- I used Malwarebytes Anti-Malware
The malware seems to be removed but I found many problems
- I can't print on my wifi printer
- Microsoft firewall doesn't work
- Some gadget and program can't access internet (gadget accuweather, program HideMyIp)
I removed McAffee because I think the Mcaffee firewall is the problem. I installed Norton Antivirus 2012, and I have a strange error (Error norton 5013,3). I removed Norton and now, I'm with AVG 2012 trial.
To enabled Microsoft Firewall, I applied this correction : http://answers.microsoft.com/en-us/windows/forum/windows_7-security/error-code-0x80070424-with-windows-firewall/ec3fc3b8-69ec-4b4b-a703-4b745fe6e8ee?page=7&tm=1327722759954
Broni help me here : http://www.bleepingcomputer.com/forums/topic440667.html
But we are stuck !!!
NOTE on GMER: I don't have all the option enable. Only Services - Registry - Files and ADS are enable. Show all is not enable
DDS LOG:
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_30
Run by Fred at 22:38:51 on 2012-01-31
Microsoft Windows 7 Édition Familiale Premium 6.1.7601.1.1252.2.1036.18.12270.8748 [GMT -5:00]
.
AV: Protection antivirus et antispyware McAfee *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spyware Doctor *Disabled/Updated* {94076BB2-F3DA-227F-9A1E-F060FF73600F}
SP: Protection antivirus et antispyware McAfee *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
FW: Pare-feu McAfee *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
.
============== Running Processes ===============
.
C:\PROGRA~2\AVG\AVG2012\avgrsa.exe
C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\AVG\AVG2012\avgfws.exe
C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\AVG\AVG2012\avgnsa.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe
C:\Program Files (x86)\Hide My IP\HideMyIpSrv.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\WUDFHost.exe
C:\Program Files (x86)\AVG\AVG2012\avgcsrva.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\DllHost.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Windows\System32\rundll32.exe
C:\Windows\System32\rundll32.exe
C:\Program Files (x86)\Dell Stage\Dell Stage\stage_primary.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files (x86)\Cyberlink\PowerDVD9\PDVD9Serv.exe
C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe
C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\AVG\AVG2012\avgtray.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files (x86)\Java\jre6\bin\javaw.exe
C:\Program Files (x86)\Dell DataSafe Local Backup\TOASTER.EXE
C:\Program Files (x86)\Dell DataSafe Local Backup\COMPONENTS\SCHEDULER\STSERVICE.EXE
C:\Program Files (x86)\Dell Stage\Dell Stage\stage_secondary.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil11e_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.ca/
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: uTorrentBar_FR Toolbar: {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files (x86)\uTorrentBar_FR\prxtbuTor.dll
uURLSearchHooks: H - No File
mURLSearchHooks: uTorrentBar_FR Toolbar: {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files (x86)\uTorrentBar_FR\prxtbuTor.dll
mWinlogon: Userinit=userinit.exe,
BHO: uTorrentBar_FR Toolbar: {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files (x86)\uTorrentBar_FR\prxtbuTor.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Canon Easy-WebPrint EX BHO: {3785d0ad-bfff-47f6-bf5b-a587c162fed9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - C:\Program Files (x86)\AVG\AVG2012\avgssie.dll
BHO: PodcastBHO Class: {65134fdf-f8a5-4b3d-91d9-cdf273cfd578} - C:\Program Files (x86)\Common Files\doubleTwist\IEPodcastPlugin.dll
BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
BHO: Java Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO: Programme d'aide de l'Assistant de connexion Windows Live ID: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll
TB: uTorrentBar_FR Toolbar: {05eeb91a-aef7-4f8a-978f-fb83e7b03f8e} - C:\Program Files (x86)\uTorrentBar_FR\prxtbuTor.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: Canon Easy-WebPrint EX: {759d9886-0c6f-4498-bab6-4a5f47c6c72f} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
EB: Canon Easy-WebPrint EX: {21347690-ec41-4f9a-8887-1f4aee672439} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Rank Tracker] C:\Program Files (x86)\SEO PowerSuite\Rank Tracker\bin\ranktracker.exe -minimized
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
mRun: [ShwiconXP9106] C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio PC\THXAudioCP\THXAudio.exe" /r
mRun: [UpdReg] C:\Windows\UpdReg.EXE
mRun: [RemoteControl9] "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"
mRun: [PDVD9LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe"
mRun: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe
mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [<NO NAME>]
mRun: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"
mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"
mRun: [AccuWeatherWidget] "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\start.umj" --startup
mRun: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [IJNetworkScanUtility] C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Trusted Zone: internet
Trusted Zone: mcafee.com
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {F27237D7-93C8-44C2-AC6E-D6057B9A918F} - hxxps://portail.stm.info/dana-cached/sc/JuniperSetupClient.cab
TCP: DhcpNameServer = 192.168.0.1
TCP: Interfaces\{28666490-7DB6-4F69-938A-ACDA5410A29D} : DhcpNameServer = 192.168.0.1
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
Handler: cozi - {5356518D-FE9C-4E08-9C1F-1E872ECD367F} - c:\Program Files (x86)\Cozi Express\CoziProtocolHandler.dll
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files (x86)\AVG\AVG2012\avgpp.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}
{18DF081C-E8AD-4283-A596-FA578C2EBDC3}
{3785D0AD-BFFF-47F6-BF5B-A587C162FED9}
{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
{65134FDF-F8A5-4B3D-91D9-CDF273CFD578}
{6EBF7485-159F-4bff-A14F-B9E3AAC4465B}
{72853161-30C5-4D22-B7F9-0BBC1D38A37E}
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}
{9030D464-4C02-4ABF-8ECC-5164760863C6}
{AA58ED58-01DD-4d91-8333-CF10577473F7}
{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
{B4F3A835-0E21-4959-BA22-42B3008E02FF}
{d2ce3e00-f94a-4740-988e-03dc2f38c34f}
{DBC80044-A445-435b-BC74-9C25C1C588A9}
{8dcb7100-df86-4384-8842-8fa844297b3f}
{05eeb91a-aef7-4f8a-978f-fb83e7b03f8e}
{2318C2B1-4965-11d4-9B18-009027A5CD4F}
{759D9886-0C6F-4498-BAB6-4A5F47C6C72F}
EB-X64: {21347690-EC41-4F9A-8887-1F4AEE672439} - No File
mRun-x64: [IAStorIcon] C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe
mRun-x64: [ShwiconXP9106] C:\Program Files (x86)\Multimedia Card Reader(9106)\ShwiconXP9106.exe
mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun-x64: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio PC\THXAudioCP\THXAudio.exe" /r
mRun-x64: [UpdReg] C:\Windows\UpdReg.EXE
mRun-x64: [RemoteControl9] "C:\Program Files (x86)\CyberLink\PowerDVD9\PDVD9Serv.exe"
mRun-x64: [PDVD9LanguageShortcut] "C:\Program Files (x86)\CyberLink\PowerDVD9\Language\Language.exe"
mRun-x64: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared Files\brs.exe
mRun-x64: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume
mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [(par d‚faut)]
mRun-x64: [RoxWatchTray] "C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatchTray12OEM.exe"
mRun-x64: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\OEM\Roxio Burn\RoxioBurnLauncher.exe"
mRun-x64: [AccuWeatherWidget] "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\accuweather.exe" "C:\Program Files (x86)\Dell Stage\Dell Stage\AccuWeather\start.umj" --startup
mRun-x64: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun-x64: [IJNetworkScanUtility] C:\Program Files (x86)\Canon\Canon IJ Network Scan Utility\CNMNSUT.exe
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [AVG_TRAY] "C:\Program Files (x86)\AVG\AVG2012\avgtray.exe"
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
SEH-X64: {B5A7F190-DDA6-4420-B3BA-52453494E6CD}: Groove GFS Stub Execution Hook
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Fred\AppData\Roaming\Mozilla\Firefox\Profiles\q18ar60g.default\
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
FF - plugin: C:\Program Files (x86)\Common Files\doubleTwist\NPPodcast.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.79\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSEH;AVGIDSEH;C:\Windows\system32\DRIVERS\AVGIDSEH.Sys --> C:\Windows\system32\DRIVERS\AVGIDSEH.Sys [?]
R0 Avgrkx64;AVG Anti-Rootkit Driver;C:\Windows\system32\DRIVERS\avgrkx64.sys --> C:\Windows\system32\DRIVERS\avgrkx64.sys [?]
R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]
R1 Avgfwfd;AVG network filter service;C:\Windows\system32\DRIVERS\avgfwd6a.sys --> C:\Windows\system32\DRIVERS\avgfwd6a.sys [?]
R1 Avgldx64;AVG AVI Loader Driver;C:\Windows\system32\DRIVERS\avgldx64.sys --> C:\Windows\system32\DRIVERS\avgldx64.sys [?]
R1 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;C:\Windows\system32\DRIVERS\avgmfx64.sys --> C:\Windows\system32\DRIVERS\avgmfx64.sys [?]
R1 Avgtdia;AVG TDI Driver;C:\Windows\system32\DRIVERS\avgtdia.sys --> C:\Windows\system32\DRIVERS\avgtdia.sys [?]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-9-5 64952]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
R2 avgfws;Pare-feu AVG;C:\Program Files (x86)\AVG\AVG2012\avgfws.exe [2011-11-23 2391832]
R2 AVGIDSAgent;AVGIDSAgent;C:\Program Files (x86)\AVG\AVG2012\AVGIDSAgent.exe [2011-10-12 4433248]
R2 avgwd;AVG WatchDog;C:\Program Files (x86)\AVG\AVG2012\avgwdsvc.exe [2011-8-2 192776]
R2 IAStorDataMgrSvc;Intel® Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [2011-9-7 13336]
R2 iPodDrv;iPodDrv;\??\C:\Windows\system32\drivers\iPodDrv.sys --> C:\Windows\system32\drivers\iPodDrv.sys [?]
R2 SftService;SoftThinks Agent Service;C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe [2011-9-7 1692480]
R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;C:\Windows\system32\drivers\AtihdW76.sys --> C:\Windows\system32\drivers\AtihdW76.sys [?]
R3 AVGIDSDriver;AVGIDSDriver;C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys --> C:\Windows\system32\DRIVERS\AVGIDSDriver.Sys [?]
R3 AVGIDSFilter;AVGIDSFilter;C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys --> C:\Windows\system32\DRIVERS\AVGIDSFilter.Sys [?]
R3 HideMyIpSRV;HideMyIpSRV;C:\Program Files (x86)\Hide My IP\HideMyIpSrv.exe [2011-10-25 3249512]
R3 IntcDAud;Son Intel® pour écrans;C:\Windows\system32\DRIVERS\IntcDAud.sys --> C:\Windows\system32\DRIVERS\IntcDAud.sys [?]
R3 k57nd60a;Broadcom NetLink Gigabit Ethernet - NDIS 6.0;C:\Windows\system32\DRIVERS\k57nd60a.sys --> C:\Windows\system32\DRIVERS\k57nd60a.sys [?]
R3 MEIx64;Intel® Management Engine Interface;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
S2 CLKMSVC10_9EC60124;CyberLink Product - 2011/09/07 01:12:24;C:\Program Files (x86)\Cyberlink\PowerDVD9\NavFilter\kmsvc.exe [2010-10-26 236016]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Service Google Update (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-10 136176]
S2 McMPFSvc;McAfee Personal Firewall Service;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc --> C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [?]
S2 RoxWatch12;Roxio Hard Drive Watcher 12;C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxWatch12OEM.exe [2010-11-25 219632]
S3 gupdatem;Service Google Update (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-10-10 136176]
S3 Impcd;Impcd;C:\Windows\system32\drivers\Impcd.sys --> C:\Windows\system32\drivers\Impcd.sys [?]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2011-6-12 31125880]
S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
S3 PCDSRVC{1E208CE0-FB7451FF-06020101}_0;PCDSRVC{1E208CE0-FB7451FF-06020101}_0 - PCDR Kernel Mode Service Helper Driver;C:\Program Files\Dell Support Center\pcdsrvc_x64.pkms [2011-3-18 25072]
S3 RoxMediaDB12OEM;RoxMediaDB12OEM;C:\Program Files (x86)\Common Files\Roxio Shared\OEM\12.0\SharedCOM\RoxMediaDB12OEM.exe [2010-11-25 1116656]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 TsUsbGD;%TsUsbGD.DeviceDesc.Generic%;C:\Windows\system32\drivers\TsUsbGD.sys --> C:\Windows\system32\drivers\TsUsbGD.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
S3 WatAdminSvc;Service Windows Activation Technologies;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2012-02-01 01:33:51 -------- d-----w- C:\Users\Fred\AppData\Local\{C1B3EC1C-E559-4518-BF00-6D0FAAD49722}
2012-02-01 01:33:40 -------- d-----w- C:\Users\Fred\AppData\Local\{88226EE9-A3A6-4132-A02D-1CA41F1343AE}
2012-01-31 10:54:41 -------- d-----w- C:\Users\Fred\AppData\Local\{901E392A-83A4-4521-9411-AD1DCBDA1316}
2012-01-31 10:54:30 -------- d-----w- C:\Users\Fred\AppData\Local\{0BBCAB3A-3277-49D6-A13C-83A972550629}
2012-01-31 01:13:21 -------- d-----w- C:\Users\Fred\AppData\Local\CrashDumps
2012-01-31 00:21:54 -------- d-----w- C:\Program Files (x86)\DLLSuite
2012-01-30 18:11:47 -------- d-----w- C:\Users\Fred\AppData\Local\{29C3F86A-9097-4FC2-A4D1-2D2106377B07}
2012-01-30 18:11:33 -------- d-----w- C:\Users\Fred\AppData\Local\{72D22F73-8F1A-4E5D-B5AA-BCCED30CB3A5}
2012-01-30 02:45:03 -------- d-----w- C:\Users\Fred\AppData\Local\{782500FE-E320-414F-B17B-2CAF75EABD2D}
2012-01-30 02:44:52 -------- d-----w- C:\Users\Fred\AppData\Local\{00D574B5-73D5-4906-864C-BD8AC6B125C5}
2012-01-29 02:55:29 -------- d-----w- C:\Users\Fred\AppData\Local\{1F8011DC-EF4D-4392-93FE-9C0EF98AAB03}
2012-01-29 02:55:17 -------- d-----w- C:\Users\Fred\AppData\Local\{4B6E3DC4-9FE1-4447-9220-F2EA0A4B38F8}
2012-01-28 00:52:40 -------- d-----w- C:\Users\Fred\AppData\Local\{772D1E6E-2F9A-4D33-92E1-75C8D2E69C21}
2012-01-28 00:52:30 -------- d-----w- C:\Users\Fred\AppData\Local\{C546C28E-2897-4DA4-8CC5-07DE85EB0035}
2012-01-27 03:34:49 -------- d-----w- C:\Users\Fred\AppData\Local\Diagnostics
2012-01-27 02:57:36 -------- d-----w- C:\fix
2012-01-27 02:46:53 -------- d-----w- C:\Program Files\Common Files\CANON
2012-01-27 02:45:36 -------- d-----w- C:\Program Files\Canon
2012-01-27 02:00:29 -------- d--h--w- C:\$AVG
2012-01-27 01:03:39 -------- d-----w- C:\Users\Fred\AppData\Roaming\AVG2012
2012-01-27 01:03:34 -------- d--h--w- C:\ProgramData\Common Files
2012-01-27 01:03:28 -------- d-----w- C:\Windows\SysWow64\drivers\AVG
2012-01-27 01:03:03 -------- d-----w- C:\Windows\System32\drivers\AVG
2012-01-27 01:03:03 -------- d-----w- C:\ProgramData\AVG2012
2012-01-27 01:02:32 -------- d-----w- C:\Program Files (x86)\AVG
2012-01-27 00:59:35 -------- d-----w- C:\ProgramData\MFAData
2012-01-27 00:55:18 -------- d-----w- C:\Users\Fred\AppData\Local\{0256D3B4-E4AB-4028-9F8E-4CE563F959BF}
2012-01-27 00:55:07 -------- d-----w- C:\Users\Fred\AppData\Local\{C272E572-1A4E-4BE4-BA95-3A89331324BF}
2012-01-26 03:22:53 -------- d-----w- C:\Users\Fred\AppData\Local\{C13C8E97-17D2-467D-AB5B-F685D83D5515}
2012-01-26 03:22:43 -------- d-----w- C:\Users\Fred\AppData\Local\{691A229A-6ED3-46EA-B4F9-157B2E26FA42}
2012-01-25 22:51:47 -------- d-----w- C:\Users\Fred\AppData\Local\ElevatedDiagnostics
2012-01-25 03:10:29 -------- d-----w- C:\EdwinSoft
2012-01-25 01:05:31 -------- d-----w- C:\Users\Fred\AppData\Local\{28FC4DE9-F714-4A8E-A834-1BE0BE522900}
2012-01-25 01:05:20 -------- d-----w- C:\Users\Fred\AppData\Local\{7BA0E699-C914-40AD-BA9A-094E3F970B22}
2012-01-24 01:02:41 -------- d-----w- C:\Users\Fred\AppData\Local\{6F53D5D8-8EDD-4A58-8280-705446A67C4E}
2012-01-24 01:02:30 -------- d-----w- C:\Users\Fred\AppData\Local\{E369A743-E3A5-46A4-936C-2FDD291D8E77}
2012-01-23 03:40:00 -------- d-----w- C:\Users\Fred\AppData\Local\{D61205AC-16C5-4E03-B153-DA6994B340D5}
2012-01-23 03:39:49 -------- d-----w- C:\Users\Fred\AppData\Local\{688F6168-77F0-4A70-9C64-93FF607CCF1D}
2012-01-22 03:49:40 -------- d-----w- C:\Users\Fred\AppData\Local\{D04F8CA2-CBD9-43DF-92AE-9A0AF0CA0E68}
2012-01-22 03:49:29 -------- d-----w- C:\Users\Fred\AppData\Local\{2D7FDD33-9F70-4495-AEC7-A928B8C3ADDA}
2012-01-21 03:08:55 -------- d-----w- C:\Users\Fred\AppData\Local\{C22E9F00-CD47-4586-97F1-A9B364FF9FA6}
2012-01-21 03:08:44 -------- d-----w- C:\Users\Fred\AppData\Local\{9AF5C7B3-53E9-4DD9-BC97-6A6C61CEE0AF}
2012-01-20 00:46:16 -------- d-----w- C:\Users\Fred\AppData\Local\{ED2C6B41-83DB-4DCF-9CE0-30AF9E6E7E35}
2012-01-20 00:46:04 -------- d-----w- C:\Users\Fred\AppData\Local\{62B061F8-FD9B-4A8F-8BEF-470C37A4B546}
2012-01-20 00:11:36 -------- d-----w- C:\Program Files (x86)\Common Files\Symantec Shared
2012-01-19 01:16:27 -------- d-----w- C:\Users\Fred\AppData\Local\NPE
2012-01-19 01:12:46 -------- d-----w- C:\ProgramData\NortonInstaller
2012-01-19 01:09:58 -------- d-----w- C:\ProgramData\Norton
2012-01-19 01:07:58 -------- d-----w- C:\Users\Fred\AppData\Local\{61A57634-DB92-447D-A796-80D22AE3D78B}
2012-01-19 01:07:46 -------- d-----w- C:\Users\Fred\AppData\Local\{15819BDA-CC84-49D1-BFBA-9592F0AA50BE}
2012-01-19 00:27:27 -------- d-----w- C:\Users\Fred\AppData\Roaming\McAfee
2012-01-18 23:32:08 -------- d-----w- C:\Users\Fred\AppData\Roaming\Malwarebytes
2012-01-18 23:32:01 -------- d-----w- C:\ProgramData\Malwarebytes
2012-01-18 23:32:00 23152 ----a-w- C:\Windows\System32\drivers\mbam.sys
2012-01-18 23:32:00 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-01-17 20:05:21 -------- d-----w- C:\sh4ldr
2012-01-17 20:05:21 -------- d-----w- C:\Program Files\Enigma Software Group
2012-01-17 20:04:49 -------- d-----w- C:\Windows\89A072791DB3485AB1DF584DF86774B9.TMP
2012-01-17 20:04:48 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2012-01-17 20:02:15 626688 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcr80.dll
2012-01-17 20:02:15 548864 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcp80.dll
2012-01-17 20:02:15 479232 ----a-w- C:\Program Files (x86)\Mozilla Firefox\msvcm80.dll
2012-01-17 20:02:15 43992 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozutils.dll
2012-01-17 17:03:12 -------- d-----w- C:\Users\Fred\AppData\Local\{91DAC133-5F44-4FFC-8FE8-58B1E2CD708D}
2012-01-17 17:03:01 -------- d-----w- C:\Users\Fred\AppData\Local\{BF2007FD-F3D9-4BC5-B6EE-0DAC31E33EE9}
2012-01-17 03:04:47 -------- d-----w- C:\Users\Fred\AppData\Local\{980E5CF4-3A28-4F63-8B65-491DAA7EC34E}
2012-01-17 03:04:36 -------- d-----w- C:\Users\Fred\AppData\Local\{34BA0088-F1A3-48AD-B1B0-71A8DDC62A79}
2012-01-16 10:47:25 -------- d-----w- C:\Users\Fred\AppData\Local\{0D0CF62D-50FD-4FE4-B31E-86CBF8BC7580}
2012-01-16 10:47:14 -------- d-----w- C:\Users\Fred\AppData\Local\{3635798C-AC42-42F6-BAE1-C25E4FF71A6A}
2012-01-15 20:29:49 -------- d-----w- C:\Users\Fred\AppData\Local\{05D3FA71-26A3-4028-ABFF-3E0B3B73245A}
2012-01-15 20:29:38 -------- d-----w- C:\Users\Fred\AppData\Local\{56D9CD70-CBD7-4E34-BB70-F2F0757BC16D}
2012-01-14 13:45:55 -------- d-----w- C:\Users\Fred\AppData\Local\{FD3BCF6C-2109-4EA1-AB22-E40AC8017BBD}
2012-01-14 13:45:44 -------- d-----w- C:\Users\Fred\AppData\Local\{C39240FC-59C6-49B0-8642-910CE4F49DFD}
2012-01-14 04:27:19 -------- d-----w- C:\Program Files (x86)\Citrix
2012-01-14 01:45:16 -------- d-----w- C:\Users\Fred\AppData\Local\{7306241F-0C99-47CD-8B28-89FDA4E7E604}
2012-01-14 01:45:05 -------- d-----w- C:\Users\Fred\AppData\Local\{71F033A2-E488-4385-BD9D-72E26A91358D}
2012-01-12 22:57:46 -------- d-----w- C:\Users\Fred\AppData\Local\{CFFA66BB-1235-44BC-B163-43C8D203F7E4}
2012-01-12 22:57:35 -------- d-----w- C:\Users\Fred\AppData\Local\{624E2B1C-13C2-42D1-90C6-BEEE58455FAE}
2012-01-12 02:20:07 -------- d-----w- C:\Users\Fred\AppData\Local\{DE4B2A80-4409-40EB-92D6-D14FDC9B6844}
2012-01-12 02:19:56 -------- d-----w- C:\Users\Fred\AppData\Local\{72BAFFFC-74D1-4835-89E8-B2EA99B5BDCD}
2012-01-12 00:45:41 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll
2012-01-12 00:45:41 366592 ----a-w- C:\Windows\System32\qdvd.dll
2012-01-12 00:45:41 1572864 ----a-w- C:\Windows\System32\quartz.dll
2012-01-12 00:45:41 1328128 ----a-w- C:\Windows\SysWow64\quartz.dll
2012-01-12 00:45:40 1731920 ----a-w- C:\Windows\System32\ntdll.dll
2012-01-12 00:45:40 1292080 ----a-w- C:\Windows\SysWow64\ntdll.dll
2012-01-12 00:45:39 77312 ----a-w- C:\Windows\System32\packager.dll
2012-01-12 00:45:39 67072 ----a-w- C:\Windows\SysWow64\packager.dll
2012-01-11 01:00:09 -------- d-----w- C:\Users\Fred\AppData\Local\{123D09DA-F400-490B-A8D3-28A500DC3D33}
2012-01-11 00:59:58 -------- d-----w- C:\Users\Fred\AppData\Local\{55BCAC1D-7BC1-406A-8287-F4391D576444}
2012-01-09 22:54:45 -------- d-----w- C:\Users\Fred\AppData\Local\{D989F0D1-C303-44BB-AFBB-30B2B10245D0}
2012-01-09 22:54:35 -------- d-----w- C:\Users\Fred\AppData\Local\{48DAC6DD-D138-4E5A-A23D-1797A8389A3C}
2012-01-09 10:54:10 -------- d-----w- C:\Users\Fred\AppData\Local\{A960C772-A63E-487D-B2F4-310721FE101B}
2012-01-09 10:54:00 -------- d-----w- C:\Users\Fred\AppData\Local\{21233598-377C-4313-ACFB-4E71B2F4D86A}
2012-01-08 21:57:58 -------- d-----w- C:\Users\Fred\AppData\Local\{0248E21C-A569-4078-AA5E-9D8C355D3BC3}
2012-01-08 21:57:47 -------- d-----w- C:\Users\Fred\AppData\Local\{F82F67D7-03F5-4AE1-91C3-2A335C76BCD8}
2012-01-08 03:38:37 -------- d-----w- C:\Users\Fred\AppData\Local\{B9913409-8ED6-4054-AD6D-3352EB589379}
2012-01-08 03:38:26 -------- d-----w- C:\Users\Fred\AppData\Local\{400400DF-DD1D-48CA-BE8A-D3D03A253754}
2012-01-07 04:17:41 -------- d-----w- C:\Users\Fred\AppData\Local\{2465BC33-53D9-4E8E-9B9B-631C6EC65B74}
2012-01-07 04:17:30 -------- d-----w- C:\Users\Fred\AppData\Local\{1F0E4D4E-9B8A-43CF-B5D6-EA83666DEF7E}
2012-01-06 01:07:19 -------- d-----w- C:\Users\Fred\AppData\Local\{0B0D3877-6701-45BA-BB7D-5C04CEA98EB6}
2012-01-06 01:07:08 -------- d-----w- C:\Users\Fred\AppData\Local\{8AF04232-073E-4A09-9452-E28890FF7BDB}
2012-01-05 03:38:15 -------- d-----w- C:\Users\Fred\AppData\Local\{4863B0B0-F052-4315-940B-15AFAF5D8D28}
2012-01-05 03:38:04 -------- d-----w- C:\Users\Fred\AppData\Local\{F7528724-BB8A-4A0C-A4DA-C43CD78FCA41}
2012-01-04 02:41:13 -------- d-----w- C:\Users\Fred\AppData\Local\{A3AFF64C-3E6E-4230-BAB2-E773F59B5D11}
2012-01-04 02:41:02 -------- d-----w- C:\Users\Fred\AppData\Local\{6AD375D4-CEAC-47A7-B13E-C634A893CCB9}
2012-01-03 14:40:38 -------- d-----w- C:\Users\Fred\AppData\Local\{8917A168-485F-478A-9A3B-FE01A7F20621}
2012-01-03 14:40:27 -------- d-----w- C:\Users\Fred\AppData\Local\{C06C5D75-AEC5-41A9-9D24-37D9F19AA6C2}
2012-01-03 02:37:07 -------- d-----w- C:\Users\Fred\AppData\Local\{4854DA4B-922F-4B20-A525-33CDAA79D837}
2012-01-03 02:36:56 -------- d-----w- C:\Users\Fred\AppData\Local\{BEDB199D-DA48-4392-B3E4-EF12886D0D01}
2012-01-02 14:36:32 -------- d-----w- C:\Users\Fred\AppData\Local\{34F52C0C-63DC-409D-B578-85EDE746143C}
2012-01-02 14:36:21 -------- d-----w- C:\Users\Fred\AppData\Local\{EF7AB3A7-D3F4-46A6-B7CE-9014B8EED680}
.
==================== Find3M ====================
.
2012-01-31 01:23:30 24576 ----a-w- C:\Windows\System32\drivers\nsiproxy.sys
2011-12-27 03:39:57 414368 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-11-26 03:50:40 627600 ----a-w- C:\Windows\System32\deployJava1.dll
2011-11-24 04:52:09 3145216 ----a-w- C:\Windows\System32\win32k.sys
2011-11-17 06:49:14 95600 ----a-w- C:\Windows\System32\drivers\ksecdd.sys
2011-11-17 06:49:14 152432 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2011-11-17 06:44:43 459232 ----a-w- C:\Windows\System32\drivers\cng.sys
2011-11-17 06:35:28 395776 ----a-w- C:\Windows\System32\webio.dll
2011-11-17 06:35:26 29184 ----a-w- C:\Windows\System32\sspisrv.dll
2011-11-17 06:35:26 136192 ----a-w- C:\Windows\System32\sspicli.dll
2011-11-17 06:35:25 340992 ----a-w- C:\Windows\System32\schannel.dll
2011-11-17 06:35:25 28160 ----a-w- C:\Windows\System32\secur32.dll
2011-11-17 06:35:19 1447936 ----a-w- C:\Windows\System32\lsasrv.dll
2011-11-17 06:33:55 31232 ----a-w- C:\Windows\System32\lsass.exe
2011-11-17 05:35:02 314880 ----a-w- C:\Windows\SysWow64\webio.dll
2011-11-17 05:34:52 224768 ----a-w- C:\Windows\SysWow64\schannel.dll
2011-11-17 05:34:52 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
2011-11-17 05:28:48 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2011-11-10 10:54:13 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2011-11-05 05:32:50 2048 ----a-w- C:\Windows\System32\tzres.dll
2011-11-05 04:26:03 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2011-11-04 01:53:39 2309120 ----a-w- C:\Windows\System32\jscript9.dll
2011-11-04 01:44:47 1390080 ----a-w- C:\Windows\System32\wininet.dll
2011-11-04 01:44:21 1493504 ----a-w- C:\Windows\System32\inetcpl.cpl
2011-11-04 01:34:43 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2011-11-03 22:47:42 1798144 ----a-w- C:\Windows\SysWow64\jscript9.dll
2011-11-03 22:40:21 1427456 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2011-11-03 22:39:47 1127424 ----a-w- C:\Windows\SysWow64\wininet.dll
2011-11-03 22:31:57 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
.
============= FINISH: 22:39:16,26 ===============


Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
This topic is locked

Back to top









