Advertisement
benjmhart

Untitled

Jul 29th, 2011
60
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 18.54 KB | None | 0 0
  1. .
  2. DDS (Ver_2011-06-23.01) - NTFSx86 NETWORK
  3. Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_26
  4. Run by valued customer at 14:09:50 on 2011-07-29
  5. Microsoft® Windows Vista™ Business 6.0.6002.2.1252.1.1033.18.2038.1206 [GMT -4:00]
  6. .
  7. SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  8. .
  9. ============== Running Processes ===============
  10. .
  11. C:\Windows\system32\wininit.exe
  12. C:\Windows\system32\lsm.exe
  13. "\\.\globalroot\Device\svchost.exe\svchost.exe"
  14. C:\Windows\system32\svchost.exe -k DcomLaunch
  15. C:\Windows\system32\svchost.exe -k rpcss
  16. C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
  17. C:\Windows\system32\svchost.exe -k netsvcs
  18. C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
  19. C:\Windows\system32\svchost.exe -k NetworkService
  20. C:\Windows\system32\svchost.exe -k LocalService
  21. C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
  22. C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
  23. C:\Windows\Explorer.EXE
  24. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  25. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  26. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  27. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  28. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  29. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  30. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  31. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  32. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  33. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  34. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  35. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  36. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  37. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  38. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  39. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  40. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  41. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  42. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  43. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  44. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  45. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  46. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  47. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  48. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  49. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  50. C:\Windows\system32\rundll32.exe
  51. C:\Users\valued customer\AppData\Local\Google\Chrome\Application\chrome.exe
  52. C:\Windows\system32\DllHost.exe
  53. C:\Windows\system32\wbem\wmiprvse.exe
  54. .
  55. ============== Pseudo HJT Report ===============
  56. .
  57. uStart Page = hxxp://google.atcomet.com/b/
  58. mStart Page = hxxp://www.shoptoshiba.ca/welcome
  59. mDefault_Page_URL = hxxp://www.shoptoshiba.ca/welcome
  60. uInternet Settings,ProxyOverride = *.local
  61. uURLSearchHooks: H - No File
  62. BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
  63. BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
  64. BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
  65. BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
  66. BHO: Hotspot Shield Class: {f9e4a054-e9b1-4bc3-83a3-76a1ae736170} - c:\program files\hotspot shield\hssie\HssIE.dll
  67. TB: DAEMON Tools Toolbar: {32099aac-c132-4136-9e9a-4e364a424e17} - c:\program files\daemon tools toolbar\DTToolbar.dll
  68. TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
  69. TB: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
  70. TB: {91DA5E8A-3318-4F8C-B67E-5964DE3AB546} - No File
  71. uRun: [Google Update] "c:\users\valued customer\appdata\local\google\update\GoogleUpdate.exe" /c
  72. uRun: [uTorrent] "c:\program files\utorrent\uTorrent .exe"
  73. uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
  74. uRun: [msnmsgr] "c:\program files\windows live\messenger\msnmsgr.exe" /background
  75. uRun: [googletalk] c:\users\valued customer\appdata\roaming\google\google talk\googletalk.exe /autostart
  76. uRun: [AWC] "c:\program files\awc\AWC"
  77. uRun: [{66E66573-5C7F-809D-6B98-F55E81FFBA67}] "c:\users\valued customer\appdata\roaming\ifiz\taafo.exe"
  78. uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil10m_Plugin.exe -update plugin
  79. mRun: [TOSDCR] %ProgramFiles%\TOSHIBA\PasswordUtility\TOSDCR.exe
  80. mRun: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
  81. mRun: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
  82. mRun: [00TCrdMain] %ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe
  83. mRun: [Apoint] c:\program files\apoint2k\Apoint.exe
  84. mRun: [ThpSrv] c:\windows\system32\thpsrv /logon
  85. mRun: [NDSTray.exe] NDSTray.exe
  86. mRun: [TosAutLk] c:\program files\toshiba\wirelesskeylogon\TosAutLk.exe -s
  87. mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
  88. mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
  89. mRun: [Persistence] c:\windows\system32\igfxpers.exe
  90. mRun: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
  91. mRun: [RtHDVCpl] RtHDVCpl.exe
  92. mRun: [nmctxth] "c:\program files\common files\pure networks shared\platform\nmctxth.exe"
  93. mRun: [AdobeCS4ServiceManager] "c:\program files\common files\adobe\cs4servicemanager\CS4ServiceManager.exe" -launchedbylogin
  94. mRun: [ZoneAlarm Client] "c:\program files\zone labs\zonealarm\zlclient.exe"
  95. mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
  96. mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
  97. mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
  98. mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
  99. mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
  100. mRunOnce: [InnoSetupRegFile.0000000001] "c:\windows\is-40FCA.exe" /REG /REGSVRMODE
  101. mRunOnce: [GrpConv] grpconv -o
  102. mRunOnce: [Malwarebytes' Anti-Malware] c:\program files\malwarebytes' anti-malware\mbamgui.exe /install /silent
  103. StartupFolder: c:\users\valued~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\circle~1.lnk - c:\users\valued customer\desktop\circledock0.9.2alpha8.2\CircleDock.exe
  104. StartupFolder: c:\users\valued~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\dropbox.lnk - c:\users\valued customer\appdata\roaming\dropbox\bin\Dropbox.exe
  105. StartupFolder: c:\users\valued~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\ITUNES~1.LNK -
  106. StartupFolder: c:\users\valued~1\appdata\roaming\micros~1\windows\startm~1\programs\startup\torren~1.lnk - c:\program files\utorrent\uTorrent.exe
  107. StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\rainme~1.lnk - c:\program files\rainmeter\Rainmeter.exe
  108. mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
  109. mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
  110. IE: Append Link Target to Existing PDF - c:\program files\common files\adobe\acrobat\activex\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
  111. IE: E&xport to Microsoft Excel - c:\progra~1\micros~1\office12\EXCEL.EXE/3000
  112. LSP: mswsock.dll
  113. Trusted Zone: clonewarsadventures.com
  114. Trusted Zone: freerealms.com
  115. Trusted Zone: soe.com
  116. Trusted Zone: sony.com
  117. DPF: {4871A87A-BFDD-4106-8153-FFDE2BAC2967} - hxxp://dlm.tools.akamai.com/dlmanager/versions/activex/dlm-activex-2.2.4.5.cab
  118. DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
  119. DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
  120. DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
  121. DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
  122. DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
  123. TCP: DhcpNameServer = 192.168.0.1
  124. TCP: Interfaces\{91D5DDC3-319B-4548-A7BB-8110389B72B4} : DhcpNameServer = 192.168.0.1
  125. TCP: Interfaces\{9E25C04E-1A94-4A48-BBE9-B8EF371AF6FD} : NameServer = 10.76.32.1
  126. Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:\program files\common files\pure networks shared\platform\puresp4.dll
  127. Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
  128. Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - c:\program files\windows live\photo gallery\AlbumDownloadProtocolHandler.dll
  129. Notify: igfxcui - igfxdev.dll
  130. STS: FencesShlExt Class: {1984dd45-52cf-49cd-ab77-18f378fea264} - c:\program files\stardock\fences\FencesMenu.dll
  131. mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
  132. .
  133. ================= FIREFOX ===================
  134. .
  135. FF - ProfilePath -
  136. .
  137. ============= SERVICES / DRIVERS ===============
  138. .
  139. R0 Thpdrv;TOSHIBA HDD Protection Driver;c:\windows\system32\drivers\thpdrv.sys [2007-3-22 21504]
  140. R0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver;c:\windows\system32\drivers\Thpevm.sys [2007-2-7 6528]
  141. R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\drivers\dtsoftbus01.sys [2011-2-5 218688]
  142. S2 a2AntiMalware;Emsisoft Anti-Malware 5.1 - Service;c:\program files\emsisoft anti-malware\a2service.exe [2011-7-29 3029208]
  143. S2 AdobeARMservice;Adobe Acrobat Update Service;c:\program files\common files\adobe\arm\1.0\armsvc.exe [2011-6-6 64952]
  144. S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
  145. S2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2009-3-15 21504]
  146. S2 npf;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2008-6-1 34064]
  147. S2 StyleService;StyleService;c:\users\valued customer\documents\style selector\styleservice --> c:\users\valued customer\documents\style selector\StyleService [?]
  148. S3 a2acc;a2acc;c:\program files\emsisoft anti-malware\a2accx86.sys [2011-7-29 73728]
  149. S3 DrmRAudio;DrmRAudio;c:\windows\system32\drivers\DrmRAudio.sys [2010-7-19 23096]
  150. S3 SndTAudio;SndTAudio;c:\windows\system32\drivers\SndTAudio.sys [2010-7-19 23096]
  151. S3 STSService;STSService;"c:\program files\soundtaxi media suite\stsservice.exe" --> c:\program files\soundtaxi media suite\STSService.exe [?]
  152. S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
  153. S4 HssWd;Hotspot Shield Monitoring Service;c:\program files\hotspot shield\bin\hsswd.exe -product hss --> c:\program files\hotspot shield\bin\hsswd.exe -product HSS [?]
  154. S4 LiboxEngine;LiboxEngine;c:\program files\libox\Libox.Engine.exe [2010-11-30 27816]
  155. .
  156. =============== Created Last 30 ================
  157. .
  158. 2011-07-29 17:47:49 41272 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
  159. 2011-07-29 17:47:46 22712 ----a-w- c:\windows\system32\drivers\mbam.sys
  160. 2011-07-29 17:09:18 -------- d--h--w- c:\programdata\Common Files
  161. 2011-07-29 08:43:30 -------- d-----w- c:\programdata\MFAData
  162. 2011-07-29 07:53:22 -------- d-----w- c:\program files\Emsisoft Anti-Malware
  163. 2011-07-29 07:29:03 200976 ----a-w- c:\windows\system32\drivers\tmcomm.sys
  164. 2011-07-29 05:00:12 709968 ----a-w- c:\windows\is-40FCA.exe
  165. 2011-07-28 21:42:45 -------- d-----w- c:\users\valued customer\appdata\local\{DF54E234-5337-497D-A1E9-236042EE131C}
  166. 2011-07-28 21:11:04 -------- d-----w- c:\users\valued customer\appdata\roaming\Ifiz
  167. 2011-07-28 21:11:04 -------- d-----w- c:\users\valued customer\appdata\roaming\Efec
  168. 2011-07-27 21:07:53 -------- d-----w- c:\users\valued customer\appdata\local\{3241B76F-D009-4C45-B3B3-B3D73760D767}
  169. 2011-07-27 09:07:41 -------- d-----w- c:\users\valued customer\appdata\local\{2162AA05-92B6-44F5-AC66-45D790AF15C5}
  170. 2011-07-26 21:07:17 -------- d-----w- c:\users\valued customer\appdata\local\{2BD985CB-57F0-4EF6-B997-88462E559ABA}
  171. 2011-07-26 09:06:51 -------- d-----w- c:\users\valued customer\appdata\local\{33C79E28-7C02-4E46-9F49-8E71D8826AFD}
  172. 2011-07-25 21:06:53 -------- d-----w- c:\users\valued customer\appdata\local\{FA1CA0B2-F150-4540-8CDD-3E60312F194D}
  173. 2011-07-25 09:10:20 -------- d-----w- c:\users\valued customer\appdata\local\{086E7323-4342-4720-A53C-C28EC1F264E3}
  174. 2011-07-24 21:09:57 -------- d-----w- c:\users\valued customer\appdata\local\{62156771-4D36-4CA8-960C-4EF79FBE6584}
  175. 2011-07-24 09:09:34 -------- d-----w- c:\users\valued customer\appdata\local\{CFB266DE-A936-44C5-A267-4A968D054F0C}
  176. 2011-07-23 21:09:11 -------- d-----w- c:\users\valued customer\appdata\local\{FF53062A-C2BB-4248-8F52-FD4E4E34D682}
  177. 2011-07-23 09:08:47 -------- d-----w- c:\users\valued customer\appdata\local\{130CB3F2-2E17-4E1F-9AA9-0DEA02C189E5}
  178. 2011-07-22 21:08:23 -------- d-----w- c:\users\valued customer\appdata\local\{8664D5EF-E082-46AB-A537-1FA255109500}
  179. 2011-07-22 09:07:59 -------- d-----w- c:\users\valued customer\appdata\local\{9372501B-C390-4DAA-A2CE-71DBEE243534}
  180. 2011-07-21 21:07:36 -------- d-----w- c:\users\valued customer\appdata\local\{6C58F4A8-3F33-4849-BA1F-73230D5B67DD}
  181. 2011-07-21 09:07:13 -------- d-----w- c:\users\valued customer\appdata\local\{F9320272-3963-4800-94DF-1183B61C665D}
  182. 2011-07-21 06:06:45 -------- d-----w- c:\users\valued customer\appdata\roaming\rinsebyreal
  183. 2011-07-21 06:06:39 -------- d-----w- c:\program files\Rinse
  184. 2011-07-20 21:06:39 -------- d-----w- c:\users\valued customer\appdata\local\{B2F1FA2F-2D45-4889-A46F-08E28AD5265A}
  185. 2011-07-20 09:06:17 -------- d-----w- c:\users\valued customer\appdata\local\{FC2B2D6A-C63E-4711-A140-BAA40A3EA3DE}
  186. 2011-07-19 00:30:05 -------- d-----w- c:\users\valued customer\appdata\local\{DE782125-E697-44D8-94E3-29E7D5CF19BE}
  187. 2011-07-19 00:24:05 -------- d-----w- c:\programdata\ZA_PreservedFiles
  188. 2011-07-18 22:40:53 -------- d-----w- c:\users\valued customer\appdata\local\{38CC1A0C-071F-4C8B-8EDC-2D5B9DC4B00A}
  189. 2011-07-18 01:34:51 -------- d-----w- c:\program files\Music Rescue
  190. 2011-07-17 22:08:29 -------- d-----w- c:\users\valued customer\appdata\roaming\WindSolutions
  191. 2011-07-17 22:08:28 -------- d-----w- c:\programdata\WindSolutions
  192. 2011-07-17 20:58:06 -------- d-----w- c:\users\valued customer\appdata\local\{3F1921D5-113A-4F63-BDC6-3552AAD21EBA}
  193. 2011-07-17 08:57:44 -------- d-----w- c:\users\valued customer\appdata\local\{C793489C-24B7-4D8E-BEB4-CD933B1643DC}
  194. 2011-07-16 21:49:11 -------- d-----w- c:\users\valued customer\appdata\roaming\iPod2PC3
  195. 2011-07-16 21:49:11 -------- d-----w- c:\users\valued customer\appdata\roaming\EurekaLog
  196. 2011-07-16 21:48:57 -------- d-----w- c:\program files\iPod2PC
  197. 2011-07-16 20:56:07 -------- d-----w- c:\users\valued customer\appdata\local\{B9C13791-4D30-4880-8A7C-DA07EAFDEC15}
  198. 2011-07-14 19:35:00 -------- d-----w- c:\users\valued customer\appdata\local\{470F8B9B-9428-42F0-82BF-8CD22BA29CA5}
  199. 2011-07-14 07:34:39 -------- d-----w- c:\users\valued customer\appdata\local\{DF6BF8A6-8482-486D-81B0-919C8569E6EC}
  200. 2011-07-13 19:34:15 -------- d-----w- c:\users\valued customer\appdata\local\{7CD85D9F-2CE4-4785-9E4D-01D2A70903D0}
  201. 2011-07-13 07:33:08 -------- d-----w- c:\users\valued customer\appdata\local\{9E076DC3-E620-4CF3-A1DF-F8330F240662}
  202. 2011-07-13 00:16:44 2043392 ----a-w- c:\windows\system32\win32k.sys
  203. 2011-07-13 00:16:40 49152 ----a-w- c:\windows\system32\csrsrv.dll
  204. 2011-07-13 00:16:40 375808 ----a-w- c:\windows\system32\winsrv.dll
  205. 2011-07-11 02:58:23 -------- d-----w- c:\users\valued customer\appdata\local\{C6FC54EE-5262-4C24-872B-78D44085D3F6}
  206. 2011-07-10 14:59:03 -------- d-----w- c:\users\valued customer\appdata\local\{B34BE73C-900E-43A9-9F2B-16CAD622971A}
  207. 2011-07-10 00:32:51 -------- d-----w- c:\users\valued customer\appdata\local\{0F347F3E-4855-4AB5-A045-1FAF219C3F37}
  208. 2011-07-09 12:32:27 -------- d-----w- c:\users\valued customer\appdata\local\{5D0A63C7-EAC2-4331-8DCD-45721B111814}
  209. 2011-07-09 00:32:05 -------- d-----w- c:\users\valued customer\appdata\local\{30CB8F0A-25A4-47F4-BFED-22861B301683}
  210. 2011-07-08 12:31:41 -------- d-----w- c:\users\valued customer\appdata\local\{5EBFE67F-0E4D-4BF9-A272-032EAE95DC74}
  211. 2011-07-08 00:31:19 -------- d-----w- c:\users\valued customer\appdata\local\{49DA1931-3851-435B-9DB8-7AD96AADE8B7}
  212. 2011-07-07 12:30:57 -------- d-----w- c:\users\valued customer\appdata\local\{554BECF9-85CA-4578-A718-0E38CB3C1630}
  213. 2011-07-07 00:29:37 -------- d-----w- c:\users\valued customer\appdata\local\{1F184148-D58C-4188-B622-4345FBB59A1C}
  214. 2011-07-06 04:45:19 -------- d-----w- c:\users\valued customer\appdata\local\{C93B2995-EAE3-4FBE-ABA1-E3DCE6382359}
  215. 2011-07-05 00:27:46 -------- d-----w- c:\users\valued customer\appdata\local\{8AD73636-7A42-4E4B-A84D-ACE0F70E28B7}
  216. 2011-07-04 02:02:41 -------- d-----w- c:\users\valued customer\appdata\local\{613F43A9-0F45-4C04-82CE-3BB84CFFFDDE}
  217. 2011-07-03 14:02:17 -------- d-----w- c:\users\valued customer\appdata\local\{6D7F01C1-2B50-4B7E-892E-813BD9B2997A}
  218. 2011-07-03 02:01:55 -------- d-----w- c:\users\valued customer\appdata\local\{6854600C-38A1-4B57-A35C-715E14C62CBA}
  219. 2011-07-02 14:01:32 -------- d-----w- c:\users\valued customer\appdata\local\{75E8BBD9-0A0D-4089-AC38-199F059CD82D}
  220. 2011-07-02 02:01:11 -------- d-----w- c:\users\valued customer\appdata\local\{10CDE037-E27E-440A-97DD-F0254A73FE7A}
  221. 2011-07-01 14:00:49 -------- d-----w- c:\users\valued customer\appdata\local\{683AAA88-3711-4A27-87AD-378C39A79795}
  222. 2011-07-01 02:00:14 -------- d-----w- c:\users\valued customer\appdata\local\{D643D023-5C01-4261-9DBC-5804B6EEF00A}
  223. 2011-06-30 13:59:51 -------- d-----w- c:\users\valued customer\appdata\local\{FF478A6F-47EF-496D-91DC-E485A6BE1427}
  224. 2011-06-30 01:59:28 -------- d-----w- c:\users\valued customer\appdata\local\{07ED6370-4B81-4CDE-9992-9A1A88241ABE}
  225. .
  226. ==================== Find3M ====================
  227. .
  228. 2011-05-10 12:06:08 4517664 ----a-w- c:\windows\system32\usbaaplrc.dll
  229. 2011-05-10 12:06:08 42496 ----a-w- c:\windows\system32\drivers\usbaapl.sys
  230. 2011-05-04 08:52:22 472808 ----a-w- c:\windows\system32\deployJava1.dll
  231. 2011-05-02 17:16:14 739328 ----a-w- c:\windows\system32\inetcomm.dll
  232. .
  233. ============= FINISH: 14:11:05.00 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement