i had remove above's unknown things using hijackthis..izzit ok to remove them???
below is the logfile from DDS..hope it helps...
DDS (Ver_09-02-01.01) - NTFSx86
Run by Ozen at 16:02:18.36 on 05/03/2009 Thu
Internet Explorer: 7.0.6001.18000 BrowserJavaVersion: 1.6.0_11
AV: 金山毒霸文件实时防毒 *On-access scanning disabled* (Updated)
FW: 金山网镖个人防火墙 *enabled*
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e7ea6efc\STacSV.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\Ati2evxx.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security\KPfwSvc.EXE
C:\Program Files\Kingsoft\Kingsoft Internet Security\KWatch.EXE
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\System32\DriverStore\FileRepository\stwrt.inf_e7ea6efc\aestsrv.exe
C:\Windows\system32\agrsmsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security\KISSvc.EXE
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\SMINST\BLService.exe
C:\Program Files\CyberLink\Shared files\RichVideo.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Norton Internet Security\Engine\16.2.0.7\ccSvcHst.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\IDT\WDM\sttray.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security\kavstart.exe
C:\Program Files\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Hewlett-Packard\HP wireless Assistant\WiFiMsg.EXE
C:\Program Files\Apoint2K\ApMsgFwd.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files\Kingsoft\Kingsoft Internet Security\KPFW32.EXE
C:\Program Files\Kingsoft\Kingsoft Internet Security\KMailMon.EXE
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Users\Ozen\Downloads\dds.com
C:\Windows\system32\conime.exe
============== Pseudo HJT Report ===============
uStart Page = about:blank
uDefault_Page_URL = about:blank
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_my&c=91&bd=Presario&pf=cnnb
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=en_my&c=91&bd=Presario&pf=cnnb
uInternet Settings,ProxyOverride = *.local
BHO: ThunderAtOnce Class: {01443aec-0fd1-40fd-9c87-e93d1494c233} - c:\program files\thunder network\thunder\comdlls\TDAtOnce_Now.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton internet security\engine\16.2.0.7\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton internet security\engine\16.2.0.7\IPSBHO.DLL
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
BHO: Java Plug-In SSV Helper: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: AOL Toolbar BHO: {7c554162-8cb7-45a4-b8f4-8ea1c75885f9} - c:\program files\aol\aol toolbar 5.0\aoltb.dll
BHO: Thunder Browser Helper: {889d2feb-5411-4565-8998-1dd2c5261283} - c:\program files\thunder network\thunder\comdlls\xunleiBHO_Now.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\norton internet security\engine\16.2.0.7\coIEPlg.dll
TB: AOL Toolbar: {de9c389f-3316-41a7-809b-aa305ed9d922} - c:\program files\aol\aol toolbar 5.0\aoltb.dll
uRun: [LightScribe Control Panel] c:\program files\common files\lightscribe\LightScribeControlPanel.exe -hidden
uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [Apoint] c:\program files\apoint2k\Apoint.exe
mRun: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray.exe
mRun: [QPService] "c:\program files\hp\quickplay\QPService.exe"
mRun: [UpdateLBPShortCut] "c:\program files\cyberlink\labelprint\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\labelprint" updatewithcreateonce "software\cyberlink\labelprint\2.5"
mRun: [UpdatePSTShortCut] "c:\program files\cyberlink\dvd suite\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\dvd suite" updatewithcreateonce "software\cyberlink\PowerStarter"
mRun: [UCam_Menu] "c:\program files\cyberlink\youcam\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\youcam" update "software\cyberlink\youcam\2.0"
mRun: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun: [QlbCtrl.exe] c:\program files\hewlett-packard\hp quick launch buttons\QlbCtrl.exe /Start
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [UpdateP2GoShortCut] "c:\program files\cyberlink\power2go\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\power2go" updatewithcreateonce "software\cyberlink\power2go\6.0"
mRun: [UpdatePDIRShortCut] "c:\program files\cyberlink\powerdirector\muitransfer\muistartmenu.exe" "c:\program files\cyberlink\powerdirector" updatewithcreateonce "software\cyberlink\powerdirector\7.0"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [HP Health Check Scheduler] c:\program files\hewlett-packard\hp health check\HPHC_Scheduler.exe
mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
mRun: [hpWirelessAssistant] c:\program files\hewlett-packard\hp wireless assistant\HPWAMain.exe
mRun: [Thunder] "c:\program files\thunder network\thunder\Thunder.exe" /s
mRun: [QuickTime Task] "c:\program files\stormplayer\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot
mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
mRun: [KavStart] "c:\program files\kingsoft\kingsoft internet security\KAVStart.exe" -startup
StartupFolder: c:\users\ozen\appdata\roaming\micros~1\windows\startm~1\programs\startup\stardo~1.lnk - c:\program files\stardock\objectdock\ObjectDock.exe
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: &AOL Toolbar Search - c:\programdata\aol\ietoolbar\resources\en-my\local\search.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
IE: ê1ó???à×???? - c:\program files\thunder network\thunder\program\GetUrl.htm
IE: ê1ó???à×????è?2?á′?ó - c:\program files\thunder network\thunder\program\GetAllUrl.htm
IE: {09BA8F6D-CB54-424B-839C-C2A6C8E6B436} - c:\program files\thunder network\thunder\Thunder.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} - hxxps://www-secure.symantec.com/techsupp/asa/ss/sa/sa_cabs/tgctlsr.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
Handler: symres - {AA1061FE-6C41-421f-9344-69640C9732AB} - c:\program files\norton internet security\engine\16.2.0.7\CoIEPlg.dll
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
================= FIREFOX ===================
FF - ProfilePath - c:\users\ozen\appdata\roaming\mozilla\firefox\profiles\dppdjm9v.default\
FF - component: c:\program files\real\realplayer\browserrecord\components\nprpbrowserrecordplugin.dll
FF - component: c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\coffplgn\components\coFFPlgn.dll
FF - component: c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\ipsffplgn\components\IPSFFPl.dll
FF - plugin: c:\program files\microsoft\office live\npOLW.dll
FF - plugin: c:\program files\stormplayer\plugins\nppl3260.dll
FF - plugin: c:\program files\stormplayer\plugins\npqtplugin.dll
FF - plugin: c:\program files\stormplayer\plugins\npqtplugin2.dll
FF - plugin: c:\program files\stormplayer\plugins\npqtplugin3.dll
FF - plugin: c:\program files\stormplayer\plugins\npqtplugin4.dll
FF - plugin: c:\program files\stormplayer\plugins\npqtplugin5.dll
FF - plugin: c:\program files\stormplayer\plugins\npqtplugin6.dll
FF - plugin: c:\program files\stormplayer\plugins\npqtplugin7.dll
FF - plugin: c:\program files\stormplayer\plugins\nprpjplug.dll
============= SERVICES / DRIVERS ===============
R0 KAVBootC;KAVBootC;c:\windows\system32\drivers\KAVBootC.sys [2009-3-4 34856]
R1 BHDrvx86;Symantec Heuristics Driver;c:\windows\system32\drivers\nis\1002000.007\BHDrvx86.sys [2009-2-16 255536]
R1 ccHP;Symantec Hash Provider;c:\windows\system32\drivers\nis\1002000.007\cchpx86.sys [2009-2-16 362544]
R1 IDSVix86;IDSVix86;c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\norton\definitions\ipsdefs\20090217.002\IDSvix86.sys [2009-2-20 292912]
R1 KNetWch;KNetWch;c:\program files\kingsoft\kingsoft internet security\knetwch.sys [2009-2-23 41536]
R1 KNetWchV;Kingsoft Firewall NDIS Filter;c:\windows\system32\drivers\KNetWchV.sys [2008-12-18 15400]
R2 AESTFilters;Andrea ST Filters Service;c:\windows\system32\driverstore\filerepository\stwrt.inf_e7ea6efc\AEstSrv.exe [2009-1-5 77824]
R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service;c:\program files\microsoft small business\business contact manager\BcmSqlStartupSvc.exe [2008-1-11 30312]
R2 KAVBase;KAVBase;c:\windows\system32\drivers\KAVBase.sys [2009-3-4 78400]
R2 KAVSafe;KAVSafe;c:\windows\system32\drivers\KAVSafe.sys [2009-3-4 51240]
R2 KISSvc;Kingsoft Internet Security Common Service;c:\program files\kingsoft\kingsoft internet security\kissvc.exe [2008-12-18 31576]
R2 KWatch3;KWatch3;c:\windows\system32\drivers\KWatch3.sys [2009-3-4 63040]
R2 Norton Internet Security;Norton Internet Security;c:\program files\norton internet security\engine\16.2.0.7\ccSvcHst.exe [2009-2-16 115560]
R2 Recovery Service for Windows;Recovery Service for Windows;c:\program files\sminst\BLService.exe [2008-10-27 365952]
R3 Com4QLBEx;Com4QLBEx;c:\program files\hewlett-packard\hp quick launch buttons\Com4QLBEx.exe [2008-10-27 193840]
R3 enecir;ENE CIR Receiver;c:\windows\system32\drivers\enecir.sys [2008-1-24 52736]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2009-2-27 101936]
R3 usbfilter;AMD USB Filter Driver;c:\windows\system32\drivers\usbfilter.sys [2009-2-14 22072]
S3 ATSpy;ATSpy;c:\windows\system32\ATSpy.sys [2009-3-4 17920]
S3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [2008-7-21 100184]
S3 kaccore;Kingsoft Basic Service;c:\program files\kingsoft\kac\service\kaccore.exe [2009-1-7 362352]
S3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ);c:\program files\microsoft sql server\mssql.1\mssql\binn\sqlservr.exe [2008-11-24 29263712]
S3 SYMNDISV;SYMNDISV;c:\windows\system32\drivers\nis\1002000.007\symndisv.sys [2009-2-16 40496]
=============== Created Last 30 ================
2009-03-05 12:22 410,984 a------- c:\windows\system32\deploytk.dll
2009-03-05 02:08 <DIR> --d----- c:\users\ozen\appdata\roaming\Malwarebytes
2009-03-05 02:07 15,504 a------- c:\windows\system32\drivers\mbam.sys
2009-03-05 02:07 38,496 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-03-05 02:07 <DIR> --d----- c:\programdata\Malwarebytes
2009-03-05 02:07 <DIR> --d----- c:\progra~2\Malwarebytes
2009-03-05 02:07 <DIR> --d----- c:\program files\Malwarebytes' Anti-Malware
2009-03-04 23:26 <DIR> --d----- c:\program files\Trend Micro
2009-03-04 19:24 17,920 a------- c:\windows\system32\ATSpy.sys
2009-03-04 19:24 4,096 a------- c:\windows\system32\msdxm.ocx
2009-03-04 19:24 4,096 a------- c:\windows\system32\dxmasf.dll
2009-03-04 19:24 7,680 a------- c:\windows\system32\spwmp.dll
2009-03-04 19:24 8,147,456 a------- c:\windows\system32\wmploc.DLL
2009-03-04 17:04 <DIR> --d----- c:\users\ozen\appdata\roaming\Kingsoft
2009-03-04 16:56 71 ---shr-- C:\kisinstall.dat
2009-03-04 16:54 63,040 a------- c:\windows\system32\drivers\KWatch3.sys
2009-03-04 16:54 51,240 a------- c:\windows\system32\drivers\KAVSafe.sys
2009-03-04 16:54 34,856 a------- c:\windows\system32\drivers\KAVBootC.sys
2009-03-04 16:53 78,400 a------- c:\windows\system32\drivers\KAVBase.sys
2009-03-04 16:52 <DIR> --d-hr-- C:\KRECYCLE
2009-03-04 16:52 <DIR> --d----- c:\program files\Kingsoft
2009-03-04 16:51 <DIR> --d----- c:\programdata\Kingsoft
2009-03-04 16:51 <DIR> --d----- c:\progra~2\Kingsoft
2009-03-04 02:49 <DIR> --d-h--- c:\windows\PIF
2009-02-19 00:53 873,310 a------- c:\windows\system32\oem17.inf
2009-02-19 00:33 32,592 a------- c:\windows\system32\msonpmon.dll
2009-02-19 00:27 <DIR> --d----- c:\program files\Microsoft Visual Studio 8
2009-02-16 20:40 25,136 a----r-- c:\windows\system32\drivers\SymIMV.sys
2009-02-16 19:39 <DIR> --d----- C:\RunUp_MY
2009-02-16 01:51 <DIR> --d----- c:\programdata\FLEXnet
2009-02-16 01:39 <DIR> --d----- c:\program files\common files\Macrovision Shared
2009-02-16 00:09 <DIR> --d----- c:\program files\Stardock
2009-02-16 00:09 <DIR> --d----- c:\program files\common files\Stardock
2009-02-15 18:29 <DIR> --d----- c:\users\ozen\appdata\roaming\Motorola
2009-02-15 17:59 <DIR> --d----- c:\program files\common files\xing shared
2009-02-15 17:30 107,368 a------- c:\windows\system32\GEARAspi.dll
2009-02-15 17:30 15,464 a------- c:\windows\system32\drivers\GEARAspiWDM.sys
2009-02-15 17:30 <DIR> --d----- c:\program files\iPod
2009-02-15 17:30 <DIR> --d----- c:\programdata\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2009-02-15 17:30 <DIR> --d----- c:\program files\iTunes
2009-02-15 17:30 <DIR> --d----- c:\progra~2\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2009-02-15 17:29 <DIR> --d----- c:\program files\Bonjour
2009-02-15 17:26 <DIR> --d----- c:\programdata\Apple
2009-02-15 15:45 1,073,741,824 a------- C:\ppsds.pgf
2009-02-15 15:44 46 a------- c:\windows\PCDNSetting.ini
2009-02-15 15:41 <DIR> --d----- c:\program files\TTPlayer
2009-02-15 15:41 113 a------- c:\windows\PPSMediaList.ini
2009-02-15 15:41 19 a------- c:\windows\powerlist.ini
2009-02-15 15:40 <DIR> --d----- c:\users\ozen\appdata\roaming\PPStream
2009-02-15 15:40 1,334 a------- c:\windows\powerplayer.ini
2009-02-15 15:40 1,245 a------- c:\windows\psnetwork.ini
2009-02-15 15:40 <DIR> --d----- c:\program files\PPStream
2009-02-15 13:11 <DIR> --d----- c:\program files\common files\Real
2009-02-15 13:11 <DIR> --d----- c:\programdata\Apple Computer
2009-02-15 13:10 <DIR> --d----- c:\program files\StormPlayer
2009-02-15 12:41 <DIR> --d----- c:\programdata\Office Genuine Advantage
2009-02-15 12:35 <DIR> --d----- C:\TDDOWNLOAD
2009-02-14 23:04 4,682 a------- c:\windows\system32\npptNT2.sys
2009-02-14 23:04 5,174 a------- c:\windows\system32\nppt9x.vxd
2009-02-14 23:00 <DIR> --d----- c:\program files\common files\INCA Shared
2009-02-14 22:59 16 a------- c:\windows\popcinfo.dat
2009-02-14 22:37 <DIR> --d----- c:\programdata\Messenger Plus!
2009-02-14 22:37 <DIR> --d----- c:\progra~2\Messenger Plus!
2009-02-14 19:36 <DIR> --d----- c:\program files\Circle Developeent
2009-02-14 19:36 <DIR> --d----- c:\program files\Messenger Plus! Live
2009-02-14 19:35 <DIR> --d----- c:\users\ozen\Tracing
2009-02-14 19:32 <DIR> --d----- c:\program files\Microsoft
2009-02-14 19:32 <DIR> --d----- c:\program files\Windows Live SkyDrive
2009-02-14 16:20 1,490 a------- c:\windows\system32\cid_store.dat
2009-02-14 16:20 26 a------- c:\windows\system32\xlhcc.dat
2009-02-14 16:20 20 a------- c:\windows\system32\pub_store.dat
2009-02-14 16:20 <DIR> --d----- c:\programdata\Thunder Network
2009-02-14 16:20 <DIR> --d----- c:\program files\common files\Thunder Network
2009-02-14 16:20 <DIR> --d----- c:\progra~2\Thunder Network
2009-02-14 16:20 <DIR> --d----- c:\program files\Thunder Network
2009-02-14 16:05 <DIR> --d----- c:\users\ozen\appdata\roaming\WildTangent
2009-02-14 16:03 2,048 a------- c:\windows\system32\tzres.dll
2009-02-14 16:01 <DIR> --d----- c:\program files\common files\Windows Live
2009-02-14 15:54 97,800 a------- c:\windows\system32\infocardapi.dll
2009-02-14 15:54 105,016 a------- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-02-14 15:54 37,384 a------- c:\windows\system32\infocardcpl.cpl
2009-02-14 15:53 622,080 a------- c:\windows\system32\icardagt.exe
2009-02-14 15:53 43,544 a------- c:\windows\system32\PresentationHostProxy.dll
2009-02-14 15:53 11,264 a------- c:\windows\system32\icardres.dll
2009-02-14 15:53 781,344 a------- c:\windows\system32\PresentationNative_v0300.dll
2009-02-14 15:53 326,160 a------- c:\windows\system32\PresentationHost.exe
2009-02-14 15:46 96,760 a------- c:\windows\system32\dfshim.dll
2009-02-14 15:46 282,112 a------- c:\windows\system32\mscoree.dll
2009-02-14 15:46 41,984 a------- c:\windows\system32\netfxperf.dll
2009-02-14 15:45 2,868,736 a------- c:\windows\system32\mf.dll
2009-02-14 15:45 996,352 a------- c:\windows\system32\WMNetMgr.dll
2009-02-14 15:45 94,720 a------- c:\windows\system32\logagent.exe
2009-02-14 15:45 158,720 a------- c:\windows\system32\mscorier.dll
2009-02-14 15:45 83,968 a------- c:\windows\system32\mscories.dll
2009-02-14 15:45 <DIR> --d----- c:\program files\MSXML 4.0
2009-02-14 15:44 3,601,464 a------- c:\windows\system32\ntkrnlpa.exe
2009-02-14 15:44 3,549,240 a------- c:\windows\system32\ntoskrnl.exe
2009-02-14 15:43 1,334,272 a------- c:\windows\system32\msxml6.dll
2009-02-14 15:42 1,645,568 a------- c:\windows\system32\connect.dll
2009-02-14 15:42 428,544 a------- c:\windows\system32\EncDec.dll
2009-02-14 15:42 217,088 a------- c:\windows\system32\psisrndr.ax
2009-02-14 15:42 293,376 a------- c:\windows\system32\psisdecd.dll
2009-02-14 15:42 177,664 a------- c:\windows\system32\mpg2splt.ax
2009-02-14 15:42 80,896 a------- c:\windows\system32\MSNP.ax
2009-02-14 15:42 57,856 a------- c:\windows\system32\MSDvbNP.ax
2009-02-14 15:36 827,392 a------- c:\windows\system32\wininet.dll
2009-02-14 15:36 1,383,424 a------- c:\windows\system32\mshtml.tlb
2009-02-14 15:35 1,524,736 a------- c:\windows\system32\wucltux.dll
2009-02-14 15:35 83,456 a------- c:\windows\system32\wudriver.dll
2009-02-14 15:35 28,672 a------- c:\windows\system32\Apphlpdm.dll
2009-02-14 15:35 4,240,384 a------- c:\windows\system32\GameUXLegacyGDFs.dll
2009-02-14 15:35 443,392 a------- c:\windows\system32\win32spl.dll
2009-02-14 15:10 124,464 a------- c:\windows\system32\drivers\SYMEVENT.SYS
2009-02-14 15:10 10,635 a------- c:\windows\system32\drivers\SYMEVENT.CAT
2009-02-14 15:10 806 a------- c:\windows\system32\drivers\SYMEVENT.INF
2009-02-14 15:10 <DIR> --d----- c:\program files\Symantec
2009-02-14 15:10 <DIR> --d----- c:\program files\common files\Symantec Shared
2009-02-14 14:59 <DIR> --d----- c:\users\ozen\appdata\roaming\HP TCS
2009-02-14 14:57 22,072 a------- c:\windows\system32\drivers\usbfilter.sys
2009-02-14 14:57 <DIR> --d----- c:\program files\AMD
2009-02-14 14:57 0 a--shr-- c:\windows\system32\drivers\103C_HP_cNB_Presario CQ40 Notebook PC_Y5335KV_0U_QCND9016LL8_E505774-371_4A_I30FE_SHP_V01.82_F.33_T081102_WV3-1_L409_M2814_J250_7AMD_8F31_92.10_#090104_N10EC8136;14E44315_(NK865PA#UUF)_XMOBILE_CN10_Z_21.MRK
2009-02-14 14:55 <DIR> --d----- c:\users\Ozen
2009-02-06 18:52 49,504 a------- c:\windows\system32\sirenacm.dll
==================== Find3M ====================
2009-03-04 16:55 86,016 a------- c:\windows\inf\infstrng.dat
2009-03-04 16:55 51,200 a------- c:\windows\inf\infpub.dat
2009-03-04 16:55 86,016 a------- c:\windows\inf\infstor.dat
2009-01-20 06:49 142,848 a------- c:\windows\system32\drivers\Rtlh86.sys
2009-01-16 09:59 73,728 a------- c:\windows\system32\RtNicProp32.dll
2009-01-05 07:32 353,840 a------- c:\windows\system32\msvcr71.dll
2009-01-05 07:32 1,053,232 a------- c:\windows\system32\MFC71u.dll
2009-01-05 07:32 505,392 a------- c:\windows\system32\msvcp71.dll
2009-01-05 07:32 1,066,544 a------- c:\windows\system32\MFC71.dll
2009-01-05 06:52 0 a---h--- c:\windows\system32\drivers\Msft_User_WpdFs_01_00_00.Wdf
2009-01-05 06:51 0 a---h--- c:\windows\system32\drivers\Msft_Kernel_Apfiltr_01005.Wdf
2009-01-05 06:44 6,656 a------- c:\windows\system32\bcmwlrc.dll
2008-12-31 17:04 691,560 a------- c:\windows\system32\OGACheckControl.dll
2008-12-31 17:04 528,744 a------- c:\windows\system32\OGAVerify.exe
2008-12-31 17:04 502,120 a------- c:\windows\system32\OGAAddin.dll
2008-12-12 11:18 87,336 a------- c:\windows\system32\dns-sd.exe
2008-12-12 11:11 61,440 a------- c:\windows\system32\dnssd.dll
2008-10-27 11:28 665,600 a------- c:\windows\inf\drvindex.dat
2008-01-21 10:43 174 a--sh--- c:\program files\desktop.ini
2006-11-02 20:42 287,440 a------- c:\windows\inf\perflib\0409\perfi.dat
2006-11-02 20:42 287,440 a------- c:\windows\inf\perflib\0409\perfh.dat
2006-11-02 20:42 30,674 a------- c:\windows\inf\perflib\0409\perfd.dat
2006-11-02 20:42 30,674 a------- c:\windows\inf\perflib\0409\perfc.dat
2006-11-02 17:20 287,440 a------- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 17:20 287,440 a------- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 17:20 30,674 a------- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 17:20 30,674 a------- c:\windows\inf\perflib\0000\perfc.dat
2009-03-05 16:02 262,144 a--sh--- c:\windows\serviceprofiles\networkservice\ntuser.dat
============= FINISH: 16:02:44.42 ===============
Edited by zenly, 05 March 2009 - 03:06 AM.