I really can describe my problem other than I think my computer is infected. It loads really slow, it runs really slow, it hangs while running programs. I have defraged my computer, cleaned out temp files and ran antivirus and malware programs with no luck.
I tried the best I could to follow the 8 step removal instructions but had issues even getting that done.
TFC would not run. It hung up.
Malwarebytes would not update latest virus defintions. I get the following error when trying to update - PROGRAM_ERROR_UPDATING_(404, 0, HTTPStatusCode). I ran the program with definitions 31 days old. I have attached the log
GMER would not run. It hung up. I tried to run in safe mode and it hung there also.
DDS ran fine. DDS is attached here. Attach.txt is in second post as this post is too long.
Thanks for the help.
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Database version: 5363
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
1/21/2011 12:37:13 PM
mbam-log-2011-01-21 (12-37-13).txt
Scan type: Quick scan
Objects scanned: 210304
Time elapsed: 16 minute(s), 53 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FIREWALLDISABLENOTIFY (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
DDS (Ver_10-12-12.02) - NTFSx86
Run by gary at 15:37:57.62 on Fri 01/21/2011
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3582.2981 [GMT -8:00]
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Broadcom\ASFIPMon\AsfIpMon.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\StacSV.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\NETGEAR\NETGEAR Storage Central Manager Utility\Z-SANService.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Apoint\ApMsgFwd.exe
C:\Program Files\Apoint\HidFind.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\TEMP\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://seattletimes.nwsource.com/html/home/index.html
uInternet Connection Wizard,ShellNext = iexplore
BHO: AutorunsDisabled - No File
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~4\office14\URLREDIR.DLL
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [RegistryBooster] "c:\program files\uniblue\registrybooster\launcher.exe" delay 20000
mRun: [Apoint] c:\program files\apoint\Apoint.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NVHotkey] rundll32.exe nvHotkey.dll,Start
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [IntelZeroConfig] "c:\program files\intel\wireless\bin\ZCfgSvc.exe"
mRun: [IntelWireless] "c:\program files\intel\wireless\bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
mRun: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 8.0\acrobat\Acrotray.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
uPolicies-explorer: SpecifyDefaultButtons = 0 (0x0)
mPolicies-explorer: NoWelcomeScreen = 1 (0x1)
IE: Append to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert link target to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert link target to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert selected links to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert selected links to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Convert selection to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert selection to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~4\office14\ONBttnIE.dll/105
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office 2007\office14\ONBttnIE.dll
IE: {3437D640-C91A-458f-89F5-B9095EA4C28B} - {04F93351-81D2-4484-9982-0D55DEFFFAE6}
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office 2007\office14\ONBttnIELinkedNotes.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office12\REFIEBAR.DLL
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/E/3/9/E39C664F-A8E3-4F69-A109-1AE9849204EE/OGAControl.cab
DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} - hxxp://www.ipix.com/download/ipixx.cab
DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} - hxxp://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
DPF: {31435657-9980-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab
DPF: {4BECECDE-E494-4F69-A3DE-DA0B77726307} - hxxps://www.lanepowell.com/Extranet/includes/iManFile.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} - hxxp://office.microsoft.com/officeupdate/content/opuc4.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - hxxp://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} - hxxps://wadismonthly.webex.com/client/T27L10NSP11EP13-wadis/webex/ieatgpc.cab
DPF: {EAC139A9-D22D-4C29-8D1C-252BE63750F9} - hxxp://www.cooliris.com/shared/plinstll.cab
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\logitech\desktop messenger\8876480\program\GAPlugProtocol-8876480.dll
Notify: AutorunsDisabled - c:\program files\superantispyware\SASWINLO.DLL
Notify: gemsafe - c:\program files\gemplus\gemsafe libraries\bin\WLEventNotify.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
============= SERVICES / DRIVERS ===============
R0 ZetSFD;ZetSFD;c:\windows\system32\drivers\ZetSFD.sys [2009-5-26 12800]
R1 Ext2fs;Ext2fs;c:\windows\system32\drivers\ext2fs.sys [2009-2-13 181120]
R1 IfsMount;IfsMount;c:\windows\system32\drivers\ifsmount.sys [2009-2-13 51072]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R2 ASFIPmon;Broadcom ASF IP and SMBIOS Mailbox Monitor;c:\program files\broadcom\asfipmon\AsfIpMon.exe [2006-12-19 79432]
R2 SFSZ;DataPlow SFS for Zetera Storage Devices;c:\windows\system32\drivers\sfsz.sys [2009-5-26 345984]
R2 Wave UCSPlus;Wave UCSPlus;c:\windows\system32\dllhost.exe [2004-8-11 5120]
R2 Z-SANService;Z-SAN Service;c:\program files\netgear\netgear storage central manager utility\Z-SANService.exe [2009-5-26 376891]
R3 DXEC01;DXEC01;c:\windows\system32\drivers\dxec01.sys [2006-11-2 97536]
R3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
R3 ZetBus;Zetera Virtual Bus;c:\windows\system32\drivers\ZetBus.sys [2009-5-26 15488]
R3 ZetMPD;ZetMPD;c:\windows\system32\drivers\ZetMPD.sys [2009-5-26 5120]
S0 Lbd;Lbd;c:\windows\system32\drivers\lbd.sys --> c:\windows\system32\drivers\Lbd.sys [?]
=============== Created Last 30 ================
2011-01-21 18:18:35 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Microsoft Help
2011-01-21 17:40:46 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Citrix
2011-01-21 17:40:45 110456 ----a-w- c:\documents and settings\temp\g2ax_customer_downloadhelper_win32_x86.exe
2011-01-21 16:50:47 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Zimbra
2011-01-21 16:44:58 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-01-21 16:44:53 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-01-21 16:44:53 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-01-21 16:31:39 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Lookout Software
2011-01-21 16:21:29 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Adobe
2011-01-21 16:12:05 483401 -c--a-w- c:\documents and settings\temp\gotomypc.exe
2011-01-21 16:12:04 563712 -c--a-w- c:\documents and settings\temp\gotomypc_370.exe
2011-01-20 23:55:57 -------- d-----w- c:\documents and settings\all users\Microsoft
2011-01-20 23:41:54 -------- d-----w- c:\program files\Microsoft Analysis Services
2011-01-20 17:21:36 -------- d-----w- c:\program files\Zimbra
2011-01-19 20:33:53 -------- d-----w- c:\program files\Cbeyond Secure Desktop
2011-01-19 20:32:31 -------- d-----w- c:\docume~1\alluse~1\applic~1\fssg
2011-01-19 20:31:29 -------- d-----w- c:\docume~1\alluse~1\applic~1\f-secure
2011-01-17 20:15:39 -------- d-----w- c:\program files\common files\HP
2011-01-17 20:15:23 -------- d-----w- c:\program files\common files\Hewlett-Packard
2011-01-17 20:13:35 278016 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\hpzpp5mu.dll
2011-01-17 20:13:33 118272 ----a-w- c:\windows\system32\hpz3l5mu.dll
2011-01-17 20:12:08 729088 ----a-w- c:\windows\system32\hpowiax7.dll
2011-01-17 20:12:08 581632 ----a-w- c:\windows\system32\hpotscl6.dll
2011-01-17 20:12:08 303104 ----a-w- c:\windows\system32\hpovst15.dll
2011-01-17 20:11:54 -------- d-----w- c:\program files\HP
2011-01-13 23:32:43 116224 ----a-w- c:\windows\system32\dllcache\xrxwiadr.dll
2011-01-13 23:32:40 23040 ----a-w- c:\windows\system32\dllcache\xrxwbtmp.dll
2011-01-13 23:32:40 18944 ----a-w- c:\windows\system32\dllcache\xrxscnui.dll
2011-01-13 23:32:37 27648 ----a-w- c:\windows\system32\dllcache\xrxftplt.exe
2011-01-13 23:32:32 4608 ----a-w- c:\windows\system32\dllcache\xrxflnch.exe
2011-01-13 23:28:39 99865 ----a-w- c:\windows\system32\dllcache\xlog.exe
2011-01-13 23:28:35 16970 ----a-w- c:\windows\system32\dllcache\xem336n5.sys
2011-01-13 23:28:34 19455 ----a-w- c:\windows\system32\dllcache\wvchntxx.sys
2011-01-13 23:28:09 19200 ----a-w- c:\windows\system32\dllcache\wstcodec.sys
2011-01-13 23:28:08 12063 ----a-w- c:\windows\system32\dllcache\wsiintxx.sys
2011-01-13 23:28:06 8192 ----a-w- c:\windows\system32\dllcache\wshirda.dll
2011-01-13 23:25:51 154624 ----a-w- c:\windows\system32\dllcache\wlluc48.sys
2011-01-13 23:25:48 34890 ----a-w- c:\windows\system32\dllcache\wlandrv2.sys
2011-01-13 23:25:16 771581 ----a-w- c:\windows\system32\dllcache\winacisa.sys
2011-01-13 23:25:06 53760 ----a-w- c:\windows\system32\dllcache\wiamsmud.dll
2011-01-13 23:25:03 87040 ----a-w- c:\windows\system32\dllcache\wiafbdrv.dll
2011-01-13 23:23:58 604253 ----a-w- c:\windows\system32\dllcache\vmodem.sys
2011-01-13 23:23:54 249402 ----a-w- c:\windows\system32\dllcache\vinwm.sys
2011-01-13 23:23:49 24576 ----a-w- c:\windows\system32\dllcache\viairda.sys
2011-01-13 23:23:44 53760 ----a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2011-01-13 23:23:35 687999 ----a-w- c:\windows\system32\dllcache\usrwdxjs.sys
2011-01-13 23:23:28 765884 ----a-w- c:\windows\system32\dllcache\usrti.sys
2011-01-13 23:23:22 113762 ----a-w- c:\windows\system32\dllcache\usrpda.sys
2011-01-13 23:23:19 7556 ----a-w- c:\windows\system32\dllcache\usroslba.sys
2011-01-13 23:23:07 224802 ----a-w- c:\windows\system32\dllcache\usr1807a.sys
2011-01-13 23:23:04 794399 ----a-w- c:\windows\system32\dllcache\usr1806v.sys
2011-01-13 23:23:01 793598 ----a-w- c:\windows\system32\dllcache\usr1806.sys
2011-01-13 23:21:48 166784 ----a-w- c:\windows\system32\dllcache\tridxpm.sys
2011-01-13 23:21:45 525568 ----a-w- c:\windows\system32\dllcache\tridxp.dll
2011-01-13 23:21:42 159232 ----a-w- c:\windows\system32\dllcache\tridkbm.sys
2011-01-13 23:21:39 440576 ----a-w- c:\windows\system32\dllcache\tridkb.dll
2011-01-13 23:21:36 222336 ----a-w- c:\windows\system32\dllcache\trid3dm.sys
2011-01-13 23:21:33 315520 ----a-w- c:\windows\system32\dllcache\trid3d.dll
2011-01-13 23:21:25 34375 ----a-w- c:\windows\system32\dllcache\tpro4.sys
2011-01-13 23:21:22 82944 ----a-w- c:\windows\system32\dllcache\tp4mon.exe
2011-01-13 23:21:22 42496 ----a-w- c:\windows\system32\dllcache\tp4res.dll
2011-01-13 23:21:19 31744 ----a-w- c:\windows\system32\dllcache\tp4.dll
2011-01-13 23:20:11 230912 ----a-w- c:\windows\system32\dllcache\tosdvd03.sys
2011-01-13 23:20:09 241664 ----a-w- c:\windows\system32\dllcache\tosdvd02.sys
2011-01-13 23:20:04 28232 ----a-w- c:\windows\system32\dllcache\tos4mo.sys
2011-01-13 23:18:44 94293 ----a-w- c:\windows\system32\dllcache\sxports.dll
2011-01-13 23:18:41 103936 ----a-w- c:\windows\system32\dllcache\sx.sys
2011-01-13 23:18:39 3968 ----a-w- c:\windows\system32\dllcache\swusbflt.sys
2011-01-13 23:18:35 10240 ----a-w- c:\windows\system32\dllcache\swpidflt.dll
2011-01-13 23:18:32 10240 ----a-w- c:\windows\system32\dllcache\swpdflt2.dll
2011-01-13 23:18:30 53760 ----a-w- c:\windows\system32\dllcache\sw_wheel.dll
2011-01-13 23:18:27 41472 ----a-w- c:\windows\system32\dllcache\sw_effct.dll
2011-01-13 23:18:24 15232 ----a-w- c:\windows\system32\dllcache\streamip.sys
2011-01-13 23:18:20 155648 ----a-w- c:\windows\system32\dllcache\stlnprop.dll
2011-01-13 23:18:17 53248 ----a-w- c:\windows\system32\dllcache\stlncoin.dll
2011-01-13 23:18:14 285760 ----a-w- c:\windows\system32\dllcache\stlnata.sys
2011-01-13 23:18:08 16896 ----a-w- c:\windows\system32\dllcache\stcusb.sys
2011-01-13 23:18:07 16896 ----a-w- c:\windows\system32\dllcache\status.dll
2011-01-13 23:17:47 48736 ----a-w- c:\windows\system32\dllcache\srwlnd5.sys
2011-01-13 23:17:43 99328 ----a-w- c:\windows\system32\dllcache\srusd.dll
2011-01-13 23:17:43 101376 ----a-w- c:\windows\system32\dllcache\srusbusd.dll
2011-01-13 23:17:23 24660 ----a-w- c:\windows\system32\dllcache\spxupchk.dll
2011-01-13 23:17:11 61824 ----a-w- c:\windows\system32\dllcache\speed.sys
2011-01-13 23:17:08 106584 ----a-w- c:\windows\system32\dllcache\spdports.dll
2011-01-13 23:17:02 7552 ----a-w- c:\windows\system32\dllcache\sonypvu1.sys
2011-01-13 23:15:59 28160 ----a-w- c:\windows\system32\dllcache\sm91w.dll
2011-01-13 23:14:29 161568 ----a-w- c:\windows\system32\dllcache\sgsmusb.sys
2011-01-13 23:14:27 18400 ----a-w- c:\windows\system32\dllcache\sgsmld.sys
2011-01-13 23:14:25 98080 ----a-w- c:\windows\system32\dllcache\sgiulnt5.sys
2011-01-13 23:14:22 386560 ----a-w- c:\windows\system32\dllcache\sgiul50.dll
2011-01-13 23:14:19 36480 ----a-w- c:\windows\system32\dllcache\sfmanm.sys
2011-01-13 23:14:06 6784 ----a-w- c:\windows\system32\dllcache\serscan.sys
2011-01-13 23:14:03 17664 ----a-w- c:\windows\system32\dllcache\sermouse.sys
2011-01-13 23:14:02 26112 ----a-w- c:\windows\system32\dllcache\EXCH_seos.dll
2011-01-13 23:13:57 6912 ----a-w- c:\windows\system32\dllcache\seaddsmc.sys
2011-01-13 23:13:53 11520 ----a-w- c:\windows\system32\dllcache\scsiscan.sys
2011-01-13 23:13:50 57856 ----a-w- c:\windows\system32\dllcache\EXCH_scripto.dll
2011-01-13 23:13:50 11648 ----a-w- c:\windows\system32\dllcache\scsiprnt.sys
2011-01-13 23:13:45 17280 ----a-w- c:\windows\system32\dllcache\scr111.sys
2011-01-13 23:13:42 16640 ----a-w- c:\windows\system32\dllcache\scmstcs.sys
2011-01-13 23:13:35 23936 ----a-w- c:\windows\system32\dllcache\sccmusbm.sys
2011-01-13 23:13:33 23936 ----a-w- c:\windows\system32\dllcache\sccmn50m.sys
2011-01-13 23:13:28 43904 ----a-w- c:\windows\system32\dllcache\sbp2port.sys
2011-01-13 23:13:25 495616 ----a-w- c:\windows\system32\dllcache\sblfx.dll
2011-01-13 23:13:03 75392 ----a-w- c:\windows\system32\dllcache\s3savmxm.sys
2011-01-13 23:13:01 245632 ----a-w- c:\windows\system32\dllcache\s3savmx.dll
2011-01-13 23:11:50 3840 ----a-w- c:\windows\system32\dllcache\rpfun.sys
2011-01-13 23:11:43 79104 ----a-w- c:\windows\system32\dllcache\rocket.sys
2011-01-13 23:11:38 37563 ----a-w- c:\windows\system32\dllcache\rlnet5.sys
2011-01-13 23:11:32 86097 ----a-w- c:\windows\system32\dllcache\reslog32.dll
2011-01-13 23:11:25 23040 ----a-w- c:\windows\system32\dllcache\EXCH_regtrace.exe
2011-01-13 23:11:25 14848 ----a-w- c:\windows\system32\dllcache\register.exe
2011-01-13 23:11:07 19584 ----a-w- c:\windows\system32\dllcache\rasirda.sys
2011-01-13 23:11:02 714762 ----a-w- c:\windows\system32\dllcache\r2mdmkxx.sys
2011-01-13 23:09:55 17664 ----a-w- c:\windows\system32\dllcache\ppa3.sys
2011-01-13 23:08:59 30495 ----a-w- c:\windows\system32\dllcache\pc100nds.sys
2011-01-13 23:07:02 198144 ----a-w- c:\windows\system32\dllcache\nv3.sys
2011-01-13 23:07:00 123776 ----a-w- c:\windows\system32\dllcache\nv3.dll
2011-01-13 23:06:32 51552 ----a-w- c:\windows\system32\dllcache\ntgrip.sys
2011-01-13 23:06:32 38912 ----a-w- c:\windows\system32\dllcache\EXCH_ntfsdrv.dll
2011-01-13 23:06:24 9344 ----a-w- c:\windows\system32\dllcache\ntapm.sys
2011-01-13 23:06:22 7552 ----a-w- c:\windows\system32\dllcache\nsmmc.sys
2011-01-13 23:06:19 28672 ----a-w- c:\windows\system32\dllcache\nscirda.sys
2011-01-13 23:06:03 87040 ----a-w- c:\windows\system32\dllcache\nm6wdm.sys
2011-01-13 23:06:01 126080 ----a-w- c:\windows\system32\dllcache\nm5a2wdm.sys
2011-01-13 23:04:58 35392 ----a-w- c:\windows\system32\dllcache\n9i128.dll
2011-01-13 23:04:55 128000 ----a-w- c:\windows\system32\dllcache\n100325.sys
2011-01-13 23:04:53 52255 ----a-w- c:\windows\system32\dllcache\n1000nt5.sys
2011-01-13 23:04:50 75520 ----a-w- c:\windows\system32\dllcache\mxport.sys
2011-01-13 23:04:48 7168 ----a-w- c:\windows\system32\dllcache\mxport.dll
2011-01-13 23:04:46 19968 ----a-w- c:\windows\system32\dllcache\mxnic.sys
2011-01-13 23:04:44 19968 ----a-w- c:\windows\system32\dllcache\mxicfg.dll
2011-01-13 23:04:42 21888 ----a-w- c:\windows\system32\dllcache\mxcard.sys
2011-01-13 23:04:41 229439 ----a-w- c:\windows\system32\dllcache\multibox.dll
2011-01-13 23:04:37 103296 ----a-w- c:\windows\system32\dllcache\mtxvideo.sys
2011-01-13 23:03:35 5504 ----a-w- c:\windows\system32\dllcache\mstee.sys
2011-01-13 23:03:35 49024 ----a-w- c:\windows\system32\dllcache\mstape.sys
2011-01-13 23:03:17 12416 ----a-w- c:\windows\system32\dllcache\msriffwv.sys
2011-01-13 23:02:51 2944 ----a-w- c:\windows\system32\dllcache\msmpu401.sys
2011-01-13 23:02:45 22016 ----a-w- c:\windows\system32\dllcache\msircomm.sys
2011-01-13 23:02:43 98304 ----a-w- c:\windows\system32\dllcache\msir3jp.dll
2011-01-13 23:01:55 35200 ----a-w- c:\windows\system32\dllcache\msgame.sys
2011-01-13 23:01:52 6016 ----a-w- c:\windows\system32\dllcache\msfsio.sys
2011-01-13 23:01:51 51200 ----a-w- c:\windows\system32\dllcache\msdv.sys
2011-01-13 23:00:49 15232 ----a-w- c:\windows\system32\dllcache\mpe.sys
2011-01-13 23:00:33 16128 ----a-w- c:\windows\system32\dllcache\modemcsa.sys
2011-01-13 23:00:06 6528 ----a-w- c:\windows\system32\dllcache\miniqic.sys
2011-01-13 22:58:58 4992 ----a-w- c:\windows\system32\dllcache\loop.sys
2011-01-13 22:57:51 6144 ----a-w- c:\windows\system32\dllcache\kbd106.dll
2011-01-13 22:56:59 45632 ----a-w- c:\windows\system32\dllcache\ip5515.sys
2011-01-13 22:56:57 90200 ----a-w- c:\windows\system32\dllcache\io8ports.dll
2011-01-13 22:56:55 38784 ----a-w- c:\windows\system32\dllcache\io8.sys
2011-01-13 22:56:48 13056 ----a-w- c:\windows\system32\dllcache\inport.sys
2011-01-13 22:56:43 8704 ----a-w- c:\windows\system32\dllcache\infoctrs.dll
2011-01-13 22:56:28 471102 ----a-w- c:\windows\system32\dllcache\imskdic.dll
2011-01-13 22:56:26 59904 ----a-w- c:\windows\system32\dllcache\imkrinst.exe
2011-01-13 22:56:20 45109 ----a-w- c:\windows\system32\dllcache\imjpuex.exe
2011-01-13 22:56:12 57398 ----a-w- c:\windows\system32\dllcache\imjpdadm.exe
2011-01-13 22:56:04 311359 ----a-w- c:\windows\system32\dllcache\imepadsv.exe
2011-01-13 22:56:03 44032 ----a-w- c:\windows\system32\dllcache\imekrmig.exe
2011-01-13 22:56:03 102463 ----a-w- c:\windows\system32\dllcache\imepadsm.dll
2011-01-13 22:54:47 702845 ----a-w- c:\windows\system32\dllcache\i81xdnt5.dll
2011-01-13 22:54:47 161020 ----a-w- c:\windows\system32\dllcache\i81xnt5.sys
2011-01-13 22:54:45 58592 ----a-w- c:\windows\system32\dllcache\i740nt5.sys
2011-01-13 22:54:43 353184 ----a-w- c:\windows\system32\dllcache\i740dnt5.dll
2011-01-13 22:54:25 10129408 ----a-w- c:\windows\system32\dllcache\hwxkor.dll
2011-01-13 22:52:59 93696 ----a-w- c:\windows\system32\dllcache\hpgt42.dll
2011-01-13 22:51:37 59136 ----a-w- c:\windows\system32\dllcache\gckernel.sys
2011-01-13 22:51:35 10624 ----a-w- c:\windows\system32\dllcache\gameenum.sys
2011-01-13 22:51:32 322432 ----a-w- c:\windows\system32\dllcache\g400m.sys
2011-01-13 22:51:30 1733120 ----a-w- c:\windows\system32\dllcache\g400d.dll
2011-01-13 22:51:29 320384 ----a-w- c:\windows\system32\dllcache\g200m.sys
2011-01-13 22:51:27 470144 ----a-w- c:\windows\system32\dllcache\g200d.dll
2011-01-13 22:51:26 454912 ----a-w- c:\windows\system32\dllcache\fxusbase.sys
2011-01-13 22:51:06 92160 ----a-w- c:\windows\system32\dllcache\fuusd.dll
2011-01-13 22:51:05 455296 ----a-w- c:\windows\system32\dllcache\fusbbase.sys
2011-01-13 22:51:03 455680 ----a-w- c:\windows\system32\dllcache\fus2base.sys
2011-01-13 22:51:00 7680 ----a-w- c:\windows\system32\dllcache\ftpctrs2.dll
2011-01-13 22:49:57 45056 ----a-w- c:\windows\system32\dllcache\esunid.dll
2011-01-13 22:48:59 69194 ----a-w- c:\windows\system32\dllcache\el656cd5.sys
2011-01-13 22:48:58 26141 ----a-w- c:\windows\system32\dllcache\el589nd5.sys
2011-01-13 22:48:57 69692 ----a-w- c:\windows\system32\dllcache\el575nd5.sys
2011-01-13 22:48:56 24653 ----a-w- c:\windows\system32\dllcache\el574nd4.sys
2011-01-13 22:48:55 55999 ----a-w- c:\windows\system32\dllcache\el556nd5.sys
2011-01-13 22:48:55 44103 ----a-w- c:\windows\system32\dllcache\el515.sys
2011-01-13 22:48:53 514587 ----a-w- c:\windows\system32\dllcache\edb500.dll
2011-01-13 22:48:46 19594 ----a-w- c:\windows\system32\dllcache\e100isa4.sys
2011-01-13 22:48:45 50719 ----a-w- c:\windows\system32\dllcache\e1000nt5.sys
2011-01-13 22:47:56 334208 ----a-w- c:\windows\system32\dllcache\ds1wdm.sys
2011-01-13 22:47:32 28062 ----a-w- c:\windows\system32\dllcache\dp83820.sys
2011-01-13 22:47:31 23808 ----a-w- c:\windows\system32\dllcache\dot4usb.sys
2011-01-13 22:47:30 8704 ----a-w- c:\windows\system32\dllcache\dot4scan.sys
2011-01-13 22:47:29 206976 ----a-w- c:\windows\system32\dllcache\dot4.sys
2011-01-13 22:47:29 12928 ----a-w- c:\windows\system32\dllcache\dot4prt.sys
2011-01-13 22:45:59 7424 ----a-w- c:\windows\system32\dllcache\ddsmc.sys
2011-01-13 22:44:59 3072 ----a-w- c:\windows\system32\dllcache\cwbmidi.sys
2011-01-13 22:43:45 20736 ----a-w- c:\windows\system32\dllcache\cmbp0wdm.sys
2011-01-13 22:42:58 49182 ----a-w- c:\windows\system32\dllcache\cem56n5.sys
2011-01-13 22:41:57 171264 ----a-w- c:\windows\system32\dllcache\camdrv30.sys
2011-01-13 22:40:59 15360 ----a-w- c:\windows\system32\dllcache\brmfbidi.dll
2011-01-13 22:39:52 281600 ----a-w- c:\windows\system32\dllcache\atimtai.sys
2011-01-13 22:38:59 36224 ----a-w- c:\windows\system32\dllcache\an983.sys
2011-01-13 22:37:59 462848 ----a-w- c:\windows\system32\dllcache\a3dapi.dll
2011-01-13 22:37:58 98304 ----a-w- c:\windows\system32\dllcache\a3d.dll
2011-01-13 22:37:58 38400 ----a-w- c:\windows\system32\dllcache\8514a.dll
2011-01-13 22:37:56 48128 ----a-w- c:\windows\system32\dllcache\61883.sys
2011-01-13 22:37:47 12288 ----a-w- c:\windows\system32\dllcache\4mmdat.sys
2011-01-13 22:37:46 689216 ----a-w- c:\windows\system32\dllcache\3dfxvs.dll
2011-01-13 22:37:46 148352 ----a-w- c:\windows\system32\dllcache\3dfxvsm.sys
2011-01-13 22:37:45 762780 ----a-w- c:\windows\system32\dllcache\3cwmcru.sys
2011-01-13 22:37:45 11264 ----a-w- c:\windows\system32\dllcache\1394vdbg.sys
2011-01-13 22:37:38 25992 ----a-w- c:\windows\system32\pgdfgsvc.exe
2011-01-13 22:36:03 7168 ----a-w- c:\windows\system32\dllcache\wamregps.dll
2011-01-13 22:34:59 66048 ----a-w- c:\windows\system32\dllcache\s3legacy.dll
2011-01-13 22:33:36 7680 ----a-w- c:\windows\system32\dllcache\inetmgr.exe
2011-01-13 22:33:36 19968 ----a-w- c:\windows\system32\dllcache\inetsloc.dll
2011-01-13 22:33:33 169984 ----a-w- c:\windows\system32\dllcache\iisui.dll
2011-01-13 22:33:31 5632 ----a-w- c:\windows\system32\dllcache\iisrstap.dll
2011-01-13 22:33:31 14336 ----a-w- c:\windows\system32\dllcache\iisreset.exe
2011-01-13 22:33:29 6144 ----a-w- c:\windows\system32\dllcache\ftpsapi2.dll
2011-01-13 22:08:34 -------- d-----w- c:\program files\IObit
2011-01-02 21:41:02 475648 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.scr
2011-01-02 21:41:02 1061888 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.exe
2011-01-02 21:41:01 -------- d-----w- c:\program files\MyDefrag v4.3.1
2010-12-29 18:11:52 -------- d-----w- c:\program files\ESET
2010-12-24 16:19:14 4224 ----a-w- c:\windows\system32\drivers\beep.sys
2010-12-24 16:19:14 4224 ----a-w- c:\windows\system32\dllcache\beep.sys
2010-12-24 00:32:28 -------- d-sha-r- C:\cmdcons
2010-12-24 00:25:43 98816 ----a-w- c:\windows\sed.exe
2010-12-24 00:25:43 89088 ----a-w- c:\windows\MBR.exe
2010-12-24 00:25:43 256512 ----a-w- c:\windows\PEV.exe
2010-12-24 00:25:43 161792 ----a-w- c:\windows\SWREG.exe
==================== Find3M ====================
2010-11-18 18:12:44 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-09 14:52:35 249856 ----a-w- c:\windows\system32\odbc32.dll
2010-11-06 00:26:58 916480 ----a-w- c:\windows\system32\wininet.dll
2010-11-06 00:26:58 43520 ----a-w- c:\windows\system32\licmgr10.dll
2010-11-06 00:26:58 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-11-03 12:25:54 385024 ----a-w- c:\windows\system32\html.iec
2010-10-28 13:13:22 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-10-26 13:25:00 1853312 ----a-w- c:\windows\system32\win32k.sys
============= FINISH: 15:39:43.53 ===============
I tried the best I could to follow the 8 step removal instructions but had issues even getting that done.
TFC would not run. It hung up.
Malwarebytes would not update latest virus defintions. I get the following error when trying to update - PROGRAM_ERROR_UPDATING_(404, 0, HTTPStatusCode). I ran the program with definitions 31 days old. I have attached the log
GMER would not run. It hung up. I tried to run in safe mode and it hung there also.
DDS ran fine. DDS is attached here. Attach.txt is in second post as this post is too long.
Thanks for the help.
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.org
Database version: 5363
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
1/21/2011 12:37:13 PM
mbam-log-2011-01-21 (12-37-13).txt
Scan type: Quick scan
Objects scanned: 210304
Time elapsed: 16 minute(s), 53 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 1
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FIREWALLDISABLENOTIFY (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
DDS (Ver_10-12-12.02) - NTFSx86
Run by gary at 15:37:57.62 on Fri 01/21/2011
Internet Explorer: 8.0.6001.18702
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.3582.2981 [GMT -8:00]
============== Running Processes ===============
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
svchost.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Broadcom\ASFIPMon\AsfIpMon.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe -k HPZ12
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\StacSV.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\Wave Systems Corp\Trusted Drive Manager\TdmService.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\NETGEAR\NETGEAR Storage Central Manager Utility\Z-SANService.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Apoint\ApMsgFwd.exe
C:\Program Files\Apoint\HidFind.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\TEMP\Desktop\dds.scr
============== Pseudo HJT Report ===============
uStart Page = hxxp://seattletimes.nwsource.com/html/home/index.html
uInternet Connection Wizard,ShellNext = iexplore
BHO: AutorunsDisabled - No File
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - c:\progra~1\micros~4\office14\URLREDIR.DLL
TB: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [RegistryBooster] "c:\program files\uniblue\registrybooster\launcher.exe" delay 20000
mRun: [Apoint] c:\program files\apoint\Apoint.exe
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NVHotkey] rundll32.exe nvHotkey.dll,Start
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [IntelZeroConfig] "c:\program files\intel\wireless\bin\ZCfgSvc.exe"
mRun: [IntelWireless] "c:\program files\intel\wireless\bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
mRun: [Synchronization Manager] %SystemRoot%\system32\mobsync.exe /logon
mRun: [Acrobat Assistant 8.0] "c:\program files\adobe\acrobat 8.0\acrobat\Acrotray.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
uPolicies-explorer: SpecifyDefaultButtons = 0 (0x0)
mPolicies-explorer: NoWelcomeScreen = 1 (0x1)
IE: Append to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert link target to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert link target to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert selected links to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Convert selected links to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Convert selection to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: Convert selection to existing PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIEAppend.html
IE: Convert to Adobe PDF - c:\program files\adobe\acrobat 8.0\acrobat\AcroIEFavClient.dll/AcroIECapture.html
IE: E&xport to Microsoft Excel - c:\progra~1\micros~4\office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\micros~4\office14\ONBttnIE.dll/105
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office 2007\office14\ONBttnIE.dll
IE: {3437D640-C91A-458f-89F5-B9095EA4C28B} - {04F93351-81D2-4484-9982-0D55DEFFFAE6}
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office 2007\office14\ONBttnIELinkedNotes.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office12\REFIEBAR.DLL
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/E/3/9/E39C664F-A8E3-4F69-A109-1AE9849204EE/OGAControl.cab
DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} - hxxp://www.ipix.com/download/ipixx.cab
DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} - hxxp://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
DPF: {31435657-9980-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab
DPF: {4BECECDE-E494-4F69-A3DE-DA0B77726307} - hxxps://www.lanepowell.com/Extranet/includes/iManFile.cab
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} - hxxp://office.microsoft.com/officeupdate/content/opuc4.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_11-windows-i586.cab
DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} - hxxp://wwwimages.adobe.com/www.adobe.com/products/acrobat/nos/gp.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} - hxxps://wadismonthly.webex.com/client/T27L10NSP11EP13-wadis/webex/ieatgpc.cab
DPF: {EAC139A9-D22D-4C29-8D1C-252BE63750F9} - hxxp://www.cooliris.com/shared/plinstll.cab
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\logitech\desktop messenger\8876480\program\GAPlugProtocol-8876480.dll
Notify: AutorunsDisabled - c:\program files\superantispyware\SASWINLO.DLL
Notify: gemsafe - c:\program files\gemplus\gemsafe libraries\bin\WLEventNotify.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
============= SERVICES / DRIVERS ===============
R0 ZetSFD;ZetSFD;c:\windows\system32\drivers\ZetSFD.sys [2009-5-26 12800]
R1 Ext2fs;Ext2fs;c:\windows\system32\drivers\ext2fs.sys [2009-2-13 181120]
R1 IfsMount;IfsMount;c:\windows\system32\drivers\ifsmount.sys [2009-2-13 51072]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-17 12872]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67656]
R2 ASFIPmon;Broadcom ASF IP and SMBIOS Mailbox Monitor;c:\program files\broadcom\asfipmon\AsfIpMon.exe [2006-12-19 79432]
R2 SFSZ;DataPlow SFS for Zetera Storage Devices;c:\windows\system32\drivers\sfsz.sys [2009-5-26 345984]
R2 Wave UCSPlus;Wave UCSPlus;c:\windows\system32\dllhost.exe [2004-8-11 5120]
R2 Z-SANService;Z-SAN Service;c:\program files\netgear\netgear storage central manager utility\Z-SANService.exe [2009-5-26 376891]
R3 DXEC01;DXEC01;c:\windows\system32\drivers\dxec01.sys [2006-11-2 97536]
R3 osppsvc;Office Software Protection Platform;c:\program files\common files\microsoft shared\officesoftwareprotectionplatform\OSPPSVC.EXE [2010-1-9 4640000]
R3 ZetBus;Zetera Virtual Bus;c:\windows\system32\drivers\ZetBus.sys [2009-5-26 15488]
R3 ZetMPD;ZetMPD;c:\windows\system32\drivers\ZetMPD.sys [2009-5-26 5120]
S0 Lbd;Lbd;c:\windows\system32\drivers\lbd.sys --> c:\windows\system32\drivers\Lbd.sys [?]
=============== Created Last 30 ================
2011-01-21 18:18:35 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Microsoft Help
2011-01-21 17:40:46 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Citrix
2011-01-21 17:40:45 110456 ----a-w- c:\documents and settings\temp\g2ax_customer_downloadhelper_win32_x86.exe
2011-01-21 16:50:47 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Zimbra
2011-01-21 16:44:58 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2011-01-21 16:44:53 20952 ----a-w- c:\windows\system32\drivers\mbam.sys
2011-01-21 16:44:53 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2011-01-21 16:31:39 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Lookout Software
2011-01-21 16:21:29 -------- d-----w- c:\docume~1\temp\locals~1\applic~1\Adobe
2011-01-21 16:12:05 483401 -c--a-w- c:\documents and settings\temp\gotomypc.exe
2011-01-21 16:12:04 563712 -c--a-w- c:\documents and settings\temp\gotomypc_370.exe
2011-01-20 23:55:57 -------- d-----w- c:\documents and settings\all users\Microsoft
2011-01-20 23:41:54 -------- d-----w- c:\program files\Microsoft Analysis Services
2011-01-20 17:21:36 -------- d-----w- c:\program files\Zimbra
2011-01-19 20:33:53 -------- d-----w- c:\program files\Cbeyond Secure Desktop
2011-01-19 20:32:31 -------- d-----w- c:\docume~1\alluse~1\applic~1\fssg
2011-01-19 20:31:29 -------- d-----w- c:\docume~1\alluse~1\applic~1\f-secure
2011-01-17 20:15:39 -------- d-----w- c:\program files\common files\HP
2011-01-17 20:15:23 -------- d-----w- c:\program files\common files\Hewlett-Packard
2011-01-17 20:13:35 278016 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\hpzpp5mu.dll
2011-01-17 20:13:33 118272 ----a-w- c:\windows\system32\hpz3l5mu.dll
2011-01-17 20:12:08 729088 ----a-w- c:\windows\system32\hpowiax7.dll
2011-01-17 20:12:08 581632 ----a-w- c:\windows\system32\hpotscl6.dll
2011-01-17 20:12:08 303104 ----a-w- c:\windows\system32\hpovst15.dll
2011-01-17 20:11:54 -------- d-----w- c:\program files\HP
2011-01-13 23:32:43 116224 ----a-w- c:\windows\system32\dllcache\xrxwiadr.dll
2011-01-13 23:32:40 23040 ----a-w- c:\windows\system32\dllcache\xrxwbtmp.dll
2011-01-13 23:32:40 18944 ----a-w- c:\windows\system32\dllcache\xrxscnui.dll
2011-01-13 23:32:37 27648 ----a-w- c:\windows\system32\dllcache\xrxftplt.exe
2011-01-13 23:32:32 4608 ----a-w- c:\windows\system32\dllcache\xrxflnch.exe
2011-01-13 23:28:39 99865 ----a-w- c:\windows\system32\dllcache\xlog.exe
2011-01-13 23:28:35 16970 ----a-w- c:\windows\system32\dllcache\xem336n5.sys
2011-01-13 23:28:34 19455 ----a-w- c:\windows\system32\dllcache\wvchntxx.sys
2011-01-13 23:28:09 19200 ----a-w- c:\windows\system32\dllcache\wstcodec.sys
2011-01-13 23:28:08 12063 ----a-w- c:\windows\system32\dllcache\wsiintxx.sys
2011-01-13 23:28:06 8192 ----a-w- c:\windows\system32\dllcache\wshirda.dll
2011-01-13 23:25:51 154624 ----a-w- c:\windows\system32\dllcache\wlluc48.sys
2011-01-13 23:25:48 34890 ----a-w- c:\windows\system32\dllcache\wlandrv2.sys
2011-01-13 23:25:16 771581 ----a-w- c:\windows\system32\dllcache\winacisa.sys
2011-01-13 23:25:06 53760 ----a-w- c:\windows\system32\dllcache\wiamsmud.dll
2011-01-13 23:25:03 87040 ----a-w- c:\windows\system32\dllcache\wiafbdrv.dll
2011-01-13 23:23:58 604253 ----a-w- c:\windows\system32\dllcache\vmodem.sys
2011-01-13 23:23:54 249402 ----a-w- c:\windows\system32\dllcache\vinwm.sys
2011-01-13 23:23:49 24576 ----a-w- c:\windows\system32\dllcache\viairda.sys
2011-01-13 23:23:44 53760 ----a-w- c:\windows\system32\dllcache\vfwwdm32.dll
2011-01-13 23:23:35 687999 ----a-w- c:\windows\system32\dllcache\usrwdxjs.sys
2011-01-13 23:23:28 765884 ----a-w- c:\windows\system32\dllcache\usrti.sys
2011-01-13 23:23:22 113762 ----a-w- c:\windows\system32\dllcache\usrpda.sys
2011-01-13 23:23:19 7556 ----a-w- c:\windows\system32\dllcache\usroslba.sys
2011-01-13 23:23:07 224802 ----a-w- c:\windows\system32\dllcache\usr1807a.sys
2011-01-13 23:23:04 794399 ----a-w- c:\windows\system32\dllcache\usr1806v.sys
2011-01-13 23:23:01 793598 ----a-w- c:\windows\system32\dllcache\usr1806.sys
2011-01-13 23:21:48 166784 ----a-w- c:\windows\system32\dllcache\tridxpm.sys
2011-01-13 23:21:45 525568 ----a-w- c:\windows\system32\dllcache\tridxp.dll
2011-01-13 23:21:42 159232 ----a-w- c:\windows\system32\dllcache\tridkbm.sys
2011-01-13 23:21:39 440576 ----a-w- c:\windows\system32\dllcache\tridkb.dll
2011-01-13 23:21:36 222336 ----a-w- c:\windows\system32\dllcache\trid3dm.sys
2011-01-13 23:21:33 315520 ----a-w- c:\windows\system32\dllcache\trid3d.dll
2011-01-13 23:21:25 34375 ----a-w- c:\windows\system32\dllcache\tpro4.sys
2011-01-13 23:21:22 82944 ----a-w- c:\windows\system32\dllcache\tp4mon.exe
2011-01-13 23:21:22 42496 ----a-w- c:\windows\system32\dllcache\tp4res.dll
2011-01-13 23:21:19 31744 ----a-w- c:\windows\system32\dllcache\tp4.dll
2011-01-13 23:20:11 230912 ----a-w- c:\windows\system32\dllcache\tosdvd03.sys
2011-01-13 23:20:09 241664 ----a-w- c:\windows\system32\dllcache\tosdvd02.sys
2011-01-13 23:20:04 28232 ----a-w- c:\windows\system32\dllcache\tos4mo.sys
2011-01-13 23:18:44 94293 ----a-w- c:\windows\system32\dllcache\sxports.dll
2011-01-13 23:18:41 103936 ----a-w- c:\windows\system32\dllcache\sx.sys
2011-01-13 23:18:39 3968 ----a-w- c:\windows\system32\dllcache\swusbflt.sys
2011-01-13 23:18:35 10240 ----a-w- c:\windows\system32\dllcache\swpidflt.dll
2011-01-13 23:18:32 10240 ----a-w- c:\windows\system32\dllcache\swpdflt2.dll
2011-01-13 23:18:30 53760 ----a-w- c:\windows\system32\dllcache\sw_wheel.dll
2011-01-13 23:18:27 41472 ----a-w- c:\windows\system32\dllcache\sw_effct.dll
2011-01-13 23:18:24 15232 ----a-w- c:\windows\system32\dllcache\streamip.sys
2011-01-13 23:18:20 155648 ----a-w- c:\windows\system32\dllcache\stlnprop.dll
2011-01-13 23:18:17 53248 ----a-w- c:\windows\system32\dllcache\stlncoin.dll
2011-01-13 23:18:14 285760 ----a-w- c:\windows\system32\dllcache\stlnata.sys
2011-01-13 23:18:08 16896 ----a-w- c:\windows\system32\dllcache\stcusb.sys
2011-01-13 23:18:07 16896 ----a-w- c:\windows\system32\dllcache\status.dll
2011-01-13 23:17:47 48736 ----a-w- c:\windows\system32\dllcache\srwlnd5.sys
2011-01-13 23:17:43 99328 ----a-w- c:\windows\system32\dllcache\srusd.dll
2011-01-13 23:17:43 101376 ----a-w- c:\windows\system32\dllcache\srusbusd.dll
2011-01-13 23:17:23 24660 ----a-w- c:\windows\system32\dllcache\spxupchk.dll
2011-01-13 23:17:11 61824 ----a-w- c:\windows\system32\dllcache\speed.sys
2011-01-13 23:17:08 106584 ----a-w- c:\windows\system32\dllcache\spdports.dll
2011-01-13 23:17:02 7552 ----a-w- c:\windows\system32\dllcache\sonypvu1.sys
2011-01-13 23:15:59 28160 ----a-w- c:\windows\system32\dllcache\sm91w.dll
2011-01-13 23:14:29 161568 ----a-w- c:\windows\system32\dllcache\sgsmusb.sys
2011-01-13 23:14:27 18400 ----a-w- c:\windows\system32\dllcache\sgsmld.sys
2011-01-13 23:14:25 98080 ----a-w- c:\windows\system32\dllcache\sgiulnt5.sys
2011-01-13 23:14:22 386560 ----a-w- c:\windows\system32\dllcache\sgiul50.dll
2011-01-13 23:14:19 36480 ----a-w- c:\windows\system32\dllcache\sfmanm.sys
2011-01-13 23:14:06 6784 ----a-w- c:\windows\system32\dllcache\serscan.sys
2011-01-13 23:14:03 17664 ----a-w- c:\windows\system32\dllcache\sermouse.sys
2011-01-13 23:14:02 26112 ----a-w- c:\windows\system32\dllcache\EXCH_seos.dll
2011-01-13 23:13:57 6912 ----a-w- c:\windows\system32\dllcache\seaddsmc.sys
2011-01-13 23:13:53 11520 ----a-w- c:\windows\system32\dllcache\scsiscan.sys
2011-01-13 23:13:50 57856 ----a-w- c:\windows\system32\dllcache\EXCH_scripto.dll
2011-01-13 23:13:50 11648 ----a-w- c:\windows\system32\dllcache\scsiprnt.sys
2011-01-13 23:13:45 17280 ----a-w- c:\windows\system32\dllcache\scr111.sys
2011-01-13 23:13:42 16640 ----a-w- c:\windows\system32\dllcache\scmstcs.sys
2011-01-13 23:13:35 23936 ----a-w- c:\windows\system32\dllcache\sccmusbm.sys
2011-01-13 23:13:33 23936 ----a-w- c:\windows\system32\dllcache\sccmn50m.sys
2011-01-13 23:13:28 43904 ----a-w- c:\windows\system32\dllcache\sbp2port.sys
2011-01-13 23:13:25 495616 ----a-w- c:\windows\system32\dllcache\sblfx.dll
2011-01-13 23:13:03 75392 ----a-w- c:\windows\system32\dllcache\s3savmxm.sys
2011-01-13 23:13:01 245632 ----a-w- c:\windows\system32\dllcache\s3savmx.dll
2011-01-13 23:11:50 3840 ----a-w- c:\windows\system32\dllcache\rpfun.sys
2011-01-13 23:11:43 79104 ----a-w- c:\windows\system32\dllcache\rocket.sys
2011-01-13 23:11:38 37563 ----a-w- c:\windows\system32\dllcache\rlnet5.sys
2011-01-13 23:11:32 86097 ----a-w- c:\windows\system32\dllcache\reslog32.dll
2011-01-13 23:11:25 23040 ----a-w- c:\windows\system32\dllcache\EXCH_regtrace.exe
2011-01-13 23:11:25 14848 ----a-w- c:\windows\system32\dllcache\register.exe
2011-01-13 23:11:07 19584 ----a-w- c:\windows\system32\dllcache\rasirda.sys
2011-01-13 23:11:02 714762 ----a-w- c:\windows\system32\dllcache\r2mdmkxx.sys
2011-01-13 23:09:55 17664 ----a-w- c:\windows\system32\dllcache\ppa3.sys
2011-01-13 23:08:59 30495 ----a-w- c:\windows\system32\dllcache\pc100nds.sys
2011-01-13 23:07:02 198144 ----a-w- c:\windows\system32\dllcache\nv3.sys
2011-01-13 23:07:00 123776 ----a-w- c:\windows\system32\dllcache\nv3.dll
2011-01-13 23:06:32 51552 ----a-w- c:\windows\system32\dllcache\ntgrip.sys
2011-01-13 23:06:32 38912 ----a-w- c:\windows\system32\dllcache\EXCH_ntfsdrv.dll
2011-01-13 23:06:24 9344 ----a-w- c:\windows\system32\dllcache\ntapm.sys
2011-01-13 23:06:22 7552 ----a-w- c:\windows\system32\dllcache\nsmmc.sys
2011-01-13 23:06:19 28672 ----a-w- c:\windows\system32\dllcache\nscirda.sys
2011-01-13 23:06:03 87040 ----a-w- c:\windows\system32\dllcache\nm6wdm.sys
2011-01-13 23:06:01 126080 ----a-w- c:\windows\system32\dllcache\nm5a2wdm.sys
2011-01-13 23:04:58 35392 ----a-w- c:\windows\system32\dllcache\n9i128.dll
2011-01-13 23:04:55 128000 ----a-w- c:\windows\system32\dllcache\n100325.sys
2011-01-13 23:04:53 52255 ----a-w- c:\windows\system32\dllcache\n1000nt5.sys
2011-01-13 23:04:50 75520 ----a-w- c:\windows\system32\dllcache\mxport.sys
2011-01-13 23:04:48 7168 ----a-w- c:\windows\system32\dllcache\mxport.dll
2011-01-13 23:04:46 19968 ----a-w- c:\windows\system32\dllcache\mxnic.sys
2011-01-13 23:04:44 19968 ----a-w- c:\windows\system32\dllcache\mxicfg.dll
2011-01-13 23:04:42 21888 ----a-w- c:\windows\system32\dllcache\mxcard.sys
2011-01-13 23:04:41 229439 ----a-w- c:\windows\system32\dllcache\multibox.dll
2011-01-13 23:04:37 103296 ----a-w- c:\windows\system32\dllcache\mtxvideo.sys
2011-01-13 23:03:35 5504 ----a-w- c:\windows\system32\dllcache\mstee.sys
2011-01-13 23:03:35 49024 ----a-w- c:\windows\system32\dllcache\mstape.sys
2011-01-13 23:03:17 12416 ----a-w- c:\windows\system32\dllcache\msriffwv.sys
2011-01-13 23:02:51 2944 ----a-w- c:\windows\system32\dllcache\msmpu401.sys
2011-01-13 23:02:45 22016 ----a-w- c:\windows\system32\dllcache\msircomm.sys
2011-01-13 23:02:43 98304 ----a-w- c:\windows\system32\dllcache\msir3jp.dll
2011-01-13 23:01:55 35200 ----a-w- c:\windows\system32\dllcache\msgame.sys
2011-01-13 23:01:52 6016 ----a-w- c:\windows\system32\dllcache\msfsio.sys
2011-01-13 23:01:51 51200 ----a-w- c:\windows\system32\dllcache\msdv.sys
2011-01-13 23:00:49 15232 ----a-w- c:\windows\system32\dllcache\mpe.sys
2011-01-13 23:00:33 16128 ----a-w- c:\windows\system32\dllcache\modemcsa.sys
2011-01-13 23:00:06 6528 ----a-w- c:\windows\system32\dllcache\miniqic.sys
2011-01-13 22:58:58 4992 ----a-w- c:\windows\system32\dllcache\loop.sys
2011-01-13 22:57:51 6144 ----a-w- c:\windows\system32\dllcache\kbd106.dll
2011-01-13 22:56:59 45632 ----a-w- c:\windows\system32\dllcache\ip5515.sys
2011-01-13 22:56:57 90200 ----a-w- c:\windows\system32\dllcache\io8ports.dll
2011-01-13 22:56:55 38784 ----a-w- c:\windows\system32\dllcache\io8.sys
2011-01-13 22:56:48 13056 ----a-w- c:\windows\system32\dllcache\inport.sys
2011-01-13 22:56:43 8704 ----a-w- c:\windows\system32\dllcache\infoctrs.dll
2011-01-13 22:56:28 471102 ----a-w- c:\windows\system32\dllcache\imskdic.dll
2011-01-13 22:56:26 59904 ----a-w- c:\windows\system32\dllcache\imkrinst.exe
2011-01-13 22:56:20 45109 ----a-w- c:\windows\system32\dllcache\imjpuex.exe
2011-01-13 22:56:12 57398 ----a-w- c:\windows\system32\dllcache\imjpdadm.exe
2011-01-13 22:56:04 311359 ----a-w- c:\windows\system32\dllcache\imepadsv.exe
2011-01-13 22:56:03 44032 ----a-w- c:\windows\system32\dllcache\imekrmig.exe
2011-01-13 22:56:03 102463 ----a-w- c:\windows\system32\dllcache\imepadsm.dll
2011-01-13 22:54:47 702845 ----a-w- c:\windows\system32\dllcache\i81xdnt5.dll
2011-01-13 22:54:47 161020 ----a-w- c:\windows\system32\dllcache\i81xnt5.sys
2011-01-13 22:54:45 58592 ----a-w- c:\windows\system32\dllcache\i740nt5.sys
2011-01-13 22:54:43 353184 ----a-w- c:\windows\system32\dllcache\i740dnt5.dll
2011-01-13 22:54:25 10129408 ----a-w- c:\windows\system32\dllcache\hwxkor.dll
2011-01-13 22:52:59 93696 ----a-w- c:\windows\system32\dllcache\hpgt42.dll
2011-01-13 22:51:37 59136 ----a-w- c:\windows\system32\dllcache\gckernel.sys
2011-01-13 22:51:35 10624 ----a-w- c:\windows\system32\dllcache\gameenum.sys
2011-01-13 22:51:32 322432 ----a-w- c:\windows\system32\dllcache\g400m.sys
2011-01-13 22:51:30 1733120 ----a-w- c:\windows\system32\dllcache\g400d.dll
2011-01-13 22:51:29 320384 ----a-w- c:\windows\system32\dllcache\g200m.sys
2011-01-13 22:51:27 470144 ----a-w- c:\windows\system32\dllcache\g200d.dll
2011-01-13 22:51:26 454912 ----a-w- c:\windows\system32\dllcache\fxusbase.sys
2011-01-13 22:51:06 92160 ----a-w- c:\windows\system32\dllcache\fuusd.dll
2011-01-13 22:51:05 455296 ----a-w- c:\windows\system32\dllcache\fusbbase.sys
2011-01-13 22:51:03 455680 ----a-w- c:\windows\system32\dllcache\fus2base.sys
2011-01-13 22:51:00 7680 ----a-w- c:\windows\system32\dllcache\ftpctrs2.dll
2011-01-13 22:49:57 45056 ----a-w- c:\windows\system32\dllcache\esunid.dll
2011-01-13 22:48:59 69194 ----a-w- c:\windows\system32\dllcache\el656cd5.sys
2011-01-13 22:48:58 26141 ----a-w- c:\windows\system32\dllcache\el589nd5.sys
2011-01-13 22:48:57 69692 ----a-w- c:\windows\system32\dllcache\el575nd5.sys
2011-01-13 22:48:56 24653 ----a-w- c:\windows\system32\dllcache\el574nd4.sys
2011-01-13 22:48:55 55999 ----a-w- c:\windows\system32\dllcache\el556nd5.sys
2011-01-13 22:48:55 44103 ----a-w- c:\windows\system32\dllcache\el515.sys
2011-01-13 22:48:53 514587 ----a-w- c:\windows\system32\dllcache\edb500.dll
2011-01-13 22:48:46 19594 ----a-w- c:\windows\system32\dllcache\e100isa4.sys
2011-01-13 22:48:45 50719 ----a-w- c:\windows\system32\dllcache\e1000nt5.sys
2011-01-13 22:47:56 334208 ----a-w- c:\windows\system32\dllcache\ds1wdm.sys
2011-01-13 22:47:32 28062 ----a-w- c:\windows\system32\dllcache\dp83820.sys
2011-01-13 22:47:31 23808 ----a-w- c:\windows\system32\dllcache\dot4usb.sys
2011-01-13 22:47:30 8704 ----a-w- c:\windows\system32\dllcache\dot4scan.sys
2011-01-13 22:47:29 206976 ----a-w- c:\windows\system32\dllcache\dot4.sys
2011-01-13 22:47:29 12928 ----a-w- c:\windows\system32\dllcache\dot4prt.sys
2011-01-13 22:45:59 7424 ----a-w- c:\windows\system32\dllcache\ddsmc.sys
2011-01-13 22:44:59 3072 ----a-w- c:\windows\system32\dllcache\cwbmidi.sys
2011-01-13 22:43:45 20736 ----a-w- c:\windows\system32\dllcache\cmbp0wdm.sys
2011-01-13 22:42:58 49182 ----a-w- c:\windows\system32\dllcache\cem56n5.sys
2011-01-13 22:41:57 171264 ----a-w- c:\windows\system32\dllcache\camdrv30.sys
2011-01-13 22:40:59 15360 ----a-w- c:\windows\system32\dllcache\brmfbidi.dll
2011-01-13 22:39:52 281600 ----a-w- c:\windows\system32\dllcache\atimtai.sys
2011-01-13 22:38:59 36224 ----a-w- c:\windows\system32\dllcache\an983.sys
2011-01-13 22:37:59 462848 ----a-w- c:\windows\system32\dllcache\a3dapi.dll
2011-01-13 22:37:58 98304 ----a-w- c:\windows\system32\dllcache\a3d.dll
2011-01-13 22:37:58 38400 ----a-w- c:\windows\system32\dllcache\8514a.dll
2011-01-13 22:37:56 48128 ----a-w- c:\windows\system32\dllcache\61883.sys
2011-01-13 22:37:47 12288 ----a-w- c:\windows\system32\dllcache\4mmdat.sys
2011-01-13 22:37:46 689216 ----a-w- c:\windows\system32\dllcache\3dfxvs.dll
2011-01-13 22:37:46 148352 ----a-w- c:\windows\system32\dllcache\3dfxvsm.sys
2011-01-13 22:37:45 762780 ----a-w- c:\windows\system32\dllcache\3cwmcru.sys
2011-01-13 22:37:45 11264 ----a-w- c:\windows\system32\dllcache\1394vdbg.sys
2011-01-13 22:37:38 25992 ----a-w- c:\windows\system32\pgdfgsvc.exe
2011-01-13 22:36:03 7168 ----a-w- c:\windows\system32\dllcache\wamregps.dll
2011-01-13 22:34:59 66048 ----a-w- c:\windows\system32\dllcache\s3legacy.dll
2011-01-13 22:33:36 7680 ----a-w- c:\windows\system32\dllcache\inetmgr.exe
2011-01-13 22:33:36 19968 ----a-w- c:\windows\system32\dllcache\inetsloc.dll
2011-01-13 22:33:33 169984 ----a-w- c:\windows\system32\dllcache\iisui.dll
2011-01-13 22:33:31 5632 ----a-w- c:\windows\system32\dllcache\iisrstap.dll
2011-01-13 22:33:31 14336 ----a-w- c:\windows\system32\dllcache\iisreset.exe
2011-01-13 22:33:29 6144 ----a-w- c:\windows\system32\dllcache\ftpsapi2.dll
2011-01-13 22:08:34 -------- d-----w- c:\program files\IObit
2011-01-02 21:41:02 475648 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.scr
2011-01-02 21:41:02 1061888 ----a-w- c:\windows\system32\MyDefragScreenSaver_v4.3.1.exe
2011-01-02 21:41:01 -------- d-----w- c:\program files\MyDefrag v4.3.1
2010-12-29 18:11:52 -------- d-----w- c:\program files\ESET
2010-12-24 16:19:14 4224 ----a-w- c:\windows\system32\drivers\beep.sys
2010-12-24 16:19:14 4224 ----a-w- c:\windows\system32\dllcache\beep.sys
2010-12-24 00:32:28 -------- d-sha-r- C:\cmdcons
2010-12-24 00:25:43 98816 ----a-w- c:\windows\sed.exe
2010-12-24 00:25:43 89088 ----a-w- c:\windows\MBR.exe
2010-12-24 00:25:43 256512 ----a-w- c:\windows\PEV.exe
2010-12-24 00:25:43 161792 ----a-w- c:\windows\SWREG.exe
==================== Find3M ====================
2010-11-18 18:12:44 81920 ----a-w- c:\windows\system32\isign32.dll
2010-11-09 14:52:35 249856 ----a-w- c:\windows\system32\odbc32.dll
2010-11-06 00:26:58 916480 ----a-w- c:\windows\system32\wininet.dll
2010-11-06 00:26:58 43520 ----a-w- c:\windows\system32\licmgr10.dll
2010-11-06 00:26:58 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-11-03 12:25:54 385024 ----a-w- c:\windows\system32\html.iec
2010-10-28 13:13:22 290048 ----a-w- c:\windows\system32\atmfd.dll
2010-10-26 13:25:00 1853312 ----a-w- c:\windows\system32\win32k.sys
============= FINISH: 15:39:43.53 ===============