Have two issues, not sure if related.
1. Random audio pops up. Seems to be current - news, ads etc. Task Manager shows nothing running
2. Windows updates constantly fail at shutdown.
Have run CCleaner, Malwarebytes and Spybot S&D
Malwarebytes shows 2 Trojans, but cannot remove even after reboot.
Spybot shows "Smitfraud-C.gereric". Says it is removed, but always shows up again at next scan.
DDS:
.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421
Run by Mise at 11:11:24 on 2012-06-18
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.8127.5119 [GMT -5:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Windows\system32\mfevtps.exe
C:\Windows\system32\rundll32.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
C:\Windows\SysWOW64\DllHost.exe
C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\WUDFHost.exe
C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
-netsvcs
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe
C:\Program Files\Sony\VAIO Care\VCPerfService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\taskhost.exe
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
C:\Users\Mise\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\Program Files\Sony\VAIO Care\listener.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskeng.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe
C:\Program Files\Sony\VAIO Update Common\VUAgent.exe
C:\Program Files (x86)\DDNi\Oasis\VAIO Messenger.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files\Sony\VAIO Care\VCsystray.exe
C:\Program Files\Sony\VAIO Care\VCService.exe
C:\Program Files\Sony\VAIO Care\VCAgent.exe
C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\cvh.exe
C:\Program Files (x86)\Common Files\microsoft shared\virtualization handler\OfficeVirt.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_3_300_257_ActiveX.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\PROGRA~1\McAfee\MSM\McSmtFwk.exe
C:\PROGRA~1\COMMON~1\McAfee\MSC\McUICnt.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Users\Mise\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AZE3O7JY\Defogger.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uSearch Bar = Preserve
uSearch Page = hxxp://search.yahoo.com
uStart Page = hxxp://att.my.yahoo.com/
mDefault_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=SNNT&bmod=SNNT
mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=SNNT&bmod=SNNT
uSearchAssistant = hxxp://www.google.com
uSearchURL,(Default) = hxxp://search.yahoo.com
mWinlogon: Userinit=userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120425134516.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRunOnce: [SpybotDeletingB9651] command.com /c del "C:\Windows\svchost.exe_old"
uRunOnce: [SpybotDeletingD5607] cmd.exe /c del "C:\Windows\svchost.exe_old"
uRunOnce: [SpybotDeletingB2049] command.com /c del "C:\Windows\svchost.exe"
uRunOnce: [SpybotDeletingD2128] cmd.exe /c del "C:\Windows\svchost.exe"
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRunOnce: [SpybotDeletingA6439] command.com /c del "C:\Windows\svchost.exe_old"
mRunOnce: [SpybotDeletingC2041] cmd.exe /c del "C:\Windows\svchost.exe_old"
mRunOnce: [SpybotDeletingA1310] command.com /c del "C:\Windows\svchost.exe"
mRunOnce: [SpybotDeletingC2043] cmd.exe /c del "C:\Windows\svchost.exe"
StartupFolder: C:\Users\Mise\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Mise\AppData\Roaming\Dropbox\bin\Dropbox.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MCAFEE~1.LNK - C:\Program Files (x86)\McAfee Security Scan\2.0.181\SSScheduler.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
IE: {E0B8C461-F8FB-49b4-8373-FE32E92528A6} - {BC0E0A5D-AB5A-4fa4-A5FA-280E1D58EEEE} - C:\Program Files (x86)\Evernote\Evernote3.5\enbar.dll
Trusted Zone: internet
Trusted Zone: mcafee.com
Trusted Zone: yahoo.com
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 192.168.1.254
TCP: Interfaces\{2CB75212-A29F-4415-A03A-DE6BAE51D13E} : DhcpNameServer = 192.168.1.254
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\PROGRA~2\McAfee\MSC\McSnIePl.dll
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
BHO-X64: scriptproxy: {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20120425134516.dll
BHO-X64: scriptproxy - No File
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
BHO-X64: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
BHO-X64: Java™ Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB-X64: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
TB-X64: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
mRun-x64: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRunOnce-x64: [SpybotDeletingA6439] command.com /c del "C:\Windows\svchost.exe_old"
mRunOnce-x64: [SpybotDeletingC2041] cmd.exe /c del "C:\Windows\svchost.exe_old"
mRunOnce-x64: [SpybotDeletingA1310] command.com /c del "C:\Windows\svchost.exe"
mRunOnce-x64: [SpybotDeletingC2043] cmd.exe /c del "C:\Windows\svchost.exe"
IE-X64: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
Hosts: 127.0.0.1 www.spywareinfo.com
.
============= SERVICES / DRIVERS ===============
.
R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\system32\drivers\mfehidk.sys --> C:\Windows\system32\drivers\mfehidk.sys [?]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\system32\drivers\mfewfpk.sys --> C:\Windows\system32\drivers\mfewfpk.sys [?]
R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]
R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\system32\DRIVERS\mfenlfk.sys --> C:\Windows\system32\DRIVERS\mfenlfk.sys [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10;C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-9-1 169624]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-1-3 63928]
R2 cvhsvc;Client Virtualization Handler;C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE [2012-1-4 822624]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-2-26 249936]
R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-2-26 249936]
R2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-2-26 249936]
R2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-2-26 249936]
R2 McShield;McAfee McShield;C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe [2011-3-13 199272]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2011-3-13 210584]
R2 mfevtp;McAfee Validation Trust Protection Service;"C:\Windows\system32\mfevtps.exe" --> C:\Windows\system32\mfevtps.exe [?]
R2 Oasis2Service;Oasis2Service;C:\Program Files (x86)\DDNi\Oasis2Service\Oasis2Service.exe [2012-2-9 53248]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2009-10-24 360224]
R2 regi;regi;\??\C:\Windows\system32\drivers\regi.sys --> C:\Windows\system32\drivers\regi.sys [?]
R2 rimspci;rimspci;C:\Windows\system32\drivers\rimssne64.sys --> C:\Windows\system32\drivers\rimssne64.sys [?]
R2 risdsnpe;risdsnpe;C:\Windows\system32\drivers\risdsne64.sys --> C:\Windows\system32\drivers\risdsne64.sys [?]
R2 SampleCollector;VAIO Care Performance Service;C:\Program Files\Sony\VAIO Care\VCPerfService.exe [2012-6-14 259192]
R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2012-3-15 1153368]
R2 sftlist;Application Virtualization Client;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe [2011-10-1 508776]
R2 Skype C2C Service;Skype C2C Service;C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe [2012-5-30 3048136]
R2 uCamMonitor;CamMonitor;C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [2010-4-28 104960]
R2 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [2010-2-19 529776]
R2 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [2010-2-19 386416]
R3 ArcSoftKsUFilter;ArcSoft Magic-I Visual Effect;C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys --> C:\Windows\system32\DRIVERS\ArcSoftKsUFilter.sys [?]
R3 AVerAVF2;AVerAVF2;C:\Windows\system32\DRIVERS\AVerAVF2.sys --> C:\Windows\system32\DRIVERS\AVerAVF2.sys [?]
R3 btwampfl;Bluetooth AMP USB Filter;C:\Windows\system32\drivers\btwampfl.sys --> C:\Windows\system32\drivers\btwampfl.sys [?]
R3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\system32\DRIVERS\btwl2cap.sys --> C:\Windows\system32\DRIVERS\btwl2cap.sys [?]
R3 cfwids;McAfee Inc. cfwids;C:\Windows\system32\drivers\cfwids.sys --> C:\Windows\system32\drivers\cfwids.sys [?]
R3 e1yexpress;Intel® Gigabit Network Connections Driver;C:\Windows\system32\DRIVERS\e1y62x64.sys --> C:\Windows\system32\DRIVERS\e1y62x64.sys [?]
R3 HECIx64;Intel® Management Engine Interface;C:\Windows\system32\drivers\HECIx64.sys --> C:\Windows\system32\drivers\HECIx64.sys [?]
R3 hidkmdf;Microsoft HID Class Shim for KMDF;C:\Windows\system32\drivers\hidkmdf.sys --> C:\Windows\system32\drivers\hidkmdf.sys [?]
R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\system32\drivers\mfeavfk.sys --> C:\Windows\system32\drivers\mfeavfk.sys [?]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\system32\drivers\mfefirek.sys --> C:\Windows\system32\drivers\mfefirek.sys [?]
R3 NW1950;NextWindow 1950 Touch Screen;C:\Windows\system32\drivers\NW1950.sys --> C:\Windows\system32\drivers\NW1950.sys [?]
R3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
R3 SFEP;Sony Firmware Extension Parser;C:\Windows\system32\drivers\SFEP.sys --> C:\Windows\system32\drivers\SFEP.sys [?]
R3 Sftfs;Sftfs;C:\Windows\system32\DRIVERS\Sftfslh.sys --> C:\Windows\system32\DRIVERS\Sftfslh.sys [?]
R3 Sftplay;Sftplay;C:\Windows\system32\DRIVERS\Sftplaylh.sys --> C:\Windows\system32\DRIVERS\Sftplaylh.sys [?]
R3 Sftredir;Sftredir;C:\Windows\system32\DRIVERS\Sftredirlh.sys --> C:\Windows\system32\DRIVERS\Sftredirlh.sys [?]
R3 Sftvol;Sftvol;C:\Windows\system32\DRIVERS\Sftvollh.sys --> C:\Windows\system32\DRIVERS\Sftvollh.sys [?]
R3 sftvsa;Application Virtualization Service Agent;C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [2011-10-1 219496]
R3 VCService;VCService;C:\Program Files\Sony\VAIO Care\VCService.exe [2012-6-14 44736]
R3 VUAgent;VUAgent;C:\Program Files\Sony\VAIO Update Common\VUAgent.exe [2012-1-13 1256040]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-4-28 135664]
S2 SkypeUpdate;Skype Updater;C:\Program Files (x86)\Skype\Updater\Updater.exe [2012-1-31 158856]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-4-22 257224]
S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-2-28 183560]
S3 fssfltr;fssfltr;C:\Windows\system32\DRIVERS\fssfltr.sys --> C:\Windows\system32\DRIVERS\fssfltr.sys [?]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2012-3-8 1492840]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-4-28 135664]
S3 McComponentHostService;McAfee Security Scan Component Host Service;C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\system32\drivers\mferkdet.sys --> C:\Windows\system32\drivers\mferkdet.sys [?]
S3 MSSQL$DDNI;SQL Server (DDNI);C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.DDNI\MSSQL\Binn\sqlservr.exe [2009-3-30 43010392]
S3 SOHCImp;VAIO Media plus Content Importer;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2010-9-10 108400]
S3 SOHDms;VAIO Media plus Digital Media Server;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2010-10-12 423280]
S3 SOHDs;VAIO Media plus Device Searcher;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2010-9-10 67952]
S3 SpfService;VAIO Entertainment Common Service;C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe [2011-1-20 286936]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 VAIO Power Management;VAIO Power Management;C:\Program Files\Sony\VAIO Power Management\SPMService.exe [2010-4-28 574320]
S3 VCFw;VAIO Content Folder Watcher;C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2011-1-20 887000]
S3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [2010-2-19 115568]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S3 WDC_SAM;WD SCSI Pass Thru driver;C:\Windows\system32\DRIVERS\wdcsam64.sys --> C:\Windows\system32\DRIVERS\wdcsam64.sys [?]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;C:\Program Files (x86)\Microsoft SQL Server\100\Shared\sqladhlp.exe [2009-3-30 47128]
S4 SQLAgent$DDNI;SQL Server Agent (DDNI);C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.DDNI\MSSQL\Binn\SQLAGENT.EXE [2009-3-30 366936]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2012-06-18 14:59:21 20480 ------w- C:\Windows\svchost.exe_old
2012-06-18 03:50:00 -------- d-----w- C:\CCE_Quarantine
2012-06-18 01:29:39 -------- d-----w- C:\Users\Mise\AppData\Local\APN
2012-06-18 01:20:51 -------- d-----w- C:\Users\Mise\AppData\Local\{734156B4-4BD1-4ED3-B7A9-A72458061AD0}
2012-06-17 20:26:58 -------- d-----w- C:\Users\Mise\AppData\Roaming\Malwarebytes
2012-06-17 20:26:44 -------- d-----w- C:\ProgramData\Malwarebytes
2012-06-17 20:26:42 24904 ----a-w- C:\Windows\System32\drivers\mbam.sys
2012-06-17 20:26:42 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2012-06-17 19:56:36 -------- d-----w- C:\Program Files (x86)\RegZooka
2012-06-17 19:16:02 -------- d-----w- C:\ProgramData\ClubSanDisk
2012-06-16 20:47:03 -------- d-----w- C:\Users\Mise\AppData\Local\{036FCE58-1357-4676-972D-D1EB34A29C4E}
2012-06-16 20:46:49 -------- d-----w- C:\Users\Mise\AppData\Local\{E619DFD9-306E-4C1D-8854-4A10C7E38326}
2012-06-16 14:38:30 -------- d-----w- C:\Users\Mise\AppData\Local\{7D8384C3-48F3-4798-8D46-D4EA395CD7B6}
2012-06-16 14:38:09 -------- d-----w- C:\Users\Mise\AppData\Local\{55999CE5-167A-4362-9159-D3DAEACB847A}
2012-06-16 12:31:45 -------- d-----w- C:\Windows\pss
2012-06-16 02:15:25 -------- d-----w- C:\Users\Mise\AppData\Local\{3ED6DC86-CC59-425B-AEB2-4A0638E47313}
2012-06-16 02:15:11 -------- d-----w- C:\Users\Mise\AppData\Local\{43979E87-B052-4374-A875-CDBA0D27DE05}
2012-06-16 01:21:22 -------- d-----w- C:\Program Files\CCleaner
2012-06-15 13:56:24 -------- d-----w- C:\Users\Mise\AppData\Local\{306D36F6-2E65-4341-A620-02492112B6C7}
2012-06-15 13:55:50 -------- d-----w- C:\Users\Mise\AppData\Local\{09CE775C-9F05-42FB-81B0-E6872465246D}
2012-06-15 01:25:23 -------- d-----w- C:\Users\Mise\AppData\Local\{37E8B370-FC56-4468-8090-63515F77D8AE}
2012-06-15 01:25:10 -------- d-----w- C:\Users\Mise\AppData\Local\{E545111D-DACF-4E16-816C-BDD7AC6EFD23}
2012-06-14 13:24:10 -------- d-----w- C:\Users\Mise\AppData\Local\{7FBCD65E-28E2-4014-AD58-152295C4B9D6}
2012-06-14 13:23:43 -------- d-----w- C:\Users\Mise\AppData\Local\{0AAC299C-4607-4CB1-8908-5A4250EAB120}
2012-06-14 00:57:41 -------- d-----w- C:\Users\Mise\AppData\Local\{82E265E5-F105-4C12-A638-C1206F460740}
2012-06-13 12:57:11 -------- d-----w- C:\Users\Mise\AppData\Local\{E3FD5C80-70AC-40A0-824E-E2D769F95B0E}
2012-06-13 12:56:58 -------- d-----w- C:\Users\Mise\AppData\Local\{783CB839-B3CF-4FB8-A536-868BB432F00F}
2012-06-13 03:20:49 -------- d-----w- C:\Users\Mise\2012-06-12 2220
2012-06-12 16:55:50 -------- d-----w- C:\Users\Mise\AppData\Local\{DC824CD7-CD52-482A-BB50-AEA882367C86}
2012-06-12 16:55:26 -------- d-----w- C:\Users\Mise\AppData\Local\{1600ADBF-C978-4972-8459-9F2DFB1314E1}
2012-06-12 04:25:05 -------- d-----w- C:\Users\Mise\AppData\Local\{8993ABA6-C8B3-4972-9450-D5B5755C58AD}
2012-06-11 23:34:25 -------- d-----w- C:\Users\Mise\2012-06-11 1834
2012-06-11 16:24:36 -------- d-----w- C:\Users\Mise\AppData\Local\{D562A15D-7722-439C-B358-1A4599A70032}
2012-06-11 16:24:23 -------- d-----w- C:\Users\Mise\AppData\Local\{F1B61AC3-976E-4B93-8CF2-8FBBB1FCDB64}
2012-06-11 04:23:45 -------- d-----w- C:\Users\Mise\AppData\Local\{37585934-B016-44A1-AC84-3DAB92760C2D}
2012-06-11 04:23:27 -------- d-----w- C:\Users\Mise\AppData\Local\{554633FC-E9CF-48C0-BD78-42A389F37282}
2012-06-10 21:53:54 -------- d-----w- C:\Windows\SysWow64\syncdb
2012-06-10 16:07:01 -------- d-----w- C:\Users\Mise\AppData\Local\{4B96391E-B9B3-4260-9A04-472F42F3C871}
2012-06-10 16:05:43 -------- d-----w- C:\Users\Mise\AppData\Local\{F1AB0F6C-5423-486D-90F3-2504D98C5EF2}
2012-06-10 13:56:18 -------- d-----w- C:\Users\Mise\AppData\Local\{E583CFE8-7CC9-4C15-A704-5F9E7E83332C}
2012-06-10 13:55:42 -------- d-----w- C:\Users\Mise\AppData\Local\{CC9E4827-3C04-473C-B4E9-E020BCBF3135}
2012-06-09 18:15:45 -------- d-----w- C:\Users\Mise\AppData\Local\{BE0E98C6-FBFC-4DC3-A174-EA64DC093394}
2012-06-09 18:15:32 -------- d-----w- C:\Users\Mise\AppData\Local\{8C85B181-7178-4778-B4E9-1A4ECAC0B67D}
2012-06-09 06:14:55 -------- d-----w- C:\Users\Mise\AppData\Local\{462D1C45-E38A-4D8D-BBAB-4FECD7EFBAF9}
2012-06-08 13:28:45 -------- d-----w- C:\Users\Mise\AppData\Local\{C675E874-9A45-46FD-9FD9-65C11F3684B7}
2012-06-08 13:28:33 -------- d-----w- C:\Users\Mise\AppData\Local\{355FF91D-9330-46ED-8998-CED7D6B7953F}
2012-06-08 03:50:07 -------- d-----w- C:\Users\Mise\AppData\Roaming\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1
2012-06-08 03:24:13 -------- d-----w- C:\ProgramData\regid.1986-12.com.adobe
2012-06-08 01:28:04 -------- d-----w- C:\Users\Mise\AppData\Local\{FEEBAEDA-44D4-4338-B0E9-27948D0D507D}
2012-06-08 01:27:51 -------- d-----w- C:\Users\Mise\AppData\Local\{125CCB13-63D3-49B9-9B1A-96A5DF3F9FA7}
2012-06-07 13:27:21 -------- d-----w- C:\Users\Mise\AppData\Local\{78D7B008-C1AA-43C3-8F2B-8D9EA3F7D156}
2012-06-07 13:27:06 -------- d-----w- C:\Users\Mise\AppData\Local\{FBCD2D84-56E3-4607-AF95-562E93C015A8}
2012-06-07 00:15:59 -------- d-----w- C:\Users\Mise\AppData\Local\{90B34D69-0C10-4DEC-9C43-BE03DA6EF076}
2012-06-06 12:10:12 -------- d-----w- C:\Users\Mise\AppData\Local\{ABA49AE8-2F92-4389-8FDC-713B344C01E3}
2012-06-06 12:10:00 -------- d-----w- C:\Users\Mise\AppData\Local\{5D060409-81FD-426F-928B-6A4D1B014841}
2012-06-05 17:07:15 -------- d-----w- C:\Users\Mise\AppData\Local\{EB53300E-EBDA-46DD-986F-620CB296A129}
2012-06-05 17:06:55 -------- d-----w- C:\Users\Mise\AppData\Local\{7FCF1DEA-A5E3-4826-8B59-0F27D3DFAC2A}
2012-06-05 02:17:39 -------- d-----w- C:\Users\Mise\AppData\Local\{816D4222-3ED1-4386-B369-5D0A9A1E2562}
2012-06-04 14:17:12 -------- d-----w- C:\Users\Mise\AppData\Local\{CA177ED9-DD0C-4AB1-9E16-C2567A2F24DF}
2012-06-04 14:17:00 -------- d-----w- C:\Users\Mise\AppData\Local\{6DE4FC12-810B-4D34-92DE-B69BAC5E7FA4}
2012-06-04 02:16:26 -------- d-----w- C:\Users\Mise\AppData\Local\{BCE7FDE6-460C-4E48-8E3A-ADAF07BE2AF3}
2012-06-04 02:16:11 -------- d-----w- C:\Users\Mise\AppData\Local\{DC25396F-BA1D-470F-AD16-6F872834AC9D}
2012-06-01 13:25:03 -------- d-----w- C:\Users\Mise\AppData\Local\{E84A982F-E2E1-4534-B68A-939D7463CF92}
2012-06-01 13:24:50 -------- d-----w- C:\Users\Mise\AppData\Local\{577DE197-6056-41F3-8CBC-13E8867CB9B1}
2012-06-01 04:06:10 -------- d-----w- C:\Users\Mise\2012-05-31 2306
2012-06-01 00:58:44 -------- d-----w- C:\Users\Mise\AppData\Local\{4B990036-5801-4527-A992-F9FCCAA68100}
2012-05-31 12:58:13 -------- d-----w- C:\Users\Mise\AppData\Local\{B568537E-8623-4894-BDA8-10B48663908E}
2012-05-31 12:57:55 -------- d-----w- C:\Users\Mise\AppData\Local\{EAF53199-36B8-430D-ABB7-AFC863BC4570}
2012-05-31 04:03:51 -------- d-----w- C:\Users\Mise\2012-05-30 2303
2012-05-31 00:35:35 -------- d-----w- C:\Users\Mise\AppData\Local\{F1BF572E-ADBA-4563-9FFE-E8929C271F5A}
2012-05-30 12:35:07 -------- d-----w- C:\Users\Mise\AppData\Local\{D3548A1F-FB3A-41AC-A159-313F0767DCF0}
2012-05-30 12:34:55 -------- d-----w- C:\Users\Mise\AppData\Local\{4A06AC80-2FDA-4514-8756-C3A54F997641}
2012-05-30 00:34:27 -------- d-----w- C:\Users\Mise\AppData\Local\{05705DC3-C18C-4FDD-95E3-05191EAF8D8B}
2012-05-29 12:24:58 -------- d-----w- C:\Users\Mise\AppData\Local\{23BF73FB-CE0B-4062-9463-4FDF6B4E6781}
2012-05-29 12:24:45 -------- d-----w- C:\Users\Mise\AppData\Local\{832DE09E-BCBA-43E5-A7C8-A27ACBDF13D5}
2012-05-28 20:59:46 -------- d-----w- C:\Users\Mise\AppData\Local\{F1D8109F-0A09-41A8-99A2-A4ABDF24D515}
2012-05-28 20:59:30 -------- d-----w- C:\Users\Mise\AppData\Local\{98CC3F45-9673-4FC5-AD78-54BC16DEA86B}
2012-05-26 13:51:44 -------- d-----w- C:\Users\Mise\AppData\Local\{7D908ECC-54DF-4A1C-8C3B-640125A54B4F}
2012-05-26 13:51:31 -------- d-----w- C:\Users\Mise\AppData\Local\{DDD31B18-1BB7-454B-ABBD-9E9FB6AE2951}
2012-05-26 01:51:00 -------- d-----w- C:\Users\Mise\AppData\Local\{E51C8515-79AB-496B-9E2D-3BD4570E27C6}
2012-05-25 13:50:30 -------- d-----w- C:\Users\Mise\AppData\Local\{7087EC1F-03E8-4F1E-AD28-2650136B9C24}
2012-05-25 13:50:18 -------- d-----w- C:\Users\Mise\AppData\Local\{8B34F721-6A17-46DB-958C-C433A6655843}
2012-05-25 01:49:51 -------- d-----w- C:\Users\Mise\AppData\Local\{B1B78458-E843-4B84-8092-1A4B40298B8A}
2012-05-25 01:49:38 -------- d-----w- C:\Users\Mise\AppData\Local\{B733BFF6-1C52-4F5D-BD43-0136297F944F}
2012-05-24 13:49:11 -------- d-----w- C:\Users\Mise\AppData\Local\{2A34CE5E-72A9-4F9B-BADB-E79DDB69DBB3}
2012-05-24 13:48:54 -------- d-----w- C:\Users\Mise\AppData\Local\{B1F63AFF-5F53-4EB2-8DED-8A92E6285578}
2012-05-24 01:20:47 -------- d-----w- C:\Users\Mise\AppData\Local\{6392E459-EB9A-490C-A062-2CE669C78C3D}
2012-05-23 13:20:19 -------- d-----w- C:\Users\Mise\AppData\Local\{126CECF0-F947-44A1-B992-C63B9C6F0B6C}
2012-05-23 13:20:07 -------- d-----w- C:\Users\Mise\AppData\Local\{75A9FA8A-F351-4652-9A57-194A62416A76}
2012-05-23 03:02:56 -------- d-----w- C:\Users\Mise\2012-05-22 2202
2012-05-23 01:19:40 -------- d-----w- C:\Users\Mise\AppData\Local\{2046A606-448F-47C9-A2FE-08EA452734FF}
2012-05-22 13:19:12 -------- d-----w- C:\Users\Mise\AppData\Local\{5145D1D4-EDAA-4AEC-82F6-3548BFD567EA}
2012-05-22 13:18:59 -------- d-----w- C:\Users\Mise\AppData\Local\{3173A010-B2F2-4714-89FA-528574C605CD}
2012-05-22 00:44:14 -------- d-----w- C:\Users\Mise\AppData\Local\{4652D733-F199-4005-A158-68D059F31230}
2012-05-21 12:43:32 -------- d-----w- C:\Users\Mise\AppData\Local\{EB25ABCA-8278-4E5E-811F-6078F4F44812}
2012-05-21 12:43:13 -------- d-----w- C:\Users\Mise\AppData\Local\{253D9B63-0EE8-4F40-9AAD-4E0DD7557DE9}
2012-05-20 23:56:37 -------- d-----w- C:\Users\Mise\AppData\Local\{DE6D16B5-5748-4279-8CD5-8EEF0DF31CB3}
.
==================== Find3M ====================
.
2012-06-12 12:15:42 70344 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-06-12 12:15:42 426184 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-05-18 02:06:48 2311680 ----a-w- C:\Windows\System32\jscript9.dll
2012-05-18 01:59:14 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-05-18 01:58:39 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2012-05-18 01:55:22 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2012-05-18 01:51:30 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2012-05-17 22:45:37 1800192 ----a-w- C:\Windows\SysWow64\jscript9.dll
2012-05-17 22:35:47 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-05-17 22:35:39 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2012-05-17 22:29:45 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2012-05-17 22:24:45 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-05-15 01:32:33 3146752 ----a-w- C:\Windows\System32\win32k.sys
2012-05-06 19:31:22 8769696 ----a-w- C:\Windows\SysWow64\FlashPlayerInstaller.exe
2012-05-01 05:40:20 209920 ----a-w- C:\Windows\System32\profsvc.dll
2012-04-28 03:55:21 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2012-04-26 05:41:56 77312 ----a-w- C:\Windows\System32\rdpwsx.dll
2012-04-26 05:41:55 149504 ----a-w- C:\Windows\System32\rdpcorekmts.dll
2012-04-26 05:34:27 9216 ----a-w- C:\Windows\System32\rdrmemptylst.exe
2012-04-24 05:37:37 184320 ----a-w- C:\Windows\System32\cryptsvc.dll
2012-04-24 05:37:37 140288 ----a-w- C:\Windows\System32\cryptnet.dll
2012-04-24 05:37:36 1462272 ----a-w- C:\Windows\System32\crypt32.dll
2012-04-24 04:36:42 140288 ----a-w- C:\Windows\SysWow64\cryptsvc.dll
2012-04-24 04:36:42 1158656 ----a-w- C:\Windows\SysWow64\crypt32.dll
2012-04-24 04:36:42 103936 ----a-w- C:\Windows\SysWow64\cryptnet.dll
2012-04-07 12:31:40 3216384 ----a-w- C:\Windows\System32\msi.dll
2012-04-07 11:26:29 2342400 ----a-w- C:\Windows\SysWow64\msi.dll
2012-03-31 06:05:57 5559664 ----a-w- C:\Windows\System32\ntoskrnl.exe
2012-03-31 04:39:37 3968368 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe
2012-03-31 04:39:37 3913072 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe
2012-03-30 11:35:47 1918320 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2012-03-20 18:11:30 162192 ----a-w- C:\Windows\System32\mfevtps.exe
.
============= FINISH: 11:19:56.18 ===============
Thanks in advance for any help.


Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
This topic is locked

Back to top











