First I am unable to sign into Gmail. When I click "Gmail" on Google, it says "The requested URL /accounts/ServiceLogin was not found on this server." Also, when I click a link on Google, I get redirected. For example, when I typed in "hello" on Google and clicked the first link, I get redirected to hxxp://searchwebway3.com/ I can't use this anymore so I use Bing.
Second, I am unable to sign in to Youtube. When I click "Sign In" on Youtube, it says "The requested URL /accounts/ServiceLogin was not found on this server." Basically the same as Google. However I can use the search without problems.
Lastly, the Windows firewall thing is in some wierd language. It says "Centrum zabezpecenia". The same kind of wierd language shows up when opening .exe files.
The DDS log:
DDS (Ver_10-03-17.01) - NTFSx86
Run by Christopher at 14:26:34.87 on Mon 03/29/2010
Internet Explorer: 6.0.2800.2180 BrowserJavaVersion: 1.6.0_18
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.510.175 [GMT -5:00]
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\BCMSMMSG.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Dell\AccessDirect\dadapp.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell\AccessDirect\DadTray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Lavasoft\Ad-Aware\Ad-Aware.exe
C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Christopher.SHEILA\My Documents\Downloads\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://www.dell4me.com/myway
uDefault_Page_URL = hxxp://www.dell4me.com/myway
uSearch Bar = hxxp://bfc.myway.com/search/de_srchlft.html
BHO: AcroIEHlprObj Class: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 6.0\reader\activex\AcroIEHelper.dll
BHO: DriveLetterAccess: {5ca3d70e-1895-11cf-8e15-001234567890} - c:\windows\system32\dla\tfswshx.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.5.4723.1820\swg.dll
BHO: Java Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
TB: {BA52B914-B692-46c4-B683-905236F6F655} - No File
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
uRun: [DellSupport] "c:\program files\dell support\DSAgnt.exe" /startup
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [BCMSMMSG] BCMSMMSG.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [SynTPLpr] c:\program files\synaptics\syntp\SynTPLpr.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [DVDLauncher] "c:\program files\cyberlink\powerdvd\DVDLauncher.exe"
mRun: [DadApp] c:\program files\dell\accessdirect\dadapp.exe
mRun: [Dell QuickSet] c:\program files\dell\quickset\quickset.exe
mRun: [DMXLauncher] c:\program files\dell\media experience\DMXLauncher.exe
mRun: [UpdateManager] "c:\program files\common files\sonic\update manager\sgtray.exe" /r
mRun: [dla] c:\windows\system32\dla\tfswctrl.exe
mRun: [MMTray] c:\program files\musicmatch\musicmatch jukebox\mm_tray.exe
mRun: [mmtask] c:\program files\musicmatch\musicmatch jukebox\mmtask.exe
mRun: [RealTray] c:\program files\real\realplayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [HP Software Update] "c:\program files\hp\hp software update\HPWuSchd2.exe"
mRun: [Windows Defender] "c:\program files\windows defender\MSASCui.exe" -hide
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\americ~1.lnk - c:\program files\america online 9.0\aoltray.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office11\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
DPF: {784797A8-342D-4072-9486-03C8D0F2F0A1} - hxxps://www.battlefieldheroes.com/static/updater/BFHUpdater_4.0.53.0.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {FFFFFFFF-CACE-BABE-BABE-00AA0055595A} - hxxp://www.trueswitch.com/TrueInstall.exe
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.dll
Notify: igfxcui - igfxsrvc.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
SEH: Microsoft AntiMalware ShellExecuteHook: {091eb208-39dd-417d-a5dd-7e2c2d8fb9cb} - c:\progra~1\window~4\MpShHook.dll
Hosts: 89.149.210.106 www.google.de
Hosts: 89.149.210.106 www.google.fi
Hosts: 89.149.210.106 search.yahoo.com
Hosts: 89.149.210.106 www.google.no
Hosts: 89.149.210.106 us.search.yahoo.com
Note: multiple HOSTS entries found. Please refer to Attach.txt
================= FIREFOX ===================
FF - ProfilePath - c:\docume~1\christ~1.she\applic~1\mozilla\firefox\profiles\rfyh8pbc.default\
FF - prefs.js: browser.search.selectedEngine - Bing
FF - prefs.js: browser.startup.homepage - www.bing.com
FF - plugin: c:\documents and settings\all users\application data\nexonus\ngm\npNxGameUS.dll
FF - plugin: c:\program files\google\update\1.2.183.23\npGoogleOneClick8.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npclntax_SeekmoSA.dll
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}
---- FIREFOX POLICIES ----
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.debug", false);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
c:\program files\mozilla firefox\greprefs\all.js - pref("html5.enable", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.allow_unrestricted_renego_everywhere__temporarily_available_pref", true);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.renego_unrestricted_hosts", "");
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.treat_unsafe_negotiation_as_broken", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl.require_safe_negotiation", false);
c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
============= SERVICES / DRIVERS ===============
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2010-3-29 64288]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-2-17 66632]
R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2010-2-4 1263728]
R2 WinDefend;Windows Defender;c:\program files\windows defender\MsMpEng.exe [2006-11-3 13592]
S2 BarDiscover Service;BarDiscover Service;c:\documents and settings\all users\application data\bardiscover\bardiscover115.exe [2010-3-12 61712]
S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-3-5 135664]
S3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2010-2-17 12872]
=============== Created Last 30 ================
2010-03-29 16:25:55 0 d-----w- c:\program files\Runtime Software
2010-03-29 15:59:22 64288 ----a-w- c:\windows\system32\drivers\Lbd.sys
2010-03-29 15:59:12 95024 ----a-w- c:\windows\system32\drivers\SBREDrv.sys
2010-03-29 15:55:48 0 dc-h--w- c:\docume~1\alluse~1\applic~1\{74D08EB8-01D1-4BAE-91E3-F30C1B031AC6}
2010-03-29 15:54:39 0 d-----w- c:\program files\Lavasoft
2010-03-27 17:45:27 0 d-----w- c:\program files\Cobian Backup 10
2010-03-22 01:28:59 0 d-----w- c:\docume~1\christ~1.she\applic~1\OpenOffice.org
2010-03-19 21:59:17 0 d-----w- c:\program files\Spyware Doctor
2010-03-17 22:00:19 0 d-----w- c:\program files\WolfQuest
2010-03-17 01:46:44 0 d-sha-r- C:\cmdcons
2010-03-17 01:44:21 98816 ----a-w- c:\windows\sed.exe
2010-03-17 01:44:21 77312 ----a-w- c:\windows\MBR.exe
2010-03-17 01:44:21 261632 ----a-w- c:\windows\PEV.exe
2010-03-17 01:44:21 161792 ----a-w- c:\windows\SWREG.exe
2010-03-17 00:26:10 767952 ----a-w- c:\windows\BDTSupport.dll.old
2010-03-17 00:26:09 1640400 ----a-w- c:\windows\PCTBDCore.dll.old
2010-03-15 00:42:23 0 d-----w- c:\program files\DLDIrc
2010-03-13 23:17:35 0 d-----w- c:\docume~1\christ~1.she\applic~1\Malwarebytes
2010-03-13 23:17:29 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2010-03-13 23:17:25 19160 ----a-w- c:\windows\system32\drivers\mbam.sys
2010-03-13 23:17:25 0 d-----w- c:\program files\Malwarebytes' Anti-Malware
2010-03-13 22:29:48 159744 ----a-w- c:\windows\system32\igfxres.dll
2010-03-13 22:29:00 13646 ----a-w- c:\windows\system32\wpa.bak
2010-03-13 22:17:00 28288 -c--a-w- c:\windows\system32\dllcache\xjis.nls
2010-03-13 22:15:51 38912 -c--a-w- c:\windows\system32\dllcache\EXCH_ntfsdrv.dll
2010-03-13 22:14:50 39936 -c--a-w- c:\windows\system32\dllcache\hostmib.dll
2010-03-13 22:13:59 5632 -c--a-w- c:\windows\system32\dllcache\EXCH_adsiisex.dll
2010-03-13 22:11:41 488 ---ha-r- c:\windows\system32\logonui.exe.manifest
2010-03-13 22:11:32 749 ---ha-r- c:\windows\WindowsShell.Manifest
2010-03-13 22:11:32 749 ---ha-r- c:\windows\system32\wuaucpl.cpl.manifest
2010-03-13 22:11:32 749 ---ha-r- c:\windows\system32\sapi.cpl.manifest
2010-03-13 22:11:32 749 ---ha-r- c:\windows\system32\ncpa.cpl.manifest
2010-03-13 21:21:27 0 d-----w- c:\windows\setup.pss
2010-03-13 19:06:55 8261 -c--a-w- c:\windows\system32\dllcache\zoneoc.dll
2010-03-13 19:03:05 33280 -c--a-w- c:\windows\system32\dllcache\ping6.exe
2010-03-13 19:02:59 13107200 -c--a-w- c:\windows\system32\dllcache\oembios.bin
2010-03-13 19:01:59 6656 -c--a-w- c:\windows\system32\dllcache\msswchx.exe
2010-03-13 18:58:46 86528 -c--a-w- c:\windows\system32\dllcache\iassam.dll
2010-03-13 18:57:59 59904 -c--a-w- c:\windows\system32\dllcache\atmarpc.sys
2010-03-12 23:41:16 0 d-----w- c:\docume~1\christ~1.she\applic~1\TrueSwitch
2010-03-12 23:40:39 0 d-----w- c:\program files\TrueSwitchEsaya
2010-03-12 23:24:37 0 d-sh--w- c:\documents and settings\christopher.sheila\PrivacIE
2010-03-12 21:53:52 0 d-----w- c:\docume~1\alluse~1\applic~1\SUPERAntiSpyware.com
2010-03-12 21:50:07 0 d-----w- c:\program files\SUPERAntiSpyware
2010-03-12 21:47:41 0 d-----w- c:\program files\common files\Wise Installation Wizard
2010-03-12 01:43:27 0 d-----w- c:\windows\system32\wbem\Repository
2010-03-12 01:41:59 95424 ----a-w- c:\windows\system32\drivers\slnthal.sys
2010-03-12 01:41:58 0 d-----w- c:\program files\IObit
2010-03-12 01:38:24 7168 ----a-w- c:\windows\system32\OLD3F.tmp
2010-03-12 01:37:50 45083 ----a-w- c:\windows\system32\OLD3C.tmp
2010-03-12 01:34:36 0 d-----w- c:\windows\system32\CatRoot_bak
2010-03-12 01:33:58 1172480 ----a-w- c:\windows\system32\OLD2C.tmp
2010-03-12 01:33:06 117760 ----a-w- c:\windows\system32\OLD21.tmp
2010-03-12 01:33:05 68608 ----a-w- c:\windows\system32\OLD1E.tmp
2010-03-12 01:32:33 60928 ----a-w- c:\windows\system32\OLD1B.tmp
2010-03-12 01:32:07 0 d-----w- c:\windows\LastGood(2)
2010-03-12 01:29:10 0 d-----w- c:\docume~1\alluse~1\applic~1\Avira
2010-03-12 01:28:54 0 d-----w- c:\program files\America Online 9.0
2010-03-12 01:28:50 0 d-----w- c:\program files\AOL Companion
2010-03-11 23:05:46 0 d-----w- c:\docume~1\alluse~1\applic~1\Malwarebytes
2010-03-11 08:52:59 0 d-----w- C:\ProgramData
2010-03-11 08:52:59 0 d-----w- c:\program files\Angle Interactive
2010-03-11 08:36:03 0 d-----w- c:\program files\BarDiscover
2010-03-11 08:36:03 0 d-----w- c:\docume~1\alluse~1\applic~1\BarDiscover
2010-03-11 01:04:38 0 d-----w- c:\windows\system32\scripting
2010-03-11 01:04:37 0 d-----w- c:\windows\l2schemas
2010-03-11 00:56:27 0 d-----w- c:\windows\network diagnostic
2010-03-08 23:00:07 88 --sh--r- c:\docume~1\alluse~1\applic~1\B59FE6359D.sys
2010-03-08 23:00:07 1890 --sha-w- c:\docume~1\alluse~1\applic~1\KGyGaAvL.sys
2010-03-08 22:53:40 0 d-----w- c:\program files\common files\Enterbrain
2010-03-08 01:23:02 0 d-----w- c:\docume~1\alluse~1\applic~1\Nexon
2010-03-08 00:53:42 0 d-----w- C:\Nexon
2010-03-08 00:53:39 0 d-----w- c:\docume~1\alluse~1\applic~1\NexonUS
2010-03-07 23:50:04 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2010-03-07 00:33:44 0 d-----w- c:\program files\JRE
2010-03-07 00:33:20 0 d-----w- c:\program files\OpenOffice.org 3
2010-03-07 00:32:18 73728 ----a-w- c:\windows\system32\javacpl.cpl
2010-03-07 00:32:18 411368 ----a-w- c:\windows\system32\deploytk.dll
2010-03-06 20:06:19 0 d-----w- c:\program files\common files\HP
2010-03-06 20:04:10 0 d-----w- c:\program files\common files\Hewlett-Packard
2010-03-06 20:03:24 69632 ----a-w- c:\windows\system32\HPZipm12.exe
2010-03-06 20:03:24 61440 ----a-w- c:\windows\system32\HPZinw12.exe
2010-03-06 20:03:23 94208 ----a-w- c:\windows\system32\HPZipt12.dll
2010-03-06 20:03:23 57344 ----a-w- c:\windows\system32\HPZisn12.dll
2010-03-06 20:03:23 278584 ----a-w- c:\windows\system32\HPZidr12.dll
2010-03-06 20:03:23 204800 ----a-w- c:\windows\system32\HPZipr12.dll
2010-03-06 20:02:36 0 d-----w- c:\program files\HP
2010-03-06 19:59:36 0 d-----w- c:\program files\Datel
2010-03-06 19:46:32 69558 ----a-w- c:\windows\hpoins05.dat
2010-03-06 19:46:31 19696 ----a-w- c:\windows\hpomdl05.dat
2010-03-06 19:46:12 21744 ----a-w- c:\windows\system32\drivers\HPZius12.sys
2010-03-06 19:46:11 51120 ----a-w- c:\windows\system32\drivers\HPZid412.sys
2010-03-06 19:46:11 16496 ----a-w- c:\windows\system32\drivers\HPZipr12.sys
2010-03-06 19:45:55 708608 ----a-w- c:\windows\system32\hpotiop.dll
2010-03-06 19:45:55 278528 ----a-w- c:\windows\system32\hpgwiamd.dll
2010-03-06 19:45:55 274432 ----a-w- c:\windows\system32\HPZc3212.dll
2010-03-06 19:45:55 229376 ----a-w- c:\windows\system32\hpovst08.dll
2010-03-06 19:45:30 139345 ----a-w- c:\windows\system32\hpzlnt12.dll
2010-03-06 19:45:25 393216 ----a-w- c:\windows\system32\hpzcon12.dll
2010-03-06 19:45:25 196608 ----a-w- c:\windows\system32\hpzcoi12.dll
2010-03-06 19:23:21 25856 ----a-w- c:\windows\system32\drivers\usbprint.sys
2010-03-05 10:05:24 0 d-----w- C:\27f4b265005ce95e62b389e9ebbbb492
2010-03-05 10:04:05 0 d-----w- c:\windows\SxsCaPendDel
2010-03-05 00:36:29 54156 ---ha-w- c:\windows\QTFont.qfn
2010-03-05 00:36:29 1409 ----a-w- c:\windows\QTFont.for
2010-03-05 00:02:23 0 d-----w- c:\windows\system32\XPSViewer
2010-03-05 00:01:16 14048 ----a-w- c:\windows\system32\spmsg2.dll
2010-03-04 23:57:05 0 d-----w- c:\program files\MSXML 6.0
2010-03-04 23:40:12 74072 ----a-w- c:\windows\system32\XAPOFX1_4.dll
2010-03-04 23:40:12 528216 ----a-w- c:\windows\system32\XAudio2_6.dll
2010-03-04 23:40:11 238936 ----a-w- c:\windows\system32\xactengine3_6.dll
2010-03-04 23:40:11 22360 ----a-w- c:\windows\system32\X3DAudio1_7.dll
2010-03-04 23:40:09 515416 ----a-w- c:\windows\system32\XAudio2_5.dll
2010-03-04 23:40:08 238936 ----a-w- c:\windows\system32\xactengine3_5.dll
2010-03-04 23:40:07 1974616 ----a-w- c:\windows\system32\D3DCompiler_42.dll
2010-03-04 23:40:05 5501792 ----a-w- c:\windows\system32\d3dcsx_42.dll
2010-03-04 23:40:01 235344 ----a-w- c:\windows\system32\d3dx11_42.dll
2010-03-04 23:40:00 453456 ----a-w- c:\windows\system32\d3dx10_42.dll
2010-03-04 23:38:56 3495784 ----a-w- c:\windows\system32\d3dx9_33.dll
2010-03-04 23:28:57 0 d--h--w- c:\windows\msdownld.tmp
2010-03-04 23:28:12 0 d-----w- c:\windows\Logs
2010-03-04 21:13:10 181632 ------w- c:\windows\system32\MpSigStub.exe
2010-03-04 01:38:39 0 d-----w- c:\windows\ServicePackFiles
2010-03-04 01:38:17 0 d-----w- c:\windows\ie8updates
2010-03-04 01:37:53 0 d-----w- c:\program files\MSXML 4.0
2010-03-03 22:05:36 189248 ----a-w- c:\windows\system32\PnkBstrB.exe
2010-03-03 22:05:30 75064 ----a-w- c:\windows\system32\PnkBstrA.exe
2010-03-03 22:05:30 2407792 ----a-w- c:\windows\system32\pbsvc_heroes.exe
2010-03-03 21:46:40 0 d-----w- c:\program files\EA Games
2010-03-03 09:53:16 67866 ----a-w- c:\windows\system32\drivers\netwlan5.img
2010-03-03 09:51:13 64352 ----a-w- c:\windows\system32\drivers\ativmc20.cod
2010-03-03 06:23:14 0 d-----w- c:\windows\system32\PreInstall
2010-03-02 22:09:47 0 d-----w- c:\windows\system32\SoftwareDistribution
2010-03-02 03:46:42 0 d-----w- C:\nDoors
2010-03-02 02:26:19 26144 ----a-w- c:\windows\system32\spupdsvc.exe
2010-03-02 02:24:59 0 dc-h--w- c:\windows\ie8
2010-03-02 02:13:44 0 d-----w- c:\windows\system32\LogFiles
2010-03-02 00:13:46 0 d-----w- c:\program files\Pando Networks
2010-03-01 22:26:58 4272 ----a-w- c:\windows\system32\drivers\bvrp_pci.sys
==================== Find3M ====================
2010-03-13 22:10:05 23444 -c--a-w- c:\windows\system32\emptyregdb.dat
============= FINISH: 14:27:40.32 ===============
Attached Files
Edited by Orange Blossom, 29 March 2010 - 11:17 PM.
Deactivate link. ~ OB