxio Upnp Server 10;C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [2007-8-24 362992]
    S2 RoxLiveShare10;LiveShare P2P Server 10;C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe [2007-8-24 309744]
    S2 RoxWatch10;Roxio Hard Drive Watcher 10;C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe [2007-8-24 166384]
    S2 SessionLauncher;SessionLauncher;C:\Users\Jesse\AppData\Local\Temp\DX9\SessionLauncher.exe --> C:\Users\Jesse\AppData\Local\Temp\DX9\SessionLauncher.exe [?]
    S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-7-13 160944]
    S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-7-4 1432400]
    S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]
    S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2012-7-1 20992]
    S3 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10;C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [2007-8-24 72176]
    S3 RoxMediaDB10;RoxMediaDB10;C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2007-8-24 1083888]
    S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
    S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2012-7-2 59392]
    S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2012-7-9 52736]
    S3 VSPerfDrv100;Performance Tools Driver 10.0;D:\Microsoft Visual Studio 10\Team Tools\Performance Tools\x64\VSPerfDrv100.sys [2011-1-18 68440]
    S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2012-7-1 1255736]
    S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;C:\Program Files\Microsoft SQL Server\100\Shared\sqladhlp.exe [2009-7-22 61976]
    S4 RsFx0103;RsFx0103 Driver;C:\Windows\System32\drivers\RsFx0103.sys [2009-3-30 311656]
    S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-3-30 427880]
    .
    =============== File Associations ===============
    .
    ShellExec: dreamweaver.exe: Open="D:\Adobe\Adobe Dreamweaver CS6\dreamweaver.exe", "%1"
    .
    =============== Created Last 30 ================
    .
    2012-11-20 13:32:59   25928   ----a-w-   C:\Windows\System32\drivers\mbam.sys
    2012-11-20 13:25:20   --------   d-----w-   C:\Program Files\CCleaner
    2012-11-20 09:56:02   737072   ----a-w-   C:\ProgramData\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
    2012-11-20 09:55:31   2876528   ----a-w-   C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
    2012-11-20 09:36:30   42776   ----a-w-   C:\ProgramData\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
    2012-11-20 09:36:13   539984   ----a-w-   C:\ProgramData\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
    2012-11-20 08:53:47   --------   d-----w-   C:\Users\Jesse\AppData\Local\{A457EA39-84FE-4F7D-B306-DC286CE9EC6F}
    2012-11-20 07:00:31   --------   d-----w-   C:\Windows\pss
    2012-11-20 00:06:54   95208   ----a-w-   C:\Windows\SysWow64\WindowsAccessBridge-32.dll
    2012-11-19 20:34:18   --------   d-----w-   C:\Users\Jesse\AppData\Local\{9AD9A9E6-0F77-4CDB-99D0-4D9BDE6EA707}
    2012-11-19 08:33:42   --------   d-----w-   C:\Users\Jesse\AppData\Local\{F6AA02AD-3D06-4FE6-92E5-8CA8EC879CBD}
    2012-11-19 04:10:56   --------   d-----w-   C:\Users\Jesse\AppData\Roaming\AVG2013
    2012-11-19 04:10:07   --------   d-----w-   C:\Users\Jesse\AppData\Roaming\TuneUp Software
    2012-11-19 04:09:04   --------   d--h--w-   C:\$AVG
    2012-11-19 04:09:04   --------   d-----w-   C:\ProgramData\AVG2013
    2012-11-19 04:08:04   --------   d-----w-   C:\Program Files (x86)\AVG
    2012-11-19 04:02:35   --------   d--h--w-   C:\ProgramData\Common Files
    2012-11-19 04:02:35   --------   d-----w-   C:\Users\Jesse\AppData\Local\MFAData
    2012-11-19 04:02:35   --------   d-----w-   C:\Users\Jesse\AppData\Local\Avg2013
    2012-11-19 04:02:35   --------   d-----w-   C:\ProgramData\MFAData
    2012-11-18 23:45:54   20480   ------w-   C:\Windows\svchost.exe
    2012-11-18 23:43:29   5632   ----a-w-   C:\ProgramData\Microsoft\Windows\DRM\21C6.tmp
    2012-11-18 23:43:29   5632   ----a-w-   C:\ProgramData\Microsoft\Windows\DRM\21C5.tmp
    2012-11-18 20:33:17   --------   d-----w-   C:\Users\Jesse\AppData\Local\{04C5A107-8437-4AB8-8D1E-D462AD218235}
    2012-11-18 08:03:26   3536817   ----a-w-   C:\Windows\System32\nvcoproc.bin
    2012-11-18 06:57:26   --------   d-----w-   C:\Users\Jesse\AppData\Local\{67EF888A-400B-42E7-962D-A1DE3BDFA8D4}
    2012-11-17 18:56:40   --------   d-----w-   C:\Users\Jesse\AppData\Local\{3EA7F5C7-1E77-4D61-8A76-192AC3CEFB55}
    2012-11-17 06:56:16   --------   d-----w-   C:\Users\Jesse\AppData\Local\{CB16D371-9E1F-4A34-9C77-74876CB40733}
    2012-11-16 07:39:05   9291768   ----a-w-   C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{149F35B8-0EE7-442A-AEFE-6409DF42320F}\mpengine.dll
    2012-11-16 07:03:47   --------   d-----w-   C:\Users\Jesse\AppData\Local\{AADCF353-6473-40BC-99E5-B77CF62AE113}
    2012-11-15 19:03:25   --------   d-----w-   C:\Users\Jesse\AppData\Local\{0D0B0E23-B8EB-42A9-A25A-9EFB1CE7A25C}
    2012-11-14 21:29:07   --------   d-----w-   C:\Users\Jesse\.tokentool
    2012-11-14 19:02:40   --------   d-----w-   C:\Users\Jesse\AppData\Local\{1C2CD3B4-F54E-47E1-BBD2-3D7F1E2BAFEC}
    2012-11-14 08:06:30   2560   ----a-w-   C:\Windows\System32\drivers\ja-JP\wdf01000.sys.mui
    2012-11-14 08:06:29   2560   ----a-w-   C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
    2012-11-14 08:06:28   9728   ----a-w-   C:\Windows\System32\Wdfres.dll
    2012-11-14 08:06:28   785512   ----a-w-   C:\Windows\System32\drivers\Wdf01000.sys
    2012-11-14 08:06:28   54376   ----a-w-   C:\Windows\System32\drivers\WdfLdr.sys
    2012-11-14 08:01:24   87040   ----a-w-   C:\Windows\System32\drivers\WUDFPf.sys
    2012-11-14 08:01:24   84992   ----a-w-   C:\Windows\System32\WUDFSvc.dll
    2012-11-14 08:01:24   744448   ----a-w-   C:\Windows\System32\WUDFx.dll
    2012-11-14 08:01:24   45056   ----a-w-   C:\Windows\System32\WUDFCoinstaller.dll
    2012-11-14 08:01:24   229888   ----a-w-   C:\Windows\System32\WUDFHost.exe
    2012-11-14 08:01:24   198656   ----a-w-   C:\Windows\System32\drivers\WUDFRd.sys
    2012-11-14 08:01:24   194048   ----a-w-   C:\Windows\System32\WUDFPlatform.dll
    2012-11-14 06:59:20   --------   d-----w-   C:\Users\Jesse\AppData\Local\{4144E51A-D0FE-4D23-9F43-71619B8FF71F}
    2012-11-13 18:58:29   --------   d-----w-   C:\Users\Jesse\AppData\Local\{51530580-B1F6-4849-B9FC-3355EF0D6E6D}
    2012-11-13 06:57:38   --------   d-----w-   C:\Users\Jesse\AppData\Local\{977077AE-E06B-4E08-A809-59818DF9C2CD}
    2012-11-12 18:56:47   --------   d-----w-   C:\Users\Jesse\AppData\Local\{7BE66859-20F8-4966-93EF-B6FC23FA30F7}
    2012-11-11 18:55:49   --------   d-----w-   C:\Users\Jesse\AppData\Local\{D13565AD-BD5C-48C6-B164-283F5696AC68}
    2012-11-11 06:55:14   --------   d-----w-   C:\Users\Jesse\AppData\Local\{6F3A1314-2C3D-4AAC-AB1E-A565B054A8F3}
    2012-11-10 09:44:46   --------   d-----w-   C:\Users\Jesse\AppData\Roaming\VBA-M
    2012-11-10 06:51:22   --------   d-----w-   C:\Users\Jesse\AppData\Local\{945A3E4A-FF7D-4FDD-B8F1-A8C863CCFDB4}
    2012-11-09 18:29:49   --------   d-----w-   C:\Users\Jesse\AppData\Local\{63EAF98F-32B2-4307-88E6-461EF9610A69}
    2012-11-08 18:29:03   --------   d-----w-   C:\Users\Jesse\AppData\Local\{73CF34A7-B460-4976-B47A-4107231EA1AE}
    2012-11-07 19:19:27   --------   d-----w-   C:\Users\Jesse\AppData\Local\{505A0E01-2C0A-463D-B11C-E6C7B7AD65F2}
    2012-11-07 07:18:51   --------   d-----w-   C:\Users\Jesse\AppData\Local\{77F3F472-587C-43F3-B03D-A2621AD6EC37}
    2012-11-06 19:18:28   --------   d-----w-   C:\Users\Jesse\AppData\Local\{CC9C757D-911B-497A-B714-1EB1243F7229}
    2012-11-05 19:17:42   --------   d-----w-   C:\Users\Jesse\AppData\Local\{CE95A4D2-44E5-4D65-B980-F8A38F21BDDA}
    2012-11-04 06:17:59   --------   d-----w-   C:\Users\Jesse\AppData\Local\{D605785F-0179-4ABB-B35F-47403F8DCAAA}
    2012-11-03 18:17:15   --------   d-----w-   C:\Users\Jesse\AppData\Local\{6B1132B0-49A2-4DFD-80A9-DCD9239E71D5}
    2012-11-03 06:16:50   --------   d-----w-   C:\Users\Jesse\AppData\Local\{6EF0E956-3C14-4B81-8366-E70B46018468}
    2012-11-02 07:20:06   --------   d-----w-   C:\Users\Jesse\AppData\Local\{98E89DFA-C197-45E9-AC8D-36743FC9D9C7}
    2012-11-01 19:19:54   --------   d-----w-   C:\Users\Jesse\AppData\Local\{51150FDE-689F-4B56-9409-C7AB51B82A49}
    2012-11-01 07:16:34   --------   d-----w-   C:\Users\Jesse\AppData\Local\{B5F7C944-8109-4B08-9567-206942D33BC5}
    2012-10-31 19:15:41   --------   d-----w-   C:\Users\Jesse\AppData\Local\{B4F4A2CE-1F63-482C-A741-1FFFCA549CD1}
    2012-10-31 06:31:15   --------   d-----w-   C:\Users\Jesse\AppData\Local\{395C28B2-AE0A-4175-9608-86CB429AC9F5}
    2012-10-30 18:30:24   --------   d-----w-   C:\Users\Jesse\AppData\Local\{4412ADF5-9126-45A2-99F9-7E88F0530F85}
    2012-10-30 06:29:20   --------   d-----w-   C:\Users\Jesse\AppData\Local\{096AB32B-0653-4E03-B569-9B73C408E1EB}
    2012-10-29 18:28:49   --------   d-----w-   C:\Users\Jesse\AppData\Local\{7ECC6345-D474-42C3-A4CC-78E0DEFB5A96}
    2012-10-29 02:05:31   --------   d-----w-   C:\Users\Jesse\AppData\Local\{98E1B177-B04A-481F-86AA-DAE611409130}
    2012-10-28 14:05:06   --------   d-----w-   C:\Users\Jesse\AppData\Local\{23B69BEF-BBB8-4974-85E5-9EDBF3E4F1D6}
    2012-10-27 17:07:39   --------   d-----w-   C:\Users\Jesse\AppData\Local\{17360857-7EF1-4AB2-88E4-AEBC23EA664D}
    2012-10-27 04:35:46   --------   d-----w-   C:\Users\Jesse\AppData\Local\{3613D8B0-AE84-4797-96F3-908ED71F1E86}
    2012-10-26 16:33:50   --------   d-----w-   C:\Users\Jesse\AppData\Local\{75C63D94-1D1B-4E31-8EE3-E1D5A5FBD63D}
    2012-10-25 20:14:19   --------   d-----w-   C:\Program Files\Ventrilo
    2012-10-25 20:13:49   --------   d-----w-   C:\Program Files (x86)\Common Files\Wise Installation Wizard
    2012-10-25 05:43:01   --------   d-----w-   C:\Users\Jesse\AppData\Local\{8C48D4C1-DB0E-4C32-AD5D-6123EBDC6481}
    2012-10-24 17:42:39   --------   d-----w-   C:\Users\Jesse\AppData\Local\{17DDAB54-FE30-4617-901B-E11C10F8694B}
    2012-10-24 09:28:13   737280   ----a-w-   C:\Users\Jesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MCSave.exe
    2012-10-24 05:42:04   --------   d-----w-   C:\Users\Jesse\AppData\Local\{FC09CDA0-40C7-43C2-9CA8-1A5919B72DA0}
    2012-10-23 17:41:45   --------   d-----w-   C:\Users\Jesse\AppData\Local\{386EA9B5-9AA3-45D3-BDBE-37790CF7E450}
    2012-10-23 11:06:05   159744   ----a-w-   C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin7.dll
    2012-10-23 04:49:01   --------   d-----w-   C:\Users\Jesse\AppData\Local\{28D29584-DC35-4CB3-B518-168EF58AD26B}
    2012-10-22 18:02:44   154464   ----a-w-   C:\Windows\System32\drivers\avgidsdrivera.sys
    2012-10-22 16:48:38   --------   d-----w-   C:\Users\Jesse\AppData\Local\{B5B692BB-3980-4D9C-B336-78FC07363BB3}
    2012-10-21 23:24:55   --------   d-----w-   C:\Users\Jesse\AppData\Local\{0C52E850-F5D3-4712-BF8E-4FEDABE01BFC}
    .
    ==================== Find3M  ====================
    .
    2012-11-07 19:49:11   73656   ----a-w-   C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
    2012-11-07 19:49:11   697272   ----a-w-   C:\Windows\SysWow64\FlashPlayerApp.exe
    2012-10-18 18:25:58   3149824   ----a-w-   C:\Windows\System32\win32k.sys
    2012-10-15 08:48:50   63328   ----a-w-   C:\Windows\System32\drivers\avgidsha.sys
    2012-10-13 04:18:12   874688   ----a-w-   C:\Windows\PE_Rom.dll
    2012-10-13 04:17:58   940224   ----a-w-   C:\Windows\PE_File.dll
    2012-10-12 08:52:59   16896   ----a-w-   C:\Windows\AsTaskSched.dll
    2012-10-11 02:22:54   2428776   ----a-w-   C:\Windows\SysWow64\nvapi.dll
    2012-10-11 02:22:52   26331496   ----a-w-   C:\Windows\System32\nvoglv64.dll
    2012-10-11 02:22:52   1760104   ----a-w-   C:\Windows\System32\nvdispco64.dll
    2012-10-11 02:22:32   15309160   ----a-w-   C:\Windows\SysWow64\nvd3dum.dll
    2012-10-11 02:22:26   2747240   ----a-w-   C:\Windows\System32\nvcuvid.dll
    2012-10-11 02:22:24   19906920   ----a-w-   C:\Windows\SysWow64\nvoglv32.dll
    2012-10-11 02:22:18   13443944   ----a-w-   C:\Windows\System32\drivers\nvlddmkm.sys
    2012-10-11 02:22:14   17559912   ----a-w-   C:\Windows\SysWow64\nvcompiler.dll
    2012-10-09 18:17:13   55296   ----a-w-   C:\Windows\System32\dhcpcsvc6.dll
    2012-10-09 18:17:13   226816   ----a-w-   C:\Windows\System32\dhcpcore6.dll
    2012-10-09 17:40:31   44032   ----a-w-   C:\Windows\SysWow64\dhcpcsvc6.dll
    2012-10-09 17:40:31   193536   ----a-w-   C:\Windows\SysWow64\dhcpcore6.dll
    2012-10-08 11:31:03   2312704   ----a-w-   C:\Windows\System32\jscript9.dll
    2012-10-08 11:23:52   1392128   ----a-w-   C:\Windows\System32\wininet.dll
    2012-10-08 11:22:55   1494528   ----a-w-   C:\Windows\System32\inetcpl.cpl
    2012-10-08 11:18:22   173056   ----a-w-   C:\Windows\System32\ieUnatt.exe
    2012-10-08 11:17:35   599040   ----a-w-   C:\Windows\System32\vbscript.dll
    2012-10-08 11:13:33   2382848   ----a-w-   C:\Windows\System32\mshtml.tlb
    2012-10-08 07:56:24   1800704   ----a-w-   C:\Windows\SysWow64\jscript9.dll
    2012-10-08 07:48:03   1129472   ----a-w-   C:\Windows\SysWow64\wininet.dll
    2012-10-08 07:47:44   1427968   ----a-w-   C:\Windows\SysWow64\inetcpl.cpl
    2012-10-08 07:44:05   142848   ----a-w-   C:\Windows\SysWow64\ieUnatt.exe
    2012-10-08 07:43:21   420864   ----a-w-   C:\Windows\SysWow64\vbscript.dll
    2012-10-08 07:40:56   2382848   ----a-w-   C:\Windows\SysWow64\mshtml.tlb
    2012-10-05 08:32:50   111456   ----a-w-   C:\Windows\System32\drivers\avgmfx64.sys
    2012-10-03 17:56:54   1914248   ----a-w-   C:\Windows\System32\drivers\tcpip.sys
    2012-10-03 17:44:21   70656   ----a-w-   C:\Windows\System32\nlaapi.dll
    2012-10-03 17:44:21   303104   ----a-w-   C:\Windows\System32\nlasvc.dll
    2012-10-03 17:44:17   246272   ----a-w-   C:\Windows\System32\netcorehc.dll
    2012-10-03 17:44:17   18944   ----a-w-   C:\Windows\System32\netevent.dll
    2012-10-03 17:44:16   216576   ----a-w-   C:\Windows\System32\ncsi.dll
    2012-10-03 17:42:16   569344   ----a-w-   C:\Windows\System32\iphlpsvc.dll
    2012-10-03 16:42:24   18944   ----a-w-   C:\Windows\SysWow64\netevent.dll
    2012-10-03 16:42:24   175104   ----a-w-   C:\Windows\SysWow64\netcorehc.dll
    2012-10-03 16:42:23   156672   ----a-w-   C:\Windows\SysWow64\ncsi.dll
    2012-10-03 16:07:26   45568   ----a-w-   C:\Windows\System32\drivers\tcpipreg.sys
    2012-10-02 19:51:11   3293544   ----a-w-   C:\Windows\System32\nvsvc64.dll
    2012-10-02 19:51:04   6200680   ----a-w-   C:\Windows\System32\nvcpl.dll
    2012-10-02 19:50:57   891240   ----a-w-   C:\Windows\System32\nvvsvc.exe
    2012-10-02 19:50:57   63336   ----a-w-   C:\Windows\System32\nvshext.dll
    2012-10-02 19:50:57   2557800   ----a-w-   C:\Windows\System32\nvsvcr.dll
    2012-10-02 19:50:57   118120   ----a-w-   C:\Windows\System32\nvmctray.dll
    2012-10-02 18:15:52   430952   ----a-w-   C:\Windows\SysWow64\nvStreaming.exe
    2012-10-02 08:30:38   185696   ----a-w-   C:\Windows\System32\drivers\avgldx64.sys
    2012-09-29 07:12:47   52224   ----a-w-   C:\Windows\System32\drivers\ustor2k.sys
    2012-09-29 07:12:47   40960   ----a-w-   C:\Windows\SysWow64\UMonit.exe
    2012-09-29 07:12:47   2572288   ----a-w-   C:\Windows\System32\GeneIcon.dll
    2012-09-29 07:12:47   147456   ----a-w-   C:\Windows\SysWow64\ustor.dll
    2012-09-25 22:47:43   78336   ----a-w-   C:\Windows\SysWow64\synceng.dll
    2012-09-25 22:46:17   95744   ----a-w-   C:\Windows\System32\synceng.dll
    2012-09-21 08:46:04   200032   ----a-w-   C:\Windows\System32\drivers\avgtdia.sys
    2012-09-21 08:46:00   225120   ----a-w-   C:\Windows\System32\drivers\avgloga.sys
    2012-09-14 19:19:29   2048   ----a-w-   C:\Windows\System32\tzres.dll
    2012-09-14 18:28:53   2048   ----a-w-   C:\Windows\SysWow64\tzres.dll
    2012-09-14 08:05:18   40800   ----a-w-   C:\Windows\System32\drivers\avgrkx64.sys
    2012-09-10 01:11:38   821736   ----a-w-   C:\Windows\SysWow64\npDeployJava1.dll
    2012-09-10 01:11:38   746984   ----a-w-   C:\Windows\SysWow64\deployJava1.dll
    2012-08-31 18:19:35   1659760   ----a-w-   C:\Windows\System32\drivers\ntfs.sys
    2012-08-30 18:03:45   5559664   ----a-w-   C:\Windows\System32\ntoskrnl.exe
    2012-08-30 17:12:02   3968880   ----a-w-   C:\Windows\SysWow64\ntkrnlpa.exe
    2012-08-30 17:12:02   3914096   ----a-w-   C:\Windows\SysWow64\ntoskrnl.exe
    2012-08-24 18:05:07   220160   ----a-w-   C:\Windows\System32\wintrust.dll
    2012-08-24 16:57:48   172544   ----a-w-   C:\Windows\SysWow64\wintrust.dll
    2012-08-22 18:12:40   950128   ----a-w-   C:\Windows\System32\drivers\ndis.sys
    2012-08-22 18:12:40   376688   ----a-w-   C:\Windows\System32\drivers\netio.sys
    2012-08-22 18:12:33   288624   ----a-w-   C:\Windows\System32\drivers\FWPKCLNT.SYS
    .
    ============= FINISH:  8:40:12.05 ===============

    .
    UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
    IF REQUESTED, ZIP IT UP & ATTACH IT
    .
    DDS (Ver_2012-11-20.01)
    .
    Microsoft Windows 7 Ultimate
    Boot Device: \Device\HarddiskVolume1
    Install Date: 7/1/2012 9:05:05 PM
    System Uptime: 11/20/2012 3:51:39 AM (5 hours ago)
    .
    Motherboard: ASUSTeK Computer INC. |  | SABERTOOTH P67
    Processor: Intel(R) Core(TM) i7-2600K CPU @ 3.40GHz | LGA1155 | 3401/100mhz
    .
    ==== Disk Partitions =========================
    .
    C: is FIXED (NTFS) - 135 GiB total, 28.179 GiB free.
    D: is FIXED (NTFS) - 233 GiB total, 97.559 GiB free.
    E: is FIXED (NTFS) - 184 GiB total, 139.48 GiB free.
    F: is FIXED (NTFS) - 233 GiB total, 78.282 GiB free.
    G: is CDROM ()
    H: is FIXED (NTFS) - 37 GiB total, 37.116 GiB free.
    J: is CDROM (CDFS)
    .
    ==== Disabled Device Manager Items =============
    .
    ==== System Restore Points ===================
    .
    RP95: 11/18/2012 11:05:59 PM - Installed AVG 2013
    RP96: 11/18/2012 11:08:15 PM - Installed AVG 2013
    RP97: 11/19/2012 7:05:50 PM - Installed Java 7 Update 9
    .
    ==== Installed Programs ======================
    .
    Adobe Acrobat X Pro - English, Français, Deutsch
    Adobe AIR
    Adobe Creative Suite 6 Master Collection
    Adobe Download Assistant
    Adobe Flash Player 11 ActiveX
    Adobe Flash Player 11 Plugin
    Adobe Help Manager
    Adobe Media Player
    Adobe Reader X (10.1.4)
    Adobe Widget Browser
    AI Suite II
    Apple Application Support
    Apple Mobile Device Support
    Apple Software Update
    ArtMoney SE v7.39.2
    Autodesk 3ds Max 2013 64-bit
    Autodesk Backburner 2013.0.0
    Autodesk DirectConnect 2013 64-bit
    Autodesk Essential Skills Movies for 3ds Max 2013 64-bit
    Autodesk FBX Plug-in 2013.1 - 3ds Max 2013 64-bit
    Autodesk FBX Plug-in 2013.1 - Maya 2013 64-bit
    Autodesk Inventor Server Engine for 3ds Max 2013 64-bit
    Autodesk MatchMover 2013 64-bit
    Autodesk Material Library 2013
    Autodesk Material Library Base Resolution Image Library 2013
    Autodesk Material Library Medium Resolution Image Library 2013
    Autodesk Maya 2013 64-bit
    Autodesk Revit Interoperability for 3ds Max and 3ds Max Design 2013 64-bit
    AVG 2013
    bl
    Black Chocobo
    Bonjour
    Browser Configuration Utility
    CCleaner
    Command & Conquer Gold Edition Stand Alone v1.06c revision 3
    Command & Conquer The First Decade
    Composite 2013 64-bit
    CopyTrans Suite Remove Only
    Creative WebCam Instant Driver (2.00.04.0825)
    Crystal Reports for Visual Studio
    D3DX10
    DAEMON Tools Lite
    Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition
    Diablo III
    DirectXInstallService
    DivX Setup
    Dotfuscator Software Services - Community Edition
    Dynex Internal All-in-1 Card Reader/Writer
    EaseUS Data Recovery Wizard 5.6.1
    EMC 10 Content
    EMCGadgets64
    EVGA SLI Enhancement Patch
    FINAL FANTASY VII
    Foxit Reader
    GameMaker 8.1
    GIMP 2.8.0
    Google Talk Plugin
    Hero Lab 4.1
    Hotfix for Microsoft Team Foundation Server 2010 Object Model - ENU (KB2736182)
    Hotfix for Microsoft Visual Studio 2010 Ultimate - ENU (KB2529927)
    Hotfix for Microsoft Visual Studio 2010 Ultimate - ENU (KB2542054)
    Hotfix for Microsoft Visual Studio 2010 Ultimate - ENU (KB2548139)
    Hotfix for Microsoft Visual Studio 2010 Ultimate - ENU (KB2549864)
    Hotfix for Microsoft Visual Studio 2010 Ultimate - ENU (KB2635973)
    Hotfix for Microsoft Visual Studio 2010 Ultimate - ENU (KB2736182)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2280741)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2284668)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2295689)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2420513)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2452649)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2455033)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB2485545)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB982517)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB982721)
    Hotfix for Visual C++ Standard 2010 Beta 1 - ENU (KB983233)
    Intel(R) Management Engine Components
    Intel(R) Network Connections 15.6.25.0
    Intel® Watchdog Timer Driver (Intel® WDT)
    ISO Recorder
    iTunes
    Java 7 Update 9
    Java Auto Updater
    Java(TM) 7 Update 5 (64-bit)
    JMicron JMB36X Driver
    Junk Mail filter update
    Malwarebytes Anti-Malware version 1.65.1.1000
    marvell 91xx console driver
    Messenger Companion
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 4 Client Profile
    Microsoft .NET Framework 4 Extended
    Microsoft .NET Framework 4 Multi-Targeting Pack
    Microsoft Application Error Reporting
    Microsoft ASP.NET MVC 2
    Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools
    Microsoft Help Viewer 1.1
    Microsoft Office 2010 Service Pack 1 (SP1)
    Microsoft Office Access MUI (English) 2010
    Microsoft Office Access Setup Metadata MUI (English) 2010
    Microsoft Office Excel MUI (English) 2010
    Microsoft Office Groove MUI (English) 2010
    Microsoft Office InfoPath MUI (English) 2010
    Microsoft Office Office 32-bit Components 2010
    Microsoft Office OneNote MUI (English) 2010
    Microsoft Office Outlook MUI (English) 2010
    Microsoft Office PowerPoint MUI (English) 2010
    Microsoft Office Professional Plus 2010
    Microsoft Office Proof (English) 2010
    Microsoft Office Proof (French) 2010
    Microsoft Office Proof (Spanish) 2010
    Microsoft Office Proofing (English) 2010
    Microsoft Office Publisher MUI (English) 2010
    Microsoft Office Shared 32-bit MUI (English) 2010
    Microsoft Office Shared MUI (English) 2010
    Microsoft Office Shared Setup Metadata MUI (English) 2010
    Microsoft Office Word MUI (English) 2010
    Microsoft Silverlight
    Microsoft Silverlight 3 SDK
    Microsoft Silverlight 4 SDK
    Microsoft SQL Server 2005 Compact Edition [ENU]
    Microsoft SQL Server 2008 (64-bit)
    Microsoft SQL Server 2008 Browser
    Microsoft SQL Server 2008 Common Files
    Microsoft SQL Server 2008 Database Engine Services
    Microsoft SQL Server 2008 Database Engine Shared
    Microsoft SQL Server 2008 Native Client
    Microsoft SQL Server 2008 R2 Data-Tier Application Framework
    Microsoft SQL Server 2008 R2 Data-Tier Application Project
    Microsoft SQL Server 2008 R2 Management Objects
    Microsoft SQL Server 2008 R2 Management Objects (x64)
    Microsoft SQL Server 2008 R2 Transact-SQL Language Service
    Microsoft SQL Server 2008 RsFx Driver
    Microsoft SQL Server 2008 Setup Support Files
    Microsoft SQL Server Compact 3.5 SP2 ENU
    Microsoft SQL Server Compact 3.5 SP2 x64 ENU
    Microsoft SQL Server Database Publishing Wizard 1.4
    Microsoft SQL Server System CLR Types
    Microsoft SQL Server System CLR Types (x64)
    Microsoft SQL Server VSS Writer
    Microsoft Sync Framework Runtime v1.0 SP1 (x64)
    Microsoft Sync Framework SDK v1.0 SP1
    Microsoft Sync Framework Services v1.0 SP1 (x64)
    Microsoft Sync Services for ADO.NET v2.0 SP1 (x64)
    Microsoft Team Foundation Server 2010 Object Model - ENU
    Microsoft Visual C++  Compilers 2010 Standard - enu - x64
    Microsoft Visual C++  Compilers 2010 Standard - enu - x86
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2005 Redistributable (x64)
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    Microsoft Visual C++ 2010  x64 Designtime - 10.0.30319
    Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
    Microsoft Visual C++ 2010  x64 Runtime - 10.0.40219
    Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
    Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219
    Microsoft Visual F# 2.0 Runtime
    Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools
    Microsoft Visual Studio 2010 IntelliTrace Collection (x64)
    Microsoft Visual Studio 2010 Office Developer Tools (x64)
    Microsoft Visual Studio 2010 Performance Collection Tools SP1 - ENU
    Microsoft Visual Studio 2010 Service Pack 1
    Microsoft Visual Studio 2010 SharePoint Developer Tools
    Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
    Microsoft Visual Studio 2010 Ultimate - ENU
    Microsoft Visual Studio Macro Tools
    Microsoft_VC80_ATL_x86
    Microsoft_VC80_ATL_x86_x64
    Microsoft_VC80_CRT_x86
    Microsoft_VC80_CRT_x86_x64
    Microsoft_VC80_MFC_x86
    Microsoft_VC80_MFC_x86_x64
    Microsoft_VC80_MFCLOC_x86
    Microsoft_VC80_MFCLOC_x86_x64
    Microsoft_VC90_ATL_x86
    Microsoft_VC90_ATL_x86_x64
    Microsoft_VC90_CRT_x86
    Microsoft_VC90_CRT_x86_x64
    Microsoft_VC90_MFC_x86
    Microsoft_VC90_MFC_x86_x64
    Microsoft_VC90_MFCLOC_x86
    Mozilla Firefox 16.0.2 (x86 en-US)
    Mozilla Maintenance Service
    MPC-HC 1.6.2.4902 (64-bit)
    MSVCRT
    MSVCRT_amd64
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    NVIDIA 3D Vision Driver 306.97
    NVIDIA Control Panel 306.97
    NVIDIA Graphics Driver 306.97
    NVIDIA HD Audio Driver 1.1.13.1
    NVIDIA Install Application
    NVIDIA PhysX
    NVIDIA PhysX System Software 9.10.0514
    NVIDIA Stereoscopic 3D Driver
    NVIDIA Update 1.10.8
    NVIDIA Update Components
    PCSX2 - Playstation 2 Emulator
    PDF Settings CS6
    ph
    QuickTime
    Realtek High Definition Audio Driver
    Renesas Electronics USB 3.0 Host Controller Driver
    Roxio Activation Module
    Roxio BackOnTrack
    Roxio Central Audio
    Roxio Central Copy
    Roxio Central Core
    Roxio Central Data
    Roxio Central Tools
    Roxio CinePlayer
    Roxio CinePlayer Decoder Pack
    Roxio Disc Gallery
    Roxio Easy Media Creator 10 Suite
    Roxio File Backup
    Roxio MediaShare
    Roxio Update Manager
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656368v2)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2656405)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2686827)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)
    Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)
    Security Update for Microsoft .NET Framework 4 Extended (KB2487367)
    Security Update for Microsoft .NET Framework 4 Extended (KB2656351)
    Security Update for Microsoft Excel 2010 (KB2597126) 64-Bit Edition
    Security Update for Microsoft InfoPath 2010 (KB2687417) 64-Bit Edition
    Security Update for Microsoft InfoPath 2010 (KB2687436) 64-Bit Edition
    Security Update for Microsoft Office 2010 (KB2553091)
    Security Update for Microsoft Office 2010 (KB2553096)
    Security Update for Microsoft Office 2010 (KB2553260) 64-Bit Edition
    Security Update for Microsoft Office 2010 (KB2553371) 64-Bit Edition
    Security Update for Microsoft Office 2010 (KB2553447) 64-Bit Edition
    Security Update for Microsoft Office 2010 (KB2589320) 64-Bit Edition
    Security Update for Microsoft Office 2010 (KB2589322) 64-Bit Edition
    Security Update for Microsoft Office 2010 (KB2598243) 64-Bit Edition
    Security Update for Microsoft PowerPoint 2010 (KB2553185) 64-Bit Edition
    Security Update for Microsoft Visio Viewer 2010 (KB2598287) 64-Bit Edition
    Security Update for Microsoft Visual Studio 2010 Ultimate - ENU (KB2644980)
    Security Update for Microsoft Visual Studio 2010 Ultimate - ENU (KB2645410)
    Security Update for Microsoft Visual Studio Macro Tools (KB2669970)
    Security Update for Microsoft Word 2010 (KB2553488) 64-Bit Edition
    Service Pack 1 for SQL Server 2008 (KB968369) (64-bit)
    Shareaza 2.6.0.0
    Skype™ 5.10
    Sql Server Customer Experience Improvement Program
    Steam
    Team Fortress 2
    The Rosetta Stone
    Unity Web Player
    Update for Microsoft .NET Framework 4 Client Profile (KB2468871)
    Update for Microsoft .NET Framework 4 Client Profile (KB2533523)
    Update for Microsoft .NET Framework 4 Client Profile (KB2600217)
    Update for Microsoft .NET Framework 4 Extended (KB2468871)
    Update for Microsoft .NET Framework 4 Extended (KB2533523)
    Update for Microsoft .NET Framework 4 Extended (KB2600217)
    Update for Microsoft Office 2010 (KB2553065)
    Update for Microsoft Office 2010 (KB2553092)
    Update for Microsoft Office 2010 (KB2553181) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2553267) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2553270) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2553272) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2553310) 64-Bit Edition
    Update for Microsoft Office 2010 (KB2566458)
    Update for Microsoft Office 2010 (KB2687509) 64-Bit Edition
    Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition
    Update for Microsoft OneNote 2010 (KB2687277) 64-Bit Edition
    Update for Microsoft Outlook 2010 (KB2687623) 64-Bit Edition
    Update for Microsoft Outlook Social Connector 2010 (KB2553406) 64-Bit Edition
    Update for Microsoft SharePoint Workspace 2010 (KB2589371) 64-Bit Edition
    VC80CRTRedist - 8.0.50727.6195
    Ventrilo Client for Windows x64
    Visual Studio 2010 Prerequisites - English
    Visual Studio 2010 Tools for SQL Server Compact 3.5 SP2 ENU
    Visual Studio 2010 x64 Redistributables
    Vuze
    WBFS Manager 4.0
    WCF RIA Services V1.0 SP1
    Web Deployment Tool
    Winamp
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live ID Sign-in Assistant
    Windows Live Installer
    Windows Live Language Selector
    Windows Live Mail
    Windows Live Messenger
    Windows Live Messenger Companion Core
    Windows Live MIME IFilter
    Windows Live Movie Maker
    Windows Live Photo Common
    Windows Live Photo Gallery
    Windows Live PIMT Platform
    Windows Live SOXE
    Windows Live SOXE Definitions
    Windows Live UX Platform
    Windows Live UX Platform Language Pack
    Windows Live Writer
    Windows Live Writer Resources
    WinRAR 4.20 (64-bit)
    Yahoo! Messenger
    Yahoo! Software Update
    .
    ==== Event Viewer Messages From Past Week ========
    .
    11/20/2012 4:36:24 AM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the UmRdpService service.
    11/20/2012 3:53:43 AM, Error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  RxFilter
    11/20/2012 3:53:03 AM, Error: Service Control Manager [7000]  - The SessionLauncher service failed to start due to the following error:  The system cannot find the file specified.
    11/20/2012 3:52:42 AM, Error: Service Control Manager [7006]  - The ScRegSetValueExW call failed for FailureActions with the following error:  Access is denied.
    11/20/2012 3:50:32 AM, Error: Service Control Manager [7001]  - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error:  The dependency service or group failed to start.
    11/20/2012 2:03:43 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
    11/20/2012 2:02:46 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
    11/20/2012 2:02:45 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
    11/20/2012 2:02:42 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
    11/20/2012 2:02:40 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
    11/20/2012 2:02:34 AM, Error: Microsoft-Windows-DistributedCOM [10005]  - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
    11/20/2012 2:02:26 AM, Error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  AFD AsIO AsUpIO AVGIDSDriver Avgldx64 Avgtdia CSC DfsC discache NetBIOS NetBT nsiproxy Psched rdbss RxFilter spldr tdx Wanarpv6 WfpLwf ws2ifsl
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error:  A device attached to the system is not functioning.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error:  A device attached to the system is not functioning.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error:  The dependency service or group failed to start.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error:  The dependency service or group failed to start.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error:  A device attached to the system is not functioning.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The Network Connections service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error:  The dependency service or group failed to start.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error:  A device attached to the system is not functioning.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error:  A device attached to the system is not functioning.
    11/20/2012 2:02:25 AM, Error: Service Control Manager [7001]  - The AVGIDSAgent service depends on the AVGIDSDriver service which failed to start because of the following error:  A device attached to the system is not functioning.
    11/20/2012 1:59:31 AM, Error: Microsoft-Windows-WMPNSS-Service [14332]  - Service 'WMPNetworkSvc' did not start correctly because CoCreateInstance(CLSID_UPnPDeviceFinder) encountered error '0x80004005'. Verify that the UPnPHost service is running and that the UPnPHost component of Windows is installed properly.
    11/19/2012 1:42:20 AM, Error: Service Control Manager [7011]  - A timeout (30000 milliseconds) was reached while waiting for a transaction response from the avgwd service.
    11/18/2012 6:43:32 PM, Error: atapi [11]  - The driver detected a controller error on \Device\Ide\IdePort0.
    11/18/2012 1:15:06 AM, Error: Service Control Manager [7009]  - A timeout was reached (30000 milliseconds) while waiting for the SQL Server (SQLEXPRESS) service to connect.
    11/18/2012 1:15:06 AM, Error: Service Control Manager [7000]  - The SQL Server (SQLEXPRESS) service failed to start due to the following error:  The service did not respond to the start or control request in a timely fashion.
    .
    ==== End Of File ===========================


    SuperDave

    • Malware Removal Specialist


    • Genius
    • Thanked: 1020
    • Certifications: List
    • Experience: Expert
    • OS: Windows 10
    Re: Hard drive partitions not found on bootup.
    « Reply #1 on: November 20, 2012, 12:28:57 PM »
    Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

    1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
    2. The fixes are specific to your problem and should only be used for this issue on this machine.
    3. If you don't know or understand something, please don't hesitate to ask.
    4. Please DO NOT run any other tools or scans while I am helping you.
    5. It is important that you reply to this thread. Do not start a new topic.
    6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
    7. Absence of symptoms does not mean that everything is clear.

    If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
    *************************************************************************
    Download Combofix from any of the links below, and save it to your DESKTOP

    Link 1
    Link 2
    Link 3

    To prevent your anti-virus application interfering with  ComboFix we need to disable it. See here for a tutorial regarding how to do so if you are unsure.
    • Close any open windows and double click ComboFix.exe to run it.

      You will see the following image:


    Click I Agree to start the program.

    ComboFix will then extract the necessary files and you will see this:



    As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to  have this pre-installed on your machine before doing any malware  removal. This will not occur in Windows Vista and 7

    It will allow you to boot up into a special recovery/repair  mode that will allow us to more easily help you should your computer  have a problem after an attempted removal of malware.

    If you did not have it installed, you will see the prompt below. Choose YES.



    Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

    **Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

    Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:



    Click on Yes, to continue scanning for malware.

    When finished, it will produce a report for you. Please post the contents of the log (C:\ComboFix.txt).

    Leave your computer alone while ComboFix is running. ComboFix will restart your computer if malware is found; allow it to do so.

    Note: Please Do NOT mouseclick combofix's window while its running because it may cause it to stall.
    Windows 8 and Windows 10 dual boot with two SSD's

    Dko

      Topic Starter


      Greenhorn

      • Experience: Expert
      • OS: Windows 7
      Re: Hard drive partitions not found on bootup.
      « Reply #2 on: November 20, 2012, 02:48:28 PM »
      Here you go on that log
      ComboFix 12-11-20.02 - Jesse 11/20/2012  16:40:07.2.8 - x64
      Microsoft Windows 7 Ultimate   6.1.7601.1.1252.1.1033.18.8159.6184 [GMT -5:00]
      Running from: c:\users\Jesse\Downloads\ComboFix.exe
      AV: AVG Anti-Virus 2013 *Disabled/Updated* {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
      SP: AVG Anti-Virus 2013 *Disabled/Updated* {B5F5C120-2089-702E-0001-553BB0D5A664}
      SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
      .
      .
      (((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      c:\programdata\Microsoft\Windows\DRM\21C5.tmp
      c:\programdata\Microsoft\Windows\DRM\21C6.tmp
      c:\users\Jesse\AppData\Local\assembly\tmp
      c:\windows\svchost.exe
      c:\windows\SysWow64\URTTemp
      c:\windows\SysWow64\URTTemp\regtlib.exe
      c:\windows\XSxS
      .
      .
      (((((((((((((((((((((((((   Files Created from 2012-10-20 to 2012-11-20  )))))))))))))))))))))))))))))))
      .
      .
      2012-11-20 21:46 . 2012-11-20 21:46   --------   d-----w-   c:\users\Public\AppData\Local\temp
      2012-11-20 21:46 . 2012-11-20 21:46   --------   d-----w-   c:\users\hedev\AppData\Local\temp
      2012-11-20 21:46 . 2012-11-20 21:46   --------   d-----w-   c:\users\Default\AppData\Local\temp
      2012-11-20 13:32 . 2012-09-30 00:54   25928   ----a-w-   c:\windows\system32\drivers\mbam.sys
      2012-11-20 13:25 . 2012-11-20 13:25   --------   d-----w-   c:\program files\CCleaner
      2012-11-20 09:56 . 2012-11-20 09:56   737072   ----a-w-   c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
      2012-11-20 09:55 . 2012-11-20 09:55   2876528   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
      2012-11-20 09:36 . 2012-11-20 09:36   42776   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
      2012-11-20 09:36 . 2012-11-20 09:36   539984   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
      2012-11-20 09:35 . 2012-11-20 09:35   --------   d-----w-   c:\users\Mcx1-THEBEAST
      2012-11-20 00:06 . 2012-09-25 04:16   95208   ----a-w-   c:\windows\SysWow64\WindowsAccessBridge-32.dll
      2012-11-19 04:10 . 2012-11-19 04:10   --------   d-----w-   c:\users\Jesse\AppData\Roaming\AVG2013
      2012-11-19 04:10 . 2012-11-19 04:10   --------   d-----w-   c:\users\Jesse\AppData\Roaming\TuneUp Software
      2012-11-19 04:09 . 2012-11-19 06:38   --------   d-----w-   c:\programdata\AVG2013
      2012-11-19 04:09 . 2012-11-19 04:09   --------   d-----w-   C:\$AVG
      2012-11-19 04:08 . 2012-11-19 04:08   --------   d-----w-   c:\program files (x86)\AVG
      2012-11-19 04:02 . 2012-11-20 19:42   --------   d-----w-   c:\programdata\MFAData
      2012-11-19 04:02 . 2012-11-19 04:16   --------   d-----w-   c:\users\Jesse\AppData\Local\Avg2013
      2012-11-19 04:02 . 2012-11-19 04:02   --------   d--h--w-   c:\programdata\Common Files
      2012-11-19 04:02 . 2012-11-19 04:02   --------   d-----w-   c:\users\Jesse\AppData\Local\MFAData
      2012-11-18 08:03 . 2012-11-18 08:03   --------   d-----w-   c:\users\UpdatusUser
      2012-11-18 08:03 . 2012-10-02 19:51   3536817   ----a-w-   c:\windows\system32\nvcoproc.bin
      2012-11-16 07:39 . 2012-10-12 07:19   9291768   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{149F35B8-0EE7-442A-AEFE-6409DF42320F}\mpengine.dll
      2012-11-14 21:29 . 2012-11-14 21:29   --------   d-----w-   c:\users\Jesse\.tokentool
      2012-11-14 08:06 . 2012-07-26 08:38   2560   ----a-w-   c:\windows\system32\drivers\ja-JP\wdf01000.sys.mui
      2012-11-14 08:06 . 2012-07-26 04:47   2560   ----a-w-   c:\windows\system32\drivers\en-US\wdf01000.sys.mui
      2012-11-14 08:06 . 2012-07-26 04:55   785512   ----a-w-   c:\windows\system32\drivers\Wdf01000.sys
      2012-11-14 08:06 . 2012-07-26 04:55   54376   ----a-w-   c:\windows\system32\drivers\WdfLdr.sys
      2012-11-14 08:06 . 2012-07-26 02:36   9728   ----a-w-   c:\windows\system32\Wdfres.dll
      2012-11-14 08:01 . 2012-07-26 03:08   229888   ----a-w-   c:\windows\system32\WUDFHost.exe
      2012-11-14 08:01 . 2012-07-26 03:08   84992   ----a-w-   c:\windows\system32\WUDFSvc.dll
      2012-11-14 08:01 . 2012-07-26 03:08   744448   ----a-w-   c:\windows\system32\WUDFx.dll
      2012-11-14 08:01 . 2012-07-26 03:08   45056   ----a-w-   c:\windows\system32\WUDFCoinstaller.dll
      2012-11-14 08:01 . 2012-07-26 03:08   194048   ----a-w-   c:\windows\system32\WUDFPlatform.dll
      2012-11-14 08:01 . 2012-07-26 02:26   87040   ----a-w-   c:\windows\system32\drivers\WUDFPf.sys
      2012-11-14 08:01 . 2012-07-26 02:26   198656   ----a-w-   c:\windows\system32\drivers\WUDFRd.sys
      2012-11-10 09:44 . 2012-11-10 09:44   --------   d-----w-   c:\users\Jesse\AppData\Roaming\VBA-M
      2012-10-25 23:19 . 2012-11-20 13:28   --------   d-----w-   c:\users\Jesse\AppData\Roaming\Ventrilo
      2012-10-25 20:14 . 2012-10-25 20:14   --------   d-----w-   c:\program files\Ventrilo
      2012-10-25 20:13 . 2012-10-25 20:13   --------   d-----w-   c:\program files (x86)\Common Files\Wise Installation Wizard
      2012-10-24 09:28 . 2012-10-24 09:27   737280   ----a-w-   c:\users\Jesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MCSave.exe
      2012-10-23 11:06 . 2012-10-23 11:06   159744   ----a-w-   c:\program files (x86)\Internet Explorer\Plugins\npqtplugin7.dll
      2012-10-23 11:05 . 2012-10-23 11:06   --------   d-----w-   c:\program files (x86)\QuickTime
      2012-10-22 18:02 . 2012-10-22 18:02   154464   ----a-w-   c:\windows\system32\drivers\avgidsdrivera.sys
      .
      .
      .
      ((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      2012-11-14 08:01 . 2012-07-02 05:35   66395536   ----a-w-   c:\windows\system32\MRT.exe
      2012-11-07 19:49 . 2012-07-02 01:41   73656   ----a-w-   c:\windows\SysWow64\FlashPlayerCPLApp.cpl
      2012-11-07 19:49 . 2012-07-02 01:41   697272   ----a-w-   c:\windows\SysWow64\FlashPlayerApp.exe
      2012-10-15 08:48 . 2012-10-15 08:48   63328   ----a-w-   c:\windows\system32\drivers\avgidsha.sys
      2012-10-13 04:18 . 2012-10-12 08:53   874688   ----a-w-   c:\windows\PE_Rom.dll
      2012-10-13 04:17 . 2012-10-12 08:56   940224   ----a-w-   c:\windows\PE_File.dll
      2012-10-12 08:52 . 2012-10-12 08:52   16896   ----a-w-   c:\windows\AsTaskSched.dll
      2012-10-11 02:23 . 2012-10-11 02:23   247144   ----a-w-   c:\windows\system32\nvinitx.dll
      2012-10-11 02:23 . 2012-10-11 02:23   1867112   ----a-w-   c:\windows\SysWow64\nvcuvenc.dll
      2012-10-11 02:23 . 2012-10-11 02:23   18252136   ----a-w-   c:\windows\system32\nvd3dumx.dll
      2012-10-11 02:23 . 2012-10-11 02:23   1482600   ----a-w-   c:\windows\system32\nvdispgenco64.dll
      2012-10-11 02:23 . 2012-10-11 02:23   6127464   ----a-w-   c:\windows\SysWow64\nvopencl.dll
      2012-10-11 02:23 . 2012-10-11 02:23   2574696   ----a-w-   c:\windows\SysWow64\nvcuvid.dll
      2012-10-11 02:23 . 2012-10-11 02:23   25256296   ----a-w-   c:\windows\system32\nvcompiler.dll
      2012-10-11 02:23 . 2012-10-11 02:23   831848   ----a-w-   c:\windows\SysWow64\nvumdshim.dll
      2012-10-11 02:23 . 2012-10-11 02:23   202600   ----a-w-   c:\windows\SysWow64\nvinit.dll
      2012-10-11 02:23 . 2012-10-11 02:23   7414632   ----a-w-   c:\windows\system32\nvopencl.dll
      2012-10-11 02:23 . 2012-07-02 01:26   2731880   ----a-w-   c:\windows\system32\nvapi64.dll
      2012-10-11 02:23 . 2012-02-10 02:43   973672   ----a-w-   c:\windows\system32\nvumdshimx.dll
      2012-10-11 02:23 . 2012-02-10 02:43   14922600   ----a-w-   c:\windows\system32\nvwgf2umx.dll
      2012-10-11 02:23 . 2012-10-11 02:23   9146728   ----a-w-   c:\windows\system32\nvcuda.dll
      2012-10-11 02:23 . 2012-10-11 02:23   7697768   ----a-w-   c:\windows\SysWow64\nvcuda.dll
      2012-10-11 02:23 . 2012-10-11 02:23   2218344   ----a-w-   c:\windows\system32\nvcuvenc.dll
      2012-10-11 02:23 . 2012-07-02 01:26   12501352   ----a-w-   c:\windows\SysWow64\nvwgf2um.dll
      2012-10-11 02:22 . 2012-10-11 02:22   2428776   ----a-w-   c:\windows\SysWow64\nvapi.dll
      2012-10-11 02:22 . 2012-10-11 02:22   26331496   ----a-w-   c:\windows\system32\nvoglv64.dll
      2012-10-11 02:22 . 2012-02-10 02:43   1760104   ----a-w-   c:\windows\system32\nvdispco64.dll
      2012-10-11 02:22 . 2012-10-11 02:22   15309160   ----a-w-   c:\windows\SysWow64\nvd3dum.dll
      2012-10-11 02:22 . 2012-10-11 02:22   2747240   ----a-w-   c:\windows\system32\nvcuvid.dll
      2012-10-11 02:22 . 2012-10-11 02:22   19906920   ----a-w-   c:\windows\SysWow64\nvoglv32.dll
      2012-10-11 02:22 . 2012-10-11 02:22   13443944   ----a-w-   c:\windows\system32\drivers\nvlddmkm.sys
      2012-10-11 02:22 . 2012-10-11 02:22   17559912   ----a-w-   c:\windows\SysWow64\nvcompiler.dll
      2012-10-05 08:32 . 2012-10-05 08:32   111456   ----a-w-   c:\windows\system32\drivers\avgmfx64.sys
      2012-10-02 19:51 . 2011-01-08 00:49   3293544   ----a-w-   c:\windows\system32\nvsvc64.dll
      2012-10-02 19:51 . 2011-01-08 00:50   6200680   ----a-w-   c:\windows\system32\nvcpl.dll
      2012-10-02 19:50 . 2011-01-08 00:49   118120   ----a-w-   c:\windows\system32\nvmctray.dll
      2012-10-02 19:50 . 2011-01-08 00:49   891240   ----a-w-   c:\windows\system32\nvvsvc.exe
      2012-10-02 19:50 . 2011-01-08 00:49   63336   ----a-w-   c:\windows\system32\nvshext.dll
      2012-10-02 19:50 . 2011-01-08 00:49   2557800   ----a-w-   c:\windows\system32\nvsvcr.dll
      2012-10-02 18:15 . 2012-10-02 18:15   430952   ----a-w-   c:\windows\SysWow64\nvStreaming.exe
      2012-10-02 08:30 . 2012-10-02 08:30   185696   ----a-w-   c:\windows\system32\drivers\avgldx64.sys
      2012-09-29 07:12 . 2012-09-29 07:31   40960   ----a-w-   c:\windows\SysWow64\UMonit.exe
      2012-09-29 07:12 . 2012-09-29 07:31   2572288   ----a-w-   c:\windows\system32\GeneIcon.dll
      2012-09-29 07:12 . 2012-09-29 07:31   147456   ----a-w-   c:\windows\SysWow64\ustor.dll
      2012-09-29 07:12 . 2012-09-29 07:31   52224   ----a-w-   c:\windows\system32\drivers\ustor2k.sys
      2012-09-29 06:47 . 2012-07-02 03:12   2486048   ----a-w-   c:\programdata\Microsoft\VisualStudio\10.0\1033\ResourceCache.dll
      2012-09-21 08:46 . 2012-09-21 08:46   200032   ----a-w-   c:\windows\system32\drivers\avgtdia.sys
      2012-09-21 08:46 . 2012-09-21 08:46   225120   ----a-w-   c:\windows\system32\drivers\avgloga.sys
      2012-09-14 19:19 . 2012-10-09 18:20   2048   ----a-w-   c:\windows\system32\tzres.dll
      2012-09-14 18:28 . 2012-10-09 18:20   2048   ----a-w-   c:\windows\SysWow64\tzres.dll
      2012-09-14 08:05 . 2012-09-14 08:05   40800   ----a-w-   c:\windows\system32\drivers\avgrkx64.sys
      2012-09-10 01:11 . 2012-08-24 02:41   821736   ----a-w-   c:\windows\SysWow64\npDeployJava1.dll
      2012-09-10 01:11 . 2012-08-24 02:41   746984   ----a-w-   c:\windows\SysWow64\deployJava1.dll
      2012-08-31 18:19 . 2012-10-09 18:21   1659760   ----a-w-   c:\windows\system32\drivers\ntfs.sys
      2012-08-30 18:03 . 2012-10-09 18:21   5559664   ----a-w-   c:\windows\system32\ntoskrnl.exe
      2012-08-30 17:12 . 2012-10-09 18:21   3914096   ----a-w-   c:\windows\SysWow64\ntoskrnl.exe
      2012-08-30 17:12 . 2012-10-09 18:21   3968880   ----a-w-   c:\windows\SysWow64\ntkrnlpa.exe
      2012-08-24 18:05 . 2012-10-09 18:20   220160   ----a-w-   c:\windows\system32\wintrust.dll
      2012-08-24 16:57 . 2012-10-09 18:20   172544   ----a-w-   c:\windows\SysWow64\wintrust.dll
      .
      .
      (((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
      .
      .
      *Note* empty entries & legit default entries are not shown
      REGEDIT4
      .
      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 3671872]
      "Sidebar"="c:\program files (x86)\Windows Sidebar\sidebar.exe" [2010-11-20 1174016]
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
      "NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-04-27 113288]
      "BCU"="c:\program files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe" [2009-10-26 375000]
      "JMB36X IDE Setup"="c:\windows\RaidTool\xInsIDE.exe" [2010-01-19 43632]
      "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-07-27 919008]
      "SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
      "AdobeCS6ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312]
      "Adobe Acrobat Speed Launcher"="d:\adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe" [2012-07-27 36800]
      "Acrobat Assistant 8.0"="d:\adobe\Acrobat 10.0\Acrobat\Acrotray.exe" [2012-07-27 823224]
      "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
      "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-08-28 59280]
      "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2012-09-10 421776]
      "RoxWatchTray"="c:\program files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe" [2007-08-24 240112]
      "DMXLauncher"="c:\program files (x86)\Roxio\CinePlayer\DMXLauncher.exe" [2007-08-14 113136]
      "DivXUpdate"="c:\program files (x86)\DivX\DivX Update\DivXUpdate.exe" [2011-07-28 1259376]
      "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2012-04-19 421888]
      "AVG_UI"="c:\program files (x86)\AVG\AVG2013\avgui.exe" [2012-11-07 3143800]
      .
      c:\users\Jesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
      MCSave.exe [2012-10-24 737280]
      .
      [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
      "ConsentPromptBehaviorAdmin"= 5 (0x5)
      "ConsentPromptBehaviorUser"= 3 (0x3)
      "EnableUIADesktopToggle"= 0 (0x0)
      .
      R2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\AVG2013\avgidsagent.exe [2012-11-07 5814392]
      R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
      R2 mi-raysat_3dsmax2013_64;mental ray 3.10 Satellite for Autodesk 3ds Max 2013 64-bit;d:\autodesk\3ds Max 2013\NVIDIA\raysat_3dsmax2013_64server.exe [2011-09-15 86016]
      R2 Roxio Upnp Server 10;Roxio Upnp Server 10;c:\program files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [2007-08-24 362992]
      R2 RoxLiveShare10;LiveShare P2P Server 10;c:\program files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxLiveShare10.exe [2007-08-24 309744]
      R2 RoxWatch10;Roxio Hard Drive Watcher 10;c:\program files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatch10.exe [2007-08-24 166384]
      R2 SessionLauncher;SessionLauncher;c:\users\Jesse\AppData\Local\Temp\DX9\SessionLauncher.exe

      R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe [2012-07-13 160944]
      R3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;c:\program files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2012-07-04 1432400]
      R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-10 174440]
      R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2010-11-20 20992]
      R3 Roxio UPnP Renderer 10;Roxio UPnP Renderer 10;c:\program files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [2007-08-24 72176]
      R3 RoxMediaDB10;RoxMediaDB10;c:\program files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxMediaDB10.exe [2007-08-24 1083888]
      R3 SwitchBoard;Adobe SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
      R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys

      R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 59392]
      R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys

      R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys [2012-07-09 52736]
      R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys

      R3 VSPerfDrv100;Performance Tools Driver 10.0;d:\microsoft visual studio 10\Team Tools\Performance Tools\x64\VSPerfDrv100.sys [2011-01-18 68440]
      R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2012-07-02 1255736]
      R4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [2009-07-22 61976]
      R4 RsFx0103;RsFx0103 Driver;c:\windows\system32\DRIVERS\RsFx0103.sys [2009-03-30 311656]
      R4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [2009-03-30 427880]
      S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys [2012-10-15 63328]
      S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys [2012-09-21 225120]
      S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys [2012-10-05 111456]
      S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys [2012-09-14 40800]
      S0 mv91xx;mv91xx;c:\windows\system32\DRIVERS\mv91xx.sys [2010-08-27 297000]
      S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys [2011-11-03 56208]
      S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys

      S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys [2012-10-22 154464]
      S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys [2012-10-02 185696]
      S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys [2012-09-21 200032]
      S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-07-02 283200]
      S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe [2010-11-03 918144]
      S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe [2010-12-02 915584]
      S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe [2010-10-21 586880]
      S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\AVG2013\avgwdsvc.exe [2012-10-22 196664]
      S2 BCUService;Browser Configuration Utility Service;c:\program files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-26 223464]
      S2 Intel® PROSet Monitoring Service;Intel® PROSet Monitoring Service;c:\windows\system32\IProsetMonitor.exe [2010-08-12 133800]
      S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-09-30 399432]
      S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-09-30 676936]
      S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-02 382824]
      S3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT);c:\windows\system32\DRIVERS\ICCWDT.sys [2010-08-17 26136]
      S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-09-30 25928]
      S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys [2010-09-30 80384]
      S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys [2010-09-30 180736]
      S3 P0620VID;Creative WebCam Instant;c:\windows\system32\DRIVERS\P0620Vid.sys [2005-08-15 126848]
      S3 USTOR2K;USB Mass Storage Windows Driver;c:\windows\system32\DRIVERS\ustor2k.sys [2012-09-29 52224]
      .
      .
      Contents of the 'Scheduled Tasks' folder
      .
      2012-11-20 c:\windows\Tasks\Adobe Flash Player Updater.job
      - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-07-02 19:49]
      .
      2012-11-20 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-866087090-1973475361-65798208-1000Core.job
      - c:\users\Jesse\AppData\Local\Google\Update\GoogleUpdate.exe [2012-10-11 23:37]
      .
      2012-11-20 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-866087090-1973475361-65798208-1000UA.job
      - c:\users\Jesse\AppData\Local\Google\Update\GoogleUpdate.exe [2012-10-11 23:37]
      .
      .
      --------- X64 Entries -----------
      .
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
      "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-11-02 11545192]
      "AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]
      "BCSSync"="d:\microsoft office\Office14\BCSSync.exe" [2010-03-13 112512]
      "UMonit"="c:\windows\SysWOW64\UMonit.exe" [2012-09-29 40960]
      "PD0620 STISvc"="P0620Pin.dll" [2005-08-17 35328]
      .
      ------- Supplementary Scan -------
      .
      uLocal Page = c:\windows\system32\blank.htm
      mLocal Page = c:\windows\SysWOW64\blank.htm
      uInternet Settings,ProxyOverride = *.local
      IE: Download with &Shareaza - c:\program files\Shareaza\RazaWebHook64.dll/3000
      IE: E&xport to Microsoft Excel - d:\micros~2\Office14\EXCEL.EXE/3000
      IE: Se&nd to OneNote - d:\micros~2\Office14\ONBttnIE.dll/105
      Trusted Zone: clonewarsadventures.com
      Trusted Zone: freerealms.com
      Trusted Zone: soe.com
      Trusted Zone: sony.com
      TCP: DhcpNameServer = 192.168.3.1
      FF - ProfilePath - c:\users\Jesse\AppData\Roaming\Mozilla\Firefox\Profiles\6ppfvw8z.default\
      FF - prefs.js: browser.startup.homepage - www.google.com
      FF - ExtSQL: 2012-10-12 05:13; {59c81df5-4b7a-477b-912d-4e0fdf64e5f2}; c:\users\Jesse\AppData\Roaming\Mozilla\Firefox\Profiles\6ppfvw8z.default\extensions\{59c81df5-4b7a-477b-912d-4e0fdf64e5f2}
      FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
      .
      - - - - ORPHANS REMOVED - - - -
      .
      Wow6432Node-HKLM-Run-<NO NAME> - (no file)
      Wow6432Node-HKLM-Run-ZoneAlarm Installer - c:\program files (x86)\CheckPoint\Install\Launcher.exe
      .
      .
      .
      --------------------- LOCKED REGISTRY KEYS ---------------------
      .
      [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\Approved Extensions]
      @Denied: (2) (LocalSystem)
      "{47833539-D0C5-4125-9FA8-0819E2EAAC93}"=hex:51,66,7a,6c,4c,1d,38,12,57,36,90,
         43,f7,9e,4b,04,e0,be,4b,59,e7,b4,e8,87
      "{EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107}"=hex:51,66,7a,6c,4c,1d,38,12,8b,c7,39,
         ea,82,fe,a8,0b,f7,bf,ff,e1,a6,74,f5,13
      "{18DF081C-E8AD-4283-A596-FA578C2EBDC3}"=hex:51,66,7a,6c,4c,1d,38,12,72,0b,cc,
         1c,9f,a6,ed,07,da,80,b9,17,89,70,f9,d7
      "{72853161-30C5-4D22-B7F9-0BBC1D38A37E}"=hex:51,66,7a,6c,4c,1d,38,12,0f,32,96,
         76,f7,7e,4c,08,c8,ef,48,fc,18,66,e7,6a
      "{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}"=hex:51,66,7a,6c,4c,1d,38,12,d5,94,07,
         72,c2,98,42,03,c9,fd,97,9a,f4,87,69,57
      "{8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3}"=hex:51,66,7a,6c,4c,1d,38,12,ac,35,59,
         8e,07,4b,42,08,c2,2b,0a,2c,b2,b0,92,f7
      "{9030D464-4C02-4ABF-8ECC-5164760863C6}"=hex:51,66,7a,6c,4c,1d,38,12,0a,d7,23,
         94,30,02,d1,0f,f1,da,12,24,73,56,27,d2
      "{9FDDE16B-836F-4806-AB1F-1455CBEFF289}"=hex:51,66,7a,6c,4c,1d,38,12,05,e2,ce,
         9b,5d,cd,68,0d,d4,09,57,15,ce,b1,b6,9d
      "{AE7CD045-E861-484F-8273-0445EE161910}"=hex:51,66,7a,6c,4c,1d,38,12,2b,d3,6f,
         aa,53,a6,21,0d,fd,65,47,05,eb,48,5d,04
      "{B4F3A835-0E21-4959-BA22-42B3008E02FF}"=hex:51,66,7a,6c,4c,1d,38,12,5b,ab,e0,
         b0,13,40,37,0c,c5,34,01,f3,05,d0,46,eb
      "{DBC80044-A445-435B-BC74-9C25C1C588A9}"=hex:51,66,7a,6c,4c,1d,38,12,2a,03,db,
         df,77,ea,35,06,c3,62,df,65,c4,9b,cc,bd
      "{DDA57003-0068-4ED2-9D32-4D1EC707D94D}"=hex:51,66,7a,6c,4c,1d,38,12,6d,73,b6,
         d9,5a,4e,bc,0b,e2,24,0e,5e,c2,59,9d,59
      "{F4971EE7-DAA0-4053-9964-665D8EE6A077}"=hex:51,66,7a,6c,4c,1d,38,12,89,1d,84,
         f0,92,94,3d,05,e6,72,25,1d,8b,b8,e4,63
      "{2A541AE1-5BF6-4665-A8A3-CFA9672E4291}"=hex:51,66,7a,6c,4c,1d,38,12,8f,19,47,
         2e,c4,15,0b,03,d7,b5,8c,e9,62,70,06,85
      "{5802D092-1784-4908-8CDB-99B6842D353D}"=hex:51,66,7a,6c,4c,1d,38,12,fc,d3,11,
         5c,b6,59,66,0c,f3,cd,da,f6,81,73,71,29
      .
      [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration]
      @Denied: (2) (LocalSystem)
      "Timestamp"=hex:0a,e3,0d,e0,47,a4,cd,01
      .
      [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
      @Denied: (2) (LocalSystem)
      "88D7D0879DAB32E14DE5B3A805A34F98AFF34F5 977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
         d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,11,d4,da,9f,17,f1,5a,4e,b0,c1,f9,\
      "2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839 E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
         d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,11,d4,da,9f,17,f1,5a,4e,b0,c1,f9,\
      .
      [HKEY_USERS\S-1-5-21-866087090-1973475361-65798208-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
      @Denied: (2) (LocalSystem)
      "Progid"="WindowsLiveMail.Email.1"
      .
      [HKEY_USERS\S-1-5-21-866087090-1973475361-65798208-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
      @Denied: (2) (LocalSystem)
      "Progid"="WindowsLiveMail.VCard.1"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
      @Denied: (A 2) (Everyone)
      @="FlashBroker"
      "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe,-101"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
      "Enabled"=dword:00000001
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
      @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_4_402_287_ActiveX.exe"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
      @Denied: (A 2) (Everyone)
      @="IFlashBroker5"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
      @="{00020424-0000-0000-C000-000000000046}"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
      "Version"="1.0"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
      @Denied: (A 2) (Everyone)
      @="FlashBroker"
      "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe,-101"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
      "Enabled"=dword:00000001
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_4_402_287_ActiveX.exe"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
      @Denied: (A 2) (Everyone)
      @="Shockwave Flash Object"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"
      "ThreadingModel"="Apartment"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
      @="0"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
      @="ShockwaveFlash.ShockwaveFlash.11"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
      @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
      @="1.0"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
      @="ShockwaveFlash.ShockwaveFlash"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
      @Denied: (A 2) (Everyone)
      @="Macromedia Flash Factory Object"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx"
      "ThreadingModel"="Apartment"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
      @="FlashFactory.FlashFactory.1"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
      @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_4_402_287.ocx, 1"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
      @="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
      @="1.0"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
      @="FlashFactory.FlashFactory"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
      @Denied: (A 2) (Everyone)
      @="IFlashBroker5"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
      @="{00020424-0000-0000-C000-000000000046}"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
      "Version"="1.0"
      .
      [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\DbgagD\1*]
      "value"="?\07\01\02\03\1e!\08"
      .
      [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
      @Denied: (Full) (Everyone)
      .
      Completion time: 2012-11-20  16:49:30
      ComboFix-quarantined-files.txt  2012-11-20 21:49
      ComboFix2.txt  2012-09-29 09:43
      .
      Pre-Run: 30,470,602,752 bytes free
      Post-Run: 29,927,403,520 bytes free
      .
      - - End Of File - - 67E36793EFFDA05E3A7BD73B21563168

      SuperDave

      • Malware Removal Specialist


      • Genius
      • Thanked: 1020
      • Certifications: List
      • Experience: Expert
      • OS: Windows 10
      Re: Hard drive partitions not found on bootup.
      « Reply #3 on: November 20, 2012, 04:26:41 PM »
      • Download RogueKiller on the desktop
      • Close all the running programs
      • Windows Vista/7 users: right click on RogueKiller.exe, click Run as Administrator
      • Otherwise just double-click on RogueKiller.exe
      • Pre-scan will start. Let it finish.
      • Click on SCAN button.
      • A report (RKreport.txt) should open. Post its content in your next reply. (RKreport could also be found on your desktop)
      • If RogueKiller has been blocked, do not hesitate to try a few times more. If really won't run, rename it to winlogon.exe (or winlogon.com) and try again
      ********************************************
      Please download Rooter and Save it to your desktop.
      • Double click it to start the tool.Vista and Windows7 run as administrator.
      • Click Scan.
      • Eventually, a Notepad file containing the report will open, also found at C:\Rooter.txt. Post that log in your next reply.
      Windows 8 and Windows 10 dual boot with two SSD's

      Dko

        Topic Starter


        Greenhorn

        • Experience: Expert
        • OS: Windows 7
        Re: Hard drive partitions not found on bootup.
        « Reply #4 on: November 20, 2012, 07:08:45 PM »
        RogueKiller
        RogueKiller V8.3.1 [Nov 20 2012] by Tigzy
        mail: tigzyRK<at>gmail<dot>com
        Feedback: http://www.geekstogo.com/forum/files/file/413-roguekiller/
        Website: http://tigzy.geekstogo.com/roguekiller.php
        Blog: http://tigzyrk.blogspot.com

        Operating System: Windows 7 (6.1.7601 Service Pack 1) 64 bits version
        Started in : Normal mode
        User : Jesse [Admin rights]
        Mode : Scan -- Date : 11/20/2012 21:05:54

        ¤¤¤ Bad processes : 0 ¤¤¤

        ¤¤¤ Registry Entries : 10 ¤¤¤
        [RUN][NOTFOUND] HKLM\[...]\Run : PD0620 STISvc (RunDLL32.exe P0620Pin.dll,RunDLL32EP 513) -> FOUND
        [TASK][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-866087090-1973475361-65798208-1000UA.job : C:\Users\Jesse\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler -> FOUND
        [TASK][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-866087090-1973475361-65798208-1000Core.job : C:\Users\Jesse\AppData\Local\Google\Update\GoogleUpdate.exe /c -> FOUND
        [TASK][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-866087090-1973475361-65798208-1000Core : C:\Users\Jesse\AppData\Local\Google\Update\GoogleUpdate.exe /c -> FOUND
        [TASK][SUSP PATH] GoogleUpdateTaskUserS-1-5-21-866087090-1973475361-65798208-1000UA : C:\Users\Jesse\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler -> FOUND
        [STARTUP][SUSP PATH] MCSave.exe @Jesse : C:\Users\Jesse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MCSave.exe -> FOUND
        [HJPOL] HKLM\[...]\System : DisableRegistryTools (0) -> FOUND
        [HJPOL] HKLM\[...]\Wow6432Node\System : DisableRegistryTools (0) -> FOUND
        [HJ DESK] HKLM\[...]\NewStartPanel : {59031a47-3f72-44a7-89c5-5595fe6b30ee} (1) -> FOUND
        [HJ DESK] HKLM\[...]\NewStartPanel : {20D04FE0-3AEA-1069-A2D8-08002B30309D} (1) -> FOUND

        ¤¤¤ Particular Files / Folders: ¤¤¤

        ¤¤¤ Driver : [NOT LOADED] ¤¤¤

        ¤¤¤ HOSTS File: ¤¤¤
        --> C:\Windows\system32\drivers\etc\hosts

        127.0.0.1       localhost


        ¤¤¤ MBR Check: ¤¤¤

        +++++ PhysicalDrive0: ST31000520AS ATA Device +++++
        --- User ---
        [MBR] 2c4c1baa858bc91a62ea8c8010577781
        [BSP] 3ac339c9698b1d4194f9a35cc0766e81 : Windows 7/8 MBR Code
        Partition table:
        0 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
        1 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 138367 Mo
        2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 283582464 | Size: 238467 Mo
        3 - [XXXXXX] EXTEN-LBA (0x0f) [VISIBLE] Offset (sectors): 771962880 | Size: 576933 Mo
        User = LL1 ... OK!
        User != LL2 ... KO!
        --- LL2 ---
        [MBR] 95086c8cfeeb2f51fc22a0d26950d85f
        [BSP] 3ac339c9698b1d4194f9a35cc0766e81 : Windows 7/8 MBR Code
        Partition table:
        1 - [ACTIVE] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 100 Mo
        2 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 206848 | Size: 138367 Mo
        3 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 283582464 | Size: 238467 Mo

        +++++ PhysicalDrive1: Hitachi HTS541640J9SA00 ATA Device +++++
        --- User ---
        [MBR] 8b321923de3d94d1be88b31e3c6fd0ba
        [BSP] 192bfae7d2b21be14c2111c050763c8e : Windows 7/8 MBR Code
        Partition table:
        0 - [XXXXXX] NTFS (0x07) [VISIBLE] Offset (sectors): 2048 | Size: 38152 Mo
        User = LL1 ... OK!
        User = LL2 ... OK!

        Finished : << RKreport[1]_S_11202012_02d2105.txt >>
        RKreport[1]_S_11202012_02d2105.txt

        Rooter Log
        Rooter.exe (v1.0.2) by Eric_71
        .
        SeDebugPrivilege granted successfully ...
        .
        Windows 7 . (6.1.7601) Service Pack 1
        [32_bits] - Intel64 Family 6 Model 42 Stepping 7, GenuineIntel
        .
        [wscsvc] (Security Center) RUNNING (state:4)
        [MpsSvc] RUNNING (state:4)
        Windows Firewall -> Enabled
        Windows Defender -> Enabled
        User Account Control (UAC) -> Enabled
        .
        Internet Explorer 9.0.8112.16421
        Mozilla Firefox 16.0.2 (en-US)
        .
        C:\  [Fixed-NTFS] .. ( Total:135 Go - Free:27 Go )
        D:\  [Fixed-NTFS] .. ( Total:232 Go - Free:97 Go )
        E:\  [Fixed-NTFS] .. ( Total:184 Go - Free:139 Go )
        F:\  [Fixed-NTFS] .. ( Total:232 Go - Free:78 Go )
        G:\  [CD_Rom]
        H:\  [Fixed-NTFS] .. ( Total:37 Go - Free:37 Go )
        J:\  [CD_Rom]
        .
        Scan : 21:09.37
        Path : C:\Users\Jesse\Downloads\Rooter.exe
        User : Jesse ( Administrator -> YES )
        .
        ----------------------\\ Processes
        .
        Locked [System Process] (0)
        Locked System (4)
        ______ ???n?????? (324)
        ______ ???n?????? (960)
        ______ ???n?????? (140)
        ______ ???n?????? (300)
        ______ ???n?????? (508)
        ______ ???n?????? (884)
        ______ ???n?????? (892)
        ______ ???n?????? (1048)
        ______ ???n?????? (1148)
        ______ ???n?????? (1208)
        ______ C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (1232)
        ______ ???n?????? (1276)
        ______ ???n?????? (1376)
        ______ ???n?????? (1424)
        ______ ???n?????? (1500)
        ______ ???n?????? (1616)
        ______ ???n?????? (1748)
        ______ ???n?????? (1840)
        ______ ???n?????? (1852)
        ______ ???n?????? (2012)
        ______ ???n?????? (480)
        ______ ???n?????? (1996)
        ______ ???n?????? (2052)
        ______ C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (2112)
        ______ ???n?????? (2288)
        ______ C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (2300)
        ______ C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ VRM\VRMHelp.exe (2348)
        ______ C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe (2360)
        ______ ???n?????? (2368)
        ______ C:\Program Files (x86)\ASUS\AXSP\1.00.13\atkexComSvc.exe (2484)
        ______ C:\Program Files (x86)\ASUS\AAHM\1.00.13\aaHMSvc.exe (2600)
        ______ C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.11\AsSysCtrlService.exe (2928)
        ______ C:\Program Files (x86)\AVG\AVG2013\avgwdsvc.exe (3032)
        ______ C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe (2196)
        ______ C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe (1524)
        ______ ???n?????? (2568)
        ______ ???n?????? (2648)
        ______ C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (2696)
        ______ C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe (2720)
        ______ C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe (2736)
        ______ ???n?????? (2800)
        ______ ???n?????? (3220)
        ______ ???n?????? (3380)
        ______ C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe (3448)
        ______ ???n?????? (3844)
        ______ ???n?????? (3896)
        ______ ???n?????? (3264)
        ______ ???n?????? (1468)
        ______ C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe (3296)
        ______ ???n?????? (4084)
        ______ ???n?????? (3684)
        ______ C:\Program Files (x86)\Windows Sidebar\sidebar.exe (3612)
        ______ C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (4648)
        ______ C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (4808)
        ______ ???n?????? (4308)
        ______ ???n?????? (5432)
        ______ C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (5732)
        ______ C:\Program Files (x86)\iTunes\iTunesHelper.exe (6004)
        ______ C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\RoxWatchTray10.exe (6056)
        ______ C:\Program Files (x86)\Roxio\CinePlayer\DMXLauncher.exe (6108)
        ______ C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (6140)
        ______ C:\Program Files (x86)\AVG\AVG2013\avgui.exe (5284)
        ______ ???n?????? (5992)
        ______ ???n?????? (5724)
        ______ ???n?????? (4396)
        ______ ???n?????? (6248)
        ______ C:\Program Files (x86)\Common Files\Roxio Shared\10.0\SharedCOM\CPSHelpRunner10.exe (6260)
        ______ ???n?????? (6428)
        ______ C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (5852)
        ______ C:\Program Files (x86)\AVG\AVG2013\avgcfgex.exe (5984)
        ______ C:\Program Files (x86)\AVG\AVG2013\avgidsagent.exe (2676)
        ______ ???n?????? (6072)
        ______ ???n?????? (6644)
        ______ ???n?????? (644)
        ______ ???n?????? (6568)
        ______ ???n?????? (1508)
        Locked audiodg.exe (4464)
        ______ C:\Users\Jesse\Desktop\RogueKiller.exe (6240)
        ______ C:\Program Files (x86)\Mozilla Firefox\firefox.exe (5200)
        ______ ???n?????? (3788)
        ______ ???n?????? (5840)
        ______ C:\Users\Jesse\Downloads\Rooter.exe (7000)
        .
        ----------------------\\ Device\Harddisk0\
        .
        \Device\Harddisk0 [Sectors : 63 x 512 Bytes]
        .
        \Device\Harddisk0\Partition1 --[ MBR ]-- (Start_Offset:1048576 | Length:104857600)
        \Device\Harddisk0\Partition2 (Start_Offset:105906176 | Length:145088315392)
        \Device\Harddisk0\Partition3 (Start_Offset:145194221568 | Length:250050772992)
        \Device\Harddisk0\Partition0 (Start_Offset:395244994560 | Length:604958097408)
        \Device\Harddisk0\Partition4 (Start_Offset:395246043136 | Length:250050772992)
        \Device\Harddisk0\Partition0 (Start_Offset:645296816128 | Length:354906275840)
        \Device\Harddisk0\Partition5 (Start_Offset:645297864704 | Length:197618827264)
        .
        ----------------------\\ Scheduled Tasks
        .
        C:\Windows\Tasks\Adobe Flash Player Updater.job
        C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-866087090-1973475361-65798208-1000Core.job
        C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-866087090-1973475361-65798208-1000UA.job
        C:\Windows\Tasks\SA.DAT
        C:\Windows\Tasks\SCHEDLGU.TXT
        .
        ----------------------\\ Registry
        .
        .
        ----------------------\\ Files & Folders
        .
        ----------------------\\ Scan completed at 21:09.41
        .
        C:\Rooter$\Rooter_1.txt - (20/11/2012 | 21:09.41)



        SuperDave

        • Malware Removal Specialist


        • Genius
        • Thanked: 1020
        • Certifications: List
        • Experience: Expert
        • OS: Windows 10
        Re: Hard drive partitions not found on bootup.
        « Reply #5 on: November 21, 2012, 01:26:35 PM »
        Please tell me how your computer is working now.

        I'd like to scan your machine with ESET OnlineScan

        •Hold down Control and click on the following link to open ESET OnlineScan in a new window.
        ESET OnlineScan
        •Click the button.
        •For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
        • Click on to download the ESET Smart Installer. Save it to your desktop.
        • Double click on the icon on your desktop.
        •Check
        •Click the button.
        •Accept any security warnings from your browser.
        •Check
        •Push the Start button.
        •ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
        •When the scan completes, push
        •Push , and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
        •Push the button.
        •Push
        A log file will be saved here: C:\Program Files\ESET\ESET Online Scanner\log.txt
        Windows 8 and Windows 10 dual boot with two SSD's

        Dko

          Topic Starter


          Greenhorn

          • Experience: Expert
          • OS: Windows 7
          Re: Hard drive partitions not found on bootup.
          « Reply #6 on: November 21, 2012, 05:16:04 PM »
          The two partitions on my hard drive still don't show up like they should and thus still have to use disk manager to scan for them.
          Otherwise my computer is running fine.  I'm just hoping my hard drive isn't starting to die. I have no way of getting a new one

          I did not find a Log file, but that may be because I had the program uninstall right after it was done. Ill run it again and see. But It did quarantine 4 files like so.

          C:\Qoobox\Quarantine\C\ProgramData\Microsoft\Windows\DRM\21C5.tmp.vir   Win64/Olmarik.AO trojan   cleaned by deleting - quarantined
          C:\Qoobox\Quarantine\C\ProgramData\Microsoft\Windows\DRM\21C6.tmp.vir   Win64/Olmarik.AO trojan   cleaned by deleting - quarantined
          C:\Users\Jesse\AppData\LocalLow\Sun\Java\Deployment\cache\6.0\21\3d92c195-362d6771   a variant of Java/Exploit.CVE-2012-4681.AK trojan   deleted - quarantined
          C:\Users\Jesse\AppData\Roaming\Mozilla\Firefox\Profiles\6ppfvw8z.default\extensions\[email protected]   JS/Redirector.NCA trojan   deleted - quarantined

          SuperDave

          • Malware Removal Specialist


          • Genius
          • Thanked: 1020
          • Certifications: List
          • Experience: Expert
          • OS: Windows 10
          Re: Hard drive partitions not found on bootup.
          « Reply #7 on: November 21, 2012, 05:51:01 PM »
          Quote
          The two partitions on my hard drive still don't show up like they should and thus still have to use disk manager to scan for them.
          I'm not sure what you're speaking about. Could you provide a screen print?
          Quote
          I'm just hoping my hard drive isn't starting to die. I have no way of getting a new one.
          You could run a diagnostic on the drive.
          Run hard drive diagnostics: tacktech.com
          Make sure, you select tool, which is appropriate for the brand of your hard drive.
          Depending on the program, it'll create bootable floppy, or bootable CD.
          If downloaded file is of .iso type, use ImgBurn: imgburn to burn .iso file to a CD (select "Write image file to disc" option), and make the CD bootable.
          For Toshiba hard drives, see here:

          Note : If you do not know how to set your computer to boot from CD follow the steps here
          Windows 8 and Windows 10 dual boot with two SSD's