I live in a big appartment, most tenants use the same LAN connection. I have been getting frequent messages from Firefox / IE / Opera (tried them all), saying that my connection is unencrypted and "possibly dangerous". This happens at unexpected moments, on websites that are normally encrypted (IE g-mail). Another thing I think is strange and possibly cause for concern is a windows message, stating that my ip address is already in use.
This has been going on for a couple of weeks.
Furthermore I have had to reinstall windows 7, because I was unable to log in (I could start windows up and type in my password, but after that my screen went black and it was impossible to get inside the environment). I have tried to deal with this myself, using all kinds of firewalls, spyware removal tools, malware removal etc. But most of them say my computer is fine. If you could please give me your thoughts on whether or not I am or was hacked / hijacked recently, or if i'm just getting paranoid. And ofcourse, if there is a problem, please help me solve it. I have followed the preparation guide, here are my logs:
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 9.0.8112.16421
Run by mark at 1:23:11 on 2011-10-08
Microsoft Windows 7 Ultimate 6.1.7601.1.1252.1.1033.18.2048.1023 [GMT 7:00]
.
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: COMODO Defense+ *Disabled/Updated* {CE351521-78FA-2048-BB22-B68A4A5CA7EC}
FW: COMODO Firewall *Enabled* {4D6F75E0-14AF-2E9E-AACD-24CDCF08AA2A}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\PostgreSQL\8.4\bin\pg_ctl.exe
C:\Program Files\Secunia\PSI\PSIA.exe
C:\Program Files\PostgreSQL\8.4\bin\postgres.exe
C:\Windows\system32\conhost.exe
C:\Program Files\TuneUp Utilities 2011\TuneUpUtilitiesService32.exe
C:\Windows\System32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\PostgreSQL\8.4\bin\postgres.exe
C:\Program Files\PostgreSQL\8.4\bin\postgres.exe
C:\Program Files\PostgreSQL\8.4\bin\postgres.exe
C:\Program Files\PostgreSQL\8.4\bin\postgres.exe
C:\Windows\system32\taskhost.exe
C:\Windows\Explorer.EXE
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Secunia\PSI\sua.exe
C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Windows\system32\svchost.exe -k SDRSVC
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\explorer.exe
C:\Windows\system32\AUDIODG.EXE
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\explorer.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uSearch Bar = Preserve
BHO: Octh Class: {000123b4-9b42-4900-b3f7-f4b073efc214} - c:\program files\orbitdownloader\orbitcth.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - c:\program files\divx\divx plus web player\ie\divxhtml5\DivXHTML5.dll
TB: Grab Pro: {c55bbcd6-41ad-48ad-9953-3609c48eacc7} - c:\program files\orbitdownloader\GrabPro.dll
TB: {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - No File
{e7df6bff-55a5-4eb7-a673-4ed3e9456d39}
TB: {30F9B915-B755-4826-820B-08FBA6BD249D} - No File
mRun: [KeePass 2 PreLoad] "c:\program files\keepass password safe 2\KeePass.exe" --preload
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [COMODO Internet Security] "c:\program files\comodo\comodo internet security\cfp.exe" -h
uPolicies-explorer: NoInstrumentation = 1 (0x1)
uPolicies-explorer: NoWinKeys = 1 (0x1)
uPolicies-explorer: DisablePersonalDirChange = 1 (0x1)
mPolicies-explorer: NoRecentDocsNetHood = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: SynchronousMachineGroupPolicy = 0 (0x0)
mPolicies-system: SynchronousUserGroupPolicy = 0 (0x0)
IE: {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - c:\users\mark\desktop\PartyPoker.lnk
IE: {D85B4BE2-07C3-422f-ADE9-B1A2C7D25224} - c:\users\mark\desktop\WPT Poker.lnk
DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} - hxxp://download.gigabyte.com.tw/object/Dldrv.ocx
TCP: DhcpNameServer = 203.144.207.49 203.144.207.29
TCP: Interfaces\{25A8C237-57EC-48E2-920D-F26BD8FF6229} : DhcpNameServer = 203.144.207.49 203.144.207.29
TCP: Interfaces\{31E3A412-4B4B-4C90-8BF7-68F12BF992A0} : DhcpNameServer = 8.8.8.8
AppInit_DLLs: c:\windows\system32\guard32.dll
STS: Windows DreamScene: {e31004d1-a431-41b8-826f-e902f9d95c81} - %SystemRoot%\System32\DreamScene.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\mark\appdata\roaming\mozilla\firefox\profiles\z7kb36yl.default\
FF - prefs.js: browser.startup.homepage - www.google.com
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\adobe\reader 9.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\divx\divx ovs helper\npovshelper.dll
FF - plugin: c:\program files\microsoft silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dv.dll
FF - plugin: c:\program files\nvidia corporation\3d vision\npnv3dvstreaming.dll
.
---- FIREFOX POLICIES ----
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
.
============= SERVICES / DRIVERS ===============
.
R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2011-7-11 23120]
R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2011-7-11 32464]
R0 xfilt;VIA SATA IDE Hot-plug Driver;c:\windows\system32\drivers\xfilt.sys [2010-2-11 23192]
R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2011-8-8 40016]
R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2011-7-11 295248]
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [2011-10-7 36000]
R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdGuard.sys [2011-6-30 238960]
R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2011-6-30 37592]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\program files\hwinfo32\HWiNFO32.SYS [2011-10-1 21112]
R1 magicpvt;magicpvt;c:\windows\system32\drivers\magicpvt.sys [2011-10-1 26240]
R1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\drivers\vwififlt.sys [2009-7-14 48128]
R2 AntiVirSchedulerService;Avira Scheduler;c:\program files\avira\antivir desktop\sched.exe [2011-10-7 86224]
R2 AntiVirService;Avira Realtime Protection;c:\program files\avira\antivir desktop\avguard.exe [2011-10-7 110032]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2011-10-7 74640]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
R2 MBAMService;MBAMService;c:\program files\malwarebytes' anti-malware\mbamservice.exe [2011-10-7 366152]
R2 postgresql-8.4;postgresql-8.4 - PostgreSQL Server 8.4;C:/Program Files/PostgreSQL/8.4/bin/pg_ctl.exe runservice -N "postgresql-8.4" -D "C:/Program Files/PostgreSQL/8.4/data" -w --> C:/Program Files/PostgreSQL/8.4/bin/pg_ctl.exe runservice -N postgresql-8.4 [?]
R2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\secunia\psi\psia.exe [2011-4-19 993848]
R2 Secunia Update Agent;Secunia Update Agent;c:\program files\secunia\psi\sua.exe [2011-4-19 399416]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\nvidia corporation\3d vision\nvSCPAPISvr.exe [2011-8-3 379496]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\tuneup utilities 2011\TuneUpUtilitiesService32.exe [2011-9-27 1526080]
R2 UltraMonUtility;UltraMon Utility Driver;c:\program files\common files\realtime soft\ultramonmirrordrv\x32\UltraMonUtility.sys [2008-11-14 17184]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2011-10-7 22216]
R3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2010-9-1 15544]
R3 rt61x86;RT61 Extensible Wireless Driver;c:\windows\system32\drivers\netr61.sys [2010-4-7 376160]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service;c:\windows\system32\drivers\vwifimp.sys [2009-7-14 14336]
S1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2011-7-11 229840]
S3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [2011-7-11 134736]
S3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [2011-7-11 24272]
S3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [2011-7-11 16720]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-14 229888]
S3 HitmanPro35Crusader;Hitman Pro 3.5 Crusader;c:\program files\hitman pro 3.5\HitmanPro35.exe [2011-10-1 6395200]
S3 NaturalColor;NaturalColor;c:\windows\system32\drivers\MTiCtwl.sys [2011-10-7 14336]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2011-10-1 15872]
S3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\TsUsbFlt.sys [2011-10-1 52224]
S3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\wat\WatAdminSvc.exe [2011-9-30 1343400]
.
=============== Created Last 30 ================
.
2011-10-07 13:08:57 -------- d-----w- c:\users\mark\appdata\local\OverPlay.net_LLP
2011-10-07 13:03:48 -------- d-----w- c:\users\mark\appdata\local\Apps
2011-10-07 13:03:47 -------- d-----w- c:\users\mark\appdata\local\Deployment
2011-10-07 13:02:20 -------- d-----w- c:\program files\Tap0901
2011-10-07 11:45:46 -------- d-----w- c:\program files\TableScan Turbo
2011-10-07 11:45:31 -------- d--h--w- C:\VritualRoot
2011-10-07 10:34:01 -------- d-----w- c:\users\mark\appdata\roaming\TweakNow PowerPack 2011
2011-10-07 10:34:01 -------- d-----w- c:\program files\TweakNow PowerPack 2011
2011-10-07 09:50:17 -------- d-----w- c:\users\mark\appdata\roaming\Auslogics
2011-10-07 09:50:14 -------- d-----w- c:\program files\Auslogics
2011-10-07 09:24:53 -------- d-----w- c:\users\mark\appdata\roaming\GlarySoft
2011-10-07 09:17:54 -------- d-----w- c:\program files\Glary Utilities
2011-10-07 07:40:02 102968 ----a-w- c:\windows\system32\IMEKR70.IME
2011-10-07 07:40:01 14336 ----a-w- c:\windows\system32\drivers\MTiCtwl.sys
2011-10-07 07:40:01 -------- d-----w- c:\program files\MagicTune Premium
2011-10-07 07:09:58 -------- d-----w- c:\users\mark\appdata\roaming\Realtime Soft
2011-10-07 07:09:52 -------- d-----w- c:\program files\common files\Realtime Soft
2011-10-07 07:09:51 -------- d-----w- c:\programdata\Realtime Soft
2011-10-07 07:09:51 -------- d-----w- c:\program files\UltraMon
2011-10-07 05:44:56 -------- d-----w- c:\program files\RängeMeister
2011-10-07 04:47:59 -------- d-----w- c:\program files\COMODO
2011-10-07 04:47:09 -------- d-----w- c:\programdata\Comodo
2011-10-07 04:41:02 -------- d-----w- c:\users\mark\appdata\roaming\Avira
2011-10-07 04:38:10 -------- d-----w- c:\windows\Internet Logs
2011-10-07 04:27:20 200976 ----a-w- c:\windows\system32\drivers\tmcomm.sys
2011-10-07 04:18:21 -------- d-----w- c:\program files\PostgreSQL
2011-10-07 04:16:35 -------- d-----w- c:\program files\PSQLINSTALL
2011-10-07 00:45:29 -------- d-----w- c:\windows\LastGood.Tmp
2011-10-07 00:22:58 -------- d-----w- C:\inetpub
2011-10-07 00:01:15 -------- d-----w- c:\programdata\NVIDIA Corporation
2011-10-06 23:24:56 -------- d-----w- c:\programdata\GroupPolicy
2011-10-06 22:01:00 -------- d-----w- c:\programdata\SecTaskMan
2011-10-06 20:49:36 -------- d-----w- c:\users\mark\appdata\roaming\Yamicsoft
2011-10-06 20:48:38 -------- d-----w- c:\windows\system32\appmgmt
2011-10-06 20:36:44 56200 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{0478e21e-81fc-4f18-a8a9-036aa9729203}\offreg.dll
2011-10-06 19:03:48 74640 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-10-06 19:03:48 36000 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2011-10-06 19:03:46 -------- d-----w- c:\programdata\Avira
2011-10-06 19:03:46 -------- d-----w- c:\program files\Avira
2011-10-06 18:06:19 -------- d-----w- c:\program files\NoteCaddy 2
2011-10-06 17:31:37 -------- d-----w- c:\programdata\TrueCrypt
2011-10-06 17:26:47 -------- d-----w- c:\users\mark\appdata\local\Secunia PSI
2011-10-06 17:26:24 -------- d-----w- c:\program files\Secunia
2011-10-06 17:17:30 -------- d-----w- c:\users\mark\appdata\roaming\TrueCrypt
2011-10-06 17:16:30 231376 ----a-w- c:\windows\system32\drivers\truecrypt.sys
2011-10-06 17:16:10 -------- d-----w- c:\program files\TrueCrypt
2011-10-06 17:13:41 -------- d-----w- c:\users\mark\appdata\roaming\Malwarebytes
2011-10-06 17:13:30 -------- d-----w- c:\programdata\Malwarebytes
2011-10-06 17:13:26 22216 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-10-06 17:13:25 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-10-05 11:12:53 -------- d-----w- c:\users\mark\appdata\roaming\Azureus
2011-10-05 11:11:37 -------- d-----w- c:\program files\Vuze
2011-10-03 14:57:56 -------- d-----w- c:\program files\Gygan BETA
2011-10-01 14:56:51 -------- d-----w- c:\program files\obj
2011-10-01 14:55:21 -------- d-----w- c:\windows\GBD
2011-10-01 11:51:52 -------- d-----w- c:\users\mark\appdata\roaming\Mozilla-Cache
2011-10-01 11:49:06 -------- d-----w- C:\Programs
2011-10-01 11:34:38 -------- d-----w- c:\users\mark\appdata\roaming\HoldemManager
2011-10-01 09:43:31 28776 ----a-w- c:\windows\system32\drivers\ndisrd.sys
2011-10-01 09:42:53 8107 ----a-w- c:\windows\w7dsd.reg
2011-10-01 09:42:53 8089 ----a-w- c:\windows\w7dse.reg
2011-10-01 09:42:52 233888 ----a-w- c:\windows\system32\DreamScene.dll
2011-10-01 09:37:47 -------- d--h--w- c:\windows\Icons
2011-10-01 08:57:31 859648 ----a-w- c:\windows\system32\OobeFldr_backup_wti.dll
2011-10-01 08:57:31 2616320 ----a-w- c:\windows\explorer_backup_wti.exe
2011-10-01 08:57:31 1493504 ----a-w- c:\windows\system32\ExplorerFrame_backup_wti.dll
2011-10-01 08:57:31 12872192 ----a-w- c:\windows\system32\shell32_backup_wti.dll
2011-10-01 08:57:29 505360 ----a-w- c:\windows\UTP.exe
2011-10-01 08:44:21 -------- d-----w- c:\windows\system32\bmp (panel control)
2011-10-01 08:40:30 -------- d-----w- c:\windows\bmp (userpic)
2011-10-01 08:40:30 -------- d-----w- c:\windows\bmp (orb)
2011-10-01 08:36:56 -------- d-----w- c:\windows\system32\bmp (nav button)
2011-10-01 08:06:33 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2011-10-01 08:06:21 29504 ----a-w- c:\windows\system32\uxtuneup.dll
2011-10-01 08:06:21 21312 ----a-w- c:\windows\system32\authuitu.dll
2011-10-01 08:05:02 -------- d-----w- c:\users\mark\appdata\roaming\TuneUp Software
2011-10-01 08:04:41 -------- d-----w- c:\program files\TuneUp Utilities 2011
2011-10-01 08:03:06 -------- d-----w- c:\programdata\TuneUp Software
2011-10-01 08:02:30 -------- d-sh--w- c:\programdata\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2011-10-01 07:32:53 249856 ----a-w- c:\windows\system32\uxtheme.dll.backup
2011-10-01 07:32:48 2755072 ----a-w- c:\windows\system32\themeui.dll.backup
2011-10-01 07:32:44 37376 ----a-w- c:\windows\system32\themeservice.dll.backup
2011-10-01 06:52:52 -------- d-----w- c:\users\mark\appdata\local\Mozilla
2011-10-01 06:19:12 -------- d-----w- c:\users\mark\appdata\roaming\CheckPoint
2011-10-01 06:18:42 -------- d-----w- c:\users\mark\appdata\local\Conduit
2011-10-01 06:15:36 -------- d-----w- c:\programdata\CheckPoint
2011-10-01 05:51:31 -------- d-----w- c:\users\mark\appdata\roaming\postgresql
2011-10-01 05:31:31 -------- d-----w- c:\users\mark\appdata\roaming\KeePass
2011-10-01 05:28:11 -------- d-----w- c:\program files\KeePass Password Safe 2
2011-10-01 05:20:36 -------- d-----r- c:\users\mark\Dropbox
2011-10-01 05:18:45 -------- d-----w- c:\users\mark\appdata\roaming\Dropbox
2011-10-01 04:42:48 -------- d-----w- C:\HMArchive
2011-10-01 04:42:47 -------- d-----w- c:\users\mark\appdata\local\In The Money
2011-10-01 04:41:46 -------- d-----w- c:\programdata\XHEO INC
2011-10-01 04:29:41 -------- d-----w- c:\users\mark\appdata\local\IsolatedStorage
2011-10-01 04:29:38 -------- d-----w- c:\users\mark\appdata\roaming\HEM Data
2011-10-01 04:21:39 -------- d-----w- c:\program files\RVG Software
2011-10-01 04:18:54 92432 ----a-w- c:\windows\system32\drivers\tmtdi.sys
2011-10-01 04:18:09 -------- d-----w- c:\programdata\Trend Micro
2011-10-01 03:56:07 -------- d-----w- c:\windows\pss
2011-10-01 03:16:19 -------- d-----w- c:\program files\SEC
2011-10-01 03:13:48 44344 ----a-w- c:\windows\system32\drivers\EyeOneDp.sys
2011-10-01 03:13:48 29184 ----a-w- c:\windows\system32\drivers\colormunki.sys
2011-10-01 03:13:48 26045 ----a-w- c:\windows\system32\drivers\i1.sys
2011-10-01 03:13:48 12288 ----a-w- c:\windows\system32\drivers\Spyder3.sys
2011-10-01 03:13:39 -------- d-----w- c:\program files\Natural Color Expert
2011-10-01 03:12:37 135680 ----a-w- c:\windows\system32\mpvthook.dll
2011-10-01 03:12:34 26240 ----a-w- c:\windows\system32\drivers\magicpvt.sys
2011-10-01 03:12:30 77824 ----a-w- c:\windows\system32\MagicPvtUser.exe
2011-10-01 02:07:43 729088 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iKernel.dll
2011-10-01 02:07:43 69715 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\ctor.dll
2011-10-01 02:07:43 266240 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iscript.dll
2011-10-01 02:07:43 192512 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iuser.dll
2011-10-01 02:07:42 311428 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\setup.dll
2011-10-01 02:07:42 188548 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iGdi.dll
2011-10-01 01:24:59 98304 ----a-w- c:\windows\system32\nslookup.exe
2011-10-01 01:23:59 7168 ----a-w- c:\windows\system32\KBDSG.DLL
2011-10-01 00:59:12 7269712 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{0478e21e-81fc-4f18-a8a9-036aa9729203}\mpengine.dll
2011-10-01 00:59:11 222080 ----a-w- c:\windows\system32\MpSigStub.exe
2011-10-01 00:48:46 -------- d-----w- c:\users\mark\appdata\local\eSupport.com
2011-10-01 00:41:38 -------- d-----w- c:\program files\CCleaner
2011-10-01 00:26:34 -------- d-----w- c:\program files\HWiNFO32
2011-09-30 23:18:53 -------- d-----w- c:\users\mark\appdata\roaming\Systweak
2011-09-30 23:18:47 17280 ----a-w- c:\windows\system32\roboot.exe
2011-09-30 21:56:20 12872 ----a-w- c:\windows\system32\bootdelete.exe
2011-09-30 21:34:38 -------- d-----w- c:\program files\VS Revo Group
2011-09-30 21:25:42 23624 ----a-w- c:\windows\system32\drivers\hitmanpro35.sys
2011-09-30 21:25:41 -------- d-----w- c:\program files\Hitman Pro 3.5
2011-09-30 21:25:16 -------- d-----w- c:\programdata\Hitman Pro
2011-09-30 21:06:08 -------- d-----w- c:\windows\system32\EventProviders
2011-09-30 20:55:59 3727720 ----a-w- c:\windows\system32\d3dx9_35.dll
2011-09-30 20:51:08 -------- d--h--w- c:\windows\msdownld.tmp
2011-09-30 20:51:01 -------- d-----w- c:\windows\system32\directx
2011-09-30 20:09:19 24944 ----a-w- c:\windows\system32\drivers\GVTDrv.sys
2011-09-30 20:05:26 327168 ----a-w- c:\windows\IsUninst.exe
2011-09-30 20:03:44 73728 ----a-w- c:\windows\system32\ISUSPM.cpl
2011-09-30 20:03:44 385024 ----a-w- c:\program files\common files\installshield\updateservice\_ispmres.dll
2011-09-30 20:03:44 -------- d-----w- c:\program files\Gigabyte
2011-09-30 20:03:43 81920 ----a-w- c:\program files\common files\installshield\updateservice\issch.exe
2011-09-30 20:03:43 368640 ----a-w- c:\program files\common files\installshield\updateservice\_isusres.dll
2011-09-30 20:03:43 278528 ----a-w- c:\program files\common files\installshield\updateservice\ISDM.exe
2011-09-30 20:03:43 221184 ----a-w- c:\program files\common files\installshield\updateservice\ISUSPM.exe
2011-09-30 20:03:42 581632 ----a-w- c:\program files\common files\installshield\updateservice\agent.exe
2011-09-30 19:06:35 15600 ----a-w- c:\windows\gdrv.sys
2011-09-30 19:06:26 32768 ----a-w- c:\program files\common files\installshield\professional\runtime\Objectps.dll
2011-09-30 19:06:26 274432 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iscript.dll
2011-09-30 19:06:26 184320 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iuser.dll
2011-09-30 19:06:25 753664 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iKernel.dll
2011-09-30 19:06:25 69714 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\ctor.dll
2011-09-30 19:06:25 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\DotNetInstaller.exe
2011-09-30 19:06:24 200836 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\iGdi.dll
2011-09-30 19:06:23 331908 ----a-w- c:\program files\common files\installshield\professional\runtime\11\00\intel32\setup.dll
2011-09-30 18:32:25 -------- d-----w- c:\users\mark\appdata\local\Adobe
2011-09-30 18:22:41 -------- d-----w- c:\program files\VIA
2011-09-30 18:20:38 219136 ----a-w- c:\windows\system32\drivers\viahduaa.sys
2011-09-30 18:20:35 73216 ----a-w- c:\windows\system32\VIASysFx.dll
2011-09-30 18:20:35 356352 ----a-w- c:\windows\system32\VIAPropPageExt.dll
2011-09-30 17:47:46 805376 ----a-w- c:\windows\system32\FntCache.dll
2011-09-30 17:47:46 739840 ----a-w- c:\windows\system32\d2d1.dll
2011-09-30 17:47:46 1076736 ----a-w- c:\windows\system32\DWrite.dll
2011-09-30 15:57:47 -------- d-----w- c:\users\mark\appdata\local\Solid State Networks
2011-09-30 14:23:55 -------- d-----r- c:\program files\Skype
2011-09-30 12:21:14 75776 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2011-09-30 12:21:14 5888 ----a-w- c:\windows\system32\drivers\usbd.sys
2011-09-30 12:21:14 43008 ----a-w- c:\windows\system32\drivers\usbehci.sys
2011-09-30 12:21:14 284672 ----a-w- c:\windows\system32\drivers\usbport.sys
2011-09-30 12:21:14 258560 ----a-w- c:\windows\system32\drivers\usbhub.sys
2011-09-30 12:21:14 24064 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2011-09-30 12:21:14 20480 ----a-w- c:\windows\system32\drivers\usbohci.sys
2011-09-30 12:20:36 80256 ----a-w- c:\windows\system32\drivers\amdsata.sys
2011-09-30 12:20:36 22400 ----a-w- c:\windows\system32\drivers\amdxata.sys
2011-09-30 12:20:36 1699328 ----a-w- c:\windows\system32\esent.dll
2011-09-30 12:20:35 74240 ----a-w- c:\windows\system32\fsutil.exe
2011-09-30 12:20:34 332160 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2011-09-30 12:20:33 148864 ----a-w- c:\windows\system32\drivers\storport.sys
2011-09-30 12:20:33 143744 ----a-w- c:\windows\system32\drivers\nvstor.sys
2011-09-30 12:20:33 1211264 ----a-w- c:\windows\system32\drivers\ntfs.sys
2011-09-30 12:20:33 117120 ----a-w- c:\windows\system32\drivers\nvraid.sys
2011-09-29 21:19:00 -------- d-----w- c:\windows\system32\WAT
2011-09-29 20:41:19 311808 ----a-w- c:\windows\system32\drivers\srv.sys
2011-09-29 20:41:18 310272 ----a-w- c:\windows\system32\drivers\srv2.sys
2011-09-29 20:41:18 114688 ----a-w- c:\windows\system32\drivers\srvnet.sys
2011-09-29 20:40:36 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2011-09-29 20:37:10 31232 ----a-w- c:\windows\system32\prevhost.exe
2011-09-29 20:36:31 571904 ----a-w- c:\windows\system32\oleaut32.dll
2011-09-29 20:35:05 3967872 ----a-w- c:\windows\system32\ntkrnlpa.exe
2011-09-29 20:35:03 3912576 ----a-w- c:\windows\system32\ntoskrnl.exe
2011-09-29 20:31:43 28672 ----a-w- c:\windows\system32\dnscacheugc.exe
2011-09-29 20:31:43 132608 ----a-w- c:\windows\system32\dnsrslvr.dll
2011-09-29 20:31:02 70656 ----a-w- c:\windows\system32\fontsub.dll
2011-09-29 20:31:02 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-09-29 20:31:02 294912 ----a-w- c:\windows\system32\atmfd.dll
2011-09-29 20:24:21 293376 ----a-w- c:\windows\system32\umpnpmgr.dll
2011-09-29 20:24:21 145920 ----a-w- c:\windows\system32\cfgmgr32.dll
2011-09-29 20:20:05 542208 ----a-w- c:\windows\system32\kerberos.dll
2011-09-29 20:19:29 96768 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-09-29 20:19:29 223744 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-09-29 20:19:29 123904 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-09-29 20:17:57 2048 ----a-w- c:\windows\system32\tzres.dll
2011-09-29 20:16:54 187776 ----a-w- c:\windows\system32\drivers\FWPKCLNT.SYS
2011-09-29 20:16:54 1290624 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-09-29 20:15:53 741376 ----a-w- c:\windows\system32\inetcomm.dll
2011-09-29 20:11:47 86528 ----a-w- c:\windows\system32\SearchFilterHost.exe
2011-09-29 20:11:47 59392 ----a-w- c:\windows\system32\msscntrs.dll
2011-09-29 20:11:46 666624 ----a-w- c:\windows\system32\mssvp.dll
2011-09-29 20:11:46 427520 ----a-w- c:\windows\system32\SearchIndexer.exe
2011-09-29 20:11:46 337408 ----a-w- c:\windows\system32\mssph.dll
2011-09-29 20:11:46 197120 ----a-w- c:\windows\system32\mssphtb.dll
2011-09-29 20:11:46 164352 ----a-w- c:\windows\system32\SearchProtocolHost.exe
2011-09-29 20:11:45 1549312 ----a-w- c:\windows\system32\tquery.dll
2011-09-29 20:11:45 1401344 ----a-w- c:\windows\system32\mssrch.dll
2011-09-29 20:11:15 802304 ----a-w- c:\windows\system32\WFS.exe
2011-09-29 20:11:15 191488 ----a-w- c:\windows\system32\FXSCOVER.exe
2011-09-29 20:09:47 870912 ----a-w- c:\windows\system32\XpsPrint.dll
2011-09-29 20:08:44 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-09-29 20:07:44 642048 ----a-w- c:\windows\system32\CPFilters.dll
2011-09-29 20:07:44 534528 ----a-w- c:\windows\system32\EncDec.dll
2011-09-29 20:07:43 850944 ----a-w- c:\windows\system32\sbe.dll
2011-09-29 20:07:43 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2011-09-29 20:06:02 2616320 ----a-w- c:\windows\explorer.exe
2011-09-29 20:03:58 94208 ----a-w- c:\program files\common files\system\ole db\msdaosp.dll
2011-09-29 20:03:58 81920 ----a-w- c:\windows\system32\odbccr32.dll
2011-09-29 20:03:58 122880 ----a-w- c:\windows\system32\odbccp32.dll
2011-09-29 20:03:57 86016 ----a-w- c:\windows\system32\odbccu32.dll
2011-09-29 20:03:57 319488 ----a-w- c:\windows\system32\odbcjt32.dll
2011-09-29 20:03:57 163840 ----a-w- c:\windows\system32\odbctrac.dll
2011-09-29 20:03:25 219136 ----a-w- c:\windows\system32\d3d10_1core.dll
2011-09-29 20:03:25 161792 ----a-w- c:\windows\system32\d3d10_1.dll
2011-09-29 20:01:50 1164288 ----a-w- c:\windows\system32\mfc42u.dll
2011-09-29 20:01:49 1137664 ----a-w- c:\windows\system32\mfc42.dll
2011-09-29 20:01:33 69632 ----a-w- c:\windows\system32\drivers\bowser.sys
2011-09-29 20:01:02 123904 ----a-w- c:\windows\system32\poqexec.exe
2011-09-29 20:00:59 27008 ----a-w- c:\windows\system32\drivers\Diskdump.sys
2011-09-29 20:00:39 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-09-29 20:00:39 107520 ----a-w- c:\windows\system32\cdd.dll
2011-09-29 20:00:38 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-09-29 14:39:14 -------- d-----w- c:\users\mark\appdata\roaming\ProgSense
2011-09-29 14:39:09 -------- d-----w- c:\users\mark\appdata\roaming\GrabPro
2011-09-29 14:39:09 -------- d-----w- C:\downloads
2011-09-29 14:39:03 -------- d-----w- c:\program files\Orbitdownloader
2011-09-29 14:28:50 -------- d-----w- c:\program files\common files\DivX Shared
2011-09-29 14:23:49 -------- d-----w- c:\program files\DivX
2011-09-29 14:22:51 -------- d-----w- c:\programdata\DivX
2011-09-29 06:32:22 -------- d-----w- c:\windows\Panther
2011-09-28 18:44:09 101720 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2011-09-28 18:34:37 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2011-09-28 18:15:34 66664 ----a-w- c:\windows\system32\nvshext.dll
2011-09-28 18:15:34 599144 ----a-w- c:\windows\system32\nvvsvc.exe
2011-09-28 18:15:34 3730024 ----a-w- c:\windows\system32\nvcpl.dll
2011-09-28 18:15:34 2560616 ----a-w- c:\windows\system32\nvsvcr.dll
2011-09-28 18:15:34 2558568 ----a-w- c:\windows\system32\nvsvc.dll
2011-09-28 18:15:34 111208 ----a-w- c:\windows\system32\nvmctray.dll
2011-09-28 18:15:32 600680 ----a-w- c:\windows\system32\easyupdatusapiu.dll
2011-09-28 18:14:59 914024 ----a-w- c:\windows\system32\nvdispco32.dll
2011-09-28 18:14:59 875112 ----a-w- c:\windows\system32\nvgenco32.dll
2011-09-28 18:14:59 57960 ----a-w- c:\windows\system32\OpenCL.dll
2011-09-28 18:14:59 2391656 ----a-w- c:\windows\system32\nvcuvid.dll
2011-09-28 18:14:59 2090088 ----a-w- c:\windows\system32\nvcuvenc.dll
2011-09-28 18:14:59 16595560 ----a-w- c:\windows\system32\nvoglv32.dll
2011-09-28 18:14:59 12636776 ----a-w- c:\windows\system32\nvd3dum.dll
2011-09-28 18:14:59 10304104 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2011-09-28 18:14:58 5404776 ----a-w- c:\windows\system32\nvcuda.dll
2011-09-28 18:14:58 2412136 ----a-w- c:\windows\system32\nvapi.dll
2011-09-28 18:14:58 17193576 ----a-w- c:\windows\system32\nvcompiler.dll
2011-09-28 18:14:38 -------- d-----w- c:\program files\NVIDIA Corporation
2011-09-28 18:13:58 -------- d-----w- C:\NVIDIA
2011-09-28 17:57:05 -------- d-----w- c:\program files\VideoLAN
2011-09-28 17:33:23 -------- d-----w- c:\program files\Yamicsoft
2011-09-28 16:07:43 -------- d-----w- c:\users\mark\appdata\local\Diagnostics
2011-09-28 16:01:57 140096 ------r- c:\windows\system32\COMDLG32.OCX
2011-09-28 16:01:51 1071088 --s---r- c:\windows\system32\MSCOMCTL.OCX
2011-09-28 15:55:44 -------- d-----w- c:\users\mark\appdata\roaming\AVG2012
2011-09-28 15:55:42 -------- d-----w- c:\users\mark\appdata\roaming\FlashGet
2011-09-28 15:55:42 -------- d-----w- c:\users\mark\appdata\roaming\BITS
2011-09-28 15:55:37 -------- d-----w- c:\users\mark\appdata\roaming\FlashGetBHO
2011-09-28 15:54:37 -------- d-----w- c:\programdata\AVG2012
2011-09-28 15:48:33 -------- d-sh--w- c:\windows\Installer
2011-09-28 15:48:09 -------- d--h--w- c:\programdata\Common Files
2011-09-28 15:47:49 -------- d-----w- c:\programdata\MFAData
2011-09-28 15:44:46 -------- d-----w- c:\windows\system32\wbem\Performance
.
==================== Find3M ====================
.
2011-10-07 03:00:18 2755072 ----a-w- c:\windows\system32\themeui.dll
2011-10-07 03:00:17 37376 ----a-w- c:\windows\system32\themeservice.dll
2011-10-07 03:00:16 249856 ----a-w- c:\windows\system32\uxtheme.dll
2011-10-01 07:30:49 13072384 ----a-w- c:\windows\system32\shell32.dll.bak
2011-10-01 07:30:48 859648 ----a-w- c:\windows\system32\OobeFldr.dll.bak
2011-10-01 07:30:47 1486848 ----a-w- c:\windows\system32\ExplorerFrame.dll.bak
2011-10-01 01:55:33 152576 ----a-w- c:\windows\system32\msclmd.dll
2011-08-03 11:50:00 6613096 ----a-w- c:\windows\system32\nvwgf2um.dll
2011-08-02 20:31:54 311912 ----a-w- c:\windows\system32\nvStreaming.exe
2011-07-22 20:51:50 94208 ----a-w- c:\windows\system32\dpl100.dll
2011-07-16 04:27:30 290816 ----a-w- c:\windows\system32\KernelBase.dll
2011-07-16 02:17:19 6144 ---ha-w- c:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2011-07-16 02:17:19 4608 ---ha-w- c:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2011-07-16 02:17:19 3584 ---ha-w- c:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2011-07-16 02:17:19 3072 ---ha-w- c:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2011-07-10 18:14:38 295248 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2011-07-10 18:14:16 16720 ----a-w- c:\windows\system32\drivers\AVGIDSShim.sys
2011-07-10 18:14:14 24272 ----a-w- c:\windows\system32\drivers\AVGIDSFilter.sys
2011-07-10 18:14:12 23120 ----a-w- c:\windows\system32\drivers\AVGIDSEH.sys
2011-07-10 18:14:12 134736 ----a-w- c:\windows\system32\drivers\AVGIDSDriver.sys
2011-07-10 18:13:46 229840 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2011-07-10 18:13:42 32464 ----a-w- c:\windows\system32\drivers\avgrkx86.sys
.
============= FINISH: 1:23:47.46 ===============
Attached File(s)
-
Attach.txt (6.02K)
Number of downloads: 0 -
ark.txt (107.78K)
Number of downloads: 1

Help
This topic is locked

Back to top









