.
DDS (Ver_11-03-05.01) - NTFS_AMD64 NETWORK
Run by gott1rott at 23:33:00.75 on Thu 05/05/2011
Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_25
Microsoft Windows 7 Ultimate 6.1.7600.0.1252.1.1033.18.6143.5315 [GMT -4:00]
.
AV: AntiVir Desktop *Enabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: AntiVir Desktop *Enabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Users\gott1rott\Desktop\dds.scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uURLSearchHooks: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
mURLSearchHooks: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
BHO: Conduit Engine: {30f9b915-b755-4826-820b-08fba6bd249d} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO: IeMonitorBho Class: {bf00e119-21a3-4fd1-b178-3b8537e75c92} - e:\Program Files (x86)\Megaupload\Mega Manager\MegaIEMn.dll
BHO: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: OToolbarHelper Class: {ead3a971-6a23-4246-8691-c9244e858967} - C:\Program Files (x86)\PayPal\PayPal Plug-In\PayPalHelper.dll
TB: PayPal Plug-In: {dc0f2f93-27fa-4f84-acaa-9416f90b9511} - C:\Program Files (x86)\PayPal\PayPal Plug-In\OToolbar.dll
TB: uTorrentBar Toolbar: {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files (x86)\uTorrentBar\tbuTor.dll
TB: Conduit Engine: {30f9b915-b755-4826-820b-08fba6bd249d} - C:\Program Files (x86)\ConduitEngine\ConduitEngine.dll
uRun: [armakicker] C:\Users\gott1rott\AppData\Roaming\login.exe
uRun: [PRjDElIKmm] "C:\Users\gott1rott\AppData\Local\Temp\tempfile.exe"
mRun: [armakicker] C:\Users\gott1rott\AppData\Roaming\login.exe
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [{{mStartup}}] C:\Users\GOTT1R~1\AppData\Local\Temp\Newfile.exe
mRun: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
dRun: [CtxfiReg] CTXFIREG.exe /FAIL1
mExplorerRun: [armakicker] C:\Users\gott1rott\AppData\Roaming\login.exe
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\NETGEA~1.LNK - C:\Program Files (x86)\NETGEAR\WG111v2\WG111v2.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableLUA = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: PromptOnSecureDesktop = 0 (0x0)
IE: E&xport to Microsoft Excel - E:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - E:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
IE: {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} - hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_25-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwareupdate/su2/ocx/15111/CTPID.cab
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
mASetup: {3DEAACEE-1CB6-FD5B-EFCC-B2C0DDDCAEBF} - C:\Users\gott1rott\AppData\Roaming\login.exe
uASetup: {3DEAACEE-1CB6-FD5B-EFCC-B2C0DDDCAEBF} - C:\Users\gott1rott\AppData\Roaming\login.exe
BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - E:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - E:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL
BHO-X64: URLRedirectionBHO - No File
TB-X64: {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - No File
mRun-x64: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
mRun-x64: [mylbx] e:\Program Files\My Lockbox\mylbx.exe /a
mRun-x64: [BCSSync] "E:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - E:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\GOTT1R~1\AppData\Roaming\Mozilla\Firefox\Profiles\jqxxnw85.default\
FF - prefs.js: browser.startup.homepage - hxxp://go.microsoft.com/fwlink/?LinkId=69157
FF - component: C:\Program Files (x86)\PayPal\PayPal Plug-In\components\PayPalPlugin.dll
FF - component: C:\Users\gott1rott\AppData\Roaming\Mozilla\Firefox\Profiles\jqxxnw85.default\extensions\{6e098d65-7d2d-46d4-ada0-2f882a29f795}\platform\WINNT_x86-msvc\components\libchm.dll
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\TabletPlugins\npwacom.dll
FF - plugin: C:\Users\gott1rott\AppData\Roaming\Move Networks\plugins\npqmp071503000010.dll
FF - plugin: C:\Users\gott1rott\AppData\Roaming\Move Networks\plugins\npqmp071701000002.dll
FF - plugin: C:\Users\gott1rott\AppData\Roaming\Mozilla\Firefox\Profiles\jqxxnw85.default\extensions\battlefieldplay4free@ea.com\plugins\npBP4FUpdater.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}
FF - Ext: Java Console: {CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}
FF - Ext: PayPal Plug-In for Firefox: paypalfirefoxplugin@orbiscom - C:\Program Files (x86)\PayPal\PayPal Plug-In
FF - Ext: Move Media Player:
moveplayer@movenetworks.com - C:\Users\gott1rott\AppData\Roaming\Move Networks
FF - Ext: Adblock Plus: {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d} - %profile%\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}
FF - Ext: NoScript: {73a6fe31-595d-460b-a920-fcc0f8843232} - %profile%\extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}
FF - Ext: CHM Reader: {6e098d65-7d2d-46d4-ada0-2f882a29f795} - %profile%\extensions\{6e098d65-7d2d-46d4-ada0-2f882a29f795}
FF - Ext: Linkification: {35106bca-6c78-48c7-ac28-56df30b51d2a} - %profile%\extensions\{35106bca-6c78-48c7-ac28-56df30b51d2a}
FF - Ext: Battlefield Play4Free:
battlefieldplay4free@ea.com - %profile%\extensions\battlefieldplay4free@ea.com
.
============= SERVICES / DRIVERS ===============
.
R0 FSProFilter;FSPro File Filter;C:\Windows\System32\drivers\FSPFltd.sys [2010-9-29 55440]
R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-7-14 55280]
R0 SCMNdisP;General NDIS Protocol Driver;C:\Windows\System32\drivers\SCMNdisP.sys [2010-4-26 25312]
R2 !SASCORE;SAS Core Service;C:\Program Files\SUPERAntiSpyware\SASCore64.exe [2010-6-29 128752]
R3 amdiox64;AMD IO Driver;C:\Windows\System32\drivers\amdiox64.sys [2011-4-30 46136]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2009-6-10 187392]
S1 SASDIFSV;SASDIFSV;C:\Program Files\SUPERAntiSpyware\sasdifsv64.sys [2010-2-17 14920]
S1 SASKUTIL;SASKUTIL;C:\Program Files\SUPERAntiSpyware\saskutil64.sys [2010-2-17 12360]
S2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2011-4-30 203776]
S2 AMD FUEL Service;AMD FUEL Service;C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2011-4-5 365568]
S2 AntiVirSchedulerService;Avira AntiVir Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2010-1-16 136360]
S2 AntiVirService;Avira AntiVir Guard;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2010-1-16 269480]
S2 avgntflt;avgntflt;C:\Windows\System32\drivers\avgntflt.sys [2010-1-16 83120]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 fsproflt;FSPro Filter Service;C:\Windows\SysWOW64\fsproflt.exe [2010-9-29 142648]
S2 IPClampService;IP-Clamp Licensing by cebas VISUAL TECHNOLOGY Inc.;C:\Program Files (x86)\cebas\ip-clamp\ipclamp.exe [2007-11-20 45700]
S2 mi-raysat_3dsmax2011_64;mental ray 3.8 Satellite for Autodesk 3ds Max 2011 64-bit 64-bit;E:\Program Files\Autodesk\3ds Max 2011\mentalimages\satellite\raysat_3dsmax2011_64server.exe [2010-3-10 86016]
S2 SCM_Service;SCM_Service;C:\Windows\SysWOW64\WinService.exe [2010-4-26 180224]
S2 TabletServicePen;TabletServicePen;C:\Program Files\Tablet\Pen\Pen_Tablet.exe [2011-1-9 5790064]
S2 TouchServicePen;Wacom Consumer Touch Service;C:\Program Files\Tablet\Pen\Pen_TouchService.exe [2011-1-9 487280]
S3 amdkmdag;amdkmdag;C:\Windows\System32\drivers\atikmdag.sys [2011-4-30 9323520]
S3 amdkmdap;amdkmdap;C:\Windows\System32\drivers\atikmpag.sys [2011-4-30 304128]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2011-4-30 115216]
S3 cpuz134;cpuz134;C:\Program Files (x86)\CPUID\PC Wizard 2010\pcwiz_x64.sys [2010-11-25 21480]
S3 Creative Dolby Digital Live Pack Licensing Service;Creative Dolby Digital Live Pack Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\DDLLicensing.exe [2010-1-16 79360]
S3 CT20XUT.SYS;CT20XUT.SYS;C:\Windows\System32\drivers\CT20XUT.sys [2009-7-14 230424]
S3 CT20XUT;CT20XUT;C:\Windows\System32\drivers\CT20XUT.sys [2009-7-14 230424]
S3 CTEXFIFX.SYS;CTEXFIFX.SYS;C:\Windows\System32\drivers\CTEXFIFX.sys [2009-7-14 1445912]
S3 CTEXFIFX;CTEXFIFX;C:\Windows\System32\drivers\CTEXFIFX.sys [2009-7-14 1445912]
S3 CTHWIUT.SYS;CTHWIUT.SYS;C:\Windows\System32\drivers\CTHWIUT.sys [2009-7-14 95256]
S3 CTHWIUT;CTHWIUT;C:\Windows\System32\drivers\CTHWIUT.sys [2009-7-14 95256]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64;C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2010-8-2 1436424]
S3 Futuremark SystemInfo Service;Futuremark SystemInfo Service;C:\Program Files (x86)\Common Files\Futuremark Shared\Futuremark SystemInfo\FMSISvc.exe [2010-5-14 128928]
S3 ha20x22k;Creative 20X2 HAL Driver;C:\Windows\System32\drivers\ha20x22k.sys [2009-7-14 1613336]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;E:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-1-21 51445112]
S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]
S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
S3 RTL8187;NETGEAR WG111v2 54Mbps Wireless USB 2.0 Adapter Vista Driver;C:\Windows\System32\drivers\wg111v2.sys [2010-4-26 340992]
S3 SaiH053C;SaiH053C;C:\Windows\System32\drivers\SaiH053C.sys [2007-5-1 171144]
S3 ScreamBAudioSvc;ScreamBee Audio;C:\Windows\System32\drivers\ScreamingBAudio64.sys [2010-7-1 38992]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;C:\Windows\System32\drivers\viahduaa.sys [2009-4-17 1250816]
S3 wacmoumonitor;Wacom Mode Helper;C:\Windows\System32\drivers\wacmoumonitor.sys [2011-1-9 18288]
S3 WsAudio_DeviceS(1);WsAudio_DeviceS(1);C:\Windows\System32\drivers\WsAudio_DeviceS(1).sys [2010-3-13 29288]
.
=============== Created Last 30 ================
.
2011-05-06 03:09:03 78848 ----a-w- C:\Windows\KMSEmulator.exe
2011-05-05 23:07:34 63488 ---ha-w- C:\Users\GOTT1R~1\AppData\Roaming\qofpy.exe
2011-05-05 23:04:05 64000 ---ha-w- C:\Users\GOTT1R~1\AppData\Roaming\ywmlh.exe
2011-05-05 23:02:55 64000 ---ha-w- C:\Users\GOTT1R~1\AppData\Roaming\dbwkm.exe
2011-05-04 19:43:28 222 ----a-w- C:\Users\GOTT1R~1\AppData\Roaming\Microsoft\svchost.exe~cache.bat
2011-05-04 07:57:56 0 ----a-w- C:\Users\GOTT1R~1\AppData\Roaming\bs.exe
2011-05-03 04:59:03 733184 ----a-w- C:\Users\GOTT1R~1\AppData\Roaming\clcjql.exe
2011-05-03 02:09:51 724992 ----a-w- C:\Users\GOTT1R~1\AppData\Roaming\ixbwui.exe
2011-05-03 01:00:51 602112 ----a-w- C:\Users\GOTT1R~1\AppData\Roaming\ypjduh.exe
2011-05-02 23:55:57 16384 ----a-w- C:\Users\GOTT1R~1\AppData\Roaming\login.exe
2011-05-02 23:55:53 724992 ----a-w- C:\Users\GOTT1R~1\AppData\Roaming\cxstbs.exe
2011-04-30 17:19:41 -------- d-----w- C:\Users\GOTT1R~1\AppData\Local\AMD
2011-04-30 17:16:18 -------- d-----w- C:\PROGRA~3\AMD
2011-04-30 16:31:42 -------- d-----w- C:\Program Files (x86)\AMD APP
2011-04-30 16:31:06 46136 ----a-w- C:\Windows\System32\drivers\amdiox64.sys
2011-04-14 01:59:14 59904 ----a-w- C:\Windows\SysWow64\OVDecode.dll
2011-04-14 01:59:02 51712 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2011-04-14 01:58:46 12385280 ----a-w- C:\Windows\SysWow64\amdocl.dll
2011-04-14 01:45:32 -------- d-----w- C:\Users\GOTT1R~1\AppData\Local\Arktos
2011-04-09 20:43:14 56732 ----a-w- C:\Windows\RFMaxPluginUninstall.exe
.
==================== Find3M ====================
.
2011-04-14 09:07:59 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2011-04-06 04:11:44 9323520 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2011-04-06 02:29:18 22623232 ----a-w- C:\Windows\System32\atio6axx.dll
2011-04-06 02:25:56 234768 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr
2011-04-06 02:09:50 61952 ----a-w- C:\Windows\System32\OVDecode64.dll
2011-04-06 02:09:34 53760 ----a-w- C:\Windows\System32\OpenCL.dll
2011-04-06 02:09:22 16116224 ----a-w- C:\Windows\System32\amdocl64.dll
2011-04-06 02:07:18 17469952 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2011-04-06 02:03:24 147456 ----a-w- C:\Windows\System32\atiapfxx.exe
2011-04-06 02:03:14 671744 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2011-04-06 02:02:00 788480 ----a-w- C:\Windows\System32\aticfx64.dll
2011-04-06 02:00:39 234768 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2011-04-06 01:59:32 462848 ----a-w- C:\Windows\System32\ATIDEMGX.dll
2011-04-06 01:59:24 480256 ----a-w- C:\Windows\System32\atieclxx.exe
2011-04-06 01:58:48 203776 ----a-w- C:\Windows\System32\atiesrxx.exe
2011-04-06 01:57:36 120320 ----a-w- C:\Windows\System32\atitmm64.dll
2011-04-06 01:57:20 423424 ----a-w- C:\Windows\System32\atipdl64.dll
2011-04-06 01:57:14 356352 ----a-w- C:\Windows\SysWow64\atipdlxx.dll
2011-04-06 01:57:02 278528 ----a-w- C:\Windows\SysWow64\Oemdspif.dll
2011-04-06 01:56:56 16384 ----a-w- C:\Windows\System32\atimuixx.dll
2011-04-06 01:56:52 59392 ----a-w- C:\Windows\System32\atiedu64.dll
2011-04-06 01:56:48 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll
2011-04-06 01:53:34 4307968 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2011-04-06 01:44:52 5086208 ----a-w- C:\Windows\System32\atidxx64.dll
2011-04-06 01:42:14 51200 ----a-w- C:\Windows\System32\aticalrt64.dll
2011-04-06 01:42:12 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2011-04-06 01:42:04 44544 ----a-w- C:\Windows\System32\aticalcl64.dll
2011-04-06 01:42:02 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2011-04-06 01:41:50 7467008 ----a-w- C:\Windows\System32\aticaldd64.dll
2011-04-06 01:38:50 6098432 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2011-04-06 01:35:00 4256768 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2011-04-06 01:34:38 1208320 ----a-w- C:\Windows\System32\atiumd6v.dll
2011-04-06 01:34:16 1912832 ----a-w- C:\Windows\SysWow64\atiumdmv.dll
2011-04-06 01:34:04 3421184 ----a-w- C:\Windows\System32\atiumd6a.dll
2011-04-06 01:29:00 5408256 ----a-w- C:\Windows\System32\atiumd64.dll
2011-04-06 01:28:02 58880 ----a-w- C:\Windows\System32\coinst.dll
2011-04-06 01:26:40 3631616 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2011-04-06 01:22:20 361984 ----a-w- C:\Windows\System32\atiadlxx.dll
2011-04-06 01:22:12 258048 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2011-04-06 01:22:04 14848 ----a-w- C:\Windows\System32\atig6pxx.dll
2011-04-06 01:22:00 12800 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2011-04-06 01:22:00 12800 ----a-w- C:\Windows\System32\atiglpxx.dll
2011-04-06 01:21:56 39936 ----a-w- C:\Windows\System32\atig6txx.dll
2011-04-06 01:21:50 32768 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2011-04-06 01:21:42 304128 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2011-04-06 01:20:58 40448 ----a-w- C:\Windows\System32\atiuxp64.dll
2011-04-06 01:20:52 31232 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2011-04-06 01:20:46 38912 ----a-w- C:\Windows\System32\atiu9p64.dll
2011-04-06 01:20:38 29184 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2011-04-06 01:20:04 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
2011-04-06 01:13:22 53760 ----a-w- C:\Windows\System32\atimpc64.dll
2011-04-06 01:13:22 53760 ----a-w- C:\Windows\System32\amdpcom64.dll
2011-04-06 01:13:16 52736 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2011-04-06 01:13:16 52736 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
2011-04-05 23:19:53 75136 ----a-w- C:\Windows\SysWow64\PnkBstrA.exe
2011-04-02 21:07:04 8192 ----a-w- C:\Windows\SysWow64\gsimrxnp.dll
2011-04-02 21:07:04 49024 ----a-w- C:\Windows\inf\gsiata.sys
2011-04-02 21:07:03 92160 ----a-w- C:\Windows\SysWow64\enhkey.dll
2011-03-31 21:48:38 86016 ----a-w- C:\Windows\SysWow64\frapsvid.dll
2011-03-31 21:48:36 84992 ----a-w- C:\Windows\System32\frapsv64.dll
2011-03-24 12:02:22 230352 ----a-w- C:\Windows\System32\drivers\truecrypt.sys
2011-02-24 17:20:53 647168 ----a-w- C:\Windows\AutoKMS.exe
2003-11-03 21:07:06 499712 ----a-w- C:\Program Files (x86)\msvcp71.dll
2003-11-03 21:07:06 348160 ----a-w- C:\Program Files (x86)\msvcr71.dll
2003-05-30 13:22:06 344064 ----a-r- C:\Program Files (x86)\msvcr70.dll
2002-01-05 07:40:18 487424 ----a-w- C:\Program Files (x86)\msvcp70.dll
.
============= FINISH: 23:33:24.14 ===============