Here are the logs, sorry I forgot to paste them.
Gmer stopped running even in safe mode.
Malwarebytes' Anti-Malware 1.51.1.1800
www.malwarebytes.org
Database version: 7402
Windows 6.1.7601 Service Pack 1
Internet Explorer 9.0.8112.16421
8/7/2011 10:38:32 PM
mbam-log-2011-08-07 (22-38-32).txt
Scan type: Quick scan
Objects scanned: 176329
Time elapsed: 4 minute(s), 30 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
and here is the rest
.
DDS (Ver_2011-06-23.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421
Run by owner at 22:44:28 on 2011-08-07
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.6126.4048 [GMT -4:00]
.
AV: Norton 360 *Disabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Norton 360 *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
FW: Norton 360 *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe
C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Sony\VAIO Care\VCSpt.exe
C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
C:\Program Files\Sony\VAIO Update 5\VAIOUpdt.exe
C:\Windows\SysWOW64\DllHost.exe
C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Sony\VAIO Power Management\SPMService.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files\Apoint\Apoint.exe
C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Apoint\ApMsgFwd.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Apoint\Apvfb.exe
C:\Program Files\Apoint\Apntex.exe
C:\Windows\system32\conhost.exe
C:\Users\owner\AppData\Local\Knowledge Networks\PanelApp\PanelApp.exe
C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
C:\Windows\System32\StikyNot.exe
C:\Program Files (x86)\DivX\DivX Plus Web Player\DDMService.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\system32\rundll32.exe
C:\Program Files\Sony\VAIO Care\VCsystray.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
C:\Program Files (x86)\DDNi\Oasis2Service 1.0\Oasis2Service.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService.exe
C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\DllHost.exe
C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.DDNI\MSSQL\Binn\sqlservr.exe
C:\Program Files (x86)\DDNI\Oasis\VAIO Messenger.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
.
============== Pseudo HJT Report ===============
.
uDefault_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=SNNT&bmod=SNNT
mStart Page = hxxp://www.google.com/ig/redirectdomain?brand=SNNT&bmod=SNNT
uInternet Settings,ProxyOverride = *.local
mWinlogon: Userinit=userinit.exe,
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
BHO: DivX HiQ: {593ddec6-7468-4cdd-90e1-42dadaa222e9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\IPS\IPSBHO.DLL
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9fdde16b-836f-4806-ab1f-1455cbeff289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
BHO: Yontoo Layers: {fd72061e-9fde-484d-a58a-0bab4151cad8} - C:\Program Files (x86)\Yontoo Layers Runtime\YontooIEClient_2.dll
TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [DW6] "C:\Program Files (x86)\The Weather Channel FW\Desktop\DesktopWeather.exe"
uRun: [AdobeUpdater6] "C:\Program Files (x86)\Common Files\Adobe\Updater6\Adobe_Updater.exe"
uRun: [Speech Recognition] "C:\Windows\Speech\Common\sapisvr.exe" -SpeechUX -Startup
uRun: [PanelApp] C:\Users\owner\AppData\Local\Knowledge Networks\PanelApp\PanelApp.exe
uRun: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
uRun: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
mRun: [DivX Download Manager] "C:\Program Files (x86)\DivX\DivX Plus Web Player\DDmService.exe" start
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
StartupFolder: C:\Users\owner\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\EVERNO~1.LNK - C:\Program Files (x86)\Evernote\Evernote\EvernoteClipper.exe
StartupFolder: C:\Users\owner\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\ONENOT~1.LNK - C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\VAIOME~1.LNK - C:\Program Files (x86)\DDNi\Oasis\Delay.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MRI_DI~1\BLUETO~1.LNK - C:\Program Files (x86)\WIDCOMM\Bluetooth Software\BTTray.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\MRI_DI~1\VAIOME~1.LNK - C:\Program Files (x86)\DDNi\Oasis\Delay.exe
uPolicies-explorer: NoDesktopCleanupWizard = 1 (0x1)
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: Add to Evernote 4.0 - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\Office14\EXCEL.EXE/3000
IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_70C5B381380DB17F.dll/cmsidewiki.html
IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~2\Office14\ONBttnIE.dll/105
IE: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
IE: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
DPF: {4D2D3A17-9B46-483C-A5F4-1DC471080009} - hxxps://ehccas1500ivr.ehc.edu/auth/taweb.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {C9D7D239-B502-48B3-BA25-9DF8C7264073} - hxxps://ehccas1500ivr.ehc.edu/auth/CCALogin.CAB
DPF: {CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_18-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 68.105.28.12 68.105.29.12 68.105.28.11
TCP: Interfaces\{D726B9D6-BF17-49F0-A998-6B63D7E304A5} : DhcpNameServer = 68.105.28.12 68.105.29.12 68.105.28.11
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
mASetup: {2D46B6DC-2207-486B-B523-A557E6D54B47} - C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: DivX Plus Web Player HTML5 <video>: {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
BHO-X64: Increase performance and video formats for your HTML5 <video> - No File
BHO-X64: DivX HiQ: {593DDEC6-7468-4cdd-90E1-42DADAA222E9} - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
BHO-X64: Use the DivX Plus Web Player to watch web videos with less interruptions and smoother playback on supported sites - No File
BHO-X64: Symantec NCO BHO: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
BHO-X64: Symantec NCO BHO - No File
BHO-X64: Symantec Intrusion Prevention: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\IPS\IPSBHO.DLL
BHO-X64: Symantec Intrusion Prevention - No File
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO-X64: Skype Browser Helper: {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
BHO-X64: SkypeIEPluginBHO - No File
BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~2\Office14\URLREDIR.DLL
BHO-X64: URLRedirectionBHO - No File
BHO-X64: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
BHO-X64: Yontoo Layers: {FD72061E-9FDE-484D-A58A-0BAB4151CAD8} - C:\Program Files (x86)\Yontoo Layers Runtime\YontooIEClient_2.dll
BHO-X64: Yontoo Layers - No File
TB-X64: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\coIEPlg.dll
TB-X64: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - "C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll"
TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
mRun-x64: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun-x64: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe
mRun-x64: [DivX Download Manager] "C:\Program Files (x86)\DivX\DivX Plus Web Player\DDmService.exe" start
mRun-x64: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
IE-X64: {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204
IE-X64: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\owner\AppData\Roaming\Mozilla\Firefox\Profiles\p4tqh4cr.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ig|
https://ehcemail.ehc.edu/owa/auth/l...//library.ehc.edu/|http://scholar.google.com/
FF - prefs.js: network.proxy.type - 0
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: c:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\NOS\bin\np_gp.dll
FF - plugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R0 PxHlpa64;PxHlpa64;C:\Windows\system32\Drivers\PxHlpa64.sys --> C:\Windows\system32\Drivers\PxHlpa64.sys [?]
R0 SymDS;Symantec Data Store;C:\Windows\system32\drivers\N360x64\0501000.01D\SYMDS64.SYS --> C:\Windows\system32\drivers\N360x64\0501000.01D\SYMDS64.SYS [?]
R0 SymEFA;Symantec Extended File Attributes;C:\Windows\system32\drivers\N360x64\0501000.01D\SYMEFA64.SYS --> C:\Windows\system32\drivers\N360x64\0501000.01D\SYMEFA64.SYS [?]
R1 BHDrvx64;BHDrvx64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\BASHDefs\20110723.001\BHDrvx64.sys [2011-7-22 1151096]
R1 IDSVia64;IDSVia64;C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_5.1.0.29\Definitions\IPSDefs\20110805.030\IDSviA64.sys [2011-8-5 488056]
R1 SymIRON;Symantec Iron Driver;C:\Windows\system32\drivers\N360x64\0501000.01D\Ironx64.SYS --> C:\Windows\system32\drivers\N360x64\0501000.01D\Ironx64.SYS [?]
R1 SymNetS;Symantec Network Security WFP Driver;C:\Windows\system32\drivers\N360x64\0501000.01D\SYMNETS.SYS --> C:\Windows\system32\drivers\N360x64\0501000.01D\SYMNETS.SYS [?]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-3-25 13336]
R2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2011-8-7 366640]
R2 N360;Norton 360;C:\Program Files (x86)\Norton 360\Engine\5.1.0.29\ccSvcHst.exe [2011-5-25 130008]
R2 Oasis2Service;Oasis2Service;C:\Program Files (x86)\DDNi\Oasis2Service 1.0\Oasis2Service.exe [2010-6-24 45568]
R2 PMBDeviceInfoProvider;PMBDeviceInfoProvider;C:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe [2009-10-24 360224]
R2 regi;regi;\??\C:\Windows\system32\drivers\regi.sys --> C:\Windows\system32\drivers\regi.sys [?]
R2 rimspci;rimspci;C:\Windows\system32\drivers\rimssne64.sys --> C:\Windows\system32\drivers\rimssne64.sys [?]
R2 risdsnpe;risdsnpe;C:\Windows\system32\drivers\risdsne64.sys --> C:\Windows\system32\drivers\risdsne64.sys [?]
R2 VCFw;VAIO Content Folder Watcher;C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [2010-3-18 852336]
R2 VcmIAlzMgr;VAIO Content Metadata Intelligent Analyzing Manager;C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [2010-2-19 529776]
R2 VcmINSMgr;VAIO Content Metadata Intelligent Network Service Manager;C:\Program Files\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe [2010-2-19 386416]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv;C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2011-7-27 136824]
R3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
R3 MSSQL$DDNI;SQL Server (DDNI);C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.DDNI\MSSQL\Binn\sqlservr.exe [2009-3-30 43010392]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver;C:\Windows\system32\drivers\nvhda64v.sys --> C:\Windows\system32\drivers\nvhda64v.sys [?]
R3 SFEP;Sony Firmware Extension Parser;C:\Windows\system32\drivers\SFEP.sys --> C:\Windows\system32\drivers\SFEP.sys [?]
R3 SpfService;VAIO Entertainment Common Service;C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService.exe [2010-2-8 302448]
R3 VAIO Power Management;VAIO Power Management;C:\Program Files\Sony\VAIO Power Management\SPMService.exe [2010-5-2 574320]
R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\system32\DRIVERS\yk62x64.sys --> C:\Windows\system32\DRIVERS\yk62x64.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-5-2 135664]
S3 BBSvc;Bing Bar Update Service;C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE [2011-2-28 183560]
S3 btwampfl;Bluetooth AMP USB Filter;C:\Windows\system32\drivers\btwampfl.sys --> C:\Windows\system32\drivers\btwampfl.sys [?]
S3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\system32\DRIVERS\btwl2cap.sys --> C:\Windows\system32\DRIVERS\btwl2cap.sys [?]
S3 fssfltr;fssfltr;C:\Windows\system32\DRIVERS\fssfltr.sys --> C:\Windows\system32\DRIVERS\fssfltr.sys [?]
S3 fsssvc;Windows Live Family Safety Service;C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe [2010-9-23 1493352]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-5-2 135664]
S3 Impcd;Impcd;C:\Windows\system32\drivers\Impcd.sys --> C:\Windows\system32\drivers\Impcd.sys [?]
S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
S3 PanelSvc;PanelSvc;C:\Program Files (x86)\Knowledge Networks\PanelApp\PanelSvc.exe [2010-4-15 91136]
S3 SampleCollector;Intel(R) Sample Collector;C:\Program Files\Sony\VAIO Care\collsvc.exe [2010-5-2 168448]
S3 SOHCImp;VAIO Media plus Content Importer;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe [2010-5-2 108400]
S3 SOHDms;VAIO Media plus Digital Media Server;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe [2010-5-2 422768]
S3 SOHDs;VAIO Media plus Device Searcher;C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe [2010-5-2 67952]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\system32\Drivers\usbaapl64.sys --> C:\Windows\system32\Drivers\usbaapl64.sys [?]
S3 VcmXmlIfHelper;VAIO Content Metadata XML Interface;C:\Program Files\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe [2010-2-19 115568]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;C:\Program Files (x86)\Microsoft SQL Server\100\Shared\sqladhlp.exe [2009-3-31 47128]
S4 SQLAgent$DDNI;SQL Server Agent (DDNI);C:\Program Files (x86)\Microsoft SQL Server\MSSQL10.DDNI\MSSQL\Binn\SQLAGENT.EXE [2009-3-30 366936]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2011-08-08 02:31:43 -------- d-----w- C:\Users\owner\AppData\Local\{0175357F-F749-4017-813E-9E3ECD9550B8}
2011-08-08 02:30:22 -------- d-----w- C:\Users\owner\AppData\Local\{7EF99135-26AB-4600-BEB2-82D48E687593}
2011-08-07 23:29:47 41272 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2011-08-07 23:29:44 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-08-07 13:49:04 -------- d-----w- C:\Users\owner\AppData\Local\{3E4D23A2-8881-4427-BA9C-F74B32258F7B}
2011-08-07 13:48:34 -------- d-----w- C:\Users\owner\AppData\Local\{18B7C42F-2C7B-42FB-A9F0-89406F8DEC2D}
2011-08-07 02:21:43 -------- d-----w- C:\Users\owner\AppData\Local\{643C1546-DD86-4DC5-8118-B38D35DED51E}
2011-08-07 02:21:19 -------- d-----w- C:\Users\owner\AppData\Local\{52EA5D4F-9906-4906-AA53-4CECB7BB3CAA}
2011-08-07 02:07:36 -------- d-----w- C:\Users\owner\AppData\Local\{4C4AA38D-DB07-4D8F-AE04-C9E824F2EBCE}
2011-08-07 02:07:04 -------- d-----w- C:\Users\owner\AppData\Local\{9AA7423B-4091-402E-A7EF-36B2879B92CE}
2011-08-07 01:46:04 -------- d-----w- C:\Users\owner\AppData\Local\{0A7C756E-A2DD-417F-8317-52845EADFF29}
2011-08-07 01:45:37 -------- d-----w- C:\Users\owner\AppData\Local\{DEE4617F-52B5-4769-9381-4D271C9434BA}
2011-08-07 01:26:13 -------- d-----w- C:\Users\owner\AppData\Local\{6140AE46-DA25-4884-925E-B520840D8CDE}
2011-08-07 01:25:45 -------- d-----w- C:\Users\owner\AppData\Local\{7A6E37AC-AD11-4329-BC2C-3F7A15B2C339}
2011-08-07 01:20:58 96376 ----a-w- C:\Windows\System32\drivers\SMR200.SYS
2011-08-07 01:20:33 -------- d-----w- C:\Users\owner\AppData\Local\NPE
2011-08-07 00:21:26 -------- d-----w- C:\Users\owner\AppData\Local\{61413440-8F94-45E1-A448-EFAE9B663CAE}
2011-08-07 00:21:09 -------- d-----w- C:\Users\owner\AppData\Local\{557219DE-8A50-45AE-A18D-153B969661EB}
2011-08-07 00:05:57 -------- d-----w- C:\Users\owner\AppData\Local\{0FC0ABCE-0EFB-4ED7-A949-A15EACD37D2A}
2011-08-07 00:04:26 -------- d-----w- C:\Users\owner\AppData\Local\{BE20F67F-7311-4A0A-A8C4-7B7F01494B80}
2011-08-06 23:39:29 -------- d-----w- C:\Windows\System32\SPReview
2011-08-06 23:34:17 -------- d-----w- C:\Users\owner\AppData\Local\{5018A8E8-9024-48DC-BD88-49B4C2B85AC9}
2011-08-06 23:33:50 -------- d-----w- C:\Users\owner\AppData\Local\{DF621747-E247-4876-BE31-EB75A1E6A8CB}
2011-08-06 23:22:51 23112 ----a-w- C:\Windows\System32\drivers\hitmanpro35.sys
2011-08-06 23:22:10 -------- d-----w- C:\ProgramData\Hitman Pro
2011-08-06 19:05:30 -------- d-----w- C:\Users\owner\AppData\Local\{831265B9-C95B-40E8-82B3-716D66537ECE}
2011-08-06 19:05:05 -------- d-----w- C:\Users\owner\AppData\Local\{3398976F-89EA-4734-A706-4215CE8E941E}
2011-08-06 18:53:27 -------- d-----w- C:\Users\owner\AppData\Local\{E2137C38-6234-4370-92E2-507F24D2DC5B}
2011-08-06 18:53:09 -------- d-----w- C:\Users\owner\AppData\Local\{DC8D9F1D-A524-46E3-AD04-B954A8983C32}
2011-08-06 16:35:47 -------- d-----w- C:\Users\owner\AppData\Roaming\Malwarebytes
2011-08-06 16:35:43 -------- d-----w- C:\ProgramData\Malwarebytes
2011-08-06 16:35:40 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-08-06 15:49:55 -------- d-----w- C:\Program Files\CCleaner
2011-08-06 15:40:33 -------- d-----w- C:\Users\owner\AppData\Local\{A99482F5-4AB2-403E-BE85-B6DE5B0375A7}
2011-08-06 15:40:07 -------- d-----w- C:\Users\owner\AppData\Local\{F59B3B72-16E1-4169-9AE8-CEFD2D146DC9}
2011-08-06 07:03:19 -------- d-----w- C:\Users\owner\AppData\Local\{F95E323A-8B5A-4427-A032-D18D03D5FE5A}
2011-08-06 07:02:52 -------- d-----w- C:\Users\owner\AppData\Local\{29461A77-695D-4F38-BC5B-0A3BDBC0FC4A}
2011-08-05 18:26:27 -------- d-----w- C:\ProgramData\Tarma Installer
2011-08-05 17:00:41 -------- d-----w- C:\Users\owner\AppData\Local\{BB8963DE-5638-480F-9F6E-B0973128EFAC}
2011-08-05 05:32:41 -------- d-----w- C:\Users\owner\AppData\Local\{EA3D2301-A215-4E53-BBE0-0E14732D9D7D}
2011-08-05 05:32:06 -------- d-----w- C:\Users\owner\AppData\Local\{7A545B75-F4A0-404D-A6E2-1C71524A6EBD}
2011-08-04 17:31:29 -------- d-----w- C:\Users\owner\AppData\Local\{EA9F6BEA-AFA5-4ACC-B6B3-8CEF82275F70}
2011-08-03 23:53:26 -------- d-----w- C:\Users\owner\AppData\Local\{B357CB04-4671-4EBE-AC6C-9C14CBC91D49}
2011-08-03 10:55:07 -------- d-----w- C:\Users\owner\AppData\Local\{4AA77731-A6CE-44C8-9AF4-69294B1654CF}
2011-08-03 01:50:58 -------- d-----w- C:\Down
2011-08-03 01:50:25 -------- d-----w- C:\Windyzone
2011-08-03 00:09:31 -------- d-----w- C:\Program Files (x86)\Perfectworld Entertainment
2011-08-02 23:56:37 -------- d--h--w- C:\Windows\msdownld.tmp
2011-08-02 23:56:29 -------- d-----w- C:\Windows\SysWow64\directx
2011-08-02 18:35:56 -------- d-----w- C:\Users\owner\AppData\Local\Knowledge Networks
2011-08-02 18:35:56 -------- d-----w- C:\Program Files (x86)\Knowledge Networks
2011-08-02 17:12:30 -------- d-----w- C:\Users\owner\AppData\Local\{E511E59B-7636-4AB4-B452-FB66A903C120}
2011-08-01 16:45:18 -------- d-----w- C:\Users\owner\AppData\Local\{69F80FF6-AB07-4EBD-A9FE-439F2F51993E}
2011-08-01 04:44:42 -------- d-----w- C:\Users\owner\AppData\Local\{F5F27127-2566-4ABF-B4C4-3CED0175085A}
2011-07-31 21:14:41 -------- d-----w- C:\Windows\SysWow64\screenshots
2011-07-31 21:14:41 -------- d-----w- C:\Windows\SysWow64\logs
2011-07-31 21:14:41 -------- d-----w- C:\Windows\SysWow64\cache
2011-07-31 17:04:19 48976 ----a-w- C:\Windows\System32\netfxperf.dll
2011-07-31 17:04:19 1942856 ----a-w- C:\Windows\System32\dfshim.dll
2011-07-31 17:04:06 1130824 ----a-w- C:\Windows\SysWow64\dfshim.dll
2011-07-31 17:02:59 982912 ----a-w- C:\Windows\System32\drivers\dxgkrnl.sys
2011-07-31 17:01:59 349696 ----a-w- C:\Windows\System32\slui.exe
2011-07-31 17:00:59 8192 ----a-w- C:\Windows\System32\KBDCZ1.DLL
2011-07-31 16:59:48 323072 ----a-w- C:\Windows\SysWow64\drvstore.dll
2011-07-31 16:59:47 257024 ----a-w- C:\Windows\SysWow64\dpx.dll
2011-07-31 16:59:38 606208 ----a-w- C:\Windows\SysWow64\wbem\fastprox.dll
2011-07-31 16:59:38 363008 ----a-w- C:\Windows\SysWow64\wbemcomn.dll
2011-07-31 16:54:22 529408 ----a-w- C:\Windows\System32\wbemcomn.dll
2011-07-31 16:54:22 524288 ----a-w- C:\Windows\System32\wmicmiplugin.dll
2011-07-31 16:54:22 1225216 ----a-w- C:\Windows\System32\wbem\wbemcore.dll
2011-07-31 16:53:55 933376 ----a-w- C:\Windows\System32\SmiEngine.dll
2011-07-31 16:53:37 199168 ----a-w- C:\Windows\System32\PkgMgr.exe
2011-07-31 16:49:20 422912 ----a-w- C:\Windows\System32\drvstore.dll
2011-07-31 16:49:18 399872 ----a-w- C:\Windows\System32\dpx.dll
2011-07-31 16:44:01 -------- d-----w- C:\Users\owner\AppData\Local\{DFC7C9BF-E993-416C-9413-1EF8CBBAAAEB}
2011-07-31 01:32:54 -------- d-----w- C:\Users\owner\AppData\Local\{FC8766FF-6452-4817-BF97-560A347118ED}
2011-07-31 01:09:08 0 ---ha-w- C:\Users\owner\AppData\Local\BITA853.tmp
2011-07-31 00:35:22 -------- d-----w- C:\Users\owner\AppData\Local\{8C6AE271-7C35-4295-8AE3-BC1D6412DE34}
2011-07-30 18:46:47 -------- d-----w- C:\Users\owner\AppData\Local\{068E0F1B-4E7F-4F43-B92D-363B0BC10EFB}
2011-07-29 19:44:56 -------- d-----w- C:\Windows\System32\EventProviders
2011-07-29 19:44:27 -------- d-----w- C:\76a0406c37c098f02f24d91a6a46c3
2011-07-29 19:42:38 -------- d-----w- C:\Users\owner\AppData\Local\{4FF94EB9-FA17-42D0-ADDB-C2BD481C579B}
2011-07-28 17:31:04 -------- d-----w- C:\Users\owner\AppData\Local\{B95BC220-4C26-494B-8526-FD223A55338D}
2011-07-27 17:29:40 -------- d-----w- C:\Users\owner\AppData\Local\{C42112A5-C269-43A9-8F59-1A0CC57FD67B}
2011-07-26 17:40:27 -------- d-----w- C:\Users\owner\AppData\Local\{4B8F3199-A4C0-4DC8-8F20-BF0030977F78}
2011-07-25 22:33:42 -------- d-----w- C:\Users\owner\AppData\Local\{540EFAD2-39EA-42CF-A70B-9D00A7E6F19D}
2011-07-24 18:38:25 -------- d-----w- C:\Users\owner\AppData\Local\{CF36046C-9A9F-4733-88B4-0DD96E3F1EBA}
2011-07-24 02:51:14 -------- d-----w- C:\Users\owner\AppData\Local\{61567E39-1AB1-420B-B0BD-94638C5422AB}
2011-07-23 14:50:39 -------- d-----w- C:\Users\owner\AppData\Local\{7DC78A42-4F4F-4C0F-892F-1A83785C1B2C}
2011-07-23 02:50:03 -------- d-----w- C:\Users\owner\AppData\Local\{4924D196-4C59-42E6-AB62-FB8FEAE61C7A}
2011-07-22 14:49:51 -------- d-----w- C:\Users\owner\AppData\Local\{82413CF1-DB56-4429-A7CE-471F5AA64FF8}
2011-07-21 02:31:10 -------- d-----w- C:\Users\owner\AppData\Local\{4934C2A2-E85A-4166-B7D5-9C73A0F30FAA}
2011-07-20 14:30:33 -------- d-----w- C:\Users\owner\AppData\Local\{26EF607C-A47B-4DB6-A408-39D10780D3AA}
2011-07-19 18:45:13 -------- d-----w- C:\Users\owner\AppData\Local\{072DF2F9-7966-40FB-AB83-A1F5F0E845FA}
2011-07-18 17:41:22 -------- d-----w- C:\Users\owner\AppData\Local\{12ED18A5-C6C4-4F36-A810-A87E270B08CF}
2011-07-17 19:40:34 -------- d-----w- C:\Users\owner\AppData\Local\{F89BBBC1-89BD-42B0-B94C-4203A359B529}
2011-07-16 16:36:01 -------- d-----w- C:\Users\owner\AppData\Local\{A0F18ACD-AB38-401F-A138-8D0C32EE6533}
2011-07-15 21:18:10 -------- d-----w- C:\Users\owner\AppData\Local\{4807E4A9-1E37-42E8-BE66-C3A092EB77CB}
2011-07-14 21:50:27 -------- d-----w- C:\Users\owner\AppData\Local\{A8D0B35E-C23F-46E1-B385-76157C234676}
2011-07-14 01:09:53 362496 ----a-w- C:\Windows\System32\wow64win.dll
2011-07-14 01:09:53 338944 ----a-w- C:\Windows\System32\conhost.exe
2011-07-14 01:09:53 243200 ----a-w- C:\Windows\System32\wow64.dll
2011-07-14 01:09:53 214528 ----a-w- C:\Windows\System32\winsrv.dll
2011-07-14 01:09:52 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2011-07-14 01:09:52 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2011-07-14 01:09:52 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2011-07-14 01:09:52 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2011-07-14 01:09:52 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2011-07-14 01:09:52 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2011-07-14 01:09:51 2048 ----a-w- C:\Windows\SysWow64\user.exe
2011-07-14 01:03:18 -------- d-----w- C:\Users\owner\AppData\Local\{E958EDA6-DDFF-4CC0-89D8-422346981328}
2011-07-12 20:48:39 -------- d-----w- C:\Users\owner\AppData\Local\{7671553B-47A0-41F8-B213-6D8710FB5B82}
2011-07-11 20:01:47 -------- d-----w- C:\Users\owner\AppData\Local\{D2D0EBC3-3189-4292-B15B-CD51AEC5E20C}
2011-07-10 20:24:31 -------- d-----w- C:\Users\owner\AppData\Local\{1B402359-B943-4E36-98EF-6F18095A66CC}
2011-07-09 21:29:31 -------- d-----w- C:\Users\owner\AppData\Local\{84E725DE-79CC-42F8-8C34-8B220CF345AF}
.
==================== Find3M ====================
.
2011-08-06 23:50:16 175616 ----a-w- C:\Windows\System32\msclmd.dll
2011-08-06 23:50:16 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2011-07-08 21:45:12 386168 ----a-r- C:\Windows\System32\drivers\N360x64\0501000.01D\symnets.sys
2011-07-03 05:01:52 952 --sha-w- C:\ProgramData\KGyGaAvL.sys
2011-06-22 20:14:08 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-11 03:07:25 3137536 ----a-w- C:\Windows\System32\win32k.sys
2011-06-03 06:56:38 421888 ----a-w- C:\Windows\System32\KernelBase.dll
2011-06-03 05:57:52 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2011-06-03 05:56:11 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2011-06-03 03:48:32 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2011-06-03 03:48:31 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2011-06-03 03:48:31 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2011-06-03 03:48:31 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2011-06-02 17:53:02 94208 ----a-w- C:\Windows\SysWow64\dpl100.dll
2011-05-25 23:22:36 174200 ----a-w- C:\Windows\System32\drivers\SYMEVENT64x86.SYS
2011-05-24 11:42:55 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
2011-05-24 10:40:05 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
2011-05-24 10:40:05 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
2011-05-24 10:39:38 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2011-05-24 10:37:54 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
.
============= FINISH: 22:45:37.39 ===============