I had run the scan for SUPERAntiSpyware and Malwarebytes AntiMalware yesterday and today I ran them again - however no infections came up, I also ran the HiJackThis scan but when it opened notepad it said it could not find the log? But here are the logs for SUPERAntiSpyware, Malwarebytes AntiMalware and DDS from yesterday:
SUPERAntiSpyware yesterday(excuse the dates I had previously changed the date on my laptop as I was told this may help with the virus):
SUPERAntiSpyware Scan Log
http://www.superantispyware.comGenerated 03/10/2009 at 03:24 AM
Application Version : 4.49.1000
Core Rules Database Version : 6584
Trace Rules Database Version: 4396
Scan type : Complete Scan
Total Scan Time : 02:04:04
Memory items scanned : 670
Memory threats detected : 0
Registry items scanned : 7454
Registry threats detected : 1
File items scanned : 115997
File threats detected : 117
Adware.Tracking Cookie
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\laurie@atdmt[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\
[email protected][1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\laurie@serving-sys[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\
[email protected][2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\laurie@doubleclick[1].txt
.doubleclick.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.adtech.de [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.media6degrees.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.ehg-newscientist.hitbox.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.ehg-newscientist.hitbox.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.hitbox.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.hitbox.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.atdmt.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
fuckyeahvoldemort.wordpress.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.media6degrees.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.www.burstnet.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.burstnet.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
www.burstnet.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.fastclick.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.fastclick.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.fastclick.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.fastclick.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.invitemedia.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.247realmedia.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.invitemedia.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.mediaplex.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.mediaplex.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.apmebf.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.collective-media.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.collective-media.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.collective-media.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.collective-media.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.collective-media.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.atdmt.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.pro-market.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.collective-media.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.media6degrees.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.invitemedia.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
ad.yieldmanager.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.media6degrees.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.media6degrees.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.media6degrees.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.invitemedia.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.invitemedia.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.invitemedia.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.invitemedia.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.collective-media.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
optimize.indieclick.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
cdn.eyewonder.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.eyewonder.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.eyewonder.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.revsci.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.revsci.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.serving-sys.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.serving-sys.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.revsci.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.revsci.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.revsci.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.revsci.net [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
ad.yieldmanager.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
ad.yieldmanager.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
ad.yieldmanager.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
ad.yieldmanager.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
ad.yieldmanager.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
.content.yieldmanager.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
statse.webtrendslive.com [ C:\Users\Laurie\AppData\Local\Google\Chrome\User Data\Default\Cookies ]
C:\Users\Laurie\AppData\Local\Temp\Low\Cookies\laurie@2o7[2].txt
C:\Users\Laurie\AppData\Local\Temp\Low\Cookies\laurie@advertising[2].txt
C:\Users\Laurie\AppData\Local\Temp\Low\Cookies\laurie@doubleclick[1].txt
C:\Users\Laurie\AppData\Local\Temp\Low\Cookies\
[email protected][1].txt
cdn.insights.gravity.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
cloud.video.unrulymedia.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
ec.atdmt.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
gw.callingbanners.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
ia.media-imdb.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
media.mtvnservices.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
media.oprah.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
media.stereofame.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
objects.tremormedia.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
s0.2mdn.net [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
secure-uk.imrworldwide.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
secure-us.imrworldwide.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
serving-sys.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
spe.atdmt.com [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
stat.easydate.biz [ C:\Users\Laurie\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\6C66EKRG ]
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@2o7[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\
[email protected][1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\
[email protected][2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@adbrite[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\
[email protected][1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@adtech[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@advertising[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@advertising[3].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@apmebf[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\
[email protected][1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@chitika[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@collective-media[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\
[email protected][2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\
[email protected][1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@doubleclick[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@doubleclick[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@fastclick[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@invitemedia[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@media6degrees[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@mediaplex[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@partypoker[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@revenue[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@revsci[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@serving-sys[1].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\
[email protected][2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@tribalfusion[2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\
[email protected][2].txt
C:\Users\Laurie\AppData\Roaming\Microsoft\Windows\Cookies\Low\laurie@zedo[1].txt
Malware.Trace
HKU\S-1-5-21-3758040321-2433826461-1242790299-1000\Software\qni8hj710fdl
Trojan.Agent/Gen-IEFake
C:\USERS\LAURIE\APPDATA\LOCAL\TEMP\RARSFX0\H\IEXPLORE.EXE
C:\USERS\LAURIE\APPDATA\LOCAL\TEMP\RARSFX0\PROCS\IEXPLORE.EXE
Trojan.Agent/Gen-IExplorer[Fake]
C:\USERS\LAURIE\APPDATA\LOCAL\TEMP\RARSFX0\NIRD\IEXPLORE.EXE
Trojan.Agent/Gen-PEC
C:\USERS\LAURIE\APPDATA\LOCAL\TEMP\RARSFX0\PROCS\EXPLORER.EXE
Malwarebytes AntiMalware log from yesterday:Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.orgDatabase version: 6039
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
10/03/2009 12:56:54
mbam-log-2009-03-10 (12-56-53).txt
Scan type: Full scan (C:\|D:\|)
Objects scanned: 257383
Time elapsed: 1 hour(s), 28 minute(s), 41 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 3
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 1
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce\kFfLcFo06300 (Trojan.FakeAlert) -> Value: kFfLcFo06300 -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer (PUM.Bad.Proxy) -> Value: ProxyServer -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\dmgpkmac (Trojan.FakeAlert.Gen) -> Value: dmgpkmac -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
c:\programdata\kfflcfo06300\kfflcfo06300.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
DDS logs from yesterday:"DDS".
DDS (Ver_11-03-05.01) - NTFSx86
Run by Laurie at 13:05:31.09 on 10/03/2009
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Starter 6.1.7600.0.1252.44.1033.18.1015.162 [GMT 0:00]
.
AV: avast! Antivirus *Enabled/Updated* {C37D8F93-0602-E43C-40AA-47DAD597F308}
SP: avast! Antivirus *Enabled/Updated* {781C6E77-2038-EBB2-7A1A-7CA8AE10B9B5}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_ee8b9ab8d1b9a68e\STacSV.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\Stardock\MyColors\VistaSrv.exe
C:\Program Files\Stardock\MyColors\WBVista.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_x86_neutral_ee8b9ab8d1b9a68e\aestsrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\SPLASH.SYS\config\DVMExportService.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Hewlett-Packard\Shared\HPDrvMntSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\HP\HPBTWD.exe
C:\Program Files\Hewlett-Packard\HP QuickSync\QuickSync.exe
C:\Program Files\Adobe\Reader 9.0\Reader\reader_sl.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuschd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Alwil Software\Avast5\AvastUI.exe
C:\Users\Laurie\AppData\Roaming\Google\Google Talk\googletalk.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Hewlett-Packard\HP QuickSync\jre\bin\javaw.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files\Hewlett-Packard\Shared\hpCaslNotification.exe
C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Windows\system32\sppsvc.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Users\Laurie\Downloads\dds.scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\SearchFilterHost.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_GB&c=94&bd=Pavilion&pf=cnnb
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_GB&c=94&bd=Pavilion&pf=cnnb
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_GB&c=94&bd=Pavilion&pf=cnnb
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_GB&c=94&bd=Pavilion&pf=cnnb
uInternet Settings,ProxyOverride = <local>
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AOL Toolbar BHO: {7c554162-8cb7-45a4-b8f4-8ea1c75885f9} - c:\program files\aol\aol toolbar 5.0\aoltb.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: AOL Toolbar: {de9c389f-3316-41a7-809b-aa305ed9d922} - c:\program files\aol\aol toolbar 5.0\aoltb.dll
uRun: [Google Update] "c:\users\laurie\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [googletalk] c:\users\laurie\appdata\roaming\google\google talk\googletalk.exe /autostart
mRun: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
mRun: [SysTrayApp] c:\program files\idt\wdm\sttray.exe
mRun: [HP BTW Detect Program] c:\program files\hp\HPBTWD.exe
mRun: [HP] c:\program files\hewlett-packard\hp quicksync\QuickSync.exe
mRun: [UpdatePRCShortCut] "c:\program files\hewlett-packard\recovery\muitransfer\muistartmenu.exe" "c:\program files\hewlett-packard\recovery" updatewithcreateonce "software\cyberlink\PowerRecover"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [<NO NAME>]
mRun: [WirelessAssistant] c:\program files\hewlett-packard\hp wireless assistant\HPWAMain.exe
mRun: [RevHDD] c:\windows\system\RevHDD.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [DivX Download Manager] "c:\program files\divx\divx plus web player\DDmService.exe" start
mRun: [avast5] "c:\program files\alwil software\avast5\avastUI.exe" /nogui
mRun: [Malwarebytes' Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\stardo~1.lnk - c:\program files\stardock\mycolors\SDDelayedLaunch.exe
uPolicies-system: WallpaperStyle = 2
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
dPolicies-system: WallpaperStyle = 2
IE: &AOL Toolbar Search - c:\programdata\aol\ietoolbar\resources\en-gb\local\search.html
IE: Send image to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - c:\program files\widcomm\bluetooth software\btsendto_ie.htm
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_14-windows-i586.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: igfxcui - igfxdev.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\laurie\appdata\roaming\mozilla\firefox\profiles\zgs32r34.default\
FF - component: c:\program files\mozilla firefox\extensions\{ab2ce124-6272-4b12-94a9-7303c7397bd1}\components\SkypeFfComponent.dll
FF - plugin: c:\users\laurie\appdata\local\google\update\1.2.183.39\npGoogleOneClick8.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Skype extension for Firefox: {AB2CE124-6272-4b12-94A9-7303C7397BD1} - c:\program files\mozilla firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
FF - Ext: Stylish: {46551EC9-40F0-4e47-8E18-8E5CF550CFB8} - %profile%\extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}
.
============= SERVICES / DRIVERS ===============
.
R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2010-1-3 293968]
R1 DVMIO;DVMIO;c:\splash.sys\config\dvmio.sys [2009-7-27 16984]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-13 48128]
R2 AESTFilters;Andrea ST Filters Service;c:\windows\system32\driverstore\filerepository\stwrt.inf_x86_neutral_ee8b9ab8d1b9a68e\AEstSrv.exe [2009-12-17 81920]
R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2010-1-3 17744]
R2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys [2010-1-3 51280]
R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast5\AvastSvc.exe [2010-1-3 40384]
R2 DvmMDES;DeviceVM Meta Data Export Service;c:\splash.sys\config\DVMExportService.exe [2009-7-9 323584]
R2 HPDrvMntSvc.exe;HP Quick Synchronization Service;c:\program files\hewlett-packard\shared\HPDrvMntSvc.exe [2010-10-14 92216]
R3 btwl2cap;Bluetooth L2CAP Service;c:\windows\system32\drivers\btwl2cap.sys [2009-12-17 29472]
R3 L1C;NDIS Miniport Driver for Atheros AR8131/AR8132 PCI-E Ethernet Controller (NDIS 6.20);c:\windows\system32\drivers\L1C62x86.sys [2009-4-28 50688]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
S3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\mbamswissarmy.sys [2009-3-10 38224]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\drivers\RtsUStor.sys [2009-12-17 167424]
S3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\drivers\VSTAZL3.SYS [2009-7-13 207360]
S3 SrvHsfV92;SrvHsfV92;c:\windows\system32\drivers\VSTDPV3.SYS [2009-7-13 980992]
S3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\drivers\VSTCNXT3.SYS [2009-7-13 661504]
S4 Erisorvr_wor;Erisorvr_wor;c:\windows\system32\DeviceEject.exe [2009-7-13 26112]
.
=============== Created Last 30 ================
.
2011-03-12 23:26:40 -------- d-----w- c:\progra~2\kFfLcFo06300
2011-03-11 15:48:06 5943120 begin_of_the_skype_highlighting 06 5943120 end_of_the_skype_highlighting ----a-w- c:\progra~2\microsoft\windows defender\definition updates\{dc1214b2-9eb1-423b-9627-1f8b1d9431ba}\mpengine.dll
2011-03-09 15:25:57 1074176 ----a-w- c:\windows\system32\DWrite.dll
2011-03-09 15:25:56 802304 ----a-w- c:\windows\system32\FntCache.dll
2011-03-09 15:25:55 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-03-09 15:25:50 642048 ----a-w- c:\windows\system32\CPFilters.dll
2011-03-09 15:25:49 534528 ----a-w- c:\windows\system32\EncDec.dll
2011-03-09 15:25:48 850432 ----a-w- c:\windows\system32\sbe.dll
2011-03-09 15:25:48 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2011-03-09 15:25:45 2690560 ----a-w- c:\windows\system32\mstscax.dll
2011-03-09 15:25:44 1034240 ----a-w- c:\windows\system32\mstsc.exe
2011-02-23 03:01:01 276992 ----a-w- c:\windows\system32\wcncsvc.dll
2011-02-22 18:07:03 442880 ----a-w- c:\windows\system32\XpsPrint.dll
2011-02-22 18:07:02 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-02-15 13:19:57 1289536 ----a-w- c:\windows\system32\ntdll.dll
2011-01-27 19:25:23 -------- d-----w- c:\program files\Audacity 1.3 Beta (Unicode)
2011-01-12 19:22:38 1170944 ----a-w- c:\windows\system32\d3d10warp.dll
2011-01-12 19:22:34 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-01-12 19:22:33 218624 ----a-w- c:\windows\system32\d3d10_1core.dll
2011-01-12 19:22:33 107520 ----a-w- c:\windows\system32\cdd.dll
2011-01-12 19:22:32 1495040 ----a-w- c:\windows\system32\ExplorerFrame.dll
2011-01-12 19:22:32 135168 ----a-w- c:\windows\system32\XpsRasterService.dll
2011-01-12 19:22:31 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2011-01-12 19:22:20 573440 ----a-w- c:\windows\system32\odbc32.dll
2011-01-12 19:22:18 987136 ----a-w- c:\program files\common files\system\ado\msado15.dll
2011-01-12 19:22:18 372736 ----a-w- c:\program files\common files\system\ado\msadox.dll
2011-01-12 19:22:17 352256 ----a-w- c:\program files\common files\system\ado\msadomd.dll
2011-01-12 19:22:17 208896 ----a-w- c:\program files\common files\system\msadc\msadco.dll
2011-01-03 20:00:34 -------- d-----w- c:\progra~2\{23D58E70-3B83-4B83-A227-68770F84F5EC}
2010-12-27 19:03:15 -------- d-----w- c:\program files\uTorrent
2010-12-27 19:01:26 -------- d-----w- c:\users\laurie\appdata\roaming\uTorrent
2010-12-27 18:50:16 -------- d-----w- c:\users\laurie\appdata\roaming\Shareaza
2010-12-27 18:50:16 -------- d-----w- c:\users\laurie\appdata\local\Shareaza
2010-12-15 02:47:32 516096 ----a-w- c:\program files\windows mail\wab.exe
2010-12-15 02:47:22 2048 ----a-w- c:\windows\system32\tzres.dll
2010-12-15 02:45:59 749056 ----a-w- c:\windows\system32\schedsvc.dll
2010-12-15 02:45:59 496128 ----a-w- c:\windows\system32\taskschd.dll
2010-12-15 02:45:58 351232 ----a-w- c:\windows\system32\wmicmiplugin.dll
2010-12-15 02:45:58 192000 ----a-w- c:\windows\system32\taskeng.exe
2010-12-15 02:45:57 305152 ----a-w- c:\windows\system32\taskcomp.dll
2010-12-15 02:45:56 179712 ----a-w- c:\windows\system32\schtasks.exe
2010-12-15 02:45:21 314368 ----a-w- c:\windows\system32\webio.dll
2010-12-15 02:45:16 101760 ----a-w- c:\windows\system32\consent.exe
2010-12-15 02:45:07 571904 ----a-w- c:\windows\system32\oleaut32.dll
2010-12-12 18:37:36 -------- d-----w- c:\users\laurie\appdata\local\Google
2010-12-12 18:36:27 -------- d-----w- c:\users\laurie\appdata\roaming\Local
2010-12-12 18:30:56 -------- d-----w- c:\program files\common files\PX Storage Engine
2010-12-12 18:29:12 -------- d-----w- c:\program files\DivX
2010-12-12 18:28:41 -------- d-----w- c:\progra~2\DivX
2010-11-24 16:22:23 7680 ----a-w- c:\program files\internet explorer\iecompat.dll
2010-11-18 00:27:52 -------- d-----w- c:\program files\MSECache
2010-10-27 00:02:57 204288 ----a-w- c:\windows\system32\MSNP.ax
2010-10-27 00:02:44 26504 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2010-10-25 00:55:34 -------- d-----w- c:\program files\Yawcam
2010-10-14 20:21:40 4247040 ----a-w- c:\program files\windows nt\accessories\wordpad.exe
2010-10-14 20:21:39 1413632 ----a-w- c:\windows\system32\ole32.dll
2010-10-14 20:21:20 109056 ----a-w- c:\windows\system32\t2embed.dll
2010-10-14 20:21:19 224256 ----a-w- c:\windows\system32\schannel.dll
2010-10-14 20:21:16 530432 ----a-w- c:\windows\system32\comctl32.dll
2010-10-14 20:21:13 954752 ----a-w- c:\windows\system32\mfc40.dll
2010-10-14 20:21:13 954288 ----a-w- c:\windows\system32\mfc40u.dll
2010-10-14 20:21:05 164864 ----a-w- c:\program files\windows media player\wmplayer.exe
2010-10-14 20:21:02 12625408 ----a-w- c:\windows\system32\wmploc.DLL
2010-10-14 20:20:58 310784 ----a-w- c:\windows\system32\drivers\srv.sys
2010-10-14 20:20:57 308736 ----a-w- c:\windows\system32\drivers\srv2.sys
2010-10-14 20:20:57 168448 ----a-w- c:\windows\system32\srvsvc.dll
2010-10-14 20:20:57 113664 ----a-w- c:\windows\system32\drivers\srvnet.sys
2010-10-14 20:20:55 738816 ----a-w- c:\windows\system32\wmpmde.dll
2010-10-14 20:20:54 363520 ----a-w- c:\windows\system32\StructuredQuery.dll
2010-10-06 01:37:38 -------- d-----w- c:\users\laurie\appdata\roaming\Spotify
2010-10-06 01:37:38 -------- d-----w- c:\users\laurie\appdata\local\Spotify
2010-10-06 01:37:33 -------- d-----w- c:\program files\Spotify
2010-09-30 15:53:50 146304 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2010-09-30 15:53:49 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2010-09-30 13:37:04 12278608 ----a-w- c:\program files\common files\microsoft shared\office11\MSO.DLL
2010-09-23 00:47:28 49016 ----a-w- c:\windows\system32\sirenacm.dll
2010-09-21 14:13:50 1564072 ----a-w- c:\program files\common files\microsoft shared\windows live\WLIDRES.DLL
2010-09-21 14:08:38 439168 ----a-w- c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
2010-09-21 14:06:02 853912 ----a-w- c:\program files\common files\microsoft shared\windows live\wlidcli.dll
2010-09-21 14:06:02 57752 ----a-w- c:\program files\common files\microsoft shared\windows live\msidcrl40.dll
2010-09-21 14:03:14 332160 ----a-w- c:\program files\common files\microsoft shared\windows live\WLIDCREDPROV.DLL
2010-09-21 14:03:14 237952 ----a-w- c:\program files\common files\microsoft shared\windows live\WLIDPROV.DLL
2010-09-21 14:03:14 208768 ----a-w- c:\windows\system32\LIVESSP.DLL
2010-09-21 14:03:14 193408 ----a-w- c:\program files\common files\microsoft shared\windows live\WLIDSVCM.EXE
2010-09-21 14:03:14 1710464 ----a-w- c:\program files\common files\microsoft shared\windows live\WLIDSVC.EXE
2010-09-21 14:03:14 145280 ----a-w- c:\program files\common files\microsoft shared\windows live\WLIDNSP.DLL
2010-09-19 14:04:34 316928 ----a-w- c:\windows\system32\spoolsv.exe
2010-09-17 10:50:22 17244544 ----a-w- c:\program files\common files\microsoft shared\office12\MSO.DLL
2010-09-14 17:09:22 -------- d-----w- c:\users\laurie\appdata\local\Adobe
2010-09-10 19:23:39 -------- d-----w- c:\users\laurie\appdata\local\Apple Computer
2010-09-10 19:23:11 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2010-09-10 19:23:11 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2010-09-10 19:21:49 -------- d-----w- c:\program files\iPod
2010-09-10 19:21:46 -------- d-----w- c:\program files\iTunes
2010-09-10 19:21:46 -------- d-----w- c:\progra~2\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2010-09-10 17:19:41 -------- d-----w- c:\users\laurie\appdata\local\Apple
2010-09-10 17:18:56 -------- d-----w- c:\program files\Bonjour
2010-09-07 17:48:41 5943120 ----a-w- c:\progra~2\microsoft\windows defender\definition updates\backup\mpengine.dll
2010-09-06 21:45:35 -------- d-----w- c:\users\laurie\appdata\roaming\HP Support Assistant
2010-09-06 21:43:45 -------- d-----w- c:\program files\common files\Adobe Systems Shared
2010-09-06 21:37:17 696320 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iKernel.dll
2010-09-06 21:37:17 57344 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\ctor.dll
2010-09-06 21:37:17 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\DotNetInstaller.exe
2010-09-06 21:37:17 237568 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iscript.dll
2010-09-06 21:37:17 155648 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iuser.dll
2010-09-06 21:37:08 282756 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\setup.dll
2010-09-06 21:37:08 163972 ----a-w- c:\program files\common files\installshield\professional\runtime\0701\intel32\iGdi.dll
2010-09-06 18:38:41 257024 ----a-w- c:\windows\system32\msv1_0.dll
2010-09-06 18:37:08 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2010-09-06 18:37:08 49472 ----a-w- c:\windows\system32\netfxperf.dll
2010-09-06 18:37:08 297808 ----a-w- c:\windows\system32\mscoree.dll
2010-09-06 18:37:08 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2010-09-06 18:37:08 1130824 ----a-w- c:\windows\system32\dfshim.dll
2010-09-06 18:28:46 293376 ----a-w- c:\windows\system32\browserchoice.exe
2010-09-06 16:07:05 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2010-09-06 16:07:04 507568 ----a-w- c:\windows\system32\winload.exe
2010-09-06 16:07:04 442920 ----a-w- c:\windows\system32\winresume.exe
2010-09-06 16:06:52 465408 ----a-w- c:\windows\system32\psisdecd.dll
2010-09-06 16:06:30 1286016 ----a-w- c:\windows\system32\drivers\tcpip.sys
2010-09-06 16:06:03 194488 ----a-w- c:\windows\system32\drivers\fvevol.sys
2010-09-06 16:05:01 82944 ----a-w- c:\windows\system32\iccvid.dll
2010-09-06 16:05:01 197632 ----a-w- c:\windows\system32\ir32_32.dll
2010-09-06 16:04:56 2614272 ----a-w- c:\windows\explorer.exe
2010-09-06 16:04:55 285696 ----a-w- c:\windows\system32\winlogon.exe
2010-09-06 16:04:52 34816 ----a-w- c:\windows\system32\msasn1.dll
2010-09-06 16:04:38 133720 ----a-w- c:\windows\system32\drivers\ksecpkg.sys
2010-09-06 16:04:38 1037312 ----a-w- c:\windows\system32\lsasrv.dll
2010-09-06 16:04:20 37376 ----a-w- c:\windows\system32\rtutils.dll
2010-09-06 16:04:15 740864 ----a-w- c:\windows\system32\inetcomm.dll
2010-09-06 16:04:15 1619968 ----a-w- c:\program files\windows mail\msoe.dll
2010-09-06 16:02:16 67584 ----a-w- c:\windows\system32\asycfilt.dll
2010-09-06 16:01:30 292864 ----a-w- c:\windows\system32\apphelp.dll
2010-09-06 16:01:28 91648 ----a-w- c:\windows\system32\avifil32.dll
2010-09-06 16:01:28 84480 ----a-w- c:\windows\system32\mciavi32.dll
2010-09-06 16:01:28 31744 ----a-w- c:\windows\system32\msvidc32.dll
2010-09-06 16:01:28 1328640 ----a-w- c:\windows\system32\quartz.dll
2010-09-06 16:01:27 50176 ----a-w- c:\windows\system32\iyuv_32.dll
2010-09-06 16:01:27 22016 ----a-w- c:\windows\system32\msyuv.dll
2010-09-06 16:01:27 13312 ----a-w- c:\windows\system32\msrle32.dll
2010-09-06 16:01:27 12288 ----a-w- c:\windows\system32\tsbyuv.dll
2010-09-06 15:59:26 85504 ----a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-09-06 15:59:26 85504 ----a-w- c:\windows\system32\secproc_ssp.dll
2010-09-06 15:59:26 369152 ----a-w- c:\windows\system32\secproc.dll
2010-09-06 15:59:26 365568 ----a-w- c:\windows\system32\secproc_isv.dll
2010-09-06 15:59:26 324608 ----a-w- c:\windows\system32\RMActivate_isv.exe
2010-09-06 15:59:26 320512 ----a-w- c:\windows\system32\RMActivate.exe
2010-09-06 15:59:25 280064 ----a-w- c:\windows\system32\RMActivate_ssp.exe
2010-09-06 15:59:25 277504 ----a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-09-06 15:59:03 95744 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2010-09-06 15:59:03 221696 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2010-09-06 15:59:03 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-09-06 15:58:41 70656 ----a-w- c:\windows\system32\fontsub.dll
2010-09-06 15:49:47 -------- d-----w- c:\users\laurie\appdata\roaming\Windows Live Writer
2010-09-06 15:49:47 -------- d-----w- c:\users\laurie\appdata\local\Windows Live Writer
2010-09-06 15:46:26 -------- d-----w- c:\users\laurie\appdata\roaming\com.seesmic.desktop.client.D89F32799270693BEF34AAA36E9B2632B59240FA.1
2010-09-05 22:42:16 1002008 ----a-w- c:\windows\system32\igxpun.exe
2010-09-05 22:42:16 -------- d-----w- c:\windows\system32\x64
2010-09-05 22:39:13 132608 ----a-w- c:\windows\system32\cabview.dll
2010-09-05 22:39:12 172032 ----a-w- c:\windows\system32\wintrust.dll
2010-09-05 20:28:24 -------- d-----w- c:\users\laurie\appdata\local\Diagnostics
2010-09-05 19:39:35 17828 ----a-r- c:\windows\system32\drivers\SPIF225.sys
2010-09-05 19:39:35 -------- d-----w- c:\windows\system\Iosubsys
2010-09-05 19:39:34 212992 ----a-r- c:\windows\system32\drivers\RevHDD.exe
2010-09-05 19:38:17 69715 ----a-w- c:\program files\common files\installshield\professional\runtime\10\00\intel32\ctor.dll
2010-09-05 19:38:17 266240 ----a-w- c:\program files\common files\installshield\professional\runtime\10\00\intel32\iscript.dll
2010-09-05 19:38:17 172032 ----a-w- c:\program files\common files\installshield\professional\runtime\10\00\intel32\iuser.dll
2010-09-05 19:38:16 733184 ----a-w- c:\program files\common files\installshield\professional\runtime\10\00\intel32\iKernel.dll
2010-09-05 19:38:16 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\10\00\intel32\DotNetInstaller.exe
2010-09-05 19:37:55 180356 ----a-w- c:\program files\common files\installshield\professional\runtime\10\00\intel32\iGdi.dll
2010-09-05 19:37:54 303236 ----a-w- c:\program files\common files\installshield\professional\runtime\10\00\intel32\setup.dll
2010-09-05 17:47:34 -------- d-----w- c:\progra~2\Alwil Software
2010-09-05 17:38:23 222080 ------w- c:\windows\system32\MpSigStub.exe
2010-09-05 17:09:27 -------- d-----r- c:\program files\Skype
2010-09-05 16:27:31 32768 ----a-w- c:\program files\common files\installshield\engine\6\intel 32\objectps.dll
2010-09-05 16:27:31 225280 ----a-w- c:\program files\common files\installshield\iscript\iscript.dll
2010-09-05 16:27:31 176128 ----a-w- c:\program files\common files\installshield\engine\6\intel 32\iuser.dll
2010-09-05 16:27:30 77824 ----a-w- c:\program files\common files\installshield\engine\6\intel 32\ctor.dll
2010-09-05 16:27:21 614532 ----a-w- c:\program files\common files\installshield\engine\6\intel 32\IKernel.exe
2010-09-05 16:27:18 -------- d-----w- c:\users\laurie\appdata\local\Programs
2010-09-05 16:26:39 -------- d-----w- c:\users\laurie\appdata\local\ArcSoft
2010-09-05 16:26:39 -------- d-----w- c:\progra~2\ArcSoft
2010-09-05 16:12:35 -------- d-----w- c:\users\laurie\appdata\roaming\HpUpdate
2010-09-05 16:10:55 -------- d-----w- c:\users\laurie\appdata\local\AOL
2010-09-05 16:09:17 20715520 ----a-w- c:\windows\system32\imageres.dll
2010-09-05 16:08:01 -------- d-----w- c:\users\laurie\appdata\local\Broadcom
2010-09-05 16:07:58 -------- d-----w- c:\users\laurie\.migoDesktop
2010-09-05 16:06:29 -------- d-----w- C:\temp
2010-09-05 16:06:09 -------- d-----w- c:\users\laurie\appdata\roaming\hpqlog
2010-09-05 16:05:57 -------- d-----w- c:\users\laurie\appdata\local\Hewlett-Packard
2010-09-05 16:01:59 -------- d-----w- c:\users\laurie\appdata\roaming\HP TCS
2010-09-05 15:58:59 -------- d-sh--w- C:\HPMBackup
2010-08-10 04:15:58 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2010-08-10 04:15:58 69632 ----a-w- c:\windows\system32\QuickTime.qts
2010-07-27 17:44:10 91424 ----a-w- c:\windows\system32\dnssd.dll
2010-07-27 17:44:10 75040 ----a-w- c:\windows\system32\jdns_sd.dll
2010-07-27 17:44:10 197920 ----a-w- c:\windows\system32\dnssdX.dll
2010-07-27 17:44:10 107808 ----a-w- c:\windows\system32\dns-sd.exe
2010-07-11 15:47:40 453456 ----a-w- c:\windows\system32\d3dx10_41.dll
2010-07-11 15:47:40 1846632 ----a-w- c:\windows\system32\D3DCompiler_41.dll
2010-06-24 11:33:56 196416 ----a-w- c:\program files\common files\microsoft shared\windows live\SQMAPI.DLL
2010-06-24 11:33:56 18328 ----a-w- c:\progra~2\microsoft\identitycrl\production\ppcrlconfig600.dll
2010-04-19 19:47:44 3062048 ----a-w- c:\windows\system32\usbaaplrc.dll
2010-04-19 19:47:42 41984 ----a-w- c:\windows\system32\drivers\usbaapl.sys
2010-04-16 09:49:08 503296 ----a-w- c:\program files\common files\microsoft shared\office11\USP10.DLL
2010-03-18 12:16:28 771424 ----a-w- c:\windows\system32\msvcr100_clr0400.dll
2010-02-08 12:28:12 640296 ----a-w- c:\program files\mozilla firefox\extensions\{ab2ce124-6272-4b12-94a9-7303c7397bd1}\components\SkypeFfComponent.dll
2010-01-03 21:22:10 -------- d-----w- c:\users\laurie\appdata\local\Windows Live
2010-01-03 21:21:27 3181568 ----a-w- c:\windows\system32\mf.dll
2010-01-03 21:21:27 196608 ----a-w- c:\windows\system32\mfreadwrite.dll
2010-01-03 21:21:26 1619456 ----a-w- c:\windows\system32\WMVDECOD.DLL
2010-01-03 20:52:51 51280 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys
2010-01-03 20:52:32 38848 ----a-w- c:\windows\avastSS.scr
2009-12-17 17:41:33 29472 ----a-w- c:\windows\system32\drivers\btwl2cap.sys
2009-12-17 17:41:33 18344 ----a-w- c:\windows\system32\drivers\btwrchid.sys
2009-12-17 17:41:33 108072 ----a-w- c:\windows\system32\drivers\btwavdt.sys
2009-12-17 17:41:32 86056 ----a-w- c:\windows\system32\drivers\btwaudio.sys
2009-12-17 17:41:07 -------- d-----w- c:\program files\WIDCOMM
2009-12-17 17:39:49 -------- d--h--w- C:\dvmexp
2009-12-17 17:39:05 -------- d--h--w- C:\SPLASH.000
2009-12-17 17:38:09 -------- d--h--w- C:\SPLASH.SYS
2009-12-17 17:36:33 -------- d-----w- c:\program files\Downloaded Installations
2009-12-17 17:34:44 -------- d-----w- c:\progra~2\Stardock
2009-12-17 17:33:53 33760890 ----a-w- c:\windows\system32\Tord Screensaver Artist Version.scr
2009-12-17 17:33:19 -------- d-----w- c:\program files\common files\Stardock
2009-12-17 17:33:11 -------- dc-h--w- c:\progra~2\{B3CB1E70-1F79-49F2-AF4E-A1C8248D2B55}
2009-12-17 17:33:03 -------- d-----w- c:\program files\Stardock
2009-12-17 17:23:27 -------- d-----w- c:\progra~2\Recovery
2009-12-17 17:07:35 485888 ------w- c:\windows\system32\stapi32.dll
2009-12-17 17:07:10 61440 ----a-w- c:\windows\system32\aestaren.dll
2009-12-17 17:07:10 372736 ----a-w- c:\windows\system32\aestecap.dll
2009-12-17 17:07:09 138240 ----a-w- c:\windows\system32\aestacap.dll
2009-12-17 17:07:07 86016 ----a-w- c:\windows\system32\AESTCom.dll
2009-12-17 17:07:07 536576 ----a-w- c:\windows\system32\idtmini1.exe
2009-12-17 17:07:07 458844 ----a-w- c:\windows\sttray.exe
2009-12-17 17:07:07 3600384 ----a-w- c:\windows\system32\stlang.dll
2009-12-17 17:07:07 12021852 ----a-w- c:\windows\system32\idtcpl.cpl
2009-12-17 17:07:02 -------- d-----w- c:\windows\system32\SRSLabs
2009-12-17 17:06:52 175616 ----a-w- c:\windows\system32\staco.dll
2009-12-17 17:04:57 408576 ----a-w- c:\windows\system32\drivers\stwrt.sys
2009-12-17 17:04:57 405504 ----a-w- c:\windows\system32\stcplx.dll
2009-12-17 17:04:56 914944 ----a-w- c:\windows\system32\stapo.dll
2009-12-17 17:04:31 -------- d-----w- c:\program files\IDT
2009-12-17 17:03:36 -------- d-----w- C:\Intel
2009-12-17 17:03:35 330264 ----a-w- c:\windows\system32\drivers\iaStor.sys
2009-12-17 17:03:14 7360512 ----a-w- c:\windows\system32\RTSUSTORicon.dll
2009-12-17 17:03:14 -------- d-----w- c:\windows\system32\sda
2009-12-17 17:03:00 270336 ----a-w- c:\windows\system32\RtsUStor.dll
2009-12-17 17:03:00 167424 ----a-w- c:\windows\system32\drivers\RtsUStor.sys
2009-12-17 17:03:00 -------- d-----w- c:\program files\Realtek
2009-12-17 17:01:39 -------- d-----w- c:\program files\Synaptics
2009-12-17 17:01:09 -------- d-----w- c:\windows\system32\Atheros_L1e
2009-12-17 16:57:58 91448 ----a-w- c:\windows\system32\bcmwlcoi.dll
2009-12-17 16:57:58 6656 ----a-w- c:\windows\system32\bcmwlrc.dll
2009-12-17 16:57:58 3555328 ----a-w- c:\windows\system32\bcmihvui.dll
2009-12-17 16:57:57 3866624 ----a-w- c:\windows\system32\bcmihvsrv.dll
2009-12-17 16:57:57 2709056 ----a-w- c:\windows\system32\drivers\BCMWL6.SYS
2009-12-17 16:57:56 -------- d-----w- c:\program files\Broadcom
2009-10-24 02:11:18 410984 ----a-w- c:\windows\system32\deploytk.dll
2009-10-24 01:39:34 -------- d---a-r- c:\program files\Tord Boontje Studio
2009-10-24 01:29:20 -------- d-----w- c:\windows\system32\Adobe
2009-10-24 01:19:11 -------- d-----w- c:\program files\Seesmic Social Networking
2009-10-24 00:24:33 -------- d-----w- c:\program files\HP Games
2009-10-24 00:24:32 -------- d-----w- c:\progra~2\WildTangent
2009-10-24 00:24:32 -------- d-----r- c:\program files\Online Services
2009-10-24 00:19:50 -------- d--h--w- C:\HP
2009-10-24 00:10:39 -------- d-----w- c:\program files\HP
2009-10-23 23:56:56 -------- d-----w- c:\progra~2\Norton
2009-10-23 23:56:08 -------- d-----w- c:\progra~2\NortonInstaller
2009-10-23 23:44:05 -------- d-----w- c:\windows\PCHEALTH
2009-10-23 23:43:56 -------- d-sh--w- c:\windows\Installer
2009-10-23 23:43:09 140066664 ----a-w- c:\program files\common files\windows live\.cache\wlc3A41.tmp
2009-10-23 23:42:54 -------- d-----w- c:\program files\common files\Windows Live
2009-10-23 23:40:42 32768 ----a-w- c:\program files\common files\installshield\professional\runtime\Objectps.dll
2009-10-23 23:40:42 184320 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iuser.dll
2009-10-23 23:40:41 753664 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iKernel.dll
2009-10-23 23:40:41 69714 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\ctor.dll
2009-10-23 23:40:41 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\DotNetInstaller.exe
2009-10-23 23:40:41 274432 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iscript.dll
2009-10-23 23:40:41 200836 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iGdi.dll
2009-10-23 23:40:40 331908 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\setup.dll
2009-09-23 18:30:50 8198680 ----a-w- c:\windows\system32\TVWSetup.exe
2009-09-23 18:30:50 672792 ----a-w- c:\windows\system32\igfxcfg.exe
2009-09-23 18:30:48 252952 ----a-w- c:\windows\system32\igfxsrvc.exe
2009-09-23 18:30:48 173592 ----a-w- c:\windows\system32\hkcmd.exe
2009-09-23 18:30:48 173080 ----a-w- c:\windows\system32\igfxext.exe
2009-09-23 18:30:48 150552 ----a-w- c:\windows\system32\igfxpers.exe
2009-09-23 18:30:48 141848 ----a-w- c:\windows\system32\igfxtray.exe
2009-09-23 18:27:44 155648 ----a-w- c:\windows\system32\igfxCoIn_v1930.dll
2009-09-23 18:18:14 4808192 ----a-w- c:\windows\system32\drivers\igdkmd32.sys
2009-09-23 18:18:08 3829760 ----a-w- c:\windows\system32\igdumd32.dll
2009-09-23 17:58:38 2686976 ----a-w- c:\windows\system32\ig4dev32.dll
2009-09-23 17:58:12 4104192 ----a-w- c:\windows\system32\ig4icd32.dll
2009-09-23 17:49:42 257536 ----a-w- c:\windows\system32\igfxTMM.dll
2009-09-23 17:49:42 199680 ----a-w- c:\windows\system32\igfxpph.dll
2009-09-23 17:49:38 59392 ----a-w- c:\windows\system32\oemdspif.dll
2009-09-23 17:49:36 23552 ----a-w- c:\windows\system32\igfxexps.dll
2009-09-23 17:49:34 119296 ----a-w- c:\windows\system32\igfxcpl.cpl
2009-09-23 17:49:24 51712 ----a-w- c:\windows\system32\igfxsrvc.dll
2009-09-23 17:49:10 130048 ----a-w- c:\windows\system32\igfxdo.dll
2009-09-23 17:49:04 94208 ----a-w- c:\windows\system32\hccutils.dll
2009-09-23 17:49:00 218112 ----a-w- c:\windows\system32\igfxdev.dll
2009-09-23 17:48:52 5702656 ----a-w- c:\windows\system32\igfxress.dll
2009-09-23 17:48:52 275968 ----a-w- c:\windows\system32\igfxrenu.lrc
2009-07-24 17:00:10 -------- d-----w- c:\windows\Panther
2009-07-24 16:59:55 -------- d-sh--w- C:\boot
2009-07-24 16:11:17 -------- d-----w- c:\windows\system32\wbem\Performance
2009-07-24 16:06:36 -------- d-sh--w- C:\Recovery
2009-07-16 23:12:44 -------- d--h--w- C:\SYSTEM.SAV
2009-07-16 23:12:44 -------- d-----w- C:\SwSetup
2009-07-14 17:53:52 569344 ----a-w- c:\windows\system32\InstantWebConfTool.cpl
2009-07-14 04:56:48 -------- d-----w- c:\windows\system32\winrm
2009-07-14 04:56:48 -------- d-----w- c:\windows\system32\WCN
2009-07-14 04:56:48 -------- d-----w- c:\windows\system32\slmgr
2009-07-14 04:56:48 -------- d-----w- c:\windows\system32\en
2009-07-14 04:56:48 -------- d-----w- c:\windows\system32\drivers\umdf\en-US
2009-07-14 04:56:48 -------- d-----w- c:\windows\system32\drivers\en-US
2009-07-14 04:56:48 -------- d-----w- c:\windows\system32\0409
2009-07-14 04:56:48 -------- d-----w- c:\windows\en-US
2009-07-14 04:56:48 -------- d-----w- c:\windows\DigitalLocker
2009-07-14 04:56:47 -------- d-----w- c:\windows\system32\wbem\en-US
2009-07-14 04:56:47 -------- d-----w- c:\windows\system32\Printing_Admin_Scripts
2009-07-14 04:55:08 3584 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\en-us\LXKPTPRC.DLL.mui
2009-07-14 04:53:55 -------- d-sh--we C:\Documents and Settings
2009-07-14 04:53:50 -------- d-----w- c:\windows\system32\wbem\mof\good
2009-07-14 04:53:50 -------- d-----w- c:\windows\system32\wbem\mof\bad
2009-07-14 04:41:11 -------- d-----w- c:\windows\system32\wbem\MOF
2009-07-14 04:34:16 -------- d-----w- c:\windows\Setup
2009-07-14 04:34:13 -------- d-----w- c:\windows\ServiceProfiles
2009-07-14 04:34:06 -------- d-s---w- c:\windows\system32\Microsoft
.
==================== Find3M ====================
.
2011-01-07 07:27:11 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-01-07 05:33:11 294400 ----a-w- c:\windows\system32\atmfd.dll
2011-01-05 05:37:33 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-01-05 03:37:38 2329088 ----a-w- c:\windows\system32\win32k.sys
2010-12-21 05:38:24 73728 ----a-w- c:\windows\system32\wscsvc.dll
2010-12-21 05:38:24 51200 ----a-w- c:\windows\system32\wscapi.dll
2010-12-21 05:38:22 981504 ----a-w- c:\windows\system32\wininet.dll
2010-12-21 05:38:22 350720 ----a-w- c:\windows\system32\winhttp.dll
2010-12-21 05:38:21 204800 ----a-w- c:\windows\system32\WebClnt.dll
2010-12-21 05:38:19 204288 ----a-w- c:\windows\system32\upnp.dll
2010-12-21 05:38:16 14336 ----a-w- c:\windows\system32\slwga.dll
2010-12-21 05:36:17 1389568 ----a-w- c:\windows\system32\msxml6.dll
2010-12-21 05:36:16 1236992 ----a-w- c:\windows\system32\msxml3.dll
2010-12-21 05:34:12 80384 ----a-w- c:\windows\system32\davclnt.dll
2010-12-18 05:29:40 44544 ----a-w- c:\windows\system32\licmgr10.dll
2010-12-18 05:29:31 541184 ----a-w- c:\windows\system32\kerberos.dll
2010-12-18 04:20:55 386048 ----a-w- c:\windows\system32\html.iec
2010-12-18 03:47:59 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2010-11-23 14:57:34 1243704 ----a-w- c:\windows\help\oem\scripts\HPSAUpgrade.exe
2010-11-17 14:29:06 55864 ----a-w- c:\windows\help\oem\scripts\HPSAUpdaterObj.exe
2010-10-27 13:28:46 11320 ----a-w- c:\windows\help\oem\scripts\HPSARedirectorLauncher.exe
2010-10-27 04:43:38 3901824 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-10-27 04:43:37 3957120 ----a-w- c:\windows\system32\ntkrnlpa.exe
2009-09-23 17:52:20 279040 ----a-w- c:\windows\system32\igfxrtrk.lrc
2009-08-14 10:22:02 20744 ----a-w- c:\windows\help\oem\scripts\checkMui.dll
2009-07-14 01:26:21 249408 ----a-w- c:\windows\system32\clfs.sys
2009-07-14 01:26:15 2217536 ----a-w- c:\windows\system32\bootres.dll
2009-07-14 01:26:15 21584 ----a-w- c:\windows\system32\BOOTVID.DLL
2009-07-14 01:24:31 1073152 ----a-w- c:\windows\system32\Narrator.exe
2009-07-14 01:23:21 5070848 ----a-w- c:\windows\system32\AuthFWSnapin.dll
2009-07-14 01:22:23 107008 ----a-w- c:\windows\system32\NAPHLPR.DLL
2009-07-14 01:22:14 46080 ----a-w- c:\windows\system32\NAPCRYPT.DLL
2009-07-14 01:20:43 91728 ----a-w- c:\windows\system32\MigAutoPlay.exe
2009-07-14 01:20:36 470608 ----a-w- c:\windows\system32\mcupdate_GenuineIntel.dll
2009-07-14 01:20:36 31824 ----a-w- c:\windows\system32\mcupdate_AuthenticAMD.dll
2009-07-14 01:20:36 17488 ----a-w- c:\windows\system32\kdusb.dll
2009-07-14 01:20:36 16960 ----a-w- c:\windows\system32\kd1394.dll
2009-07-14 01:20:36 15952 ----a-w- c:\windows\system32\kdcom.dll
2009-07-14 01:20:28 194640 ----a-w- c:\windows\system32\halmacpi.dll
2009-07-14 01:20:28 137296 ----a-w- c:\windows\system32\halacpi.dll
2009-07-14 01:20:07 126976 ----a-w- c:\windows\system32\AuthFWWizFwk.dll
2009-07-14 01:19:10 22096 ----a-w- c:\windows\system32\streamci.dll
2009-07-14 01:19:03 52816 ----a-w- c:\windows\system32\PSHED.DLL
2009-07-14 01:17:54 690888 ----a-w- c:\windows\system32\ci.dll
2009-07-14 01:17:54 271864 ----a-w- c:\windows\system32\fveapi.dll
2009-07-14 01:17:54 249680 ----a-w- c:\windows\system32\bcryptprimitives.dll
2009-07-14 01:17:54 242936 ----a-w- c:\windows\system32\rsaenh.dll
2009-07-14 01:17:54 156728 ----a-w- c:\windows\system32\dssenh.dll
2009-07-14 01:17:54 102448 ----a-w- c:\windows\system32\wbem\Win32_Tpm.dll
2009-07-14 01:17:51 143936 ----a-w- c:\windows\system32\basecsp.dll
2009-07-14 01:15:52 6656 ----a-w- c:\windows\system32\mtxex.dll
2009-07-14 01:14:59 9216 ----a-w- c:\windows\system32\bitsprx4.dll
2009-07-14 01:11:27 54272 ----a-w- c:\windows\system32\WsmRes.dll
2009-07-14 01:11:26 4608 ----a-w- c:\windows\system32\ws2help.dll
2009-07-14 01:11:09 5120 ----a-w- c:\windows\system32\wmi.dll
2009-07-14 01:11:09 2048 ----a-w- c:\windows\system32\wmerror.dll
2009-07-14 01:11:09 2048 ----a-w- c:\windows\system32\wbem\WmiApRes.dll
2009-07-14 01:11:05 6656 ----a-w- c:\windows\system32\wbem\WinMgmtR.dll
2009-07-14 01:11:05 1536 ----a-w- c:\windows\system32\winrsmgr.dll
2009-07-14 01:11:04 669184 ----a-w- c:\windows\system32\WFSR.dll
2009-07-14 01:10:56 2560 ----a-w- c:\windows\system32\uxlibres.dll
2009-07-14 01:10:54 1164800 ----a-w- c:\windows\system32\UIRibbonRes.dll
2009-07-14 01:10:47 108544 ----a-w- c:\windows\system32\tapiui.dll
2009-07-14 01:10:37 7168 ----a-w- c:\windows\system32\spwizres.dll
2009-07-14 01:10:36 8338432 ----a-w- c:\windows\system32\spwizimg.dll
2009-07-14 01:10:22 5120 ----a-w- c:\windows\system32\setupetw.dll
2009-07-14 01:10:22 2560 ----a-w- c:\windows\system32\sfc.dll
2009-07-14 01:10:13 68608 ----a-w- c:\windows\system32\nlsbres.dll
2009-07-14 01:08:59 6917120 ----a-w- c:\windows\system32\NlsLexicons0c1a.dll
2009-07-14 01:07:56 2048 ----a-w- c:\windows\system32\netmsg.dll
2009-07-14 01:07:56 2048 ----a-w- c:\windows\system32\neth.dll
2009-07-14 01:07:56 18944 ----a-w- c:\windows\system32\netevent.dll
2009-07-14 01:07:21 2048 ----a-w- c:\windows\system32\msxml6r.dll
2009-07-14 01:07:21 2048 ----a-w- c:\windows\system32\msxml3r.dll
2009-07-14 01:07:19 60928 ----a-w- c:\windows\system32\msvcrt40.dll
2009-07-14 01:07:16 268800 ----a-w- c:\windows\system32\msshavmsg.dll
2009-07-14 01:07:15 8192 ----a-w- c:\windows\system32\msorc32r.dll
2009-07-14 01:07:15 2048 ----a-w- c:\windows\system32\msprivs.dll
2009-07-14 01:07:14 60416 ----a-w- c:\windows\system32\msobjs.dll
2009-07-14 01:07:12 4608 ----a-w- c:\windows\system32\msidntld.dll
2009-07-14 01:07:12 25088 ----a-w- c:\windows\system32\msimsg.dll
2009-07-14 01:05:46 3072 ----a-w- c:\windows\system32\icmp.dll
2009-07-14 01:05:31 4240384 ----a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2009-07-14 01:05:30 925184 ----a-w- c:\windows\system32\FXSRESM.dll
2009-07-14 01:05:30 7680 ----a-w- c:\windows\system32\FXSEVENT.dll
2009-07-14 01:05:30 34816 ----a-w- c:\windows\system32\FXSCOMPOSERES.dll
2009-07-14 01:04:52 2560 ----a-w- c:\windows\system32\dpnlobby.dll
2009-07-14 01:04:52 2048 ----a-w- c:\windows\system32\dpnaddr.dll
2009-07-14 01:04:51 51200 ----a-w- c:\windows\system32\DocumentPerformanceEvents.dll
2009-07-14 01:04:51 372224 ----a-w- c:\windows\system32\dmdskres.dll
2009-07-14 01:04:51 2048 ----a-w- c:\windows\system32\dmdskres2.dll
2009-07-14 01:04:30 1297408 ----a-w- c:\windows\system32\comres.dll
2009-07-14 01:04:20 514048 ----a-w- c:\windows\system32\shellstyle.dll
2009-07-14 01:04:08 6214144 ----a-w- c:\windows\system32\CardGames.dll
2009-07-14 01:04:07 2048 ----a-w- c:\windows\system32\bridgeres.dll
2009-07-14 01:04:06 2560 ----a-w- c:\windows\system32\bootstr.dll
2009-07-14 01:04:05 2048 ----a-w- c:\windows\system32\blbres.dll
2009-07-14 01:04:04 52224 ----a-w- c:\windows\system32\BlbEvents.dll
2009-07-14 00:12:10 40960 ----a-w- c:\windows\system32\cliconfg.rll
2009-07-14 00:12:07 106496 ----a-w- c:\windows\system32\sqlsrv32.rll
.
============= FINISH: 13:08:17.18 ===============