DDS Log
.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 10.3.0
Run by Owner at 17:34:03 on 2012-03-21
Microsoft Windows XP Home Edition 5.1.2600.3.1252.44.1033.18.2047.1226 [GMT 0:00]
.
AV: ESET NOD32 Antivirus 5.0 *Disabled/Updated* {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
.
============== Running Processes ===============
.
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
C:\Program Files\Microsoft IntelliPoint\ipoint.exe
C:\Program Files\Microsoft IntelliType Pro\itype.exe
C:\USBStorage\USBDetector.exe
C:\WINDOWS\system32\RunDLL32.exe
C:\Program Files\Belkin\F5D9050\Belkinwcui.exe
C:\WINDOWS\CTHELPER.EXE
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\RALINK\Common\RaUI.exe
C:\Program Files\Secunia\PSI\psi_tray.exe
C:\Program Files\Creative Professional\Digital Audio System\E-MU PatchMix DSP\EmuPatchMixDSP.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Maxtor\Sync\SyncServices.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Secunia\PSI\PSIA.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesService32.exe
C:\Program Files\TuneUp Utilities 2012\TuneUpUtilitiesApp32.exe
C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Owner\Desktop\bqf496jn.exe
C:\WINDOWS\PCHealth\HelpCtr\Binaries\HelpHost.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.talktalk.co.uk/
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: {3049c3e9-b461-4bc5-8870-4c09146192ca} - RealPlayer Download and Record Plugin for Internet Explorer
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.7.7227.1100\swg.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre7\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn\YTSingleInstance.dll
TB: Easy-WebPrint: {327c2873-e90d-4c37-aa9d-10ac9baba46c} - c:\program files\canon\easy-webprint\Toolband.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
uRun: [SetDefaultMIDI] MIDIDef.exe
uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
mRun: [egui] "c:\program files\eset\eset nod32 antivirus\egui.exe" /hide /waitservice
mRun: [IntelliPoint] "c:\program files\microsoft intellipoint\ipoint.exe"
mRun: [itype] "c:\program files\microsoft intellitype pro\itype.exe"
mRun: [USBDetector] c:\usbstorage\USBDetector.exe
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [NvMediaCenter] RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
mRun: [nwiz] c:\program files\nvidia corporation\nview\nwiz.exe /installquiet
mRun: [F5D9050] c:\program files\belkin\f5d9050\Belkinwcui.exe
mRun: [CTHelper] CTHELPER.EXE
mRun: [CTxfiHlp] CTXFIHLP.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\ralink~1.lnk - c:\program files\ralink\common\RaUI.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\secuni~1.lnk - c:\program files\secunia\psi\psi_tray.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\window~1.lnk - c:\program files\windows desktop search\WindowsSearch.exe
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office11\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/e/4/9/e494c802-dd90-4c6b-a074-469358f075a6/OGAControl.cab
DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} - hxxp://www.musicnotes.com/download/mnviewer.cab
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab
DPF: {1C11B948-582A-433F-A98D-A8C4D5CC64F2} - hxxp://magnet.2020.net/virtualplanner/Core/Player/2020PlayerAX_Win32.cab
DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://www.update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1228814578312
DPF: {6C269571-C6D7-4818-BCA4-32A035E8C884} - hxxp://ccfiles.creative.com/Web/softwareupdate/su/ocx/15102/CTSUEng.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1230199576593
DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} - hxxp://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_03-windows-i586.cab
DPF: {8C922C73-FFFA-45A3-B2C2-BC1E30074267} - hxxp://www.sony.co.uk/bravia/RegistrationAgent.cab
DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} - hxxp://www.sibelius.com/download/software/win/ActiveXPlugin.cab
DPF: {C7DB51B4-BCF7-4923-8874-7F1A0DC92277} - hxxp://office.microsoft.com/officeupdate/content/opuc4.cab
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_03-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_03-windows-i586.cab
DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/110926/CTPID.cab
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: Windows Desktop Search Namespace Manager: {56f9679e-7826-4c84-81f3-532071a8bcc5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
Hosts: 127.0.0.1
www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\documents and settings\owner\application data\mozilla\firefox\profiles\nbnx8z1a.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.talktalk.co.uk/
FF - prefs.js: network.proxy.type - 0
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\canon\easy-photoprint ex\NPEZFFPI.DLL
FF - plugin: c:\program files\foxit software\foxit reader\plugins\npFoxitReaderPlugin.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\google updater\2.4.2432.1652\npCIDetect14.dll
FF - plugin: c:\program files\google\update\1.3.21.99\npGoogleUpdate3.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\java\jre7\bin\plugin2\npjp2.dll
FF - plugin: c:\program files\microsoft silverlight\5.0.61118.0\npctrlui.dll
.
---- FIREFOX POLICIES ----
FF - user.js: network.http.max-connections-per-server - 8
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: content.switch.threshold - 600000
.
============= SERVICES / DRIVERS ===============
.
R0 RapportKELL;RapportKELL;c:\windows\system32\drivers\RapportKELL.sys [2012-3-11 56208]
R1 ehdrv;ehdrv;c:\windows\system32\drivers\ehdrv.sys [2009-11-16 118104]
R1 epfwtdir;epfwtdir;c:\windows\system32\drivers\epfwtdir.sys [2009-11-16 103112]
R1 RapportCerberus_34302;RapportCerberus_34302;c:\documents and settings\all users\application data\trusteer\rapport\store\exts\rapportcerberus\34302\RapportCerberus32_34302.sys [2011-12-15 228208]
R1 RapportEI;RapportEI;c:\program files\trusteer\rapport\bin\RapportEI.sys [2012-3-11 71440]
R1 RapportPG;RapportPG;c:\program files\trusteer\rapport\bin\RapportPG.sys [2012-3-11 164112]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2011-7-22 12880]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2011-7-12 67664]
R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCore.exe [2011-8-11 116608]
R2 ekrn;ESET Service;c:\program files\eset\eset nod32 antivirus\ekrn.exe [2011-9-22 974944]
R2 nvUpdatusService;NVIDIA Update Service Daemon;c:\program files\nvidia corporation\nvidia update core\daemonu.exe [2012-2-21 2348352]
R2 RapportMgmtService;Rapport Management Service;c:\program files\trusteer\rapport\bin\RapportMgmtService.exe [2012-3-11 931640]
R2 Secunia PSI Agent;Secunia PSI Agent;c:\program files\secunia\psi\psia.exe [2011-10-14 994360]
R2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files\tuneup utilities 2012\TuneUpUtilitiesService32.exe [2012-2-9 1529152]
R2 ubsbm;Unibrain 1394 SBM Driver;c:\windows\system32\drivers\UBSBM.sys [2005-7-27 14080]
R2 ubumapi;Unibrain 1394 FireAPI Driver;c:\windows\system32\drivers\UBUMAPI.sys [2005-7-27 36352]
R2 VisualSVNServer;VisualSVN Server;c:\program files\visualsvn server\bin\VisualSVNServer.exe [2012-2-14 24424]
R3 BKNDIS5;BKNDIS5 NDIS Protocol Driver;c:\progra~1\belkin\f5d9050\BKNDIS5.SYS [2010-1-26 15872]
R3 PSI;PSI;c:\windows\system32\drivers\psi_mf.sys [2010-9-1 15544]
R3 RapportIaso;RapportIaso;c:\documents and settings\all users\application data\trusteer\rapport\store\exts\rapportms\28896\RapportIaso.sys [2011-8-7 21520]
R3 StreamSurge;StreamSurge Driver (miniport);c:\windows\system32\drivers\ss.sys [2010-1-26 19968]
R3 ubohci;Unibrain 1394 OHCI Driver;c:\windows\system32\drivers\ubohci.sys [2005-7-27 77056]
R3 vsc32;Virtual Sound Canvas 3.2;c:\windows\system32\drivers\vsc.sys [2012-3-14 951284]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 COMMONFX.SYS;COMMONFX.SYS;c:\windows\system32\drivers\COMMONFX.sys [2008-3-20 98328]
S3 COMMONFX;COMMONFX;c:\windows\system32\drivers\COMMONFX.sys [2008-3-20 98328]
S3 cpuz132;cpuz132;\??\c:\docume~1\owner\locals~1\temp\cpuz132\cpuz132_x32.sys --> c:\docume~1\owner\locals~1\temp\cpuz132\cpuz132_x32.sys [?]
S3 CT20XUT.SYS;CT20XUT.SYS;c:\windows\system32\drivers\CT20XUT.sys [2008-3-20 171032]
S3 CT20XUT;CT20XUT;c:\windows\system32\drivers\CT20XUT.sys [2008-3-20 171032]
S3 CTAUDFX.SYS;CTAUDFX.SYS;c:\windows\system32\drivers\CTAUDFX.sys [2008-3-20 528920]
S3 CTAUDFX;CTAUDFX;c:\windows\system32\drivers\CTAUDFX.sys [2008-3-20 528920]
S3 CTEAPSFX.SYS;CTEAPSFX.SYS;c:\windows\system32\drivers\CTEAPSFX.sys [2008-3-20 163352]
S3 CTEAPSFX;CTEAPSFX;c:\windows\system32\drivers\CTEAPSFX.sys [2008-3-20 163352]
S3 CTEDSPFX.SYS;CTEDSPFX.SYS;c:\windows\system32\drivers\CTEDSPFX.sys [2008-3-20 259096]
S3 CTEDSPFX;CTEDSPFX;c:\windows\system32\drivers\CTEDSPFX.sys [2008-3-20 259096]
S3 CTEDSPIO.SYS;CTEDSPIO.SYS;c:\windows\system32\drivers\CTEDSPIO.sys [2008-3-20 134168]
S3 CTEDSPIO;CTEDSPIO;c:\windows\system32\drivers\CTEDSPIO.sys [2008-3-20 134168]
S3 CTEDSPSY.SYS;CTEDSPSY.SYS;c:\windows\system32\drivers\CTEDSPSY.sys [2008-3-20 309784]
S3 CTEDSPSY;CTEDSPSY;c:\windows\system32\drivers\CTEDSPSY.sys [2008-3-20 309784]
S3 CTERFXFX.SYS;CTERFXFX.SYS;c:\windows\system32\drivers\CTERFXFX.sys [2008-3-20 99352]
S3 CTERFXFX;CTERFXFX;c:\windows\system32\drivers\CTERFXFX.sys [2008-3-20 99352]
S3 CTEXFIFX.SYS;CTEXFIFX.SYS;c:\windows\system32\drivers\CTEXFIFX.sys [2008-3-20 1324056]
S3 CTEXFIFX;CTEXFIFX;c:\windows\system32\drivers\CTEXFIFX.sys [2008-3-20 1324056]
S3 CTHWIUT.SYS;CTHWIUT.SYS;c:\windows\system32\drivers\CTHWIUT.sys [2008-3-20 72728]
S3 CTHWIUT;CTHWIUT;c:\windows\system32\drivers\CTHWIUT.sys [2008-3-20 72728]
S3 CTSBLFX.SYS;CTSBLFX.SYS;c:\windows\system32\drivers\CTSBLFX.sys [2008-3-20 534040]
S3 CTSBLFX;CTSBLFX;c:\windows\system32\drivers\CTSBLFX.sys [2008-3-20 534040]
S3 emuumidi;E-MU USB-MIDI Driver;c:\windows\system32\drivers\emuumidi.sys [2007-3-14 37120]
S3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.Sys [2009-9-4 36608]
S3 netr73;Belkin Wireless G Plus MIMO USB Network Adapter Driver for Vista;c:\windows\system32\drivers\netr73.sys [2006-9-28 247808]
S3 PortlUSB;PortlUSB;c:\windows\system32\drivers\H10USB.sys [2004-6-24 7552]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\drivers\ss_bbus.sys [2010-10-17 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\drivers\ss_bmdfl.sys [2010-10-17 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\drivers\ss_bmdm.sys [2010-10-17 123648]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\tuneup utilities 2012\TuneUpUtilitiesDriver32.sys [2011-11-24 10064]
S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2006-2-28 14336]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
S4 Apache2.2;Apache2.2;c:\program files\apache software foundation\apache2.2\bin\httpd.exe [2012-1-28 20549]
S4 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [2009-9-4 233472]
S4 gupdate1c99b6187578484;Google Update Service (gupdate1c99b6187578484);c:\program files\google\update\GoogleUpdate.exe [2009-3-2 133104]
S4 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2009-3-2 133104]
S4 TomTomHOMEService;TomTomHOMEService;c:\program files\tomtom home 2\TomTomHOMEService.exe [2011-4-22 92592]
.
=============== Created Last 30 ================
.
2012-03-21 16:42:21 709968 ----a-w- c:\windows\isRS-000.tmp
2012-03-21 15:04:27 -------- d-----w- c:\program files\Spybot - Search & Destroy
2012-03-21 15:04:27 -------- d-----w- c:\documents and settings\all users\application data\Spybot - Search & Destroy
2012-03-20 10:17:58 -------- d-----w- c:\documents and settings\owner\application data\EmuPatchMixDSP
2012-03-20 09:45:46 90112 ------w- c:\windows\Updreg.EXE
2012-03-20 09:43:38 10240 ----a-w- c:\windows\CTDCRES.DLL
2012-03-19 22:15:58 701386 -c--a-w- c:\windows\system32\dllcache\wdhaalba.sys
2012-03-19 22:14:59 28160 -c--a-w- c:\windows\system32\dllcache\umaxu40.dll
2012-03-19 22:13:58 81408 -c--a-w- c:\windows\system32\dllcache\tgiul50.dll
2012-03-19 22:12:58 61824 -c--a-w- c:\windows\system32\dllcache\speed.sys
2012-03-19 22:11:58 157696 -c--a-w- c:\windows\system32\dllcache\sisv256.dll
2012-03-19 21:55:41 17280 -c--a-w- c:\windows\system32\dllcache\scr111.sys
2012-03-19 21:54:58 30720 -c--a-w- c:\windows\system32\dllcache\rthwcls.sys
2012-03-19 21:54:55 9216 -c--a-w- c:\windows\system32\dllcache\rsmgrstr.dll
2012-03-19 21:54:53 3840 -c--a-w- c:\windows\system32\dllcache\rpfun.sys
2012-03-19 21:54:51 79104 -c--a-w- c:\windows\system32\dllcache\rocket.sys
2012-03-19 21:54:48 37563 -c--a-w- c:\windows\system32\dllcache\rlnet5.sys
2012-03-19 21:54:46 86097 -c--a-w- c:\windows\system32\dllcache\reslog32.dll
2012-03-19 21:52:14 6016 -c--a-w- c:\windows\system32\dllcache\qic157.sys
2012-03-19 21:52:08 159232 -c--a-w- c:\windows\system32\dllcache\ptpusd.dll
2012-03-19 21:51:59 17664 -c--a-w- c:\windows\system32\dllcache\ppa3.sys
2012-03-19 21:51:57 8832 -c--a-w- c:\windows\system32\dllcache\powerfil.sys
2012-03-19 21:51:37 259328 -c--a-w- c:\windows\system32\dllcache\perm3dd.dll
2012-03-19 21:51:36 28032 -c--a-w- c:\windows\system32\dllcache\perm3.sys
2012-03-19 21:51:36 211584 -c--a-w- c:\windows\system32\dllcache\perm2dll.dll
2012-03-19 21:51:35 27904 -c--a-w- c:\windows\system32\dllcache\perm2.sys
2012-03-19 21:50:24 28672 -c--a-w- c:\windows\system32\dllcache\nscirda.sys
2012-03-19 21:49:32 49024 -c--a-w- c:\windows\system32\dllcache\mstape.sys
2012-03-19 21:49:23 22016 -c--a-w- c:\windows\system32\dllcache\msircomm.sys
2012-03-19 21:49:13 51200 -c--a-w- c:\windows\system32\dllcache\msdv.sys
2012-03-19 21:48:51 26112 -c--a-w- c:\windows\system32\dllcache\memstpci.sys
2012-03-19 21:48:27 7040 -c--a-w- c:\windows\system32\dllcache\ltotape.sys
2012-03-19 21:48:12 34688 -c--a-w- c:\windows\system32\dllcache\lbrtfdc.sys
2012-03-19 21:48:04 253952 -c--a-w- c:\windows\system32\dllcache\kdsusd.dll
2012-03-19 21:48:03 48640 -c--a-w- c:\windows\system32\dllcache\kdsui.dll
2012-03-19 21:47:51 14592 -c--a-w- c:\windows\system32\dllcache\kbdhid.sys
2012-03-19 21:47:44 6144 -c--a-w- c:\windows\system32\dllcache\kbd106.dll
2012-03-19 21:47:35 28160 -c--a-w- c:\windows\system32\dllcache\irmon.dll
2012-03-19 21:47:33 151552 -c--a-w- c:\windows\system32\dllcache\irftp.exe
2012-03-19 21:47:32 88192 -c--a-w- c:\windows\system32\dllcache\irda.sys
2012-03-19 21:47:25 5504 -c--a-w- c:\windows\system32\dllcache\intelide.sys
2012-03-19 21:46:46 702845 -c--a-w- c:\windows\system32\dllcache\i81xdnt5.dll
2012-03-19 21:46:43 18560 -c--a-w- c:\windows\system32\dllcache\i2omp.sys
2012-03-19 21:46:42 8576 -c--a-w- c:\windows\system32\dllcache\i2omgmt.sys
2012-03-19 21:45:40 20352 -c--a-w- c:\windows\system32\dllcache\hidbatt.sys
2012-03-19 21:45:36 28288 -c--a-w- c:\windows\system32\dllcache\grserial.sys
2012-03-19 21:45:31 59136 -c--a-w- c:\windows\system32\dllcache\gckernel.sys
2012-03-19 21:45:31 10624 -c--a-w- c:\windows\system32\dllcache\gameenum.sys
2012-03-19 21:43:40 206976 -c--a-w- c:\windows\system32\dllcache\dot4.sys
2012-03-19 21:43:36 8320 -c--a-w- c:\windows\system32\dllcache\dlttape.sys
2012-03-19 21:42:50 249856 -c--a-w- c:\windows\system32\dllcache\ctmasetp.dll
2012-03-19 21:42:40 10240 -c--a-w- c:\windows\system32\dllcache\compbatt.sys
2012-03-19 21:42:35 13952 -c--a-w- c:\windows\system32\dllcache\cmbatt.sys
2012-03-19 21:42:25 8192 -c--a-w- c:\windows\system32\dllcache\changer.sys
2012-03-19 21:42:15 121856 -c--a-w- c:\windows\system32\dllcache\camext30.dll
2012-03-19 21:41:38 14208 -c--a-w- c:\windows\system32\dllcache\battc.sys
2012-03-19 21:41:31 13696 -c--a-w- c:\windows\system32\dllcache\avcstrm.sys
2012-03-19 21:41:30 38912 -c--a-w- c:\windows\system32\dllcache\avc.sys
2012-03-19 21:39:24 48128 -c--a-w- c:\windows\system32\dllcache\61883.sys
2012-03-19 21:39:24 12288 -c--a-w- c:\windows\system32\dllcache\4mmdat.sys
2012-03-18 10:05:32 592824 ----a-w- c:\program files\mozilla firefox\gkmedias.dll
2012-03-18 10:05:32 44472 ----a-w- c:\program files\mozilla firefox\mozglue.dll
2012-03-14 19:37:13 204800 ----a-w- c:\windows\system32\vsc32cnf.cpl
2012-03-14 19:36:51 951284 ----a-w- c:\windows\system32\drivers\vsc.sys
2012-03-14 19:36:51 118876 ----a-w- c:\windows\system32\vscapi.dll
2012-03-14 19:36:26 -------- d-----w- c:\windows\_ISTMP1.DIR
2012-03-13 12:59:20 7062 ----a-w- c:\windows\system32\audiopid.vxd
2012-03-11 13:48:50 56208 ----a-w- c:\windows\system32\drivers\RapportKELL.sys
2012-03-06 16:00:42 -------- d-----w- c:\program files\VisualSVN Server
2012-03-06 08:14:27 -------- d-----w- c:\program files\CCleaner
2012-03-05 17:38:31 -------- d-----w- c:\program files\AVAST Software
2012-03-05 17:38:31 -------- d-----w- c:\documents and settings\all users\application data\AVAST Software
2012-03-05 16:27:55 -------- d-----w- c:\documents and settings\owner\application data\IObit
2012-03-05 16:27:50 -------- d-----w- c:\program files\IObit
2012-02-28 16:30:19 -------- d--h--w- c:\windows\PIF
2012-02-28 16:06:28 628088 ----a-w- C:\WindowsXP-KB971455-x86-ENU.exe
2012-02-27 09:40:27 -------- d-----w- c:\program files\Support Tools
2012-02-26 17:48:16 11137024 ----a-w- c:\windows\system32\libmfxsw32.dll
2012-02-26 12:58:38 -------- d-----w- c:\program files\Microsoft Windows 7 Upgrade Advisor
2012-02-21 22:34:03 -------- d-----w- c:\documents and settings\owner\local settings\application data\Sun
.
==================== Find3M ====================
.
2012-03-20 14:56:49 6524 ----a-w- c:\windows\P32I.BIN
2012-03-13 22:40:09 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-03-13 21:42:37 293992 ----a-w- c:\windows\system32\nvdrsdb1.bin
2012-03-13 21:42:37 1 ----a-w- c:\windows\system32\nvdrssel.bin
2012-03-13 21:42:34 293992 ----a-w- c:\windows\system32\nvdrsdb0.bin
2012-02-29 23:58:00 881984 ----a-w- c:\windows\system32\nvgenco32.dll
2012-02-29 23:58:00 65536 ----a-w- c:\windows\system32\OpenCL.dll
2012-02-29 23:58:00 5918720 ----a-w- c:\windows\system32\nvcuda.dll
2012-02-29 23:58:00 4309760 ----a-w- c:\windows\system32\nv4_disp.dll
2012-02-29 23:58:00 2522944 ----a-w- c:\windows\system32\nvcuvid.dll
2012-02-29 23:58:00 2437440 ----a-w- c:\windows\system32\nvcuvenc.dll
2012-02-29 23:58:00 2291712 ----a-w- c:\windows\system32\nvapi.dll
2012-02-29 23:58:00 18624512 ----a-w- c:\windows\system32\nvoglnt.dll
2012-02-29 23:58:00 17534976 ----a-w- c:\windows\system32\nvcompiler.dll
2012-02-29 23:58:00 13417632 ----a-w- c:\windows\system32\drivers\nv4_mini.sys
2012-02-29 23:58:00 1000256 ----a-w- c:\windows\system32\nvdispco32.dll
2012-02-29 20:30:31 54272 ----a-w- c:\windows\system32\nvwddi.dll
2012-02-29 20:30:24 15494464 ----a-w- c:\windows\system32\nvcpl.dll
2012-02-29 20:30:24 143680 ----a-w- c:\windows\system32\nvcolor.exe
2012-02-29 20:30:23 164160 ----a-w- c:\windows\system32\nvsvc32.exe
2012-02-29 20:30:23 108352 ----a-w- c:\windows\system32\nvmctray.dll
2012-02-27 15:32:14 141312 ----a-w- c:\windows\system32\javacpl.cpl
2012-02-27 15:32:13 637848 ----a-w- c:\windows\system32\npdeployJava1.dll
2012-02-27 15:32:13 567696 ----a-w- c:\windows\system32\deployJava1.dll
2012-02-11 01:17:18 499712 ----a-w- c:\windows\system32\msvcp71.dll
2012-02-11 01:17:18 348160 ----a-w- c:\windows\system32\msvcr71.dll
2012-02-09 13:01:24 31552 ----a-w- c:\windows\system32\TURegOpt.exe
2012-02-09 13:01:16 28992 ----a-w- c:\windows\system32\uxtuneup.dll
2012-02-05 11:14:04 414 ----a-w- c:\windows\AeDebugSave.reg
2012-02-03 09:22:18 1860096 ------w- c:\windows\system32\win32k.sys
2012-01-11 19:06:47 3072 ------w- c:\windows\system32\iacenc.dll
2012-01-09 16:20:25 139784 ----a-w- c:\windows\system32\drivers\rdpwd.sys
.
============= FINISH: 17:34:41.62 ===============