SoFedUp Posted November 5, 2013 Hello Everyone! I have a very nasty virus that redirects me and won't go away, even after a wiped and reformatting of HDD. After my install with nothing attached to my computer and nothing else but my OEM WINDOWS 7 installed, the virus comes back. Please Help Me Thank You!! Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 Hi SoFedUp, What makes you so sure it is a virus? More info is needed here. Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 Thank you for your reply GuiltySpark! I don't know... Got lots of tracking cookies that are found everytime I do a scan, and a redirecting page that pops up. Tell me what you need and what to do, I'll do it. Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 Download DDS run it and post the two txt files here. Also can you take a screenshot of the re-direct you get taken to. Thanks. Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 Good Day To You GuiltySpark! I have done as you instructed and uploaded my files and snapshot. I'm not sure if you wanted me to scan with the browser open and the redirected page there, I did my scan before, if I did not do it correctly just tell me and I will do it again. Your valuable time and expertise are very much appreciated. Thank You!!! Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 where did you upload them? I see no files. Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 I USED THE TOOL PROVIDED AND IT SAYS TO PUT MY EMAIL ADDRESS SO YOU GUYS CAN FIND IT IT'S CALL SUPER SAMPLE SUBMIT Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 That has nothing to do with the DDS programme, I'm not sure you'll get a response from that using a different programme. I was talking about attaching the text files here in the forum. As for the tracking cookies, they are harmless. Many sites will present you with tracking cookies for marketing purposes Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 .UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.IF REQUESTED, ZIP IT UP & ATTACH IT.DDS (Ver_2012-11-20.01).Microsoft Windows 7 Home PremiumBoot Device: \Device\HarddiskVolume1Install Date: 04/11/2013 4:12:38 PMSystem Uptime: 06/11/2013 7:30:02 AM (1 hours ago).Motherboard: ASUSTeK Computer INC. | | P5G41T-MProcessor: Pentium® Dual-Core CPU E5500 @ 2.80GHz | LGA775 | 2803/200mhz.==== Disk Partitions =========================.C: is FIXED (NTFS) - 466 GiB total, 437.198 GiB free.D: is CDROM ()E: is RemovableF: is RemovableG: is RemovableH: is RemovableI: is RemovableJ: is FIXED (NTFS) - 466 GiB total, 23.57 GiB free.K: is FIXED (NTFS) - 2795 GiB total, 2.018 GiB free.L: is FIXED (NTFS) - 932 GiB total, 0.492 GiB free.M: is FIXED (NTFS) - 298 GiB total, 0.322 GiB free..==== Disabled Device Manager Items =============.Class GUID: {d94ee5d8-d189-4994-83d2-f68d7d41b0e6}Description: Trusted Platform Module 1.2Device ID: ACPI\IFX0102\1Manufacturer: (Standard)Name: Trusted Platform Module 1.2PNP Device ID: ACPI\IFX0102\1Service: TPM.==== System Restore Points ===================.RP10: 05/11/2013 10:10:05 PM - Windows 7 Service Pack 1RP11: 06/11/2013 3:16:25 AM - Windows Modules InstallerRP12: 06/11/2013 3:37:35 AM - Windows Update.==== Installed Programs ======================.Adobe Flash Player 11 ActiveXµTorrentBitdefender Antivirus Free EditionCleanMemGoogle ChromeGoogle Update HelperJava 7 Update 45Java Auto UpdaterMalwarebytes Anti-Malware version 1.75.0.1300Microsoft .NET Framework 4 Client ProfileSecurity Update for Microsoft .NET Framework 4 Client Profile (KB2604121)Security Update for Microsoft .NET Framework 4 Client Profile (KB2656351)Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449)Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019)Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595)Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642)SUPERAntiSpywareUpdate for Microsoft .NET Framework 4 Client Profile (KB2468871)Update for Microsoft .NET Framework 4 Client Profile (KB2533523)Update for Microsoft .NET Framework 4 Client Profile (KB2600217).==== Event Viewer Messages From Past Week ========.06/11/2013 7:30:12 AM, Error: TPM [14] - The device driver for the Trusted Platform Module (TPM) encountered a non-recoverable error in the TPM hardware, which prevents TPM services (such as data encryption) from being used. For further help, please contact the computer manufacturer.05/11/2013 7:50:37 AM, Error: Service Control Manager [7000] - The bdfwfpf service failed to start due to the following error: The system cannot find the file specified.05/11/2013 7:07:58 AM, Error: Microsoft-Windows-DistributedCOM [10016] - The machine-default permission settings do not grant Local Activation permission for the COM Server application with CLSID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} and APPID {9BA05972-F6A8-11CF-A442-00A0C90A8F39} to the user Eagle-One\Eagle SID (S-1-5-21-836253236-2324036745-4032619822-1001) from address LocalHost (Using LRPC). This security permission can be modified using the Component Services administrative tool.05/11/2013 6:50:45 AM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk1\DR1.05/11/2013 4:18:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Windows 7 for x64-based Systems (KB979538).05/11/2013 4:18:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Windows 7 for x64-based Systems (KB2661254).05/11/2013 4:18:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for User-Mode Driver Framework version 1.11 for Windows 7 for x64-based Systems (KB2685813).05/11/2013 4:18:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Internet Explorer 8 Compatibility View List for Windows 7 for x64-based Systems (KB2598845).05/11/2013 4:18:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Windows 7 for x64-based Systems (KB2653956).05/11/2013 4:18:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Windows 7 for x64-based Systems (KB2544893).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Windows 7 for x64-based Systems (KB971033).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Windows 7 for x64-based Systems (KB2748349).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Windows 7 for x64-based Systems (KB2718704).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Windows 7 for x64-based Systems (KB2552343).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Windows 7 for x64-based Systems (KB2387530).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Update for Kernel-Mode Driver Framework version 1.11 for Windows 7 for x64-based Systems (KB2685811).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Windows 7 for x64-based Systems (KB975467).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Security Update for Windows 7 for x64-based Systems (KB2753842).05/11/2013 4:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2618451).05/11/2013 3:41:33 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2563227).05/11/2013 3:29:50 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2769369).05/11/2013 3:29:35 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2560656).05/11/2013 3:29:17 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB979482).05/11/2013 3:29:02 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2535512).05/11/2013 3:28:43 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2658846).05/11/2013 3:27:38 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2620704).05/11/2013 3:27:29 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2656410).05/11/2013 3:27:16 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB980846).05/11/2013 3:27:06 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2533552).05/11/2013 3:26:57 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2813347).05/11/2013 3:26:35 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2515325).05/11/2013 3:26:05 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2779562).05/11/2013 3:25:40 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2479943).05/11/2013 3:25:28 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB982132).05/11/2013 3:25:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2604114).05/11/2013 3:25:02 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2808735).05/11/2013 3:24:53 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2631813).05/11/2013 3:24:37 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2640148).05/11/2013 3:24:26 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB979687).05/11/2013 3:24:16 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2305420).05/11/2013 3:23:59 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2547666).05/11/2013 3:23:47 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2789644).05/11/2013 3:23:35 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB979688).05/11/2013 3:23:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2536276).05/11/2013 3:23:07 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2585542).05/11/2013 3:22:31 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB974431).05/11/2013 3:22:17 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Rights Management Services Client for Windows 7 for x64-based Systems (KB979099).05/11/2013 3:21:39 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2729451).05/11/2013 3:21:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB978542).05/11/2013 3:21:14 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2840149).05/11/2013 3:21:03 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Cumulative Update for Media Center for Windows 7 x64-based Systems (KB2284742).05/11/2013 3:20:51 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB972270).05/11/2013 3:20:41 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2660075).05/11/2013 3:20:29 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2511250).05/11/2013 3:20:19 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2570947).05/11/2013 3:19:33 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2545698).05/11/2013 3:19:23 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2676562).05/11/2013 3:19:10 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2296011).05/11/2013 3:19:00 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2467023).05/11/2013 3:18:47 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2522422).05/11/2013 3:18:36 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB977074).05/11/2013 3:18:24 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2506212).05/11/2013 3:18:13 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2691442).05/11/2013 3:18:03 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2603229).05/11/2013 3:17:54 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2741355).05/11/2013 3:17:42 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB982799).05/11/2013 3:17:32 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2807986).05/11/2013 3:17:21 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2667402).05/11/2013 3:17:13 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2655992).05/11/2013 3:17:00 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Microsoft .NET Framework 3.5 SP1 Update for Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB982526).05/11/2013 3:16:22 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2484033).05/11/2013 3:16:04 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2347290).05/11/2013 3:12:54 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2454826).05/11/2013 3:12:41 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2757638).05/11/2013 3:12:34 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2541014).05/11/2013 3:12:26 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB982665).05/11/2013 3:12:19 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2709630).05/11/2013 3:12:13 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2509553).05/11/2013 3:12:08 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2032276).05/11/2013 3:11:51 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2758857).05/11/2013 3:11:38 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2785220).05/11/2013 3:11:38 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2770660).05/11/2013 3:11:27 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB975560).05/11/2013 3:11:27 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2281679).05/11/2013 3:11:21 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2749655).05/11/2013 3:11:13 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2790113).05/11/2013 3:11:06 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2736418).05/11/2013 3:10:58 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2488113).05/11/2013 3:10:47 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2536275).05/11/2013 3:10:40 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2786400).05/11/2013 3:10:33 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2790655).05/11/2013 3:10:26 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2773072).05/11/2013 3:10:16 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2579686).05/11/2013 3:10:08 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2393802).05/11/2013 3:10:00 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2685939).05/11/2013 3:09:54 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2756920).05/11/2013 3:09:26 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2423089).05/11/2013 3:09:17 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2645640).05/11/2013 3:08:41 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2743555).05/11/2013 3:08:41 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2690533).05/11/2013 3:08:33 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2699779).05/11/2013 3:08:28 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2726535).05/11/2013 3:08:15 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2656355).05/11/2013 3:08:06 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2706045).05/11/2013 3:08:00 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB980408).05/11/2013 3:07:54 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2506014).05/11/2013 3:07:54 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2727528).05/11/2013 3:07:46 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2387149).05/11/2013 3:07:37 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Cumulative Security Update for Internet Explorer 8 for Windows 7 for x64-based Systems (KB2817183).05/11/2013 3:06:25 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2762895).05/11/2013 3:06:18 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB974571).05/11/2013 3:06:12 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2761217).05/11/2013 3:06:06 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2659262).05/11/2013 3:06:00 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2532531).05/11/2013 3:05:49 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2483614).05/11/2013 3:05:23 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2705219).05/11/2013 3:05:14 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2506928).05/11/2013 3:05:14 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2378111).05/11/2013 3:05:08 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2799926).05/11/2013 3:05:08 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2732500).05/11/2013 3:05:02 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2491683).05/11/2013 3:04:47 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2654428).05/11/2013 3:04:38 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2729094).05/11/2013 3:04:38 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2442962).05/11/2013 3:04:32 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2712808).05/11/2013 3:04:26 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2511455).05/11/2013 3:04:16 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2564958).05/11/2013 3:04:07 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2619339).05/11/2013 3:04:01 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2660649).05/11/2013 3:03:50 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2813170).05/11/2013 3:03:38 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2698365).05/11/2013 3:03:16 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2419640).05/11/2013 3:03:05 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Windows 7 for x64-based Systems (KB2644615).05/11/2013 3:02:57 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2345886).05/11/2013 3:02:50 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Update for Windows 7 for x64-based Systems (KB2647753).05/11/2013 3:02:29 AM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x8024200d: Security Update for Microsoft .NET Framework 3.5.1 on Windows 7 and Windows Server 2008 R2 for x64-based Systems (KB2742598).05/11/2013 2:22:28 PM, Error: Service Control Manager [7023] -05/11/2013 2:13:45 PM, Error: Service Control Manager [7034] - The MBAMScheduler service terminated unexpectedly. It has done this 1 time(s).05/11/2013 11:55:47 AM, Error: Microsoft-Windows-WER-SystemErrorReporting [1001] - The computer has rebooted from a bugcheck. The bugcheck was: 0x00000116 (0xfffffa8002fe72c0, 0xfffff88003c35cb0, 0x0000000000000000, 0x000000000000000d). A dump was saved in: C:\Windows\MEMORY.DMP. Report Id: 110513-24086-01.05/11/2013 10:52:15 PM, Error: Microsoft-Windows-WindowsUpdateClient [20] - Installation Failure: Windows failed to install the following update with error 0x80070643: Windows Internet Explorer 9 for Windows 7 for x64-based Systems.05/11/2013 10:10:06 PM, Error: Disk [11] - The driver detected a controller error on \Device\Harddisk2\DR2..==== End Of File =========================== DDS (Ver_2012-11-20.01) - NTFS_AMD64Internet Explorer: 10.0.9200.16720 BrowserJavaVersion: 10.45.2Run by Eagle at 8:34:48 on 2013-11-06#Option Extended Search is enabled.Microsoft Windows 7 Home Premium 6.1.7601.1.1252.2.1033.18.2013.971 [GMT -8:00].AV: Bitdefender Antivirus Free Edition *Enabled/Updated* {9B5F5313-CAF9-DD97-C460-E778420237B4}SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}SP: Bitdefender Antivirus Free Edition *Enabled/Updated* {203EB2F7-ECC3-D219-FED0-DC0A39857D09}.============== Running Processes ===============.C:\Windows\system32\lsm.exeC:\Windows\system32\svchost.exe -k DcomLaunchC:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exeC:\Windows\system32\svchost.exe -k RPCSSC:\Windows\System32\svchost.exe -k LocalServiceNetworkRestrictedC:\Windows\System32\svchost.exe -k LocalSystemNetworkRestrictedC:\Windows\system32\svchost.exe -k LocalServiceC:\Windows\system32\svchost.exe -k netsvcsC:\Windows\system32\svchost.exe -k NetworkServiceC:\Windows\System32\spoolsv.exeC:\Windows\system32\svchost.exe -k LocalServiceNoNetworkC:\Program Files\SUPERAntiSpyware\SASCORE64.EXEC:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonationC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exeC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exeC:\Windows\System32\WUDFHost.exeC:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exeC:\Windows\system32\Dwm.exeC:\Windows\Explorer.EXEC:\Windows\system32\taskhost.exeC:\Program Files\Bitdefender\Antivirus Free Edition\gziface.exeC:\Windows\System32\igfxtray.exeC:\Windows\System32\hkcmd.exeC:\Windows\System32\igfxpers.exeC:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exeC:\Program Files\Windows Sidebar\sidebar.exeC:\Program Files (x86)\Common Files\Java\Java Update\jusched.exeC:\Windows\system32\SearchIndexer.exeC:\Program Files\Windows Media Player\wmpnetwk.exeC:\Windows\System32\svchost.exe -k LocalServicePeerNetC:\Windows\system32\wbem\wmiprvse.exeC:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Program Files (x86)\Internet Explorer\IELowutil.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\system32\wbem\wmiprvse.exeC:\Windows\system32\SearchFilterHost.exeC:\Windows\system32\taskeng.exeC:\Windows\system32\SearchProtocolHost.exeC:\Windows\System32\cscript.exe.============== Pseudo HJT Report ===============.mWinlogon: Userinit = userinit.exeBHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dllBHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dlluRun: [sUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exeuRun: [uTorrent] "C:\Users\Eagle\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZEDuRun: [sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRunmRun: [sunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"mPolicies-Explorer: NoActiveDesktop = dword:1mPolicies-Explorer: NoActiveDesktopChanges = dword:1mPolicies-System: ConsentPromptBehaviorAdmin = dword:5mPolicies-System: ConsentPromptBehaviorUser = dword:3mPolicies-System: EnableUIADesktopToggle = dword:0TCP: NameServer = 192.168.0.1TCP: Interfaces\{558A937F-CE93-4FEE-BB36-7CB501AC3B58} : DHCPNameServer = 192.168.0.1SSODL: WebCheck - <orphaned>mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chromex64-Run: [igfxTray] C:\Windows\System32\igfxtray.exex64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exex64-Run: [Persistence] C:\Windows\System32\igfxpers.exex64-Run: [Logitech Download Assistant] C:\Windows\System32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetchx64-Notify: igfxcui - igfxdev.dllx64-SSODL: WebCheck - <orphaned>.============= SERVICES / DRIVERS ===============.R0 avc3;avc3;C:\Windows\System32\drivers\avc3.sys [2013-11-5 718840]R1 bdfwfpf;bdfwfpf;C:\Program Files\Bitdefender\Antivirus Free Edition\bdfwfpf.sys [2013-11-5 121928]R1 gzflt;gzflt;C:\Windows\System32\drivers\gzflt.sys [2013-11-5 148696]R1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2011-7-22 14928]R1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2011-7-12 12368]R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2013-10-10 144152]R2 gzserv;Bitdefender Antivirus Free Edition;C:\Program Files\Bitdefender\Antivirus Free Edition\gzserv.exe [2013-11-5 69368]R2 MBAMScheduler;MBAMScheduler;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2013-11-4 418376]R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2013-11-4 701512]R3 avckf;avckf;C:\Windows\System32\drivers\avckf.sys [2013-11-5 593144]R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20);C:\Windows\System32\drivers\L1C62x64.sys [2009-6-10 57344]R3 MBAMProtector;MBAMProtector;C:\Windows\System32\drivers\mbam.sys [2013-11-4 25928]S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2013-11-5 59392]S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2013-11-5 1255736].=============== Created Last 60 ================.2013-11-06 11:21:35 68608 ----a-w- C:\Windows\System32\taskhost.exe2013-11-06 11:17:11 1505280 ----a-w- C:\Windows\SysWow64\d3d11.dll2013-11-06 11:17:10 1887232 ----a-w- C:\Windows\System32\d3d11.dll2013-11-06 06:15:01 61440 ----a-w- C:\Windows\SysWow64\CleanMem.exe2013-11-06 06:14:27 -------- d-----w- C:\Windows\CleanMem2013-11-06 06:14:26 -------- d-----w- C:\Program Files (x86)\CleanMem2013-11-06 06:10:16 -------- d-----w- C:\Windows\System32\SPReview2013-11-06 06:09:34 -------- d-----w- C:\Windows\System32\EventProviders2013-11-06 05:36:04 48976 ----a-w- C:\Windows\System32\netfxperf.dll2013-11-06 05:36:04 1942856 ----a-w- C:\Windows\System32\dfshim.dll2013-11-06 05:34:59 372736 ----a-w- C:\Windows\System32\wbem\WmiPrvSE.exe2013-11-06 05:33:59 551936 ----a-w- C:\Windows\System32\localsec.dll2013-11-06 05:32:59 2311168 ----a-w- C:\Windows\SysWow64\wpdshext.dll2013-11-06 05:31:59 78848 ----a-w- C:\Windows\SysWow64\iasacct.dll2013-11-06 05:30:59 31744 ----a-w- C:\Windows\SysWow64\msvidc32.dll2013-11-06 05:29:59 102912 ----a-w- C:\Program Files\Windows Media Player\wmpshare.exe2013-11-06 05:28:52 606208 ----a-w- C:\Windows\SysWow64\wbem\fastprox.dll2013-11-06 05:28:52 363008 ----a-w- C:\Windows\SysWow64\wbemcomn.dll2013-11-06 05:26:23 529408 ----a-w- C:\Windows\System32\wbemcomn.dll2013-11-05 23:11:46 -------- d-----w- C:\Users\Eagle\AppData\Roaming\Thinstall2013-11-05 23:11:46 -------- d-----w- C:\Users\Eagle\AppData\Local\Thinstall2013-11-05 22:29:51 723456 ----a-w- C:\Windows\System32\EncDec.dll2013-11-05 22:29:51 534528 ----a-w- C:\Windows\SysWow64\EncDec.dll2013-11-05 18:13:58 -------- d-----w- C:\Users\Eagle\AppData\Roaming\uTorrent2013-11-05 18:08:58 -------- d-----w- C:\ProgramData\Oracle2013-11-05 18:08:25 96168 ----a-w- C:\Windows\SysWow64\WindowsAccessBridge-32.dll2013-11-05 15:50:45 197955 ----a-w- C:\ProgramData\1383666559.bdinstall.bin2013-11-05 15:50:24 1721576 ----a-w- C:\Windows\System32\WdfCoInstaller01009.dll2013-11-05 15:50:22 261056 ----a-w- C:\Windows\System32\drivers\avchv.sys2013-11-05 15:50:21 718840 ----a-w- C:\Windows\System32\drivers\avc3.sys2013-11-05 15:50:21 593144 ----a-w- C:\Windows\System32\drivers\avckf.sys2013-11-05 15:49:35 148696 ----a-w- C:\Windows\System32\drivers\gzflt.sys2013-11-05 15:49:33 382536 ----a-w- C:\Windows\System32\drivers\trufos.sys2013-11-05 15:15:08 71048 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl2013-11-05 15:15:08 692616 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe2013-11-05 15:14:45 -------- d-----w- C:\Users\Eagle\AppData\Local\Adobe2013-11-05 14:52:41 10280728 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\Backup\mpengine.dll2013-11-05 14:52:37 10280728 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{69A83E29-137C-449D-910B-ACD1DA9A6CE3}\mpengine.dll2013-11-05 12:16:10 3153408 ----a-w- C:\Windows\System32\win32k.sys2013-11-05 12:16:02 542208 ----a-w- C:\Windows\SysWow64\kerberos.dll2013-11-05 12:16:00 715776 ----a-w- C:\Windows\System32\kerberos.dll2013-11-05 12:15:00 288088 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS2013-11-05 12:15:00 1913192 ----a-w- C:\Windows\System32\drivers\tcpip.sys2013-11-05 12:14:59 376688 ----a-w- C:\Windows\System32\drivers\netio.sys2013-11-05 12:14:32 36864 ----a-w- C:\Windows\SysWow64\tsgqec.dll2013-11-05 12:14:32 3217408 ----a-w- C:\Windows\SysWow64\mstscax.dll2013-11-05 12:14:32 131584 ----a-w- C:\Windows\SysWow64\aaclient.dll2013-11-05 12:14:12 44032 ----a-w- C:\Windows\System32\tsgqec.dll2013-11-05 12:14:11 3717632 ----a-w- C:\Windows\System32\mstscax.dll2013-11-05 12:14:11 158720 ----a-w- C:\Windows\System32\aaclient.dll2013-11-05 12:13:59 2048 ----a-w- C:\Windows\SysWow64\msxml3r.dll2013-11-05 12:13:59 1389568 ----a-w- C:\Windows\SysWow64\msxml6.dll2013-11-05 12:13:59 1236992 ----a-w- C:\Windows\SysWow64\msxml3.dll2013-11-05 12:13:57 2048 ----a-w- C:\Windows\System32\msxml3r.dll2013-11-05 12:13:57 2002432 ----a-w- C:\Windows\System32\msxml6.dll2013-11-05 12:13:56 1882624 ----a-w- C:\Windows\System32\msxml3.dll2013-11-05 12:13:48 223752 ----a-w- C:\Windows\System32\drivers\fvevol.sys2013-11-05 12:13:16 220160 ----a-w- C:\Windows\SysWow64\ncrypt.dll2013-11-05 12:13:14 307200 ----a-w- C:\Windows\System32\ncrypt.dll2013-11-05 12:13:01 41984 ----a-w- C:\Windows\SysWow64\browcli.dll2013-11-05 12:12:59 59392 ----a-w- C:\Windows\System32\browcli.dll2013-11-05 12:12:59 136704 ----a-w- C:\Windows\System32\browser.dll2013-11-05 12:12:22 2048 ----a-w- C:\Windows\SysWow64\tzres.dll2013-11-05 12:10:59 503808 ----a-w- C:\Windows\System32\srcore.dll2013-11-05 12:10:59 296960 ----a-w- C:\Windows\System32\rstrui.exe2013-11-05 12:10:52 78336 ----a-w- C:\Windows\SysWow64\synceng.dll2013-11-05 12:10:51 95744 ----a-w- C:\Windows\System32\synceng.dll2013-11-05 12:08:59 2746368 ----a-w- C:\Windows\System32\gameux.dll2013-11-05 12:06:59 243200 ----a-w- C:\Windows\System32\wow64.dll2013-11-05 12:05:55 626688 ----a-w- C:\Windows\SysWow64\usp10.dll2013-11-05 12:04:43 314880 ----a-w- C:\Windows\SysWow64\webio.dll2013-11-05 12:04:42 395776 ----a-w- C:\Windows\System32\webio.dll2013-11-05 12:04:36 75120 ----a-w- C:\Windows\System32\drivers\partmgr.sys2013-11-05 12:04:29 850944 ----a-w- C:\Windows\SysWow64\sbe.dll2013-11-05 12:04:29 642048 ----a-w- C:\Windows\SysWow64\CPFilters.dll2013-11-05 12:04:29 199680 ----a-w- C:\Windows\SysWow64\mpg2splt.ax2013-11-05 12:04:27 961024 ----a-w- C:\Windows\System32\CPFilters.dll2013-11-05 12:04:27 259072 ----a-w- C:\Windows\System32\mpg2splt.ax2013-11-05 12:04:27 1118720 ----a-w- C:\Windows\System32\sbe.dll2013-11-05 12:03:06 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll2013-11-05 12:03:06 1328128 ----a-w- C:\Windows\SysWow64\quartz.dll2013-11-05 12:03:05 366592 ----a-w- C:\Windows\System32\qdvd.dll2013-11-05 12:03:05 1572864 ----a-w- C:\Windows\System32\quartz.dll2013-11-05 12:02:58 9216 ----a-w- C:\Windows\System32\rdrmemptylst.exe2013-11-05 12:02:58 77312 ----a-w- C:\Windows\System32\rdpwsx.dll2013-11-05 12:02:58 149504 ----a-w- C:\Windows\System32\rdpcorekmts.dll2013-11-05 12:02:31 90624 ----a-w- C:\Windows\System32\drivers\bowser.sys2013-11-05 12:02:07 28672 ----a-w- C:\Windows\SysWow64\dnscacheugc.exe2013-11-05 12:02:06 30208 ----a-w- C:\Windows\System32\dnscacheugc.exe2013-11-05 12:02:06 183296 ----a-w- C:\Windows\System32\dnsrslvr.dll2013-11-05 12:01:57 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys2013-11-05 12:01:39 956928 ----a-w- C:\Windows\System32\localspl.dll2013-11-05 12:01:39 39424 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\winprint.dll2013-11-05 12:01:24 467456 ----a-w- C:\Windows\System32\drivers\srv.sys2013-11-05 12:01:24 410112 ----a-w- C:\Windows\System32\drivers\srv2.sys2013-11-05 12:01:23 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys2013-11-05 12:00:09 75776 ----a-w- C:\Windows\SysWow64\psisrndr.ax2013-11-05 12:00:09 72704 ----a-w- C:\Windows\SysWow64\Mpeg2Data.ax2013-11-05 12:00:09 59904 ----a-w- C:\Windows\SysWow64\MSDvbNP.ax2013-11-05 12:00:09 465408 ----a-w- C:\Windows\SysWow64\psisdecd.dll2013-11-05 12:00:09 204288 ----a-w- C:\Windows\SysWow64\MSNP.ax2013-11-05 12:00:05 75776 ----a-w- C:\Windows\System32\MSDvbNP.ax2013-11-05 12:00:05 613888 ----a-w- C:\Windows\System32\psisdecd.dll2013-11-05 12:00:05 288256 ----a-w- C:\Windows\System32\MSNP.ax2013-11-05 12:00:05 108032 ----a-w- C:\Windows\System32\psisrndr.ax2013-11-05 12:00:05 104960 ----a-w- C:\Windows\System32\Mpeg2Data.ax2013-11-05 11:59:06 288768 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys2013-11-05 11:59:06 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys2013-11-05 11:59:06 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys2013-11-05 11:58:54 233472 ----a-w- C:\Windows\SysWow64\oleacc.dll2013-11-05 11:58:53 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll2013-11-05 11:58:51 861696 ----a-w- C:\Windows\System32\oleaut32.dll2013-11-05 11:58:51 331776 ----a-w- C:\Windows\System32\oleacc.dll2013-11-05 11:57:59 33792 ----a-w- C:\Windows\System32\profprov.dll2013-11-05 11:57:59 209920 ----a-w- C:\Windows\System32\profsvc.dll2013-11-05 11:57:42 498688 ----a-w- C:\Windows\System32\drivers\afd.sys2013-11-05 11:57:33 1164288 ----a-w- C:\Windows\SysWow64\mfc42u.dll2013-11-05 11:57:33 1137664 ----a-w- C:\Windows\SysWow64\mfc42.dll2013-11-05 11:57:30 1395712 ----a-w- C:\Windows\System32\mfc42.dll2013-11-05 11:57:30 1359872 ----a-w- C:\Windows\System32\mfc42u.dll2013-11-05 11:55:49 974336 ----a-w- C:\Windows\System32\WFS.exe2013-11-05 11:55:49 267776 ----a-w- C:\Windows\System32\FXSCOVER.exe2013-11-05 11:55:40 690688 ----a-w- C:\Windows\SysWow64\msvcrt.dll2013-11-05 11:55:39 634880 ----a-w- C:\Windows\System32\msvcrt.dll2013-11-05 11:55:30 708608 ----a-w- C:\Program Files (x86)\Common Files\System\wab32.dll2013-11-05 11:55:29 886784 ----a-w- C:\Program Files\Common Files\System\wab32.dll2013-11-05 11:53:59 2616320 ----a-w- C:\Windows\SysWow64\explorer.exe2013-11-05 11:52:57 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys2013-11-05 11:52:31 478720 ----a-w- C:\Windows\SysWow64\timedate.cpl2013-11-05 11:52:30 515584 ----a-w- C:\Windows\System32\timedate.cpl2013-11-05 11:46:23 -------- d-----w- C:\Windows\SysWow64\Wat2013-11-05 11:46:23 -------- d-----w- C:\Windows\System32\Wat2013-11-05 11:44:54 936960 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\ink\journal.dll2013-11-05 11:44:51 2164224 ----a-w- C:\Program Files\Windows Journal\Journal.exe2013-11-05 11:44:51 1732096 ----a-w- C:\Program Files\Windows Journal\NBDoc.DLL2013-11-05 11:44:51 1393664 ----a-w- C:\Program Files\Windows Journal\JNTFiltr.dll2013-11-05 11:44:50 1367552 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll2013-11-05 11:44:49 1402880 ----a-w- C:\Program Files\Windows Journal\JNWDRV.dll2013-11-05 11:44:11 3968856 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe2013-11-05 11:44:11 3913560 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe2013-11-05 11:44:10 6656 ----a-w- C:\Windows\SysWow64\apisetschema.dll2013-11-05 11:44:08 112640 ----a-w- C:\Windows\System32\smss.exe2013-11-05 11:44:07 5550424 ----a-w- C:\Windows\System32\ntoskrnl.exe2013-11-05 11:44:07 43520 ----a-w- C:\Windows\System32\csrsrv.dll2013-11-05 11:42:55 1292080 ----a-w- C:\Windows\SysWow64\ntdll.dll2013-11-05 11:42:53 1731920 ----a-w- C:\Windows\System32\ntdll.dll2013-11-05 11:42:19 559104 ----a-w- C:\Windows\System32\spoolsv.exe2013-11-05 11:42:18 67072 ----a-w- C:\Windows\splwow64.exe2013-11-05 11:19:34 785512 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys2013-11-05 11:19:34 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys2013-11-05 11:19:34 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui2013-11-05 11:19:29 9728 ----a-w- C:\Windows\System32\Wdfres.dll2013-11-05 11:15:07 307200 ----a-w- C:\Program Files (x86)\Internet Explorer\iediagcmd.exe2013-11-05 11:15:02 101888 ----a-w- C:\Windows\SysWow64\admparse.dll2013-11-05 11:14:59 114176 ----a-w- C:\Windows\System32\admparse.dll2013-11-05 11:09:23 70656 ----a-w- C:\Windows\SysWow64\fontsub.dll2013-11-05 11:09:23 46080 ----a-w- C:\Windows\System32\atmlib.dll2013-11-05 11:09:23 367616 ----a-w- C:\Windows\System32\atmfd.dll2013-11-05 11:09:23 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll2013-11-05 11:09:23 100864 ----a-w- C:\Windows\System32\fontsub.dll2013-11-05 11:09:22 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll2013-11-05 11:08:44 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys2013-11-05 11:08:44 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys2013-11-05 11:08:43 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll2013-11-05 11:08:43 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll2013-11-05 11:08:42 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll2013-11-05 11:08:38 744448 ----a-w- C:\Windows\System32\WUDFx.dll2013-11-05 11:08:38 229888 ----a-w- C:\Windows\System32\WUDFHost.exe2013-11-05 11:05:23 81408 ----a-w- C:\Windows\System32\imagehlp.dll2013-11-05 11:05:23 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys2013-11-05 11:05:23 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll2013-11-05 11:05:22 5120 ----a-w- C:\Windows\SysWow64\wmi.dll2013-11-05 11:05:22 5120 ----a-w- C:\Windows\System32\wmi.dll2013-11-05 06:24:39 -------- d-----w- C:\Users\Eagle\AppData\Roaming\Malwarebytes2013-11-05 06:24:23 -------- d-----w- C:\ProgramData\Malwarebytes2013-11-05 06:24:22 25928 ----a-w- C:\Windows\System32\drivers\mbam.sys2013-11-05 06:24:22 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware2013-11-05 06:24:09 -------- d-----w- C:\Users\Eagle\AppData\Local\Programs2013-11-05 04:15:44 -------- d-----w- C:\Users\Eagle\AppData\Roaming\SUPERAntiSpyware.com2013-11-05 04:15:24 -------- d-----w- C:\ProgramData\SUPERAntiSpyware.com2013-11-05 04:15:24 -------- d-----w- C:\Program Files\SUPERAntiSpyware2013-11-05 03:06:57 -------- d-----w- C:\ProgramData\HitmanPro2013-11-05 02:35:16 201131 ----a-w- C:\ProgramData\1383618853.bdinstall.bin2013-11-05 02:34:28 -------- d-----w- C:\Program Files\Bitdefender2013-11-05 02:34:13 -------- d-----w- C:\Users\Eagle\AppData\Roaming\QuickScan2013-11-05 01:52:56 64512 ----a-w- C:\Windows\SysWow64\devobj.dll2013-11-05 01:52:56 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll2013-11-05 01:52:56 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll2013-11-05 01:52:56 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe2013-11-05 01:52:56 207872 ----a-w- C:\Windows\System32\cfgmgr32.dll2013-11-05 01:52:56 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll2013-11-05 01:46:05 184320 ----a-w- C:\Windows\System32\cryptsvc.dll2013-11-05 01:46:05 1464320 ----a-w- C:\Windows\System32\crypt32.dll2013-11-05 01:46:05 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll2013-11-05 01:46:05 140288 ----a-w- C:\Windows\System32\cryptnet.dll2013-11-05 01:46:05 1159680 ----a-w- C:\Windows\SysWow64\crypt32.dll2013-11-05 01:46:05 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll2013-11-05 01:45:39 77312 ----a-w- C:\Windows\System32\packager.dll2013-11-05 01:45:39 67072 ----a-w- C:\Windows\SysWow64\packager.dll2013-11-05 01:44:33 976896 ----a-w- C:\Windows\System32\inetcomm.dll2013-11-05 01:44:33 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll2013-11-05 01:33:09 -------- d-----w- C:\Intel2013-11-05 01:30:34 -------- d-----w- C:\Windows\System32\MRT2013-11-05 01:17:00 -------- d-sh--w- C:\Windows\Installer2013-11-05 01:12:22 -------- d-----w- C:\Users\Eagle\AppData\Local\Google2013-11-05 01:12:15 -------- d-----w- C:\Users\Eagle\AppData\Local\Deployment2013-11-05 01:12:15 -------- d-----w- C:\Users\Eagle\AppData\Local\Apps2013-11-05 00:24:51 278800 ------w- C:\Windows\System32\MpSigStub.exe2013-11-05 00:16:38 826880 ----a-w- C:\Windows\SysWow64\rdpcore.dll2013-11-05 00:16:38 23552 ----a-w- C:\Windows\System32\drivers\tdtcp.sys2013-11-05 00:16:38 1031680 ----a-w- C:\Windows\System32\rdpcore.dll2013-11-05 00:13:19 2622464 ----a-w- C:\Windows\System32\wucltux.dll2013-11-05 00:13:13 99840 ----a-w- C:\Windows\System32\wudriver.dll2013-11-05 00:13:00 36864 ----a-w- C:\Windows\System32\wuapp.exe2013-11-05 00:13:00 186752 ----a-w- C:\Windows\System32\wuwebv.dll2013-11-04 21:01:46 -------- d-----w- C:\Windows\Panther.==================== Find6M ====================.2013-11-06 11:20:52 9728 ---ha-w- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll2013-11-06 07:09:34 175616 ----a-w- C:\Windows\System32\msclmd.dll2013-11-06 07:09:34 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll.============= FINISH: 8:36:14.35 =============== Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 I do not know how to put the picture here Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 From that data there doesn't seem to be anything wrong in terms of malware. You do seem to have 5 drives though, have you tried removing the others and trying again, or are you running a virtual system? To attach a picture the easiest way is to take a screenshot (prntscrn button) and then open up paint, paste pic into paint and save on your desktop. Then select more reply options at the bottom of your new post (before you start typing) and select Add an Attachment. Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 Yes I have tried with nothing plug to my computer, here is the pic: Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 http://www.bleepingcomputer.com/download/adwcleaner/ That is strange. download adwcleaner and run it delete all it finds. Does the redirect happen when you try to access any site or just your homepage? If its just your homepage, after running adwcleaner and restarting your computer go into your browser settings and and remove the current homepage and save/apply and OK the changes. Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 ok here is what I found, it mostly happens when I go to http://Kickass.to maybe the problem is whit that website, not sure. Yes I have used adwcleaner, I just have not re install all my programs yet... will run it now! The Scan was clean! # AdwCleaner v3.011 - Report created 06/11/2013 at 10:50:43 # Updated 03/11/2013 by Xplode # Operating System : Windows 7 Home Premium Service Pack 1 (64 bits) # Username : Eagle - EAGLE-ONE # Running from : C:\Users\Eagle\Downloads\adwcleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\Users\Eagle\AppData\Local\thinstall Folder Deleted : C:\Users\Eagle\AppData\Roaming\thinstall ***** [ Shortcuts ] ***** ***** [ Registry ] ***** ***** [ Browsers ] ***** -\\ Internet Explorer v10.0.9200.16720 -\\ Google Chrome v30.0.1599.101 [ File : C:\Users\Eagle\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [872 octets] - [06/11/2013 10:49:04] AdwCleaner[s0].txt - [802 octets] - [06/11/2013 10:50:43] ########## EOF - C:\AdwCleaner\AdwCleaner[s0].txt - [861 octets] ########## Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 Is it still happening? Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 I just tried the link and it did not happen with Chrome, it's true that my preference file was deleted, but I'll bet if I close Chrome and try again it will come back, as it did so before. I will try that now and will come back to you. Yup it comes back after I close Chrome and open it, and Malwarebytes anti-malware informs me that it successfully blocked a malicious website from opening in Chrome, but the redirecting page still opens in a new window. It does not happen in IE 10 Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 does it happen in IE? Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 It does not happen in IE 10 Share this post Link to post Share on other sites
GuiltySpark Posted November 6, 2013 Then you may ave to uninstall chrome. restart the computer. open up your local drive in disk management navigate to programme files and remove any folders to do with Google chrome and delete them. rerun adwcleaner delete all it finds to remove any chrome profiles that may still linger. restart your computer and if you really want chrome then you can do a fresh download of it , just make sure it is from a legit source as it appears that chrome is causing it for some reason. Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 Ok I'll do as you suggests and uninstall Chrome and run adwcleaner after, will let you know ASAP thanks GuiltySpark much appreciated! Share this post Link to post Share on other sites
SoFedUp Posted November 6, 2013 <p>OK, I uninstalled Chrome, ran adwcleaner removed file, restarted and reinstalled from Chrome website, opened to Kickass.to and the redirecting page pop up, uninstalled Chrome, ran adwcleaner restarted it, tried with IE = nothing, tried with a portable Chrome ver. from Lupo Pensuite open to Kickass.to and the redirecting page pop up again???</p> <p>I do notice that Malwarebytes Anti-Malware blocks an outgoing link in IE and CHROME each time the redirecting page popups!</p> <p> </p> <p><span style="font-size: 18px;">Like I said when I first posted my problem, I wiped and formatted my c: Drive using Wondershare Liveboot and proceeded with a clean install of Windows7 OEM and the problem remained, the redirecting pages keep popping up!!</span></p> <p> </p> <p><span style="font-size: 18px;">SoFedUp</span></p> Share this post Link to post Share on other sites
GuiltySpark Posted November 7, 2013 You should check out this link http://www.mywot.com/en/scorecard/www.wondershare.com it may be the cause. Share this post Link to post Share on other sites
SoFedUp Posted November 7, 2013 Wondershare was not installed, it was run from a usb stick and I never used it on the computer I am having problem with now. The one I used it on was my laptop and it won't run anymore(black screen on boot) so you see why Im SoFedUp now! Share this post Link to post Share on other sites
GuiltySpark Posted November 7, 2013 Like I said when I first posted my problem, I wiped and formatted my c: Drive using Wondershare Liveboot and proceeded with a clean install of Windows7 OEM and the problem remained, the redirecting pages keep popping up!! Wondershare was not installed, it was run from a usb stick and I never used it on the computer I am having problem with now. The one I used it on was my laptop and it won't run anymore(black screen on boot) so you see why Im SoFedUp now These are two contradictory statements! Share this post Link to post Share on other sites