Scan result of Farbars's Recovery Tool (FRST written by farbar) Version 2.2.1 Ran by SYSTEM at 2011-08-10 02:24:13 Running from F:\ Windows 7 Home Premium (X64) OS Language: English(US) The current controlset is ControlSet001 ========================== Registry (Whitelisted) ============= HKLM\...\Run: [] [x] HKLM\...\Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [7982112 2009-07-28] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe [1815848 2009-07-20] (Synaptics Incorporated) HKLM\...\Run: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE [497504 2009-08-21] (TOSHIBA Corporation) HKLM\...\Run: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation) HKLM\...\Run: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe [508216 2009-07-28] (TOSHIBA Corporation) HKLM\...\Run: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe [909624 2009-08-05] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] %ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe [711000 2009-08-04] (TOSHIBA Corporation) HKLM\...\Run: [SmartFaceVWatcher] %ProgramFiles%\Toshiba\SmartFaceV\SmartFaceVWatcher.exe [238080 2009-07-29] (TOSHIBA Corporation) HKLM\...\Run: [Teco] "%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r [1482080 2009-08-11] (TOSHIBA Corporation) HKLM\...\Run: [TosSENotify] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2009-08-03] (TOSHIBA Corporation) HKLM\...\Run: [TosNC] %ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe [595816 2009-10-28] (TOSHIBA Corporation) HKLM\...\Run: [TosReelTimeMonitor] %ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [34648 2009-10-28] (TOSHIBA Corporation) HKLM-x32\...\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [98304 2009-07-29] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [ToshibaServiceStation] "C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" /hide:60 [1294136 2009-08-17] (TOSHIBA Corporation) HKLM-x32\...\Run: [TWebCamera] "%ProgramFiles%\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" autorun [2446648 2009-08-11] (TOSHIBA CORPORATION.) HKLM-x32\...\Run: [avast5] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui [2838912 2010-09-07] (AVAST Software) HKLM-x32\...\Run: [BackupNowEZtray] "C:\Program Files (x86)\NewTech Infosystems\Backup Now EZ\BackupNowEZtray.exe" -k [562944 2009-09-19] (NewTech Infosystems, Inc.) HKLM-x32\...\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [47904 2010-09-21] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [421160 2010-12-13] (Apple Inc.) HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime [421888 2010-11-29] (Apple Inc.) HKU\Prototype\...\Run: [Pareto_Update] C:\Program Files (x86)\Common Files\ParetoLogic\UUS2\Pareto_Update.exe [x] HKU\Prototype\...\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /nosplash /minimized [15141768 2011-06-15] (Skype Technologies S.A.) ==================== Services ==================== 3 AeLookupSvc; C:\Windows\System32\aelupsvc.dll [72192 2009-07-13] (Microsoft Corporation) 3 ALG; C:\Windows\System32\alg.exe [79360 2009-07-13] (Microsoft Corporation) 2 AMD External Events Utility; C:\Windows\System32\atiesrxx.exe [203264 2009-07-29] (AMD) 3 AppIDSvc; C:\Windows\System32\appidsvc.dll [32256 2009-07-13] (Microsoft Corporation) 3 Appinfo; C:\Windows\System32\appinfo.dll [70144 2009-07-13] (Microsoft Corporation) 2 Apple Mobile Device; "C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe" [37664 2010-10-15] (Apple Inc.) 2 AudioEndpointBuilder; C:\Windows\System32\Audiosrv.dll [676864 2009-07-13] (Microsoft Corporation) 2 AudioSrv; C:\Windows\System32\Audiosrv.dll [676864 2009-07-13] (Microsoft Corporation) 2 avast! Antivirus; "C:\Program Files\Alwil Software\Avast5\AvastSvc.exe" [40384 2010-09-07] (AVAST Software) 3 avast! Mail Scanner; "C:\Program Files\Alwil Software\Avast5\AvastSvc.exe" [40384 2010-09-07] (AVAST Software) 3 avast! Web Scanner; "C:\Program Files\Alwil Software\Avast5\AvastSvc.exe" [40384 2010-09-07] (AVAST Software) 3 AxInstSV; C:\Windows\System32\AxInstSV.dll [114688 2009-07-13] (Microsoft Corporation) 3 BDESVC; C:\Windows\System32\bdesvc.dll [100864 2009-07-13] (Microsoft Corporation) 2 BFE; C:\Windows\System32\bfe.dll [703488 2009-07-13] (Microsoft Corporation) 2 BITS; C:\Windows\System32\qmgr.dll [848384 2009-07-13] (Microsoft Corporation) 2 Bonjour Service; "C:\Program Files (x86)\Bonjour\mDNSResponder.exe" [345376 2010-07-27] (Apple Inc.) 3 Browser; C:\Windows\System32\browser.dll [136192 2009-07-13] (Microsoft Corporation) 3 bthserv; C:\Windows\System32\bthserv.dll [83968 2009-07-13] (Microsoft Corporation) 3 CertPropSvc; C:\Windows\System32\certprop.dll [80384 2009-07-13] (Microsoft Corporation) 2 cfWiMAXService; "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe" [248688 2009-08-10] (TOSHIBA CORPORATION) 3 clr_optimization_v2.0.50727_32; C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [66384 2009-06-10] (Microsoft Corporation) 3 clr_optimization_v2.0.50727_64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [89920 2009-06-10] (Microsoft Corporation) 3 COMSysApp; C:\Windows\System32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} [9728 2009-07-13] (Microsoft Corporation) 2 ConfigFree Gadget Service; "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFProcSRVC.exe" [42368 2009-07-14] (TOSHIBA CORPORATION) 2 ConfigFree Service; "C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe" [46448 2009-03-10] (TOSHIBA CORPORATION) 2 CryptSvc; C:\Windows\System32\cryptsvc.dll [175104 2009-07-13] (Microsoft Corporation) 2 DcomLaunch; C:\Windows\System32\rpcss.dll [509440 2009-07-13] (Microsoft Corporation) 3 defragsvc; C:\Windows\System32\defragsvc.dll [291328 2009-07-13] (Microsoft Corporation) 2 Dhcp; C:\Windows\System32\dhcpcore.dll [314368 2009-07-13] (Microsoft Corporation) 2 Dnscache; C:\Windows\System32\dnsrslvr.dll [182272 2011-03-02] (Microsoft Corporation) 3 dot3svc; C:\Windows\System32\dot3svc.dll [252416 2009-07-13] (Microsoft Corporation) 2 DPS; C:\Windows\System32\dps.dll [162816 2009-07-13] (Microsoft Corporation) 3 EapHost; C:\Windows\System32\eapsvc.dll [111104 2009-07-13] (Microsoft Corporation) 3 EFS; C:\Windows\System32\lsass.exe [31232 2009-07-13] (Microsoft Corporation) 3 ehRecvr; C:\Windows\ehome\ehRecvr.exe [696320 2010-08-03] (Microsoft Corporation) 3 ehSched; C:\Windows\ehome\ehsched.exe [127488 2009-07-13] (Microsoft Corporation) 2 eventlog; C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [27136 2009-07-13] (Microsoft Corporation) 2 EventSystem; C:\Windows\System32\es.dll [402944 2009-07-13] (Microsoft Corporation) 3 Fax; C:\Windows\System32\fxssvc.exe [689152 2009-07-13] (Microsoft Corporation) 3 fdPHost; C:\Windows\System32\fdPHost.dll [16384 2009-07-13] (Microsoft Corporation) 3 FDResPub; C:\Windows\System32\fdrespub.dll [34816 2009-07-13] (Microsoft Corporation) 3 FontCache; C:\Windows\System32\FntCache.dll [1135104 2011-02-18] (Microsoft Corporation) 3 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [42840 2009-06-10] (Microsoft Corporation) 2 gpsvc; C:\Windows\System32\gpsvc.dll [776192 2009-07-13] (Microsoft Corporation) 2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [135664 2010-03-15] (Google Inc.) 3 hidserv; C:\Windows\System32\hidserv.dll [38912 2009-07-13] (Microsoft Corporation) 3 hkmsvc; C:\Windows\System32\kmsvc.dll [90624 2009-07-13] (Microsoft Corporation) 3 HomeGroupListener; C:\Windows\System32\ListSvc.dll [231936 2009-07-13] (Microsoft Corporation) 3 HomeGroupProvider; C:\Windows\System32\provsvc.dll [187904 2009-07-13] (Microsoft Corporation) 3 idsvc; "C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe" [856384 2009-06-10] (Microsoft Corporation) 3 IKEEXT; C:\Windows\System32\ikeext.dll [845824 2009-07-13] (Microsoft Corporation) 3 IPBusEnum; C:\Windows\System32\ipbusenum.dll [101888 2009-07-13] (Microsoft Corporation) 2 iphlpsvc; C:\Windows\System32\iphlpsvc.dll [565760 2009-07-13] (Microsoft Corporation) 3 iPod Service; "C:\Program Files\iPod\bin\iPodService.exe" [932640 2010-12-13] (Apple Inc.) 3 KeyIso; C:\Windows\System32\lsass.exe [31232 2009-07-13] (Microsoft Corporation) 3 KtmRm; C:\Windows\System32\msdtckrm.dll [368640 2009-07-13] (Microsoft Corporation) 2 LanmanServer; C:\Windows\System32\srvsvc.dll [236032 2010-08-26] (Microsoft Corporation) 2 LanmanWorkstation; C:\Windows\System32\wkssvc.dll [118784 2009-07-13] (Microsoft Corporation) 3 lltdsvc; C:\Windows\System32\lltdsvc.dll [300032 2009-07-13] (Microsoft Corporation) 2 lmhosts; C:\Windows\System32\lmhsvc.dll [23552 2009-07-13] (Microsoft Corporation) 4 Mcx2Svc; C:\Windows\System32\Mcx2Svc.dll [84480 2009-07-13] (Microsoft Corporation) 2 MMCSS; C:\Windows\System32\mmcss.dll [67584 2009-07-13] (Microsoft Corporation) 2 MpsSvc; C:\Windows\System32\mpssvc.dll [824832 2009-07-13] (Microsoft Corporation) 3 MSDTC; C:\Windows\System32\msdtc.exe [141824 2009-07-13] (Microsoft Corporation) 3 MSiSCSI; C:\Windows\System32\iscsiexe.dll [156672 2009-07-13] (Microsoft Corporation) 3 msiserver; C:\Windows\System32\msiexec.exe /V [127488 2009-07-13] (Microsoft Corporation) 3 napagent; C:\Windows\System32\qagentRT.dll [475648 2009-07-13] (Microsoft Corporation) 3 Netlogon; C:\Windows\System32\lsass.exe [31232 2009-07-13] (Microsoft Corporation) 3 Netman; C:\Windows\System32\netman.dll [360448 2009-07-13] (Microsoft Corporation) 3 netprofm; C:\Windows\System32\netprofm.dll [459776 2009-07-13] (Microsoft Corporation) 4 NetTcpPortSharing; "C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe" [116560 2009-06-10] (Microsoft Corporation) 2 NlaSvc; C:\Windows\System32\nlasvc.dll [302080 2009-07-13] (Microsoft Corporation) 2 nsi; C:\Windows\System32\nsisvc.dll [25600 2009-07-13] (Microsoft Corporation) 2 NTI BackupNowEZSvr; C:\Program Files (x86)\NewTech Infosystems\Backup Now EZ\BackupNowEZSvr.exe [45312 2009-09-19] (NewTech Infosystems, Inc.) 3 odserv; "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE" [441712 2008-11-03] (Microsoft Corporation) 3 ose; "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE" [145184 2006-10-26] (Microsoft Corporation) 3 p2pimsvc; C:\Windows\System32\pnrpsvc.dll [327168 2009-07-13] (Microsoft Corporation) 3 p2psvc; C:\Windows\System32\p2psvc.dll [438784 2009-07-13] (Microsoft Corporation) 2 PcaSvc; C:\Windows\System32\pcasvc.dll [186368 2009-07-13] (Microsoft Corporation) 3 PerfHost; C:\Windows\SysWow64\perfhost.exe [20992 2009-07-13] (Microsoft Corporation) 3 pla; C:\Windows\System32\pla.dll [1390080 2009-07-13] (Microsoft Corporation) 2 PlugPlay; C:\Windows\System32\umpnpmgr.dll [404992 2011-05-24] (Microsoft Corporation) 3 PNRPAutoReg; C:\Windows\System32\pnrpauto.dll [25088 2009-07-13] (Microsoft Corporation) 3 PNRPsvc; C:\Windows\System32\pnrpsvc.dll [327168 2009-07-13] (Microsoft Corporation) 3 PolicyAgent; C:\Windows\System32\ipsecsvc.dll [500224 2009-07-13] (Microsoft Corporation) 2 Power; C:\Windows\System32\umpo.dll [163840 2009-07-13] (Microsoft Corporation) 2 ProfSvc; C:\Windows\System32\profsvc.dll [208384 2009-07-13] (Microsoft Corporation) 3 ProtectedStorage; C:\Windows\System32\lsass.exe [31232 2009-07-13] (Microsoft Corporation) 3 QWAVE; C:\Windows\system32\qwave.dll [242688 2009-07-13] (Microsoft Corporation) 3 RasAuto; C:\Windows\System32\rasauto.dll [99328 2009-07-13] (Microsoft Corporation) 3 RasMan; C:\Windows\System32\rasmans.dll [343552 2009-07-13] (Microsoft Corporation) 4 RemoteAccess; C:\Windows\System32\mprdim.dll [97792 2009-07-13] (Microsoft Corporation) 3 RemoteRegistry; C:\Windows\System32\regsvc.dll [159232 2009-07-13] (Microsoft Corporation) 2 RpcEptMapper; C:\Windows\System32\RpcEpMap.dll [67072 2009-07-13] (Microsoft Corporation) 3 RpcLocator; C:\Windows\System32\locator.exe [10240 2009-07-13] (Microsoft Corporation) 2 RpcSs; C:\Windows\System32\rpcss.dll [509440 2009-07-13] (Microsoft Corporation) 2 SamSs; C:\Windows\System32\lsass.exe [31232 2009-07-13] (Microsoft Corporation) 2 SBSDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.) 3 SCardSvr; C:\Windows\System32\SCardSvr.dll [190976 2009-07-13] (Microsoft Corporation) 2 Schedule; C:\Windows\System32\schedsvc.dll [1114624 2010-11-01] (Microsoft Corporation) 3 SCPolicySvc; C:\Windows\System32\certprop.dll [80384 2009-07-13] (Microsoft Corporation) 3 SDRSVC; C:\Windows\System32\SDRSVC.dll [170496 2009-07-13] (Microsoft Corporation) 3 seclogon; C:\Windows\system32\seclogon.dll [30720 2009-07-13] (Microsoft Corporation) 2 SENS; C:\Windows\System32\sens.dll [64512 2009-07-13] (Microsoft Corporation) 3 SensrSvc; C:\Windows\System32\sensrsvc.dll [29184 2009-07-13] (Microsoft Corporation) 3 SessionEnv; C:\Windows\System32\sessenv.dll [104960 2009-07-13] (Microsoft Corporation) 3 SharedAccess; C:\Windows\System32\ipnathlp.dll [359424 2009-07-13] (Microsoft Corporation) 2 ShellHWDetection; C:\Windows\System32\shsvcs.dll [369664 2009-07-13] (Microsoft Corporation) 3 SNMPTRAP; C:\Windows\System32\snmptrap.exe [14336 2009-07-13] (Microsoft Corporation) 2 Spooler; C:\Windows\System32\spoolsv.exe [558592 2010-08-20] (Microsoft Corporation) 2 sppsvc; C:\Windows\System32\sppsvc.exe [3524608 2009-07-13] (Microsoft Corporation) 3 sppuinotify; C:\Windows\System32\sppuinotify.dll [65536 2009-07-13] (Microsoft Corporation) 3 SSDPSRV; C:\Windows\System32\ssdpsrv.dll [193024 2009-07-13] (Microsoft Corporation) 3 SstpSvc; C:\Windows\System32\sstpsvc.dll [75264 2009-07-13] (Microsoft Corporation) 2 stisvc; C:\Windows\System32\wiaservc.dll [578560 2009-07-13] (Microsoft Corporation) 3 swprv; C:\Windows\System32\swprv.dll [524288 2009-07-13] (Microsoft Corporation) 2 SysMain; C:\Windows\System32\sysmain.dll [1780736 2009-07-13] (Microsoft Corporation) 3 TabletInputService; C:\Windows\System32\TabSvc.dll [93184 2009-07-13] (Microsoft Corporation) 3 TapiSrv; C:\Windows\System32\tapisrv.dll [316416 2009-07-13] (Microsoft Corporation) 3 TBS; C:\Windows\System32\tbssvc.dll [65536 2009-07-13] (Microsoft Corporation) 3 TermService; C:\Windows\System32\termsrv.dll [706560 2009-07-13] (Microsoft Corporation) 2 Themes; C:\Windows\System32\themeservice.dll [44544 2009-07-13] (Microsoft Corporation) 3 THREADORDER; C:\Windows\System32\mmcss.dll [67584 2009-07-13] (Microsoft Corporation) 3 TMachInfo; C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [51512 2009-08-17] (TOSHIBA Corporation) 2 TODDSrv; C:\Windows\system32\TODDSrv.exe [140632 2009-07-28] (TOSHIBA Corporation) 2 TosCoSrv; "C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe" [488800 2009-08-21] (TOSHIBA Corporation) 2 TOSHIBA eco Utility Service; "C:\Program Files\TOSHIBA\TECO\TecoService.exe" [252272 2009-08-11] (TOSHIBA Corporation) 3 TOSHIBA HDD SSD Alert Service; "C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe" [137560 2009-08-03] (TOSHIBA Corporation) 3 TPCHSrv; "C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe" [826224 2009-08-04] (TOSHIBA Corporation) 2 TrkWks; C:\Windows\System32\trkwks.dll [119808 2009-07-13] (Microsoft Corporation) 3 TrustedInstaller; C:\Windows\servicing\TrustedInstaller.exe [194048 2009-07-13] (Microsoft Corporation) 3 UI0Detect; C:\Windows\System32\UI0Detect.exe [40960 2009-07-13] (Microsoft Corporation) 3 upnphost; C:\Windows\System32\upnphost.dll [353792 2009-07-13] (Microsoft Corporation) 2 UxSms; C:\Windows\System32\uxsms.dll [38912 2009-07-13] (Microsoft Corporation) 3 VaultSvc; C:\Windows\System32\lsass.exe [31232 2009-07-13] (Microsoft Corporation) 3 vds; C:\Windows\System32\vds.exe [532480 2009-07-13] (Microsoft Corporation) 3 VSS; C:\Windows\System32\vssvc.exe [1598976 2009-07-13] (Microsoft Corporation) 3 W32Time; C:\Windows\System32\w32time.dll [381952 2009-07-13] (Microsoft Corporation) 3 wbengine; "C:\Windows\system32\wbengine.exe" [1503744 2009-07-13] (Microsoft Corporation) 3 WbioSrvc; C:\Windows\System32\wbiosrvc.dll [202240 2009-07-13] (Microsoft Corporation) 3 wcncsvc; C:\Windows\System32\wcncsvc.dll [367104 2010-09-13] (Microsoft Corporation) 3 WcsPlugInService; C:\Windows\System32\WcsPlugInService.dll [40960 2009-07-13] (Microsoft Corporation) 3 WdiServiceHost; C:\Windows\System32\wdi.dll [90624 2009-07-13] (Microsoft Corporation) 3 WdiSystemHost; C:\Windows\System32\wdi.dll [90624 2009-07-13] (Microsoft Corporation) 3 WebClient; C:\Windows\System32\webclnt.dll [258048 2010-12-20] (Microsoft Corporation) 3 Wecsvc; C:\Windows\System32\wecsvc.dll [237568 2009-07-13] (Microsoft Corporation) 3 wercplsupport; C:\Windows\System32\wercplsupport.dll [84480 2009-07-13] (Microsoft Corporation) 3 WerSvc; C:\Windows\System32\WerSvc.dll [76800 2009-07-13] (Microsoft Corporation) 2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-13] (Microsoft Corporation) 3 WinHttpAutoProxySvc; winhttp.dll [442880 2010-12-20] (Microsoft Corporation) 2 Winmgmt; C:\Windows\System32\wbem\WMIsvc.dll [242688 2009-07-13] (Microsoft Corporation) 3 WinRM; C:\Windows\System32\WsmSvc.dll [2018816 2009-07-13] (Microsoft Corporation) 2 Wlansvc; C:\Windows\System32\wlansvc.dll [886784 2009-07-13] (Microsoft Corporation) 2 wlidsvc; "C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE" [2286976 2010-09-21] (Microsoft Corp.) 3 wmiApSrv; C:\Windows\System32\wbem\WmiApSrv.exe [203264 2009-07-13] (Microsoft Corporation) 2 WMPNetworkSvc; "C:\Program Files\Windows Media Player\wmpnetwk.exe" [1525248 2009-07-13] (Microsoft Corporation) 3 WPCSvc; C:\Windows\System32\wpcsvc.dll [12288 2009-07-13] (Microsoft Corporation) 3 WPDBusEnum; C:\Windows\System32\wpdbusenum.dll [116736 2009-07-13] (Microsoft Corporation) 2 wscsvc; C:\Windows\System32\wscsvc.dll [97280 2010-12-20] (Microsoft Corporation) 2 WSearch; C:\Windows\System32\SearchIndexer.exe /Embedding [593408 2011-05-03] (Microsoft Corporation) 2 wuauserv; C:\Windows\System32\wuaueng.dll [2418176 2009-07-13] (Microsoft Corporation) 2 wudfsvc; C:\Windows\System32\WUDFSvc.dll [75264 2009-07-13] (Microsoft Corporation) 3 WwanSvc; C:\Windows\System32\wwansvc.dll [229888 2009-07-13] (Microsoft Corporation) 3 gusvc; "C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe" [x] 3 McComponentHostService; "C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe" [x] 2 nlsX86cc; C:\windows\system32\nlssrv32.exe [x] 2 NvtlService; "C:\Program Files (x86)\Novatel Wireless\Novacore\Server\NvtlSrvr.exe" [x] 3 WatAdminSvc; C:\Windows\System32\Wat\WatAdminSvc.exe [x] ========================== Drivers =========================== 0 ACPI; C:\Windows\System32\DRIVERS\ACPI.sys [334416 2009-07-13] (Microsoft Corporation) 3 AcpiPmi; C:\Windows\System32\DRIVERS\acpipmi.sys [12288 2009-07-13] (Microsoft Corporation) 3 adp94xx; C:\Windows\System32\DRIVERS\adp94xx.sys [491088 2009-07-13] (Adaptec, Inc.) 3 adpahci; C:\Windows\System32\DRIVERS\adpahci.sys [339536 2009-07-13] (Adaptec, Inc.) 3 adpu320; C:\Windows\System32\DRIVERS\adpu320.sys [182864 2009-07-13] (Adaptec, Inc.) 1 AFD; C:\Windows\System32\drivers\afd.sys [499712 2011-04-24] (Microsoft Corporation) 3 AgereSoftModem; C:\Windows\System32\DRIVERS\agrsm64.sys [1146880 2009-06-10] (LSI Corp) 3 agp440; C:\Windows\System32\DRIVERS\agp440.sys [61008 2009-07-13] (Microsoft Corporation) 3 aliide; C:\Windows\System32\DRIVERS\aliide.sys [15440 2009-07-13] (Acer Laboratories Inc.) 3 amdide; C:\Windows\System32\DRIVERS\amdide.sys [15440 2009-07-13] (Microsoft Corporation) 3 AmdK8; C:\Windows\System32\DRIVERS\amdk8.sys [64512 2009-07-13] (Microsoft Corporation) 3 AmdPPM; C:\Windows\System32\DRIVERS\amdppm.sys [60928 2009-07-13] (Microsoft Corporation) 3 amdsata; C:\Windows\System32\DRIVERS\amdsata.sys [106576 2009-07-13] (Advanced Micro Devices) 3 amdsbs; C:\Windows\System32\DRIVERS\amdsbs.sys [194128 2009-07-13] (AMD Technologies Inc.) 0 amdxata; C:\Windows\System32\DRIVERS\amdxata.sys [28752 2009-07-13] (Advanced Micro Devices) 3 AppID; C:\Windows\System32\drivers\appid.sys [61440 2009-07-13] (Microsoft Corporation) 3 arc; C:\Windows\System32\DRIVERS\arc.sys [87632 2009-07-13] (Adaptec, Inc.) 3 arcsas; C:\Windows\System32\DRIVERS\arcsas.sys [97856 2009-07-13] (Adaptec, Inc.) 2 aswFsBlk; C:\Windows\System32\Drivers\aswFsBlk.sys [20048 2010-09-07] (AVAST Software) 2 aswMonFlt; \??\C:\windows\system32\drivers\aswMonFlt.sys [61008 2010-09-07] (AVAST Software) 1 aswRdr; C:\Windows\System32\Drivers\aswRdr.sys [28752 2010-09-07] (AVAST Software) 1 aswSP; C:\Windows\System32\Drivers\aswSP.sys [121936 2010-09-07] (AVAST Software) 1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [51280 2010-09-07] (AVAST Software) 3 AsyncMac; C:\Windows\System32\DRIVERS\asyncmac.sys [23040 2009-07-13] (Microsoft Corporation) 0 atapi; C:\Windows\System32\DRIVERS\atapi.sys [24128 2009-07-13] (Microsoft Corporation) 3 athr; C:\Windows\System32\DRIVERS\athrx.sys [1394688 2009-06-19] (Atheros Communications, Inc.) 3 atikmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [6037504 2009-07-30] (ATI Technologies Inc.) 0 AtiPcie; C:\Windows\System32\DRIVERS\AtiPcie.sys [16440 2009-05-04] (Advanced Micro Devices Inc.) 3 b06bdrv; C:\Windows\System32\DRIVERS\bxvbda.sys [468480 2009-06-10] (Broadcom Corporation) 3 b57nd60a; C:\Windows\System32\DRIVERS\b57nd60a.sys [270848 2009-06-10] (Broadcom Corporation) 1 Beep; C:\Windows\System32\Drivers\Beep.sys [6656 2009-07-13] (Microsoft Corporation) 1 blbdrive; C:\Windows\System32\DRIVERS\blbdrive.sys [45056 2009-07-13] (Microsoft Corporation) 3 bowser; C:\Windows\System32\DRIVERS\bowser.sys [90624 2011-02-22] (Microsoft Corporation) 3 BrFiltLo; C:\Windows\System32\DRIVERS\BrFiltLo.sys [18432 2009-06-10] (Brother Industries, Ltd.) 3 BrFiltUp; C:\Windows\System32\DRIVERS\BrFiltUp.sys [8704 2009-06-10] (Brother Industries, Ltd.) 3 Brserid; C:\Windows\System32\Drivers\Brserid.sys [286720 2009-07-13] (Brother Industries Ltd.) 3 BrSerWdm; C:\Windows\System32\Drivers\BrSerWdm.sys [47104 2009-06-10] (Brother Industries Ltd.) 3 BrUsbMdm; C:\Windows\System32\Drivers\BrUsbMdm.sys [14976 2009-06-10] (Brother Industries Ltd.) 3 BrUsbSer; C:\Windows\System32\Drivers\BrUsbSer.sys [14720 2009-06-10] (Brother Industries Ltd.) 3 BTHMODEM; C:\Windows\System32\DRIVERS\bthmodem.sys [72192 2009-07-13] (Microsoft Corporation) 4 cdfs; C:\Windows\System32\DRIVERS\cdfs.sys [92160 2009-07-13] (Microsoft Corporation) 1 cdrom; C:\Windows\System32\DRIVERS\cdrom.sys [147456 2009-07-13] (Microsoft Corporation) 3 circlass; C:\Windows\System32\DRIVERS\circlass.sys [45568 2009-07-13] (Microsoft Corporation) 0 CLFS; C:\Windows\System32\CLFS.sys [367696 2009-07-13] (Microsoft Corporation) 3 CmBatt; C:\Windows\System32\DRIVERS\CmBatt.sys [17664 2009-07-13] (Microsoft Corporation) 3 cmdide; C:\Windows\System32\DRIVERS\cmdide.sys [17488 2009-07-13] (CMD Technology, Inc.) 0 CNG; C:\Windows\System32\Drivers\cng.sys [460504 2009-07-13] (Microsoft Corporation) 0 Compbatt; C:\Windows\System32\DRIVERS\compbatt.sys [21584 2009-07-13] (Microsoft Corporation) 3 CompositeBus; C:\Windows\System32\DRIVERS\CompositeBus.sys [38912 2009-07-13] (Microsoft Corporation) 4 crcdisk; C:\Windows\System32\DRIVERS\crcdisk.sys [24144 2009-07-13] (Microsoft Corporation) 1 DfsC; C:\Windows\System32\Drivers\dfsc.sys [102400 2011-04-26] (Microsoft Corporation) 1 discache; C:\Windows\System32\drivers\discache.sys [40448 2009-07-13] (Microsoft Corporation) 0 Disk; C:\Windows\System32\DRIVERS\disk.sys [73280 2009-07-13] (Microsoft Corporation) 3 Dot4; C:\Windows\System32\DRIVERS\Dot4.sys [145920 2009-07-13] (Microsoft Corporation) 3 Dot4Print; C:\Windows\System32\DRIVERS\Dot4Prt.sys [19968 2009-07-13] (Microsoft Corporation) 3 dot4usb; C:\Windows\System32\DRIVERS\dot4usb.sys [43008 2009-07-13] (Microsoft Corporation) 3 drmkaud; C:\Windows\System32\drivers\drmkaud.sys [5632 2009-07-13] (Microsoft Corporation) 3 DXGKrnl; C:\Windows\System32\drivers\dxgkrnl.sys [982912 2011-01-25] (Microsoft Corporation) 3 ebdrv; C:\Windows\System32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) 3 elxstor; C:\Windows\System32\DRIVERS\elxstor.sys [530496 2009-07-13] (Emulex) 3 ErrDev; C:\Windows\System32\DRIVERS\errdev.sys [9728 2009-07-13] (Microsoft Corporation) 3 exfat; C:\Windows\System32\Drivers\exfat.sys [195072 2009-07-13] (Microsoft Corporation) 3 fastfat; C:\Windows\System32\Drivers\fastfat.sys [204800 2009-07-13] (Microsoft Corporation) 3 fdc; C:\Windows\System32\DRIVERS\fdc.sys [29696 2009-07-13] (Microsoft Corporation) 0 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [70224 2009-07-13] (Microsoft Corporation) 3 Filetrace; C:\Windows\System32\drivers\filetrace.sys [34304 2009-07-13] (Microsoft Corporation) 3 flpydisk; C:\Windows\System32\DRIVERS\flpydisk.sys [24576 2009-07-13] (Microsoft Corporation) 0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [290368 2009-07-13] (Microsoft Corporation) 3 FsDepends; C:\Windows\System32\drivers\FsDepends.sys [55376 2009-07-13] (Microsoft Corporation) 0 Fs_Rec; C:\Windows\System32\Drivers\Fs_Rec.sys [23104 2009-07-13] (Microsoft Corporation) 0 fvevol; C:\Windows\System32\DRIVERS\fvevol.sys [223448 2009-09-25] (Microsoft Corporation) 3 FwLnk; C:\Windows\System32\DRIVERS\FwLnk.sys [9216 2009-07-07] (TOSHIBA Corporation) 3 gagp30kx; C:\Windows\System32\DRIVERS\gagp30kx.sys [65088 2009-07-13] (Microsoft Corporation) 3 GEARAspiWDM; C:\Windows\System32\DRIVERS\GEARAspiWDM.sys [34152 2009-05-18] (GEAR Software Inc.) 3 hcw85cir; C:\Windows\System32\drivers\hcw85cir.sys [31232 2009-06-10] (Hauppauge Computer Works, Inc.) 3 HdAudAddService; C:\Windows\System32\drivers\HdAudio.sys [350208 2009-07-13] (Microsoft Corporation) 3 HDAudBus; C:\Windows\System32\DRIVERS\HDAudBus.sys [122368 2009-07-13] (Microsoft Corporation) 3 HidBatt; C:\Windows\System32\DRIVERS\HidBatt.sys [26624 2009-07-13] (Microsoft Corporation) 3 HidBth; C:\Windows\System32\DRIVERS\hidbth.sys [100864 2009-07-13] (Microsoft Corporation) 3 HidIr; C:\Windows\System32\DRIVERS\hidir.sys [46592 2009-07-13] (Microsoft Corporation) 3 HidUsb; C:\Windows\System32\DRIVERS\hidusb.sys [30208 2009-07-13] (Microsoft Corporation) 3 HpSAMD; C:\Windows\System32\DRIVERS\HpSAMD.sys [77888 2009-07-13] (Hewlett-Packard Company) 3 HTTP; C:\Windows\System32\drivers\HTTP.sys [751616 2009-07-13] (Microsoft Corporation) 0 hwpolicy; C:\Windows\System32\drivers\hwpolicy.sys [14416 2009-07-13] (Microsoft Corporation) 3 i8042prt; C:\Windows\System32\DRIVERS\i8042prt.sys [105472 2009-07-13] (Microsoft Corporation) 3 iaStorV; C:\Windows\System32\DRIVERS\iaStorV.sys [410688 2009-07-13] (Intel Corporation) 3 iirsp; C:\Windows\System32\DRIVERS\iirsp.sys [44112 2009-07-13] (Intel Corp./ICP vortex GmbH) 3 IntcAzAudAddService; C:\Windows\System32\drivers\RTKVHD64.sys [1966624 2009-07-28] (Realtek Semiconductor Corp.) 3 intelide; C:\Windows\System32\DRIVERS\intelide.sys [16960 2009-07-13] (Microsoft Corporation) 3 intelppm; C:\Windows\System32\DRIVERS\intelppm.sys [62464 2009-07-13] (Microsoft Corporation) 3 IpFilterDriver; C:\Windows\System32\DRIVERS\ipfltdrv.sys [82944 2009-07-13] (Microsoft Corporation) 3 IPMIDRV; C:\Windows\System32\DRIVERS\IPMIDrv.sys [78848 2009-07-13] (Microsoft Corporation) 3 IPNAT; C:\Windows\System32\drivers\ipnat.sys [116224 2009-07-13] (Microsoft Corporation) 3 IRENUM; C:\Windows\System32\drivers\irenum.sys [17920 2009-07-13] (Microsoft Corporation) 3 isapnp; C:\Windows\System32\DRIVERS\isapnp.sys [20544 2009-07-13] (Microsoft Corporation) 3 iScsiPrt; C:\Windows\System32\DRIVERS\msiscsi.sys [224832 2009-07-13] (Microsoft Corporation) 3 kbdclass; C:\Windows\System32\DRIVERS\kbdclass.sys [50768 2009-07-13] (Microsoft Corporation) 3 kbdhid; C:\Windows\System32\DRIVERS\kbdhid.sys [33280 2009-07-13] (Microsoft Corporation) 0 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [95312 2009-07-13] (Microsoft Corporation) 0 KSecPkg; C:\Windows\System32\Drivers\ksecpkg.sys [153160 2009-12-11] (Microsoft Corporation) 3 ksthunk; C:\Windows\System32\drivers\ksthunk.sys [20992 2009-07-13] (Microsoft Corporation) 2 lltdio; C:\Windows\System32\DRIVERS\lltdio.sys [60928 2009-07-13] (Microsoft Corporation) 3 LSI_FC; C:\Windows\System32\DRIVERS\lsi_fc.sys [114752 2009-07-13] (LSI Corporation) 3 LSI_SAS; C:\Windows\System32\DRIVERS\lsi_sas.sys [106560 2009-07-13] (LSI Corporation) 3 LSI_SAS2; C:\Windows\System32\DRIVERS\lsi_sas2.sys [65600 2009-07-13] (LSI Corporation) 3 LSI_SCSI; C:\Windows\System32\DRIVERS\lsi_scsi.sys [115776 2009-07-13] (LSI Corporation) 2 luafv; C:\Windows\System32\drivers\luafv.sys [113152 2009-07-13] (Microsoft Corporation) 3 megasas; C:\Windows\System32\DRIVERS\megasas.sys [35392 2009-07-13] (LSI Corporation) 3 MegaSR; C:\Windows\System32\DRIVERS\MegaSR.sys [284736 2009-07-13] (LSI Corporation, Inc.) 3 Modem; C:\Windows\System32\drivers\modem.sys [40448 2009-07-13] (Microsoft Corporation) 3 monitor; C:\Windows\System32\DRIVERS\monitor.sys [30208 2009-07-13] (Microsoft Corporation) 3 mouclass; C:\Windows\System32\DRIVERS\mouclass.sys [49216 2009-07-13] (Microsoft Corporation) 3 mouhid; C:\Windows\System32\DRIVERS\mouhid.sys [31232 2009-07-13] (Microsoft Corporation) 0 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [94784 2009-07-13] (Microsoft Corporation) 3 mpio; C:\Windows\System32\DRIVERS\mpio.sys [155216 2009-07-13] (Microsoft Corporation) 3 mpsdrv; C:\Windows\System32\drivers\mpsdrv.sys [77312 2009-07-13] (Microsoft Corporation) 3 MRxDAV; C:\Windows\System32\drivers\mrxdav.sys [140800 2009-07-13] (Microsoft Corporation) 3 mrxsmb; C:\Windows\System32\DRIVERS\mrxsmb.sys [157696 2011-05-03] (Microsoft Corporation) 3 mrxsmb10; C:\Windows\System32\DRIVERS\mrxsmb10.sys [287744 2011-05-03] (Microsoft Corporation) 3 mrxsmb20; C:\Windows\System32\DRIVERS\mrxsmb20.sys [126464 2011-05-03] (Microsoft Corporation) 0 msahci; C:\Windows\System32\DRIVERS\msahci.sys [30272 2009-07-13] (Microsoft Corporation) 3 msdsm; C:\Windows\System32\DRIVERS\msdsm.sys [140352 2009-07-13] (Microsoft Corporation) 1 Msfs; C:\Windows\System32\Drivers\Msfs.sys [26112 2009-07-13] (Microsoft Corporation) 3 mshidkmdf; C:\Windows\System32\drivers\mshidkmdf.sys [8192 2009-07-13] (Microsoft Corporation) 0 msisadrv; C:\Windows\System32\DRIVERS\msisadrv.sys [15424 2009-07-13] (Microsoft Corporation) 3 MSKSSRV; C:\Windows\System32\drivers\MSKSSRV.sys [11136 2009-07-13] (Microsoft Corporation) 3 MSPCLOCK; C:\Windows\System32\drivers\MSPCLOCK.sys [7168 2009-07-13] (Microsoft Corporation) 3 MSPQM; C:\Windows\System32\drivers\MSPQM.sys [6784 2009-07-13] (Microsoft Corporation) 3 MsRPC; C:\Windows\System32\Drivers\MsRPC.sys [367168 2009-07-13] (Microsoft Corporation) 1 mssmbios; C:\Windows\System32\DRIVERS\mssmbios.sys [32320 2009-07-13] (Microsoft Corporation) 3 MSTEE; C:\Windows\System32\drivers\MSTEE.sys [8064 2009-07-13] (Microsoft Corporation) 3 MTConfig; C:\Windows\System32\DRIVERS\MTConfig.sys [15360 2009-07-13] (Microsoft Corporation) 0 Mup; C:\Windows\System32\Drivers\mup.sys [60496 2009-07-13] (Microsoft Corporation) 3 NativeWifiP; C:\Windows\System32\DRIVERS\nwifi.sys [318976 2009-07-13] (Microsoft Corporation) 0 NDIS; C:\Windows\System32\drivers\ndis.sys [947776 2009-07-13] (Microsoft Corporation) 3 NdisCap; C:\Windows\System32\DRIVERS\ndiscap.sys [35328 2009-07-13] (Microsoft Corporation) 3 NdisTapi; C:\Windows\System32\DRIVERS\ndistapi.sys [24064 2009-07-13] (Microsoft Corporation) 3 Ndisuio; C:\Windows\System32\DRIVERS\ndisuio.sys [56320 2009-07-13] (Microsoft Corporation) 3 NdisWan; C:\Windows\System32\DRIVERS\ndiswan.sys [164352 2009-07-13] (Microsoft Corporation) 3 NDProxy; C:\Windows\System32\Drivers\NDProxy.sys [57856 2009-07-13] (Microsoft Corporation) 1 NetBIOS; C:\Windows\System32\DRIVERS\netbios.sys [44544 2009-07-13] (Microsoft Corporation) 1 NetBT; C:\Windows\System32\DRIVERS\netbt.sys [259072 2009-07-13] (Microsoft Corporation) 3 nfrd960; C:\Windows\System32\DRIVERS\nfrd960.sys [51264 2009-07-13] (IBM Corporation) 1 Npfs; C:\Windows\System32\Drivers\Npfs.sys [44032 2009-07-13] (Microsoft Corporation) 1 nsiproxy; C:\Windows\System32\drivers\nsiproxy.sys [24576 2009-07-13] (Microsoft Corporation) 3 Ntfs; C:\Windows\System32\Drivers\Ntfs.sys [1657216 2011-03-10] (Microsoft Corporation) 3 NTIDrvr; \??\C:\windows\system32\drivers\NTIDrvr.sys [18432 2009-05-05] (NewTech Infosystems, Inc.) 1 Null; C:\Windows\System32\Drivers\Null.sys [6144 2009-07-13] (Microsoft Corporation) 3 nvraid; C:\Windows\System32\DRIVERS\nvraid.sys [149056 2009-07-13] (NVIDIA Corporation) 3 nvstor; C:\Windows\System32\DRIVERS\nvstor.sys [167488 2009-07-13] (NVIDIA Corporation) 3 nv_agp; C:\Windows\System32\DRIVERS\nv_agp.sys [122960 2009-07-13] (Microsoft Corporation) 3 NWVMModem; C:\Windows\System32\DRIVERS\nwvmmdm.sys [213376 2009-05-15] (Novatel Wireless Inc.) 3 NWVMPort; C:\Windows\System32\DRIVERS\nwvmser.sys [213376 2009-05-15] (Novatel Wireless Inc.) 3 NWVMPort2; C:\Windows\System32\DRIVERS\nwvmser2.sys [213376 2009-05-15] (Novatel Wireless Inc.) 3 ohci1394; C:\Windows\System32\DRIVERS\ohci1394.sys [72832 2009-07-13] (Microsoft Corporation) 3 Parport; C:\Windows\System32\DRIVERS\parport.sys [97280 2009-07-13] (Microsoft Corporation) 0 partmgr; C:\Windows\System32\drivers\partmgr.sys [75840 2009-07-13] (Microsoft Corporation) 0 pci; C:\Windows\System32\DRIVERS\pci.sys [183872 2009-07-13] (Microsoft Corporation) 0 pciide; C:\Windows\System32\DRIVERS\pciide.sys [12352 2009-07-13] (Microsoft Corporation) 3 pcmcia; C:\Windows\System32\DRIVERS\pcmcia.sys [220752 2009-07-13] (Microsoft Corporation) 0 pcw; C:\Windows\System32\drivers\pcw.sys [50768 2009-07-13] (Microsoft Corporation) 2 PEAUTH; C:\Windows\System32\drivers\peauth.sys [651264 2009-07-13] (Microsoft Corporation) 3 PGEffect; C:\Windows\System32\DRIVERS\pgeffect.sys [35008 2009-06-22] (TOSHIBA Corporation) 3 PptpMiniport; C:\Windows\System32\DRIVERS\raspptp.sys [111616 2009-07-13] (Microsoft Corporation) 3 Processor; C:\Windows\System32\DRIVERS\processr.sys [60416 2009-07-13] (Microsoft Corporation) 1 Psched; C:\Windows\System32\DRIVERS\pacer.sys [131584 2009-07-13] (Microsoft Corporation) 3 ql2300; C:\Windows\System32\DRIVERS\ql2300.sys [1524816 2009-07-13] (QLogic Corporation) 3 ql40xx; C:\Windows\System32\DRIVERS\ql40xx.sys [128592 2009-07-13] (QLogic Corporation) 3 QWAVEdrv; C:\Windows\System32\drivers\qwavedrv.sys [46592 2009-07-13] (Microsoft Corporation) 3 RasAcd; C:\Windows\System32\DRIVERS\rasacd.sys [14848 2009-07-13] (Microsoft Corporation) 3 RasAgileVpn; C:\Windows\System32\DRIVERS\AgileVpn.sys [60416 2009-07-13] (Microsoft Corporation) 3 Rasl2tp; C:\Windows\System32\DRIVERS\rasl2tp.sys [130048 2009-07-13] (Microsoft Corporation) 3 RasPppoe; C:\Windows\System32\DRIVERS\raspppoe.sys [92672 2009-07-13] (Microsoft Corporation) 3 RasSstp; C:\Windows\System32\DRIVERS\rassstp.sys [83968 2009-07-13] (Microsoft Corporation) 1 rdbss; C:\Windows\System32\DRIVERS\rdbss.sys [309248 2009-07-13] (Microsoft Corporation) 3 rdpbus; C:\Windows\System32\DRIVERS\rdpbus.sys [24064 2009-07-13] (Microsoft Corporation) 1 RDPCDD; C:\Windows\System32\DRIVERS\RDPCDD.sys [7680 2009-07-13] (Microsoft Corporation) 1 RDPENCDD; C:\Windows\System32\drivers\rdpencdd.sys [7680 2009-07-13] (Microsoft Corporation) 1 RDPREFMP; C:\Windows\System32\drivers\rdprefmp.sys [8192 2009-07-13] (Microsoft Corporation) 3 RDPWD; C:\Windows\System32\Drivers\RDPWD.sys [204800 2009-07-13] (Microsoft Corporation) 0 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [214096 2009-07-13] (Microsoft Corporation) 2 rspndr; C:\Windows\System32\DRIVERS\rspndr.sys [76800 2009-07-13] (Microsoft Corporation) 3 RSUSBSTOR; C:\Windows\System32\Drivers\RtsUStor.sys [222208 2009-08-05] (Realtek Semiconductor Corp.) 3 RTHDMIAzAudService; C:\Windows\System32\drivers\RtHDMIVX.sys [205472 2009-06-24] (Realtek Semiconductor Corp.) 3 RTL8167; C:\Windows\System32\DRIVERS\Rt64win7.sys [346144 2010-03-04] (Realtek ) 3 rtl8192se; C:\Windows\System32\DRIVERS\rtl8192se.sys [1089056 2010-01-28] (Realtek Semiconductor Corporation ) 3 sbp2port; C:\Windows\System32\DRIVERS\sbp2port.sys [104016 2009-07-13] (Microsoft Corporation) 3 scfilter; C:\Windows\System32\DRIVERS\scfilter.sys [29696 2009-07-13] (Microsoft Corporation) 2 secdrv; C:\Windows\System32\Drivers\secdrv.sys [23040 2009-06-10] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) 3 Serenum; C:\Windows\System32\DRIVERS\serenum.sys [23552 2009-07-13] (Microsoft Corporation) 3 Serial; C:\Windows\System32\DRIVERS\serial.sys [94208 2009-07-13] (Microsoft Corporation) 3 sermouse; C:\Windows\System32\DRIVERS\sermouse.sys [26624 2009-07-13] (Microsoft Corporation) 3 sffdisk; C:\Windows\System32\DRIVERS\sffdisk.sys [14336 2009-07-13] (Microsoft Corporation) 3 sffp_mmc; C:\Windows\System32\DRIVERS\sffp_mmc.sys [13824 2009-07-13] (Microsoft Corporation) 3 sffp_sd; C:\Windows\System32\DRIVERS\sffp_sd.sys [14336 2009-07-13] (Microsoft Corporation) 3 sfloppy; C:\Windows\System32\DRIVERS\sfloppy.sys [16896 2009-07-13] (Microsoft Corporation) 3 SiSRaid2; C:\Windows\System32\DRIVERS\SiSRaid2.sys [43584 2009-07-13] (Silicon Integrated Systems Corp.) 3 SiSRaid4; C:\Windows\System32\DRIVERS\sisraid4.sys [80464 2009-07-13] (Silicon Integrated Systems) 3 Smb; C:\Windows\System32\DRIVERS\smb.sys [93184 2009-07-13] (Microsoft Corporation) 0 spldr; C:\Windows\System32\Drivers\spldr.sys [19008 2009-07-13] (Microsoft Corporation) 3 srv; C:\Windows\System32\DRIVERS\srv.sys [461312 2011-04-28] (Microsoft Corporation) 3 srv2; C:\Windows\System32\DRIVERS\srv2.sys [399872 2011-04-28] (Microsoft Corporation) 3 srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [161792 2011-04-28] (Microsoft Corporation) 3 stexstor; C:\Windows\System32\DRIVERS\stexstor.sys [24656 2009-07-13] (Promise Technology) 3 swenum; C:\Windows\System32\DRIVERS\swenum.sys [12496 2009-07-13] (Microsoft Corporation) 3 SynTP; C:\Windows\System32\DRIVERS\SynTP.sys [274480 2009-07-20] (Synaptics Incorporated) 0 Tcpip; C:\Windows\System32\drivers\tcpip.sys [1896832 2011-04-24] (Microsoft Corporation) 3 TCPIP6; C:\Windows\System32\DRIVERS\tcpip.sys [1896832 2011-04-24] (Microsoft Corporation) 2 tcpipreg; C:\Windows\System32\drivers\tcpipreg.sys [44544 2009-07-13] (Microsoft Corporation) 3 tdcmdpst; C:\Windows\System32\DRIVERS\tdcmdpst.sys [27784 2009-07-30] (TOSHIBA Corporation.) 3 TDPIPE; C:\Windows\System32\drivers\tdpipe.sys [15872 2009-07-13] (Microsoft Corporation) 3 TDTCP; C:\Windows\System32\drivers\tdtcp.sys [23552 2009-07-13] (Microsoft Corporation) 1 tdx; C:\Windows\System32\DRIVERS\tdx.sys [99840 2009-07-13] (Microsoft Corporation) 1 TermDD; C:\Windows\System32\DRIVERS\termdd.sys [62544 2009-07-13] (Microsoft Corporation) 0 tos_sps64; C:\Windows\System32\DRIVERS\tos_sps64.sys [482384 2009-07-24] (TOSHIBA Corporation) 3 tssecsrv; C:\Windows\System32\DRIVERS\tssecsrv.sys [38400 2009-07-13] (Microsoft Corporation) 3 tunnel; C:\Windows\System32\DRIVERS\tunnel.sys [125440 2009-07-13] (Microsoft Corporation) 0 TVALZ; C:\Windows\System32\DRIVERS\TVALZ_O.SYS [26840 2009-07-14] (TOSHIBA Corporation) 2 TVALZFL; C:\Windows\System32\DRIVERS\TVALZFL.sys [14472 2009-06-19] (TOSHIBA Corporation) 3 uagp35; C:\Windows\System32\DRIVERS\uagp35.sys [64080 2009-07-13] (Microsoft Corporation) 3 UBHelper; \??\C:\windows\system32\drivers\UBHelper.sys [16896 2009-05-05] (NewTech Infosystems Corporation) 4 udfs; C:\Windows\System32\DRIVERS\udfs.sys [327168 2009-07-13] (Microsoft Corporation) 3 uliagpkx; C:\Windows\System32\DRIVERS\uliagpkx.sys [64592 2009-07-13] (Microsoft Corporation) 3 umbus; C:\Windows\System32\DRIVERS\umbus.sys [48640 2009-07-13] (Microsoft Corporation) 3 UmPass; C:\Windows\System32\DRIVERS\umpass.sys [9728 2009-07-13] (Microsoft Corporation) 3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [51712 2010-09-28] (Apple, Inc.) 3 usbaudio; C:\Windows\System32\drivers\usbaudio.sys [109568 2009-07-13] (Microsoft Corporation) 3 usbccgp; C:\Windows\System32\DRIVERS\usbccgp.sys [98816 2011-03-24] (Microsoft Corporation) 3 usbcir; C:\Windows\System32\DRIVERS\usbcir.sys [100352 2009-07-13] (Microsoft Corporation) 3 usbehci; C:\Windows\System32\DRIVERS\usbehci.sys [52224 2011-03-24] (Microsoft Corporation) 3 usbhub; C:\Windows\System32\DRIVERS\usbhub.sys [343040 2011-03-24] (Microsoft Corporation) 3 usbohci; C:\Windows\System32\DRIVERS\usbohci.sys [25600 2011-03-24] (Microsoft Corporation) 3 usbprint; C:\Windows\System32\DRIVERS\usbprint.sys [25088 2009-07-13] (Microsoft Corporation) 3 usbscan; C:\Windows\System32\DRIVERS\usbscan.sys [41984 2009-07-13] (Microsoft Corporation) 3 USBSTOR; C:\Windows\System32\DRIVERS\USBSTOR.SYS [89600 2009-07-13] (Microsoft Corporation) 3 usbuhci; C:\Windows\System32\DRIVERS\usbuhci.sys [30720 2011-03-24] (Microsoft Corporation) 3 usbvideo; C:\Windows\System32\Drivers\usbvideo.sys [184832 2010-03-03] (Microsoft Corporation) 0 vdrvroot; C:\Windows\System32\DRIVERS\vdrvroot.sys [36432 2009-07-13] (Microsoft Corporation) 3 vga; C:\Windows\System32\DRIVERS\vgapnp.sys [29184 2009-07-13] (Microsoft Corporation) 1 VgaSave; C:\Windows\System32\drivers\vga.sys [29184 2009-07-13] (Microsoft Corporation) 3 vhdmp; C:\Windows\System32\DRIVERS\vhdmp.sys [217680 2009-07-13] (Microsoft Corporation) 3 viaide; C:\Windows\System32\DRIVERS\viaide.sys [17488 2009-07-13] (VIA Technologies, Inc.) 0 volmgr; C:\Windows\System32\DRIVERS\volmgr.sys [71760 2009-07-13] (Microsoft Corporation) 0 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [363584 2009-07-13] (Microsoft Corporation) 0 volsnap; C:\Windows\System32\DRIVERS\volsnap.sys [294992 2009-07-13] (Microsoft Corporation) 3 vsmraid; C:\Windows\System32\DRIVERS\vsmraid.sys [161872 2009-07-13] (VIA Technologies Inc.,Ltd) 3 vwifibus; C:\Windows\System32\DRIVERS\vwifibus.sys [24576 2009-07-13] (Microsoft Corporation) 1 vwififlt; C:\Windows\System32\DRIVERS\vwififlt.sys [59904 2009-07-13] (Microsoft Corporation) 3 vwifimp; C:\Windows\System32\DRIVERS\vwifimp.sys [17920 2009-07-13] (Microsoft Corporation) 3 WacomPen; C:\Windows\System32\DRIVERS\wacompen.sys [27776 2009-07-13] (Microsoft Corporation) 3 WANARP; C:\Windows\System32\DRIVERS\wanarp.sys [88576 2009-07-13] (Microsoft Corporation) 1 Wanarpv6; C:\Windows\System32\DRIVERS\wanarp.sys [88576 2009-07-13] (Microsoft Corporation) 3 Wd; C:\Windows\System32\DRIVERS\wd.sys [21056 2009-07-13] (Microsoft Corporation) 0 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [654928 2009-07-13] (Microsoft Corporation) 1 WfpLwf; C:\Windows\System32\DRIVERS\wfplwf.sys [12800 2009-07-13] (Microsoft Corporation) 3 WIMMount; C:\Windows\System32\drivers\wimmount.sys [22096 2009-07-13] (Microsoft Corporation) 3 WinUsb; C:\Windows\System32\DRIVERS\WinUsb.sys [40448 2009-07-13] (Microsoft Corporation) 3 WmiAcpi; C:\Windows\System32\DRIVERS\wmiacpi.sys [14336 2009-07-13] (Microsoft Corporation) 4 ws2ifsl; C:\Windows\System32\drivers\ws2ifsl.sys [21504 2009-07-13] (Microsoft Corporation) 3 WudfPf; C:\Windows\System32\drivers\WudfPf.sys [112128 2009-07-13] (Microsoft Corporation) 3 WUDFRd; C:\Windows\System32\DRIVERS\WUDFRd.sys [172544 2009-07-13] (Microsoft Corporation) 3 1394ohci; C:\Windows\System32\DRIVERS\1394ohci.sys [x] 3 cpuz132; \??\C:\Users\PROTOT~1\AppData\Local\Temp\cpuz132\cpuz132_x64.sys [x] 0 PxHlpa64; C:\Windows\System32\Drivers\PxHlpa64.sys [x] 3 RtsUIR; C:\Windows\System32\DRIVERS\Rts516xIR.sys [x] 3 USBCCID; C:\Windows\System32\DRIVERS\RtsUCcid.sys [x] ========================== NetSvcs ======================== ============ One Month Created Files and Folders ============== 2011-07-31 13:47 - 2011-07-31 13:47 - 1048576 __ASH C:\Windows\System32\config\components{9f3f0042-8055-11e0-a27e-00266c3eacfe}.TxR.2.regtrans-ms 2011-07-31 13:47 - 2011-07-31 13:47 - 1048576 __ASH C:\Windows\System32\config\components{9f3f0042-8055-11e0-a27e-00266c3eacfe}.TxR.1.regtrans-ms 2011-07-31 13:47 - 2011-07-31 13:47 - 1048576 __ASH C:\Windows\System32\config\components{9f3f0042-8055-11e0-a27e-00266c3eacfe}.TxR.0.regtrans-ms 2011-07-31 13:47 - 2011-07-31 13:47 - 0065536 __ASH C:\Windows\System32\config\components{9f3f0042-8055-11e0-a27e-00266c3eacfe}.TxR.blf 2011-07-31 13:40 - 2011-07-31 13:40 - 0000000 __SHD C:\Windows\System32\Restore 2011-07-28 14:58 - 2011-07-28 14:58 - 0004977 ____A C:\Users\Prototype\Documents\mbam-log-2011-07-28 (18-58-40).txt 2011-07-28 14:32 - 2011-07-28 14:32 - 0001026 ____A C:\Users\Public\Desktop\explorer.exe.lnk 2011-07-28 14:32 - 2011-07-28 14:32 - 0000000 ____D C:\Program Files (x86)\explorer.exe 2011-07-28 14:32 - 2011-07-06 15:52 - 0041272 ____A (Malwarebytes Corporation) C:\Windows\SysWOW64\Drivers\mbamswissarmy.sys 2011-07-28 14:32 - 2011-07-06 15:52 - 0025912 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys 2011-07-28 13:56 - 2011-07-28 13:56 - 9466208 ____A (Malwarebytes Corporation ) C:\Users\Prototype\Desktop\explorer.exe.exe 2011-07-28 13:52 - 2011-07-28 13:53 - 0579584 ____A (OldTimer Tools) C:\Users\Prototype\Desktop\OTL.exe 2011-07-28 12:02 - 2011-07-28 12:02 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\PCPowerSpeed 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\system.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\system.tmp.LOG1 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\software.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\software.tmp.LOG1 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\security.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\security.tmp.LOG1 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\sam.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\sam.tmp.LOG1 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\default.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\default.tmp.LOG1 2011-07-28 11:03 - 2011-07-28 15:34 - 0000000 ___SD C:\ComboFix 2011-07-28 11:03 - 2011-07-28 15:34 - 0000000 ____D C:\Windows\ERDNT 2011-07-28 11:03 - 2011-07-28 11:03 - 0000000 ____D C:\Qoobox 2011-07-28 11:02 - 2011-07-28 11:03 - 0000000 ___SD C:\32788R22FWJFW 2011-07-28 09:54 - 2011-07-28 09:55 - 0068508 ____A C:\TDSSKiller.2.5.11.0_28.07.2011_13.54.57_log.txt 2011-07-28 09:47 - 2011-07-29 17:10 - 0063524 ____A C:\Users\Prototype\Desktop\Extras.Txt 2011-07-28 09:46 - 2011-07-29 17:09 - 0107448 ____A C:\Users\Prototype\Desktop\OTL.Txt 2011-07-28 09:39 - 2011-07-28 09:41 - 0068508 ____A C:\TDSSKiller.2.5.11.0_28.07.2011_13.39.59_log.txt 2011-07-28 09:39 - 2011-07-28 09:39 - 0000000 ____D C:\Users\Prototype\Desktop\tdsskiller 2011-07-28 09:38 - 2011-07-28 09:38 - 1383430 ____A C:\Users\Prototype\Desktop\tdsskiller.zip 2011-07-28 09:26 - 2011-07-28 09:26 - 0000000 ____D C:\_OTL 2011-07-28 06:28 - 2011-07-28 06:28 - 0062414 ____A C:\Users\Prototype\Downloads\Extras.Txt 2011-07-28 06:26 - 2011-07-28 06:26 - 0110400 ____A C:\Users\Prototype\Downloads\OTL.Txt 2011-07-28 04:16 - 2011-07-28 04:16 - 0005031 ____A C:\Users\Prototype\Documents\mbam-log-2011-07-28 (08-16-18).txt 2011-07-27 17:03 - 2011-07-27 17:03 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\Malwarebytes 2011-07-27 17:02 - 2011-07-27 23:04 - 0000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2011-07-27 17:02 - 2011-07-27 17:02 - 0000000 ____D C:\Users\All Users\Malwarebytes 2011-07-27 17:02 - 2011-07-27 17:02 - 0000000 ____D C:\ProgramData\Malwarebytes 2011-07-26 18:56 - 2011-07-26 18:56 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\Template 2011-07-26 11:29 - 2011-07-27 23:04 - 0000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2011-07-26 01:17 - 2011-07-26 11:17 - 0011879 ____A C:\Windows\ddh_iplist.txt 2011-07-25 23:39 - 2011-07-30 18:10 - 0010589 ____A C:\Windows\iecheck_iplist.txt 2011-07-25 23:32 - 2011-07-30 18:10 - 0010845 ____A C:\Windows\btc_client_iplist.txt 2011-07-25 23:30 - 2011-07-31 13:37 - 0011412 ____A C:\Windows\iplist.txt 2011-07-20 04:17 - 2011-07-20 04:17 - 0000000 ____D C:\Users\Prototype\AppData\Local\{58741131-D3B0-4115-9E9C-35F1B33BB71D} 2011-07-20 04:17 - 2011-07-20 04:17 - 0000000 ____D C:\Users\Prototype\AppData\Local\{5654A2FC-E153-4F6E-BFFF-7B56DB79CB6C} 2011-07-19 10:46 - 2011-07-19 10:46 - 0000000 ____D C:\Users\Prototype\AppData\Local\{F8EC0537-A786-4E69-80F0-43CC1095CA9F} 2011-07-19 10:46 - 2011-07-19 10:46 - 0000000 ____D C:\Users\Prototype\AppData\Local\{49E0FA6A-08E4-4C3E-9E95-32B08CD24837} 2011-07-18 23:20 - 2011-04-22 17:29 - 2303488 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2011-07-18 23:20 - 2011-04-22 17:20 - 0818176 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2011-07-18 23:20 - 2011-04-22 17:19 - 2382848 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2011-07-18 23:20 - 2011-04-22 17:19 - 2136064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2011-07-18 23:20 - 2011-04-22 17:19 - 0096256 ____A (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2011-07-18 23:20 - 2011-04-22 17:17 - 0248320 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2011-07-18 23:20 - 2011-04-22 15:35 - 1797632 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2011-07-18 23:20 - 2011-04-22 15:26 - 1785344 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2011-07-18 23:20 - 2011-04-22 15:26 - 0716800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2011-07-18 23:20 - 2011-04-22 15:26 - 0072704 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2011-07-18 23:20 - 2011-04-22 15:25 - 2382848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2011-07-18 23:20 - 2011-04-22 15:24 - 0176640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2011-07-18 23:19 - 2011-04-22 17:37 - 17773568 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2011-07-18 23:19 - 2011-04-22 17:27 - 10885632 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2011-07-18 23:19 - 2011-04-22 17:23 - 1344000 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2011-07-18 23:19 - 2011-04-22 15:36 - 12269056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2011-07-18 23:19 - 2011-04-22 15:32 - 9703936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2011-07-18 23:19 - 2011-04-22 15:30 - 1102336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2011-07-17 18:24 - 2011-07-29 16:51 - 0001354 ____A C:\Windows\setupact.log 2011-07-17 18:24 - 2011-07-17 18:24 - 0000000 ____A C:\Windows\setuperr.log 2011-07-17 12:45 - 2011-07-17 12:45 - 1030024 ____A (Skype Technologies S.A.) C:\Users\Prototype\Downloads\SkypeSetup.exe 2011-07-17 12:41 - 2011-07-17 12:41 - 0002515 ____A C:\Users\Public\Desktop\Skype.lnk 2011-07-17 12:39 - 2011-07-18 23:39 - 0000000 ____D C:\Users\All Users\Easybits GO 2011-07-17 12:39 - 2011-07-18 23:39 - 0000000 ____D C:\ProgramData\Easybits GO 2011-07-17 12:39 - 2011-07-18 20:09 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\go 2011-07-17 12:11 - 2011-06-01 22:39 - 0422400 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 22:23 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:54 - 0272384 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0005120 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 21:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 19:45 - 0006144 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 19:45 - 0004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 19:45 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2011-07-17 12:11 - 2011-06-01 19:45 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2011-07-14 14:46 - 2011-06-01 22:45 - 0362496 ____A (Microsoft Corporation) C:\Windows\System32\wow64win.dll 2011-07-14 14:46 - 2011-06-01 22:44 - 0214528 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll 2011-07-14 14:46 - 2011-06-01 22:35 - 0338944 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe 2011-07-14 14:46 - 2011-05-13 23:36 - 1162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll 2011-07-14 14:46 - 2011-05-13 22:32 - 0837120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2011-07-14 14:45 - 2011-06-01 22:45 - 0243200 ____A (Microsoft Corporation) C:\Windows\System32\wow64.dll 2011-07-14 14:45 - 2011-06-01 22:45 - 0013312 ____A (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll 2011-07-14 14:45 - 2011-06-01 22:42 - 0016384 ____A (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll 2011-07-14 14:45 - 2011-06-01 21:59 - 0014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2011-07-14 14:45 - 2011-06-01 21:56 - 0025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2011-07-14 14:45 - 2011-06-01 21:54 - 0005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2011-07-14 14:45 - 2011-06-01 19:51 - 0007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2011-07-14 14:45 - 2011-06-01 19:50 - 0002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2011-07-14 14:45 - 2011-05-03 21:30 - 2326016 ____A (Microsoft Corporation) C:\Windows\System32\tquery.dll 2011-07-14 14:45 - 2011-05-03 21:28 - 2228224 ____A (Microsoft Corporation) C:\Windows\System32\mssrch.dll 2011-07-14 14:45 - 2011-05-03 21:28 - 0779264 ____A (Microsoft Corporation) C:\Windows\System32\mssvp.dll 2011-07-14 14:45 - 2011-05-03 21:28 - 0491520 ____A (Microsoft Corporation) C:\Windows\System32\mssph.dll 2011-07-14 14:45 - 2011-05-03 21:28 - 0288256 ____A (Microsoft Corporation) C:\Windows\System32\mssphtb.dll 2011-07-14 14:45 - 2011-05-03 21:28 - 0075264 ____A (Microsoft Corporation) C:\Windows\System32\msscntrs.dll 2011-07-14 14:45 - 2011-05-03 21:24 - 0593408 ____A (Microsoft Corporation) C:\Windows\System32\SearchIndexer.exe 2011-07-14 14:45 - 2011-05-03 21:24 - 0249856 ____A (Microsoft Corporation) C:\Windows\System32\SearchProtocolHost.exe 2011-07-14 14:45 - 2011-05-03 21:24 - 0113664 ____A (Microsoft Corporation) C:\Windows\System32\SearchFilterHost.exe 2011-07-14 14:45 - 2011-05-03 20:53 - 1553920 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2011-07-14 14:45 - 2011-05-03 20:52 - 1401856 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2011-07-14 14:45 - 2011-05-03 20:52 - 0666624 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2011-07-14 14:45 - 2011-05-03 20:52 - 0428032 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2011-07-14 14:45 - 2011-05-03 20:52 - 0337408 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2011-07-14 14:45 - 2011-05-03 20:52 - 0197120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2011-07-14 14:45 - 2011-05-03 20:52 - 0164352 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2011-07-14 14:45 - 2011-05-03 20:52 - 0086528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2011-07-14 14:45 - 2011-05-03 20:52 - 0059392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2011-07-14 14:45 - 2011-04-28 19:13 - 0461312 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srv.sys 2011-07-14 14:45 - 2011-04-28 19:12 - 0399872 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srv2.sys 2011-07-14 14:45 - 2011-04-28 19:12 - 0161792 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\srvnet.sys 2011-07-14 14:45 - 2011-01-16 22:17 - 0197120 ____A (Microsoft Corporation) C:\Windows\System32\d3d10_1.dll 2011-07-14 14:45 - 2011-01-16 21:38 - 0161792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2011-07-14 14:44 - 2011-06-10 18:56 - 3134464 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys 2011-07-14 14:44 - 2011-05-24 03:21 - 0404992 ____A (Microsoft Corporation) C:\Windows\System32\umpnpmgr.dll 2011-07-14 14:44 - 2011-05-24 02:34 - 0145920 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2011-07-14 14:44 - 2011-05-24 02:34 - 0064512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2011-07-14 14:44 - 2011-05-24 02:34 - 0044544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2011-07-14 14:44 - 2011-05-24 02:32 - 0252928 ____A (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe ============ 3 Months Modified Files and Folders ============= 2011-08-10 02:24 - 2011-08-08 00:27 - 0000000 ____D C:\FRST 2011-08-09 23:45 - 2009-07-13 18:34 - 67895296 ____A C:\Windows\System32\config\software.123 2011-08-09 23:45 - 2009-07-13 18:34 - 20971520 ____A C:\Windows\System32\config\system.123 2011-08-08 02:37 - 2009-07-13 18:34 - 0262144 ____A C:\Windows\System32\config\security.123 2011-08-08 02:37 - 2009-07-13 18:34 - 0262144 ____A C:\Windows\System32\config\sam.123 2011-07-31 17:50 - 2009-07-13 18:34 - 0524288 ____A C:\Windows\System32\config\default.123 2011-07-31 13:48 - 2010-03-15 16:47 - 1478682 ____A C:\Windows\WindowsUpdate.log 2011-07-31 13:47 - 2011-07-31 13:47 - 1048576 __ASH C:\Windows\System32\config\components{9f3f0042-8055-11e0-a27e-00266c3eacfe}.TxR.2.regtrans-ms 2011-07-31 13:47 - 2011-07-31 13:47 - 1048576 __ASH C:\Windows\System32\config\components{9f3f0042-8055-11e0-a27e-00266c3eacfe}.TxR.1.regtrans-ms 2011-07-31 13:47 - 2011-07-31 13:47 - 1048576 __ASH C:\Windows\System32\config\components{9f3f0042-8055-11e0-a27e-00266c3eacfe}.TxR.0.regtrans-ms 2011-07-31 13:47 - 2011-07-31 13:47 - 0065536 __ASH C:\Windows\System32\config\components{9f3f0042-8055-11e0-a27e-00266c3eacfe}.TxR.blf 2011-07-31 13:40 - 2011-07-31 13:40 - 0000000 __SHD C:\Windows\System32\Restore 2011-07-31 13:37 - 2011-07-25 23:30 - 0011412 ____A C:\Windows\iplist.txt 2011-07-31 13:37 - 2010-03-15 14:17 - 0000898 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2011-07-31 13:37 - 2010-03-15 14:17 - 0000894 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2011-07-31 13:37 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\tracing 2011-07-30 21:01 - 2010-03-21 19:53 - 0000412 ____A C:\Windows\Tasks\DriverCure.job 2011-07-30 18:17 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Dism 2011-07-30 18:17 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\com 2011-07-30 18:16 - 2009-07-13 21:32 - 0000000 ____D C:\Windows\System32\WinBioPlugIns 2011-07-30 18:16 - 2009-07-13 19:20 - 0000000 ___AD C:\Windows\System32\sysprep 2011-07-30 18:16 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\winevt 2011-07-30 18:16 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\spool 2011-07-30 18:16 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Speech 2011-07-30 18:16 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\Setup 2011-07-30 18:16 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\oobe 2011-07-30 18:16 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\migwiz 2011-07-30 18:10 - 2011-07-25 23:39 - 0010589 ____A C:\Windows\iecheck_iplist.txt 2011-07-30 18:10 - 2011-07-25 23:32 - 0010845 ____A C:\Windows\btc_client_iplist.txt 2011-07-30 14:22 - 2010-10-12 13:56 - 0000346 ____A C:\Windows\Tasks\Regwork.job 2011-07-30 10:47 - 2011-06-07 04:19 - 0524288 __ASH C:\Windows\System32\config\COMPONENTS{9f3f0043-8055-11e0-a27e-00266c3eacfe}.TMContainer00000000000000000002.regtrans-ms 2011-07-30 10:47 - 2011-06-07 04:19 - 0065536 __ASH C:\Windows\System32\config\COMPONENTS{9f3f0043-8055-11e0-a27e-00266c3eacfe}.TM.blf 2011-07-29 17:21 - 2010-03-15 14:39 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\Skype 2011-07-29 17:10 - 2011-07-28 09:47 - 0063524 ____A C:\Users\Prototype\Desktop\Extras.Txt 2011-07-29 17:09 - 2011-07-28 09:46 - 0107448 ____A C:\Users\Prototype\Desktop\OTL.Txt 2011-07-29 17:04 - 2009-07-13 20:45 - 0015792 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2011-07-29 17:04 - 2009-07-13 20:45 - 0015792 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2011-07-29 16:56 - 2009-07-13 21:08 - 0000006 ___AH C:\Windows\Tasks\SA.DAT 2011-07-29 16:51 - 2011-07-17 18:24 - 0001354 ____A C:\Windows\setupact.log 2011-07-29 16:51 - 2010-03-15 16:42 - 3016884224 __ASH C:\hiberfil.sys 2011-07-29 16:50 - 2010-03-16 01:52 - 2150027 ___AH C:\Users\Prototype\AppData\Local\IconCache.db 2011-07-28 15:34 - 2011-07-28 11:03 - 0000000 ___SD C:\ComboFix 2011-07-28 15:34 - 2011-07-28 11:03 - 0000000 ____D C:\Windows\ERDNT 2011-07-28 15:34 - 2011-05-02 19:09 - 0000000 ____D C:\Users\All Users\PCPowerSpeed 2011-07-28 15:34 - 2011-05-02 19:09 - 0000000 ____D C:\ProgramData\PCPowerSpeed 2011-07-28 15:34 - 2011-05-02 19:09 - 0000000 ____D C:\Program Files (x86)\PCPowerSpeed 2011-07-28 15:34 - 2010-09-21 16:57 - 0000000 ____D C:\Users\Prototype\AppData\Local\Downloaded Installations 2011-07-28 15:34 - 2010-06-17 12:30 - 0000000 ____D C:\Users\All Users\Yahoo! Companion 2011-07-28 15:34 - 2010-06-17 12:30 - 0000000 ____D C:\ProgramData\Yahoo! Companion 2011-07-28 15:34 - 2010-05-26 15:15 - 0000000 ____D C:\Users\Prototype\AppData\Local\Apple 2011-07-28 15:34 - 2010-03-28 02:18 - 0000000 ____D C:\Users\Prototype\AppData\Local\PC_Drivers_Headquarters 2011-07-28 15:34 - 2010-03-23 16:18 - 0000000 ____D C:\Users\Prototype\AppData\Local\Microsoft Help 2011-07-28 15:34 - 2010-03-15 16:52 - 0000000 ____D C:\Users\All Users\Microsoft Help 2011-07-28 15:34 - 2010-03-15 16:52 - 0000000 ____D C:\ProgramData\Microsoft Help 2011-07-28 15:34 - 2010-03-15 16:49 - 0000000 ____D C:\Program Files (x86)\Microsoft Works 2011-07-28 15:34 - 2010-03-15 15:13 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\NCH Software 2011-07-28 15:34 - 2010-03-15 14:33 - 0000000 ____D C:\Users\All Users\Spybot - Search & Destroy 2011-07-28 15:34 - 2010-03-15 14:33 - 0000000 ____D C:\ProgramData\Spybot - Search & Destroy 2011-07-28 15:34 - 2010-03-15 13:40 - 0000000 ____D C:\Users\Prototype\AppData\Local\Best_Buy® 2011-07-28 15:34 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\registration 2011-07-28 15:33 - 2010-11-06 09:04 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\MixVibes 2011-07-28 15:33 - 2010-08-30 11:59 - 0000000 ____D C:\Users\Prototype\AppData\Local\Citrix 2011-07-28 15:33 - 2010-08-25 05:45 - 0000000 ____D C:\Users\Prototype\AppData\Local\Microsoft Games 2011-07-28 15:33 - 2010-07-11 10:24 - 0000000 ____D C:\Users\Prototype\AppData\Local\Mozilla 2011-07-28 15:33 - 2010-04-27 05:55 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\Mozilla 2011-07-28 15:33 - 2010-03-27 17:55 - 0000000 ____D C:\Users\Prototype\AppData\Local\TOSHIBA_Corporation 2011-07-28 15:33 - 2010-03-21 19:50 - 0000000 ____D C:\Users\Prototype\AppData\Local\Adobe 2011-07-28 15:33 - 2010-03-15 13:59 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\Adobe 2011-07-28 15:33 - 2010-03-15 13:21 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\Roxio 2011-07-28 15:33 - 2010-03-15 13:18 - 0000000 ____D C:\Users\Prototype\AppData\LocalLow 2011-07-28 15:32 - 2010-03-15 16:52 - 0000000 __RHD C:\MSOCache 2011-07-28 15:32 - 2010-03-15 16:49 - 0000000 ____D C:\Program Files (x86)\Microsoft Office 2011-07-28 15:32 - 2009-07-13 19:18 - 0000000 __SHD C:\$Recycle.Bin 2011-07-28 14:58 - 2011-07-28 14:58 - 0004977 ____A C:\Users\Prototype\Documents\mbam-log-2011-07-28 (18-58-40).txt 2011-07-28 14:32 - 2011-07-28 14:32 - 0001026 ____A C:\Users\Public\Desktop\explorer.exe.lnk 2011-07-28 14:32 - 2011-07-28 14:32 - 0000000 ____D C:\Program Files (x86)\explorer.exe 2011-07-28 13:56 - 2011-07-28 13:56 - 9466208 ____A (Malwarebytes Corporation ) C:\Users\Prototype\Desktop\explorer.exe.exe 2011-07-28 13:53 - 2011-07-28 13:52 - 0579584 ____A (OldTimer Tools) C:\Users\Prototype\Desktop\OTL.exe 2011-07-28 12:02 - 2011-07-28 12:02 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\PCPowerSpeed 2011-07-28 11:47 - 2010-03-15 13:18 - 0000000 ____D C:\users\Prototype 2011-07-28 11:35 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\System32\config\TxR 2011-07-28 11:26 - 2009-07-13 18:34 - 67895296 ____A C:\Windows\System32\config\software.bak 2011-07-28 11:26 - 2009-07-13 18:34 - 20971520 ____A C:\Windows\System32\config\system.bak 2011-07-28 11:26 - 2009-07-13 18:34 - 0524288 ____A C:\Windows\System32\config\default.bak 2011-07-28 11:26 - 2009-07-13 18:34 - 0262144 ____A C:\Windows\System32\config\security.bak 2011-07-28 11:26 - 2009-07-13 18:34 - 0262144 ____A C:\Windows\System32\config\sam.bak 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\system.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\system.tmp.LOG1 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\software.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\software.tmp.LOG1 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\security.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\security.tmp.LOG1 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\sam.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\sam.tmp.LOG1 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\default.tmp.LOG2 2011-07-28 11:23 - 2011-07-28 11:23 - 0000000 __ASH C:\Windows\System32\config\default.tmp.LOG1 2011-07-28 11:03 - 2011-07-28 11:03 - 0000000 ____D C:\Qoobox 2011-07-28 11:03 - 2011-07-28 11:02 - 0000000 ___SD C:\32788R22FWJFW 2011-07-28 09:55 - 2011-07-28 09:54 - 0068508 ____A C:\TDSSKiller.2.5.11.0_28.07.2011_13.54.57_log.txt 2011-07-28 09:41 - 2011-07-28 09:39 - 0068508 ____A C:\TDSSKiller.2.5.11.0_28.07.2011_13.39.59_log.txt 2011-07-28 09:39 - 2011-07-28 09:39 - 0000000 ____D C:\Users\Prototype\Desktop\tdsskiller 2011-07-28 09:38 - 2011-07-28 09:38 - 1383430 ____A C:\Users\Prototype\Desktop\tdsskiller.zip 2011-07-28 09:26 - 2011-07-28 09:26 - 0000000 ____D C:\_OTL 2011-07-28 06:28 - 2011-07-28 06:28 - 0062414 ____A C:\Users\Prototype\Downloads\Extras.Txt 2011-07-28 06:26 - 2011-07-28 06:26 - 0110400 ____A C:\Users\Prototype\Downloads\OTL.Txt 2011-07-28 04:16 - 2011-07-28 04:16 - 0005031 ____A C:\Users\Prototype\Documents\mbam-log-2011-07-28 (08-16-18).txt 2011-07-27 23:04 - 2011-07-27 17:02 - 0000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2011-07-27 23:04 - 2011-07-26 11:29 - 0000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8 2011-07-27 19:09 - 2010-03-15 13:21 - 0079920 ____A C:\Users\Prototype\AppData\Local\GDIPFONTCACHEV1.DAT 2011-07-27 17:03 - 2011-07-27 17:03 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\Malwarebytes 2011-07-27 17:02 - 2011-07-27 17:02 - 0000000 ____D C:\Users\All Users\Malwarebytes 2011-07-27 17:02 - 2011-07-27 17:02 - 0000000 ____D C:\ProgramData\Malwarebytes 2011-07-26 18:56 - 2011-07-26 18:56 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\Template 2011-07-26 18:36 - 2010-11-04 08:43 - 0000000 ____D C:\Users\Prototype\AppData\Local\Windows Live 2011-07-26 11:17 - 2011-07-26 01:17 - 0011879 ____A C:\Windows\ddh_iplist.txt 2011-07-20 04:17 - 2011-07-20 04:17 - 0000000 ____D C:\Users\Prototype\AppData\Local\{58741131-D3B0-4115-9E9C-35F1B33BB71D} 2011-07-20 04:17 - 2011-07-20 04:17 - 0000000 ____D C:\Users\Prototype\AppData\Local\{5654A2FC-E153-4F6E-BFFF-7B56DB79CB6C} 2011-07-20 04:01 - 2009-07-13 21:13 - 0726316 ____A C:\Windows\System32\PerfStringBackup.INI 2011-07-19 10:46 - 2011-07-19 10:46 - 0000000 ____D C:\Users\Prototype\AppData\Local\{F8EC0537-A786-4E69-80F0-43CC1095CA9F} 2011-07-19 10:46 - 2011-07-19 10:46 - 0000000 ____D C:\Users\Prototype\AppData\Local\{49E0FA6A-08E4-4C3E-9E95-32B08CD24837} 2011-07-18 23:43 - 2009-07-13 20:45 - 0342944 ____A C:\Windows\System32\FNTCACHE.DAT 2011-07-18 23:42 - 2009-11-12 18:58 - 0000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2011-07-18 23:41 - 2011-06-07 04:19 - 0524288 __ASH C:\Windows\System32\config\COMPONENTS{9f3f0043-8055-11e0-a27e-00266c3eacfe}.TMContainer00000000000000000001.regtrans-ms 2011-07-18 23:39 - 2011-07-17 12:39 - 0000000 ____D C:\Users\All Users\Easybits GO 2011-07-18 23:39 - 2011-07-17 12:39 - 0000000 ____D C:\ProgramData\Easybits GO 2011-07-18 20:09 - 2011-07-17 12:39 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\go 2011-07-17 18:24 - 2011-07-17 18:24 - 0000000 ____A C:\Windows\setuperr.log 2011-07-17 12:45 - 2011-07-17 12:45 - 1030024 ____A (Skype Technologies S.A.) C:\Users\Prototype\Downloads\SkypeSetup.exe 2011-07-17 12:41 - 2011-07-17 12:41 - 0002515 ____A C:\Users\Public\Desktop\Skype.lnk 2011-07-17 12:41 - 2010-03-15 14:38 - 0000000 ___RD C:\Program Files (x86)\Skype 2011-07-17 12:40 - 2010-03-15 14:38 - 0000000 ____D C:\Users\All Users\Skype 2011-07-17 12:40 - 2010-03-15 14:38 - 0000000 ____D C:\ProgramData\Skype 2011-07-17 12:39 - 2011-05-16 18:58 - 0000000 ____D C:\Users\All Users\Skype Extras 2011-07-17 12:39 - 2011-05-16 18:58 - 0000000 ____D C:\ProgramData\Skype Extras 2011-07-17 12:25 - 2010-03-15 14:44 - 0000000 ____D C:\Users\Prototype\AppData\Roaming\skypePM 2011-07-14 15:06 - 2010-07-11 10:24 - 0000000 ____D C:\Program Files (x86)\Mozilla Firefox 2011-07-07 06:11 - 2011-06-08 07:24 - 0000000 ____D C:\Windows\Minidump 2011-07-06 15:52 - 2011-07-28 14:32 - 0041272 ____A (Malwarebytes Corporation) C:\Windows\SysWOW64\Drivers\mbamswissarmy.sys 2011-07-06 15:52 - 2011-07-28 14:32 - 0025912 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys 2011-07-02 07:14 - 2011-07-02 07:14 - 0244638 ____A C:\Users\Prototype\Documents\isheka music.txt 2011-07-02 07:09 - 2011-07-02 07:09 - 0000000 ____D C:\Users\Prototype\AppData\Local\{4C9F0895-5D68-4EDC-89C8-D4AB4F10BE57} 2011-07-02 06:42 - 2011-07-02 06:42 - 0000000 ____D C:\Users\Prototype\AppData\Local\{1A44C1F9-6AC1-49CD-86FA-61BA5207EA4E} 2011-07-02 06:38 - 2011-07-02 06:38 - 0000000 ____D C:\Users\Prototype\AppData\Local\{B2F801C5-26C4-4FAD-B2E3-79319EAFE170} 2011-07-02 06:35 - 2011-07-02 06:35 - 0000000 ____D C:\Users\Prototype\AppData\Local\{1DE5CBCA-54F0-4082-B6BB-0B40EB3D2220} 2011-07-02 06:26 - 2009-07-13 19:20 - 0000000 ____D C:\Program Files\Common Files\Microsoft Shared 2011-07-01 06:31 - 2010-03-16 01:40 - 50867144 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2011-06-13 09:08 - 2009-11-12 19:00 - 0000000 ____D C:\Program Files (x86)\Google 2011-06-10 18:56 - 2011-07-14 14:44 - 3134464 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys 2011-06-08 07:12 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\LiveKernelReports 2011-06-07 04:23 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\PolicyDefinitions 2011-06-07 04:22 - 2009-07-13 19:20 - 0000000 ____D C:\Windows\servicing 2011-06-07 04:21 - 2011-06-07 04:21 - 3695416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2011-06-07 04:21 - 2011-06-07 04:21 - 3695416 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat 2011-06-07 04:21 - 2011-06-07 04:21 - 1492992 ____A (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2011-06-07 04:21 - 2011-06-07 04:21 - 1427456 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2011-06-07 04:21 - 2011-06-07 04:21 - 1389056 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 1126912 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0697344 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0603648 ____A (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0580608 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0534528 ____A (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0452608 ____A (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0448512 ____A (Microsoft Corporation) C:\Windows\System32\html.iec 2011-06-07 04:21 - 2011-06-07 04:21 - 0434176 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0420864 ____A (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0403248 ____A (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0367104 ____A (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2011-06-07 04:21 - 2011-06-07 04:21 - 0353792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0353584 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0282112 ____A (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0267776 ____A (Microsoft Corporation) C:\Windows\System32\ieaksie.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0249344 ____A (Microsoft Corporation) C:\Windows\System32\webcheck.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0236544 ____A (Microsoft Corporation) C:\Windows\System32\url.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0231936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0227840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0223232 ____A (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0222208 ____A (Microsoft Corporation) C:\Windows\System32\msls31.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0203776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0197120 ____A (Microsoft Corporation) C:\Windows\System32\msrating.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0173056 ____A (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0165888 ____A (Microsoft Corporation) C:\Windows\System32\iexpress.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0163840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0163840 ____A (Microsoft Corporation) C:\Windows\System32\ieakui.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0162304 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0161792 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0160256 ____A (Microsoft Corporation) C:\Windows\System32\wextract.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0160256 ____A (Microsoft Corporation) C:\Windows\System32\ieakeng.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0152064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0150528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0149504 ____A (Microsoft Corporation) C:\Windows\System32\occache.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0145920 ____A (Microsoft Corporation) C:\Windows\System32\iepeers.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0142848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0135168 ____A (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0130560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0123392 ____A (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0118784 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0114176 ____A (Microsoft Corporation) C:\Windows\System32\admparse.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0111616 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0110592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0103936 ____A (Microsoft Corporation) C:\Windows\System32\inseng.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0101888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0091648 ____A (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0089088 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0089088 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0086528 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0085504 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0085504 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0082432 ____A (Microsoft Corporation) C:\Windows\System32\icardie.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0078848 ____A (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0076800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0076800 ____A (Microsoft Corporation) C:\Windows\System32\tdc.ocx 2011-06-07 04:21 - 2011-06-07 04:21 - 0074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0074752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0074240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0072822 ____A C:\Windows\SysWOW64\ieuinit.inf 2011-06-07 04:21 - 2011-06-07 04:21 - 0072822 ____A C:\Windows\System32\ieuinit.inf 2011-06-07 04:21 - 2011-06-07 04:21 - 0066048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0065024 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0065024 ____A (Microsoft Corporation) C:\Windows\System32\pngfilt.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0063488 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2011-06-07 04:21 - 2011-06-07 04:21 - 0055296 ____A (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0054272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0049664 ____A (Microsoft Corporation) C:\Windows\System32\imgutil.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0048640 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0048640 ____A (Microsoft Corporation) C:\Windows\System32\mshtmler.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0041472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0035840 ____A (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0031744 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0030720 ____A (Microsoft Corporation) C:\Windows\System32\licmgr10.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0023552 ____A (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2011-06-07 04:21 - 2011-06-07 04:21 - 0012288 ____A (Microsoft Corporation) C:\Windows\System32\mshta.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0011776 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0010752 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2011-06-07 04:21 - 2011-06-07 04:21 - 0010752 ____A (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe 2011-06-01 22:45 - 2011-07-14 14:46 - 0362496 ____A (Microsoft Corporation) C:\Windows\System32\wow64win.dll 2011-06-01 22:45 - 2011-07-14 14:45 - 0243200 ____A (Microsoft Corporation) C:\Windows\System32\wow64.dll 2011-06-01 22:45 - 2011-07-14 14:45 - 0013312 ____A (Microsoft Corporation) C:\Windows\System32\wow64cpu.dll 2011-06-01 22:44 - 2011-07-14 14:46 - 0214528 ____A (Microsoft Corporation) C:\Windows\System32\winsrv.dll 2011-06-01 22:42 - 2011-07-14 14:45 - 0016384 ____A (Microsoft Corporation) C:\Windows\System32\ntvdm64.dll 2011-06-01 22:39 - 2011-07-17 12:11 - 0422400 ____A (Microsoft Corporation) C:\Windows\System32\KernelBase.dll 2011-06-01 22:35 - 2011-07-14 14:46 - 0338944 ____A (Microsoft Corporation) C:\Windows\System32\conhost.exe 2011-06-01 22:23 - 2011-07-17 12:11 - 0006144 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0005120 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0004608 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll 2011-06-01 22:23 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll 2011-06-01 21:59 - 2011-07-14 14:45 - 0014336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2011-06-01 21:56 - 2011-07-14 14:45 - 0025600 ____A (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2011-06-01 21:54 - 2011-07-17 12:11 - 0272384 ____A (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2011-06-01 21:54 - 2011-07-14 14:45 - 0005120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0005120 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0004096 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2011-06-01 21:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2011-06-01 19:51 - 2011-07-14 14:45 - 0007680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2011-06-01 19:50 - 2011-07-14 14:45 - 0002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2011-06-01 19:45 - 2011-07-17 12:11 - 0006144 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2011-06-01 19:45 - 2011-07-17 12:11 - 0004608 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2011-06-01 19:45 - 2011-07-17 12:11 - 0003584 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2011-06-01 19:45 - 2011-07-17 12:11 - 0003072 ___AH (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2011-05-31 06:25 - 2010-12-22 12:14 - 0000000 ____D C:\Users\Prototype\Documents\VirtualDJ 2011-05-30 23:14 - 2011-03-02 18:26 - 0524288 __ASH C:\Windows\System32\config\COMPONENTS{f3845abd-42de-11e0-89fc-00266c3eacfe}.TMContainer00000000000000000002.regtrans-ms 2011-05-30 23:14 - 2011-03-02 18:26 - 0065536 __ASH C:\Windows\System32\config\COMPONENTS{f3845abd-42de-11e0-89fc-00266c3eacfe}.TM.blf 2011-05-24 15:14 - 2010-03-15 14:06 - 0270720 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe 2011-05-24 03:21 - 2011-07-14 14:44 - 0404992 ____A (Microsoft Corporation) C:\Windows\System32\umpnpmgr.dll 2011-05-24 02:34 - 2011-07-14 14:44 - 0145920 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2011-05-24 02:34 - 2011-07-14 14:44 - 0064512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2011-05-24 02:34 - 2011-07-14 14:44 - 0044544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2011-05-24 02:32 - 2011-07-14 14:44 - 0252928 ____A (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2011-05-13 23:36 - 2011-07-14 14:46 - 1162240 ____A (Microsoft Corporation) C:\Windows\System32\kernel32.dll 2011-05-13 22:32 - 2011-07-14 14:46 - 0837120 ____A (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll ========================= Known DLLs (Whitelisted) ============ ========================= Bamital & volsnap Check ============ C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ========================= Memory info ====================== Percentage of memory in use: 13% Total physical RAM: 3836.17 MB Available physical RAM: 3303.03 MB Total Pagefile: 3834.32 MB Available Pagefile: 3284.52 MB Total Virtual: 8192 MB Available Virtual: 8191.89 MB ======================= Partitions ========================= 1 Drive c: (TI105736W0B) (Fixed) (Total:287.61 GB) (Free:231.77 GB) NTFS 2 Drive d: (System) (Fixed) (Total:1.46 GB) (Free:1.27 GB) NTFS 4 Drive f: (TOSHIBA EXT) (Fixed) (Total:465.76 GB) (Free:85.65 GB) NTFS 5 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS ========================================================== Last Boot: 2010-10-11 14:35 ======================= End Of Log ==========================