DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421
Run by Will Reed-Green Clea at 20:53:16 on 2012-09-20
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.16333.10881 [GMT -6:00]
.
AV: avast! Antivirus *Enabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Enabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe
C:\Windows\system32\atiesrxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Program Files\AVAST Software\Avast\AvastSvc.exe
C:\Windows\system32\atieclxx.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Users\Will Reed-Green Clea\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe
C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
C:\Program Files\Intel\iCLS Client\HeciServer.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
C:\Program Files (x86)\Trusteer\Rapport\bin\RapportService.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
C:\VIA_XHCI\usb3Monitor.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
D:\Program Files (x86)\Steam\Steam.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
C:\Program Files (x86)\Thermaltake\Tt eSPORTS BLACK Element\BlackElement.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
D:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Searchqu Toolbar\Datamngr\datamngrUI.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Common Files\Steam\SteamService.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_4_402_265_ActiveX.exe
C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn1\ytbb.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Windows\system32\wuauclt.exe
C:\Windows\system32\taskhost.exe
D:\Program Files (x86)\Mozilla Firefox\firefox.exe
D:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_4_402_265.exe
D:\Program Files (x86)\iTunes\iTunes.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceHelper.exe
C:\Windows\system32\conhost.exe
C:\Program Files (x86)\Common Files\Apple\Apple Application Support\distnoted.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\NOTEPAD.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\DllHost.exe
C:\Windows\system32\DllHost.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.optionshouse.com/
mStart Page = hxxp://start.funmoods.com/?f=1&a=adknlg ... 1509737446
uInternet Settings,ProxyOverride = *.local
uURLSearchHooks: FCToolbarURLSearchHook Class: {c111c814-fd58-0a04-3924-998b53830e29} - C:\Program Files (x86)\Shop to Win 29\Helper.dll
uURLSearchHooks: H - No File
mWinlogon: Userinit=userinit.exe
BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn1\yt.dll
BHO: Shopping Assistant Plugin: {1631550f-191d-4826-b069-d9439253d926} - C:\Program Files (x86)\PriceGong\2.6.4\PriceGongIE.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Qwiklinx: {3e7c8b5a-96ab-438f-bf9b-782400655440} - C:\Users\Will Reed-Green Clea\AppData\Roaming\Qwiklinx\Qwiklinx.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
BHO: Shop to Win: {5abd6c72-ffd7-b634-a92b-d77d5960e009} - C:\Program Files (x86)\Shop to Win 29\Shop to Win 29.dll
BHO: Funmoods Helper Object: {75ebb0aa-4214-4cb4-90ec-e3e07ecd04f7} - C:\PROGRA~2\Funmoods\1.5.23.22\bh\escort.dll
BHO: DefaultTab Browser Helper: {7f6afbf1-e065-4627-a2fd-810366367d01} - C:\Users\Will Reed-Green Clea\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll
BHO: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO: Searchqu Toolbar: {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll
BHO: DataMngr: {9d717f81-9148-4f12-8568-69135f087db0} - C:\PROGRA~2\SEARCH~1\Datamngr\BROWSE~1.DLL
BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
TB: Funmoods Toolbar: {a4c272ec-ed9e-4ace-a6f2-9558c7f29ef3} - C:\PROGRA~2\Funmoods\1.5.23.22\escorTlbr.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn1\yt.dll
TB: Searchqu Toolbar: {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll
TB: avast! WebRep: {8e5e2654-ad2d-48bf-ac2d-d17f00898d06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
uRun: [Steam] "D:\Program Files (x86)\Steam\Steam.exe" -silent
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe
mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
mRun: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [Tt eSPORTS BLACK Element Gaming Mouse] "C:\Program Files (x86)\Thermaltake\Tt eSPORTS BLACK Element\BlackElement.exe" /Automation
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [iTunesHelper] "D:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [DATAMNGR] C:\PROGRA~2\SEARCH~1\Datamngr\DATAMN~1.EXE
mRun: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRunOnce: [EasyTuneVI] C:\Program Files (x86)\GIGABYTE\ET6\ETCall.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://fpdownload.macromedia.com/get/s ... wflash.cab
TCP: DhcpNameServer = 69.145.248.4 69.146.17.2 69.144.49.29
TCP: Interfaces\{8EFC7F4F-768D-462E-A7E2-09C2EF707DF2} : DhcpNameServer = 69.145.248.4 69.146.17.2 69.144.49.29
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
AppInit_DLLs: C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll
BHO-X64: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn1\yt.dll
BHO-X64: 0x1 - No File
BHO-X64: Shopping Assistant Plugin: {1631550F-191D-4826-B069-D9439253D926} - C:\Program Files (x86)\PriceGong\2.6.4\PriceGongIE.dll
BHO-X64: PriceGong - No File
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: Qwiklinx: {3E7C8B5A-96AB-438F-BF9B-782400655440} - C:\Users\Will Reed-Green Clea\AppData\Roaming\Qwiklinx\Qwiklinx.dll
BHO-X64: Qwiklinx - No File
BHO-X64: Spybot-S&D IE Protection: {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll
BHO-X64: Shop to Win: {5ABD6C72-FFD7-B634-A92B-D77D5960E009} - C:\Program Files (x86)\Shop to Win 29\Shop to Win 29.dll
BHO-X64: FCTBPos00Pos - No File
BHO-X64: Funmoods Helper Object: {75EBB0AA-4214-4CB4-90EC-E3E07ECD04F7} - C:\PROGRA~2\Funmoods\1.5.23.22\bh\escort.dll
BHO-X64: Funmoods Helper Object - No File
BHO-X64: DefaultTab Browser Helper: {7F6AFBF1-E065-4627-A2FD-810366367D01} - C:\Users\Will Reed-Green Clea\AppData\Roaming\DefaultTab\DefaultTab\DefaultTabBHO.dll
BHO-X64: DefaultTabBHO - No File
BHO-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
BHO-X64: Searchqu Toolbar: {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll
BHO-X64: Searchqu Toolbar - No File
BHO-X64: DataMngr: {9D717F81-9148-4f12-8568-69135F087DB0} - C:\PROGRA~2\SEARCH~1\Datamngr\BROWSE~1.DLL
BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
BHO-X64: URLRedirectionBHO - No File
TB-X64: Funmoods Toolbar: {A4C272EC-ED9E-4ACE-A6F2-9558C7F29EF3} - C:\PROGRA~2\Funmoods\1.5.23.22\escorTlbr.dll
TB-X64: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn1\yt.dll
TB-X64: Searchqu Toolbar: {99079a25-328f-4bd4-be04-00955acaa0a7} - C:\PROGRA~2\SEARCH~1\Datamngr\ToolBar\searchqudtx.dll
TB-X64: avast! WebRep: {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
mRun-x64: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
mRun-x64: [USB3MON] "C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe"
mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun-x64: [Tt eSPORTS BLACK Element Gaming Mouse] "C:\Program Files (x86)\Thermaltake\Tt eSPORTS BLACK Element\BlackElement.exe" /Automation
mRun-x64: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun-x64: [iTunesHelper] "D:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [DATAMNGR] C:\PROGRA~2\SEARCH~1\Datamngr\DATAMN~1.EXE
mRun-x64: [avast] "C:\Program Files\AVAST Software\Avast\avastUI.exe" /nogui
mRunOnce-x64: [EasyTuneVI] C:\Program Files (x86)\GIGABYTE\ET6\ETCall.exe
AppInit_DLLs-X64: C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll
Hosts: 127.0.0.1 www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Will Reed-Green Clea\AppData\Roaming\Mozilla\Firefox\Profiles\8hpfyfg2.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://us.mg6.mail.yahoo.com/neo/launch ... ebook.com/
FF - prefs.js: keyword.URL - hxxp://dts.search-results.com/sr?src=ff ... 06&sr=0&q=
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
FF - plugin: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.123\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll
FF - plugin: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_265.dll
FF - plugin: D:\Program Files (x86)\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL
FF - plugin: D:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
.
---- FIREFOX POLICIES ----
FF - user.js: extensions.funmoods.hmpg - true
FF - user.js: extensions.funmoods.hmpgUrl - hxxp://start.funmoods.com/?f=1&a=adknlg ... 1509737446
FF - user.js: extensions.funmoods.dfltSrch - true
FF - user.js: extensions.funmoods.srchPrvdr - Search
FF - user.js: extensions.funmoods.dnsErr - true
FF - user.js: extensions.funmoods_i.newTab - true
FF - user.js: extensions.funmoods.newTabUrl - hxxp://start.funmoods.com/?f=2&a=adknlg ... 1509737446
FF - user.js: extensions.funmoods.tlbrSrchUrl - hxxp://start.funmoods.com/?f=3&a=adknlg ... 9737446&q=
FF - user.js: extensions.funmoods.id - 902B345231CC5951
FF - user.js: extensions.funmoods.instlDay - 15596
FF - user.js: extensions.funmoods.vrsn - 1.5.23.22
FF - user.js: extensions.funmoods.vrsni - 1.5.23.22
FF - user.js: extensions.funmoods_i.vrsnTs - 1.5.23.229:19:47
FF - user.js: extensions.funmoods.prtnrId - funmoods
FF - user.js: extensions.funmoods.prdct - funmoods
FF - user.js: extensions.funmoods.aflt - adknlg
FF - user.js: extensions.funmoods_i.smplGrp - none
FF - user.js: extensions.funmoods.tlbrId - base
FF - user.js: extensions.funmoods.instlRef - adknlg
FF - user.js: extensions.funmoods.dfltLng -
FF - user.js: extensions.funmoods.excTlbr - false
FF - user.js: extensions.funmoods.autoRvrt - false
FF - user.js: extensions.funmoods.envrmnt - production
FF - user.js: extensions.funmoods.isdcmntcmplt - true
FF - user.js: extensions.funmoods.mntrvrsn - 1.3.0
user_pref('extensions.autoDisableScopes', 0);user_pref('security.csp.enable', false);user_pref('security.OCSP.enabled', 0);
============= SERVICES / DRIVERS ===============
.
R0 iusb3hcs;Intel(R) USB 3.0 Host Controller Switch Driver;C:\Windows\system32\DRIVERS\iusb3hcs.sys --> C:\Windows\system32\DRIVERS\iusb3hcs.sys [?]
R0 RapportKE64;RapportKE64;C:\Windows\system32\Drivers\RapportKE64.sys --> C:\Windows\system32\Drivers\RapportKE64.sys [?]
R1 AppleCharger;AppleCharger;C:\Windows\system32\DRIVERS\AppleCharger.sys --> C:\Windows\system32\DRIVERS\AppleCharger.sys [?]
R1 aswSnx;aswSnx;C:\Windows\system32\drivers\aswSnx.sys --> C:\Windows\system32\drivers\aswSnx.sys [?]
R1 aswSP;aswSP;C:\Windows\system32\drivers\aswSP.sys --> C:\Windows\system32\drivers\aswSP.sys [?]
R1 RapportCerberus_42020;RapportCerberus_42020;C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus64_42020.sys [2012-9-19 397720]
R1 RapportEI64;RapportEI64;C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportEI64.sys [2012-9-7 55096]
R1 RapportPG64;RapportPG64;C:\Program Files (x86)\Trusteer\Rapport\bin\x64\RapportPG64.sys [2012-9-7 297240]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-7-27 63960]
R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\system32\atiesrxx.exe --> C:\Windows\system32\atiesrxx.exe [?]
R2 aswFsBlk;aswFsBlk;C:\Windows\system32\drivers\aswFsBlk.sys --> C:\Windows\system32\drivers\aswFsBlk.sys [?]
R2 aswMonFlt;aswMonFlt;\??\C:\Windows\system32\drivers\aswMonFlt.sys --> C:\Windows\system32\drivers\aswMonFlt.sys [?]
R2 avast! Antivirus;avast! Antivirus;C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2012-9-14 44808]
R2 DefaultTabUpdate;DefaultTabUpdate;C:\Users\Will Reed-Green Clea\AppData\Roaming\DefaultTab\DefaultTab\DTUpdate.exe [2012-9-13 107520]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-9-12 13592]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;C:\Program Files\Intel\iCLS Client\HeciServer.exe [2011-12-8 607456]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe [2012-9-12 161560]
R2 RapportMgmtService;Rapport Management Service;C:\Program Files (x86)\Trusteer\Rapport\bin\RapportMgmtService.exe [2012-9-7 976728]
R2 SBSDWSCService;SBSD Security Center Service;C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2012-9-13 1153368]
R2 UNS;Intel(R) Management and Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-9-12 363800]
R3 amdkmdag;amdkmdag;C:\Windows\system32\DRIVERS\atikmdag.sys --> C:\Windows\system32\DRIVERS\atikmdag.sys [?]
R3 amdkmdap;amdkmdap;C:\Windows\system32\DRIVERS\atikmpag.sys --> C:\Windows\system32\DRIVERS\atikmpag.sys [?]
R3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-9-12 160256]
R3 iusb3hub;Intel(R) USB 3.0 Hub Driver;C:\Windows\system32\DRIVERS\iusb3hub.sys --> C:\Windows\system32\DRIVERS\iusb3hub.sys [?]
R3 iusb3xhc;Intel(R) USB 3.0 eXtensible Host Controller Driver;C:\Windows\system32\DRIVERS\iusb3xhc.sys --> C:\Windows\system32\DRIVERS\iusb3xhc.sys [?]
R3 MEIx64;Intel(R) Management Engine Interface ;C:\Windows\system32\DRIVERS\HECIx64.sys --> C:\Windows\system32\DRIVERS\HECIx64.sys [?]
R3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\system32\DRIVERS\Rt64win7.sys --> C:\Windows\system32\DRIVERS\Rt64win7.sys [?]
R3 Thermnaltake MS2 Filter;Thermnaltake MS2 Filter;C:\Windows\System32\drivers\MS2Filter.sys [2012-9-12 31360]
R3 VUSB3HUB;VIA USB 3 Root Hub Service;C:\Windows\system32\DRIVERS\ViaHub3.sys --> C:\Windows\system32\DRIVERS\ViaHub3.sys [?]
R3 xhcdrv;VIA USB eXtensible Host Controller Service;C:\Windows\system32\DRIVERS\xhcdrv.sys --> C:\Windows\system32\DRIVERS\xhcdrv.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-9-14 136176]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service;C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-9-12 250568]
S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe --> system32\AppleChargerSrv.exe [?]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-9-14 136176]
S3 GVTDrv64;GVTDrv64;C:\Windows\GVTDrv64.sys [2012-9-12 30528]
S3 MozillaMaintenance;Mozilla Maintenance Service;C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2012-9-12 113120]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\system32\drivers\tsusbflt.sys --> C:\Windows\system32\drivers\tsusbflt.sys [?]
S3 TsUsbGD;Remote Desktop Generic USB Device;C:\Windows\system32\drivers\TsUsbGD.sys --> C:\Windows\system32\drivers\TsUsbGD.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
.
=============== Created Last 30 ================
.
2012-09-20 03:31:20 -------- d-sh--w- C:\Windows\SysWow64\%APPDATA%
2012-09-19 18:21:06 -------- d-----w- C:\Windows\PCHEALTH
2012-09-19 18:19:53 -------- d-----w- C:\Program Files (x86)\Microsoft Analysis Services
2012-09-19 18:19:36 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\Microsoft Help
2012-09-19 13:26:53 101688 ----a-w- C:\Windows\System32\drivers\RapportKE64.sys
2012-09-19 13:26:48 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\Trusteer
2012-09-19 13:26:47 -------- d-----w- C:\Program Files (x86)\Trusteer
2012-09-19 13:26:19 -------- d-----w- C:\ProgramData\Trusteer
2012-09-18 13:21:02 9310152 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E43D1389-44AB-4944-8889-011B21C70C80}\mpengine.dll
2012-09-17 21:00:57 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\Ilivid Player
2012-09-15 21:58:18 -------- d-----w- C:\ProgramData\Stardock
2012-09-15 21:58:18 -------- d-----w- C:\ProgramData\Ironclad Games
2012-09-14 09:00:17 552960 ----a-w- C:\Windows\System32\drivers\bthport.sys
2012-09-14 07:34:34 969200 ----a-w- C:\Windows\System32\drivers\aswSnx.sys
2012-09-14 07:34:34 71600 ----a-w- C:\Windows\System32\drivers\aswMonFlt.sys
2012-09-14 07:34:34 54072 ----a-w- C:\Windows\System32\drivers\aswRdr2.sys
2012-09-14 07:34:27 41224 ----a-w- C:\Windows\avastSS.scr
2012-09-14 07:34:21 -------- d-----w- C:\ProgramData\AVAST Software
2012-09-14 07:34:21 -------- d-----w- C:\Program Files\AVAST Software
2012-09-14 00:20:07 -------- d-----w- C:\ProgramData\boost_interprocess
2012-09-14 00:20:07 -------- d-----w- C:\Program Files (x86)\Searchqu Toolbar
2012-09-13 21:32:08 96768 ----a-w- C:\Windows\System32\fsutil.exe
2012-09-13 21:32:08 74240 ----a-w- C:\Windows\SysWow64\fsutil.exe
2012-09-13 21:32:08 410496 ----a-w- C:\Windows\System32\drivers\iaStorV.sys
2012-09-13 21:32:08 27008 ----a-w- C:\Windows\System32\drivers\amdxata.sys
2012-09-13 21:32:08 2565632 ----a-w- C:\Windows\System32\esent.dll
2012-09-13 21:32:08 189824 ----a-w- C:\Windows\System32\drivers\storport.sys
2012-09-13 21:32:08 1699328 ----a-w- C:\Windows\SysWow64\esent.dll
2012-09-13 21:32:08 166272 ----a-w- C:\Windows\System32\drivers\nvstor.sys
2012-09-13 21:32:08 1659776 ----a-w- C:\Windows\System32\drivers\ntfs.sys
2012-09-13 21:32:08 148352 ----a-w- C:\Windows\System32\drivers\nvraid.sys
2012-09-13 21:32:08 107904 ----a-w- C:\Windows\System32\drivers\amdsata.sys
2012-09-13 21:13:14 98816 ----a-w- C:\Windows\System32\drivers\usbccgp.sys
2012-09-13 21:13:14 7936 ----a-w- C:\Windows\System32\drivers\usbd.sys
2012-09-13 21:13:14 52736 ----a-w- C:\Windows\System32\drivers\usbehci.sys
2012-09-13 21:13:14 343040 ----a-w- C:\Windows\System32\drivers\usbhub.sys
2012-09-13 21:13:14 325120 ----a-w- C:\Windows\System32\drivers\usbport.sys
2012-09-13 21:13:14 30720 ----a-w- C:\Windows\System32\drivers\usbuhci.sys
2012-09-13 21:13:14 25600 ----a-w- C:\Windows\System32\drivers\usbohci.sys
2012-09-13 21:12:37 80384 ----a-w- C:\Windows\System32\drivers\BTHUSB.SYS
2012-09-13 18:44:07 -------- d-----w- C:\Program Files (x86)\Yahoo!
2012-09-13 16:11:33 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2012-09-13 16:11:33 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy
2012-09-13 16:02:42 -------- d-----w- C:\Program Files\Enigma Software Group
2012-09-13 16:02:30 -------- d-----w- C:\Windows\8C5C34C7BC6B48318B2C6535FE63E502.TMP
2012-09-13 16:02:29 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
2012-09-13 15:23:01 87040 ----a-w- C:\Windows\System32\pdfcmnnt.dll
2012-09-13 15:23:01 662288 ----a-w- C:\Windows\SysWow64\MSCOMCT2.OCX
2012-09-13 15:23:01 137000 ----a-w- C:\Windows\SysWow64\MSMAPI32.OCX
2012-09-13 15:23:00 23552 ----a-w- C:\Windows\SysWow64\MSMPIDE.DLL
2012-09-13 15:23:00 -------- d-----w- C:\Program Files (x86)\PDFCreator
2012-09-13 15:21:58 -------- d-----w- C:\Program Files (x86)\PriceGong
2012-09-13 15:21:43 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Roaming\DefaultTab
2012-09-13 15:20:50 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Roaming\Qwiklinx
2012-09-13 15:20:50 -------- d-----w- C:\Program Files (x86)\Qwiklinx
2012-09-13 15:20:49 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Roaming\Shop to Win 29
2012-09-13 15:20:48 -------- d-----w- C:\Program Files (x86)\Shop to Win 29
2012-09-13 15:19:52 -------- d-----w- C:\Program Files (x86)\OApps
2012-09-13 15:19:49 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\Google
2012-09-13 03:40:40 -------- d--h--w- C:\ProgramData\CanonIJSolutionMenu
2012-09-13 03:28:59 -------- d--h--w- C:\ProgramData\CanonIJMyPrinter
2012-09-13 03:28:54 -------- d-----w- C:\ProgramData\CanonIJPLM
2012-09-13 03:27:30 -------- d-----w- C:\Program Files\Canon
2012-09-13 03:26:32 251904 ----a-w- C:\Windows\System32\CNMN6PPM.DLL
2012-09-13 03:26:32 152064 ----a-w- C:\Windows\System32\CNMN6UI.DLL
2012-09-13 03:24:59 92672 ----a-w- C:\Windows\System32\CNC860I.DLL
2012-09-13 03:24:59 299520 ----a-w- C:\Windows\System32\CNC860L.DLL
2012-09-13 03:24:59 235008 ----a-w- C:\Windows\System32\CNC860O.DLL
2012-09-13 03:24:59 17920 ----a-w- C:\Windows\System32\CNHMCA6.DLL
2012-09-13 03:24:59 1342976 ----a-w- C:\Windows\System32\CNC860C.DLL
2012-09-13 03:19:00 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\Adobe
2012-09-13 02:16:08 -------- d-----w- C:\Program Files (x86)\Common Files\Steam
2012-09-13 01:57:36 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\Macromedia
2012-09-13 01:57:27 73416 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-09-13 01:57:27 696520 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-09-13 01:41:48 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\Mozilla
2012-09-13 01:41:45 -------- d-----w- C:\Program Files (x86)\Mozilla Maintenance Service
2012-09-13 01:39:03 57072 ----a-w- C:\Windows\System32\drivers\MS2Filter.sys
2012-09-13 01:39:03 31360 ----a-w- C:\Windows\SysWow64\drivers\MS2Filter.sys
2012-09-13 01:39:02 -------- d-----w- C:\Program Files (x86)\Thermaltake
2012-09-13 01:38:56 749568 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iKernel.dll
2012-09-13 01:38:56 69715 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\ctor.dll
2012-09-13 01:38:56 5632 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\DotNetInstaller.exe
2012-09-13 01:38:56 323716 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\setup.dll
2012-09-13 01:38:56 274432 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iscript.dll
2012-09-13 01:38:56 192644 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iGdi.dll
2012-09-13 01:38:56 180224 ----a-w- C:\Program Files (x86)\Common Files\InstallShield\Professional\RunTime\10\50\Intel32\iuser.dll
2012-09-13 01:28:27 -------- d-----w- C:\Windows\SysWow64\Wat
2012-09-13 01:28:27 -------- d-----w- C:\Windows\System32\Wat
2012-09-13 01:28:14 902656 ----a-w- C:\Windows\System32\d2d1.dll
2012-09-13 01:28:14 739840 ----a-w- C:\Windows\SysWow64\d2d1.dll
2012-09-13 01:28:14 1139200 ----a-w- C:\Windows\System32\FntCache.dll
2012-09-13 01:15:53 -------- d-----w- C:\Windows\Panther
2012-09-13 01:07:13 81408 ----a-w- C:\Windows\System32\imagehlp.dll
2012-09-13 01:07:13 5120 ----a-w- C:\Windows\SysWow64\wmi.dll
2012-09-13 01:07:13 5120 ----a-w- C:\Windows\System32\wmi.dll
2012-09-13 01:07:13 23408 ----a-w- C:\Windows\System32\drivers\fs_rec.sys
2012-09-13 01:07:13 220672 ----a-w- C:\Windows\System32\wintrust.dll
2012-09-13 01:07:13 172544 ----a-w- C:\Windows\SysWow64\wintrust.dll
2012-09-13 01:07:13 159232 ----a-w- C:\Windows\SysWow64\imagehlp.dll
2012-09-13 01:05:50 956928 ----a-w- C:\Windows\System32\localspl.dll
2012-09-13 01:04:08 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\WindowsUpdate
2012-09-13 01:02:41 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Local\ATI
2012-09-13 01:02:22 0 ----a-w- C:\Windows\ativpsrm.bin
2012-09-13 01:01:48 -------- d-----w- C:\Program Files\Common Files\ATI Technologies
2012-09-13 01:01:48 -------- d-----w- C:\Program Files (x86)\Common Files\ATI Technologies
2012-09-13 01:01:48 -------- d-----w- C:\Program Files (x86)\AMD APP
2012-09-13 01:01:40 -------- d-----w- C:\Program Files (x86)\ATI Technologies
2012-09-13 01:01:35 -------- d-----w- C:\Program Files\ATI Technologies
2012-09-13 01:01:32 -------- d-----w- C:\Program Files\ATI
2012-09-13 01:00:57 -------- d-----w- C:\AMD
2012-09-13 00:56:38 -------- d-----w- C:\Users\Will Reed-Green Clea\AppData\Roaming\Intel Corporation
2012-09-13 00:56:14 -------- d-----w- C:\Program Files (x86)\Common Files\Intel Corporation
2012-09-13 00:55:51 30528 ----a-w- C:\Windows\GVTDrv64.sys
2012-09-13 00:55:34 25640 ----a-w- C:\Windows\gdrv.sys
2012-09-13 00:48:22 -------- d-----w- C:\Program Files (x86)\AMD
2012-09-13 00:42:36 254464 ----a-r- C:\Windows\System32\drivers\xhcdrv.sys
2012-09-13 00:41:54 568600 ----a-w- C:\Windows\System32\drivers\iaStor.sys
2012-09-13 00:41:11 646248 ----a-w- C:\Windows\System32\drivers\Rt64win7.sys
2012-09-13 00:41:10 74272 ----a-w- C:\Windows\System32\RtNicProp64.dll
2012-09-13 00:41:10 107552 ----a-w- C:\Windows\System32\RTNUninst64.dll
2012-09-13 00:39:59 200800 ----a-w- C:\Windows\System32\AERTAC64.dll
.
==================== Find3M ====================
.
2012-08-22 18:12:50 1913200 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2012-08-22 18:12:40 950128 ----a-w- C:\Windows\System32\drivers\ndis.sys
2012-08-22 18:12:40 376688 ----a-w- C:\Windows\System32\drivers\netio.sys
2012-08-22 18:12:33 288624 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2012-08-21 19:01:20 33240 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
2012-08-21 19:01:20 125872 ----a-w- C:\Windows\System32\GEARAspi64.dll
2012-08-21 19:01:20 106928 ----a-w- C:\Windows\SysWow64\GEARAspi.dll
2012-08-02 17:58:52 574464 ----a-w- C:\Windows\System32\d3d10level9.dll
2012-08-02 16:57:20 490496 ----a-w- C:\Windows\SysWow64\d3d10level9.dll
2012-07-28 04:47:40 187392 ----a-w- C:\Windows\System32\clinfo.exe
2012-07-28 04:47:24 75776 ----a-w- C:\Windows\System32\OpenVideo64.dll
2012-07-28 04:47:16 65024 ----a-w- C:\Windows\SysWow64\OpenVideo.dll
2012-07-28 04:47:10 63488 ----a-w- C:\Windows\System32\OVDecode64.dll
2012-07-28 04:47:06 56320 ----a-w- C:\Windows\SysWow64\OVDecode.dll
2012-07-28 04:46:56 16464896 ----a-w- C:\Windows\System32\amdocl64.dll
2012-07-28 04:46:06 13013504 ----a-w- C:\Windows\SysWow64\amdocl.dll
2012-07-28 04:44:56 54784 ----a-w- C:\Windows\System32\OpenCL.dll
2012-07-28 04:44:42 50176 ----a-w- C:\Windows\SysWow64\OpenCL.dll
2012-07-28 04:09:20 5538984 ----a-w- C:\Windows\SysWow64\atiumdag.dll
2012-07-28 04:07:44 10278912 ----a-w- C:\Windows\System32\drivers\atikmdag.sys
2012-07-28 03:43:12 70144 ----a-w- C:\Windows\System32\coinst_8.982.dll
2012-07-28 03:19:34 24935424 ----a-w- C:\Windows\System32\atio6axx.dll
2012-07-28 02:50:10 20546560 ----a-w- C:\Windows\SysWow64\atioglxx.dll
2012-07-28 02:15:50 163840 ----a-w- C:\Windows\System32\atiapfxx.exe
2012-07-28 02:15:42 931328 ----a-w- C:\Windows\SysWow64\aticfx32.dll
2012-07-28 02:13:56 1100288 ----a-w- C:\Windows\System32\aticfx64.dll
2012-07-28 02:10:40 442368 ----a-w- C:\Windows\System32\ATIDEMGX.dll
2012-07-28 02:10:34 534528 ----a-w- C:\Windows\System32\atieclxx.exe
2012-07-28 02:09:44 239616 ----a-w- C:\Windows\System32\atiesrxx.exe
2012-07-28 02:08:20 120320 ----a-w- C:\Windows\System32\atitmm64.dll
2012-07-28 02:08:04 21504 ----a-w- C:\Windows\System32\atimuixx.dll
2012-07-28 02:07:58 59392 ----a-w- C:\Windows\System32\atiedu64.dll
2012-07-28 02:07:52 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll
2012-07-28 02:07:10 6430208 ----a-w- C:\Windows\SysWow64\atidxx32.dll
2012-07-28 01:51:12 7052288 ----a-w- C:\Windows\System32\atidxx64.dll
2012-07-28 01:41:32 4266496 ----a-w- C:\Windows\System32\atiumd6a.dll
2012-07-28 01:35:10 51200 ----a-w- C:\Windows\System32\aticalrt64.dll
2012-07-28 01:35:08 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll
2012-07-28 01:35:02 44544 ----a-w- C:\Windows\System32\aticalcl64.dll
2012-07-28 01:35:00 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll
2012-07-28 01:34:48 16034304 ----a-w- C:\Windows\System32\aticaldd64.dll
2012-07-28 01:32:32 4751872 ----a-w- C:\Windows\SysWow64\atiumdva.dll
2012-07-28 01:30:10 13605888 ----a-w- C:\Windows\SysWow64\aticaldd.dll
2012-07-28 01:25:52 6676480 ----a-w- C:\Windows\System32\atiumd64.dll
2012-07-28 01:22:36 77312 ----a-w- C:\Windows\System32\amdave64.dll
2012-07-28 01:22:28 77312 ----a-w- C:\Windows\SysWow64\amdave32.dll
2012-07-28 01:22:16 74240 ----a-w- C:\Windows\System32\atisamu64.dll
2012-07-28 01:22:10 71168 ----a-w- C:\Windows\atisamu32.dll
2012-07-28 01:15:32 540160 ----a-w- C:\Windows\System32\atiadlxx.dll
2012-07-28 01:15:22 368640 ----a-w- C:\Windows\SysWow64\atiadlxy.dll
2012-07-28 01:15:12 17920 ----a-w- C:\Windows\System32\atig6pxx.dll
2012-07-28 01:15:08 14848 ----a-w- C:\Windows\SysWow64\atiglpxx.dll
2012-07-28 01:15:08 14848 ----a-w- C:\Windows\System32\atiglpxx.dll
2012-07-28 01:15:04 41984 ----a-w- C:\Windows\System32\atig6txx.dll
2012-07-28 01:14:56 33280 ----a-w- C:\Windows\SysWow64\atigktxx.dll
2012-07-28 01:14:46 368640 ----a-w- C:\Windows\System32\drivers\atikmpag.sys
2012-07-28 01:13:54 129536 ----a-w- C:\Windows\System32\atiuxp64.dll
2012-07-28 01:13:48 109568 ----a-w- C:\Windows\SysWow64\atiuxpag.dll
2012-07-28 01:13:40 103936 ----a-w- C:\Windows\System32\atiu9p64.dll
2012-07-28 01:13:32 83456 ----a-w- C:\Windows\SysWow64\atiu9pag.dll
2012-07-28 01:12:54 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll
2012-07-28 01:08:42 56320 ----a-w- C:\Windows\System32\atimpc64.dll
2012-07-28 01:08:42 56320 ----a-w- C:\Windows\System32\amdpcom64.dll
2012-07-28 01:08:36 56832 ----a-w- C:\Windows\SysWow64\atimpc32.dll
2012-07-28 01:08:36 56832 ----a-w- C:\Windows\SysWow64\amdpcom32.dll
2012-07-18 18:15:06 3148800 ----a-w- C:\Windows\System32\win32k.sys
2012-07-04 22:13:27 59392 ----a-w- C:\Windows\System32\browcli.dll
2012-07-04 22:13:27 136704 ----a-w- C:\Windows\System32\browser.dll
2012-07-04 21:14:34 41984 ----a-w- C:\Windows\SysWow64\browcli.dll
2012-07-04 20:26:03 41472 ----a-w- C:\Windows\System32\drivers\RNDISMP.sys
.
============= FINISH: 20:53:38.15 ===============