hey guys, I play need for speed world and yesterday my brother was using my computer and when I play games it lags. Im sure its a virus because when I woke up this morning there were ads on my screen. Here are the logs you requested. GMER does not work on my computer since i am running windows 7 64-bit. Thanks guys.
00:06:31 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
00:06:31 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:07:47 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:07:52 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:08:04 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
00:09:03 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:09:04 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:09:11 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
00:10:36 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:10:40 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
00:10:40 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:10:58 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:10:59 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
00:11:03 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:12:52 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
00:12:52 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:13:02 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
00:13:03 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:13:13 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
00:13:13 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:13:45 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
00:13:45 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:19:55 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
00:21:00 Rae Anthony MESSAGE Scheduled update executed successfully
00:21:10 Rae Anthony MESSAGE Database updated successfully
00:29:00 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
01:03:16 Rae Anthony DETECTION C:\Windows\mstwain32.exe Trojan.Backdoor ALLOW
03:42:50 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
11:47:30 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
11:47:31 Rae Anthony DETECTION C:\WINDOWS\NTDTCSTP.DLL Backdoor.Turkojan ALLOW
11:47:31 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
11:47:59 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
11:48:17 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
11:48:21 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
11:50:23 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
11:51:33 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
11:51:38 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
11:55:15 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
12:54:59 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
12:55:07 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
12:55:08 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
12:55:24 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
12:55:27 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
12:55:37 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
12:57:15 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
12:57:26 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
12:57:37 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
12:57:37 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:02:54 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
13:02:55 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:03:14 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
13:18:50 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:18:53 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
13:20:46 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:20:49 Rae Anthony DETECTION C:\Windows\ntdtcstp.dll Backdoor.Turkojan ALLOW
13:20:52 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:22:37 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:22:49 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:22:56 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:22:56 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:22:58 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:23:08 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:23:23 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan ALLOW
13:23:31 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:24:51 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:24:51 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:26:34 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan ALLOW
13:26:34 Rae Anthony DETECTION C:\WINDOWS\NTDTCSTP.DLL Backdoor.Turkojan ALLOW
13:28:53 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:28:53 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:28:53 Rae Anthony DETECTION C:\WINDOWS\MSTWAIN32.EXE Trojan.Backdoor ALLOW
13:36:00 Rae Anthony MESSAGE Protection started successfully
13:36:10 Rae Anthony MESSAGE Database updated successfully
14:20:45 Rae Anthony MESSAGE Protection started successfully
14:34:50 Rae Anthony MESSAGE Protection started successfully
15:33:34 Rae Anthony MESSAGE Protection started successfully
15:33:56 Rae Anthony DETECTION C:\WINDOWS\CMSETAC.DLL Backdoor.Turkojan QUARANTINE
15:33:57 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:33:57 Rae Anthony ERROR Quarantine failed: DeleteFile failed with error code 5
15:33:57 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:04 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:04 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:19 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:19 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:29 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:29 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:46 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:46 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:56 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:34:57 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:35:50 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:35:50 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:38:04 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:38:05 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:38:11 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:38:11 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:38:24 Rae Anthony MESSAGE Database updated successfully
15:41:09 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan QUARANTINE
15:41:09 Rae Anthony DETECTION C:\Windows\cmsetac.dll Backdoor.Turkojan DENY
15:41:10 Rae Anthony ERROR Quarantine failed: DeleteFile failed with error code 5
16:29:12 Rae Anthony MESSAGE Protection started successfully
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_22
Run by Rae Anthony at 16:54:43 on 2011-09-28
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.2.1033.18.4094.1637 [GMT -7:00]
.
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\SysWOW64\svchost.exe -k Akamai
C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\sppsvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files (x86)\Air Mouse\Air Mouse\Air Mouse.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files (x86)\Gravity\Dragon Saga\Release\dragonsaga.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\msiexec.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = my.daemon-search.com
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: YTNavAssist.YTNavAssistPlugin Class: {81017ea9-9aa8-4a6a-9734-7af40e7d593f} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\YTNavAssist.dll
mWinlogon: Userinit=userinit.exe,
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll
BHO: HP Print Enhancer: {0347c33e-8762-4905-bf09-768834316c61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
TB: DAEMON Tools Toolbar: {32099aac-c132-4136-9e9a-4e364a424e17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll
EB: HP Smart Web Printing: {555d4d79-4bd2-4094-a395-cfc534424a05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
mRun: [<NO NAME>]
mRun: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\AIRMOU~1.LNK - C:\Program Files (x86)\Air Mouse\Air Mouse\Air Mouse.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: &Enviar para o OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: E&xportar para o Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: Interfaces\{3172544B-3990-4249-8FF7-741F9D8A1BA5} : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{E035A311-F61D-47F4-A5CF-E770FCF8B253} : NameServer = 64.59.144.90,64.59.144.91
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
BHO-X64: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll
BHO-X64: 0x1 - No File
BHO-X64: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO-X64: HP Print Enhancer - No File
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO-X64: URLRedirectionBHO - No File
BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO-X64: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
BHO-X64: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
BHO-X64: HP Smart BHO Class - No File
TB-X64: DAEMON Tools Toolbar: {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
TB-X64: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll
EB-X64: {555D4D79-4BD2-4094-A395-CFC534424A05} - No File
mRun-x64: [(Default)]
mRun-x64: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Rae Anthony\AppData\Roaming\Mozilla\Firefox\Profiles\593ud02r.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.ca/
FF - prefs.js: network.proxy.type - 0
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.69\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npCouponPrinter.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npMozCouponPrinter.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
FF - plugin: C:\ProgramData\NexonUS\NGM\npNxGameUS.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;C:\Windows\system32\DRIVERS\dtsoftbus01.sys --> C:\Windows\system32\DRIVERS\dtsoftbus01.sys [?]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952]
R2 Akamai;Akamai NetSession Interface;C:\Windows\System32\svchost.exe -k Akamai [2009-7-13 20992]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
R2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-7-28 361984]
R2 AODDriver4.01;AODDriver4.01;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\aoddriver2.sys [2011-6-24 55424]
R2 cpuz135;cpuz135;\??\C:\Windows\system32\drivers\cpuz135_x64.sys --> C:\Windows\system32\drivers\cpuz135_x64.sys [?]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-9-13 366152]
R3 amdiox64;AMD IO Driver;C:\Windows\system32\DRIVERS\amdiox64.sys --> C:\Windows\system32\DRIVERS\amdiox64.sys [?]
R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
R3 AODDriver2;AODDriver2;C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [2010-7-1 52352]
R3 AtiHDAudioService;AMD Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys --> C:\Windows\system32\drivers\AtihdW76.sys [?]
R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
S2 AODService;AODService;C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [2010-7-1 136616]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-9-25 136176]
S2 KMService;KMService;C:\Windows\System32\srvany.exe [2011-6-1 8192]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-9-25 136176]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-1-21 30963576]
S3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507;C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [2011-5-10 33592]
S3 npggsvc;nProtect GameGuard Service;C:\Windows\system32\GameMon.des -service --> C:\Windows\system32\GameMon.des -service [?]
S3 NTIOLib_1_0_4;NTIOLib_1_0_4;C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [2011-5-10 14136]
S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
.
=============== Created Last 30 ================
.
2011-09-28 23:52:34 388096 ----a-r- C:\Users\Rae Anthony\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-09-28 23:52:34 -------- d-----w- C:\Program Files (x86)\Trend Micro
2011-09-26 06:02:17 -------- d-----w- C:\Users\Rae Anthony\AppData\Local\Google
2011-09-25 09:44:40 -------- d-----w- C:\Program Files (x86)\Gravity
2011-09-25 04:11:14 -------- d-----w- C:\gPotato.eu
2011-09-25 03:53:18 957004851 ----a-w- C:\Dragonica_NewOrigin_20110920-1b.bin
2011-09-25 03:23:47 1565415296 ----a-w- C:\Dragonica_NewOrigin_20110920-1a.bin
2011-09-25 03:23:46 590320 ----a-w- C:\Dragonica_NewOrigin_20110920.exe
2011-09-19 17:49:24 -------- d-----w- C:\Data
2011-09-17 07:04:54 -------- d-----w- C:\Users\Rae Anthony\AppData\Roaming\Need for Speed World
2011-09-11 16:21:39 -------- d-----w- C:\Users\Rae Anthony\AppData\Local\Electronic_Arts_Inc
2011-09-05 17:04:56 183696 ----a-w- C:\Program Files (x86)\Mozilla Firefox\plugins\nppdf32.dll
2011-09-05 17:04:56 183696 ----a-w- C:\Program Files (x86)\Internet Explorer\Plugins\nppdf32.dll
2011-09-04 00:47:58 -------- d-----w- C:\B
2011-09-02 02:58:43 -------- d-----w- C:\ProgramData\Nexon
.
==================== Find3M ====================
.
2011-09-25 18:00:27 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-09-01 00:00:50 25416 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-07-29 00:49:14 60416 ----a-w- C:\Windows\System32\OVDecode64.dll
2011-07-29 00:48:48 16552960 ----a-w- C:\Windows\System32\amdocl64.dll
2011-07-28 22:23:16 9980416 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2011-07-28 22:09:06 23921664 ----a-w- C:\Windows\System32\atio6axx.dll
2011-07-28 21:44:06 18388480 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2011-07-28 21:40:58 151552 ----a-w- C:\Windows\System32\atiapfxx.exe
2011-07-28 21:40:44 726528 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2011-07-28 21:39:14 852992 ----a-w- C:\Windows\System32\aticfx64.dll
2011-07-28 21:36:26 462848 ----a-w- C:\Windows\System32\ATIDEMGX.dll
2011-07-28 21:36:12 485376 ----a-w- C:\Windows\System32\atieclxx.exe
2011-07-28 21:35:34 204288 ----a-w- C:\Windows\System32\atiesrxx.exe
2011-07-28 21:34:20 120320 ----a-w- C:\Windows\System32\atitmm64.dll
2011-07-28 21:34:00 423424 ----a-w- C:\Windows\System32\atipdl64.dll
2011-07-28 21:33:54 356352 ----a-w- C:\Windows\SysWow64\atipdlxx.dll
2011-07-28 21:33:42 278528 ----a-w- C:\Windows\SysWow64\Oemdspif.dll
2011-07-28 21:33:36 21504 ----a-w- C:\Windows\System32\atimuixx.dll
2011-07-28 21:33:32 59392 ----a-w- C:\Windows\System32\atiedu64.dll
2011-07-28 21:33:26 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll
2011-07-28 21:30:26 4198912 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2011-07-28 21:20:36 4943360 ----a-w- C:\Windows\System32\atidxx64.dll
2011-07-28 21:12:14 1113088 ----a-w- C:\Windows\System32\atiumd6v.dll
2011-07-28 21:11:42 1828864 ----a-w- C:\Windows\SysWow64\atiumdmv.dll
2011-07-28 21:11:30 3871744 ----a-w- C:\Windows\System32\atiumd6a.dll
2011-07-28 21:11:16 51200 ----a-w- C:\Windows\System32\aticalrt64.dll
2011-07-28 21:11:14 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2011-07-28 21:11:04 44544 ----a-w- C:\Windows\System32\aticalcl64.dll
2011-07-28 21:11:02 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2011-07-28 21:10:50 9644544 ----a-w- C:\Windows\System32\aticaldd64.dll
2011-07-28 21:09:10 4256768 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2011-07-28 21:07:24 8247296 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2011-07-28 21:03:58 4056064 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2011-07-28 21:02:28 5399040 ----a-w- C:\Windows\System32\atiumd64.dll
2011-07-28 21:01:50 58880 ----a-w- C:\Windows\System32\coinst.dll
2011-07-28 20:54:52 378368 ----a-w- C:\Windows\System32\atiadlxx.dll
2011-07-28 20:54:44 266240 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2011-07-28 20:54:34 15360 ----a-w- C:\Windows\System32\atig6pxx.dll
2011-07-28 20:54:30 13312 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2011-07-28 20:54:30 13312 ----a-w- C:\Windows\System32\atiglpxx.dll
2011-07-28 20:54:26 39936 ----a-w- C:\Windows\System32\atig6txx.dll
2011-07-28 20:54:18 32768 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2011-07-28 20:54:10 309248 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2011-07-28 20:53:22 40960 ----a-w- C:\Windows\System32\atiuxp64.dll
2011-07-28 20:53:14 31744 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2011-07-28 20:53:08 38912 ----a-w- C:\Windows\System32\atiu9p64.dll
2011-07-28 20:53:00 29184 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2011-07-28 20:52:26 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
2011-07-28 20:51:10 53760 ----a-w- C:\Windows\System32\atimpc64.dll
2011-07-28 20:51:10 53760 ----a-w- C:\Windows\System32\amdpcom64.dll
2011-07-28 20:51:04 52736 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2011-07-28 20:51:04 52736 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
2011-07-18 06:54:02 59904 ----a-w- C:\Windows\SysWow64\OVDecode.dll
2011-07-05 01:27:21 525544 ----a-w- C:\Windows\System32\deployJava1.dll
.
============= FINISH: 16:55:05.62 ===============
.
UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
IF REQUESTED, ZIP IT UP & ATTACH IT
.
DDS (Ver_2011-08-26.01)
.
Microsoft Windows 7 Ultimate
Boot Device: \Device\HarddiskVolume1
Install Date: 10/05/2011 5:47:01 PM
System Uptime: 28/09/2011 4:26:35 PM (0 hours ago)
.
Motherboard: MICRO-STAR INTERNATIONAL CO.,LTD | | 790FX-GD70(MS-7577)
Processor: AMD Phenom(tm) II X4 955 Processor | CPU1 | 3400/200mhz
.
==== Disk Partitions =========================
.
C: is FIXED (NTFS) - 466 GiB total, 167.673 GiB free.
D: is FIXED (NTFS) - 98 GiB total, 81.601 GiB free.
E: is FIXED (NTFS) - 89 GiB total, 23.264 GiB free.
F: is CDROM ()
I: is CDROM ()
.
==== Disabled Device Manager Items =============
.
==== System Restore Points ===================
.
RP56: 28/09/2011 1:07:38 AM - Scheduled Checkpoint
RP57: 28/09/2011 3:18:55 PM - Restore Operation
RP58: 28/09/2011 4:52:15 PM - Installed HiJackThis
.
==== Installed Programs ======================
.
AC3Filter 1.63b
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Reader X (10.1.1)
Akamai NetSession Interface
AMD OverDrive
AMD VISION Engine Control Center
Apple Application Support
Apple Software Update
BlackBerry Desktop Software 6.0.2
BufferChm
Catalyst Control Center - Branding
Catalyst Control Center Graphics Previews Common
Catalyst Control Center InstallProxy
CCC Help English
Cheat Engine 6.0
Copy
Coupon Printer for Windows
Crysis® 2
DAEMON Tools Lite
DAEMON Tools Toolbar
Destinations
DeviceDiscovery
DivX Web Player
DJ_AIO_06_F2400_SW_Min
Dragon Saga
Dragonica
DragonNest
DVD Shrink 3.2
EVEREST Home Edition v2.20
F2400
ffdshow v1.1.3851 [2011-05-12]
Frets On Fire
Google Chrome
Google Update Helper
GPBaseService2
HiJackThis
HP Photo Creations
HP Update
HPPhotoGadget
HPProductAssistant
HPSSupply
HydraVision
ImgBurn
iTunes Export
Java Auto Updater
Java(TM) 6 Update 22
Liveupdate5
Malwarebytes' Anti-Malware version 1.51.2.1300
MapleStory
MarketResearch
Microsoft Office Access MUI (English) 2010
Microsoft Office Access Setup Metadata MUI (English) 2010
Microsoft Office Excel MUI (English) 2010
Microsoft Office Groove MUI (English) 2010
Microsoft Office InfoPath MUI (English) 2010
Microsoft Office OneNote MUI (English) 2010
Microsoft Office Outlook MUI (English) 2010
Microsoft Office PowerPoint MUI (English) 2010
Microsoft Office Professional Plus 2010
Microsoft Office Proof (English) 2010
Microsoft Office Proof (French) 2010
Microsoft Office Proof (Spanish) 2010
Microsoft Office Proofing (English) 2010
Microsoft Office Publisher MUI (English) 2010
Microsoft Office Shared MUI (English) 2010
Microsoft Office Shared Setup Metadata MUI (English) 2010
Microsoft Office Word MUI (English) 2010
Microsoft Silverlight
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Mobile Mouse Server
Mozilla Firefox 6.0.2 (x86 en-GB)
Need For Speed™ World
Nero 7 Ultra Edition
neroxml
Nexon Game Manager
PlayerScore
Portal 2
QuickTime
Realtek Ethernet Controller Driver
Realtek High Definition Audio Driver
Rohan_RBF
Sapphire TRIXX
Scan
Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
SmartWebPrinting
SolutionCenter
Status
Steam
Tansee iPod Transfer v3.8
Toolbox
TrayApp
TwelveSky2
VC80CRTRedist - 8.0.50727.762
Video Card Stability Test
VLC media player 1.1.9
WebReg
Winamp
Winamp Detector Plug-in
Windows Media Player Firefox Plugin
WinSCP 4.3.3
WinSCP plugin for FAR 1.6.2
Yahoo! Messenger
Yahoo! Software Update
Yahoo! Toolbar
.
==== Event Viewer Messages From Past Week ========
.
28/09/2011 3:42:42 PM, Error: Service Control Manager [7001] - The Network List Service service depends on the Network Location Awareness service which failed to start because of the following error: The dependency service or group failed to start.
28/09/2011 3:42:41 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
28/09/2011 3:42:41 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service WSearch with arguments "" in order to run the server: {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39}
28/09/2011 3:42:41 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netprofm with arguments "" in order to run the server: {A47979D2-C419-11D9-A5B4-001185AD2B89}
28/09/2011 3:42:41 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1068" attempting to start the service netman with arguments "" in order to run the server: {BA126AD1-2166-11D1-B1D0-00805FC1270E}
28/09/2011 3:42:38 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service EventSystem with arguments "" in order to run the server: {1BE1F766-5536-11D1-B726-00C04FB926AF}
28/09/2011 3:42:31 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1084" attempting to start the service ShellHWDetection with arguments "" in order to run the server: {DD522ACC-F821-461A-A407-50B198B896DC}
28/09/2011 3:42:22 PM, Error: Service Control Manager [7026] - The following boot-start or system-start driver(s) failed to load: AFD CSC DfsC discache NetBIOS NetBT nsiproxy Psched rdbss spldr tdx Wanarpv6 WfpLwf
28/09/2011 3:42:22 PM, Error: Service Control Manager [7001] - The SMB MiniRedirector Wrapper and Engine service depends on the Redirected Buffering Sub Sysytem service which failed to start because of the following error: A device attached to the system is not functioning.
28/09/2011 3:42:22 PM, Error: Service Control Manager [7001] - The SMB 2.0 MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
28/09/2011 3:42:22 PM, Error: Service Control Manager [7001] - The SMB 1.x MiniRedirector service depends on the SMB MiniRedirector Wrapper and Engine service which failed to start because of the following error: The dependency service or group failed to start.
28/09/2011 3:42:22 PM, Error: Service Control Manager [7001] - The Network Location Awareness service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
28/09/2011 3:42:22 PM, Error: Service Control Manager [7001] - The IP Helper service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
28/09/2011 3:42:21 PM, Error: Service Control Manager [7001] - The Workstation service depends on the Network Store Interface Service service which failed to start because of the following error: The dependency service or group failed to start.
28/09/2011 3:42:21 PM, Error: Service Control Manager [7001] - The TCP/IP NetBIOS Helper service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
28/09/2011 3:42:21 PM, Error: Service Control Manager [7001] - The Network Store Interface Service service depends on the NSI proxy service driver. service which failed to start because of the following error: A device attached to the system is not functioning.
28/09/2011 3:42:21 PM, Error: Service Control Manager [7001] - The DNS Client service depends on the NetIO Legacy TDI Support Driver service which failed to start because of the following error: A device attached to the system is not functioning.
28/09/2011 3:42:21 PM, Error: Service Control Manager [7001] - The DHCP Client service depends on the Ancillary Function Driver for Winsock service which failed to start because of the following error: A device attached to the system is not functioning.
28/09/2011 2:33:09 PM, Error: Service Control Manager [7009] - A timeout was reached (30000 milliseconds) while waiting for the Windows Search service to connect.
28/09/2011 2:33:09 PM, Error: Service Control Manager [7000] - The Windows Search service failed to start due to the following error: The service did not respond to the start or control request in a timely fashion.
28/09/2011 2:33:09 PM, Error: Microsoft-Windows-DistributedCOM [10005] - DCOM got error "1053" attempting to start the service WSearch with arguments "" in order to run the server: {9E175B6D-F52A-11D8-B9A5-505054503030}
28/09/2011 2:31:14 PM, Error: Service Control Manager [7030] - The PEVSystemStart service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.
28/09/2011 2:23:24 PM, Error: Service Control Manager [7034] - The hpqcxs08 service terminated unexpectedly. It has done this 1 time(s).
28/09/2011 2:23:24 PM, Error: Service Control Manager [7034] - The HP CUE DeviceDiscovery Service service terminated unexpectedly. It has done this 1 time(s).
28/09/2011 2:23:24 PM, Error: Service Control Manager [7031] - The Akamai NetSession Interface service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 1000 milliseconds: Restart the service.
28/09/2011 1:30:45 PM, Error: Service Control Manager [7038] - The WerSvc service was unable to log on as NT AUTHORITY\SYSTEM with the currently configured password due to the following error: The security account manager (SAM) or local security authority (LSA) server was in the wrong state to perform the security operation. To ensure that the service is configured properly, use the Services snap-in in Microsoft Management Console (MMC).
28/09/2011 1:29:55 PM, Error: Application Popup [1060] - \??\C:\user123\catchme.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
27/09/2011 8:07:06 PM, Error: Microsoft-Windows-Firewall [6400] - An attempt to programmatically disable the Windows Firewall using a call to INetFwProfile.FirewallEnabled(FALSE) interface was rejected because this API is not supported on Windows Vista. This has most likely occurred due to an application which is incompatible with Windows Vista. Please contact the application's vendor to make sure you have a Windows Vista compatible application version. Error Code: E_NOTIMPL Caller Process Name: C:\Users\Rae Anthony\Desktop\NFSW HACK(1).exe Process Id: 6212 Publisher:
27/09/2011 8:02:47 PM, Error: Microsoft-Windows-Firewall [6400] - An attempt to programmatically disable the Windows Firewall using a call to INetFwProfile.FirewallEnabled(FALSE) interface was rejected because this API is not supported on Windows Vista. This has most likely occurred due to an application which is incompatible with Windows Vista. Please contact the application's vendor to make sure you have a Windows Vista compatible application version. Error Code: E_NOTIMPL Caller Process Name: C:\Users\Rae Anthony\Desktop\NFSW HACK.exe Process Id: 5300 Publisher:
27/09/2011 8:02:31 PM, Error: Microsoft-Windows-Firewall [6400] - An attempt to programmatically disable the Windows Firewall using a call to INetFwProfile.FirewallEnabled(FALSE) interface was rejected because this API is not supported on Windows Vista. This has most likely occurred due to an application which is incompatible with Windows Vista. Please contact the application's vendor to make sure you have a Windows Vista compatible application version. Error Code: E_NOTIMPL Caller Process Name: C:\Users\Rae Anthony\Desktop\NFSW HACK.exe Process Id: 6976 Publisher:
27/09/2011 8:00:34 PM, Error: Microsoft-Windows-Firewall [6400] - An attempt to programmatically disable the Windows Firewall using a call to INetFwProfile.FirewallEnabled(FALSE) interface was rejected because this API is not supported on Windows Vista. This has most likely occurred due to an application which is incompatible with Windows Vista. Please contact the application's vendor to make sure you have a Windows Vista compatible application version. Error Code: E_NOTIMPL Caller Process Name: C:\Users\Rae Anthony\Desktop\NFSW HACK.exe Process Id: 3124 Publisher:
27/09/2011 7:59:34 PM, Error: Microsoft-Windows-Firewall [6400] - An attempt to programmatically disable the Windows Firewall using a call to INetFwProfile.FirewallEnabled(FALSE) interface was rejected because this API is not supported on Windows Vista. This has most likely occurred due to an application which is incompatible with Windows Vista. Please contact the application's vendor to make sure you have a Windows Vista compatible application version. Error Code: E_NOTIMPL Caller Process Name: C:\Users\Rae Anthony\Desktop\NFSW HACK.exe Process Id: 6684 Publisher:
27/09/2011 11:57:23 PM, Error: Microsoft-Windows-Firewall [6400] - An attempt to programmatically disable the Windows Firewall using a call to INetFwProfile.FirewallEnabled(FALSE) interface was rejected because this API is not supported on Windows Vista. This has most likely occurred due to an application which is incompatible with Windows Vista. Please contact the application's vendor to make sure you have a Windows Vista compatible application version. Error Code: E_NOTIMPL Caller Process Name: C:\Users\Rae Anthony\Desktop\NFSW HACK.exe Process Id: 1608 Publisher:
24/09/2011 9:18:10 PM, Error: Service Control Manager [7000] - The NPPTNT2 service failed to start due to the following error: The system cannot find the file specified.
24/09/2011 9:18:08 PM, Error: Application Popup [1060] - \??\C:\gPotato.eu\Dragonica\Release\GameGuard\dump_wmimmc.sys has been blocked from loading due to incompatibility with this system. Please contact your software vendor for a compatible version of the driver.
.
==== End Of File ===========================