Jump to content
Sign in to follow this  
JohnnyBoy76

SAS scans suspiciously fast recently

Recommended Posts

I recently noticed my SAS Scans suspiciously quicker then normal, and by alot too. On thursday morning, i do a normal scan after i boot up my computer, it takes about 8 minutes long, and by the time the evening rolls around, it takes like 2 minutes or less for a quick scan! I look at it carefully, and it jumps from 0 registry items to 20,000 in less then 10 seconds. I am worried that something has gotten in, and i can't get rid of it. I scanned with SMB, and i found some small adware thing, and since they updated their interface, i can't do full scans anymore.

 

Is there anything to worry about? Scans for me don't take to quickly, is something trying not to be seen?

Share this post


Link to post
Share on other sites

I recently noticed my SAS Scans suspiciously quicker then normal, and by alot too. On thursday morning, i do a normal scan after i boot up my computer, it takes about 8 minutes long, and by the time the evening rolls around, it takes like 2 minutes or less for a quick scan! I look at it carefully, and it jumps from 0 registry items to 20,000 in less then 10 seconds. I am worried that something has gotten in, and i can't get rid of it. I scanned with SMB, and i found some small adware thing, and since they updated their interface, i can't do full scans anymore.

 

Is there anything to worry about? Scans for me don't take to quickly, is something trying not to be seen?

what do you call a normal scan?

 

you scanned with SMB?? what is that?

Share this post


Link to post
Share on other sites

Hi JohnnyBoy76,

 

Download DDS by selecting the Bleeping Comp link (not the adverts) run it.

 

After its finished it will provide you with 2 txt logs, post both here and we'll see what's running in the background causing any issues.

Share this post


Link to post
Share on other sites

There is alot, and btw, thank your for helping me! :)

 

Log 1 - "Attach"

 

.
==== Installed Programs ======================
.
 Sansa Media Converter
 Update for Microsoft Office 2007 (KB2508958)
Ace of Spades
Adobe Acrobat X Pro - English, Français, Deutsch
Adobe AIR
Adobe Anchor Service CS3
Adobe Asset Services CS3
Adobe Bridge CS3
Adobe Bridge Start Meeting
Adobe Camera Raw 4.0
Adobe CMaps
Adobe Color - Photoshop Specific
Adobe Color Common Settings
Adobe Color EU Extra Settings
Adobe Color JA Extra Settings
Adobe Color NA Recommended Settings
Adobe Creative Suite 6 Design Standard
Adobe Default Language CS3
Adobe Device Central CS3
Adobe Download Assistant
Adobe Dreamweaver CS3
Adobe ExtendScript Toolkit 2
Adobe Extension Manager CS3
Adobe Flash Player 14 ActiveX
Adobe Flash Player 14 Plugin
Adobe Fonts All
Adobe Help Manager
Adobe Help Viewer CS3
Adobe Linguistics CS3
Adobe Media Player
Adobe PDF Library Files
Adobe Photoshop CS3
Adobe Reader X (10.1.8)
Adobe Setup
Adobe Shockwave Player 12.1
Adobe Stock Photos CS3
Adobe Type Support
Adobe Update Manager CS3
Adobe Version Cue CS3 Client
Adobe WinSoft Linguistics Plugin
Adobe XMP Panels CS3
Adobe® Content Viewer
Age of Empires III
Age of Empires III - The Asian Dynasties
Aiptek Pen Cam Manager
Akamai NetSession Interface
Alchemy Deluxe 1.6
Any Video Converter 5 5.0.3
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Audacity 2.0.3
avast! Pro Antivirus
Battlefield Heroes
Bejeweled 2 Deluxe
Bing Desktop
Blockland
Bonjour
Bonjour Print Services
Castle Crashers
Cave Story Deluxe
CCleaner
Cry of Fear
D3DX10
DisplayFusion 6.0
Dropbox
f.lux
Fallout
Fallout 2
Fallout Tactics
Far Cry® 3 Blood Dragon
GamersFirst LIVE!
Garry's Mod
GOG.com Downloader version 3.6.0
Google Chrome
Google Desktop
Google Drive
Google Earth Plug-in
Google SketchUp 8
Google Talk (remove only)
Google Talk Plugin
Google Toolbar for Internet Explorer
Google Update Helper
Google Updater
Hi-Rez Studios Authenticate and Update Service
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP Deskjet 2510 series Basic Device Software
HP Deskjet 2510 series Help
HP Deskjet 2510 series Setup Guide
HP Photo Creations
HP Update
iCloud
InstallIQ Updater
Intel® Matrix Storage Manager
Intel® PRO Network Connections Drivers
Intel® Viiv Software
ISO Recorder
iTunes
Java 7 Update 60
Java Auto Updater
Java 6 Update 45
JavaFX 2.1.1
LDraw All-In-One-Installer 2013-02
Left 4 Dead 2
LightScribe System Software
Magrunner -  Dark Pulse
Malwarebytes Anti-Malware version 2.0.2.1012
MediaMonkey 4.0
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 4.5.1
Microsoft Age of Empires Gold
Microsoft Age of Empires II
Microsoft Age of Empires II: The Conquerors Expansion
Microsoft Application Error Reporting
Microsoft Default Manager
Microsoft Office 2007 Service Pack 3 (SP3)
Microsoft Office Excel MUI (English) 2007
Microsoft Office File Validation Add-In
Microsoft Office Home and Student 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft Silverlight
Microsoft SQL Server 2005 Compact Edition [ENU]
Microsoft UI Engine
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
Microsoft Visual C++ 2005 Redistributable
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
Microsoft_VC80_CRT_x86
Microsoft_VC80_MFC_x86
Microsoft_VC80_MFCLOC_x86
Microsoft_VC90_ATL_x86
Microsoft_VC90_CRT_x86
Microsoft_VC90_MFC_x86
MorphVOX Junior
Mozilla Firefox 30.0 (x86 en-US)
Mozilla Maintenance Service
MSN Toolbar
MSN Toolbar Platform
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 4.0 SP2 (KB973688)
NVIDIA 3D Vision Controller Driver
NVIDIA 3D Vision Controller Driver 307.83
NVIDIA Control Panel 307.83
NVIDIA Graphics Driver 307.83
NVIDIA Install Application
NVIDIA PhysX
NVIDIA Update 1.10.8
NVIDIA Update Components
ORION: Dino Horde
Paint.NET v3.5.10
Pando Media Booster
PAYDAY 2
PDF Settings
PDF Settings CS6
Peggle Deluxe
PopCap Browser Plugin
PunkBuster Services
QuickTime
Retro/Grade
runtime
Sansa Updater
Secunia PSI (2.0.0.3003)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629)
Security Update for Microsoft .NET Framework 3.5 SP1 (KB2861697)
Security Update for Microsoft .NET Framework 4.5.1 (KB2898869)
Security Update for Microsoft .NET Framework 4.5.1 (KB2901126)
Security Update for Microsoft .NET Framework 4.5.1 (KB2931368)
Security Update for Microsoft Office 2007 suites (KB2596744) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2597973) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760411) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760415) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2827326) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2878233) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2880513) 32-Bit Edition
Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition
Security Update for Microsoft Office Excel 2007 (KB2827324) 32-Bit Edition
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596764) 32-Bit Edition
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition
Security Update for Microsoft Office Word 2007 (KB2880515) 32-Bit Edition
Segoe UI
Skype Click to Call
Skype™ 6.16
Smite
Sniper Elite V2
Softthinks Recovery Center
Soundboard
SpeedBit Video Downloader
SPORE™
Steam
SUPERAntiSpyware
SureThing CD Labeler 4 SE
SureThing CD Labeler Deluxe Trial
SureThing Disc Labeler Deluxe Trial
swMSM
Team Fortress 2
TeamSpeak 3 Client
TeamViewer 7
The Wolf Among Us
Torchlight II
TotalVectorize
Unity Web Player (All users)
Update for 2007 Microsoft Office System (KB967642)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
Update for Microsoft Office 2007 Help for Common Features (KB963673)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition
Update for Microsoft Office Excel 2007 Help (KB963678)
Update for Microsoft Office OneNote 2007 Help (KB963670)
Update for Microsoft Office Powerpoint 2007 Help (KB963669)
Update for Microsoft Office Script Editor Help (KB963671)
Update for Microsoft Office Word 2007 Help (KB963665)
Uplay
VLC media player 2.0.6
Windows Live Communications Platform
Windows Live Essentials
Windows Live ID Sign-in Assistant
Windows Live Installer
Windows Live Messenger
Windows Live Movie Maker
Windows Live Photo Common
Windows Live Photo Gallery
Windows Live PIMT Platform
Windows Live SOXE
Windows Live SOXE Definitions
Windows Live UX Platform
Windows Live UX Platform Language Pack
WinRAR archiver
Xvid 1.2.1 final uninstall
.
==== End Of File ===========================
 

Share this post


Link to post
Share on other sites

Log 2 - "DDS"

 

DDS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 9.0.8112.16555  BrowserJavaVersion: 10.60.2
Run by Joshua at 12:14:14 on 2014-07-04
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\nvvsvc.exe
C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
C:\Windows\system32\AUDIODG.EXE
C:\Windows\system32\SLsvc.exe
C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
C:\Windows\system32\nvvsvc.exe
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Intel\IntelDH\CCU\AlertService.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Microsoft\BingDesktop\BingDesktopUpdater.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\DisplayFusion\DisplayFusionService.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Adobe\Acrobat 10.0\Acrobat\acrotray.exe
C:\WINDOWS\sttray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe
C:\Users\Joshua\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
C:\Users\Joshua\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\Hi-Rez Studios\HiPatchService.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Windows\system32\PnkBstrA.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
C:\Program Files\Secunia\PSI\PSIA.exe
C:\Users\Joshua\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files\TeamViewer\Version7\TeamViewer_Service.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe
C:\Windows\System32\WUDFHost.exe
C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\DisplayFusion\DisplayFusion.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\Joshua\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Program Files\Secunia\PSI\sua.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\DisplayFusion\DisplayFusionHookAppWIN6032.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_14_0_0_125.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_14_0_0_125.exe
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conime.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
.
============== Pseudo HJT Report ===============
.
uSearch Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
BHO: <No Name>: {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} -
BHO: {3017FB3E-9A77-4396-88C5-0EC9548FB42F} - <orphaned>
BHO: {389943B0-C3A2-4E69-82CB-8596A84CB3DC} - <orphaned>
BHO: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -
BHO: avast! Online Security: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - c:\program files\avast software\avast\aswWebRepIE.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} -
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} -
BHO: Adobe PDF Conversion Toolbar Helper: {AE7CD045-E861-484f-8273-0445EE161910} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
BHO: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -
BHO: MSN Toolbar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -
BHO: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} -
BHO: SmartSelect Class: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
BHO: {FF7C3CF0-4B15-11D1-ABED-709549C10000} - <orphaned>
TB: Google Toolbar: {2318C2B1-4965-11D4-9B18-009027A5CD4F} -
TB: MSN Toolbar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
TB: Adobe PDF: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} -
uRun: [sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [sansaDispatch] c:\users\joshua\appdata\roaming\sandisk\sansa updater\SansaDispatch.exe
uRun: [Akamai NetSession Interface] "c:\users\joshua\appdata\local\akamai\netsession_win.exe"
uRun: [sUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
uRun: [AdobeBridge] <no file>
mRun: [Windows Defender] c:\program files\windows defender\MSASCui.exe -hide
mRun: [iAAnotif] "c:\program files\intel\intel matrix storage manager\Iaanotif.exe"
mRun: [NMSSupport] "c:\program files\common files\intel\inteldh\nms\support\IntelHCTAgent.exe" /startup
mRun: [NOD32_Registration] c:\program files\eset\Register NOD32.exe
mRun: [Microsoft Default Manager] "c:\program files\microsoft\search enhancement pack\default manager\DefMgr.exe" -resume
mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [AdobeAAMUpdater-1.0] "c:\program files\common files\adobe\oobe\pdapp\uwa\UpdaterStartupUtility.exe"
mRun: [switchBoard] c:\program files\common files\adobe\switchboard\SwitchBoard.exe
mRun: [AdobeCS6ServiceManager] "c:\program files\common files\adobe\cs6servicemanager\CS6ServiceManager.exe" -launchedbylogin
mRun: [Adobe Acrobat Speed Launcher] "c:\program files\adobe\acrobat 10.0\acrobat\Acrobat_sl.exe"
mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 10.0\acrobat\Acrotray.exe"
mRun: [sigmatelSysTrayApp] sttray.exe
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [sunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [bingDesktop] c:\program files\microsoft\bingdesktop\BingDesktop.exe /fromkey
mRun: [AvastUI.exe] "c:\program files\avast software\avast\AvastUI.exe" /nogui
dRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil10k_ActiveX.exe -update activex
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: Crawler Search - tbr:iemenu
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: {22CC3EBD-C286-43aa-B8E6-06B115F74162} - c:\program files\hewlett-packard\smartprint\smartprintsetup.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} -
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: NameServer = 10.0.1.1
TCP: Interfaces\{82550D7B-EF0D-4D85-8A14-024B1AD6A7E8} : DHCPNameServer = 10.0.1.1
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\program files\common files\skype\Skype4COM.dll
Handler: tbr - {4D25FB7A-8902-4291-960E-9ADA051CFBBF} -
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
AppInit_DLLs= c:\progra~1\google\google~4\GOEC62~1.DLL
SEH: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - c:\program files\superantispyware\SASSEH.DLL
LSA: Security Packages =  kerberos msv1_0 schannel wdigest tspkg
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "c:\program files\google\chrome\application\35.0.1916.114\installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\joshua\appdata\roaming\mozilla\firefox\profiles\2999g2qw.default-1387043706372\
FF - prefs.js: browser.search.defaulturl - hxxp://www.bing.com/search
FF - prefs.js: browser.startup.homepage - hxxp://www.msn.com/?pc=AV01
FF - prefs.js: keyword.URL - hxxp://www.bing.com/search
FF - plugin: c:\program files\adobe\acrobat 10.0\acrobat\air\nppdf32.dll
FF - plugin: c:\program files\adobe\adobe extension manager cs6\npAdobeExManDetectX86.dll
FF - plugin: c:\program files\common files\adobe\oobe\pdapp\ccm\utilities\npAdobeAAMDetect32.dll
FF - plugin: c:\program files\common files\adobe\oobe\pdapp\ccm\utilities\npAdobeAAMDetect64.dll
FF - plugin: c:\program files\ubisoft\ubisoft game launcher\npuplaypc.dll
FF - plugin: c:\program files\ubisoft\ubisoft game launcher\npuplaypchub.dll
FF - plugin: c:\program files\unity\webplayer\loader\npUnity3D32.dll
FF - plugin: c:\program files\windows live\photo gallery\NPWLPG.dll
FF - plugin: c:\users\joshua\appdata\local\google\update\1.3.24.15\npGoogleUpdate3.dll
FF - plugin: c:\users\joshua\appdata\roaming\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\users\joshua\appdata\roaming\mozilla\plugins\npo1d.dll
FF - plugin: c:\windows\system32\adobe\director\np32dsw_1210150.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_3_300_268.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_14_0_0_125.dll
.
============= SERVICES / DRIVERS ===============
.
7 HiPatchService;Hi-Rez Studios Authenticate and Update Service  PAUSED
R? clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86
R? GoogleDesktopManager-051210-111108;Google Desktop Manager 5.9.1005.12335
R? MCLServiceATL;Intel® Application Tracker
R? SkypeUpdate;Skype Updater
R? SwitchBoard;Adobe SwitchBoard
R? WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0
R? XDva351;XDva351
S? !SASCORE;SAS Core Service
S? aswHwid;avast! HardwareID
S? aswKbd;aswKbd
S? aswMonFlt;aswMonFlt
S? aswRvrt;avast! Revert
S? aswSnx;aswSnx
S? aswSP;aswSP
S? aswVmm;avast! VM Monitor
S? avast! Antivirus;avast! Antivirus
S? BingDesktopUpdate;Bing Desktop Update service
S? DisplayFusionService;DisplayFusionService
S? DQLWinService;DQLWinService
S? FontCache;Windows Font Cache Service
S? IntelDH;IntelDH Driver
S? nmsgopro;GoProto Protocol Driver for NMS
S? nmsunidr;UniDriver for NMS
S? PSI;PSI
S? rt61x86;RT61 Wireless Driver for Windows Vista
S? SASDIFSV;SASDIFSV
S? SASKUTIL;SASKUTIL
S? SCREAMINGBDRIVER;Screaming Bee Audio
S? Secunia PSI Agent;Secunia PSI Agent
S? Secunia Update Agent;Secunia Update Agent
S? Skype C2C Service;Skype C2C Service
S? TeamViewer7;TeamViewer 7
S? UMVPFSrv;UMVPFSrv
.
=============== File Associations ===============
.
FileExt: .js: jsfile="c:\program files\adobe\adobe dreamweaver cs3\Dreamweaver.exe","%1"
ShellExec: dreamweaver.exe: Open="c:\program files\adobe\adobe dreamweaver cs3\dreamweaver.exe", "%1"
.
=============== Created Last 30 ================
.
2014-07-04 15:20:13    8140904    ----a-w-    c:\programdata\microsoft\windows defender\definition updates\{1496d921-92f9-4053-b04a-485c209e52da}\mpengine.dll
2014-06-28 01:31:59    --------    d-----w-    c:\users\joshua\appdata\local\Ubisoft Game Launcher
2014-06-22 16:44:04    --------    d-sh--w-    C:\found.003
2014-06-18 20:22:51    --------    d-----w-    c:\program files\LDraw
2014-06-18 20:21:11    --------    d-----w-    c:\windows\LDraw
2014-06-18 16:28:38    --------    d-----w-    c:\program files\GOG.com
2014-06-17 02:30:38    --------    d-----w-    c:\users\joshua\appdata\roaming\com.adobe.dmp.contentviewer
2014-06-08 23:42:37    --------    d-----w-    c:\program files\common files\Steam
2014-06-08 23:42:35    --------    d-----w-    c:\program files\Steam
2014-06-07 01:29:50    777488    ----a-w-    c:\windows\system32\drivers\aswsnx.sys
2014-06-07 01:29:50    67824    ----a-w-    c:\windows\system32\drivers\aswMonFlt.sys
2014-06-07 01:29:50    49944    ----a-w-    c:\windows\system32\drivers\aswRvrt.sys
2014-06-07 01:29:50    180632    ----a-w-    c:\windows\system32\drivers\aswVmm.sys
2014-06-07 01:29:49    26136    ----a-w-    c:\windows\system32\drivers\aswKbd.sys
2014-06-07 01:29:44    43152    ----a-w-    c:\windows\avastSS.scr
2014-06-07 01:25:27    --------    d-----w-    c:\programdata\AVAST Software
2014-06-06 22:52:11    --------    d-----w-    c:\program files\CCleaner
2014-06-06 22:35:48    536576    ----a-w-    c:\windows\system32\sqlite3.dll
2014-06-06 22:34:40    --------    d-----w-    C:\AdwCleaner
2014-06-06 21:28:30    110296    ----a-w-    c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-06-06 21:27:34    74456    ----a-w-    c:\windows\system32\drivers\mbamchameleon.sys
2014-06-06 21:27:33    51928    ----a-w-    c:\windows\system32\drivers\mwac.sys
2014-06-06 21:27:25    --------    d-----w-    c:\program files\Malwarebytes Anti-Malware
.
==================== Find3M  ====================
.
2014-06-23 22:22:08    71344    ----a-w-    c:\windows\system32\FlashPlayerCPLApp.cpl
2014-06-23 22:22:08    699056    ----a-w-    c:\windows\system32\FlashPlayerApp.exe
2014-06-07 01:29:45    776976    ----a-w-    c:\windows\system32\drivers\aswsnx.sys.1402104635796
2014-06-07 01:29:45    54832    ----a-w-    c:\windows\system32\drivers\aswrdr.sys.1402104635796
2014-06-07 01:29:45    24184    ----a-w-    c:\windows\system32\drivers\aswHwid.sys
2014-05-28 16:39:36    1810432    ----a-w-    c:\windows\system32\jscript9.dll
2014-05-28 16:32:59    1129472    ----a-w-    c:\windows\system32\wininet.dll
2014-05-28 16:32:25    1427968    ----a-w-    c:\windows\system32\inetcpl.cpl
2014-05-28 16:30:53    421376    ----a-w-    c:\windows\system32\vbscript.dll
2014-05-28 16:30:53    142848    ----a-w-    c:\windows\system32\ieUnatt.exe
2014-05-28 16:29:31    2382848    ----a-w-    c:\windows\system32\mshtml.tlb
2014-05-28 16:29:27    11776    ----a-w-    c:\windows\system32\mshta.exe
2014-05-12 12:25:54    23256    ----a-w-    c:\windows\system32\drivers\mbam.sys
2014-05-07 20:02:46    96680    ----a-w-    c:\windows\system32\WindowsAccessBridge.dll
2014-05-07 02:58:32    776976    ----a-w-    c:\windows\system32\drivers\aswsnx.sys.1400179966062
2014-05-07 02:58:30    54832    ----a-w-    c:\windows\system32\drivers\aswrdr.sys.1400179966062
2014-04-26 16:01:22    502784    ----a-w-    c:\windows\system32\usp10.dll
.
============= FINISH: 12:15:28.62 ===============
 

Share this post


Link to post
Share on other sites

I am also seeing this. My normal 5 minute scan with SAS quit early and only took 41 seconds today.

 

Ran Malwarebytes and the scan took the normal amount of time and found no problems. Decided to use the Chameleon feature in MBAM to stop any known malware and ran scan again. Same result.

 

It appears there is a problem with SAS.

Share this post


Link to post
Share on other sites

Hi johnnyboy76,

 

Sorry its taken so long have been busy my end.

 

There doesnt really look like any major issues with your lists, a couple of things stand out; all BHO's can be removed/stopped from starting (if you want).

Speedbit video downloader may cause some resource hogging issues.

Popcap browser plugin may also allow for some 'backdoors'.

 

As smirnoff also has a similar issue it may be worth filling out a customer service ticket to get help and a diagnostic report.

Are you using the pre release or the previous version and are all definitions up to date?

Share this post


Link to post
Share on other sites

We recently upgraded our scan engine for the SAS 6 release. As a result, your scans should be considerably faster. This upgrade affects previous versions of SAS as well. I doubt you're having a problem on your machine, just noticing the faster scan speeds.

Share this post


Link to post
Share on other sites

Really love the "if scanned within the last number of X days and no change to file then do not scan" feature.  Great addition.  I think what might confuse some users is that it is as I recall set to 30 days by default.

 

If you go into System Tools----->Adavanced Scan Settings the second box down "Only scan modified files" is checked and set to 30 days by default.   If a user is paranoid they can uncheck the box.  Scheduled scans should then be a lot slower.

 

 

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
Sign in to follow this  

×