. DDS (Ver_2011-08-26.01) - NTFSx86 Internet Explorer: 9.0.8112.16421 Run by [removed] at 21:17:37 on 2012-05-20 Microsoft� Windows Vista� Home Premium 6.0.6002.2.1252.1.1033.18.3069.780 [GMT -4:00] . SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . ============== Running Processes =============== . C:\PROGRA~1\AVG\AVG2012\avgrsx.exe C:\Program Files\AVG\AVG2012\avgcsrvx.exe C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k rpcss C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k GPSvcGroup C:\Windows\system32\SLsvc.exe C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\atieclxx.exe C:\Windows\system32\WUDFHost.exe C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\WLANExt.exe C:\Windows\System32\spoolsv.exe C:\Program Files\SUPERAntiSpyware\SASCORE.EXE C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe C:\Program Files\AVG\AVG2012\avgfws.exe C:\Program Files\AVG\AVG2012\avgwdsvc.exe C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe C:\Program Files\Bonjour\mDNSResponder.exe C:\Windows\system32\svchost.exe -k bthsvcs C:\Windows\system32\dldocoms.exe C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork C:\Program Files\Common Files\Intel\IntelDH\NMS\AdpPlugins\DQLWinService.exe C:\Program Files\Disk Speedup\DSUDefragSrv.exe C:\Program Files\Common Files\Motive\McciCMService.exe C:\Windows\system32\msiexec.exe C:\Program Files\AVG\AVG2012\avgnsx.exe C:\Program Files\Common Files\Intel\IntelDH\NMS\NMSCore\NMSCore.exe C:\Windows\system32\taskeng.exe C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\qualitymanager.exe C:\Windows\system32\Dwm.exe C:\Program Files\DriverUpdate\DriverUpdate.exe C:\Windows\Explorer.EXE C:\Program Files\FixCleaner\FixCleaner.exe C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\TomTom HOME 22\TomTomHOMEService.exe C:\Program Files\Common Files\Authentium\AntiVirus5\vsedsps.exe C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\10.2.0\ToolbarUpdater.exe C:\Windows\system32\SearchIndexer.exe C:\Windows\system32\WUDFHost.exe C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\ISSM.exe C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\MCLServiceATL.exe C:\Program Files\Common Files\Authentium\AntiVirus5\vseamps.exe C:\Program Files\AVG\AVG2012\AVGIDSAgent.exe C:\Program Files\Windows Media Player\WMPSideShowGadget.exe C:\Program Files\Zune\ZuneLauncher.exe C:\Program Files\XPSMiniViewGadget\XPSMiniViewGadget.exe C:\Windows\system32\taskeng.exe C:\Program Files\iolo\Common\Lib\ioloServiceManager.exe C:\Windows\System32\mobsync.exe C:\Program Files\AVG Secure Search\vprot.exe C:\Program Files\Common Files\Intel\IntelDH\NMS\Support\IntelHCTAgent.exe C:\Program Files\Dell 968 AIO Printer\memcard.exe C:\Program Files\Intel\IntelDH\Intel Media Server\Media Server\bin\mediaserver.exe C:\Program Files\Microsoft IntelliPoint\ipoint.exe C:\Windows\system32\taskeng.exe C:\Program Files\Windows Media Player\wmplayer.exe C:\Program Files\Dell 968 AIO Printer\dldomon.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\AVG\AVG2012\avgtray.exe C:\Program Files\Ask.com\Updater\Updater.exe C:\Program Files\Corel\Corel Snapfire Plus\Corel Photo Downloader.exe C:\Program Files\TomTom HOME 22\TomTomHOMERunner.exe C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE C:\Program Files\Intel\IntelDH\Intel Media Server\Shells\Remote UI Service.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe C:\Program Files\AVG\AVG2012\avgcsrvx.exe C:\Windows\ehome\ehtray.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\ehome\ehmsas.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Program Files\Microsoft IntelliPoint\dpupdchk.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\rundll32.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Users\Perry\AppData\Local\Google\Chrome\Application\chrome.exe C:\Windows\system32\svchost.exe -k WindowsMobile C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe C:\Program Files\iolo\System Mechanic Professional\System Shield\ioloSSTray.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\servicing\TrustedInstaller.exe . ============== Pseudo HJT Report =============== . uStart Page = about:blank uWindow Title = Internet Explorer, optimized for Bing and MSN uInternet Settings,ProxyOverride = localhost uURLSearchHooks: YTNavAssistPlugin Class: {81017ea9-9aa8-4a6a-9734-7af40e7d593f} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll mURLSearchHooks: YTNavAssistPlugin Class: {81017ea9-9aa8-4a6a-9734-7af40e7d593f} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll BHO: &Yahoo! Toolbar Helper: {02478d38-c3f9-4efb-9b51-7695eca05670} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg2012\avgssie.dll BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - c:\program files\microsoft\search enhancement pack\search helper\SEPsearchhelperie.dll BHO: {7d9e1adc-7db1-4eaf-b6c7-7e062074e6be} - Blekko search bar BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll BHO: AVG Security Toolbar: {95b7759c-8c7f-4bf1-b163-73684a933233} - c:\program files\avg secure search\10.2.0.3\AVG Secure Search_toolbar.dll BHO: {a057a204-bacc-4d26-8398-26fadcf27386} - Verizon Broadband Toolbar BHO: {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - No File BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre7\bin\jp2ssv.dll BHO: SingleInstance Class: {fdad4da1-61a2-4fd8-9c17-86f7ac245081} - c:\program files\yahoo!\companion\installs\cpn0\YTSingleInstance.dll TB: Verizon Broadband Toolbar: {a057a204-bacc-4d26-8398-26fadcf27386} - TB: AVG Security Toolbar: {95b7759c-8c7f-4bf1-b163-73684a933233} - c:\program files\avg secure search\10.2.0.3\AVG Secure Search_toolbar.dll TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn0\yt.dll TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File {e7df6bff-55a5-4eb7-a673-4ed3e9456d39} TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File uRun: [TomTomHOME.exe] "c:\program files\tomtom home 22\TomTomHOMERunner.exe" uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background uRun: [ISUSPM] "c:\program files\common files\installshield\updateservice\ISUSPM.exe" -scheduler uRun: [Google Update] "c:\users\perry\appdata\local\google\update\GoogleUpdate.exe" /c uRun: [ehTray.exe] c:\windows\ehome\ehTray.exe uRun: [DIMDownloading your update...1215525192975] "c:\program files\corel\corel snapfire plus\dim.exe" "c:\programdata\corel\downloads\540220149_300355\1215525192975\dim_params.xml" -Launch=3 uRun: [LDM] c:\program files\logitech\desktop messenger\8876480\program\BackWeb-8876480.exe mRun: [Zune Launcher] "c:\program files\zune\ZuneLauncher.exe" mRun: [Windows Mobile Device Center] %windir%\WindowsMobile\wmdc.exe mRun: [vProt] "c:\program files\avg secure search\vprot.exe" mRun: [NMSSupport] "c:\program files\common files\intel\inteldh\nms\support\IntelHCTAgent.exe" /startup mRun: [MemoryCardManager] "c:\program files\dell 968 aio printer\memcard.exe" mRun: [iolo Startup] "c:\program files\iolo\common\lib\ioloLManager.exe" mRun: [IntelliPoint] "c:\program files\microsoft intellipoint\ipoint.exe" mRun: [dldomon.exe] "c:\program files\dell 968 aio printer\dldomon.exe" mRun: [Dell 968 AIO Printer Fax Server] "c:\program files\dell 968 aio printer\fm3032.exe" /s mRun: [CCUTRAYICON] "c:\program files\intel\inteldh\ccu\CCU_TrayIcon.exe" mRun: [AVG_TRAY] "c:\program files\avg\avg2012\avgtray.exe" mRun: [ApnUpdater] "c:\program files\ask.com\updater\Updater.exe" mRun: [Corel Photo Downloader] c:\program files\corel\corel snapfire plus\Corel Photo Downloader.exe StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\desktop messenger\8876480\program\LDMConf.exe uPolicies-explorer: HideSCAHealth = 1 (0x1) uPolicies-explorer: NoThumbnailCache = 1 (0x1) mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0) mPolicies-system: EnableLUA = 0 (0x0) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) IE: Download all with Free Download Manager IE: Download selected with Free Download Manager IE: Download video with Free Download Manager IE: Download with Free Download Manager IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files\windows live\writer\WriterBrowserExtension.dll IE: {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\windows\windowsmobile\INetRepl.dll IE: {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - {2EAF5BB0-070F-11D3-9307-00C04FAE2D4F} - c:\windows\windowsmobile\INetRepl.dll IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll LSP: c:\windows\system32\iavlsp.dll LSP: mswsock.dll DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} - c:\program files\yahoo!\common\Yinsthelper.dll DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab DPF: {C1F8FC10-E5DB-4112-9DBF-6C3FF728D4E3} - hxxp://support.dell.com/systemprofiler/DellSystemLite.CAB DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab TCP: DhcpNameServer = 192.168.1.1 TCP: Interfaces\{B30DF0AD-A987-42C6-9204-5FF581359FAF} : DhcpNameServer = 192.168.1.1 TCP: Interfaces\{DF744851-4926-4AC1-9AF6-70310B34C800} : DhcpNameServer = 192.168.1.1 Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg2012\avgpp.dll Handler: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - c:\program files\common files\avg secure search\viprotocolinstaller\10.2.0\ViProtocol.dll Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL Notify: GoToAssist - c:\program files\citrix\gotoassist\615\G2AWinLogon.dll SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL mASetup: {A509B1FF-37FF-4bFF-8CFF-4F3A747040FF} - c:\windows\system32\rundll32.exe c:\windows\system32\advpack.dll,launchinfsectionex c:\program files\internet explorer\clrtour.inf,DefaultInstall.ResetTour,,12 . ============= SERVICES / DRIVERS =============== . R0 AVGIDSEH;AVGIDSEH;c:\windows\system32\drivers\AVGIDSEH.sys [2011-7-11 23120] R0 Avgrkx86;AVG Anti-Rootkit Driver;c:\windows\system32\drivers\avgrkx86.sys [2011-9-13 32592] R1 Avgfwfd;AVG network filter service;c:\windows\system32\drivers\avgfwd6x.sys [2011-5-23 47968] R1 Avgldx86;AVG AVI Loader Driver;c:\windows\system32\drivers\avgldx86.sys [2011-10-7 230608] R1 Avgmfx86;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\drivers\avgmfx86.sys [2011-8-8 40016] R1 Avgtdix;AVG TDI Driver;c:\windows\system32\drivers\avgtdix.sys [2011-7-11 295248] R2 AMP;Active Malware Protection Minifilter Driver;c:\windows\system32\drivers\amp.sys [2011-9-28 138048] R2 AMPSE;Active Malware Protection Support Driver;c:\windows\system32\drivers\ampse.sys [2011-12-23 1189184] R3 amdkmdag;amdkmdag;c:\windows\system32\drivers\atikmdag.sys [2011-11-9 8913920] R3 amdkmdap;amdkmdap;c:\windows\system32\drivers\atikmpag.sys [2011-11-9 263680] R3 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\drivers\AVGIDSDriver.sys [2011-7-11 134736] R3 AVGIDSFilter;AVGIDSFilter;c:\windows\system32\drivers\AVGIDSFilter.sys [2011-7-11 24272] R3 AVGIDSShim;AVGIDSShim;c:\windows\system32\drivers\AVGIDSShim.sys [2011-10-4 16720] R3 IntelDH;IntelDH Driver;c:\windows\system32\drivers\IntelDH.sys [2008-1-8 5632] S3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\drivers\ssudbus.sys [2011-11-24 80184] S3 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr.sys [2010-11-5 39272] . =============== File Associations =============== . JSEFile=NOTEPAD.EXE %1 VBEFile=NOTEPAD.EXE %1 VBSFile=NOTEPAD.EXE %1 . =============== Created Last 30 ================ . 2012-05-21 01:10:32 27080 ----a-w- c:\windows\system32\drivers\ElRawDsk.sys 2012-05-20 20:34:11 -------- d-----w- c:\users\perry\appdata\local\{97CC3754-6C27-4095-9DB2-05A4E9C326B4} 2012-05-20 20:32:44 -------- d-----w- c:\users\perry\appdata\local\{E593BEEB-0363-488A-AB24-BF23639BB845} 2012-05-20 20:02:06 -------- d-----w- C:\f6caeeb47cd8b563430d5a4d0be9f1 2012-05-20 18:49:41 -------- d-----w- c:\users\perry\appdata\local\{978A3233-4696-43E2-8977-4FC16705D1E5} 2012-05-20 18:48:26 -------- d-----w- c:\users\perry\appdata\local\{B5B9C391-2FEC-4F12-89FE-5FC6BCBED447} 2012-05-20 18:00:27 75264 ----a-w- c:\windows\system32\drivers\dfsc.sys 2012-05-20 17:52:39 66560 ----a-w- c:\windows\system32\drivers\smb.sys 2012-05-20 17:52:38 185856 ----a-w- c:\windows\system32\drivers\netbt.sys 2012-05-20 17:51:56 -------- d-----w- C:\afb4938c14394e8fb69d73fac2866835 2012-05-20 17:16:37 -------- d-----w- C:\26828a569e6f10eb552d8a20456599 2012-05-20 17:12:33 -------- d-----w- c:\windows\CheckSur 2012-05-19 20:30:23 -------- d-----w- c:\users\perry\appdata\local\{A043B5D9-ED51-4AC5-9363-1712F2AF4104} 2012-05-19 20:01:58 -------- d-----w- C:\dadf12e3fe1dfc64417b04 2012-05-19 19:41:12 -------- d-----w- c:\users\perry\appdata\local\{AD1AA04B-6C85-4F83-AF8A-7A3BB385855D} 2012-05-19 19:40:06 -------- d-----w- c:\users\perry\appdata\local\{718DB8BF-201F-4264-82FE-6854B1C84EC5} 2012-05-19 11:38:44 -------- d-----w- C:\facab3d7b05c0c9b568b93 2012-05-18 21:22:40 -------- d-----w- c:\users\perry\appdata\local\{41961673-C90E-45E6-9E73-D39E3C643709} 2012-05-18 20:04:19 -------- d-----w- C:\2581b5325879d68d4a1bb751dba3 2012-05-17 23:22:44 -------- d-----w- c:\programdata\blekko toolbars 2012-05-17 23:18:57 -------- d-----w- c:\program files\blekkotb_soc 2012-05-17 20:41:01 -------- d-----w- C:\56e8315ec9b2de8973d0c329d03bb5 2012-05-16 20:02:59 -------- d-----w- C:\cbaa4d6b69f6e66b4afd8234 2012-05-15 23:15:13 -------- d-----w- C:\4abea6513744f4562b7a85 2012-05-15 21:33:45 -------- d-----w- c:\users\perry\appdata\roaming\SpeedyPC Software 2012-05-15 21:33:45 -------- d-----w- c:\users\perry\appdata\roaming\DriverCure 2012-05-15 21:33:23 -------- d-----w- c:\programdata\SpeedyPC Software 2012-05-15 09:06:19 -------- d-----w- C:\3a44761175f14e42aed3f0 2012-05-14 09:14:23 -------- d-----w- C:\e689922af101b8166a062c519dd507 2012-05-13 20:03:17 -------- d-----w- C:\47e93751e4e34b4759acee53ed1bcf3d 2012-05-12 20:11:52 -------- d-----w- C:\c3a3bedfbeea00ac935eb6f9 2012-05-11 21:11:56 3602816 ----a-w- c:\windows\system32\ntkrnlpa.exe 2012-05-11 21:11:56 3550080 ----a-w- c:\windows\system32\ntoskrnl.exe 2012-05-11 21:11:56 2044928 ----a-w- c:\windows\system32\win32k.sys . ==================== Find3M ==================== . 2012-05-21 01:10:41 12984 ----a-w- c:\windows\system32\drivers\SWDUMon.sys 2012-04-17 14:11:44 33280 ----a-w- c:\windows\system32\iolobtdfg.exe 2012-04-17 14:11:34 15360 ----a-w- c:\windows\system32\smrgdf.exe 2012-04-17 13:37:02 2095816 ----a-w- c:\windows\system32\Incinerator32.dll 2012-04-04 19:56:40 22344 ----a-w- c:\windows\system32\drivers\mbam.sys 2012-03-30 12:39:11 905600 ----a-w- c:\windows\system32\drivers\tcpip.sys 2012-03-20 23:28:50 53120 ----a-w- c:\windows\system32\drivers\partmgr.sys 2012-03-04 19:49:40 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2012-03-01 14:46:01 219648 ----a-w- c:\windows\system32\d3d10_1core.dll 2012-03-01 14:46:01 160768 ----a-w- c:\windows\system32\d3d10_1.dll 2012-02-29 15:11:45 5120 ----a-w- c:\windows\system32\wmi.dll 2012-02-29 15:11:42 172032 ----a-w- c:\windows\system32\wintrust.dll 2012-02-29 15:09:53 157696 ----a-w- c:\windows\system32\imagehlp.dll 2012-02-29 14:08:47 1172480 ----a-w- c:\windows\system32\d3d10warp.dll 2012-02-29 13:44:50 683008 ----a-w- c:\windows\system32\d2d1.dll 2012-02-29 13:41:40 1069056 ----a-w- c:\windows\system32\DWrite.dll 2012-02-29 13:32:37 12800 ----a-w- c:\windows\system32\drivers\fs_rec.sys 2012-02-28 01:18:55 1799168 ----a-w- c:\windows\system32\jscript9.dll 2012-02-28 01:11:21 1427456 ----a-w- c:\windows\system32\inetcpl.cpl 2012-02-28 01:11:07 1127424 ----a-w- c:\windows\system32\wininet.dll 2012-02-28 01:03:16 2382848 ----a-w- c:\windows\system32\mshtml.tlb . ============= FINISH: 21:22:45.94 ===============