Hoping someone can help me. I've tried everything and keep getting redirected on internet searches.
.
DDS (Ver_11-03-05.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 2/26/2011 3:02:14 PM
System Uptime: 3/5/2011 9:07:00 AM (0 hours ago)
.
Motherboard: Dell Inc. | | 0M3918
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | Microprocessor | 2793/800mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 55 GiB total, 36.784 GiB free.
D: is FIXED (NTFS) - 20 GiB total, 1.015 GiB free.
E: is CDROM ()
F: is CDROM ()
G: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e96c-e325-11ce-bfc1-08002be10318}
Description: SoundMAX Integrated Digital Audio
Device ID: PCI\VEN_8086&DEV_266E&SUBSYS_01811028&REV_03\3&172E68DD&0&F2
Manufacturer: Analog Devices, Inc.
Name: SoundMAX Integrated Digital Audio
PNP Device ID: PCI\VEN_8086&DEV_266E&SUBSYS_01811028&REV_03\3&172E68DD&0&F2
Service: smwdm
.
==== System Restore Points ===================
.
RP19: 3/3/2011 9:00:03 AM - Windows Modules Installer
RP20: 3/4/2011 8:05:21 AM - Windows Update
RP21: 3/5/2011 9:04:07 AM - Windows Modules Installer
.
==== Installed Programs ======================
.
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Avira AntiVir Personal - Free Antivirus
Bonjour
Creative MediaSource 5
Creative Software AutoUpdate
DAEMON Tools Lite
DAEMON Tools Toolbar
Free M4a to MP3 Converter 6.2
Google Talk Plugin
Intel(R) Graphics Media Accelerator Driver
iTunes
Microsoft .NET Framework 4 Client Profile
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox (3.6.14)
QuickTime
.
==== End Of File ===========================
.
DDS (Ver_11-03-05.01) - NTFSx86
Run by [removed] at 9:31:10.01 on Sat 03/05/2011
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.49.1031.18.1014.388 [GMT 1:00]
.
AV: AntiVir Desktop *Enabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: AntiVir Desktop *Enabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\cryptbase32.exe
C:\ProgramData\catsrv32.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\NlsData0002wow.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Windows\FXSEXT32wow.exe
C:\Windows\WWanHCwow.exe
C:\Windows\userenvwow.exe
C:\Windows\mscanduiwow.exe
C:\Windows\RpcDiagwow.exe
C:\Windows\Vaultwow.exe
C:\Windows\NlsData0002wow.exe
C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe
C:\Program Files\Creative\Shared Files\CTSched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Creative\MediaSource5\MtdAcqu.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Windows\WWanHCwow.exe
C:\Windows\FXSEXT32wow.exe
C:\Windows\userenvwow.exe
C:\Windows\mscanduiwow.exe
C:\Windows\Vaultwow.exe
C:\Windows\RpcDiagwow.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\waynehobbs\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\waynehobbs\Downloads\dds.scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.de/
uInternet Settings,ProxyOverride = *.local
BHO: {95e7d21c-8607-4f1f-8579-47541bc72259} - c:\windows\system32\api-ms-win-core-interlocked-l1-1-032.dll
TB: DAEMON Tools Toolbar: {32099aac-c132-4136-9e9a-4e364a424e17} - c:\program files\daemon tools toolbar\DTToolbar.dll
uRun: [Creative MediaSource Go] "c:\program files\creative\mediasource5\go\CTCMSGoU.exe" /SCB
uRun: [CreativeTaskScheduler] "c:\program files\creative\shared files\CTSched.exe" /logon
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [MtdAcqu] "c:\program files\creative\mediasource5\MtdAcqu.exe" /s
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [WWanHCwow.exe] c:\windows\WWanHCwow.exe
uRun: [FXSEXT32wow.exe] c:\windows\FXSEXT32wow.exe
uRun: [userenvwow.exe] c:\windows\userenvwow.exe
uRun: [Google Update] "c:\users\waynehobbs\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [mscanduiwow.exe] c:\windows\mscanduiwow.exe
uRun: [Vaultwow.exe] c:\windows\Vaultwow.exe
uRun: [RpcDiagwow.exe] c:\windows\RpcDiagwow.exe
uRun: [NlsData0002wow.exe] c:\windows\NlsData0002wow.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [VolPanel] "c:\program files\creative\sound blaster x-fi\volume panel\VolPanlu.exe" /r
mRun: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [RTHDBPL] c:\users\waynehobbs\appdata\roaming\syswin\lsass.exe
mRun: [FXSEXT32wow.exe] c:\windows\FXSEXT32wow.exe
mRun: [WWanHCwow.exe] c:\windows\WWanHCwow.exe
mRun: [userenvwow.exe] c:\windows\userenvwow.exe
mRun: [mscanduiwow.exe] c:\windows\mscanduiwow.exe
mRun: [RpcDiagwow.exe] c:\windows\RpcDiagwow.exe
mRun: [Vaultwow.exe] c:\windows\Vaultwow.exe
mRun: [NlsData0002wow.exe] c:\windows\NlsData0002wow.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - hxxp://ccfiles.creative.com/Web/softwar ... PIDPDE.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwar ... /CTPID.cab
Notify: igfxcui - igfxdev.dll
AppInit_DLLs: c:\programdata\api-ms-win-core-interlocked-l1-1-032.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\wayneh~1\appdata\roaming\mozilla\firefox\profiles\855fu4jg.default\
FF - plugin: c:\users\waynehobbs\appdata\local\google\update\1.2.183.39\npGoogleOneClick8.dll
FF - plugin: c:\users\waynehobbs\appdata\roaming\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\users\waynehobbs\appdata\roaming\mozilla\plugins\npgtpo3dautoplugin.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
============= SERVICES / DRIVERS ===============
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2011-3-1 218688]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2011-2-26 135336]
R2 AntiVirService;Avira AntiVir Guard;c:\program files\avira\antivir desktop\avguard.exe [2011-2-26 267944]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2011-2-26 61960]
R2 wmiApSrv32;WMI-Leistungsadapter ;c:\windows\system32\cryptbase32.exe [2011-3-1 1457664]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
.
=============== Created Last 30 ================
.
2011-03-05 08:08:14 521216 --sh--w- c:\windows\NlsData0002wow.exe
2011-03-05 07:17:26 -------- d-----w- C:\VundoFix Backups
2011-03-05 06:27:23 521216 --sh--w- c:\windows\Vaultwow.exe
2011-03-04 08:59:24 -------- d-----w- c:\program files\Free M4a to MP3 Converter
2011-03-04 07:05:53 5943120 ----a-w- c:\progra~3\microsoft\windows defender\definition updates\{fb98a956-fd52-45fe-ba53-48d77ca84b72}\mpengine.dll
2011-03-04 06:59:23 521216 --sh--w- c:\windows\RpcDiagwow.exe
2011-03-04 01:29:07 522752 --sh--w- c:\windows\mscanduiwow.exe
2011-03-03 08:03:52 522752 --sh--w- c:\windows\userenvwow.exe
2011-03-03 06:41:47 522752 --sh--w- c:\windows\WWanHCwow.exe
2011-03-02 21:42:55 522752 --sh--w- c:\windows\FXSEXT32wow.exe
2011-03-02 21:42:50 -------- d-sh--w- c:\progra~3\5CCC04302DE837ED587718F1CE31830A
2011-03-01 21:10:18 -------- d-sh--w- c:\progra~3\SysWoW32
2011-03-01 21:10:18 -------- d-----w- c:\progra~3\464568782
2011-03-01 21:10:04 203776 --sh--w- c:\progra~3\unrar.exe
2011-03-01 21:10:04 -------- d-----w- c:\progra~3\908407606
2011-03-01 21:09:26 253952 ----a-w- c:\progra~3\api-ms-win-core-interlocked-l1-1-032.dll
2011-03-01 21:09:20 -------- d-sh--w- c:\users\wayneh~1\appdata\roaming\SysWin
2011-03-01 21:09:17 222720 ----a-w- c:\windows\system32\catsrv32.exe
2011-03-01 21:09:16 424448 ----a-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-032.dll
2011-03-01 13:03:22 218688 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-03-01 13:03:03 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2011-03-01 13:02:55 -------- d-----w- c:\program files\DAEMON Tools Lite
2011-03-01 13:02:19 -------- d-----w- c:\users\wayneh~1\appdata\roaming\DAEMON Tools Lite
2011-03-01 13:02:19 -------- d-----w- c:\progra~3\DAEMON Tools Lite
2011-03-01 11:37:06 1457664 ----a-r- c:\windows\system32\cryptbase32.exe
2011-03-01 11:37:06 1457664 ----a-r- c:\progra~3\catsrv32.exe
2011-03-01 06:17:11 5943120 ----a-w- c:\progra~3\microsoft\windows defender\definition updates\backup\mpengine.dll
2011-02-28 16:34:36 -------- d-----w- c:\users\wayneh~1\appdata\local\Apple Computer
2011-02-28 16:34:03 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-02-28 16:34:03 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2011-02-28 16:33:10 -------- d-----w- c:\program files\iPod
2011-02-28 16:33:07 -------- d-----w- c:\program files\iTunes
2011-02-28 16:33:07 -------- d-----w- c:\progra~3\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin7.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin6.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin5.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin4.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin3.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin2.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin.dll
2011-02-28 16:29:54 -------- d-----w- c:\users\wayneh~1\appdata\local\Apple
2011-02-28 16:28:56 -------- d-----w- c:\program files\Bonjour
2011-02-28 07:05:26 -------- d-----w- c:\users\wayneh~1\appdata\local\Opera
2011-02-27 08:30:57 257024 ----a-w- c:\windows\system32\msv1_0.dll
2011-02-27 08:29:14 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-02-27 08:29:14 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-02-27 08:29:14 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-02-27 08:29:14 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-02-27 08:29:14 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-02-27 08:18:51 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-02-27 08:17:09 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2011-02-27 08:16:29 276992 ----a-w- c:\windows\system32\wcncsvc.dll
2011-02-27 07:50:14 4247040 ----a-w- c:\program files\windows nt\accessories\wordpad.exe
2011-02-27 07:50:13 1413632 ----a-w- c:\windows\system32\ole32.dll
2011-02-27 07:50:13 1286016 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-02-27 07:49:46 194488 ----a-w- c:\windows\system32\drivers\fvevol.sys
2011-02-27 07:49:45 316928 ----a-w- c:\windows\system32\spoolsv.exe
2011-02-27 07:48:46 109056 ----a-w- c:\windows\system32\t2embed.dll
2011-02-27 07:48:43 2614272 ----a-w- c:\windows\explorer.exe
2011-02-27 07:48:42 285696 ----a-w- c:\windows\system32\winlogon.exe
2011-02-27 07:48:40 82944 ----a-w- c:\windows\system32\iccvid.dll
2011-02-27 07:48:40 197632 ----a-w- c:\windows\system32\ir32_32.dll
2011-02-27 07:48:37 516096 ----a-w- c:\program files\windows mail\wab.exe
2011-02-27 07:48:31 2048 ----a-w- c:\windows\system32\tzres.dll
2011-02-27 07:48:03 641536 ----a-w- c:\windows\system32\CPFilters.dll
2011-02-27 07:48:01 417792 ----a-w- c:\windows\system32\msdri.dll
2011-02-27 07:48:01 204288 ----a-w- c:\windows\system32\MSNP.ax
2011-02-27 07:48:01 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2011-02-27 07:48:00 465408 ----a-w- c:\windows\system32\psisdecd.dll
2011-02-27 07:46:55 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2011-02-27 07:46:54 507568 ----a-w- c:\windows\system32\winload.exe
2011-02-27 07:46:53 442920 ----a-w- c:\windows\system32\winresume.exe
2011-02-27 07:46:26 530432 ----a-w- c:\windows\system32\comctl32.dll
2011-02-27 07:46:25 67584 ----a-w- c:\windows\system32\asycfilt.dll
2011-02-27 07:46:21 954752 ----a-w- c:\windows\system32\mfc40.dll
2011-02-27 07:46:21 954288 ----a-w- c:\windows\system32\mfc40u.dll
2011-02-27 07:46:06 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-02-27 07:43:41 310784 ----a-w- c:\windows\system32\drivers\srv.sys
2011-02-27 07:42:59 95744 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-02-27 07:42:59 221696 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-02-27 07:42:59 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-02-27 07:35:53 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-02-27 07:35:53 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-02-27 07:35:53 107520 ----a-w- c:\windows\system32\cdd.dll
2011-02-26 19:01:33 -------- d-----w- c:\users\wayneh~1\appdata\local\Google
2011-02-26 19:00:26 -------- d-----w- c:\users\wayneh~1\appdata\local\Deployment
2011-02-26 19:00:26 -------- d-----w- c:\users\wayneh~1\appdata\local\Apps
2011-02-26 18:11:33 -------- d-----w- c:\users\wayneh~1\appdata\roaming\Avira
2011-02-26 17:52:08 -------- d-----w- c:\users\wayneh~1\appdata\local\Diagnostics
2011-02-26 17:40:05 45568 ----a-w- c:\windows\system32\ctppld.dll
2011-02-26 17:39:55 -------- d-----w- c:\windows\system32\Data
2011-02-26 17:39:53 230 ----a-w- c:\windows\ctrunonce.reg
2011-02-26 17:39:40 67072 ------w- c:\windows\system32\CmdRtr.dll
2011-02-26 17:39:40 105472 ------w- c:\windows\system32\APOMngr.dll
2011-02-26 17:39:36 409600 ----a-w- c:\windows\system32\wrap_oal.dll
2011-02-26 17:39:35 1527808 ------w- c:\windows\system32\Sens_oal.dll
2011-02-26 17:39:35 114688 ----a-w- c:\windows\system32\OpenAL32.dll
2011-02-26 17:18:22 61960 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-02-26 17:18:21 -------- d-----w- c:\program files\Avira
2011-02-26 17:18:21 -------- d-----w- c:\progra~3\Avira
2011-02-26 17:15:23 -------- d-sh--w- c:\windows\Installer
2011-02-26 17:07:02 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-02-26 16:50:07 -------- d-----w- C:\Intel
2011-02-26 16:47:19 7062 ----a-w- c:\windows\system32\audiopid.vxd
2011-02-26 16:46:43 647872 ------w- c:\windows\system32\Mscomct2.ocx
2011-02-26 16:46:43 53248 ------w- c:\windows\Ctregrun.exe
2011-02-26 16:45:09 -------- d-----w- c:\program files\Creative
2011-02-26 16:45:00 -------- d-----w- c:\program files\common files\Creative
2011-02-26 16:44:56 -------- d--h--w- c:\program files\Creative Installation Information
2011-02-26 16:44:13 32768 ----a-w- c:\program files\common files\installshield\professional\runtime\Objectps.dll
2011-02-26 16:44:12 69715 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\ctor.dll
2011-02-26 16:44:12 266240 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iscript.dll
2011-02-26 16:44:12 192512 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iuser.dll
2011-02-26 16:44:11 729088 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iKernel.dll
2011-02-26 16:44:11 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\DotNetInstaller.exe
2011-02-26 16:44:09 311428 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\setup.dll
2011-02-26 16:44:09 188548 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iGdi.dll
2011-02-26 16:43:43 -------- d-----w- c:\windows\system32\x64
2011-02-26 16:41:53 172032 ----a-w- c:\windows\system32\wintrust.dll
2011-02-26 16:41:50 132608 ----a-w- c:\windows\system32\cabview.dll
2011-02-26 16:35:25 761856 ----a-w- c:\windows\system32\drivers\athr.sys
2011-02-26 16:35:25 761856 ----a-w- c:\windows\system32\athr.sys
2011-02-26 16:34:55 55808 ----a-w- c:\temp\devcon.exe
2011-02-26 16:34:41 -------- d-----w- C:\temp
2011-02-26 16:34:40 -------- d-----w- c:\progra~3\TP-LINK
2011-02-26 15:09:44 -------- dc----w- c:\users\wayneh~1\appdata\local\MigWiz
2011-02-26 14:11:46 -------- d-----w- c:\users\wayneh~1\appdata\local\ElevatedDiagnostics
2011-02-26 14:04:43 -------- d-----w- c:\windows\system32\wbem\Performance
2011-02-26 13:39:42 -------- d-----w- c:\windows\Panther
.
==================== Find3M ====================
.
2011-01-07 07:31:10 442880 ----a-w- c:\windows\system32\XpsPrint.dll
2011-01-07 07:31:10 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-01-07 07:27:11 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-01-07 05:33:11 294400 ----a-w- c:\windows\system32\atmfd.dll
2011-01-05 03:37:38 2329088 ----a-w- c:\windows\system32\win32k.sys
2010-12-21 05:38:24 73728 ----a-w- c:\windows\system32\wscsvc.dll
2010-12-21 05:38:24 51200 ----a-w- c:\windows\system32\wscapi.dll
2010-12-21 05:38:22 981504 ----a-w- c:\windows\system32\wininet.dll
2010-12-21 05:38:22 350720 ----a-w- c:\windows\system32\winhttp.dll
2010-12-21 05:38:21 204800 ----a-w- c:\windows\system32\WebClnt.dll
2010-12-21 05:38:19 204288 ----a-w- c:\windows\system32\upnp.dll
2010-12-21 05:38:16 14336 ----a-w- c:\windows\system32\slwga.dll
2010-12-21 05:36:17 1389568 ----a-w- c:\windows\system32\msxml6.dll
2010-12-21 05:36:16 1236992 ----a-w- c:\windows\system32\msxml3.dll
2010-12-21 05:34:12 80384 ----a-w- c:\windows\system32\davclnt.dll
2010-12-18 05:29:40 44544 ----a-w- c:\windows\system32\licmgr10.dll
2010-12-18 05:29:31 541184 ----a-w- c:\windows\system32\kerberos.dll
2010-12-18 04:20:55 386048 ----a-w- c:\windows\system32\html.iec
2010-12-18 03:47:59 1638912 ----a-w- c:\windows\system32\mshtml.tlb
.
============= FINISH: 9:34:42.36 ===============
.
DDS (Ver_11-03-05.01)
.
Microsoft Windows 7 Home Premium
Boot Device: \Device\HarddiskVolume1
Install Date: 2/26/2011 3:02:14 PM
System Uptime: 3/5/2011 9:07:00 AM (0 hours ago)
.
Motherboard: Dell Inc. | | 0M3918
Processor: Intel(R) Pentium(R) 4 CPU 2.80GHz | Microprocessor | 2793/800mhz
.
==== Disk Partitions =========================
.
A: is Removable
C: is FIXED (NTFS) - 55 GiB total, 36.784 GiB free.
D: is FIXED (NTFS) - 20 GiB total, 1.015 GiB free.
E: is CDROM ()
F: is CDROM ()
G: is CDROM ()
.
==== Disabled Device Manager Items =============
.
Class GUID: {4d36e96c-e325-11ce-bfc1-08002be10318}
Description: SoundMAX Integrated Digital Audio
Device ID: PCI\VEN_8086&DEV_266E&SUBSYS_01811028&REV_03\3&172E68DD&0&F2
Manufacturer: Analog Devices, Inc.
Name: SoundMAX Integrated Digital Audio
PNP Device ID: PCI\VEN_8086&DEV_266E&SUBSYS_01811028&REV_03\3&172E68DD&0&F2
Service: smwdm
.
==== System Restore Points ===================
.
RP19: 3/3/2011 9:00:03 AM - Windows Modules Installer
RP20: 3/4/2011 8:05:21 AM - Windows Update
RP21: 3/5/2011 9:04:07 AM - Windows Modules Installer
.
==== Installed Programs ======================
.
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Apple Application Support
Apple Mobile Device Support
Apple Software Update
Avira AntiVir Personal - Free Antivirus
Bonjour
Creative MediaSource 5
Creative Software AutoUpdate
DAEMON Tools Lite
DAEMON Tools Toolbar
Free M4a to MP3 Converter 6.2
Google Talk Plugin
Intel(R) Graphics Media Accelerator Driver
iTunes
Microsoft .NET Framework 4 Client Profile
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
Mozilla Firefox (3.6.14)
QuickTime
.
==== End Of File ===========================
.
DDS (Ver_11-03-05.01) - NTFSx86
Run by [removed] at 9:31:10.01 on Sat 03/05/2011
Internet Explorer: 8.0.7600.16385
Microsoft Windows 7 Home Premium 6.1.7600.0.1252.49.1031.18.1014.388 [GMT 1:00]
.
AV: AntiVir Desktop *Enabled/Updated* {090F9C29-64CE-6C6F-379C-5901B49A85B7}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: AntiVir Desktop *Enabled/Updated* {B26E7DCD-42F4-63E1-0D2C-6273CF1DCF0A}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Program Files\Avira\AntiVir Desktop\sched.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files\Avira\AntiVir Desktop\avguard.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
C:\Windows\system32\conhost.exe
C:\Windows\system32\cryptbase32.exe
C:\ProgramData\catsrv32.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\NlsData0002wow.exe
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\System32\igfxtray.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Creative\Sound Blaster X-Fi\Volume Panel\VolPanlu.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Windows\FXSEXT32wow.exe
C:\Windows\WWanHCwow.exe
C:\Windows\userenvwow.exe
C:\Windows\mscanduiwow.exe
C:\Windows\RpcDiagwow.exe
C:\Windows\Vaultwow.exe
C:\Windows\NlsData0002wow.exe
C:\Program Files\Creative\MediaSource5\Go\CTCMSGoU.exe
C:\Program Files\Creative\Shared Files\CTSched.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Creative\MediaSource5\MtdAcqu.exe
C:\Program Files\DAEMON Tools Lite\DTLite.exe
C:\Windows\WWanHCwow.exe
C:\Windows\FXSEXT32wow.exe
C:\Windows\userenvwow.exe
C:\Windows\mscanduiwow.exe
C:\Windows\Vaultwow.exe
C:\Windows\RpcDiagwow.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\iPod\bin\iPodService.exe
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Users\waynehobbs\AppData\Local\Google\Google Talk Plugin\googletalkplugin.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\waynehobbs\Downloads\dds.scr
C:\Windows\system32\conhost.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.de/
uInternet Settings,ProxyOverride = *.local
BHO: {95e7d21c-8607-4f1f-8579-47541bc72259} - c:\windows\system32\api-ms-win-core-interlocked-l1-1-032.dll
TB: DAEMON Tools Toolbar: {32099aac-c132-4136-9e9a-4e364a424e17} - c:\program files\daemon tools toolbar\DTToolbar.dll
uRun: [Creative MediaSource Go] "c:\program files\creative\mediasource5\go\CTCMSGoU.exe" /SCB
uRun: [CreativeTaskScheduler] "c:\program files\creative\shared files\CTSched.exe" /logon
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [MtdAcqu] "c:\program files\creative\mediasource5\MtdAcqu.exe" /s
uRun: [DAEMON Tools Lite] "c:\program files\daemon tools lite\DTLite.exe" -autorun
uRun: [WWanHCwow.exe] c:\windows\WWanHCwow.exe
uRun: [FXSEXT32wow.exe] c:\windows\FXSEXT32wow.exe
uRun: [userenvwow.exe] c:\windows\userenvwow.exe
uRun: [Google Update] "c:\users\waynehobbs\appdata\local\google\update\GoogleUpdate.exe" /c
uRun: [mscanduiwow.exe] c:\windows\mscanduiwow.exe
uRun: [Vaultwow.exe] c:\windows\Vaultwow.exe
uRun: [RpcDiagwow.exe] c:\windows\RpcDiagwow.exe
uRun: [NlsData0002wow.exe] c:\windows\NlsData0002wow.exe
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [VolPanel] "c:\program files\creative\sound blaster x-fi\volume panel\VolPanlu.exe" /r
mRun: [P17RunE] RunDll32 P17RunE.dll,RunDLLEntry
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [RTHDBPL] c:\users\waynehobbs\appdata\roaming\syswin\lsass.exe
mRun: [FXSEXT32wow.exe] c:\windows\FXSEXT32wow.exe
mRun: [WWanHCwow.exe] c:\windows\WWanHCwow.exe
mRun: [userenvwow.exe] c:\windows\userenvwow.exe
mRun: [mscanduiwow.exe] c:\windows\mscanduiwow.exe
mRun: [RpcDiagwow.exe] c:\windows\RpcDiagwow.exe
mRun: [Vaultwow.exe] c:\windows\Vaultwow.exe
mRun: [NlsData0002wow.exe] c:\windows\NlsData0002wow.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
DPF: {D4B68B83-8710-488B-A692-D74B50BA558E} - hxxp://ccfiles.creative.com/Web/softwar ... PIDPDE.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} - hxxp://ccfiles.creative.com/Web/softwar ... /CTPID.cab
Notify: igfxcui - igfxdev.dll
AppInit_DLLs: c:\programdata\api-ms-win-core-interlocked-l1-1-032.dll
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\wayneh~1\appdata\roaming\mozilla\firefox\profiles\855fu4jg.default\
FF - plugin: c:\users\waynehobbs\appdata\local\google\update\1.2.183.39\npGoogleOneClick8.dll
FF - plugin: c:\users\waynehobbs\appdata\roaming\mozilla\plugins\npgoogletalk.dll
FF - plugin: c:\users\waynehobbs\appdata\roaming\mozilla\plugins\npgtpo3dautoplugin.dll
FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\mozilla firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
.
============= SERVICES / DRIVERS ===============
.
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2011-3-1 218688]
R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2011-2-26 135336]
R2 AntiVirService;Avira AntiVir Guard;c:\program files\avira\antivir desktop\avguard.exe [2011-2-26 267944]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2011-2-26 61960]
R2 wmiApSrv32;WMI-Leistungsadapter ;c:\windows\system32\cryptbase32.exe [2011-3-1 1457664]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2009-7-13 229888]
.
=============== Created Last 30 ================
.
2011-03-05 08:08:14 521216 --sh--w- c:\windows\NlsData0002wow.exe
2011-03-05 07:17:26 -------- d-----w- C:\VundoFix Backups
2011-03-05 06:27:23 521216 --sh--w- c:\windows\Vaultwow.exe
2011-03-04 08:59:24 -------- d-----w- c:\program files\Free M4a to MP3 Converter
2011-03-04 07:05:53 5943120 ----a-w- c:\progra~3\microsoft\windows defender\definition updates\{fb98a956-fd52-45fe-ba53-48d77ca84b72}\mpengine.dll
2011-03-04 06:59:23 521216 --sh--w- c:\windows\RpcDiagwow.exe
2011-03-04 01:29:07 522752 --sh--w- c:\windows\mscanduiwow.exe
2011-03-03 08:03:52 522752 --sh--w- c:\windows\userenvwow.exe
2011-03-03 06:41:47 522752 --sh--w- c:\windows\WWanHCwow.exe
2011-03-02 21:42:55 522752 --sh--w- c:\windows\FXSEXT32wow.exe
2011-03-02 21:42:50 -------- d-sh--w- c:\progra~3\5CCC04302DE837ED587718F1CE31830A
2011-03-01 21:10:18 -------- d-sh--w- c:\progra~3\SysWoW32
2011-03-01 21:10:18 -------- d-----w- c:\progra~3\464568782
2011-03-01 21:10:04 203776 --sh--w- c:\progra~3\unrar.exe
2011-03-01 21:10:04 -------- d-----w- c:\progra~3\908407606
2011-03-01 21:09:26 253952 ----a-w- c:\progra~3\api-ms-win-core-interlocked-l1-1-032.dll
2011-03-01 21:09:20 -------- d-sh--w- c:\users\wayneh~1\appdata\roaming\SysWin
2011-03-01 21:09:17 222720 ----a-w- c:\windows\system32\catsrv32.exe
2011-03-01 21:09:16 424448 ----a-w- c:\windows\system32\api-ms-win-core-interlocked-l1-1-032.dll
2011-03-01 13:03:22 218688 ----a-w- c:\windows\system32\drivers\dtsoftbus01.sys
2011-03-01 13:03:03 -------- d-----w- c:\program files\DAEMON Tools Toolbar
2011-03-01 13:02:55 -------- d-----w- c:\program files\DAEMON Tools Lite
2011-03-01 13:02:19 -------- d-----w- c:\users\wayneh~1\appdata\roaming\DAEMON Tools Lite
2011-03-01 13:02:19 -------- d-----w- c:\progra~3\DAEMON Tools Lite
2011-03-01 11:37:06 1457664 ----a-r- c:\windows\system32\cryptbase32.exe
2011-03-01 11:37:06 1457664 ----a-r- c:\progra~3\catsrv32.exe
2011-03-01 06:17:11 5943120 ----a-w- c:\progra~3\microsoft\windows defender\definition updates\backup\mpengine.dll
2011-02-28 16:34:36 -------- d-----w- c:\users\wayneh~1\appdata\local\Apple Computer
2011-02-28 16:34:03 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2011-02-28 16:34:03 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2011-02-28 16:33:10 -------- d-----w- c:\program files\iPod
2011-02-28 16:33:07 -------- d-----w- c:\program files\iTunes
2011-02-28 16:33:07 -------- d-----w- c:\progra~3\{429CAD59-35B1-4DBC-BB6D-1DB246563521}
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin7.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin6.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin5.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin4.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin3.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin2.dll
2011-02-28 16:30:44 159744 ----a-w- c:\program files\internet explorer\plugins\npqtplugin.dll
2011-02-28 16:29:54 -------- d-----w- c:\users\wayneh~1\appdata\local\Apple
2011-02-28 16:28:56 -------- d-----w- c:\program files\Bonjour
2011-02-28 07:05:26 -------- d-----w- c:\users\wayneh~1\appdata\local\Opera
2011-02-27 08:30:57 257024 ----a-w- c:\windows\system32\msv1_0.dll
2011-02-27 08:29:14 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2011-02-27 08:29:14 49472 ----a-w- c:\windows\system32\netfxperf.dll
2011-02-27 08:29:14 297808 ----a-w- c:\windows\system32\mscoree.dll
2011-02-27 08:29:14 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2011-02-27 08:29:14 1130824 ----a-w- c:\windows\system32\dfshim.dll
2011-02-27 08:18:51 293376 ----a-w- c:\windows\system32\browserchoice.exe
2011-02-27 08:17:09 190976 ----a-w- c:\windows\system32\drivers\ks.sys
2011-02-27 08:16:29 276992 ----a-w- c:\windows\system32\wcncsvc.dll
2011-02-27 07:50:14 4247040 ----a-w- c:\program files\windows nt\accessories\wordpad.exe
2011-02-27 07:50:13 1413632 ----a-w- c:\windows\system32\ole32.dll
2011-02-27 07:50:13 1286016 ----a-w- c:\windows\system32\drivers\tcpip.sys
2011-02-27 07:49:46 194488 ----a-w- c:\windows\system32\drivers\fvevol.sys
2011-02-27 07:49:45 316928 ----a-w- c:\windows\system32\spoolsv.exe
2011-02-27 07:48:46 109056 ----a-w- c:\windows\system32\t2embed.dll
2011-02-27 07:48:43 2614272 ----a-w- c:\windows\explorer.exe
2011-02-27 07:48:42 285696 ----a-w- c:\windows\system32\winlogon.exe
2011-02-27 07:48:40 82944 ----a-w- c:\windows\system32\iccvid.dll
2011-02-27 07:48:40 197632 ----a-w- c:\windows\system32\ir32_32.dll
2011-02-27 07:48:37 516096 ----a-w- c:\program files\windows mail\wab.exe
2011-02-27 07:48:31 2048 ----a-w- c:\windows\system32\tzres.dll
2011-02-27 07:48:03 641536 ----a-w- c:\windows\system32\CPFilters.dll
2011-02-27 07:48:01 417792 ----a-w- c:\windows\system32\msdri.dll
2011-02-27 07:48:01 204288 ----a-w- c:\windows\system32\MSNP.ax
2011-02-27 07:48:01 199680 ----a-w- c:\windows\system32\mpg2splt.ax
2011-02-27 07:48:00 465408 ----a-w- c:\windows\system32\psisdecd.dll
2011-02-27 07:46:55 1320960 ----a-w- c:\windows\system32\CertEnroll.dll
2011-02-27 07:46:54 507568 ----a-w- c:\windows\system32\winload.exe
2011-02-27 07:46:53 442920 ----a-w- c:\windows\system32\winresume.exe
2011-02-27 07:46:26 530432 ----a-w- c:\windows\system32\comctl32.dll
2011-02-27 07:46:25 67584 ----a-w- c:\windows\system32\asycfilt.dll
2011-02-27 07:46:21 954752 ----a-w- c:\windows\system32\mfc40.dll
2011-02-27 07:46:21 954288 ----a-w- c:\windows\system32\mfc40u.dll
2011-02-27 07:46:06 428032 ----a-w- c:\windows\system32\vbscript.dll
2011-02-27 07:43:41 310784 ----a-w- c:\windows\system32\drivers\srv.sys
2011-02-27 07:42:59 95744 ----a-w- c:\windows\system32\drivers\mrxsmb20.sys
2011-02-27 07:42:59 221696 ----a-w- c:\windows\system32\drivers\mrxsmb10.sys
2011-02-27 07:42:59 123392 ----a-w- c:\windows\system32\drivers\mrxsmb.sys
2011-02-27 07:35:53 728448 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2011-02-27 07:35:53 219008 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2011-02-27 07:35:53 107520 ----a-w- c:\windows\system32\cdd.dll
2011-02-26 19:01:33 -------- d-----w- c:\users\wayneh~1\appdata\local\Google
2011-02-26 19:00:26 -------- d-----w- c:\users\wayneh~1\appdata\local\Deployment
2011-02-26 19:00:26 -------- d-----w- c:\users\wayneh~1\appdata\local\Apps
2011-02-26 18:11:33 -------- d-----w- c:\users\wayneh~1\appdata\roaming\Avira
2011-02-26 17:52:08 -------- d-----w- c:\users\wayneh~1\appdata\local\Diagnostics
2011-02-26 17:40:05 45568 ----a-w- c:\windows\system32\ctppld.dll
2011-02-26 17:39:55 -------- d-----w- c:\windows\system32\Data
2011-02-26 17:39:53 230 ----a-w- c:\windows\ctrunonce.reg
2011-02-26 17:39:40 67072 ------w- c:\windows\system32\CmdRtr.dll
2011-02-26 17:39:40 105472 ------w- c:\windows\system32\APOMngr.dll
2011-02-26 17:39:36 409600 ----a-w- c:\windows\system32\wrap_oal.dll
2011-02-26 17:39:35 1527808 ------w- c:\windows\system32\Sens_oal.dll
2011-02-26 17:39:35 114688 ----a-w- c:\windows\system32\OpenAL32.dll
2011-02-26 17:18:22 61960 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2011-02-26 17:18:21 -------- d-----w- c:\program files\Avira
2011-02-26 17:18:21 -------- d-----w- c:\progra~3\Avira
2011-02-26 17:15:23 -------- d-sh--w- c:\windows\Installer
2011-02-26 17:07:02 222080 ------w- c:\windows\system32\MpSigStub.exe
2011-02-26 16:50:07 -------- d-----w- C:\Intel
2011-02-26 16:47:19 7062 ----a-w- c:\windows\system32\audiopid.vxd
2011-02-26 16:46:43 647872 ------w- c:\windows\system32\Mscomct2.ocx
2011-02-26 16:46:43 53248 ------w- c:\windows\Ctregrun.exe
2011-02-26 16:45:09 -------- d-----w- c:\program files\Creative
2011-02-26 16:45:00 -------- d-----w- c:\program files\common files\Creative
2011-02-26 16:44:56 -------- d--h--w- c:\program files\Creative Installation Information
2011-02-26 16:44:13 32768 ----a-w- c:\program files\common files\installshield\professional\runtime\Objectps.dll
2011-02-26 16:44:12 69715 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\ctor.dll
2011-02-26 16:44:12 266240 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iscript.dll
2011-02-26 16:44:12 192512 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iuser.dll
2011-02-26 16:44:11 729088 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iKernel.dll
2011-02-26 16:44:11 5632 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\DotNetInstaller.exe
2011-02-26 16:44:09 311428 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\setup.dll
2011-02-26 16:44:09 188548 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iGdi.dll
2011-02-26 16:43:43 -------- d-----w- c:\windows\system32\x64
2011-02-26 16:41:53 172032 ----a-w- c:\windows\system32\wintrust.dll
2011-02-26 16:41:50 132608 ----a-w- c:\windows\system32\cabview.dll
2011-02-26 16:35:25 761856 ----a-w- c:\windows\system32\drivers\athr.sys
2011-02-26 16:35:25 761856 ----a-w- c:\windows\system32\athr.sys
2011-02-26 16:34:55 55808 ----a-w- c:\temp\devcon.exe
2011-02-26 16:34:41 -------- d-----w- C:\temp
2011-02-26 16:34:40 -------- d-----w- c:\progra~3\TP-LINK
2011-02-26 15:09:44 -------- dc----w- c:\users\wayneh~1\appdata\local\MigWiz
2011-02-26 14:11:46 -------- d-----w- c:\users\wayneh~1\appdata\local\ElevatedDiagnostics
2011-02-26 14:04:43 -------- d-----w- c:\windows\system32\wbem\Performance
2011-02-26 13:39:42 -------- d-----w- c:\windows\Panther
.
==================== Find3M ====================
.
2011-01-07 07:31:10 442880 ----a-w- c:\windows\system32\XpsPrint.dll
2011-01-07 07:31:10 288256 ----a-w- c:\windows\system32\XpsGdiConverter.dll
2011-01-07 07:27:11 34304 ----a-w- c:\windows\system32\atmlib.dll
2011-01-07 05:33:11 294400 ----a-w- c:\windows\system32\atmfd.dll
2011-01-05 03:37:38 2329088 ----a-w- c:\windows\system32\win32k.sys
2010-12-21 05:38:24 73728 ----a-w- c:\windows\system32\wscsvc.dll
2010-12-21 05:38:24 51200 ----a-w- c:\windows\system32\wscapi.dll
2010-12-21 05:38:22 981504 ----a-w- c:\windows\system32\wininet.dll
2010-12-21 05:38:22 350720 ----a-w- c:\windows\system32\winhttp.dll
2010-12-21 05:38:21 204800 ----a-w- c:\windows\system32\WebClnt.dll
2010-12-21 05:38:19 204288 ----a-w- c:\windows\system32\upnp.dll
2010-12-21 05:38:16 14336 ----a-w- c:\windows\system32\slwga.dll
2010-12-21 05:36:17 1389568 ----a-w- c:\windows\system32\msxml6.dll
2010-12-21 05:36:16 1236992 ----a-w- c:\windows\system32\msxml3.dll
2010-12-21 05:34:12 80384 ----a-w- c:\windows\system32\davclnt.dll
2010-12-18 05:29:40 44544 ----a-w- c:\windows\system32\licmgr10.dll
2010-12-18 05:29:31 541184 ----a-w- c:\windows\system32\kerberos.dll
2010-12-18 04:20:55 386048 ----a-w- c:\windows\system32\html.iec
2010-12-18 03:47:59 1638912 ----a-w- c:\windows\system32\mshtml.tlb
.
============= FINISH: 9:34:42.36 ===============



