Author Topic: [Resolved] Chrome/IE slow / unusable, constant freezing serious about fixing  (Read 4340 times)

0 Members and 1 Guest are viewing this topic.

Offline callpaul

  • Bronze Member
  • Posts: 42
Ok, I've uninstalled both Chrome and FF.  I also uninstalled both Flash and Java.  Reinstalled the two latter, but not Chrome nor FF.

It is still unstable.  For example, it takes about a full minute to open Excel and likely two minutes to open Outlook.

Switching between tasks such as Excel and IE, still often result in one of them freezing and becoming unresponsive for about a minute or so.

This is irrespective of having gmail open.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22655
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Did you ever get the Slipstreamed XP SP3 CD made?

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline callpaul

  • Bronze Member
  • Posts: 42
No.  I have the folders all set up on my other computer but cannot get the cd burner to work.

My other computer, the NIC card just went out, so I can't do anything on that until I replace that.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22655
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Do you have a thumbdrive you can move the files and folders over? I really think that is our next step, either a System File Check or a repair install.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline callpaul

  • Bronze Member
  • Posts: 42
Yes, I do.  Unfortunately, one computer is at home, the other at work, but I'll do this next somehow.

Would it be your opinion that this is no longer a spyware/virus issue?

Offline callpaul

  • Bronze Member
  • Posts: 42
I don't know if this helps or not, but I went to shut everything down (IE and Outlook) when it did its typical freezing, so I did a print screen (see attached).

Interestingly, I had NOT pressed the Windows START button and could NOT see the menu from it as it shows in the print screen.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22655
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Try running combofix again. I have included the instructions again below, just in case. I don't think this is not only malware anymore. Running SFC or a repair install may give us the toe hold we need to fix it.


* Anyone other than the originator of this thread, you would be best advised to not run combofix without guidance from someone trained in its use. It is a very powerful tool that can cause damage to your computer if used wrong.

Run comboFix.exe. Please visit this webpage for download links, and instructions for running the tool:

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

* Ensure you have disabled all anti virus and anti malware programs so they do not interfere with the running of ComboFix. Also make sure you close all your browsers just before the instructions tell you to start the scanner.

Please include the C:\ComboFix.txt in your next reply for further review.

Note:
Do not mouseclick combofix's window while it's running. That may cause it to stall

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline callpaul

  • Bronze Member
  • Posts: 42
ComboFix 11-10-06.03 - user 10/06/2011  16:15:29.2.1 - x86
Microsoft Windows XP Professional  5.1.2600.3.1252.1.1033.18.511.237 [GMT -7:00]
Running from: c:\documents and settings\user\My Documents\Downloads\ComboFix.exe
AV: Microsoft Security Essentials *Disabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\docume~1\user\LOCALS~1\Temp\DEL21.tmp
c:\docume~1\user\LOCALS~1\Temp\DELC.tmp
c:\documents and settings\user\Local Settings\Temp\DEL21.tmp
c:\documents and settings\user\Local Settings\Temp\DELC.tmp
.
.
(((((((((((((((((((((((((   Files Created from 2011-09-06 to 2011-10-06  )))))))))))))))))))))))))))))))
.
.
2011-10-06 19:58 . 2011-10-06 19:58   --------   d-----w-   c:\program files\Common Files\Java
2011-10-06 19:58 . 2011-10-06 19:57   73728   ----a-w-   c:\windows\system32\javacpl.cpl
2011-10-06 19:57 . 2011-10-06 19:57   --------   d-----w-   c:\program files\Java
2011-10-06 19:57 . 2011-10-06 19:57   414368   ----a-w-   c:\windows\system32\FlashPlayerCPLApp.cpl
2011-10-06 19:39 . 2011-10-06 19:39   --------   d-----w-   c:\documents and settings\All Users\Application Data\SUPERSetup
2011-10-06 19:18 . 2011-10-06 19:18   28752   ----a-w-   c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D400A6FB-A4EB-4557-8C57-77DFB2EC12A4}\MpKslef5b0ab8.sys
2011-10-06 19:18 . 2011-10-06 19:18   56200   ----a-w-   c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D400A6FB-A4EB-4557-8C57-77DFB2EC12A4}\offreg.dll
2011-10-06 19:09 . 2011-10-06 19:09   --------   d-----w-   c:\documents and settings\NetworkService\Local Settings\Application Data\Sun
2011-10-06 18:56 . 2011-09-12 23:14   7269712   ----a-w-   c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D400A6FB-A4EB-4557-8C57-77DFB2EC12A4}\mpengine.dll
2011-10-03 19:33 . 2011-10-03 19:33   --------   d-----w-   c:\documents and settings\user\Application Data\SUPERAntiSpyware.com
2011-10-03 19:32 . 2011-10-06 19:41   --------   d-----w-   c:\program files\SUPERAntiSpyware
2011-10-03 19:32 . 2011-10-03 19:32   --------   d-----w-   c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2011-09-30 13:29 . 2011-09-30 13:29   --------   d-----w-   c:\program files\WiseFixer
2011-09-26 13:42 . 2011-09-26 13:42   --------   d-----w-   c:\windows\Sun
2011-09-23 22:01 . 2011-09-23 22:01   --------   d-----w-   c:\windows\system32\wbem\mof\good
2011-09-23 22:01 . 2011-09-23 22:01   --------   d-----w-   c:\windows\system32\wbem\mof\bad
2011-09-21 23:42 . 2011-09-21 23:42   --------   d-----w-   c:\documents and settings\user\Local Settings\Application Data\Sun
2011-09-19 17:31 . 2011-09-19 17:31   388096   ----a-r-   c:\documents and settings\user\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-09-19 17:31 . 2011-09-19 17:31   --------   d-----w-   c:\program files\Trend Micro
2011-09-18 13:35 . 2011-09-18 13:50   --------   d-----w-   c:\documents and settings\All Users\Application Data\SecTaskMan
2011-09-18 13:35 . 2011-09-18 13:35   --------   d-----w-   c:\program files\Security Task Manager
2011-09-16 22:52 . 2008-04-14 00:12   116224   -c--a-w-   c:\windows\system32\dllcache\xrxwiadr.dll
2011-09-16 22:52 . 2001-08-18 05:36   23040   -c--a-w-   c:\windows\system32\dllcache\xrxwbtmp.dll
2011-09-16 22:52 . 2008-04-14 00:12   18944   -c--a-w-   c:\windows\system32\dllcache\xrxscnui.dll
2011-09-16 22:52 . 2001-08-18 05:37   27648   -c--a-w-   c:\windows\system32\dllcache\xrxftplt.exe
2011-09-16 22:52 . 2001-08-18 05:37   4608   -c--a-w-   c:\windows\system32\dllcache\xrxflnch.exe
2011-09-16 22:52 . 2001-08-18 05:37   99865   -c--a-w-   c:\windows\system32\dllcache\xlog.exe
2011-09-16 22:52 . 2001-08-17 19:11   16970   -c--a-w-   c:\windows\system32\dllcache\xem336n5.sys
2011-09-16 22:52 . 2004-08-04 05:29   19455   -c--a-w-   c:\windows\system32\dllcache\wvchntxx.sys
2011-09-16 22:52 . 2008-04-13 18:46   19200   -c--a-w-   c:\windows\system32\dllcache\wstcodec.sys
2011-09-16 22:52 . 2004-08-04 05:29   12063   -c--a-w-   c:\windows\system32\dllcache\wsiintxx.sys
2011-09-16 22:50 . 2008-04-14 00:12   53760   -c--a-w-   c:\windows\system32\dllcache\vfwwdm32.dll
2011-09-16 22:49 . 2001-08-17 19:51   138528   -c--a-w-   c:\windows\system32\dllcache\tgiulnt5.sys
2011-09-16 22:48 . 2001-08-17 19:51   58368   -c--a-w-   c:\windows\system32\dllcache\smiminib.sys
2011-09-16 22:47 . 2008-04-13 18:40   43904   -c--a-w-   c:\windows\system32\dllcache\sbp2port.sys
2011-09-16 22:46 . 2001-08-17 20:28   112574   -c--a-w-   c:\windows\system32\dllcache\ptserlp.sys
2011-09-16 22:45 . 2001-08-17 19:12   27209   -c--a-w-   c:\windows\system32\dllcache\otc06x5.sys
2011-09-16 22:44 . 2001-08-18 05:36   7168   -c--a-w-   c:\windows\system32\dllcache\mxport.dll
2011-09-16 22:44 . 2001-08-17 20:49   19968   -c--a-w-   c:\windows\system32\dllcache\mxnic.sys
2011-09-16 22:44 . 2001-08-18 05:36   19968   -c--a-w-   c:\windows\system32\dllcache\mxicfg.dll
2011-09-16 22:44 . 2001-08-17 20:50   21888   -c--a-w-   c:\windows\system32\dllcache\mxcard.sys
2011-09-16 22:44 . 2001-08-17 19:50   103296   -c--a-w-   c:\windows\system32\dllcache\mtxvideo.sys
2011-09-16 22:44 . 2008-04-13 18:39   5504   -c--a-w-   c:\windows\system32\dllcache\mstee.sys
2011-09-16 22:44 . 2008-04-13 18:46   49024   -c--a-w-   c:\windows\system32\dllcache\mstape.sys
2011-09-16 22:44 . 2001-08-17 20:48   12416   -c--a-w-   c:\windows\system32\dllcache\msriffwv.sys
2011-09-16 22:44 . 2001-08-17 21:00   2944   -c--a-w-   c:\windows\system32\dllcache\msmpu401.sys
2011-09-16 22:44 . 2008-04-13 18:54   22016   -c--a-w-   c:\windows\system32\dllcache\msircomm.sys
2011-09-16 22:44 . 2001-08-17 21:02   35200   -c--a-w-   c:\windows\system32\dllcache\msgame.sys
2011-09-16 22:44 . 2001-08-17 20:48   6016   -c--a-w-   c:\windows\system32\dllcache\msfsio.sys
2011-09-16 22:44 . 2008-04-13 18:46   51200   -c--a-w-   c:\windows\system32\dllcache\msdv.sys
2011-09-16 22:43 . 2001-08-17 20:52   17280   -c--a-w-   c:\windows\system32\dllcache\mraid35x.sys
2011-09-16 22:43 . 2008-04-13 18:46   15232   -c--a-w-   c:\windows\system32\dllcache\mpe.sys
2011-09-16 22:43 . 2001-08-17 20:48   12160   -c--a-w-   c:\windows\system32\dllcache\mouhid.sys
2011-09-16 22:43 . 2001-08-17 20:57   16128   -c--a-w-   c:\windows\system32\dllcache\modemcsa.sys
2011-09-16 22:43 . 2001-08-17 20:52   6528   -c--a-w-   c:\windows\system32\dllcache\miniqic.sys
2011-09-16 22:41 . 2008-04-13 18:39   14592   -c--a-w-   c:\windows\system32\dllcache\kbdhid.sys
2011-09-16 22:41 . 2008-04-14 00:09   6144   -c--a-w-   c:\windows\system32\dllcache\kbd106.dll
2011-09-16 22:41 . 2001-08-17 21:55   6144   -c--a-w-   c:\windows\system32\dllcache\kbd101c.dll
2011-09-16 22:41 . 2001-08-17 21:55   5632   -c--a-w-   c:\windows\system32\dllcache\kbd103.dll
2011-09-16 22:41 . 2001-08-17 21:55   6144   -c--a-w-   c:\windows\system32\dllcache\kbd101b.dll
2011-09-16 22:41 . 2001-08-17 20:49   26624   -c--a-w-   c:\windows\system32\dllcache\irstusb.sys
2011-09-16 22:41 . 2001-08-17 20:51   18688   -c--a-w-   c:\windows\system32\dllcache\irsir.sys
2011-09-16 22:41 . 2001-08-17 20:49   23552   -c--a-w-   c:\windows\system32\dllcache\irmk7.sys
2011-09-16 22:41 . 2001-08-17 19:12   45632   -c--a-w-   c:\windows\system32\dllcache\ip5515.sys
2011-09-16 22:41 . 2001-08-18 05:36   90200   -c--a-w-   c:\windows\system32\dllcache\io8ports.dll
2011-09-16 22:41 . 2001-08-17 20:50   38784   -c--a-w-   c:\windows\system32\dllcache\io8.sys
2011-09-16 22:41 . 2001-08-17 20:52   16000   -c--a-w-   c:\windows\system32\dllcache\ini910u.sys
2011-09-16 22:41 . 2001-08-17 20:47   13056   -c--a-w-   c:\windows\system32\dllcache\inport.sys
2011-09-16 22:39 . 2001-08-17 20:28   907456   -c--a-w-   c:\windows\system32\dllcache\hcf_msft.sys
2011-09-16 22:38 . 2001-08-17 20:28   594238   -c--a-w-   c:\windows\system32\dllcache\es56hpi.sys
2011-09-16 22:37 . 2001-08-18 05:36   419357   -c--a-w-   c:\windows\system32\dllcache\dgconfig.dll
2011-09-16 22:36 . 2008-04-13 18:40   8192   -c--a-w-   c:\windows\system32\dllcache\changer.sys
2011-09-16 22:35 . 2001-08-18 05:36   41472   -c--a-w-   c:\windows\system32\dllcache\brmfusb.dll
2011-09-16 20:39 . 2001-08-17 20:47   6272   -c--a-w-   c:\windows\system32\dllcache\apmbatt.sys
2011-09-16 20:39 . 2004-08-04 05:31   36224   -c--a-w-   c:\windows\system32\dllcache\an983.sys
2011-09-16 20:39 . 2001-08-17 20:52   12032   -c--a-w-   c:\windows\system32\dllcache\amsint.sys
2011-09-16 20:39 . 2001-08-17 19:11   16969   -c--a-w-   c:\windows\system32\dllcache\amb8002.sys
2011-09-16 20:39 . 2001-08-17 20:51   5248   -c--a-w-   c:\windows\system32\dllcache\aliide.sys
2011-09-16 20:39 . 2001-08-17 20:49   26624   -c--a-w-   c:\windows\system32\dllcache\alifir.sys
2011-09-16 20:39 . 2001-08-17 19:11   27678   -c--a-w-   c:\windows\system32\dllcache\ali5261.sys
2011-09-16 20:39 . 2001-08-17 21:07   56960   -c--a-w-   c:\windows\system32\dllcache\aic78xx.sys
2011-09-16 20:39 . 2001-08-17 21:07   55168   -c--a-w-   c:\windows\system32\dllcache\aic78u2.sys
2011-09-16 20:39 . 2001-08-17 20:52   12800   -c--a-w-   c:\windows\system32\dllcache\aha154x.sys
2011-09-16 20:36 . 2008-04-13 18:46   48128   -c--a-w-   c:\windows\system32\dllcache\61883.sys
2011-09-16 20:36 . 2008-04-13 18:40   12288   -c--a-w-   c:\windows\system32\dllcache\4mmdat.sys
2011-09-16 20:36 . 2001-08-17 19:48   148352   -c--a-w-   c:\windows\system32\dllcache\3dfxvsm.sys
2011-09-16 20:36 . 2001-08-17 21:55   689216   -c--a-w-   c:\windows\system32\dllcache\3dfxvs.dll
2011-09-16 20:36 . 2001-08-17 20:28   762780   -c--a-w-   c:\windows\system32\dllcache\3cwmcru.sys
2011-09-16 20:36 . 2001-08-17 21:06   11264   -c--a-w-   c:\windows\system32\dllcache\1394vdbg.sys
2011-09-16 20:36 . 2001-08-17 21:56   66048   -c--a-w-   c:\windows\system32\dllcache\s3legacy.dll
2011-09-14 13:17 . 2011-09-14 13:20   --------   dc-h--w-   c:\windows\ie8
2011-09-14 00:15 . 2011-09-14 00:16   --------   d-----w-   C:\i386Backup
2011-09-14 00:10 . 2008-04-13 16:44   2560   ----a-w-   c:\documents and settings\All Users\Application Data\Microsoft\USMT\iconlib.dll
2011-09-13 23:01 . 2011-09-13 23:01   --------   d-----w-   c:\documents and settings\user\Application Data\Malwarebytes
2011-09-13 23:01 . 2011-09-13 23:01   --------   d-----w-   c:\documents and settings\All Users\Application Data\Malwarebytes
2011-09-13 23:01 . 2011-09-01 00:00   22216   ----a-w-   c:\windows\system32\drivers\mbam.sys
2011-09-13 23:01 . 2011-09-13 23:01   --------   d-----w-   c:\program files\Malwarebytes' Anti-Malware
2011-09-13 21:54 . 2011-09-13 21:54   --------   d-----w-   c:\documents and settings\Administrator\DoctorWeb
2011-09-13 19:02 . 2011-09-13 19:02   --------   d-sh--w-   c:\documents and settings\Administrator\PrivacIE
2011-09-11 13:05 . 2011-09-11 13:05   --------   d-----w-   c:\windows\{4626E3EA-85B3-464E-B296-F3F5488D8B08}
2011-09-11 12:54 . 2005-09-05 18:21   362944   ----a-w-   c:\windows\system32\drivers\WG11TND5.sys
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2011-10-06 19:57 . 2010-07-13 02:56   472808   ----a-w-   c:\windows\system32\deployJava1.dll
2011-09-12 23:14 . 2011-09-05 18:09   7269712   ----a-w-   c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2011-09-09 09:12 . 2004-08-04 08:56   599040   ----a-w-   c:\windows\system32\crypt32.dll
2011-07-15 13:29 . 2004-08-04 07:15   456320   ----a-w-   c:\windows\system32\drivers\mrxsmb.sys
2011-09-29 06:53 . 2011-10-06 22:46   134104   ----a-w-   c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36   94208   ----a-w-   c:\documents and settings\user\Application Data\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36   94208   ----a-w-   c:\documents and settings\user\Application Data\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36   94208   ----a-w-   c:\documents and settings\user\Application Data\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2010-10-06 23:36   94208   ----a-w-   c:\documents and settings\user\Application Data\Dropbox\bin\DropboxExt.14.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"EasyTether"="c:\program files\Mobile Stream\EasyTether\easytthr.exe" [2010-12-19 48456]
"SUPERAntiSpyware"="c:\program files\SUPERAntiSpyware\SUPERAntiSpyware.exe" [2011-09-14 4611456]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PmProxy"="c:\program files\Analog Devices\SoundMAX\PmProxy.exe" [2002-11-14 40960]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2003-12-10 4866048]
"nwiz"="nwiz.exe" [2003-12-10 323584]
"SynTPLpr"="c:\program files\Synaptics\SynTP\SynTPLpr.exe" [2002-12-04 126976]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2002-12-04 569344]
"InstaLAN"="c:\program files\Belkin\Router Setup and Monitor\BelkinRouterMonitor.exe" [2010-03-17 1141144]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2011-06-15 997920]
"SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2008-11-04 435096]
.
c:\documents and settings\user\Start Menu\Programs\Startup\
Dropbox.lnk - c:\documents and settings\user\Application Data\Dropbox\bin\Dropbox.exe [2011-5-25 24176560]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
NETGEAR WG111T Smart Wizard.lnk - c:\program files\NETGEAR\WG111T\wlan111t.exe [2011-9-11 884840]
.
[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2011-07-19 113024]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2011-05-04 17:54   551296   ----a-w-   c:\program files\SUPERAntiSpyware\SASWINLO.DLL
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc]
@="Service"
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PskSvcRetail]
@=""
.
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^NETGEAR WG111v2 Smart Wizard.lnk]
backup=c:\windows\pss\NETGEAR WG111v2 Smart Wizard.lnkCommon Startup
.
[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"AntiVirusOverride"=dword:00000001
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Documents and Settings\\user\\Local Settings\\Application Data\\Google\\Chrome\\Application\\chrome.exe"=
"c:\\Program Files\\SopCast\\adv\\SopAdver.exe"=
"c:\\Program Files\\SopCast\\SopCast.exe"=
"c:\\WINDOWS\\system32\\mmc.exe"=
"c:\\Documents and Settings\\user\\Application Data\\Dropbox\\bin\\Dropbox.exe"=
"c:\\Program Files\\Microsoft Office\\Office12\\OUTLOOK.EXE"=
.
R1 MpKslef5b0ab8;MpKslef5b0ab8;c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{D400A6FB-A4EB-4557-8C57-77DFB2EC12A4}\MpKslef5b0ab8.sys [10/6/2011 12:18 PM 28752]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [7/22/2011 9:27 AM 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [7/12/2011 2:55 PM 67664]
R2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCore.exe [8/11/2011 4:38 PM 116608]
R3 easytether;easytether;c:\windows\system32\drivers\easytthr.sys [3/6/2011 8:15 AM 17232]
R3 RTL8192su;%RTL8192su.DeviceDesc.DispName%;c:\windows\system32\drivers\RTL8192su.sys [1/7/2010 9:21 AM 594048]
S1 MpKsl07424fed;MpKsl07424fed;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKsl07424fed.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKsl07424fed.sys [?]
S1 MpKsl07be0089;MpKsl07be0089;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{7A4A7243-68F1-49E9-A310-BD83847B18AB}\MpKsl07be0089.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{7A4A7243-68F1-49E9-A310-BD83847B18AB}\MpKsl07be0089.sys [?]
S1 MpKsl0918f1fb;MpKsl0918f1fb;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKsl0918f1fb.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKsl0918f1fb.sys [?]
S1 MpKsl0ae76841;MpKsl0ae76841;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl0ae76841.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl0ae76841.sys [?]
S1 MpKsl0b752f65;MpKsl0b752f65;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{9FA50058-2B56-46F1-8912-B84C9012B98F}\MpKsl0b752f65.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{9FA50058-2B56-46F1-8912-B84C9012B98F}\MpKsl0b752f65.sys [?]
S1 MpKsl11586fce;MpKsl11586fce;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{1605DC06-2207-44B3-A513-41094B31BA9B}\MpKsl11586fce.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{1605DC06-2207-44B3-A513-41094B31BA9B}\MpKsl11586fce.sys [?]
S1 MpKsl1434a03d;MpKsl1434a03d;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{12660AF1-C6B0-4630-B25F-B373E43C31AE}\MpKsl1434a03d.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{12660AF1-C6B0-4630-B25F-B373E43C31AE}\MpKsl1434a03d.sys [?]
S1 MpKsl17c7da64;MpKsl17c7da64;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKsl17c7da64.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKsl17c7da64.sys [?]
S1 MpKsl18bd2855;MpKsl18bd2855;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl18bd2855.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl18bd2855.sys [?]
S1 MpKsl18f169a2;MpKsl18f169a2;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{EEF5D179-F41A-474D-A8AC-EB5898919A9A}\MpKsl18f169a2.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{EEF5D179-F41A-474D-A8AC-EB5898919A9A}\MpKsl18f169a2.sys [?]
S1 MpKsl1a4684b0;MpKsl1a4684b0;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl1a4684b0.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl1a4684b0.sys [?]
S1 MpKsl20a6d8e6;MpKsl20a6d8e6;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKsl20a6d8e6.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKsl20a6d8e6.sys [?]
S1 MpKsl20edc4ea;MpKsl20edc4ea;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{3201A029-460D-4714-BAD4-C72788EE85EF}\MpKsl20edc4ea.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{3201A029-460D-4714-BAD4-C72788EE85EF}\MpKsl20edc4ea.sys [?]
S1 MpKsl212534e2;MpKsl212534e2;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{50CF207D-C8B3-4864-97F4-42694EA63343}\MpKsl212534e2.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{50CF207D-C8B3-4864-97F4-42694EA63343}\MpKsl212534e2.sys [?]
S1 MpKsl2b99ae47;MpKsl2b99ae47;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{12660AF1-C6B0-4630-B25F-B373E43C31AE}\MpKsl2b99ae47.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{12660AF1-C6B0-4630-B25F-B373E43C31AE}\MpKsl2b99ae47.sys [?]
S1 MpKsl2c965da6;MpKsl2c965da6;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl2c965da6.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl2c965da6.sys [?]
S1 MpKsl2df10ed8;MpKsl2df10ed8;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{12660AF1-C6B0-4630-B25F-B373E43C31AE}\MpKsl2df10ed8.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{12660AF1-C6B0-4630-B25F-B373E43C31AE}\MpKsl2df10ed8.sys [?]
S1 MpKsl31883bb6;MpKsl31883bb6;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKsl31883bb6.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKsl31883bb6.sys [?]
S1 MpKsl3373b639;MpKsl3373b639;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKsl3373b639.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKsl3373b639.sys [?]
S1 MpKsl378c821b;MpKsl378c821b;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKsl378c821b.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKsl378c821b.sys [?]
S1 MpKsl380d3898;MpKsl380d3898;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKsl380d3898.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKsl380d3898.sys [?]
S1 MpKsl48a21633;MpKsl48a21633;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKsl48a21633.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKsl48a21633.sys [?]
S1 MpKsl4d01ecaa;MpKsl4d01ecaa;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl4d01ecaa.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl4d01ecaa.sys [?]
S1 MpKsl712e0140;MpKsl712e0140;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKsl712e0140.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKsl712e0140.sys [?]
S1 MpKsl7556ed55;MpKsl7556ed55;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl7556ed55.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsl7556ed55.sys [?]
S1 MpKsl7c5ad8b3;MpKsl7c5ad8b3;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{50CF207D-C8B3-4864-97F4-42694EA63343}\MpKsl7c5ad8b3.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{50CF207D-C8B3-4864-97F4-42694EA63343}\MpKsl7c5ad8b3.sys [?]
S1 MpKsl80f92f60;MpKsl80f92f60;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{63BCA7A3-4A38-44D2-9BE3-EE024A080CDD}\MpKsl80f92f60.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{63BCA7A3-4A38-44D2-9BE3-EE024A080CDD}\MpKsl80f92f60.sys [?]
S1 MpKsl93161e06;MpKsl93161e06;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKsl93161e06.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKsl93161e06.sys [?]
S1 MpKsl95c9e2d0;MpKsl95c9e2d0;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKsl95c9e2d0.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKsl95c9e2d0.sys [?]
S1 MpKsl9f3b4aff;MpKsl9f3b4aff;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{AC846812-65B0-42E0-8781-8581CE1223CF}\MpKsl9f3b4aff.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{AC846812-65B0-42E0-8781-8581CE1223CF}\MpKsl9f3b4aff.sys [?]
S1 MpKslac0f9f29;MpKslac0f9f29;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKslac0f9f29.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKslac0f9f29.sys [?]
S1 MpKslb2228702;MpKslb2228702;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKslb2228702.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKslb2228702.sys [?]
S1 MpKslb7ce2fbd;MpKslb7ce2fbd;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKslb7ce2fbd.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKslb7ce2fbd.sys [?]
S1 MpKslbab9522b;MpKslbab9522b;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKslbab9522b.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{55363AA9-E186-46D6-9F59-B2F7C103015E}\MpKslbab9522b.sys [?]
S1 MpKslcbe28518;MpKslcbe28518;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKslcbe28518.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKslcbe28518.sys [?]
S1 MpKslcda9085e;MpKslcda9085e;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{FB24980D-BDBC-4F3F-9D8E-0489114BC1E1}\MpKslcda9085e.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{FB24980D-BDBC-4F3F-9D8E-0489114BC1E1}\MpKslcda9085e.sys [?]
S1 MpKsld2c048a7;MpKsld2c048a7;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKsld2c048a7.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKsld2c048a7.sys [?]
S1 MpKsld7306a03;MpKsld7306a03;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsld7306a03.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKsld7306a03.sys [?]
S1 MpKslda662520;MpKslda662520;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{2884F297-5AF3-4DC4-AB1F-D9A59381BD82}\MpKslda662520.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{2884F297-5AF3-4DC4-AB1F-D9A59381BD82}\MpKslda662520.sys [?]
S1 MpKslddb35c89;MpKslddb35c89;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKslddb35c89.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{E187E181-3A58-42A5-BE4A-1EB87F7492AB}\MpKslddb35c89.sys [?]
S1 MpKslf0446da6;MpKslf0446da6;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKslf0446da6.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{81E58ADD-F64A-4932-B07B-430363D96556}\MpKslf0446da6.sys [?]
S1 MpKslf16fb982;MpKslf16fb982;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKslf16fb982.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{C52EF0E5-9CE3-4650-ACD9-A3B7B5AAAEAE}\MpKslf16fb982.sys [?]
S1 MpKslf2f877ee;MpKslf2f877ee;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{3201A029-460D-4714-BAD4-C72788EE85EF}\MpKslf2f877ee.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{3201A029-460D-4714-BAD4-C72788EE85EF}\MpKslf2f877ee.sys [?]
S1 MpKslf983a532;MpKslf983a532;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKslf983a532.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{0B675A2A-577B-476D-AFA8-9410E3698AEA}\MpKslf983a532.sys [?]
S1 MpKslfecf397a;MpKslfecf397a;\??\c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{AC846812-65B0-42E0-8781-8581CE1223CF}\MpKslfecf397a.sys --> c:\documents and settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Definition Updates\{AC846812-65B0-42E0-8781-8581CE1223CF}\MpKslfecf397a.sys [?]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [2/22/2011 10:21 AM 30312]
S3 DNINDIS5;DNINDIS5 NDIS Protocol Driver;c:\windows\system32\DNINDIS5.sys [8/26/2011 8:55 AM 17149]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;\??\c:\program files\Lavasoft\Ad-Aware\KernExplorer.sys --> c:\program files\Lavasoft\Ad-Aware\KernExplorer.sys [?]
S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [2/22/2011 10:21 AM 96488]
S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [2/22/2011 10:21 AM 12776]
S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [2/22/2011 10:21 AM 121576]
S3 TNET1130x;Wireless-G Notebook Adapter v.2.0;c:\windows\system32\DRIVERS\tnet1130x.sys --> c:\windows\system32\DRIVERS\tnet1130x.sys [?]
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - JAVAQUICKSTARTERSERVICE
*NewlyCreated* - MPKSLEF5B0AB8
.
Contents of the 'Scheduled Tasks' folder
.
2011-10-06 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-790525478-1078145449-1343024091-1003Core.job
- c:\documents and settings\user\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-10-06 22:39]
.
2011-10-06 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-790525478-1078145449-1343024091-1003UA.job
- c:\documents and settings\user\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2011-10-06 22:39]
.
2011-10-06 c:\windows\Tasks\MP Scheduled Scan.job
- c:\program files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-27 22:39]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://idp.sandicor.com/idp/Authn/UserPassword
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Customize Menu - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
IE: Fill Forms - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
IE: RoboForm Toolbar - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
IE: Save Forms - file://c:\program files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
Trusted Zone: clonewarsadventures.com
Trusted Zone: firstamres.com
Trusted Zone: freerealms.com
Trusted Zone: sandicor.com
Trusted Zone: sandicor.com\www
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 192.168.1.254
DPF: {6FD482A3-7B57-438B-B040-52CAA30147EE} - hxxp://tempo5.sandicor.com/5.0.08.4151/Control/MLSClientUtils.cab
DPF: {75A6AEA3-F26E-4608-AE9B-8DA78C87576E} - hxxps://kingsisle.hs.llnwd.net/e1/static/themes/wizard101A/activex/Wizard101GameLauncher.CAB
DPF: {83AB6E4D-CDD7-11D3-B5E7-00104B9AFF6E} - hxxp://tempo5.sandicor.com/5.1.01.9506/Control/IRCSharc.cab
DPF: {F375116A-793C-11D2-BFE1-444553540001} - hxxp://realist2.firstamres.com/mapviewer/mapviewer.cab
FF - ProfilePath - c:\documents and settings\user\Application Data\Mozilla\Firefox\Profiles\wlatkeuu.default\
FF - prefs.js: network.proxy.type - 0
.
- - - - ORPHANS REMOVED - - - -
.
AddRemove-{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA} - c:\program files\SUPERAntiSpyware\Uninstall.exe
AddRemove-UnityWebPlayer - c:\documents and settings\user\Local Settings\Application Data\Unity\WebPlayer\Uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2011-10-06 16:24
Windows 5.1.2600 Service Pack 3 NTFS
.
scanning hidden processes ... 
.
scanning hidden autostart entries ...
.
scanning hidden files ... 
.
scan completed successfully
hidden files: 0
.
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'winlogon.exe'(1040)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL
c:\windows\system32\WININET.dll
.
Completion time: 2011-10-06  16:27:51
ComboFix-quarantined-files.txt  2011-10-06 23:27
ComboFix2.txt  2011-09-21 06:16
.
Pre-Run: 18,935,877,632 bytes free
Post-Run: 19,016,896,512 bytes free
.
- - End Of File - - 4BFE0B1FE947F62CE49C986DE27A6C01

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22655
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
There is one thing we can do using the computer with the CD drive that does not work if your thumbdrive is at least 1GB in size.

Please  go here and there are instructions on how to create a thumbdrive with the Avira Rescue System, how to update it, how to run the scan with it, and how to save the log.

You need these instructions, because this scan is actually done after having booted to the thumbdrive which runs a Distro of Linux, so it is a little different from windows.

If you can't save the log, just let me know what it finds, and how the computer runs after word in windows.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline callpaul

  • Bronze Member
  • Posts: 42
I'm back, sorry for the delay.  I tried using the flash drive install, but I could not get my laptop to recognize the USB as a boot-up through the BIOS settings.

I now have my other computer's NIC working, so I've completed the slip-stream instructions.  Next step is to do the install, or do you want me to do something else?

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22655
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Now that you have a CD, stick it into the problem computer and then go to the run command and type in sfc /scannow then hit enter and let the computer check all the system files. Once it is done, reboot the computer and see if anything has changed.

Let me know how it goes.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline callpaul

  • Bronze Member
  • Posts: 42
Well, it installed 6 updates (thank you), but it's still acting buggy.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22655
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Buggy how? Did anything change at all?

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!

Offline callpaul

  • Bronze Member
  • Posts: 42
It is definitely improved; I can actually work on it to a good degree now.

I have a minimum of windows open currently (IE, Outlook and Excel) and it's working all right, but IE will still become unresponsive for about 30 seconds at a time and then come back to life.  I'm trying to determine if it's just one particular site I use for work or if it's more than that.  I'm answering this in IE and so far, no problems.

I also had Chrome open (gmail again) and that really caused it to slow down.  Closing Chrome has seemed to stabilize things.

Just getting it to THIS point is grounds for a huge THANK YOU from me.

Offline Hoov

  • Malware Removal Mentors
  • Global Moderator
  • Diamond Member
  • Posts: 22655
  • Unwilling part owner of Gov't. Motors and Chrysler
    • Hoov's Personal Site
Try resetting IE using the instructions below.

1. Close any Internet Explorer or Windows Explorer windows that are currently open.
   2. Open Internet Explorer by clicking the Start button , and then clicking Internet Explorer.
   3. Click the Tools button, and then click Internet Options.
   4. Click the Advanced tab, and then click Reset.
   5. Select the Delete personal settings check box if you would like to remove browsing history, search providers, Accelerators, home pages, and InPrivate Filtering data.
   6. In the Reset Internet Explorer Settings dialog box, click Reset.
   7. When Internet Explorer finishes applying default settings, click Close, and then click OK.
   8. Close Internet Explorer.

      Your changes will take effect the next time you open Internet Explorer.

Also try running CCleaner again. 

Once you have done both of those, if Chrome still has a problem, export your bookmarks and anything else you need from chrome, and then uninstall it including your personal settings. Then try reinstalling it, and importing the bookmarks and whatever else personal information you exported.

Let me know if that changed anything.

Consumer Security

If I am helping you and you don't hear from me for 24Hrs, send me a PM Please!