Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: I cannot access the internet.  (Read 31293 times)

0 Members and 1 Guest are viewing this topic.

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #15 on: January 29, 2012, 02:46:42 PM »
NOTE:  I found ASK in three places in Program files and in
You are much appreciated..     Thank you ,

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #16 on: January 29, 2012, 02:53:36 PM »
NOTE:  I found ASK in three places in Program files and in CONTROL PANEL>PROGRAMS AND FEATURES.  When i tried to uninstall the ASK toolbar I got the following messagae: "Error 1316. A network error occured whjile attemping to read from file C:\Windows\Installer\Ask Toolebar.msi"   and it looks like the Ask Toolbar is still there....

You are much appreciated..     Thank you ,

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #17 on: January 29, 2012, 03:04:32 PM »
When I tried to run ComboFix, it looked like it was starting to run, then itt came iup with a blank blue screen with a blinking cursor.   The screen was labeled "C:\.  Administrator"...
You are much appreciated..     Thank you ,

rthompson80819



    Specialist

    Thanked: 94
  • Experience: Experienced
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #18 on: January 29, 2012, 03:23:09 PM »
From the title of your post and your posts, it's not clear what you are trying to get done.  If you can post here you are getting to the internet.  Are you using another computer?

If you are just trying to uninstall Ask, try revo uninstaller.

http://www.revouninstaller.com/

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #19 on: January 29, 2012, 04:03:17 PM »
rthompson80819:   Yes I am using my wife's laptop to access the internet and download the tools asked for by SuperDave.   Then I transfer them to my computer via flashstick and try to do as instructed.  Sometimes I need more info.  Right now I am having trouble with Combofix.
Thanks for the info on revoinstaller.   Will try that later after SuperDave is finished with me.   Thanks again,  JIM
You are much appreciated..     Thank you ,

SuperDave

  • Malware Removal Specialist
  • Moderator


  • Genius
  • Thanked: 996
  • Certifications: List
  • Experience: Expert
  • OS: Windows 8
Re: I cannot access the internet.
« Reply #20 on: January 29, 2012, 07:18:38 PM »
Ok Delete ComboFix from your desktop. This is slightly different. You have to rename it when downloading the program

Download Combofix from any of the links below, and save it to your desktop

Link 1
Link 2
Link 3

When saving ComboFix rename it to PCHelpForum.exe to prevent it from being blocked by malware.

Refer to this image:

To prevent your anti-virus application interfering with  ComboFix we need to disable it. See here for a tutorial regarding how to do so if you are unsure.
  • Close any open windows and double click PCHelpForum.exe to run it.

    You will see the following image:


Click I Agree to start the program.

ComboFix will then extract the necessary files and you will see this:



As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to  have this pre-installed on your machine before doing any malware  removal. This will not occur in Windows Vista and 7

It will allow you to boot up into a special recovery/repair  mode that will allow us to more easily help you should your computer  have a problem after an attempted removal of malware.

If you did not have it installed, you will see the prompt below. Choose YES.



Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:



Click on Yes, to continue scanning for malware.

When finished, it will produce a report for you. Please post the contents of the log (C:\ComboFix.txt).

Leave your computer alone while ComboFix is running. ComboFix will restart your computer if malware is found; allow it to do so.

Note: Please Do NOT mouseclick combofix's window while its running because it may call it to stall.
Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8.1 with a dual boot to Windows XP  Home with SP3, Comodo  with Windows Firewall & Windows Defender

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #21 on: January 30, 2012, 01:42:18 PM »
Thanks SuperDave:   That worked, wow what a monstrous log.  posting it as follows:

ComboFix 12-01-30.02 - JIM 01/30/2012  12:01:31.2.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.4095.2690 [GMT -7:00]
Running from: c:\users\JIM\Desktop\PCHelpForum.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: PC Tools Firewall Plus *Disabled* {175D0B73-9F8F-2CA9-8BF1-62277A276DC9}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\CouponAlert_2pEI
c:\program files (x86)\DailyBibleGuideEI
c:\program files (x86)\DictionaryBoss\bar
c:\program files (x86)\DictionaryBoss\bar\Settings\s_pid.dat
c:\program files (x86)\DictionaryBossEI
c:\windows\security\Database\tmp.edb
F:\setup.exe
.
.
(((((((((((((((((((((((((   Files Created from 2011-12-28 to 2012-01-30  )))))))))))))))))))))))))))))))
.
.
2012-01-30 19:44 . 2012-01-30 19:44   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT7292.tmp
2012-01-30 19:16 . 2012-01-30 19:16   69000   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{8C8B97EF-6072-4622-8018-0A71D348CBCA}\offreg.dll
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Terri\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Public\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Guest\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Default\AppData\Local\temp
2012-01-27 17:17 . 2012-01-27 17:17   --------   d-----w-   c:\users\JIM\AppData\Roaming\SUPERAntiSpyware.com
2012-01-27 17:16 . 2012-01-27 17:17   --------   d-----w-   c:\program files\SUPERAntiSpyware
2012-01-25 19:56 . 2012-01-25 19:58   --------   d-----w-   c:\users\JIM\AppData\Roaming\DriverCure
2012-01-25 19:55 . 2012-01-25 19:56   --------   d-----w-   c:\programdata\DriverCure
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\programdata\ParetoLogic
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\program files (x86)\Common Files\ParetoLogic
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\program files (x86)\ParetoLogic
2012-01-25 19:19 . 2004-10-22 20:42   577536   ----a-w-   c:\windows\SysWow64\ANIWZCS2.dll
2012-01-25 19:19 . 2004-10-22 20:42   131072   ----a-w-   c:\windows\SysWow64\WlanApp.dll
2012-01-25 19:19 . 2004-10-22 20:42   1163337   ----a-w-   c:\windows\SysWow64\odSupp_M.dll
2012-01-25 19:19 . 2004-10-22 20:42   57407   ----a-w-   c:\windows\SysWow64\ANICtl.dll
2012-01-25 19:19 . 2004-10-22 20:42   49152   ----a-w-   c:\windows\SysWow64\AQCKGen.dll
2012-01-25 19:19 . 2004-10-22 20:42   192512   ----a-w-   c:\windows\SysWow64\aIPH.dll
2012-01-25 19:19 . 2012-01-25 19:19   --------   d-----w-   c:\program files (x86)\ANI
2012-01-25 19:19 . 2004-07-27 18:20   36864   ----a-w-   c:\windows\SysWow64\ANIOApi.dll
2012-01-25 19:19 . 2004-07-27 18:20   28205   ----a-w-   c:\windows\SysWow64\ANIO.sys
2012-01-25 19:19 . 2004-07-27 18:20   16997   ----a-w-   c:\windows\SysWow64\ANIO.VXD
2012-01-25 19:19 . 2004-07-27 18:20   11904   ----a-w-   c:\windows\SysWow64\anio4.sys
2012-01-25 19:19 . 2012-01-25 19:19   --------   d-----w-   c:\program files (x86)\D-Link
2012-01-24 23:44 . 2012-01-24 23:44   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT1ECD.tmp
2012-01-24 23:42 . 2012-01-24 23:42   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT606D.tmp
2012-01-24 23:26 . 2012-01-24 23:26   0   ---ha-w-   c:\users\JIM\AppData\Local\BITCBF.tmp
2012-01-24 23:24 . 2012-01-24 23:24   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT474E.tmp
2012-01-24 22:57 . 2011-11-21 11:40   8822856   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{8C8B97EF-6072-4622-8018-0A71D348CBCA}\mpengine.dll
2012-01-23 23:32 . 2012-01-24 23:37   --------   d-----w-   c:\windows\system32\SPReview
2012-01-23 23:32 . 2012-01-23 23:32   --------   d-----w-   c:\windows\system32\EventProviders
2012-01-23 23:30 . 2012-01-23 23:30   737072   ----a-w-   c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2012-01-23 23:30 . 2012-01-23 23:30   4283672   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2012-01-23 23:30 . 2012-01-23 23:30   42776   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2012-01-23 23:30 . 2012-01-23 23:30   539984   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-01-17 16:35 . 2012-01-17 16:35   --------   d-----w-   c:\users\JIM\AppData\Roaming\FCTB000060231
2012-01-11 15:09 . 2011-10-26 05:25   1572864   ----a-w-   c:\windows\system32\quartz.dll
2012-01-11 15:09 . 2011-10-26 04:32   514560   ----a-w-   c:\windows\SysWow64\qdvd.dll
2012-01-11 15:09 . 2011-10-26 04:32   1328128   ----a-w-   c:\windows\SysWow64\quartz.dll
2012-01-11 15:09 . 2011-10-26 05:25   366592   ----a-w-   c:\windows\system32\qdvd.dll
2012-01-11 15:09 . 2011-11-17 06:41   1731920   ----a-w-   c:\windows\system32\ntdll.dll
2012-01-11 15:09 . 2011-11-17 05:38   1292080   ----a-w-   c:\windows\SysWow64\ntdll.dll
2012-01-11 15:09 . 2011-11-19 14:58   77312   ----a-w-   c:\windows\system32\packager.dll
2012-01-11 15:09 . 2011-11-19 14:01   67072   ----a-w-   c:\windows\SysWow64\packager.dll
2012-01-10 18:49 . 2012-01-10 18:49   --------   d-----w-   c:\program files (x86)\Dogpile Bundle Toolbar
2012-01-10 18:49 . 2012-01-10 18:49   --------   d-----w-   c:\users\JIM\AppData\Local\The Weather Channel
2012-01-10 18:48 . 2012-01-27 17:51   --------   d-----w-   c:\program files (x86)\EpicPlay
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-30 19:50 . 2012-01-30 19:50   0   ---ha-w-   c:\users\JIM\AppData\Local\BITA6AD.tmp
2012-01-25 18:37 . 2011-02-18 23:38   639   ----a-w-   c:\windows\uninstallstickies.bat
2012-01-23 23:41 . 2009-07-14 02:36   152576   ----a-w-   c:\windows\SysWow64\msclmd.dll
2012-01-23 23:40 . 2009-07-14 02:36   175616   ----a-w-   c:\windows\system32\msclmd.dll
2011-12-03 20:16 . 2011-07-09 17:21   414368   ----a-w-   c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-28 18:01 . 2011-03-22 21:03   41184   ----a-w-   c:\windows\avastSS.scr
2011-11-28 18:01 . 2011-03-22 21:03   199816   ----a-w-   c:\windows\SysWow64\aswBoot.exe
2011-11-28 18:01 . 2011-03-22 21:03   256960   ----a-w-   c:\windows\system32\aswBoot.exe
2011-11-28 17:54 . 2011-03-22 21:03   591192   ----a-w-   c:\windows\system32\drivers\aswSnx.sys
2011-11-28 17:53 . 2011-03-22 21:03   304472   ----a-w-   c:\windows\system32\drivers\aswSP.sys
2011-11-28 17:52 . 2011-03-22 21:03   42328   ----a-w-   c:\windows\system32\drivers\aswRdr.sys
2011-11-28 17:52 . 2011-03-22 21:03   58712   ----a-w-   c:\windows\system32\drivers\aswTdi.sys
2011-11-28 17:52 . 2011-03-22 21:03   66904   ----a-w-   c:\windows\system32\drivers\aswMonFlt.sys
2011-11-28 17:51 . 2011-03-22 21:03   24408   ----a-w-   c:\windows\system32\drivers\aswFsBlk.sys
2011-11-24 04:52 . 2011-12-14 21:27   3145216   ----a-w-   c:\windows\system32\win32k.sys
2011-11-15 21:29 . 2010-10-20 20:33   270720   ----a-w-   c:\windows\system32\MpSigStub.exe
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp3A218.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp00318.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpE6E08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpCCE08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpA1F08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp24018.FOT
2011-11-05 05:41 . 2011-12-14 21:27   1188864   ----a-w-   c:\windows\system32\wininet.dll
2011-11-05 05:32 . 2011-12-14 21:27   2048   ----a-w-   c:\windows\system32\tzres.dll
2011-11-05 04:35 . 2011-12-14 21:27   981504   ----a-w-   c:\windows\SysWow64\wininet.dll
2011-11-05 04:26 . 2011-12-14 21:27   2048   ----a-w-   c:\windows\SysWow64\tzres.dll
2011-11-05 03:32 . 2011-12-14 21:27   1638912   ----a-w-   c:\windows\system32\mshtml.tlb
2011-11-05 02:48 . 2011-12-14 21:27   1638912   ----a-w-   c:\windows\SysWow64\mshtml.tlb
.
.
(((((((((((((((((((((((((((((   [email protected]_17.01.08   )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-14 00:14 . 2009-07-14 01:16   51200              c:\windows\twain_32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   51200              c:\windows\twain_32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   27648              c:\windows\SysWOW64\wups.dll
- 2009-07-14 00:14 . 2009-07-14 01:16   87552              c:\windows\SysWOW64\wudriver.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   87552              c:\windows\SysWOW64\wudriver.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   33792              c:\windows\SysWOW64\wuapp.exe
- 2009-07-14 00:14 . 2009-07-14 01:14   33792              c:\windows\SysWOW64\wuapp.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   40448              c:\windows\SysWOW64\wtsapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   51712              c:\windows\SysWOW64\wsnmp32.dll
- 2009-07-13 23:55 . 2009-07-14 01:16   51712              c:\windows\SysWOW64\wsnmp32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   11264              c:\windows\SysWOW64\wshirda.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   36352              c:\windows\SysWOW64\wshbth.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   21504              c:\windows\SysWOW64\wsdchngr.dll
+ 2011-06-20 23:45 . 2010-11-20 12:21   51712              c:\windows\SysWOW64\wscapi.dll
- 2009-07-13 23:37 . 2009-07-14 01:16   47104              c:\windows\SysWOW64\wkscli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   47104              c:\windows\SysWOW64\wkscli.dll
- 2009-07-13 23:27 . 2009-07-14 01:14   28672              c:\windows\SysWOW64\WerFaultSecure.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   28672              c:\windows\SysWOW64\WerFaultSecure.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   89600              c:\windows\SysWOW64\wbem\WmiApRpl.dll
- 2009-07-13 23:31 . 2009-07-14 01:16   89600              c:\windows\SysWOW64\wbem\WmiApRpl.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   66048              c:\windows\SysWOW64\w32tm.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   25600              c:\windows\SysWOW64\vpnikeapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   56832              c:\windows\SysWOW64\vfwwdm32.dll
- 2009-07-14 00:03 . 2009-07-14 01:16   56832              c:\windows\SysWOW64\vfwwdm32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   31744              c:\windows\SysWOW64\utildll.dll
- 2009-07-14 00:02 . 2009-07-14 01:16   31744              c:\windows\SysWOW64\utildll.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   26624              c:\windows\SysWOW64\userinit.exe
+ 2011-06-20 23:45 . 2010-11-20 12:21   81920              c:\windows\SysWOW64\userenv.dll
- 2009-07-13 23:40 . 2009-07-14 01:16   78848              c:\windows\SysWOW64\UserAccountControlSettings.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   78848              c:\windows\SysWOW64\UserAccountControlSettings.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   34304              c:\windows\SysWOW64\unlodctr.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   59392              c:\windows\SysWOW64\unimdmat.dll
- 2009-07-13 23:55 . 2009-07-14 01:16   59392              c:\windows\SysWOW64\unimdmat.dll
- 2009-07-13 23:15 . 2009-07-14 01:14   47616              c:\windows\SysWOW64\tzutil.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   47616              c:\windows\SysWOW64\tzutil.exe
- 2009-07-13 23:34 . 2009-07-14 01:16   65024              c:\windows\SysWOW64\TSpkg.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   65024              c:\windows\SysWOW64\TSpkg.dll
- 2009-07-14 00:02 . 2009-07-14 01:16   36864              c:\windows\SysWOW64\tsgqec.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   36864              c:\windows\SysWOW64\tsgqec.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   12288              c:\windows\SysWOW64\tsbyuv.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   12288              c:\windows\SysWOW64\tsbyuv.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   21504              c:\windows\SysWOW64\TRAPI.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   69632              c:\windows\SysWOW64\tlscsp.dll
- 2009-07-13 23:40 . 2009-07-14 01:16   82944              c:\windows\SysWOW64\thumbcache.dll
+ 2011-06-20 23:45 . 2010-11-20 12:21   82944              c:\windows\SysWOW64\thumbcache.dll
+ 2011-06-20 23:45 . 2009-07-14 01:16   61440              c:\windows\SysWOW64\tcpmonui.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   51200              c:\windows\SysWOW64\takeown.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   14848              c:\windows\SysWOW64\syssetup.dll
- 2011-03-19 16:07 . 2009-12-11 07:36   96768              c:\windows\SysWOW64\sspicli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:08   96768              c:\windows\SysWOW64\sspicli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   90112              c:\windows\SysWOW64\srvcli.dll
- 2009-07-13 23:37 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\srvcli.dll
- 2009-07-13 23:17 . 2009-07-14 01:16   19968              c:\windows\SysWOW64\spopk.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   19968              c:\windows\SysWOW64\spopk.dll
- 2009-07-13 23:17 . 2009-07-14 01:16   61952              c:\windows\SysWOW64\spbcd.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   61952              c:\windows\SysWOW64\spbcd.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   14336              c:\windows\SysWOW64\slwga.dll
- 2011-03-19 16:16 . 2010-12-21 05:38   14336              c:\windows\SysWOW64\slwga.dll
- 2009-07-13 23:14 . 2009-07-14 01:16   19456              c:\windows\SysWOW64\sisbkup.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   19456              c:\windows\SysWOW64\sisbkup.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   10752              c:\windows\SysWOW64\shunimpl.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   35840              c:\windows\SysWOW64\shimgvw.dll
- 2009-07-13 23:39 . 2009-07-14 01:16   35840              c:\windows\SysWOW64\shimgvw.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   20992              c:\windows\SysWOW64\shgina.dll
- 2009-07-13 23:40 . 2009-07-14 01:16   20992              c:\windows\SysWOW64\shgina.dll
+ 2011-08-19 17:49 . 2011-07-16 04:25   25600              c:\windows\SysWOW64\setup16.exe
- 2011-03-19 16:16 . 2009-12-22 08:23   25600              c:\windows\SysWOW64\setup16.exe
+ 2011-06-20 23:45 . 2010-11-20 12:20   67584              c:\windows\SysWOW64\Setup\pbkmigr.dll
- 2011-03-19 16:07 . 2009-12-11 07:39   22016              c:\windows\SysWOW64\secur32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   22016              c:\windows\SysWOW64\secur32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   85504              c:\windows\SysWOW64\secproc_ssp_isv.dll
- 2011-03-19 16:16 . 2010-01-18 23:29   85504              c:\windows\SysWOW64\secproc_ssp_isv.dll
- 2011-03-19 16:16 . 2010-01-18 23:29   85504              c:\windows\SysWOW64\secproc_ssp.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   85504              c:\windows\SysWOW64\secproc_ssp.dll
- 2011-06-29 16:04 . 2011-05-04 04:52   86528              c:\windows\SysWOW64\SearchFilterHost.exe
+ 2011-06-29 16:04 . 2011-05-04 04:28   86528              c:\windows\SysWOW64\SearchFilterHost.exe
- 2009-07-13 23:37 . 2009-07-14 01:16   17408              c:\windows\SysWOW64\schedcli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   17408              c:\windows\SysWOW64\schedcli.dll
+ 2011-06-20 23:45 . 2010-11-20 12:21   51200              c:\windows\SysWOW64\samcli.dll
- 2009-07-13 23:41 . 2009-07-14 01:14   50688              c:\windows\SysWOW64\runonce.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   50688              c:\windows\SysWOW64\runonce.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   37376              c:\windows\SysWOW64\rtutils.dll
- 2011-03-19 16:08 . 2010-06-19 06:23   37376              c:\windows\SysWOW64\rtutils.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   46080              c:\windows\SysWOW64\RpcRtRemote.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   98816              c:\windows\SysWOW64\Robocopy.exe
- 2009-07-13 23:21 . 2009-07-14 01:16   71168              c:\windows\SysWOW64\resutils.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   71168              c:\windows\SysWOW64\resutils.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   37888              c:\windows\SysWOW64\relog.exe
- 2009-07-13 23:43 . 2009-07-14 01:14   83968              c:\windows\SysWOW64\RegisterIEPKEYs.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   83968              c:\windows\SysWOW64\RegisterIEPKEYs.exe
+ 2011-06-20 23:45 . 2010-11-20 12:21   72192              c:\windows\SysWOW64\regapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   22016              c:\windows\SysWOW64\ReAgentc.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   21504              c:\windows\SysWOW64\rdprefdrvapi.dll
- 2009-07-14 00:01 . 2009-07-14 01:16   21504              c:\windows\SysWOW64\rdprefdrvapi.dll
- 2009-07-14 00:02 . 2009-07-14 01:16   52224              c:\windows\SysWOW64\rdpd3d.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   52224              c:\windows\SysWOW64\rdpd3d.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   69632              c:\windows\SysWOW64\rastapi.dll
- 2009-07-13 23:54 . 2009-07-14 01:16   69632              c:\windows\SysWOW64\rastapi.dll
- 2009-07-13 23:52 . 2009-07-14 01:16   80896              c:\windows\SysWOW64\QUTIL.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:21   80896              c:\windows\SysWOW64\QUTIL.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:20   99328              c:\windows\SysWOW64\QSVRMGMT.DLL
- 2009-07-13 23:52 . 2009-07-14 01:16   99328              c:\windows\SysWOW64\QSVRMGMT.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:20   71680              c:\windows\SysWOW64\QCLIPROV.DLL
- 2009-07-13 23:52 . 2009-07-14 01:16   71680              c:\windows\SysWOW64\QCLIPROV.DLL
+ 2011-06-20 23:45 . 2010-11-20 12:17   28672              c:\windows\SysWOW64\proquota.exe
+ 2011-04-30 16:19 . 2011-02-18 05:39   31232              c:\windows\SysWOW64\prevhost.exe
- 2011-04-30 16:19 . 2011-02-18 05:33   31232              c:\windows\SysWOW64\prevhost.exe
- 2011-03-19 03:11 . 2009-11-25 19:47   99176              c:\windows\SysWOW64\PresentationHostProxy.dll
+ 2011-06-20 23:45 . 2010-11-05 01:53   99176              c:\windows\SysWOW64\PresentationHostProxy.dll
+ 2011-06-20 23:44 . 2010-11-20 12:05   35328              c:\windows\SysWOW64\pifmgr.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   17408              c:\windows\SysWOW64\perfts.dll
- 2009-07-14 00:02 . 2009-07-14 01:16   17408              c:\windows\SysWOW64\perfts.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   46592              c:\windows\SysWOW64\pdhui.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   77824              c:\windows\SysWOW64\olethk32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   90112              c:\windows\SysWOW64\olepro32.dll
- 2009-07-13 23:43 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\olepro32.dll
+ 2011-08-19 17:49 . 2011-06-15 08:55   86016              c:\windows\SysWOW64\odbccu32.dll
- 2009-07-14 00:12 . 2009-07-14 01:16   86016              c:\windows\SysWOW64\odbccu32.dll
+ 2011-08-19 17:49 . 2011-06-15 08:55   81920              c:\windows\SysWOW64\odbccr32.dll
- 2009-07-14 00:12 . 2009-07-14 01:16   40960              c:\windows\SysWOW64\odbcconf.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   40960              c:\windows\SysWOW64\odbcconf.dll
+ 2011-08-19 17:49 . 2011-07-16 04:29   14336              c:\windows\SysWOW64\ntvdm64.dll
- 2011-03-19 16:16 . 2009-12-22 08:24   14336              c:\windows\SysWOW64\ntvdm64.dll
- 2009-07-13 23:31 . 2009-07-14 01:16   69120              c:\windows\SysWOW64\ntlanman.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   69120              c:\windows\SysWOW64\ntlanman.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   98304              c:\windows\SysWOW64\nslookup.exe
+ 2011-06-20 23:44 . 2010-11-20 12:06   69120              c:\windows\SysWOW64\nlsbres.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   52224              c:\windows\SysWOW64\nlaapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   22528              c:\windows\SysWOW64\netutils.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   25600              c:\windows\SysWOW64\netiougc.exe
+ 2011-06-20 23:45 . 2010-11-05 01:58   49488              c:\windows\SysWOW64\netfxperf.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   24064              c:\windows\SysWOW64\netbtugc.exe
- 2009-07-13 23:53 . 2009-07-14 01:14   24064              c:\windows\SysWOW64\netbtugc.exe
- 2009-07-13 23:37 . 2009-07-14 01:16   56832              c:\windows\SysWOW64\netapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   56832              c:\windows\SysWOW64\netapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   60928              c:\windows\SysWOW64\ncryptui.dll
- 2009-07-13 23:32 . 2009-07-14 01:16   60928              c:\windows\SysWOW64\ncryptui.dll
+ 2011-06-20 23:45 . 2010-11-20 12:20   78848              c:\windows\SysWOW64\nci.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   68096              c:\windows\SysWOW64\napdsnap.dll
- 2009-07-13 23:53 . 2009-07-14 01:22   46080              c:\windows\SysWOW64\NAPCRYPT.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:36   46080              c:\windows\SysWOW64\NAPCRYPT.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:17   70656              c:\windows\SysWOW64\MuiUnattend.exe
- 2009-07-13 23:13 . 2009-07-14 01:14   70656              c:\windows\SysWOW64\MuiUnattend.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   13312              c:\windows\SysWOW64\muifontsetup.dll
- 2009-07-13 23:25 . 2009-07-14 01:15   13312              c:\windows\SysWOW64\muifontsetup.dll
+ 2011-06-20 23:44 . 2010-11-05 01:58   11600              c:\windows\SysWOW64\MUI\0409\mscorees.dll
- 2011-03-19 03:11 . 2009-11-25 19:47   11600              c:\windows\SysWOW64\MUI\0409\mscorees.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   22528              c:\windows\SysWOW64\msyuv.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   31744              c:\windows\SysWOW64\msvidc32.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   31744              c:\windows\SysWOW64\msvidc32.dll
- 2011-06-29 16:04 . 2011-05-04 04:52   59392              c:\windows\SysWOW64\msscntrs.dll
+ 2011-06-29 16:04 . 2011-05-04 04:32   59392              c:\windows\SysWOW64\msscntrs.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   13312              c:\windows\SysWOW64\msrle32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   13312              c:\windows\SysWOW64\msrle32.dll
+ 2011-10-25 18:39 . 1998-07-06 07:00   23552              c:\windows\SysWOW64\MSMPIDE.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:17   73216              c:\windows\SysWOW64\msiexec.exe
- 2009-07-13 23:31 . 2009-07-14 01:14   73216              c:\windows\SysWOW64\msiexec.exe
- 2011-06-16 18:30 . 2011-04-22 19:31   67072              c:\windows\SysWOW64\mshtmled.dll
+ 2011-12-14 21:27 . 2011-11-05 04:31   67072              c:\windows\SysWOW64\mshtmled.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   12800              c:\windows\SysWOW64\msfeedssync.exe
- 2011-06-16 18:30 . 2011-04-22 19:30   12800              c:\windows\SysWOW64\msfeedssync.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   64512              c:\windows\SysWOW64\msfeedsbs.dll
- 2011-06-16 18:30 . 2011-04-22 19:31   64512              c:\windows\SysWOW64\msfeedsbs.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   30720              c:\windows\SysWOW64\msdmo.dll
+ 2011-06-20 23:44 . 2010-11-05 01:58   80720              c:\windows\SysWOW64\mscories.dll
- 2009-07-13 20:46 . 2009-06-10 21:23   80720              c:\windows\SysWOW64\mscories.dll
+ 2011-06-20 23:45 . 2010-11-20 12:19   34304              c:\windows\SysWOW64\msasn1.dll
+ 2011-06-20 23:45 . 2010-11-20 12:19   42496              c:\windows\SysWOW64\mimefilt.dll
- 2009-07-13 23:42 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-windows-shmig\shmig.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   90112              c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-windows-shmig\shmig.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   90112              c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-shmig-DL\shmig.dll
- 2009-07-13 23:42 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-shmig-DL\shmig.dll
+ 2011-06-20 23:45 . 2010-11-20 12:21   67584              c:\windows\SysWOW64\migration\WSMT\rras\replacementmanifests\Microsoft-Windows-RasApi-MigPlugin\pbkmigr-Mig.dll
+ 2011-12-14 21:27 . 2011-11-05 04:35   68608              c:\windows\SysWOW64\migration\WininetPlugin.dll
- 2011-06-16 18:30 . 2011-04-22 19:31   68608              c:\windows\SysWOW64\migration\WininetPlugin.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   90112              c:\windows\SysWOW64\migration\shmig.dll
- 2009-07-13 23:41 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\migration\shmig.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   36352              c:\windows\SysWOW64\mciqtz32.dll
- 2009-07-14 00:03 . 2009-07-14 01:15   36352              c:\windows\SysWOW64\mciqtz32.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   84480              c:\windows\SysWOW64\mciavi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   84480              c:\windows\SysWOW64\mciavi32.dll
- 2009-07-14 00:12 . 2009-07-14 01:15   76800              c:\windows\SysWOW64\mapistub.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   76800              c:\windows\SysWOW64\mapistub.dll
- 2009-07-14 00:12 . 2009-07-14 01:15   76800              c:\windows\SysWOW64\mapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   76800              c:\windows\SysWOW64\mapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   41984              c:\windows\SysWOW64\luainstall.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   21504              c:\windows\SysWOW64\lsmproxy.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   82944              c:\windows\SysWOW64\logman.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   95232              c:\windows\SysWOW64\logagent.exe
- 2009-07-14 00:08 . 2009-07-14 01:14   95232              c:\windows\SysWOW64\logagent.exe
- 2011-06-16 18:30 . 2011-04-22 19:31   44544              c:\windows\SysWOW64\licmgr10.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   44544              c:\windows\SysWOW64\licmgr10.dll
- 2011-06-16 18:30 . 2011-04-22 19:31   48128              c:\windows\SysWOW64\jsproxy.dll
+ 2011-12-14 21:27 . 2011-11-05 04:30   48128              c:\windows\SysWOW64\jsproxy.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   50176              c:\windows\SysWOW64\iyuv_32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   50176              c:\windows\SysWOW64\iyuv_32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   86528              c:\windows\SysWOW64\isoburn.exe
- 2009-07-13 23:40 . 2009-07-14 01:14   86528              c:\windows\SysWOW64\isoburn.exe
- 2009-07-13 23:46 . 2009-07-14 01:15   28672              c:\windows\SysWOW64\iscsium.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   28672              c:\windows\SysWOW64\iscsium.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   96256              c:\windows\SysWOW64\inseng.dll
- 2009-07-13 23:42 . 2009-07-14 01:15   96256              c:\windows\SysWOW64\inseng.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   52736              c:\windows\SysWOW64\inetmib1.dll
- 2009-07-13 23:42 . 2009-07-14 01:15   34304              c:\windows\SysWOW64\imgutil.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   34304              c:\windows\SysWOW64\imgutil.dll
- 2009-07-13 23:26 . 2009-07-14 01:14   90112              c:\windows\SysWOW64\IME\IMESC5\IMSCPROP.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   90112              c:\windows\SysWOW64\IME\IMESC5\IMSCPROP.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   82944              c:\windows\SysWOW64\iccvid.dll
- 2011-03-19 16:08 . 2010-07-29 06:30   82944              c:\windows\SysWOW64\iccvid.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   78848              c:\windows\SysWOW64\iasacct.dll
- 2009-07-13 23:12 . 2009-07-14 01:15   34816              c:\windows\SysWOW64\httpapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   34816              c:\windows\SysWOW64\httpapi.dll
+ 2011-06-20 23:45 . 2010-11-20 12:19   66560              c:\windows\SysWOW64\hbaapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   42496              c:\windows\SysWOW64\ftp.exe
- 2009-07-13 23:55 . 2009-07-14 01:14   42496              c:\windows\SysWOW64\ftp.exe
- 2011-04-30 16:19 . 2011-03-11 05:37   74240              c:\windows\SysWOW64\fsutil.exe
+ 2011-04-30 16:19 . 2011-03-11 05:31   74240              c:\windows\SysWOW64\fsutil.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   98304              c:\windows\SysWOW64\fphc.dll
+ 2011-03-19 16:07 . 2010-09-30 06:47   70656              c:\windows\SysWOW64\fontsub.dll
- 2011-03-19 16:07 . 2009-10-19 14:10   70656              c:\windows\SysWOW64\fontsub.dll
- 2009-07-13 23:25 . 2009-07-14 01:15   93696              c:\windows\SysWOW64\fms.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   93696              c:\windows\SysWOW64\fms.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   62976              c:\windows\SysWOW64\findstr.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   59904              c:\windows\SysWOW64\fdeploy.dll
- 2009-07-14 05:35 . 2009-07-14 02:11   69632              c:\windows\SysWOW64\en\AuthFWWizFwk.Resources.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   69632              c:\windows\SysWOW64\en\AuthFWWizFwk.Resources.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   22528              c:\windows\SysWOW64\elsTrans.dll
- 2009-07-13 23:56 . 2009-07-14 01:15   94208              c:\windows\SysWOW64\eappgnui.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   94208              c:\windows\SysWOW64\eappgnui.dll
+ 2003-04-02 04:30 . 2003-04-02 04:30   11088              c:\windows\SysWOW64\DWLNdi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   30208              c:\windows\SysWOW64\dsauth.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   82432              c:\windows\SysWOW64\dot3cfg.dll
+ 2011-06-20 23:45 . 2010-11-20 12:18   91136              c:\windows\SysWOW64\dot3api.dll
+ 2011-04-30 16:21 . 2011-03-03 05:36   28672              c:\windows\SysWOW64\dnscacheugc.exe
- 2011-04-30 16:21 . 2011-03-03 05:27   28672              c:\windows\SysWOW64\dnscacheugc.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   89600              c:\windows\SysWOW64\Dism\LogProvider.dll
- 2009-07-13 23:18 . 2009-07-14 01:15   89600              c:\windows\SysWOW64\Dism\LogProvider.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   49152              c:\windows\SysWOW64\Dism\FolderProvider.dll
- 2009-07-13 23:18 . 2009-07-14 01:15   49152              c:\windows\SysWOW64\Dism\FolderProvider.dll
- 2009-07-13 23:18 . 2009-07-14 01:14   82944              c:\windows\SysWOW64\Dism\DismHost.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   82944              c:\windows\SysWOW64\Dism\DismHost.exe
+ 2011-06-20 23:44 . 2010-11-20 12:18   50688              c:\windows\SysWOW64\Dism\DismCorePS.dll
- 2011-06-29 16:05 . 2011-05-24 10:34   44544              c:\windows\SysWOW64\devrtl.dll
+ 2011-06-29 16:05 . 2011-05-24 10:40   44544              c:\windows\SysWOW64\devrtl.dll
- 2011-06-29 16:05 . 2011-05-24 10:34   64512              c:\windows\SysWOW64\devobj.dll
+ 2011-06-29 16:05 . 2011-05-24 10:40   64512              c:\windows\SysWOW64\devobj.dll
+ 2011-06-20 23:45 . 2010-11-20 12:18   80384              c:\windows\SysWOW64\davclnt.dll
- 2011-03-19 16:16 . 2010-12-21 05:34   80384              c:\windows\SysWOW64\davclnt.dll
- 2009-07-13 23:14 . 2009-07-14 01:15   23040              c:\windows\SysWOW64\cscdll.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   23040              c:\windows\SysWOW64\cscdll.dll
- 2009-07-13 23:14 . 2009-07-14 01:15   34816              c:\windows\SysWOW64\cscapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   34816              c:\windows\SysWOW64\cscapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   17408              c:\windows\SysWOW64\credssp.dll
- 2009-07-14 04:54 . 2011-07-05 17:00   16384              c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-01-30 19:13   16384              c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-01-30 19:13   32768              c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2011-07-05 17:00   32768              c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-01-30 19:13   16384              c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-07-05 17:00   16384              c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-06-20 23:44 . 2010-11-20 12:17   84992              c:\windows\SysWOW64\cmstp.exe
- 2009-07-13 23:54 . 2009-07-14 01:14   84992              c:\windows\SysWOW64\cmstp.exe
+ 2011-06-20 23:44 . 2010-11-20 12:18   65024              c:\windows\SysWOW64\CertPolEng.dll
- 2009-07-13 23:36 . 2009-07-14 01:15   65024              c:\windows\SysWOW64\CertPolEng.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   66560              c:\windows\SysWOW64\cca.dll
- 2009-07-14 00:05 . 2009-07-14 01:15   66560              c:\windows\SysWOW64\cca.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   73216              c:\windows\SysWOW64\cabinet.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   11264              c:\windows\SysWOW64\C_ISCII.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:18   10752              c:\windows\SysWOW64\browseui.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   41984              c:\windows\SysWOW64\browcli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   19456              c:\windows\SysWOW64\bitsperf.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   28160              c:\windows\SysWOW64\AzSqlExt.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   91648              c:\windows\SysWOW64\avifil32.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   91648              c:\windows\SysWOW64\avifil32.dll
+ 2011-04-30 16:21 . 2011-02-19 06:30   34304              c:\windows\SysWOW64\atmlib.dll
- 2011-04-30 16:21 . 2011-02-19 05:32   34304              c:\windows\SysWOW64\atmlib.dll
- 2011-03-19 16:15 . 2010-03-05 07:42   67584              c:\windows\SysWOW64\asycfilt.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   67584              c:\windows\SysWOW64\asycfilt.dll
- 2009-07-14 00:03 . 2009-07-14 01:14   70656              c:\windows\SysWOW64\amstream.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   70656              c:\windows\SysWOW64\amstream.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   45568              c:\windows\SysWOW64\acppage.dll
- 2009-07-13 23:26 . 2009-07-14 01:14   45568              c:\windows\SysWOW64\acppage.dll
- 2009-07-14 00:12 . 2009-07-14 01:41   48640              c:\windows\system32\wwanprotdim.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   48640              c:\windows\system32\wwanprotdim.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   37376              c:\windows\system32\wups2.dll
- 2009-07-14 00:34 . 2009-07-14 01:41   37376              c:\windows\system32\wups2.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   33280              c:\windows\system32\wups.dll
- 2009-07-14 00:34 . 2009-07-14 01:41   98304              c:\windows\system32\wudriver.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   98304              c:\windows\system32\wudriver.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   78848              c:\windows\system32\WUDFSvc.dll
- 2009-07-14 00:06 . 2009-07-14 01:41   44544              c:\windows\system32\WUDFCoinstaller.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   44544              c:\windows\system32\WUDFCoinstaller.dll
- 2009-07-14 00:34 . 2009-07-14 01:39   51200              c:\windows\system32\wuauclt.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   51200              c:\windows\system32\wuauclt.exe
- 2009-07-14 00:34 . 2009-07-14 01:39   36864              c:\windows\system32\wuapp.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   36864              c:\windows\system32\wuapp.exe
- 2009-07-14 00:10 . 2009-07-14 01:41   67072              c:\windows\system32\wsnmp32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   67072              c:\windows\system32\wsnmp32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   13824              c:\windows\system32\wshirda.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   47104              c:\windows\system32\wshbth.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   26112              c:\windows\system32\wsdchngr.dll
- 2011-03-19 16:16 . 2010-12-21 06:16   97280              c:\windows\system32\wscsvc.dll
+ 2009-07-13 23:48 . 2009-07-14 01:41   97280              c:\windows\system32\wscsvc.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   63488              c:\windows\system32\wscapi.dll
- 2009-07-13 23:26 . 2009-07-14 01:41   13312              c:\windows\system32\wow64cpu.dll
+ 2011-08-19 17:49 . 2011-07-16 05:41   13312              c:\windows\system32\wow64cpu.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   71680              c:\windows\system32\wkscli.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   71680              c:\windows\system32\wkscli.dll
- 2009-07-13 23:40 . 2009-07-14 01:39   26112              c:\windows\system32\WerFaultSecure.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   26112              c:\windows\system32\WerFaultSecure.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   36352              c:\windows\system32\wdiasqmmodule.dll
+ 2011-03-19 16:13 . 2012-01-24 23:58   40500              c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-01-27 20:36   45380              c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-03-19 15:57 . 2012-01-27 20:36   11988              c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-3909975552-3371312792-2741729148-1000_UserData.bin
+ 2011-06-20 23:44 . 2010-11-20 13:27   61952              c:\windows\system32\WavDest.dll
- 2009-07-14 00:25 . 2009-07-14 01:41   61952              c:\windows\system32\WavDest.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   61952              c:\windows\system32\vss_ps.dll
- 2009-07-13 23:36 . 2009-07-14 01:41   61952              c:\windows\system32\vss_ps.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   38912              c:\windows\system32\vpnikeapi.dll
- 2009-07-14 00:18 . 2009-07-14 01:41   68096              c:\windows\system32\vfwwdm32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   68096              c:\windows\system32\vfwwdm32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:25   30720              c:\windows\system32\userinit.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   84480              c:\windows\system32\UserAccountControlSettings.dll
- 2009-07-14 00:10 . 2009-07-14 01:41   73216              c:\windows\system32\unimdmat.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   73216              c:\windows\system32\unimdmat.dll
- 2009-07-13 23:35 . 2009-07-14 01:41   59904              c:\windows\system32\umb.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   59904              c:\windows\system32\umb.dll
+ 2011-06-20 23:44 . 2010-11-20 13:25   58368              c:\windows\system32\tzutil.exe
+ 2011-06-20 23:46 . 2010-11-20 13:27   12288              c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   40960              c:\windows\system32\TsUsbGDCoInstaller.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   86016              c:\windows\system32\TSpkg.dll
- 2009-07-13 23:50 . 2009-07-14 01:41   86016              c:\windows\system32\TSpkg.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   44032              c:\windows\system32\tsgqec.dll
- 2009-07-14 00:17 . 2009-07-14 01:41   44032              c:\windows\system32\tsgqec.dll
- 2011-03-19 16:07 . 2009-12-19 09:50   14848              c:\windows\system32\tsbyuv.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   14848              c:\windows\system32\tsbyuv.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   21504              c:\windows\system32\TRAPI.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   73728              c:\windows\system32\tlscsp.dll
- 2009-07-14 00:16 . 2009-07-14 01:41   73728              c:\windows\system32\tlscsp.dll
+ 2011-06-20 23:45 . 2010-11-20 13:25   69120              c:\windows\system32\taskhost.exe
- 2009-07-13 23:31 . 2009-07-14 01:39   69120              c:\windows\system32\taskhost.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   63488              c:\windows\system32\takeown.exe
+ 2011-06-20 23:45 . 2010-11-20 13:27   92672              c:\windows\system32\TabSvc.dll
- 2009-07-14 00:03 . 2009-07-14 01:39   78848              c:\windows\system32\tabcal.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   78848              c:\windows\system32\tabcal.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   17408              c:\windows\system32\syssetup.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   29184              c:\windows\system32\sspisrv.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   13312              c:\windows\system32\sscore.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   13312              c:\windows\system32\sscore.dll
- 2009-07-13 23:29 . 2009-07-14 01:41   18944              c:\windows\system32\spopk.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   18944              c:\windows\system32\spopk.dll
- 2009-07-14 00:39 . 2009-07-14 01:41   39424              c:\windows\system32\spool\prtprocs\x64\winprint.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   39424              c:\windows\system32\spool\prtprocs\x64\winprint.dll
+ 2012-01-01 20:35 . 2009-05-07 11:16   93696              c:\windows\system32\spool\drivers\x64\3\hpfrs092.dll
- 2011-05-02 19:33 . 2009-05-07 11:16   93696              c:\windows\system32\spool\drivers\x64\3\hpfrs092.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   78848              c:\windows\system32\spbcd.dll
- 2009-07-13 23:29 . 2009-07-14 01:41   78848              c:\windows\system32\spbcd.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   15360              c:\windows\system32\slwga.dll
- 2011-03-19 16:16 . 2010-12-21 06:15   15360              c:\windows\system32\slwga.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   24064              c:\windows\system32\sisbkup.dll
- 2009-07-13 23:23 . 2009-07-14 01:41   24064              c:\windows\system32\sisbkup.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   11264              c:\windows\system32\shunimpl.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   37376              c:\windows\system32\shimgvw.dll
- 2009-07-13 23:55 . 2009-07-14 01:41   37376              c:\windows\system32\shimgvw.dll
- 2009-07-13 23:55 . 2009-07-14 01:41   28160              c:\windows\system32\shgina.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   28160              c:\windows\system32\shgina.dll
+ 2011-06-20 23:45 . 2010-11-20 13:25   88576              c:\windows\system32\setupcl.exe
+ 2011-06-20 23:45 . 2010-11-20 13:27   57856              c:\windows\system32\Setup\pbkmigr.dll
+ 2011-04-30 16:21 . 2010-11-20 13:27   63488              c:\windows\system32\setbcdlocale.dll
- 2009-07-13 23:50 . 2009-07-14 01:41   28160              c:\windows\system32\secur32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   28160              c:\windows\system32\secur32.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   30720              c:\windows\system32\seclogon.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   30720              c:\windows\system32\seclogon.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   24064              c:\windows\system32\schedcli.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   24064              c:\windows\system32\schedcli.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   67584              c:\windows\system32\samcli.dll
- 2009-07-13 23:57 . 2009-07-14 01:39   56832              c:\windows\system32\runonce.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   56832              c:\windows\system32\runonce.exe
- 2011-03-19 16:08 . 2010-06-19 06:53   52224              c:\windows\system32\rtutils.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   52224              c:\windows\system32\rtutils.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   65536              c:\windows\system32\RpcRtRemote.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   10752              c:\windows\system32\riched32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:25   51712              c:\windows\system32\repair-bde.exe
- 2009-07-13 23:22 . 2009-07-14 01:39   51712              c:\windows\system32\repair-bde.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   43008              c:\windows\system32\relog.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   98816              c:\windows\system32\RegisterIEPKEYs.exe
- 2009-07-13 23:58 . 2009-07-14 01:39   98816              c:\windows\system32\RegisterIEPKEYs.exe
+ 2011-06-20 23:45 . 2010-11-20 13:27   95232              c:\windows\system32\regapi.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   77312              c:\windows\system32\rdpwsx.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   23040              c:\windows\system32\rdprefdrvapi.dll
- 2009-07-14 00:16 . 2009-07-14 01:41   23040              c:\windows\system32\rdprefdrvapi.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   68096              c:\windows\system32\rdpd3d.dll
- 2009-07-14 00:17 . 2009-07-14 01:41   68096              c:\windows\system32\rdpd3d.dll
- 2009-07-14 00:17 . 2009-07-14 01:41   10240              c:\windows\system32\rdpcfgex.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   10240              c:\windows\system32\rdpcfgex.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   79872              c:\windows\system32\QCLIPROV.DLL
- 2009-07-14 00:07 . 2009-07-14 01:41   79872              c:\windows\system32\QCLIPROV.DLL
+ 2011-06-20 23:44 . 2010-11-20 13:25   31744              c:\windows\system32\proquota.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   33792              c:\windows\system32\profprov.dll
- 2009-07-14 00:39 . 2009-07-14 01:41   48128              c:\windows\system32\PrintIsolationProxy.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   48128              c:\windows\system32\PrintIsolationProxy.dll
- 2011-04-30 16:19 . 2011-02-18 06:33   31232              c:\windows\system32\prevhost.exe
+ 2011-04-30 16:19 . 2011-02-18 10:51   31232              c:\windows\system32\prevhost.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   62976              c:\windows\system32\PnPUnattend.exe
+ 2011-06-20 23:44 . 2010-11-20 13:12   35328              c:\windows\system32\pifmgr.dll
+ 2011-10-25 18:39 . 2005-03-12 07:07   87040              c:\windows\system32\pdfcmnnt.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   57856              c:\windows\system32\oobe\spprgrss.dll
- 2009-07-13 23:57 . 2009-07-14 01:39   71168              c:\windows\system32\oobe\msoobe.exe
+ 2011-06-20 23:44 . 2010-11-20 13:24   71168              c:\windows\system32\oobe\msoobe.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   53248              c:\windows\system32\odbcconf.dll
- 2009-07-14 00:28 . 2009-07-14 01:41   53248              c:\windows\system32\odbcconf.dll
+ 2011-08-19 17:49 . 2011-07-16 05:39   16384              c:\windows\system32\ntvdm64.dll
- 2009-07-13 23:26 . 2009-07-14 01:41   16384              c:\windows\system32\ntvdm64.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   15360              c:\windows\system32\nrpsrv.dll
+ 2011-06-20 23:44 . 2010-11-20 13:13   69120              c:\windows\system32\nlsbres.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   70656              c:\windows\system32\nlaapi.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   29184              c:\windows\system32\netutils.dll
+ 2011-06-20 23:46 . 2010-11-05 01:57   48976              c:\windows\system32\netfxperf.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   72704              c:\windows\system32\netapi32.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   72704              c:\windows\system32\netapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   66048              c:\windows\system32\ncryptui.dll
- 2009-07-13 23:49 . 2009-07-14 01:41   66048              c:\windows\system32\ncryptui.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   90112              c:\windows\system32\nci.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   72192              c:\windows\system32\napdsnap.dll
- 2009-07-14 00:09 . 2009-07-14 01:51   50176              c:\windows\system32\NAPCRYPT.DLL
+ 2011-06-20 23:44 . 2010-11-20 13:44   50176              c:\windows\system32\NAPCRYPT.DLL
+ 2011-06-20 23:44 . 2010-11-20 13:25   51712              c:\windows\system32\MultiDigiMon.exe
- 2009-07-14 00:03 . 2009-07-14 01:39   51712              c:\windows\system32\MultiDigiMon.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   16896              c:\windows\system32\muifontsetup.dll
You are much appreciated..     Thank you ,

SuperDave

  • Malware Removal Specialist
  • Moderator


  • Genius
  • Thanked: 996
  • Certifications: List
  • Experience: Expert
  • OS: Windows 8
Re: I cannot access the internet.
« Reply #22 on: January 30, 2012, 04:24:40 PM »
The whole log didn't post. Please post the other part. You should be able to find it in the C:\ComboFix folder.
Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8.1 with a dual boot to Windows XP  Home with SP3, Comodo  with Windows Firewall & Windows Defender

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #23 on: January 31, 2012, 10:40:31 AM »
OK, I'll try again:

ComboFix 12-01-30.02 - JIM 01/30/2012  12:01:31.2.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.4095.2690 [GMT -7:00]
Running from: c:\users\JIM\Desktop\PCHelpForum.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: PC Tools Firewall Plus *Disabled* {175D0B73-9F8F-2CA9-8BF1-62277A276DC9}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\CouponAlert_2pEI
c:\program files (x86)\DailyBibleGuideEI
c:\program files (x86)\DictionaryBoss\bar
c:\program files (x86)\DictionaryBoss\bar\Settings\s_pid.dat
c:\program files (x86)\DictionaryBossEI
c:\windows\security\Database\tmp.edb
F:\setup.exe
.
.
(((((((((((((((((((((((((   Files Created from 2011-12-28 to 2012-01-30  )))))))))))))))))))))))))))))))
.
.
2012-01-30 19:44 . 2012-01-30 19:44   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT7292.tmp
2012-01-30 19:16 . 2012-01-30 19:16   69000   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{8C8B97EF-6072-4622-8018-0A71D348CBCA}\offreg.dll
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Terri\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Public\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Guest\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Default\AppData\Local\temp
2012-01-27 17:17 . 2012-01-27 17:17   --------   d-----w-   c:\users\JIM\AppData\Roaming\SUPERAntiSpyware.com
2012-01-27 17:16 . 2012-01-27 17:17   --------   d-----w-   c:\program files\SUPERAntiSpyware
2012-01-25 19:56 . 2012-01-25 19:58   --------   d-----w-   c:\users\JIM\AppData\Roaming\DriverCure
2012-01-25 19:55 . 2012-01-25 19:56   --------   d-----w-   c:\programdata\DriverCure
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\programdata\ParetoLogic
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\program files (x86)\Common Files\ParetoLogic
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\program files (x86)\ParetoLogic
2012-01-25 19:19 . 2004-10-22 20:42   577536   ----a-w-   c:\windows\SysWow64\ANIWZCS2.dll
2012-01-25 19:19 . 2004-10-22 20:42   131072   ----a-w-   c:\windows\SysWow64\WlanApp.dll
2012-01-25 19:19 . 2004-10-22 20:42   1163337   ----a-w-   c:\windows\SysWow64\odSupp_M.dll
2012-01-25 19:19 . 2004-10-22 20:42   57407   ----a-w-   c:\windows\SysWow64\ANICtl.dll
2012-01-25 19:19 . 2004-10-22 20:42   49152   ----a-w-   c:\windows\SysWow64\AQCKGen.dll
2012-01-25 19:19 . 2004-10-22 20:42   192512   ----a-w-   c:\windows\SysWow64\aIPH.dll
2012-01-25 19:19 . 2012-01-25 19:19   --------   d-----w-   c:\program files (x86)\ANI
2012-01-25 19:19 . 2004-07-27 18:20   36864   ----a-w-   c:\windows\SysWow64\ANIOApi.dll
2012-01-25 19:19 . 2004-07-27 18:20   28205   ----a-w-   c:\windows\SysWow64\ANIO.sys
2012-01-25 19:19 . 2004-07-27 18:20   16997   ----a-w-   c:\windows\SysWow64\ANIO.VXD
2012-01-25 19:19 . 2004-07-27 18:20   11904   ----a-w-   c:\windows\SysWow64\anio4.sys
2012-01-25 19:19 . 2012-01-25 19:19   --------   d-----w-   c:\program files (x86)\D-Link
2012-01-24 23:44 . 2012-01-24 23:44   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT1ECD.tmp
2012-01-24 23:42 . 2012-01-24 23:42   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT606D.tmp
2012-01-24 23:26 . 2012-01-24 23:26   0   ---ha-w-   c:\users\JIM\AppData\Local\BITCBF.tmp
2012-01-24 23:24 . 2012-01-24 23:24   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT474E.tmp
2012-01-24 22:57 . 2011-11-21 11:40   8822856   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{8C8B97EF-6072-4622-8018-0A71D348CBCA}\mpengine.dll
2012-01-23 23:32 . 2012-01-24 23:37   --------   d-----w-   c:\windows\system32\SPReview
2012-01-23 23:32 . 2012-01-23 23:32   --------   d-----w-   c:\windows\system32\EventProviders
2012-01-23 23:30 . 2012-01-23 23:30   737072   ----a-w-   c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2012-01-23 23:30 . 2012-01-23 23:30   4283672   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2012-01-23 23:30 . 2012-01-23 23:30   42776   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2012-01-23 23:30 . 2012-01-23 23:30   539984   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-01-17 16:35 . 2012-01-17 16:35   --------   d-----w-   c:\users\JIM\AppData\Roaming\FCTB000060231
2012-01-11 15:09 . 2011-10-26 05:25   1572864   ----a-w-   c:\windows\system32\quartz.dll
2012-01-11 15:09 . 2011-10-26 04:32   514560   ----a-w-   c:\windows\SysWow64\qdvd.dll
2012-01-11 15:09 . 2011-10-26 04:32   1328128   ----a-w-   c:\windows\SysWow64\quartz.dll
2012-01-11 15:09 . 2011-10-26 05:25   366592   ----a-w-   c:\windows\system32\qdvd.dll
2012-01-11 15:09 . 2011-11-17 06:41   1731920   ----a-w-   c:\windows\system32\ntdll.dll
2012-01-11 15:09 . 2011-11-17 05:38   1292080   ----a-w-   c:\windows\SysWow64\ntdll.dll
2012-01-11 15:09 . 2011-11-19 14:58   77312   ----a-w-   c:\windows\system32\packager.dll
2012-01-11 15:09 . 2011-11-19 14:01   67072   ----a-w-   c:\windows\SysWow64\packager.dll
2012-01-10 18:49 . 2012-01-10 18:49   --------   d-----w-   c:\program files (x86)\Dogpile Bundle Toolbar
2012-01-10 18:49 . 2012-01-10 18:49   --------   d-----w-   c:\users\JIM\AppData\Local\The Weather Channel
2012-01-10 18:48 . 2012-01-27 17:51   --------   d-----w-   c:\program files (x86)\EpicPlay
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-30 19:50 . 2012-01-30 19:50   0   ---ha-w-   c:\users\JIM\AppData\Local\BITA6AD.tmp
2012-01-25 18:37 . 2011-02-18 23:38   639   ----a-w-   c:\windows\uninstallstickies.bat
2012-01-23 23:41 . 2009-07-14 02:36   152576   ----a-w-   c:\windows\SysWow64\msclmd.dll
2012-01-23 23:40 . 2009-07-14 02:36   175616   ----a-w-   c:\windows\system32\msclmd.dll
2011-12-03 20:16 . 2011-07-09 17:21   414368   ----a-w-   c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-28 18:01 . 2011-03-22 21:03   41184   ----a-w-   c:\windows\avastSS.scr
2011-11-28 18:01 . 2011-03-22 21:03   199816   ----a-w-   c:\windows\SysWow64\aswBoot.exe
2011-11-28 18:01 . 2011-03-22 21:03   256960   ----a-w-   c:\windows\system32\aswBoot.exe
2011-11-28 17:54 . 2011-03-22 21:03   591192   ----a-w-   c:\windows\system32\drivers\aswSnx.sys
2011-11-28 17:53 . 2011-03-22 21:03   304472   ----a-w-   c:\windows\system32\drivers\aswSP.sys
2011-11-28 17:52 . 2011-03-22 21:03   42328   ----a-w-   c:\windows\system32\drivers\aswRdr.sys
2011-11-28 17:52 . 2011-03-22 21:03   58712   ----a-w-   c:\windows\system32\drivers\aswTdi.sys
2011-11-28 17:52 . 2011-03-22 21:03   66904   ----a-w-   c:\windows\system32\drivers\aswMonFlt.sys
2011-11-28 17:51 . 2011-03-22 21:03   24408   ----a-w-   c:\windows\system32\drivers\aswFsBlk.sys
2011-11-24 04:52 . 2011-12-14 21:27   3145216   ----a-w-   c:\windows\system32\win32k.sys
2011-11-15 21:29 . 2010-10-20 20:33   270720   ----a-w-   c:\windows\system32\MpSigStub.exe
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp3A218.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp00318.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpE6E08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpCCE08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpA1F08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp24018.FOT
2011-11-05 05:41 . 2011-12-14 21:27   1188864   ----a-w-   c:\windows\system32\wininet.dll
2011-11-05 05:32 . 2011-12-14 21:27   2048   ----a-w-   c:\windows\system32\tzres.dll
2011-11-05 04:35 . 2011-12-14 21:27   981504   ----a-w-   c:\windows\SysWow64\wininet.dll
2011-11-05 04:26 . 2011-12-14 21:27   2048   ----a-w-   c:\windows\SysWow64\tzres.dll
2011-11-05 03:32 . 2011-12-14 21:27   1638912   ----a-w-   c:\windows\system32\mshtml.tlb
2011-11-05 02:48 . 2011-12-14 21:27   1638912   ----a-w-   c:\windows\SysWow64\mshtml.tlb
.
.
(((((((((((((((((((((((((((((   [email protected]_17.01.08   )))))))))))))))))))))))))))))))))))))))))
.
- 2009-07-14 00:14 . 2009-07-14 01:16   51200              c:\windows\twain_32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   51200              c:\windows\twain_32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   27648              c:\windows\SysWOW64\wups.dll
- 2009-07-14 00:14 . 2009-07-14 01:16   87552              c:\windows\SysWOW64\wudriver.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   87552              c:\windows\SysWOW64\wudriver.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   33792              c:\windows\SysWOW64\wuapp.exe
- 2009-07-14 00:14 . 2009-07-14 01:14   33792              c:\windows\SysWOW64\wuapp.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   40448              c:\windows\SysWOW64\wtsapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   51712              c:\windows\SysWOW64\wsnmp32.dll
- 2009-07-13 23:55 . 2009-07-14 01:16   51712              c:\windows\SysWOW64\wsnmp32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   11264              c:\windows\SysWOW64\wshirda.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   36352              c:\windows\SysWOW64\wshbth.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   21504              c:\windows\SysWOW64\wsdchngr.dll
+ 2011-06-20 23:45 . 2010-11-20 12:21   51712              c:\windows\SysWOW64\wscapi.dll
- 2009-07-13 23:37 . 2009-07-14 01:16   47104              c:\windows\SysWOW64\wkscli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   47104              c:\windows\SysWOW64\wkscli.dll
- 2009-07-13 23:27 . 2009-07-14 01:14   28672              c:\windows\SysWOW64\WerFaultSecure.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   28672              c:\windows\SysWOW64\WerFaultSecure.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   89600              c:\windows\SysWOW64\wbem\WmiApRpl.dll
- 2009-07-13 23:31 . 2009-07-14 01:16   89600              c:\windows\SysWOW64\wbem\WmiApRpl.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   66048              c:\windows\SysWOW64\w32tm.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   25600              c:\windows\SysWOW64\vpnikeapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   56832              c:\windows\SysWOW64\vfwwdm32.dll
- 2009-07-14 00:03 . 2009-07-14 01:16   56832              c:\windows\SysWOW64\vfwwdm32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   31744              c:\windows\SysWOW64\utildll.dll
- 2009-07-14 00:02 . 2009-07-14 01:16   31744              c:\windows\SysWOW64\utildll.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   26624              c:\windows\SysWOW64\userinit.exe
+ 2011-06-20 23:45 . 2010-11-20 12:21   81920              c:\windows\SysWOW64\userenv.dll
- 2009-07-13 23:40 . 2009-07-14 01:16   78848              c:\windows\SysWOW64\UserAccountControlSettings.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   78848              c:\windows\SysWOW64\UserAccountControlSettings.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   34304              c:\windows\SysWOW64\unlodctr.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   59392              c:\windows\SysWOW64\unimdmat.dll
- 2009-07-13 23:55 . 2009-07-14 01:16   59392              c:\windows\SysWOW64\unimdmat.dll
- 2009-07-13 23:15 . 2009-07-14 01:14   47616              c:\windows\SysWOW64\tzutil.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   47616              c:\windows\SysWOW64\tzutil.exe
- 2009-07-13 23:34 . 2009-07-14 01:16   65024              c:\windows\SysWOW64\TSpkg.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   65024              c:\windows\SysWOW64\TSpkg.dll
- 2009-07-14 00:02 . 2009-07-14 01:16   36864              c:\windows\SysWOW64\tsgqec.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   36864              c:\windows\SysWOW64\tsgqec.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   12288              c:\windows\SysWOW64\tsbyuv.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   12288              c:\windows\SysWOW64\tsbyuv.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   21504              c:\windows\SysWOW64\TRAPI.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   69632              c:\windows\SysWOW64\tlscsp.dll
- 2009-07-13 23:40 . 2009-07-14 01:16   82944              c:\windows\SysWOW64\thumbcache.dll
+ 2011-06-20 23:45 . 2010-11-20 12:21   82944              c:\windows\SysWOW64\thumbcache.dll
+ 2011-06-20 23:45 . 2009-07-14 01:16   61440              c:\windows\SysWOW64\tcpmonui.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   51200              c:\windows\SysWOW64\takeown.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   14848              c:\windows\SysWOW64\syssetup.dll
- 2011-03-19 16:07 . 2009-12-11 07:36   96768              c:\windows\SysWOW64\sspicli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:08   96768              c:\windows\SysWOW64\sspicli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   90112              c:\windows\SysWOW64\srvcli.dll
- 2009-07-13 23:37 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\srvcli.dll
- 2009-07-13 23:17 . 2009-07-14 01:16   19968              c:\windows\SysWOW64\spopk.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   19968              c:\windows\SysWOW64\spopk.dll
- 2009-07-13 23:17 . 2009-07-14 01:16   61952              c:\windows\SysWOW64\spbcd.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   61952              c:\windows\SysWOW64\spbcd.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   14336              c:\windows\SysWOW64\slwga.dll
- 2011-03-19 16:16 . 2010-12-21 05:38   14336              c:\windows\SysWOW64\slwga.dll
- 2009-07-13 23:14 . 2009-07-14 01:16   19456              c:\windows\SysWOW64\sisbkup.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   19456              c:\windows\SysWOW64\sisbkup.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   10752              c:\windows\SysWOW64\shunimpl.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   35840              c:\windows\SysWOW64\shimgvw.dll
- 2009-07-13 23:39 . 2009-07-14 01:16   35840              c:\windows\SysWOW64\shimgvw.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   20992              c:\windows\SysWOW64\shgina.dll
- 2009-07-13 23:40 . 2009-07-14 01:16   20992              c:\windows\SysWOW64\shgina.dll
+ 2011-08-19 17:49 . 2011-07-16 04:25   25600              c:\windows\SysWOW64\setup16.exe
- 2011-03-19 16:16 . 2009-12-22 08:23   25600              c:\windows\SysWOW64\setup16.exe
+ 2011-06-20 23:45 . 2010-11-20 12:20   67584              c:\windows\SysWOW64\Setup\pbkmigr.dll
- 2011-03-19 16:07 . 2009-12-11 07:39   22016              c:\windows\SysWOW64\secur32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   22016              c:\windows\SysWOW64\secur32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   85504              c:\windows\SysWOW64\secproc_ssp_isv.dll
- 2011-03-19 16:16 . 2010-01-18 23:29   85504              c:\windows\SysWOW64\secproc_ssp_isv.dll
- 2011-03-19 16:16 . 2010-01-18 23:29   85504              c:\windows\SysWOW64\secproc_ssp.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   85504              c:\windows\SysWOW64\secproc_ssp.dll
- 2011-06-29 16:04 . 2011-05-04 04:52   86528              c:\windows\SysWOW64\SearchFilterHost.exe
+ 2011-06-29 16:04 . 2011-05-04 04:28   86528              c:\windows\SysWOW64\SearchFilterHost.exe
- 2009-07-13 23:37 . 2009-07-14 01:16   17408              c:\windows\SysWOW64\schedcli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   17408              c:\windows\SysWOW64\schedcli.dll
+ 2011-06-20 23:45 . 2010-11-20 12:21   51200              c:\windows\SysWOW64\samcli.dll
- 2009-07-13 23:41 . 2009-07-14 01:14   50688              c:\windows\SysWOW64\runonce.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   50688              c:\windows\SysWOW64\runonce.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   37376              c:\windows\SysWOW64\rtutils.dll
- 2011-03-19 16:08 . 2010-06-19 06:23   37376              c:\windows\SysWOW64\rtutils.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   46080              c:\windows\SysWOW64\RpcRtRemote.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   98816              c:\windows\SysWOW64\Robocopy.exe
- 2009-07-13 23:21 . 2009-07-14 01:16   71168              c:\windows\SysWOW64\resutils.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   71168              c:\windows\SysWOW64\resutils.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   37888              c:\windows\SysWOW64\relog.exe
- 2009-07-13 23:43 . 2009-07-14 01:14   83968              c:\windows\SysWOW64\RegisterIEPKEYs.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   83968              c:\windows\SysWOW64\RegisterIEPKEYs.exe
+ 2011-06-20 23:45 . 2010-11-20 12:21   72192              c:\windows\SysWOW64\regapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   22016              c:\windows\SysWOW64\ReAgentc.exe
+ 2011-06-20 23:44 . 2010-11-20 12:21   21504              c:\windows\SysWOW64\rdprefdrvapi.dll
- 2009-07-14 00:01 . 2009-07-14 01:16   21504              c:\windows\SysWOW64\rdprefdrvapi.dll
- 2009-07-14 00:02 . 2009-07-14 01:16   52224              c:\windows\SysWOW64\rdpd3d.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   52224              c:\windows\SysWOW64\rdpd3d.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   69632              c:\windows\SysWOW64\rastapi.dll
- 2009-07-13 23:54 . 2009-07-14 01:16   69632              c:\windows\SysWOW64\rastapi.dll
- 2009-07-13 23:52 . 2009-07-14 01:16   80896              c:\windows\SysWOW64\QUTIL.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:21   80896              c:\windows\SysWOW64\QUTIL.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:20   99328              c:\windows\SysWOW64\QSVRMGMT.DLL
- 2009-07-13 23:52 . 2009-07-14 01:16   99328              c:\windows\SysWOW64\QSVRMGMT.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:20   71680              c:\windows\SysWOW64\QCLIPROV.DLL
- 2009-07-13 23:52 . 2009-07-14 01:16   71680              c:\windows\SysWOW64\QCLIPROV.DLL
+ 2011-06-20 23:45 . 2010-11-20 12:17   28672              c:\windows\SysWOW64\proquota.exe
+ 2011-04-30 16:19 . 2011-02-18 05:39   31232              c:\windows\SysWOW64\prevhost.exe
- 2011-04-30 16:19 . 2011-02-18 05:33   31232              c:\windows\SysWOW64\prevhost.exe
- 2011-03-19 03:11 . 2009-11-25 19:47   99176              c:\windows\SysWOW64\PresentationHostProxy.dll
+ 2011-06-20 23:45 . 2010-11-05 01:53   99176              c:\windows\SysWOW64\PresentationHostProxy.dll
+ 2011-06-20 23:44 . 2010-11-20 12:05   35328              c:\windows\SysWOW64\pifmgr.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   17408              c:\windows\SysWOW64\perfts.dll
- 2009-07-14 00:02 . 2009-07-14 01:16   17408              c:\windows\SysWOW64\perfts.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   46592              c:\windows\SysWOW64\pdhui.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   77824              c:\windows\SysWOW64\olethk32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   90112              c:\windows\SysWOW64\olepro32.dll
- 2009-07-13 23:43 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\olepro32.dll
+ 2011-08-19 17:49 . 2011-06-15 08:55   86016              c:\windows\SysWOW64\odbccu32.dll
- 2009-07-14 00:12 . 2009-07-14 01:16   86016              c:\windows\SysWOW64\odbccu32.dll
+ 2011-08-19 17:49 . 2011-06-15 08:55   81920              c:\windows\SysWOW64\odbccr32.dll
- 2009-07-14 00:12 . 2009-07-14 01:16   40960              c:\windows\SysWOW64\odbcconf.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   40960              c:\windows\SysWOW64\odbcconf.dll
+ 2011-08-19 17:49 . 2011-07-16 04:29   14336              c:\windows\SysWOW64\ntvdm64.dll
- 2011-03-19 16:16 . 2009-12-22 08:24   14336              c:\windows\SysWOW64\ntvdm64.dll
- 2009-07-13 23:31 . 2009-07-14 01:16   69120              c:\windows\SysWOW64\ntlanman.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   69120              c:\windows\SysWOW64\ntlanman.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   98304              c:\windows\SysWOW64\nslookup.exe
+ 2011-06-20 23:44 . 2010-11-20 12:06   69120              c:\windows\SysWOW64\nlsbres.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   52224              c:\windows\SysWOW64\nlaapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   22528              c:\windows\SysWOW64\netutils.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   25600              c:\windows\SysWOW64\netiougc.exe
+ 2011-06-20 23:45 . 2010-11-05 01:58   49488              c:\windows\SysWOW64\netfxperf.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   24064              c:\windows\SysWOW64\netbtugc.exe
- 2009-07-13 23:53 . 2009-07-14 01:14   24064              c:\windows\SysWOW64\netbtugc.exe
- 2009-07-13 23:37 . 2009-07-14 01:16   56832              c:\windows\SysWOW64\netapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   56832              c:\windows\SysWOW64\netapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   60928              c:\windows\SysWOW64\ncryptui.dll
- 2009-07-13 23:32 . 2009-07-14 01:16   60928              c:\windows\SysWOW64\ncryptui.dll
+ 2011-06-20 23:45 . 2010-11-20 12:20   78848              c:\windows\SysWOW64\nci.dll
+ 2011-06-20 23:44 . 2010-11-20 12:20   68096              c:\windows\SysWOW64\napdsnap.dll
- 2009-07-13 23:53 . 2009-07-14 01:22   46080              c:\windows\SysWOW64\NAPCRYPT.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:36   46080              c:\windows\SysWOW64\NAPCRYPT.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:17   70656              c:\windows\SysWOW64\MuiUnattend.exe
- 2009-07-13 23:13 . 2009-07-14 01:14   70656              c:\windows\SysWOW64\MuiUnattend.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   13312              c:\windows\SysWOW64\muifontsetup.dll
- 2009-07-13 23:25 . 2009-07-14 01:15   13312              c:\windows\SysWOW64\muifontsetup.dll
+ 2011-06-20 23:44 . 2010-11-05 01:58   11600              c:\windows\SysWOW64\MUI\0409\mscorees.dll
- 2011-03-19 03:11 . 2009-11-25 19:47   11600              c:\windows\SysWOW64\MUI\0409\mscorees.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   22528              c:\windows\SysWOW64\msyuv.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   31744              c:\windows\SysWOW64\msvidc32.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   31744              c:\windows\SysWOW64\msvidc32.dll
- 2011-06-29 16:04 . 2011-05-04 04:52   59392              c:\windows\SysWOW64\msscntrs.dll
+ 2011-06-29 16:04 . 2011-05-04 04:32   59392              c:\windows\SysWOW64\msscntrs.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   13312              c:\windows\SysWOW64\msrle32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   13312              c:\windows\SysWOW64\msrle32.dll
+ 2011-10-25 18:39 . 1998-07-06 07:00   23552              c:\windows\SysWOW64\MSMPIDE.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:17   73216              c:\windows\SysWOW64\msiexec.exe
- 2009-07-13 23:31 . 2009-07-14 01:14   73216              c:\windows\SysWOW64\msiexec.exe
- 2011-06-16 18:30 . 2011-04-22 19:31   67072              c:\windows\SysWOW64\mshtmled.dll
+ 2011-12-14 21:27 . 2011-11-05 04:31   67072              c:\windows\SysWOW64\mshtmled.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   12800              c:\windows\SysWOW64\msfeedssync.exe
- 2011-06-16 18:30 . 2011-04-22 19:30   12800              c:\windows\SysWOW64\msfeedssync.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   64512              c:\windows\SysWOW64\msfeedsbs.dll
- 2011-06-16 18:30 . 2011-04-22 19:31   64512              c:\windows\SysWOW64\msfeedsbs.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   30720              c:\windows\SysWOW64\msdmo.dll
+ 2011-06-20 23:44 . 2010-11-05 01:58   80720              c:\windows\SysWOW64\mscories.dll
- 2009-07-13 20:46 . 2009-06-10 21:23   80720              c:\windows\SysWOW64\mscories.dll
+ 2011-06-20 23:45 . 2010-11-20 12:19   34304              c:\windows\SysWOW64\msasn1.dll
+ 2011-06-20 23:45 . 2010-11-20 12:19   42496              c:\windows\SysWOW64\mimefilt.dll
- 2009-07-13 23:42 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-windows-shmig\shmig.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   90112              c:\windows\SysWOW64\migwiz\replacementmanifests\microsoft-windows-shmig\shmig.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   90112              c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-shmig-DL\shmig.dll
- 2009-07-13 23:42 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\migwiz\dlmanifests\Microsoft-Windows-shmig-DL\shmig.dll
+ 2011-06-20 23:45 . 2010-11-20 12:21   67584              c:\windows\SysWOW64\migration\WSMT\rras\replacementmanifests\Microsoft-Windows-RasApi-MigPlugin\pbkmigr-Mig.dll
+ 2011-12-14 21:27 . 2011-11-05 04:35   68608              c:\windows\SysWOW64\migration\WininetPlugin.dll
- 2011-06-16 18:30 . 2011-04-22 19:31   68608              c:\windows\SysWOW64\migration\WininetPlugin.dll
+ 2011-06-20 23:44 . 2010-11-20 12:21   90112              c:\windows\SysWOW64\migration\shmig.dll
- 2009-07-13 23:41 . 2009-07-14 01:16   90112              c:\windows\SysWOW64\migration\shmig.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   36352              c:\windows\SysWOW64\mciqtz32.dll
- 2009-07-14 00:03 . 2009-07-14 01:15   36352              c:\windows\SysWOW64\mciqtz32.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   84480              c:\windows\SysWOW64\mciavi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   84480              c:\windows\SysWOW64\mciavi32.dll
- 2009-07-14 00:12 . 2009-07-14 01:15   76800              c:\windows\SysWOW64\mapistub.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   76800              c:\windows\SysWOW64\mapistub.dll
- 2009-07-14 00:12 . 2009-07-14 01:15   76800              c:\windows\SysWOW64\mapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   76800              c:\windows\SysWOW64\mapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   41984              c:\windows\SysWOW64\luainstall.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   21504              c:\windows\SysWOW64\lsmproxy.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   82944              c:\windows\SysWOW64\logman.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   95232              c:\windows\SysWOW64\logagent.exe
- 2009-07-14 00:08 . 2009-07-14 01:14   95232              c:\windows\SysWOW64\logagent.exe
- 2011-06-16 18:30 . 2011-04-22 19:31   44544              c:\windows\SysWOW64\licmgr10.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   44544              c:\windows\SysWOW64\licmgr10.dll
- 2011-06-16 18:30 . 2011-04-22 19:31   48128              c:\windows\SysWOW64\jsproxy.dll
+ 2011-12-14 21:27 . 2011-11-05 04:30   48128              c:\windows\SysWOW64\jsproxy.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   50176              c:\windows\SysWOW64\iyuv_32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   50176              c:\windows\SysWOW64\iyuv_32.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   86528              c:\windows\SysWOW64\isoburn.exe
- 2009-07-13 23:40 . 2009-07-14 01:14   86528              c:\windows\SysWOW64\isoburn.exe
- 2009-07-13 23:46 . 2009-07-14 01:15   28672              c:\windows\SysWOW64\iscsium.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   28672              c:\windows\SysWOW64\iscsium.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   96256              c:\windows\SysWOW64\inseng.dll
- 2009-07-13 23:42 . 2009-07-14 01:15   96256              c:\windows\SysWOW64\inseng.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   52736              c:\windows\SysWOW64\inetmib1.dll
- 2009-07-13 23:42 . 2009-07-14 01:15   34304              c:\windows\SysWOW64\imgutil.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   34304              c:\windows\SysWOW64\imgutil.dll
- 2009-07-13 23:26 . 2009-07-14 01:14   90112              c:\windows\SysWOW64\IME\IMESC5\IMSCPROP.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   90112              c:\windows\SysWOW64\IME\IMESC5\IMSCPROP.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   82944              c:\windows\SysWOW64\iccvid.dll
- 2011-03-19 16:08 . 2010-07-29 06:30   82944              c:\windows\SysWOW64\iccvid.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   78848              c:\windows\SysWOW64\iasacct.dll
- 2009-07-13 23:12 . 2009-07-14 01:15   34816              c:\windows\SysWOW64\httpapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   34816              c:\windows\SysWOW64\httpapi.dll
+ 2011-06-20 23:45 . 2010-11-20 12:19   66560              c:\windows\SysWOW64\hbaapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   42496              c:\windows\SysWOW64\ftp.exe
- 2009-07-13 23:55 . 2009-07-14 01:14   42496              c:\windows\SysWOW64\ftp.exe
- 2011-04-30 16:19 . 2011-03-11 05:37   74240              c:\windows\SysWOW64\fsutil.exe
+ 2011-04-30 16:19 . 2011-03-11 05:31   74240              c:\windows\SysWOW64\fsutil.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   98304              c:\windows\SysWOW64\fphc.dll
+ 2011-03-19 16:07 . 2010-09-30 06:47   70656              c:\windows\SysWOW64\fontsub.dll
- 2011-03-19 16:07 . 2009-10-19 14:10   70656              c:\windows\SysWOW64\fontsub.dll
- 2009-07-13 23:25 . 2009-07-14 01:15   93696              c:\windows\SysWOW64\fms.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   93696              c:\windows\SysWOW64\fms.dll
+ 2011-06-20 23:44 . 2010-11-20 12:17   62976              c:\windows\SysWOW64\findstr.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   59904              c:\windows\SysWOW64\fdeploy.dll
- 2009-07-14 05:35 . 2009-07-14 02:11   69632              c:\windows\SysWOW64\en\AuthFWWizFwk.Resources.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   69632              c:\windows\SysWOW64\en\AuthFWWizFwk.Resources.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   22528              c:\windows\SysWOW64\elsTrans.dll
- 2009-07-13 23:56 . 2009-07-14 01:15   94208              c:\windows\SysWOW64\eappgnui.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   94208              c:\windows\SysWOW64\eappgnui.dll
+ 2003-04-02 04:30 . 2003-04-02 04:30   11088              c:\windows\SysWOW64\DWLNdi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   30208              c:\windows\SysWOW64\dsauth.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   82432              c:\windows\SysWOW64\dot3cfg.dll
+ 2011-06-20 23:45 . 2010-11-20 12:18   91136              c:\windows\SysWOW64\dot3api.dll
+ 2011-04-30 16:21 . 2011-03-03 05:36   28672              c:\windows\SysWOW64\dnscacheugc.exe
- 2011-04-30 16:21 . 2011-03-03 05:27   28672              c:\windows\SysWOW64\dnscacheugc.exe
+ 2011-06-20 23:44 . 2010-11-20 12:19   89600              c:\windows\SysWOW64\Dism\LogProvider.dll
- 2009-07-13 23:18 . 2009-07-14 01:15   89600              c:\windows\SysWOW64\Dism\LogProvider.dll
+ 2011-06-20 23:44 . 2010-11-20 12:19   49152              c:\windows\SysWOW64\Dism\FolderProvider.dll
- 2009-07-13 23:18 . 2009-07-14 01:15   49152              c:\windows\SysWOW64\Dism\FolderProvider.dll
- 2009-07-13 23:18 . 2009-07-14 01:14   82944              c:\windows\SysWOW64\Dism\DismHost.exe
+ 2011-06-20 23:44 . 2010-11-20 12:17   82944              c:\windows\SysWOW64\Dism\DismHost.exe
+ 2011-06-20 23:44 . 2010-11-20 12:18   50688              c:\windows\SysWOW64\Dism\DismCorePS.dll
- 2011-06-29 16:05 . 2011-05-24 10:34   44544              c:\windows\SysWOW64\devrtl.dll
+ 2011-06-29 16:05 . 2011-05-24 10:40   44544              c:\windows\SysWOW64\devrtl.dll
- 2011-06-29 16:05 . 2011-05-24 10:34   64512              c:\windows\SysWOW64\devobj.dll
+ 2011-06-29 16:05 . 2011-05-24 10:40   64512              c:\windows\SysWOW64\devobj.dll
+ 2011-06-20 23:45 . 2010-11-20 12:18   80384              c:\windows\SysWOW64\davclnt.dll
- 2011-03-19 16:16 . 2010-12-21 05:34   80384              c:\windows\SysWOW64\davclnt.dll
- 2009-07-13 23:14 . 2009-07-14 01:15   23040              c:\windows\SysWOW64\cscdll.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   23040              c:\windows\SysWOW64\cscdll.dll
- 2009-07-13 23:14 . 2009-07-14 01:15   34816              c:\windows\SysWOW64\cscapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   34816              c:\windows\SysWOW64\cscapi.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   17408              c:\windows\SysWOW64\credssp.dll
- 2009-07-14 04:54 . 2011-07-05 17:00   16384              c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-01-30 19:13   16384              c:\windows\SysWOW64\config\systemprofile\AppData\Roaming\Microsoft\Windows\Cookies\index.dat
+ 2009-07-14 04:54 . 2012-01-30 19:13   32768              c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
- 2009-07-14 04:54 . 2011-07-05 17:00   32768              c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
+ 2009-07-14 04:54 . 2012-01-30 19:13   16384              c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
- 2009-07-14 04:54 . 2011-07-05 17:00   16384              c:\windows\SysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\History\History.IE5\index.dat
+ 2011-06-20 23:44 . 2010-11-20 12:17   84992              c:\windows\SysWOW64\cmstp.exe
- 2009-07-13 23:54 . 2009-07-14 01:14   84992              c:\windows\SysWOW64\cmstp.exe
+ 2011-06-20 23:44 . 2010-11-20 12:18   65024              c:\windows\SysWOW64\CertPolEng.dll
- 2009-07-13 23:36 . 2009-07-14 01:15   65024              c:\windows\SysWOW64\CertPolEng.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   66560              c:\windows\SysWOW64\cca.dll
- 2009-07-14 00:05 . 2009-07-14 01:15   66560              c:\windows\SysWOW64\cca.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   73216              c:\windows\SysWOW64\cabinet.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   11264              c:\windows\SysWOW64\C_ISCII.DLL
+ 2011-06-20 23:44 . 2010-11-20 12:18   10752              c:\windows\SysWOW64\browseui.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   41984              c:\windows\SysWOW64\browcli.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   19456              c:\windows\SysWOW64\bitsperf.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   28160              c:\windows\SysWOW64\AzSqlExt.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   91648              c:\windows\SysWOW64\avifil32.dll
- 2011-03-19 16:07 . 2009-12-19 09:02   91648              c:\windows\SysWOW64\avifil32.dll
+ 2011-04-30 16:21 . 2011-02-19 06:30   34304              c:\windows\SysWOW64\atmlib.dll
- 2011-04-30 16:21 . 2011-02-19 05:32   34304              c:\windows\SysWOW64\atmlib.dll
- 2011-03-19 16:15 . 2010-03-05 07:42   67584              c:\windows\SysWOW64\asycfilt.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   67584              c:\windows\SysWOW64\asycfilt.dll
- 2009-07-14 00:03 . 2009-07-14 01:14   70656              c:\windows\SysWOW64\amstream.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   70656              c:\windows\SysWOW64\amstream.dll
+ 2011-06-20 23:44 . 2010-11-20 12:18   45568              c:\windows\SysWOW64\acppage.dll
- 2009-07-13 23:26 . 2009-07-14 01:14   45568              c:\windows\SysWOW64\acppage.dll
- 2009-07-14 00:12 . 2009-07-14 01:41   48640              c:\windows\system32\wwanprotdim.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   48640              c:\windows\system32\wwanprotdim.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   37376              c:\windows\system32\wups2.dll
- 2009-07-14 00:34 . 2009-07-14 01:41   37376              c:\windows\system32\wups2.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   33280              c:\windows\system32\wups.dll
- 2009-07-14 00:34 . 2009-07-14 01:41   98304              c:\windows\system32\wudriver.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   98304              c:\windows\system32\wudriver.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   78848              c:\windows\system32\WUDFSvc.dll
- 2009-07-14 00:06 . 2009-07-14 01:41   44544              c:\windows\system32\WUDFCoinstaller.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   44544              c:\windows\system32\WUDFCoinstaller.dll
- 2009-07-14 00:34 . 2009-07-14 01:39   51200              c:\windows\system32\wuauclt.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   51200              c:\windows\system32\wuauclt.exe
- 2009-07-14 00:34 . 2009-07-14 01:39   36864              c:\windows\system32\wuapp.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   36864              c:\windows\system32\wuapp.exe
- 2009-07-14 00:10 . 2009-07-14 01:41   67072              c:\windows\system32\wsnmp32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   67072              c:\windows\system32\wsnmp32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   13824              c:\windows\system32\wshirda.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   47104              c:\windows\system32\wshbth.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   26112              c:\windows\system32\wsdchngr.dll
- 2011-03-19 16:16 . 2010-12-21 06:16   97280              c:\windows\system32\wscsvc.dll
+ 2009-07-13 23:48 . 2009-07-14 01:41   97280              c:\windows\system32\wscsvc.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   63488              c:\windows\system32\wscapi.dll
- 2009-07-13 23:26 . 2009-07-14 01:41   13312              c:\windows\system32\wow64cpu.dll
+ 2011-08-19 17:49 . 2011-07-16 05:41   13312              c:\windows\system32\wow64cpu.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   71680              c:\windows\system32\wkscli.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   71680              c:\windows\system32\wkscli.dll
- 2009-07-13 23:40 . 2009-07-14 01:39   26112              c:\windows\system32\WerFaultSecure.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   26112              c:\windows\system32\WerFaultSecure.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   36352              c:\windows\system32\wdiasqmmodule.dll
+ 2011-03-19 16:13 . 2012-01-24 23:58   40500              c:\windows\system32\wdi\ShutdownPerformanceDiagnostics_SystemData.bin
+ 2009-07-14 05:10 . 2012-01-27 20:36   45380              c:\windows\system32\wdi\BootPerformanceDiagnostics_SystemData.bin
+ 2011-03-19 15:57 . 2012-01-27 20:36   11988              c:\windows\system32\wdi\{86432a0b-3c7d-4ddf-a89c-172faa90485d}\S-1-5-21-3909975552-3371312792-2741729148-1000_UserData.bin
+ 2011-06-20 23:44 . 2010-11-20 13:27   61952              c:\windows\system32\WavDest.dll
- 2009-07-14 00:25 . 2009-07-14 01:41   61952              c:\windows\system32\WavDest.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   61952              c:\windows\system32\vss_ps.dll
- 2009-07-13 23:36 . 2009-07-14 01:41   61952              c:\windows\system32\vss_ps.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   38912              c:\windows\system32\vpnikeapi.dll
- 2009-07-14 00:18 . 2009-07-14 01:41   68096              c:\windows\system32\vfwwdm32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   68096              c:\windows\system32\vfwwdm32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:25   30720              c:\windows\system32\userinit.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   84480              c:\windows\system32\UserAccountControlSettings.dll
- 2009-07-14 00:10 . 2009-07-14 01:41   73216              c:\windows\system32\unimdmat.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   73216              c:\windows\system32\unimdmat.dll
- 2009-07-13 23:35 . 2009-07-14 01:41   59904              c:\windows\system32\umb.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   59904              c:\windows\system32\umb.dll
+ 2011-06-20 23:44 . 2010-11-20 13:25   58368              c:\windows\system32\tzutil.exe
+ 2011-06-20 23:46 . 2010-11-20 13:27   12288              c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   40960              c:\windows\system32\TsUsbGDCoInstaller.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   86016              c:\windows\system32\TSpkg.dll
- 2009-07-13 23:50 . 2009-07-14 01:41   86016              c:\windows\system32\TSpkg.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   44032              c:\windows\system32\tsgqec.dll
- 2009-07-14 00:17 . 2009-07-14 01:41   44032              c:\windows\system32\tsgqec.dll
- 2011-03-19 16:07 . 2009-12-19 09:50   14848              c:\windows\system32\tsbyuv.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   14848              c:\windows\system32\tsbyuv.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   21504              c:\windows\system32\TRAPI.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   73728              c:\windows\system32\tlscsp.dll
- 2009-07-14 00:16 . 2009-07-14 01:41   73728              c:\windows\system32\tlscsp.dll
+ 2011-06-20 23:45 . 2010-11-20 13:25   69120              c:\windows\system32\taskhost.exe
- 2009-07-13 23:31 . 2009-07-14 01:39   69120              c:\windows\system32\taskhost.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   63488              c:\windows\system32\takeown.exe
+ 2011-06-20 23:45 . 2010-11-20 13:27   92672              c:\windows\system32\TabSvc.dll
- 2009-07-14 00:03 . 2009-07-14 01:39   78848              c:\windows\system32\tabcal.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   78848              c:\windows\system32\tabcal.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   17408              c:\windows\system32\syssetup.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   29184              c:\windows\system32\sspisrv.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   13312              c:\windows\system32\sscore.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   13312              c:\windows\system32\sscore.dll
- 2009-07-13 23:29 . 2009-07-14 01:41   18944              c:\windows\system32\spopk.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   18944              c:\windows\system32\spopk.dll
- 2009-07-14 00:39 . 2009-07-14 01:41   39424              c:\windows\system32\spool\prtprocs\x64\winprint.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   39424              c:\windows\system32\spool\prtprocs\x64\winprint.dll
+ 2012-01-01 20:35 . 2009-05-07 11:16   93696              c:\windows\system32\spool\drivers\x64\3\hpfrs092.dll
- 2011-05-02 19:33 . 2009-05-07 11:16   93696              c:\windows\system32\spool\drivers\x64\3\hpfrs092.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   78848              c:\windows\system32\spbcd.dll
- 2009-07-13 23:29 . 2009-07-14 01:41   78848              c:\windows\system32\spbcd.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   15360              c:\windows\system32\slwga.dll
- 2011-03-19 16:16 . 2010-12-21 06:15   15360              c:\windows\system32\slwga.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   24064              c:\windows\system32\sisbkup.dll
- 2009-07-13 23:23 . 2009-07-14 01:41   24064              c:\windows\system32\sisbkup.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   11264              c:\windows\system32\shunimpl.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   37376              c:\windows\system32\shimgvw.dll
- 2009-07-13 23:55 . 2009-07-14 01:41   37376              c:\windows\system32\shimgvw.dll
- 2009-07-13 23:55 . 2009-07-14 01:41   28160              c:\windows\system32\shgina.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   28160              c:\windows\system32\shgina.dll
+ 2011-06-20 23:45 . 2010-11-20 13:25   88576              c:\windows\system32\setupcl.exe
+ 2011-06-20 23:45 . 2010-11-20 13:27   57856              c:\windows\system32\Setup\pbkmigr.dll
+ 2011-04-30 16:21 . 2010-11-20 13:27   63488              c:\windows\system32\setbcdlocale.dll
- 2009-07-13 23:50 . 2009-07-14 01:41   28160              c:\windows\system32\secur32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   28160              c:\windows\system32\secur32.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   30720              c:\windows\system32\seclogon.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   30720              c:\windows\system32\seclogon.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   24064              c:\windows\system32\schedcli.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   24064              c:\windows\system32\schedcli.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   67584              c:\windows\system32\samcli.dll
- 2009-07-13 23:57 . 2009-07-14 01:39   56832              c:\windows\system32\runonce.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   56832              c:\windows\system32\runonce.exe
- 2011-03-19 16:08 . 2010-06-19 06:53   52224              c:\windows\system32\rtutils.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   52224              c:\windows\system32\rtutils.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   65536              c:\windows\system32\RpcRtRemote.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   10752              c:\windows\system32\riched32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:25   51712              c:\windows\system32\repair-bde.exe
- 2009-07-13 23:22 . 2009-07-14 01:39   51712              c:\windows\system32\repair-bde.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   43008              c:\windows\system32\relog.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   98816              c:\windows\system32\RegisterIEPKEYs.exe
- 2009-07-13 23:58 . 2009-07-14 01:39   98816              c:\windows\system32\RegisterIEPKEYs.exe
+ 2011-06-20 23:45 . 2010-11-20 13:27   95232              c:\windows\system32\regapi.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   77312              c:\windows\system32\rdpwsx.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   23040              c:\windows\system32\rdprefdrvapi.dll
- 2009-07-14 00:16 . 2009-07-14 01:41   23040              c:\windows\system32\rdprefdrvapi.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   68096              c:\windows\system32\rdpd3d.dll
- 2009-07-14 00:17 . 2009-07-14 01:41   68096              c:\windows\system32\rdpd3d.dll
- 2009-07-14 00:17 . 2009-07-14 01:41   10240              c:\windows\system32\rdpcfgex.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   10240              c:\windows\system32\rdpcfgex.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   79872              c:\windows\system32\QCLIPROV.DLL
- 2009-07-14 00:07 . 2009-07-14 01:41   79872              c:\windows\system32\QCLIPROV.DLL
+ 2011-06-20 23:44 . 2010-11-20 13:25   31744              c:\windows\system32\proquota.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   33792              c:\windows\system32\profprov.dll
- 2009-07-14 00:39 . 2009-07-14 01:41   48128              c:\windows\system32\PrintIsolationProxy.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   48128              c:\windows\system32\PrintIsolationProxy.dll
- 2011-04-30 16:19 . 2011-02-18 06:33   31232              c:\windows\system32\prevhost.exe
+ 2011-04-30 16:19 . 2011-02-18 10:51   31232              c:\windows\system32\prevhost.exe
+ 2011-06-20 23:44 . 2010-11-20 13:25   62976              c:\windows\system32\PnPUnattend.exe
+ 2011-06-20 23:44 . 2010-11-20 13:12   35328              c:\windows\system32\pifmgr.dll
+ 2011-10-25 18:39 . 2005-03-12 07:07   87040              c:\windows\system32\pdfcmnnt.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   57856              c:\windows\system32\oobe\spprgrss.dll
- 2009-07-13 23:57 . 2009-07-14 01:39   71168              c:\windows\system32\oobe\msoobe.exe
+ 2011-06-20 23:44 . 2010-11-20 13:24   71168              c:\windows\system32\oobe\msoobe.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   53248              c:\windows\system32\odbcconf.dll
- 2009-07-14 00:28 . 2009-07-14 01:41   53248              c:\windows\system32\odbcconf.dll
+ 2011-08-19 17:49 . 2011-07-16 05:39   16384              c:\windows\system32\ntvdm64.dll
- 2009-07-13 23:26 . 2009-07-14 01:41   16384              c:\windows\system32\ntvdm64.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   15360              c:\windows\system32\nrpsrv.dll
+ 2011-06-20 23:44 . 2010-11-20 13:13   69120              c:\windows\system32\nlsbres.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   70656              c:\windows\system32\nlaapi.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   29184              c:\windows\system32\netutils.dll
+ 2011-06-20 23:46 . 2010-11-05 01:57   48976              c:\windows\system32\netfxperf.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   72704              c:\windows\system32\netapi32.dll
- 2009-07-13 23:53 . 2009-07-14 01:41   72704              c:\windows\system32\netapi32.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   66048              c:\windows\system32\ncryptui.dll
- 2009-07-13 23:49 . 2009-07-14 01:41   66048              c:\windows\system32\ncryptui.dll
+ 2011-06-20 23:45 . 2010-11-20 13:27   90112              c:\windows\system32\nci.dll
+ 2011-06-20 23:44 . 2010-11-20 13:27   72192              c:\windows\system32\napdsnap.dll
- 2009-07-14 00:09 . 2009-07-14 01:51   50176              c:\windows\system32\NAPCRYPT.DLL
+ 2011-06-20 23:44 . 2010-11-20 13:44   50176              c:\windows\system32\NAPCRYPT.DLL
+ 2011-06-20 23:44 . 2010-11-20 13:25   51712              c:\windows\system32\MultiDigiMon.exe
- 2009-07-14 00:03 . 2009-07-14 01:39   51712              c:\windows\system32\MultiDigiMon.exe
+ 2011-06-20 23:44 . 2010-11-20 13:27   16896              c:\windows\system32\muifontsetup.dll
+ 2011-06-20 23:44 . 2010-11-05 01:57   11600     
You are much appreciated..     Thank you ,

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #24 on: January 31, 2012, 10:46:42 AM »
Evidently it is too big.   I'm going to break it up into smaller pieces.
You are much appreciated..     Thank you ,

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #25 on: January 31, 2012, 11:03:52 AM »
It looks like I will have ot post about 10% of the total each time.   I can do that but ist will take some time.   Unless you have a better method.  What say you??
You are much appreciated..     Thank you ,

SuperDave

  • Malware Removal Specialist
  • Moderator


  • Genius
  • Thanked: 996
  • Certifications: List
  • Experience: Expert
  • OS: Windows 8
Re: I cannot access the internet.
« Reply #26 on: January 31, 2012, 11:27:09 AM »
Remove the Snapshot part. I don't need to see it.
Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8.1 with a dual boot to Windows XP  Home with SP3, Comodo  with Windows Firewall & Windows Defender

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #27 on: January 31, 2012, 02:15:47 PM »

Thanks SuperDave:    OKAY here goes.   I think it's all on there this time..

ComboFix 12-01-30.02 - JIM  01/30/2012  12:01:31.2.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.4095.2690 [GMT -7:00]
Running from: c:\users\JIM\Desktop\PCHelpForum.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: PC Tools Firewall Plus *Disabled* {175D0B73-9F8F-2CA9-8BF1-62277A276DC9}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\CouponAlert_2pEI
c:\program files (x86)\DailyBibleGuideEI
c:\program files (x86)\DictionaryBoss\bar
c:\program files (x86)\DictionaryBoss\bar\Settings\s_pid.dat
c:\program files (x86)\DictionaryBossEI
c:\windows\security\Database\tmp.edb
F:\setup.exe
.
.
(((((((((((((((((((((((((   Files Created from 2011-12-28 to 2012-01-30  )))))))))))))))))))))))))))))))
.
.
2012-01-30 19:44 . 2012-01-30 19:44   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT7292.tmp
2012-01-30 19:16 . 2012-01-30 19:16   69000   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{8C8B97EF-6072-4622-8018-0A71D348CBCA}\offreg.dll
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Terri\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Public\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Guest\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Default\AppData\Local\temp
2012-01-27 17:17 . 2012-01-27 17:17   --------   d-----w-   c:\users\JIM\AppData\Roaming\SUPERAntiSpyware.com
2012-01-27 17:16 . 2012-01-27 17:17   --------   d-----w-   c:\program files\SUPERAntiSpyware
2012-01-25 19:56 . 2012-01-25 19:58   --------   d-----w-   c:\users\JIM\AppData\Roaming\DriverCure
2012-01-25 19:55 . 2012-01-25 19:56   --------   d-----w-   c:\programdata\DriverCure
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\programdata\ParetoLogic
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\program files (x86)\Common Files\ParetoLogic
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\program files (x86)\ParetoLogic
2012-01-25 19:19 . 2004-10-22 20:42   577536   ----a-w-   c:\windows\SysWow64\ANIWZCS2.dll
2012-01-25 19:19 . 2004-10-22 20:42   131072   ----a-w-   c:\windows\SysWow64\WlanApp.dll
2012-01-25 19:19 . 2004-10-22 20:42   1163337   ----a-w-   c:\windows\SysWow64\odSupp_M.dll
2012-01-25 19:19 . 2004-10-22 20:42   57407   ----a-w-   c:\windows\SysWow64\ANICtl.dll
2012-01-25 19:19 . 2004-10-22 20:42   49152   ----a-w-   c:\windows\SysWow64\AQCKGen.dll
2012-01-25 19:19 . 2004-10-22 20:42   192512   ----a-w-   c:\windows\SysWow64\aIPH.dll
2012-01-25 19:19 . 2012-01-25 19:19   --------   d-----w-   c:\program files (x86)\ANI
2012-01-25 19:19 . 2004-07-27 18:20   36864   ----a-w-   c:\windows\SysWow64\ANIOApi.dll
2012-01-25 19:19 . 2004-07-27 18:20   28205   ----a-w-   c:\windows\SysWow64\ANIO.sys
2012-01-25 19:19 . 2004-07-27 18:20   16997   ----a-w-   c:\windows\SysWow64\ANIO.VXD
2012-01-25 19:19 . 2004-07-27 18:20   11904   ----a-w-   c:\windows\SysWow64\anio4.sys
2012-01-25 19:19 . 2012-01-25 19:19   --------   d-----w-   c:\program files (x86)\D-Link
2012-01-24 23:44 . 2012-01-24 23:44   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT1ECD.tmp
2012-01-24 23:42 . 2012-01-24 23:42   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT606D.tmp
2012-01-24 23:26 . 2012-01-24 23:26   0   ---ha-w-   c:\users\JIM\AppData\Local\BITCBF.tmp
2012-01-24 23:24 . 2012-01-24 23:24   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT474E.tmp
2012-01-24 22:57 . 2011-11-21 11:40   8822856   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{8C8B97EF-6072-4622-8018-0A71D348CBCA}\mpengine.dll
2012-01-23 23:32 . 2012-01-24 23:37   --------   d-----w-   c:\windows\system32\SPReview
2012-01-23 23:32 . 2012-01-23 23:32   --------   d-----w-   c:\windows\system32\EventProviders
2012-01-23 23:30 . 2012-01-23 23:30   737072   ----a-w-   c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2012-01-23 23:30 . 2012-01-23 23:30   4283672   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2012-01-23 23:30 . 2012-01-23 23:30   42776   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2012-01-23 23:30 . 2012-01-23 23:30   539984   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-01-17 16:35 . 2012-01-17 16:35   --------   d-----w-   c:\users\JIM\AppData\Roaming\FCTB000060231
2012-01-11 15:09 . 2011-10-26 05:25   1572864   ----a-w-   c:\windows\system32\quartz.dll
2012-01-11 15:09 . 2011-10-26 04:32   514560   ----a-w-   c:\windows\SysWow64\qdvd.dll
2012-01-11 15:09 . 2011-10-26 04:32   1328128   ----a-w-   c:\windows\SysWow64\quartz.dll
2012-01-11 15:09 . 2011-10-26 05:25   366592   ----a-w-   c:\windows\system32\qdvd.dll
2012-01-11 15:09 . 2011-11-17 06:41   1731920   ----a-w-   c:\windows\system32\ntdll.dll
2012-01-11 15:09 . 2011-11-17 05:38   1292080   ----a-w-   c:\windows\SysWow64\ntdll.dll
2012-01-11 15:09 . 2011-11-19 14:58   77312   ----a-w-   c:\windows\system32\packager.dll
2012-01-11 15:09 . 2011-11-19 14:01   67072   ----a-w-   c:\windows\SysWow64\packager.dll
2012-01-10 18:49 . 2012-01-10 18:49   --------   d-----w-   c:\program files (x86)\Dogpile Bundle Toolbar
2012-01-10 18:49 . 2012-01-10 18:49   --------   d-----w-   c:\users\JIM\AppData\Local\The Weather Channel
2012-01-10 18:48 . 2012-01-27 17:51   --------   d-----w-   c:\program files (x86)\EpicPlay
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-30 19:50 . 2012-01-30 19:50   0   ---ha-w-   c:\users\JIM\AppData\Local\BITA6AD.tmp
2012-01-25 18:37 . 2011-02-18 23:38   639   ----a-w-   c:\windows\uninstallstickies.bat
2012-01-23 23:41 . 2009-07-14 02:36   152576   ----a-w-   c:\windows\SysWow64\msclmd.dll
2012-01-23 23:40 . 2009-07-14 02:36   175616   ----a-w-   c:\windows\system32\msclmd.dll
2011-12-03 20:16 . 2011-07-09 17:21   414368   ----a-w-   c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-28 18:01 . 2011-03-22 21:03   41184   ----a-w-   c:\windows\avastSS.scr
2011-11-28 18:01 . 2011-03-22 21:03   199816   ----a-w-   c:\windows\SysWow64\aswBoot.exe
2011-11-28 18:01 . 2011-03-22 21:03   256960   ----a-w-   c:\windows\system32\aswBoot.exe
2011-11-28 17:54 . 2011-03-22 21:03   591192   ----a-w-   c:\windows\system32\drivers\aswSnx.sys
2011-11-28 17:53 . 2011-03-22 21:03   304472   ----a-w-   c:\windows\system32\drivers\aswSP.sys
2011-11-28 17:52 . 2011-03-22 21:03   42328   ----a-w-   c:\windows\system32\drivers\aswRdr.sys
2011-11-28 17:52 . 2011-03-22 21:03   58712   ----a-w-   c:\windows\system32\drivers\aswTdi.sys
2011-11-28 17:52 . 2011-03-22 21:03   66904   ----a-w-   c:\windows\system32\drivers\aswMonFlt.sys
2011-11-28 17:51 . 2011-03-22 21:03   24408   ----a-w-   c:\windows\system32\drivers\aswFsBlk.sys
2011-11-24 04:52 . 2011-12-14 21:27   3145216   ----a-w-   c:\windows\system32\win32k.sys
2011-11-15 21:29 . 2010-10-20 20:33   270720   ----a-w-   c:\windows\system32\MpSigStub.exe
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp3A218.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp00318.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpE6E08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpCCE08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpA1F08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp24018.FOT
2011-11-05 05:41 . 2011-12-14 21:27   1188864   ----a-w-   c:\windows\system32\wininet.dll
2011-11-05 05:32 . 2011-12-14 21:27   2048   ----a-w-   c:\windows\system32\tzres.dll
2011-11-05 04:35 . 2011-12-14 21:27   981504   ----a-w-   c:\windows\SysWow64\wininet.dll
2011-11-05 04:26 . 2011-12-14 21:27   2048   ----a-w-   c:\windows\SysWow64\tzres.dll
2011-11-05 03:32 . 2011-12-14 21:27   1638912   ----a-w-   c:\windows\system32\mshtml.tlb
2011-11-05 02:48 . 2011-12-14 21:27   1638912   ----a-w-   c:\windows\SysWow64\mshtml.tlb
.
.
(((((((((((((((((((((((((((((   [email protected]_17.01.08   ))))))))))))))))))))

.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{f78bf7a8-cf12-4de7-a6da-c463d1b539a7}"= "c:\program files (x86)\Dogpile Bundle Toolbar\Helper.dll" [2012-01-10 361984]
.
[HKEY_CLASSES_ROOT\clsid\{f78bf7a8-cf12-4de7-a6da-c463d1b539a7}]
[HKEY_CLASSES_ROOT\FreeCauseURLSearchHook.FCToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{C766F9AD-E91E-43DE-91DC-D007680ED4AF}]
[HKEY_CLASSES_ROOT\FreeCauseURLSearchHook.FCToolbarURLSearchHook]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{BFE4B5CB-63F7-4A51-9266-6167655D5B4F}]
2012-01-10 18:49   1612800   ----a-w-   c:\program files (x86)\Dogpile Bundle Toolbar\Toolbar.dll
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{c2db4fe6-8409-45ce-8010-189a7b5cce86}]
2010-10-18 19:26   3908192   ----a-w-   c:\program files (x86)\NCH\tbNCH.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{c2db4fe6-8409-45ce-8010-189a7b5cce86}"= "c:\program files (x86)\NCH\tbNCH.dll" [2010-10-18 3908192]
"{C80BDEB2-8735-44C6-BD55-A1CCD555667A}"= "c:\program files (x86)\Dogpile Bundle Toolbar\Toolbar.dll" [2012-01-10 1612800]
.
[HKEY_CLASSES_ROOT\clsid\{c2db4fe6-8409-45ce-8010-189a7b5cce86}]
.
[HKEY_CLASSES_ROOT\clsid\{c80bdeb2-8735-44c6-bd55-a1ccd555667a}]
[HKEY_CLASSES_ROOT\FCTB000060231.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{CCBDEEA9-517A-4862-B0A1-862AE9532228}]
[HKEY_CLASSES_ROOT\FCTB000060231.IEToolbar]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DriverCure"="c:\program files (x86)\ParetoLogic\DriverCure\DriverCure.exe" [2009-08-07 3993368]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"00PCTFW"="c:\program files (x86)\PC Tools Firewall Plus\FirewallGUI.exe" [2010-11-29 2676696]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
"Share-to-Web Namespace Daemon"="c:\program files (x86)\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [2002-04-17 69632]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"ANIWZCS2Service"="c:\program files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe" [2004-10-22 45056]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-09-01 449608]
.
c:\users\JIM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Stickies.lnk - c:\program files (x86)\Stickies\stickies.exe [2011-2-18 1101824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages   REG_MULTI_SZ      kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-21 136176]
R3 gupdatem;Google Update Service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-21 136176]
R3 MEMSWEEP2;MEMSWEEP2;c:\windows\system32\6D4.tmp

R3 pctNdis;PC Tools Firewall Intermediate Filter Service;c:\windows\system32\DRIVERS\pctNdis64.sys

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys

R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe

R4 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
S1 aswSnx;aswSnx;

S1 aswSP;aswSP;

S1 pctgntdi;pctgntdi;c:\windows\System32\drivers\pctgntdi64.sys

S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [2011-08-11 140672]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 27136]
S2 aswFsBlk;aswFsBlk;

S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys

S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-09-01 366152]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys

S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys

S3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver;c:\windows\system32\drivers\pctNdis-PacketFilter64.sys

S3 pctNdisMP;PC Tools Driver;c:\windows\system32\DRIVERS\pctNdis64.sys

S3 pctplfw;pctplfw;c:\windows\System32\drivers\pctplfw64.sys

S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys

.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
*Deregistered* - AVGIDSDriver
*Deregistered* - AVGIDSEH
*Deregistered* - AVGIDSFilter
*Deregistered* - Avgrkx64
*Deregistered* - Avgtdia
*Deregistered* - pctESPInject
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmt   REG_MULTI_SZ      hpqcxs08 hpqddsvc
Akamai   REG_MULTI_SZ      Akamai
.
Contents of the 'Scheduled Tasks' folder
.
2012-01-29 c:\windows\Tasks\DriverCure.job
- c:\program files (x86)\ParetoLogic\DriverCure\DriverCure.exe [2009-08-07 19:36]
.
2012-01-30 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3909975552-3371312792-2741729148-1000Core.job
- c:\users\JIM\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-09 16:33]
.
2012-01-30 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3909975552-3371312792-2741729148-1000UA.job
- c:\users\JIM\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-09 16:33]
.
2012-01-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-21 16:45]
.
2012-01-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-21 16:45]
.
2012-01-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3909975552-3371312792-2741729148-1000Core.job
- c:\users\JIM\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-08 15:07]
.
2012-01-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3909975552-3371312792-2741729148-1000UA.job
- c:\users\JIM\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-08 15:07]
.
2012-01-30 c:\windows\Tasks\ParetoLogic Registration.job
- c:\windows\system32\rundll32.exe [2009-07-13 01:14]
.
2012-01-30 c:\windows\Tasks\ParetoLogic Update Version2.job
- c:\program files (x86)\Common Files\ParetoLogic\UUS2\Pareto_Update.exe [2009-01-13 14:59]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01   134384   ----a-w-   c:\program files\AVAST Software\Avast\ashShA64.dll
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.yahoo.com/MAIL
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 192.168.1.1
.
- - - - ORPHANS REMOVED - - - -
.
URLSearchHooks-{00000000-6E41-4FD3-8538-502F5495E5FC} - c:\program files (x86)\Ask.com\GenericAskToolbar.dll
BHO-{D4027C7F-154A-4066-A1AD-4243D8127440} - c:\program files (x86)\Ask.com\GenericAskToolbar.dll
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
Toolbar-{D4027C7F-154A-4066-A1AD-4243D8127440} - c:\program files (x86)\Ask.com\GenericAskToolbar.dll
Wow6432Node-HKLM-Run-ApnUpdater - c:\program files (x86)\Ask.com\Updater\Updater.exe
WebBrowser-{30F9B915-B755-4826-820B-08FBA6BD249D} - (no file)
WebBrowser-{B9B97401-98E1-4942-930D-C36652DAB7F2} - (no file)
WebBrowser-{C2DB4FE6-8409-45CE-8010-189A7B5CCE86} - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
WebBrowser-{C80BDEB2-8735-44C6-BD55-A1CCD555667A} - (no file)
AddRemove-EpicPlay - c:\program files (x86)\EpicPlay\epicRemoval.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\Akamai]
"ServiceDll"="c:\program files (x86)\common files\akamai/netsession_win_b427739.dll"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\MEMSWEEP2]
"ImagePath"="\??\c:\windows\system32\6D4.tmp"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
c:\program files (x86)\PC Tools Firewall Plus\FWService.exe
c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE
c:\program files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
.
**************************************************************************
.
Completion time: 2012-01-30  12:59:20 - machine was rebooted
ComboFix-quarantined-files.txt  2012-01-30 19:59
ComboFix2.txt  2011-07-05 17:05
.
Pre-Run: 209,405,624,320 bytes free
Post-Run: 209,444,007,936 bytes free
.
- - End Of File - - 9A372D23AE8E57D88EF51D64F0FC4557
ComboFix 12-01-30.02 - JIM 01/30/2012  12:01:31.2.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.1.1033.18.4095.2690 [GMT -7:00]
Running from: c:\users\JIM\Desktop\PCHelpForum.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
FW: PC Tools Firewall Plus *Disabled* {175D0B73-9F8F-2CA9-8BF1-62277A276DC9}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\CouponAlert_2pEI
c:\program files (x86)\DailyBibleGuideEI
c:\program files (x86)\DictionaryBoss\bar
c:\program files (x86)\DictionaryBoss\bar\Settings\s_pid.dat
c:\program files (x86)\DictionaryBossEI
c:\windows\security\Database\tmp.edb
F:\setup.exe
.
.
(((((((((((((((((((((((((   Files Created from 2011-12-28 to 2012-01-30  )))))))))))))))))))))))))))))))
.
.
2012-01-30 19:44 . 2012-01-30 19:44   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT7292.tmp
2012-01-30 19:16 . 2012-01-30 19:16   69000   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{8C8B97EF-6072-4622-8018-0A71D348CBCA}\offreg.dll
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Terri\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Public\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Guest\AppData\Local\temp
2012-01-30 19:12 . 2012-01-30 19:12   --------   d-----w-   c:\users\Default\AppData\Local\temp
2012-01-27 17:17 . 2012-01-27 17:17   --------   d-----w-   c:\users\JIM\AppData\Roaming\SUPERAntiSpyware.com
2012-01-27 17:16 . 2012-01-27 17:17   --------   d-----w-   c:\program files\SUPERAntiSpyware
2012-01-25 19:56 . 2012-01-25 19:58   --------   d-----w-   c:\users\JIM\AppData\Roaming\DriverCure
2012-01-25 19:55 . 2012-01-25 19:56   --------   d-----w-   c:\programdata\DriverCure
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\programdata\ParetoLogic
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\program files (x86)\Common Files\ParetoLogic
2012-01-25 19:55 . 2012-01-25 19:55   --------   d-----w-   c:\program files (x86)\ParetoLogic
2012-01-25 19:19 . 2004-10-22 20:42   577536   ----a-w-   c:\windows\SysWow64\ANIWZCS2.dll
2012-01-25 19:19 . 2004-10-22 20:42   131072   ----a-w-   c:\windows\SysWow64\WlanApp.dll
2012-01-25 19:19 . 2004-10-22 20:42   1163337   ----a-w-   c:\windows\SysWow64\odSupp_M.dll
2012-01-25 19:19 . 2004-10-22 20:42   57407   ----a-w-   c:\windows\SysWow64\ANICtl.dll
2012-01-25 19:19 . 2004-10-22 20:42   49152   ----a-w-   c:\windows\SysWow64\AQCKGen.dll
2012-01-25 19:19 . 2004-10-22 20:42   192512   ----a-w-   c:\windows\SysWow64\aIPH.dll
2012-01-25 19:19 . 2012-01-25 19:19   --------   d-----w-   c:\program files (x86)\ANI
2012-01-25 19:19 . 2004-07-27 18:20   36864   ----a-w-   c:\windows\SysWow64\ANIOApi.dll
2012-01-25 19:19 . 2004-07-27 18:20   28205   ----a-w-   c:\windows\SysWow64\ANIO.sys
2012-01-25 19:19 . 2004-07-27 18:20   16997   ----a-w-   c:\windows\SysWow64\ANIO.VXD
2012-01-25 19:19 . 2004-07-27 18:20   11904   ----a-w-   c:\windows\SysWow64\anio4.sys
2012-01-25 19:19 . 2012-01-25 19:19   --------   d-----w-   c:\program files (x86)\D-Link
2012-01-24 23:44 . 2012-01-24 23:44   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT1ECD.tmp
2012-01-24 23:42 . 2012-01-24 23:42   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT606D.tmp
2012-01-24 23:26 . 2012-01-24 23:26   0   ---ha-w-   c:\users\JIM\AppData\Local\BITCBF.tmp
2012-01-24 23:24 . 2012-01-24 23:24   0   ---ha-w-   c:\users\JIM\AppData\Local\BIT474E.tmp
2012-01-24 22:57 . 2011-11-21 11:40   8822856   ----a-w-   c:\programdata\Microsoft\Windows Defender\Definition Updates\{8C8B97EF-6072-4622-8018-0A71D348CBCA}\mpengine.dll
2012-01-23 23:32 . 2012-01-24 23:37   --------   d-----w-   c:\windows\system32\SPReview
2012-01-23 23:32 . 2012-01-23 23:32   --------   d-----w-   c:\windows\system32\EventProviders
2012-01-23 23:30 . 2012-01-23 23:30   737072   ----a-w-   c:\programdata\Microsoft\eHome\Packages\SportsV2\SportsTemplateCore\Microsoft.MediaCenter.Sports.UI.dll
2012-01-23 23:30 . 2012-01-23 23:30   4283672   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2012-01-23 23:30 . 2012-01-23 23:30   42776   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2012-01-23 23:30 . 2012-01-23 23:30   539984   ----a-w-   c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2012-01-17 16:35 . 2012-01-17 16:35   --------   d-----w-   c:\users\JIM\AppData\Roaming\FCTB000060231
2012-01-11 15:09 . 2011-10-26 05:25   1572864   ----a-w-   c:\windows\system32\quartz.dll
2012-01-11 15:09 . 2011-10-26 04:32   514560   ----a-w-   c:\windows\SysWow64\qdvd.dll
2012-01-11 15:09 . 2011-10-26 04:32   1328128   ----a-w-   c:\windows\SysWow64\quartz.dll
2012-01-11 15:09 . 2011-10-26 05:25   366592   ----a-w-   c:\windows\system32\qdvd.dll
2012-01-11 15:09 . 2011-11-17 06:41   1731920   ----a-w-   c:\windows\system32\ntdll.dll
2012-01-11 15:09 . 2011-11-17 05:38   1292080   ----a-w-   c:\windows\SysWow64\ntdll.dll
2012-01-11 15:09 . 2011-11-19 14:58   77312   ----a-w-   c:\windows\system32\packager.dll
2012-01-11 15:09 . 2011-11-19 14:01   67072   ----a-w-   c:\windows\SysWow64\packager.dll
2012-01-10 18:49 . 2012-01-10 18:49   --------   d-----w-   c:\program files (x86)\Dogpile Bundle Toolbar
2012-01-10 18:49 . 2012-01-10 18:49   --------   d-----w-   c:\users\JIM\AppData\Local\The Weather Channel
2012-01-10 18:48 . 2012-01-27 17:51   --------   d-----w-   c:\program files (x86)\EpicPlay
.
.
.
((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-01-30 19:50 . 2012-01-30 19:50   0   ---ha-w-   c:\users\JIM\AppData\Local\BITA6AD.tmp
2012-01-25 18:37 . 2011-02-18 23:38   639   ----a-w-   c:\windows\uninstallstickies.bat
2012-01-23 23:41 . 2009-07-14 02:36   152576   ----a-w-   c:\windows\SysWow64\msclmd.dll
2012-01-23 23:40 . 2009-07-14 02:36   175616   ----a-w-   c:\windows\system32\msclmd.dll
2011-12-03 20:16 . 2011-07-09 17:21   414368   ----a-w-   c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-28 18:01 . 2011-03-22 21:03   41184   ----a-w-   c:\windows\avastSS.scr
2011-11-28 18:01 . 2011-03-22 21:03   199816   ----a-w-   c:\windows\SysWow64\aswBoot.exe
2011-11-28 18:01 . 2011-03-22 21:03   256960   ----a-w-   c:\windows\system32\aswBoot.exe
2011-11-28 17:54 . 2011-03-22 21:03   591192   ----a-w-   c:\windows\system32\drivers\aswSnx.sys
2011-11-28 17:53 . 2011-03-22 21:03   304472   ----a-w-   c:\windows\system32\drivers\aswSP.sys
2011-11-28 17:52 . 2011-03-22 21:03   42328   ----a-w-   c:\windows\system32\drivers\aswRdr.sys
2011-11-28 17:52 . 2011-03-22 21:03   58712   ----a-w-   c:\windows\system32\drivers\aswTdi.sys
2011-11-28 17:52 . 2011-03-22 21:03   66904   ----a-w-   c:\windows\system32\drivers\aswMonFlt.sys
2011-11-28 17:51 . 2011-03-22 21:03   24408   ----a-w-   c:\windows\system32\drivers\aswFsBlk.sys
2011-11-24 04:52 . 2011-12-14 21:27   3145216   ----a-w-   c:\windows\system32\win32k.sys
2011-11-15 21:29 . 2010-10-20 20:33   270720   ----a-w-   c:\windows\system32\MpSigStub.exe
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp3A218.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp00318.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpE6E08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpCCE08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmpA1F08.FOT
2011-11-05 17:45 . 2011-11-05 17:45   1409   ----a-w-   c:\windows\SysWow64\tmp24018.FOT
2011-11-05 05:41 . 2011-12-14 21:27   1188864   ----a-w-   c:\windows\system32\wininet.dll
2011-11-05 05:32 . 2011-12-14 21:27   2048   ----a-w-   c:\windows\system32\tzres.dll
2011-11-05 04:35 . 2011-12-14 21:27   981504   ----a-w-   c:\windows\SysWow64\wininet.dll
2011-11-05 04:26 . 2011-12-14 21:27   2048   ----a-w-   c:\windows\SysWow64\tzres.dll
2011-11-05 03:32 . 2011-12-14 21:27   1638912   ----a-w-   c:\windows\system32\mshtml.tlb
2011-11-05 02:48 . 2011-12-14 21:27   1638912   ----a-w-   c:\windows\SysWow64\mshtml.tlb
.
.
(((((((((((((((((((((((((((((   [email protected]_17.01.08   ))))))))))))))))))))

.
(((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{f78bf7a8-cf12-4de7-a6da-c463d1b539a7}"= "c:\program files (x86)\Dogpile Bundle Toolbar\Helper.dll" [2012-01-10 361984]
.
[HKEY_CLASSES_ROOT\clsid\{f78bf7a8-cf12-4de7-a6da-c463d1b539a7}]
[HKEY_CLASSES_ROOT\FreeCauseURLSearchHook.FCToolbarURLSearchHook.1]
[HKEY_CLASSES_ROOT\TypeLib\{C766F9AD-E91E-43DE-91DC-D007680ED4AF}]
[HKEY_CLASSES_ROOT\FreeCauseURLSearchHook.FCToolbarURLSearchHook]
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{BFE4B5CB-63F7-4A51-9266-6167655D5B4F}]
2012-01-10 18:49   1612800   ----a-w-   c:\program files (x86)\Dogpile Bundle Toolbar\Toolbar.dll
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{c2db4fe6-8409-45ce-8010-189a7b5cce86}]
2010-10-18 19:26   3908192   ----a-w-   c:\program files (x86)\NCH\tbNCH.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{c2db4fe6-8409-45ce-8010-189a7b5cce86}"= "c:\program files (x86)\NCH\tbNCH.dll" [2010-10-18 3908192]
"{C80BDEB2-8735-44C6-BD55-A1CCD555667A}"= "c:\program files (x86)\Dogpile Bundle Toolbar\Toolbar.dll" [2012-01-10 1612800]
.
[HKEY_CLASSES_ROOT\clsid\{c2db4fe6-8409-45ce-8010-189a7b5cce86}]
.
[HKEY_CLASSES_ROOT\clsid\{c80bdeb2-8735-44c6-bd55-a1ccd555667a}]
[HKEY_CLASSES_ROOT\FCTB000060231.IEToolbar.1]
[HKEY_CLASSES_ROOT\TypeLib\{CCBDEEA9-517A-4862-B0A1-862AE9532228}]
[HKEY_CLASSES_ROOT\FCTB000060231.IEToolbar]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DriverCure"="c:\program files (x86)\ParetoLogic\DriverCure\DriverCure.exe" [2009-08-07 3993368]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"00PCTFW"="c:\program files (x86)\PC Tools Firewall Plus\FirewallGUI.exe" [2010-11-29 2676696]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2011-11-28 3744552]
"Share-to-Web Namespace Daemon"="c:\program files (x86)\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [2002-04-17 69632]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2011-06-09 254696]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2011-06-06 937920]
"ANIWZCS2Service"="c:\program files (x86)\ANI\ANIWZCS2 Service\WZCSLDR2.exe" [2004-10-22 45056]
"Malwarebytes' Anti-Malware"="c:\program files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" [2011-09-01 449608]
.
c:\users\JIM\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Stickies.lnk - c:\program files (x86)\Stickies\stickies.exe [2011-2-18 1101824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
Security Packages   REG_MULTI_SZ      kerberos msv1_0 schannel wdigest tspkg pku2u livessp
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\!SASCORE]
@=""
.
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 gupdate;Google Update Service (gupdate);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-21 136176]
R3 gupdatem;Google Update Service (gupdatem);c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-21 136176]
R3 MEMSWEEP2;MEMSWEEP2;c:\windows\system32\6D4.tmp

R3 pctNdis;PC Tools Firewall Intermediate Filter Service;c:\windows\system32\DRIVERS\pctNdis64.sys

R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys

R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe

R4 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-03-01 183560]
S1 aswSnx;aswSnx;

S1 aswSP;aswSP;

S1 pctgntdi;pctgntdi;c:\windows\System32\drivers\pctgntdi64.sys

S1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV64.SYS [2011-07-22 14928]
S1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL64.SYS [2011-07-12 12368]
S2 !SASCORE;SAS Core Service;c:\program files\SUPERAntiSpyware\SASCORE64.EXE [2011-08-11 140672]
S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-06-06 64952]
S2 Akamai;Akamai NetSession Interface;c:\windows\System32\svchost.exe [2009-07-14 27136]
S2 aswFsBlk;aswFsBlk;

S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys

S2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-09-01 366152]
S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys

S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys

S3 PCTFW-PacketFilter;PCTools Firewall - Packet filter driver;c:\windows\system32\drivers\pctNdis-PacketFilter64.sys

S3 pctNdisMP;PC Tools Driver;c:\windows\system32\DRIVERS\pctNdis64.sys

S3 pctplfw;pctplfw;c:\windows\System32\drivers\pctplfw64.sys

S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys

.
.
--- Other Services/Drivers In Memory ---
.
*NewlyCreated* - WS2IFSL
*Deregistered* - AVGIDSDriver
*Deregistered* - AVGIDSEH
*Deregistered* - AVGIDSFilter
*Deregistered* - Avgrkx64
*Deregistered* - Avgtdia
*Deregistered* - pctESPInject
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmt   REG_MULTI_SZ      hpqcxs08 hpqddsvc
Akamai   REG_MULTI_SZ      Akamai
.
Contents of the 'Scheduled Tasks' folder
.
2012-01-29 c:\windows\Tasks\DriverCure.job
- c:\program files (x86)\ParetoLogic\DriverCure\DriverCure.exe [2009-08-07 19:36]
.
2012-01-30 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3909975552-3371312792-2741729148-1000Core.job
- c:\users\JIM\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-09 16:33]
.
2012-01-30 c:\windows\Tasks\FacebookUpdateTaskUserS-1-5-21-3909975552-3371312792-2741729148-1000UA.job
- c:\users\JIM\AppData\Local\Facebook\Update\FacebookUpdate.exe [2011-12-09 16:33]
.
2012-01-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-21 16:45]
.
2012-01-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2010-10-21 16:45]
.
2012-01-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3909975552-3371312792-2741729148-1000Core.job
- c:\users\JIM\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-08 15:07]
.
2012-01-30 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-3909975552-3371312792-2741729148-1000UA.job
- c:\users\JIM\AppData\Local\Google\Update\GoogleUpdate.exe [2011-10-08 15:07]
.
2012-01-30 c:\windows\Tasks\ParetoLogic Registration.job
- c:\windows\system32\rundll32.exe [2009-07-13 01:14]
.
2012-01-30 c:\windows\Tasks\ParetoLogic Update Version2.job
- c:\program files (x86)\Common Files\ParetoLogic\UUS2\Pareto_Update.exe [2009-01-13 14:59]
.
.
--------- x86-64 -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2011-11-28 18:01   134384   ----a-w-   c:\program files\AVAST Software\Avast\ashShA64.dll
.
------- Supplementary Scan -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.yahoo.com/MAIL
mLocal Page = c:\windows\SysWOW64\blank.htm
TCP: DhcpNameServer = 192.168.1.1
.
- - - - ORPHANS REMOVED - - - -
.
URLSearchHooks-{00000000-6E41-4FD3-8538-502F5495E5FC} - c:\program files (x86)\Ask.com\GenericAskToolbar.dll
BHO-{D4027C7F-154A-4066-A1AD-4243D8127440} - c:\program files (x86)\Ask.com\GenericAskToolbar.dll
Toolbar-{CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
Toolbar-{D4027C7F-154A-4066-A1AD-4243D8127440} - c:\program files (x86)\Ask.com\GenericAskToolbar.dll
Wow6432Node-HKLM-Run-ApnUpdater - c:\program files (x86)\Ask.com\Updater\Updater.exe
WebBrowser-{30F9B915-B755-4826-820B-08FBA6BD249D} - (no file)
WebBrowser-{B9B97401-98E1-4942-930D-C36652DAB7F2} - (no file)
WebBrowser-{C2DB4FE6-8409-45CE-8010-189A7B5CCE86} - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
WebBrowser-{C80BDEB2-8735-44C6-BD55-A1CCD555667A} - (no file)
AddRemove-EpicPlay - c:\program files (x86)\EpicPlay\epicRemoval.exe
.
.
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\Akamai]
"ServiceDll"="c:\program files (x86)\common files\akamai/netsession_win_b427739.dll"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\services\MEMSWEEP2]
"ImagePath"="\??\c:\windows\system32\6D4.tmp"
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil11e_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash11e.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
@Denied: (A 2) (Everyone)
@="IFlashBroker4"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Other Running Processes ------------------------
.
c:\program files\AVAST Software\Avast\AvastSvc.exe
c:\program files (x86)\Common Files\LightScribe\LSSrvc.exe
c:\program files (x86)\PC Tools Firewall Plus\FWService.exe
c:\program files (x86)\Microsoft\BingBar\SeaPort.EXE
c:\program files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
.
**************************************************************************
.
Completion time: 2012-01-30  12:59:20 - machine was rebooted
ComboFix-quarantined-files.txt  2012-01-30 19:59
ComboFix2.txt  2011-07-05 17:05
.
Pre-Run: 209,405,624,320 bytes free
Post-Run: 209,444,007,936 bytes free
.
- - End Of File - - 9A372D23AE8E57D88EF51D64F0FC4557
You are much appreciated..     Thank you ,

SuperDave

  • Malware Removal Specialist
  • Moderator


  • Genius
  • Thanked: 996
  • Certifications: List
  • Experience: Expert
  • OS: Windows 8
Re: I cannot access the internet.
« Reply #28 on: January 31, 2012, 04:46:16 PM »
AVENGER

  • Download The Avenger by Swandog46 from here.
  • Unzip/extract it to a folder on your desktop.
  • Double click on avenger.exe to run The Avenger.
  • Click OK.
  • Make sure that the box next to Scan for rootkits has a tick in it and that the box next to Automatically disable any rootkits found does not have a tick in it.
  • Click the Execute button.
  • You will be asked No script has been entered.  Do you want to execute a rootkit scan only?.
  • Click Yes.
  • You will now be asked First step completed --- The Avenger has been successfully set up to run on next boot.  Reboot now?.
  • Click Yes.
  • Your PC will now be rebooted.
  • After your PC has completed the necessary reboots, a log should automatically open. If it does not automatically open, then the log can be found at %systemdrive%\avenger.txt (typically C:\avenger.txt).
  • Please post this log in your next reply.
Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8.1 with a dual boot to Windows XP  Home with SP3, Comodo  with Windows Firewall & Windows Defender

jim.mar

    Topic Starter


    Apprentice
  • Long in the tooth, shy between the ears
    • Yes
  • Computer: Specs
  • Experience: Familiar
  • OS: Windows 7
Re: I cannot access the internet.
« Reply #29 on: February 01, 2012, 11:31:26 AM »
SuperDave:  When I try to run "avenger" I fet the   message:
"Illegal operation attempted on a registry key that has been marked for deletion"

This same thing happens if I try to open a file or game.
You are much appreciated..     Thank you ,