.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 10.4.1
Run by User at 15:58:05 on 2012-06-06
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.353.1033.18.3933.542 [GMT 1:00]
.
AV: ESET NOD32 Antivirus 4.0 *Enabled/Updated* {CB0F8167-5331-BA19-698E-64816B6801A5}
SP: ESET NOD32 Antivirus 4.0 *Enabled/Updated* {706E6083-750B-B597-533E-5FF310EF4B18}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\spoolsv.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\SysWOW64\svchost.exe -k Akamai
c:\xampp\apache\bin\httpd.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\x86\ekrn.exe
C:\Program Files (x86)\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_32server.exe
C:\Program Files\Autodesk\3ds Max 2010\mentalray\satellite\raysat_3dsmax2010_64server.exe
C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
c:\xampp\mysql\bin\mysqld.exe
C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe
C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\TOSHIBA\TECO\TEco.exe
C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\System32\StikyNot.exe
C:\Users\User\AppData\Local\Akamai\netsession_win.exe
C:\Windows\system32\igfxext.exe
C:\Users\User\AppData\Local\Google\Update\1.3.21.111\GoogleCrashHandler.exe
C:\Users\User\AppData\Local\Akamai\netsession_win.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Users\User\AppData\Local\Google\Update\1.3.21.111\GoogleCrashHandler64.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
C:\Sun\SDK\jdk\bin\javaw.exe
C:\Program Files (x86)\Sierra Wireless Inc\WebUpdater\TRUUpdater.exe
C:\Program Files (x86)\O2 Connection Manager\WaHelper.exe
C:\Program Files (x86)\BrowserCompanion\BCHelper.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Windows\temp\firefox.exe
C:\Windows\temp\firefox.exe
C:\Windows\system32\TODDSrv.exe
C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
C:\Program Files\TOSHIBA\TECO\TecoService.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Yahoo!\Messenger\ymsgr_tray.exe
C:\xampp\apache\bin\httpd.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\SearchIndexer.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Users\User\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
C:\Windows\sysWOW64\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe
C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\wbem\WmiApSrv.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
.
============== Pseudo HJT Report ===============
.
uSearch Page = hxxp://www.plusnetwork.com/?sp=ctbar&q={searchTerms}&dp=MessengerPlus
uStart Page = hxxp://www.google.ie/
uDefault_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=TSEH&bmod=TSEH
uSearch Bar = hxxp://www.plusnetwork.com/?sp=ctbar&q={searchTerms}&dp=MessengerPlus
uInternet Settings,ProxyServer = 193.1.40.28:3128
uInternet Settings,ProxyOverride = <local>;*.local;127.0.0.1:9421;
uSearchAssistant = hxxp://www.plusnetwork.com/?sp=ctbar&q={searchTerms}&dp=MessengerPlus
mURLSearchHooks: Softonic VLC EN Toolbar: {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files (x86)\Softonic_VLC_EN\tbSoft.dll
BHO: Browser Companion Helper: {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files (x86)\BrowserCompanion\jsloader.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO: Java Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Browser Companion Helper Verifier: {963b125b-8b21-49a2-a3a8-e37092276531} - C:\Program Files (x86)\BrowserCompanion\updatebhoWin32.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
BHO: Softonic VLC EN Toolbar: {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files (x86)\Softonic_VLC_EN\tbSoft.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: Softonic VLC EN Toolbar: {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files (x86)\Softonic_VLC_EN\tbSoft.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
{ae07101b-46d4-4a98-af68-0333ea26e113}
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
uRun: [Google Update] "C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
uRun: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
uRun: [Akamai NetSession Interface] "C:\Users\User\AppData\Local\Akamai\netsession_win.exe"
uRun: [Java] C:\Users\User\AppData\Roaming\Java.exe
uRun: [FacebookUp] C:\Users\User\AppData\Roaming\Fbook.exe
uRun: [JavaCenter] C:\Users\User\AppData\Roaming\JavaCenter.exe
mRun: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
mRun: [HWSetup] "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
mRun: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
mRun: [TWebCamera] "%ProgramFiles%\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" autorun
mRun: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
mRun: [TRUUpdater] "C:\Program Files (x86)\Sierra Wireless Inc\WebUpdater\TRUUpdater.exe" /bkground
mRun: [WatcherHelper] "C:\Program Files (x86)\O2 Connection Manager\WaHelper.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [Browser companion helper] C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /S=7
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
dRun: [TOSHIBA Online Product Information] C:\Program Files (x86)\TOSHIBA\Toshiba Online Product Information\topi.exe
StartupFolder: C:\Users\User\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\User\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\Users\User\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\EVERNO~1.LNK - C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
StartupFolder: C:\Users\User\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\SDKTRA~1.LNK - C:\Sun\SDK\jdk\bin\javaw.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: Add to Evernote 4.0 - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office12\EXCEL.EXE/3000
IE: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~2\Office12\ONBttnIE.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~2\Office12\REFIEBAR.DLL
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_16-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{31BA8D6F-CAB8-409A-B43D-F905FD3B8838} : NameServer = 62.40.32.33 8.8.8.8
TCP: Interfaces\{3D1C9114-52E6-4EBA-A604-4365B3FE410B} : DhcpNameServer = 192.168.1.254
TCP: Interfaces\{3D1C9114-52E6-4EBA-A604-4365B3FE410B}\74275656E6547676 : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{8169041E-980C-4811-BE4C-55AC4BAD1190} : NameServer = 62.40.32.33 8.8.8.8
TCP: Interfaces\{A86212AF-FEC7-4A24-88EB-4348EBAE599C} : DhcpNameServer = 192.168.1.1
Handler: base64 - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll
Handler: chrome - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
Handler: prox - {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1} - C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO-X64: Browser Companion Helper: {00cbb66b-1d3b-46d3-9577-323a336acb50} - C:\Program Files (x86)\BrowserCompanion\jsloader.dll
BHO-X64: script helper for ie - No File
BHO-X64: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
BHO-X64: 0x1 - No File
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
BHO-X64: Java Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\ssv.dll
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Browser Companion Helper Verifier: {963B125B-8B21-49A2-A3A8-E37092276531} - C:\Program Files (x86)\BrowserCompanion\updatebhoWin32.dll
BHO-X64: Update Timer - No File
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5612.1312\swg.dll
BHO-X64: Google Dictionary Compression sdch: {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
BHO-X64: Google Dictionary Compression sdch - No File
BHO-X64: Java Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\jp2ssv.dll
BHO-X64: Softonic VLC EN Toolbar: {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files (x86)\Softonic_VLC_EN\tbSoft.dll
BHO-X64: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB-X64: Softonic VLC EN Toolbar: {e6570cd8-9978-4621-b1f9-6a62436f0466} - C:\Program Files (x86)\Softonic_VLC_EN\tbSoft.dll
TB-X64: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn\yt.dll
{ae07101b-46d4-4a98-af68-0333ea26e113}
mRun-x64: [SVPWUTIL] C:\Program Files (x86)\TOSHIBA\Utilities\SVPWUTIL.exe SVPwUTIL
mRun-x64: [HWSetup] "C:\Program Files\TOSHIBA\Utilities\HWSetup.exe" hwSetUP
mRun-x64: [KeNotify] C:\Program Files (x86)\TOSHIBA\Utilities\KeNotify.exe
mRun-x64: [TWebCamera] "%ProgramFiles%\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" autorun
mRun-x64: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
mRun-x64: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
mRun-x64: [TRUUpdater] "C:\Program Files (x86)\Sierra Wireless Inc\WebUpdater\TRUUpdater.exe" /bkground
mRun-x64: [WatcherHelper] "C:\Program Files (x86)\O2 Connection Manager\WaHelper.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [Browser companion helper] C:\Program Files (x86)\BrowserCompanion\BCHelper.exe /T=3 /S=7
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
IE-X64: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\f2zfj3pe.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2365274&SearchSource=3&q={searchTerms}
FF - prefs.js: browser.startup.homepage - google.com
FF - prefs.js: keyword.URL - hxxp://www.plusnetwork.com/?sp=addr&q=
FF - component: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\f2zfj3pe.default\extensions\{9b339f6e-ddcd-401b-8764-230adbd01761}\components\FFExternalAlert.dll
FF - component: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\f2zfj3pe.default\extensions\{9b339f6e-ddcd-401b-8764-230adbd01761}\components\RadioWMPCore.dll
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\5.1.10411.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npwachk.dll
FF - plugin: C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
FF - plugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Users\User\AppData\Local\Google\Update\1.3.21.111\npGoogleUpdate3.dll
FF - plugin: C:\Users\User\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll
FF - plugin: C:\Users\User\AppData\Roaming\Facebook\npfbplugin_1_0_1.dll
FF - plugin: C:\Users\User\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll
FF - plugin: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\f2zfj3pe.default\extensions\{e6570cd8-9978-4621-b1f9-6a62436f0466}\plugins\np-mswmp.dll
FF - plugin: C:\Users\User\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll
FF - plugin: C:\Users\User\AppData\Roaming\Mozilla\plugins\npgtpo3dautoplugin.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_2_202_235.dll
FF - plugin: C:\Windows\SysWOW64\npDeployJava1.dll
FF - plugin: C:\Windows\SysWOW64\npmproxy.dll
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
R2 epfwwfpr;epfwwfpr;C:\Windows\system32\DRIVERS\epfwwfpr.sys --> C:\Windows\system32\DRIVERS\epfwwfpr.sys [?]
R3 IntcHdmiAddService;Intel® High Definition Audio HDMI;C:\Windows\system32\drivers\IntcHdmi.sys --> C:\Windows\system32\drivers\IntcHdmi.sys [?]
R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
R3 PGEffect;Pangu effect driver;C:\Windows\system32\DRIVERS\pgeffect.sys --> C:\Windows\system32\DRIVERS\pgeffect.sys [?]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
R3 rtl8192se;Realtek Wireless LAN 802.11n PCI-E NIC NT Driver;C:\Windows\system32\DRIVERS\rtl8192se.sys --> C:\Windows\system32\DRIVERS\rtl8192se.sys [?]
S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;C:\Windows\system32\Drivers\ssadadb.sys --> C:\Windows\system32\Drivers\ssadadb.sys [?]
S3 pwdrvio;pwdrvio;\??\C:\Windows\system32\pwdrvio.sys --> C:\Windows\system32\pwdrvio.sys [?]
S3 pwdspio;pwdspio;\??\C:\Windows\system32\pwdspio.sys --> C:\Windows\system32\pwdspio.sys [?]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\system32\Drivers\RtsUStor.sys --> C:\Windows\system32\Drivers\RtsUStor.sys [?]
.
=============== Created Last 30 ================
.
2012-06-06 14:49:54 53 ----a-w- C:\Users\User\AppData\Roaming\mata.bat
2012-06-06 14:49:50 162 ----a-w- C:\Users\User\AppData\Roaming\mata2.bat
2012-06-06 11:08:11 78 ----a-w- C:\Users\User\AppData\Roaming\invs.vbs
2012-06-06 11:03:07 -------- d-----w- C:\Users\User\AppData\Roaming\dclogs
2012-06-06 03:05:58 -------- d-----w- C:\Users\User\AppData\Local\{545BD9ED-01D2-4561-916C-3DB2D3F48998}
2012-06-06 03:05:33 -------- d-----w- C:\Users\User\AppData\Local\{F7A8BC78-EA9D-4863-8577-E9EF80DF6841}
2012-06-05 15:04:47 -------- d-----w- C:\Users\User\AppData\Local\{722552F6-EA33-4A37-B4EF-8D03F7999FD3}
2012-06-05 15:04:31 -------- d-----w- C:\Users\User\AppData\Local\{CF234925-F5FD-4D8D-B1CF-D485CECE8768}
2012-06-05 10:24:06 8955792 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{CDCDD28B-F159-413E-B12A-2000B8619D16}\mpengine.dll
2012-06-05 02:39:34 -------- d-----w- C:\Users\User\AppData\Local\{F7CAFB2B-13E5-4509-AA62-9F45B9842AAD}
2012-06-05 02:39:00 -------- d-----w- C:\Users\User\AppData\Local\{F5728129-256C-4973-971A-04F8D67D5024}
2012-06-04 13:01:35 -------- d-----w- C:\Users\User\AppData\Local\{6CFC8116-04D9-4A2D-B3F2-CB0FEAFBBCE2}
2012-06-04 13:01:06 -------- d-----w- C:\Users\User\AppData\Local\{2B8E8E12-501E-40D4-910A-F787FD699B7F}
2012-06-04 00:58:57 -------- d-----w- C:\Users\User\AppData\Local\{453987C3-F890-4BEF-A884-45D2AF6A7382}
2012-06-04 00:58:14 -------- d-----w- C:\Users\User\AppData\Local\{12948579-368B-4355-8356-6257CFD4EFEC}
2012-06-03 23:05:17 1321016 ----a-w- C:\Users\User\AppData\Roaming\07MJUJHP7ZWO652dc.exe
2012-06-03 21:12:58 670215 ----a-w- C:\Users\User\AppData\Roaming\B5Y2WXJavaC.exe
2012-06-03 12:56:06 -------- d-----w- C:\Users\User\AppData\Local\{16637058-C116-4A12-AF3D-A2C0973B2259}
2012-06-03 12:55:44 -------- d-----w- C:\Users\User\AppData\Local\{AA2E81B1-79E8-4BD7-8038-3DE9C82E5FC2}
2012-06-02 22:48:10 -------- d-----w- C:\Users\User\AppData\Local\{699DC4D3-F93D-452A-994F-8DCA3954507A}
2012-06-02 22:47:42 -------- d-----w- C:\Users\User\AppData\Local\{40DA1E34-8708-496A-BDF1-90CF0A5ED7B7}
2012-06-02 21:43:14 1169224 ----a-w- C:\Users\User\AppData\Roaming\UPd.exe
2012-06-02 10:47:25 -------- d-----w- C:\Users\User\AppData\Local\{A559EFED-A840-4CBE-A34B-A325AF829C1A}
2012-06-02 10:47:01 -------- d-----w- C:\Users\User\AppData\Local\{A569CFF1-E8BE-48ED-ACC1-AB0FCDA498B2}
2012-06-01 22:46:12 -------- d-----w- C:\Users\User\AppData\Local\{5E540C0C-4435-4F3C-A0B3-9EB55929816C}
2012-06-01 22:45:44 -------- d-----w- C:\Users\User\AppData\Local\{6FF5E62E-1E65-4052-AA1B-3093CB69CE2F}
2012-06-01 10:44:37 -------- d-----w- C:\Users\User\AppData\Local\{202D44FD-E5B3-4BB7-BDD6-ABF8C3ECD908}
2012-06-01 10:44:12 -------- d-----w- C:\Users\User\AppData\Local\{DED485EE-D669-4C6C-9F65-7A1D40C7537E}
2012-05-31 22:43:34 -------- d-----w- C:\Users\User\AppData\Local\{AD2D64E4-88AA-4261-AB20-A7AB774D30AB}
2012-05-31 22:43:08 -------- d-----w- C:\Users\User\AppData\Local\{04E84696-5D9F-4D47-8C2F-59E3D5A99970}
2012-05-31 10:42:22 -------- d-----w- C:\Users\User\AppData\Local\{7E953193-C1E1-4910-B406-A9F459324577}
2012-05-31 10:41:43 -------- d-----w- C:\Users\User\AppData\Local\{32ED5FF0-E6BA-43D4-9083-6227E989F8BC}
2012-05-30 11:39:53 -------- d-----w- C:\Users\User\AppData\Local\{29E44EDF-1678-4EDC-9FA6-E6230D934D0C}
2012-05-30 11:39:26 -------- d-----w- C:\Users\User\AppData\Local\{C61CBECC-4137-454E-811A-CCB6F76EC80B}
2012-05-29 23:38:38 -------- d-----w- C:\Users\User\AppData\Local\{2299E085-0956-467B-AFC0-C788709877C1}
2012-05-29 23:38:10 -------- d-----w- C:\Users\User\AppData\Local\{37F27488-4D25-4F6B-BD1C-77AA6A01E600}
2012-05-29 11:37:19 -------- d-----w- C:\Users\User\AppData\Local\{65FD2FF5-1476-4972-88F2-98E4E694D52D}
2012-05-29 11:36:33 -------- d-----w- C:\Users\User\AppData\Local\{F77CFC87-D636-421C-B63E-6EE115C4D9EB}
2012-05-28 23:14:41 -------- d-----w- C:\Users\User\AppData\Local\{201C49BD-F451-458A-956D-B713DA5366B6}
2012-05-28 23:14:27 -------- d-----w- C:\Users\User\AppData\Local\{51FBFB94-D223-4499-995F-8CEF4A4008A7}
2012-05-28 11:13:59 -------- d-----w- C:\Users\User\AppData\Local\{8AB2DE91-1934-409B-A940-5BE5E0E0B816}
2012-05-28 11:13:40 -------- d-----w- C:\Users\User\AppData\Local\{6123B765-7B47-4818-B316-98197AF5DDB4}
2012-05-27 16:49:31 -------- d-----w- C:\Users\User\AppData\Local\{A9E134C2-6AF9-4509-9673-EFC60B1E9B43}
2012-05-27 16:49:15 -------- d-----w- C:\Users\User\AppData\Local\{CB50A191-6933-4DC7-8215-A08E7A96269C}
2012-05-27 01:24:20 -------- d-----w- C:\Users\User\AppData\Local\{619A4700-B826-4BAD-B831-BD262A943204}
2012-05-27 01:23:52 -------- d-----w- C:\Users\User\AppData\Local\{D69B302B-2B61-4CBD-977A-AB7029298F47}
2012-05-26 23:59:55 -------- d-----w- C:\Program Files (x86)\Oracle
2012-05-26 23:59:10 772504 ----a-w- C:\Windows\SysWow64\npDeployJava1.dll
2012-05-26 13:23:15 -------- d-----w- C:\Users\User\AppData\Local\{68EC6C4E-1489-4517-A305-E505AA6E8CE2}
2012-05-26 13:22:51 -------- d-----w- C:\Users\User\AppData\Local\{7F30E0CE-5EF2-4CF7-8775-1D9B1BFDE60A}
2012-05-26 01:22:08 -------- d-----w- C:\Users\User\AppData\Local\{06DD3B62-3E3E-40FC-8E67-DF118E3A8DE4}
2012-05-26 01:21:38 -------- d-----w- C:\Users\User\AppData\Local\{BFE57248-506B-4F72-934A-D7BE11DC8546}
2012-05-25 13:21:17 -------- d-----w- C:\Users\User\AppData\Local\{043CB879-5027-4B84-AF88-DA10221D810D}
2012-05-25 13:20:53 -------- d-----w- C:\Users\User\AppData\Local\{AD25F630-B39B-4EBB-93F9-B8E302B8E456}
2012-05-25 01:20:17 -------- d-----w- C:\Users\User\AppData\Local\{E9495422-D079-426B-9CBC-53E52A934839}
2012-05-25 01:20:05 -------- d-----w- C:\Users\User\AppData\Local\{36631A6C-D75B-4CE9-BBA5-14460D7296B2}
2012-05-24 10:47:20 -------- d-----w- C:\Users\User\AppData\Local\{31227ACA-1E40-4AE8-8641-AD3B04281D04}
2012-05-24 10:47:07 -------- d-----w- C:\Users\User\AppData\Local\{0AB897C1-74FD-4D28-9230-C08B40500CD2}
2012-05-23 11:44:51 -------- d-----w- C:\Users\User\AppData\Local\{D567A42A-2F77-4C3A-B40E-D8171F8C1D53}
2012-05-23 11:44:26 -------- d-----w- C:\Users\User\AppData\Local\{0E43B552-E7A4-47C1-9007-AD4439B226F0}
2012-05-22 23:43:50 -------- d-----w- C:\Users\User\AppData\Local\{9C1EADA9-2A9E-4CCE-86AF-FEF08C95E07F}
2012-05-22 23:43:26 -------- d-----w- C:\Users\User\AppData\Local\{C1722CFF-77DC-4B62-9E9B-BCBD434AF218}
2012-05-22 11:42:36 -------- d-----w- C:\Users\User\AppData\Local\{D5CC6A5C-3D6A-4A89-BF26-27CF5D9C8A1C}
2012-05-22 11:42:08 -------- d-----w- C:\Users\User\AppData\Local\{2905F9CA-E081-4548-9143-79DA49A3538B}
2012-05-21 23:15:09 -------- d-----w- C:\Users\User\AppData\Local\{694E86DA-6A36-4324-9950-7A158350B9A6}
2012-05-21 23:14:54 -------- d-----w- C:\Users\User\AppData\Local\{91A0A1B3-E031-4DA5-99FB-7FCAA6A24A4E}
2012-05-21 11:12:04 -------- d-----w- C:\Users\User\AppData\Local\{29E289F2-FA88-47D6-9605-408BBB414D88}
2012-05-21 11:11:38 -------- d-----w- C:\Users\User\AppData\Local\{9171249A-0991-4B9D-A751-0BF41A1B8416}
2012-05-20 19:05:03 -------- d-----w- C:\Users\User\AppData\Local\{377727AB-405F-4572-A59E-17425F82DC80}
2012-05-20 19:04:45 -------- d-----w- C:\Users\User\AppData\Local\{27F144D7-8738-435F-8972-8E0CFB6A8EA7}
2012-05-20 01:09:48 -------- d-----w- C:\Users\User\AppData\Local\{2D68A1F0-AC38-4BB5-9227-ECDA8021B55D}
2012-05-20 01:09:28 -------- d-----w- C:\Users\User\AppData\Local\{2DD90E8E-636D-4C27-9A49-BC96D4CEF6C6}
2012-05-19 13:08:19 -------- d-----w- C:\Users\User\AppData\Local\{AF69675F-87D8-4533-8605-330C4F48F674}
2012-05-19 13:07:44 -------- d-----w- C:\Users\User\AppData\Local\{3BF57DE4-A6CF-49F2-8C8E-A852ADAEA1F7}
2012-05-18 23:40:28 -------- d-----w- C:\Users\User\AppData\Local\{653DF513-AD79-4A52-87C8-A5D59E542842}
2012-05-18 23:40:03 -------- d-----w- C:\Users\User\AppData\Local\{3BDC12FD-C5DA-49E9-B770-7A0D88B11C7D}
2012-05-18 11:39:40 -------- d-----w- C:\Users\User\AppData\Local\{D79B4393-AB47-44E4-B4A8-A1EC6B389174}
2012-05-18 11:39:15 -------- d-----w- C:\Users\User\AppData\Local\{90A081D4-BDE7-4091-81F7-2F6E8868A421}
2012-05-17 23:38:36 -------- d-----w- C:\Users\User\AppData\Local\{53341F73-A32B-45EC-8220-97D564EAF561}
2012-05-17 23:38:09 -------- d-----w- C:\Users\User\AppData\Local\{1BEE16F0-53A2-4561-A62C-7051F4D268BF}
2012-05-17 11:37:32 -------- d-----w- C:\Users\User\AppData\Local\{5A7B1D98-5DD5-423F-8138-5AB2DEDBB44F}
2012-05-17 11:37:05 -------- d-----w- C:\Users\User\AppData\Local\{F484055B-CC51-42F3-B932-A6C3F838A74D}
2012-05-16 13:39:00 -------- d-----w- C:\Users\User\AppData\Local\{D2299211-5EAD-4C0D-AF1C-1AEFF80383C0}
2012-05-16 13:38:23 -------- d-----w- C:\Users\User\AppData\Local\{DEA0E6B7-DCDF-470D-B0D0-C112ED4AF26C}
2012-05-15 23:53:34 -------- d-----w- C:\Users\User\AppData\Local\{7565AEA4-BACD-4654-AC08-174A0C594DE9}
2012-05-15 23:53:04 -------- d-----w- C:\Users\User\AppData\Local\{C3FB474F-DFAB-4BED-BF37-B7FF44D6DE3E}
2012-05-15 11:52:16 -------- d-----w- C:\Users\User\AppData\Local\{4529895C-68F2-449E-9D06-8C2C8F702F73}
2012-05-15 11:51:58 -------- d-----w- C:\Users\User\AppData\Local\{31A52BAB-B229-4AE5-9A1D-F7FBF9352D2B}
2012-05-14 16:00:32 -------- d-----w- C:\Users\User\AppData\Local\{FC7F9DEB-F1A9-4B95-B854-F13F7D06135D}
2012-05-14 16:00:02 -------- d-----w- C:\Users\User\AppData\Local\{772E9B10-B72A-47B3-99E1-ECAA209903C4}
2012-05-14 00:45:23 -------- d-----w- C:\Users\User\AppData\Local\{A13033A5-1A61-49E0-A858-F93E0431C689}
2012-05-14 00:44:51 -------- d-----w- C:\Users\User\AppData\Local\{6F4AB56B-EE21-409F-8AB8-B717DA629794}
2012-05-13 12:44:34 -------- d-----w- C:\Users\User\AppData\Local\{53744391-EA3C-4995-9B0B-F59BC8521DA8}
2012-05-13 12:44:10 -------- d-----w- C:\Users\User\AppData\Local\{8BAF9728-BEE7-490E-82FE-1E67C4D8037D}
2012-05-13 00:43:11 -------- d-----w- C:\Users\User\AppData\Local\{5BA64C7E-91DE-457A-ADA1-0203078F1547}
2012-05-13 00:42:41 -------- d-----w- C:\Users\User\AppData\Local\{380A093F-2F58-44D9-A145-6A089E4A0D10}
2012-05-12 11:34:22 -------- d-----w- C:\Users\User\AppData\Local\{A5DD11DC-2A44-461E-8E32-A3D3BAB504FA}
2012-05-12 11:33:58 -------- d-----w- C:\Users\User\AppData\Local\{B0AD120A-969C-4180-8C9F-E32511BFD14B}
2012-05-11 23:33:16 -------- d-----w- C:\Users\User\AppData\Local\{B33726B3-2FA4-48AC-85DA-8A70E7BE068A}
2012-05-11 23:32:51 -------- d-----w- C:\Users\User\AppData\Local\{8ED02C58-89BE-400C-AE73-2647FCBE918A}
2012-05-11 11:32:09 -------- d-----w- C:\Users\User\AppData\Local\{BDBBC68D-9E82-40FB-ACD2-69E78AEC973C}
2012-05-11 11:31:50 -------- d-----w- C:\Users\User\AppData\Local\{DF17616C-E455-4F34-8819-778004747CD8}
2012-05-10 17:09:58 -------- d-----w- C:\Users\User\AppData\Local\{A99DBFFC-D7B2-4DDE-AA49-5502072A9E09}
2012-05-10 17:09:32 -------- d-----w- C:\Users\User\AppData\Local\{9780A06B-E514-49BB-BB41-DE6ED0FE7593}
2012-05-09 23:59:43 -------- d-----w- C:\Users\User\AppData\Local\{55CA23B4-6C45-41ED-AD02-F80693BBF590}
2012-05-09 23:59:18 -------- d-----w- C:\Users\User\AppData\Local\{EF7D94B4-61AB-4178-A426-EFCD4A17719D}
2012-05-09 11:58:44 -------- d-----w- C:\Users\User\AppData\Local\{C50FC793-697D-46E3-BCA4-BBB9365A87D9}
2012-05-09 11:58:19 -------- d-----w- C:\Users\User\AppData\Local\{D9A6C71C-D61F-4A2E-A480-C27DC9A0D59A}
2012-05-09 10:54:08 75120 ----a-w- C:\Windows\System32\drivers\partmgr.sys
2012-05-09 10:53:49 1918320 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2012-05-09 10:53:43 5559664 ----a-w- C:\Windows\System32\ntoskrnl.exe
2012-05-09 10:53:41 3146240 ----a-w- C:\Windows\System32\win32k.sys
2012-05-09 10:53:38 3968368 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2012-05-09 10:53:36 3913072 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2012-05-09 10:53:12 1544704 ----a-w- C:\Windows\System32\DWrite.dll
2012-05-09 10:53:11 1077248 ----a-w- C:\Windows\SysWow64\DWrite.dll
2012-05-09 10:52:27 1732096 ----a-w- C:\Program Files\Windows Journal\NBDoc.DLL
2012-05-09 10:52:27 1367552 ----a-w- C:\Program Files\Common Files\Microsoft Shared\ink\journal.dll
2012-05-09 10:52:26 936960 ----a-w- C:\Program Files (x86)\Common Files\Microsoft Shared\ink\journal.dll
2012-05-09 10:52:25 1402880 ----a-w- C:\Program Files\Windows Journal\JNWDRV.dll
2012-05-09 10:52:25 1393664 ----a-w- C:\Program Files\Windows Journal\JNTFiltr.dll
2012-05-08 23:57:38 -------- d-----w- C:\Users\User\AppData\Local\{A35B6EAE-93F4-4609-B9B8-18F837B886B4}
2012-05-08 23:57:13 -------- d-----w- C:\Users\User\AppData\Local\{9BC6761B-F13A-4BEA-B074-83B73AE1B105}
2012-05-08 11:56:53 -------- d-----w- C:\Users\User\AppData\Local\{A248DAC3-8070-4CD8-98F3-FE4D990A9998}
2012-05-08 11:56:29 -------- d-----w- C:\Users\User\AppData\Local\{B030FE27-E288-45FF-859D-3223E39FF5B3}
2012-05-08 00:09:06 -------- d-----w- C:\Users\User\AppData\Local\Messenger_Plus_Live
2012-05-07 23:55:17 -------- d-----w- C:\Users\User\AppData\Local\{7A41FF6E-EAAF-4D6B-AE80-AE8E4CF24D17}
2012-05-07 23:54:36 -------- d-----w- C:\Users\User\AppData\Local\{D83A9A29-B2F1-466C-A660-8456B8EED550}
.
==================== Find3M ====================
.
2012-05-05 20:29:18 70304 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-05-05 20:29:18 419488 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-05-05 20:29:08 8744608 ----a-w- C:\Windows\SysWow64\FlashPlayerInstaller.exe
2012-04-04 17:47:02 687504 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2012-04-04 14:56:40 24904 ----a-w- C:\Windows\System32\drivers\mbam.sys
2012-03-08 17:50:28 49016 ----a-w- C:\Windows\SysWow64\sirenacm.dll
2012-03-08 17:37:20 302448 ----a-w- C:\Windows\WLXPGSS.SCR
.
============= FINISH: 16:02:52.72 ===============


Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
This topic is locked

Back to top









