Advertisement
Guest User

Untitled

a guest
Feb 23rd, 2011
137
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 30.06 KB | None | 0 0
  1.  
  2. DDS (Ver_10-12-12.02) - NTFS_AMD64  
  3. Run by Ammar at 18:01:37.11 on Wed 02/23/2011
  4. Internet Explorer: 8.0.7600.16385 BrowserJavaVersion: 1.6.0_23
  5. Microsoft Windows 7 Home Premium   6.1.7600.0.1252.1.1033.18.3895.1856 [GMT 4:00]
  6.  
  7. AV: F-Secure Internet Security 2011 10.51 *Disabled/Updated* {15414183-282E-D62C-CA37-EF24860A2F17}
  8. SP: F-Secure Internet Security 2011 10.51 *Disabled/Updated* {AE20A067-0E14-D9A2-F087-D456FD8D65AA}
  9. SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  10. FW: F-Secure Internet Security 2011 10.51 *Enabled* {2D7AC0A6-6241-D774-E168-461178D9686C}
  11.  
  12. ============== Running Processes ===============
  13.  
  14. C:\Windows\system32\wininit.exe
  15. C:\Windows\system32\lsm.exe
  16. C:\Windows\system32\svchost.exe -k DcomLaunch
  17. C:\Windows\system32\svchost.exe -k RPCSS
  18. C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
  19. C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
  20. C:\Windows\system32\svchost.exe -k netsvcs
  21. C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\STacSV64.exe
  22. C:\Windows\UnsignedThemesSvc.exe
  23. C:\Windows\system32\svchost.exe -k LocalService
  24. C:\Program Files\Dell\DellDock\DockLogin.exe
  25. C:\Windows\system32\svchost.exe -k NetworkService
  26. C:\Windows\system32\WLANExt.exe
  27. C:\Windows\system32\conhost.exe
  28. C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE
  29. C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe
  30. C:\Windows\System32\spoolsv.exe
  31. C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
  32. C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\AESTSr64.exe
  33. C:\Program Files (x86)\Bonjour\mDNSResponder.exe
  34. C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
  35. C:\Program Files (x86)\F-Secure\Anti-Virus\fsgk32st.exe
  36. C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
  37. C:\Program Files (x86)\F-Secure\Anti-Virus\FSGK32.EXE
  38. C:\Program Files (x86)\F-Secure\Common\FSMA32.EXE
  39. C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  40. C:\Program Files (x86)\F-Secure\Common\FSHDLL32.EXE
  41. C:\Program Files\Common Files\Nitro PDF\Professional\6.0\NitroPDFDriverServicex64.exe
  42. C:\Windows\SysWOW64\NLSSRV32.EXE
  43. C:\Program Files (x86)\Dell DataSafe Local Backup\sftservice.EXE
  44. C:\Windows\system32\svchost.exe -k imgsvc
  45. C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe
  46. C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe
  47. C:\Program Files (x86)\F-Secure\Common\FSHDLL64.EXE
  48. C:\Windows\SysWOW64\vmnat.exe
  49. C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
  50. C:\Windows\system32\wbem\wmiprvse.exe
  51. C:\Windows\SysWOW64\vmnetdhcp.exe
  52. C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
  53. C:\Program Files (x86)\F-Secure\ORSP Client\fsorsp.exe
  54. C:\Program Files (x86)\F-Secure\FWES\Program\fsdfwd.exe
  55. C:\Program Files (x86)\F-Secure\Anti-Virus\fssm32.exe
  56. C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
  57. C:\Windows\system32\svchost.exe -k bthsvcs
  58. C:\Windows\system32\wbem\wmiprvse.exe
  59. C:\Program Files (x86)\F-Secure\Anti-Virus\fsav32.exe
  60. C:\Windows\system32\taskhost.exe
  61. C:\Windows\system32\Dwm.exe
  62. C:\Windows\Explorer.EXE
  63. C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\STService.exe
  64. C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe
  65. C:\Windows\system32\conhost.exe
  66. C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe
  67. C:\Program Files\Dell\QuickSet\quickset.exe
  68. C:\Program Files\IDT\WDM\sttray64.exe
  69. C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
  70. C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE
  71. C:\Windows\System32\igfxtray.exe
  72. C:\Windows\System32\igfxpers.exe
  73. C:\Program Files (x86)\uTorrent\uTorrent.exe
  74. C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
  75. C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
  76. C:\Program Files\Dell\DellDock\DellDock.exe
  77. C:\Users\Ammar\AppData\Roaming\Dropbox\bin\Dropbox.exe
  78. C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
  79. C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe
  80. C:\Program Files (x86)\MagicDisc\MagicDisc.exe
  81. C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe
  82. C:\Program Files (x86)\F-Secure\Common\FSM32.EXE
  83. C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\acrotray.exe
  84. C:\Windows\SysWOW64\DannyHost.exe
  85. C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe
  86. C:\Program Files (x86)\LiveZilla\LiveZilla.exe
  87. C:\Users\Ammar\AppData\Roaming\Sys32Disp.exe.exe
  88. C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
  89. C:\Windows\system32\SearchIndexer.exe
  90. C:\Users\Ammar\AppData\Roaming\local.exe
  91. C:\Program Files\Windows Media Player\wmpnetwk.exe
  92. C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe
  93. C:\Program Files (x86)\F-Secure\Spam Control\fsscoepl_x64.exe
  94. C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
  95. C:\Windows\SysWOW64\mdm.exe
  96. C:\Windows\System32\svchost.exe -k LocalServicePeerNet
  97. C:\Program Files (x86)\Dell Support Center\bin\sprtsvc.exe
  98. C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
  99. C:\Windows\System32\svchost.exe -k secsvcs
  100. C:\Windows\system32\wuauclt.exe
  101. C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  102. C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
  103. C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
  104. C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
  105. C:\Windows\system32\taskhost.exe
  106. C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
  107. C:\Windows\system32\SearchProtocolHost.exe
  108. C:\Windows\system32\SearchFilterHost.exe
  109. C:\Windows\system32\DllHost.exe
  110. C:\Windows\system32\DllHost.exe
  111. C:\Users\Ammar\Desktop\dds.scr
  112. C:\Windows\system32\conhost.exe
  113.  
  114. ============== Pseudo HJT Report ===============
  115.  
  116. uStart Page = my.daemon-search.com
  117. uInternet Settings,ProxyOverride = *.local
  118. mWinlogon: Userinit=userinit.exe
  119. BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
  120. BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
  121. BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL
  122. BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
  123. BHO: Adobe PDF Conversion Toolbar Helper: {ae7cd045-e861-484f-8273-0445ee161910} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
  124. BHO: Skype add-on for Internet Explorer: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
  125. BHO: Office Document Cache Handler: {b4f3a835-0e21-4959-ba22-42b3008e02ff} - C:\PROGRA~2\MIF5BA~1\Office14\URLREDIR.DLL
  126. BHO: Browsing Protection Class: {c6867eb7-8350-4856-877f-93cf8ae3dc9c} - C:\Program Files (x86)\F-Secure\NRS\iescript\baselitmus.dll
  127. BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
  128. TB: Browsing Protection Toolbar: {265eee8e-3228-44d3-aea5-f7fdf5860049} - C:\Program Files (x86)\F-Secure\NRS\iescript\baselitmus.dll
  129. TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
  130. TB: DAEMON Tools Toolbar: {32099aac-c132-4136-9e9a-4e364a424e17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar.dll
  131. TB: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
  132. EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll
  133. uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\MsnMsgr.Exe" /background
  134. uRun: [uTorrent] "C:\Program Files (x86)\uTorrent\uTorrent.exe"
  135. uRun: [PSwitch] C:\Program Files (x86)\Proxy Switcher Standard\ProxySwitcher.exe
  136. uRun: [Sidebar] C:\Program Files (x86)\Windows Sidebar\sidebar.exe /autoRun
  137. uRun: [local] C:\Users\Ammar\AppData\Roaming\local\local.exe
  138. uRun: [svchost] C:\Users\Ammar\AppData\Roaming\local.exe
  139. mRun: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
  140. mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
  141. mRun: [Dell Webcam Central] "C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe" /mode2
  142. mRun: [Desktop Disc Tool] "C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe"
  143. mRun: [DellSupportCenter] "C:\Program Files (x86)\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
  144. mRun: [F-Secure Manager] "C:\Program Files (x86)\F-Secure\Common\FSM32.EXE" /splash
  145. mRun: [F-Secure TNB] "C:\Program Files (x86)\F-Secure\FSGUI\TNBUtil.exe" /CHECKALL /WAITFORSW
  146. mRun: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\Acrotray.exe"
  147. mRun: [<NO NAME>]
  148. mRun: [DannyHost] "C:\Windows\SysWOW64\DannyHost.exe"
  149. mRun: [vmware-tray] "C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe"
  150. mRun: [LiveZilla] "C:\Program Files (x86)\LiveZilla\LiveZilla.exe" -minimize
  151. mRunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"
  152. mRunOnce: [Launcher] C:\Program Files (x86)\Dell DataSafe Local Backup\Components\Scheduler\Launcher.exe
  153. mRunOnce: [DSUpdateLauncher] "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\hstart.exe" /NOCONSOLE /D="C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate" /RUNAS "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpd.exe"
  154. mRunOnce: [STToasterLauncher] C:\Program Files (x86)\Dell DataSafe Local Backup\toasterLauncher.exe
  155. mRunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
  156. StartupFolder: C:\Users\Ammar\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\DELLDO~1.LNK - C:\Program Files\Dell\DellDock\DellDock.exe
  157. StartupFolder: C:\Users\Ammar\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\Ammar\AppData\Roaming\Dropbox\bin\Dropbox.exe
  158. StartupFolder: C:\Users\Ammar\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\MAGICD~1.LNK - C:\Program Files (x86)\MagicDisc\MagicDisc.exe
  159. StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\BLUETO~1.LNK - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
  160. mPolicies-explorer: NoActiveDesktop = 1 (0x1)
  161. mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
  162. mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
  163. mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
  164. IE: Append to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
  165. IE: Convert link target to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
  166. IE: Convert link target to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
  167. IE: Convert selected links to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
  168. IE: Convert selected links to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
  169. IE: Convert selection to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
  170. IE: Convert selection to existing PDF - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
  171. IE: Convert to Adobe PDF - C:\Program Files (x86)\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
  172. IE: E&xport to Microsoft Excel - C:\PROGRA~1\MICROS~2\Office14\EXCEL.EXE/3000
  173. IE: Se&nd to OneNote - C:\PROGRA~1\MICROS~2\Office14\ONBttnIE.dll/105
  174. IE: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
  175. IE: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
  176. IE: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
  177. IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
  178. IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
  179. IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
  180. LSP: C:\Program Files (x86)\F-Secure\FSPS\program\FSLSP.DLL
  181. LSP: C:\Program Files (x86)\VMware\VMware Workstation\vsocklib.dll
  182. DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
  183. DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
  184. DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab
  185. Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL
  186. Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
  187. Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
  188. SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - C:\PROGRA~2\MIF5BA~1\Office14\GROOVEEX.DLL
  189. BHO-X64: Groove GFS Browser Helper: {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
  190. BHO-X64: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL
  191. BHO-X64:     URLRedirectionBHO - No File
  192. BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
  193. TB-X64: DAEMON Tools Toolbar: {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files (x86)\DAEMON Tools Toolbar\DTToolbar64.dll
  194. TB-X64: {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
  195. TB-X64: {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
  196. mRun-x64: [QuickSet] C:\Program Files\Dell\QuickSet\QuickSet.exe
  197. mRun-x64: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe
  198. mRun-x64: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
  199. mRun-x64: [Broadcom Wireless Manager UI] C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe
  200. mRun-x64: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices
  201. mRun-x64: [IgfxTray] C:\Windows\system32\igfxtray.exe
  202. mRun-x64: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
  203. mRun-x64: [Persistence] C:\Windows\system32\igfxpers.exe
  204. IE-X64: {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
  205. SEH-X64: Groove GFS Stub Execution Hook: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL
  206.  
  207. ================= FIREFOX ===================
  208.  
  209. FF - ProfilePath - C:\Users\Ammar\AppData\Roaming\Mozilla\Firefox\Profiles\v0h36a0u.default\
  210. FF - prefs.js: browser.startup.homepage - hxxp://www.google.com/ncr
  211. FF - prefs.js: network.proxy.type - 0
  212. FF - component: C:\Users\Ammar\AppData\Roaming\Mozilla\Firefox\Profiles\v0h36a0u.default\extensions\DTToolbar@toolbarnet.com\components\DTToolbarFF.dll
  213. FF - plugin: C:\PROGRA~2\MIF5BA~1\Office14\NPAUTHZ.DLL
  214. FF - plugin: C:\PROGRA~2\MIF5BA~1\Office14\NPSPWRAP.DLL
  215. FF - plugin: C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll
  216. FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
  217. FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
  218. FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
  219. FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - C:\Program Files (x86)\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
  220. FF - Ext: Java Console: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}
  221. FF - Ext: Java Console: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}
  222. FF - Ext: DAEMON Tools Toolbar: DTToolbar@toolbarnet.com - %profile%\extensions\DTToolbar@toolbarnet.com
  223.  
  224. ============= SERVICES / DRIVERS ===============
  225.  
  226. R0 PxHlpa64;PxHlpa64;C:\Windows\System32\drivers\PxHlpa64.sys [2010-8-17 55280]
  227. R1 F-Secure HIPS;F-Secure HIPS Driver;C:\Program Files (x86)\F-Secure\HIPS\drivers\fshs.sys [2011-1-17 61960]
  228. R1 FSES;F-Secure Email Scanning Driver;C:\Windows\System32\drivers\fses.sys [2011-1-17 46664]
  229. R1 FSFW;F-Secure Firewall Driver;C:\Windows\System32\drivers\fsdfw.sys [2011-1-17 95784]
  230. R1 fsvista;F-Secure Vista Support Driver;C:\Program Files (x86)\F-Secure\Anti-Virus\minifilter\fsvista.sys [2011-1-17 15016]
  231. R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-14 59904]
  232. R2 AESTFilters;Andrea ST Filters Service;C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_58afa5ca50c7b5e7\AESTSr64.exe [2010-8-18 89600]
  233. R2 DockLoginService;Dock Login Service;C:\Program Files\Dell\DellDock\DockLogin.exe [2009-6-9 155648]
  234. R2 F-Secure Gatekeeper Handler Starter;FSGKHS;C:\Program Files (x86)\F-Secure\Anti-Virus\fsgk32st.exe [2011-1-17 221864]
  235. R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-8-17 13336]
  236. R2 NitroDriverReadSpool;NitroPDFDriverCreatorReadSpool;C:\Program Files\Common Files\Nitro PDF\Professional\6.0\NitroPDFDriverServicex64.exe [2011-1-12 341312]
  237. R2 nlsX86cc;NLS Service;C:\Windows\SysWOW64\NLSSRV32.EXE [2011-1-12 68928]
  238. R2 SftService;SoftThinks Agent Service;C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe [2010-8-17 673088]
  239. R2 TeamViewer6;TeamViewer 6;C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2011-1-17 2228008]
  240. R2 TurboB;Turbo Boost UI Monitor driver;C:\Windows\System32\drivers\TurboB.sys [2009-11-2 13784]
  241. R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-8-17 2320920]
  242. R2 UnsignedThemes;Unsigned Themes;C:\Windows\UnsignedThemesSvc.exe [2009-7-13 24168]
  243. R2 uxpatch;uxpatch;C:\Windows\System32\drivers\uxpatch.sys [2009-7-13 30568]
  244. R2 VMUSBArbService;VMware USB Arbitration Service;C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator.exe [2009-10-22 563760]
  245. R3 BcmVWL;Broadcom Virtual Wireless;C:\Windows\System32\drivers\bcmvwl64.sys [2010-8-18 20984]
  246. R3 btwl2cap;Bluetooth L2CAP Service;C:\Windows\System32\drivers\btwl2cap.sys [2010-8-17 35104]
  247. R3 CtClsFlt;Creative Camera Class Upper Filter Driver;C:\Windows\System32\drivers\CtClsFlt.sys [2010-8-17 172704]
  248. R3 F-Secure Gatekeeper;F-Secure Gatekeeper;C:\Program Files (x86)\F-Secure\Anti-Virus\minifilter\fsgk.sys [2011-1-17 194728]
  249. R3 FSORSPClient;F-Secure ORSP Client;C:\Program Files (x86)\F-Secure\ORSP Client\fsorsp.exe [2011-1-17 63992]
  250. R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2010-8-18 56344]
  251. R3 Impcd;Impcd;C:\Windows\System32\drivers\Impcd.sys [2010-8-18 158976]
  252. R3 IntcDAud;Intel(R) Display Audio;C:\Windows\System32\drivers\IntcDAud.sys [2010-8-18 271872]
  253. R3 ScreamBAudioSvc;ScreamBee Audio;C:\Windows\System32\drivers\ScreamingBAudio64.sys [2009-12-1 38992]
  254. S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
  255. S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
  256. S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service;C:\Program Files\Microsoft Office\Office14\GROOVE.EXE [2010-3-25 51456888]
  257. S3 ose64;Office 64 Source Engine;C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-1-9 174440]
  258. S3 osppsvc;Office Software Protection Platform;C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-1-9 4925184]
  259. S3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-8-18 325152]
  260. S3 TurboBoost;TurboBoost;C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2009-11-2 126352]
  261. S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-1-20 1255736]
  262. S3 WSDPrintDevice;WSD Print Support via UMB;C:\Windows\System32\drivers\WSDPrint.sys [2009-7-14 23040]
  263. S3 WSDScan;WSD Scan Support via UMB;C:\Windows\System32\drivers\WSDScan.sys [2009-7-14 25088]
  264. S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-6-11 389120]
  265. S4 F-Secure Filter;F-Secure File System Filter;C:\Program Files (x86)\F-Secure\Anti-Virus\win2k\fsfilter.sys [2011-1-17 41896]
  266. S4 F-Secure Recognizer;F-Secure File System Recognizer;C:\Program Files (x86)\F-Secure\Anti-Virus\win2k\fsrec.sys [2011-1-17 27304]
  267.  
  268. =============== Created Last 30 ================
  269.  
  270. 2011-02-23 13:53:13 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\Malwarebytes
  271. 2011-02-23 13:53:09 38224   ----a-w-    C:\Windows\SysWow64\drivers\mbamswissarmy.sys
  272. 2011-02-23 13:53:09 --------    d-----w-    C:\PROGRA~3\Malwarebytes
  273. 2011-02-23 13:53:06 24152   ----a-w-    C:\Windows\System32\drivers\mbam.sys
  274. 2011-02-23 13:53:06 --------    d-----w-    C:\Program Files (x86)\Malwarebytes' Anti-Malware
  275. 2011-02-23 12:15:44 6144    ----a-w-    C:\Users\Ammar\AppData\Roaming\local.exe
  276. 2011-02-22 14:06:15 7844688 ----a-w-    C:\PROGRA~3\Microsoft\Windows Defender\Definition Updates\{ED647170-7F08-4730-8E9B-947376E037DF}\mpengine.dll
  277. 2011-02-21 13:20:53 --------    d-----w-    C:\Users\Ammar\AppData\Local\Temporary Projects
  278. 2011-02-19 15:46:36 842 ----a-w-    C:\Users\Ammar\AppData\Roaming\net.bat
  279. 2011-02-19 15:46:36 513 ----a-w-    C:\Users\Ammar\AppData\Roaming\net.vbs
  280. 2011-02-19 15:30:01 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\Screaming Bee
  281. 2011-02-19 15:27:46 --------    d-----w-    C:\Program Files (x86)\Screaming Bee
  282. 2011-02-19 15:17:48 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\GetRightToGo
  283. 2011-02-19 10:00:19 91855   ----a-w-    C:\Users\Ammar\AppData\Roaming\Sys32Disp.exe.exe
  284. 2011-02-17 12:46:23 --------    d-sh--w-    C:\Users\Ammar\AppData\Roaming\local
  285. 2011-02-16 13:31:24 --------    d-----w-    C:\Program Files (x86)\YouTube Downloader
  286. 2011-02-15 22:43:32 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\HF Assitant
  287. 2011-02-12 18:15:23 469256  ----a-w-    C:\Program Files (x86)\Common Files\Windows Live\.cache\d00e93501cbcae02d\InstallManager_WLE_WLE.exe
  288. 2011-02-12 18:15:10 15712   ----a-w-    C:\Program Files (x86)\Common Files\Windows Live\.cache\c8bb02a91cbcae022\MeshBetaRemover.exe
  289. 2011-02-12 18:14:57 94040   ----a-w-    C:\Program Files (x86)\Common Files\Windows Live\.cache\c157ba581cbcae01a\DSETUP.dll
  290. 2011-02-12 18:14:57 94040   ----a-w-    C:\Program Files (x86)\Common Files\Windows Live\.cache\c0b891d31cbcae019\DSETUP.dll
  291. 2011-02-12 18:14:57 525656  ----a-w-    C:\Program Files (x86)\Common Files\Windows Live\.cache\c157ba581cbcae01a\DXSETUP.exe
  292. 2011-02-12 18:14:57 525656  ----a-w-    C:\Program Files (x86)\Common Files\Windows Live\.cache\c0b891d31cbcae019\DXSETUP.exe
  293. 2011-02-12 18:14:57 1691480 ----a-w-    C:\Program Files (x86)\Common Files\Windows Live\.cache\c157ba581cbcae01a\dsetup32.dll
  294. 2011-02-12 18:14:57 1691480 ----a-w-    C:\Program Files (x86)\Common Files\Windows Live\.cache\c0b891d31cbcae019\dsetup32.dll
  295. 2011-02-12 18:14:22 --------    d-----w-    C:\Users\Ammar\AppData\Local\Windows Live
  296. 2011-02-12 16:23:52 --------    d-----w-    C:\PROGRA~3\{58062EC9-E900-4E93-ABCA-6751BAB23C03}
  297. 2011-02-12 16:23:51 --------    d-----w-    C:\Program Files (x86)\LiveZilla
  298. 2011-02-11 08:27:46 --------    d-----w-    C:\Users\Ammar\New Folder
  299. 2011-02-11 06:26:29 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\Trillian
  300. 2011-02-09 05:46:59 265088  ----a-w-    C:\Windows\System32\drivers\dxgmms1.sys
  301. 2011-02-07 18:10:34 --------    d-----w-    C:\Users\Ammar\.jagex_cache_32
  302. 2011-02-06 15:25:57 --------    d-----r-    C:\Users\Ammar\Dropbox
  303. 2011-02-06 15:21:19 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\Dropbox
  304. 2011-02-06 15:01:54 --------    d-----w-    C:\PROGRA~3\Messenger Plus!
  305. 2011-02-06 15:01:46 --------    d-----w-    C:\Program Files (x86)\Messenger Plus! Live
  306. 2011-02-05 11:48:53 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\InfraRecorder
  307. 2011-02-05 11:48:37 --------    d-----w-    C:\Program Files (x86)\InfraRecorder
  308. 2011-02-03 11:28:49 28992   ----a-w-    C:\Windows\System32\nitrolocalmon.dll
  309. 2011-02-03 11:28:49 17216   ----a-w-    C:\Windows\System32\nitrolocalui.dll
  310. 2011-02-03 11:28:46 --------    d-----w-    C:\Program Files\Common Files\Nitro PDF
  311. 2011-02-03 11:28:46 --------    d-----w-    C:\Program Files (x86)\Nitro PDF
  312. 2011-02-03 11:28:46 --------    d-----w-    C:\Program Files (x86)\Common Files\Nitro PDF
  313. 2011-02-03 11:27:47 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\Downloaded Installations
  314. 2011-02-01 13:36:22 112832  ----a-w-    C:\PROGRA~3\Microsoft\VCExpress\10.0\1033\ResourceCache.dll
  315. 2011-02-01 13:35:12 --------    d-----w-    C:\Program Files (x86)\Common Files\Merge Modules
  316. 2011-01-31 17:20:51 --------    d-sh--w-    C:\Users\Ammar\wc
  317. 2011-01-31 17:20:46 --------    d-sh--w-    C:\Users\Ammar\AppData\Roaming\wyUpdate AU
  318. 2011-01-31 17:20:46 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\Cyberduck
  319. 2011-01-31 17:19:51 --------    d-----w-    C:\Program Files (x86)\Cyberduck
  320. 2011-01-28 18:47:54 --------    d-----w-    C:\Users\Ammar\AppData\Local\Research In Motion
  321. 2011-01-28 18:47:52 --------    d-----w-    C:\Users\Ammar\AppData\Roaming\Research In Motion
  322. 2011-01-28 18:47:36 31744   ----a-w-    C:\Windows\System32\drivers\RimSerial_AMD64.sys
  323. 2011-01-28 18:47:08 --------    d-----w-    C:\PROGRA~3\Research In Motion
  324. 2011-01-28 18:47:02 --------    d-----w-    C:\Program Files (x86)\Research In Motion
  325. 2011-01-28 18:47:02 --------    d-----w-    C:\Program Files (x86)\Common Files\Research In Motion
  326. 2011-01-28 14:27:42 --------    d-----w-    C:\Program Files (x86)\Common Files\Blizzard Entertainment
  327. 2011-01-28 14:27:24 --------    d-----w-    C:\PROGRA~3\Blizzard Entertainment
  328. 2011-01-27 14:02:31 --------    d-----w-    C:\RSPS-Heaven
  329. 2011-01-26 14:17:28 80944   ----a-w-    C:\Windows\System32\drivers\vmci.sys
  330. 2011-01-26 14:17:22 68144   ----a-w-    C:\Windows\System32\drivers\vmx86.sys
  331. 2011-01-26 14:17:03 55344   ----a-w-    C:\Windows\System32\vnetinst.dll
  332. 2011-01-26 14:17:03 20016   ----a-w-    C:\Windows\System32\drivers\vmnetadapter.sys
  333. 2011-01-26 14:16:59 334384  ----a-w-    C:\Windows\SysWow64\vmnetdhcp.exe
  334. 2011-01-26 14:16:55 395824  ----a-w-    C:\Windows\SysWow64\vmnat.exe
  335. 2011-01-26 14:16:55 30256   ----a-w-    C:\Windows\System32\drivers\vmnetuserif.sys
  336. 2011-01-26 14:16:54 56880   ----a-r-    C:\Windows\System32\vmnetbridge.dll
  337. 2011-01-26 14:16:54 45104   ----a-r-    C:\Windows\System32\drivers\vmnetbridge.sys
  338. 2011-01-26 14:16:54 24112   ----a-r-    C:\Windows\System32\drivers\vmnet.sys
  339. 2011-01-26 14:16:52 958000  ----a-w-    C:\Windows\System32\vnetlib64.dll
  340. 2011-01-26 14:16:06 29744   ----a-w-    C:\Windows\System32\drivers\VMkbd.sys
  341. 2011-01-26 14:16:05 38960   ----a-w-    C:\Windows\System32\drivers\hcmon.sys
  342. 2011-01-26 14:15:19 --------    d-----w-    C:\Program Files (x86)\Common Files\VMware
  343. 2011-01-26 14:14:18 --------    d-----w-    C:\Program Files (x86)\VMware
  344.  
  345. ==================== Find3M  ====================
  346.  
  347. 2011-01-26 06:53:10 982912  ----a-w-    C:\Windows\System32\drivers\dxgkrnl.sys
  348. 2011-01-26 06:31:20 144384  ----a-w-    C:\Windows\System32\cdd.dll
  349. 2011-01-19 17:13:37 521448  ----a-w-    C:\Windows\System32\deployJava1.dll
  350. 2011-01-17 14:37:21 46664   ----a-w-    C:\Windows\System32\drivers\fses.sys
  351. 2011-01-17 14:37:15 95784   ----a-w-    C:\Windows\System32\drivers\fsdfw.sys
  352. 2011-01-17 14:36:47 574632  ----a-w-    C:\Windows\SysWow64\msvcp50.dll
  353. 2011-01-12 10:40:30 68928   ----a-w-    C:\Windows\SysWow64\NLSSRV32.EXE
  354. 2011-01-07 08:06:50 46080   ----a-w-    C:\Windows\System32\atmlib.dll
  355. 2011-01-07 07:27:11 34304   ----a-w-    C:\Windows\SysWow64\atmlib.dll
  356. 2011-01-07 05:49:20 366080  ----a-w-    C:\Windows\System32\atmfd.dll
  357. 2011-01-07 05:33:11 294400  ----a-w-    C:\Windows\SysWow64\atmfd.dll
  358. 2011-01-05 06:20:30 612352  ----a-w-    C:\Windows\System32\vbscript.dll
  359. 2011-01-05 05:37:33 428032  ----a-w-    C:\Windows\SysWow64\vbscript.dll
  360. 2011-01-05 04:00:16 3127808 ----a-w-    C:\Windows\System32\win32k.sys
  361. 2010-12-21 06:16:27 97280   ----a-w-    C:\Windows\System32\wscsvc.dll
  362. 2010-12-21 06:16:27 62976   ----a-w-    C:\Windows\System32\wscapi.dll
  363. 2010-12-21 06:16:16 214016  ----a-w-    C:\Windows\System32\winsrv.dll
  364. 2010-12-21 06:16:14 442880  ----a-w-    C:\Windows\System32\winhttp.dll
  365. 2010-12-21 06:16:14 1197056 ----a-w-    C:\Windows\System32\wininet.dll
  366. 2010-12-21 06:16:09 258048  ----a-w-    C:\Windows\System32\WebClnt.dll
  367. 2010-12-21 06:15:55 264192  ----a-w-    C:\Windows\System32\upnp.dll
  368. 2010-12-21 06:15:31 15360   ----a-w-    C:\Windows\System32\slwga.dll
  369. 2010-12-21 06:13:03 2003968 ----a-w-    C:\Windows\System32\msxml6.dll
  370. 2010-12-21 06:13:03 1880576 ----a-w-    C:\Windows\System32\msxml3.dll
  371. 2010-12-21 06:10:22 100864  ----a-w-    C:\Windows\System32\davclnt.dll
  372. 2010-12-21 05:38:24 51200   ----a-w-    C:\Windows\SysWow64\wscapi.dll
  373. 2010-12-21 05:38:22 981504  ----a-w-    C:\Windows\SysWow64\wininet.dll
  374. 2010-12-21 05:38:22 350720  ----a-w-    C:\Windows\SysWow64\winhttp.dll
  375. 2010-12-21 05:38:21 204800  ----a-w-    C:\Windows\SysWow64\WebClnt.dll
  376. 2010-12-21 05:38:19 204288  ----a-w-    C:\Windows\SysWow64\upnp.dll
  377. 2010-12-21 05:38:16 14336   ----a-w-    C:\Windows\SysWow64\slwga.dll
  378. 2010-12-21 05:36:17 1389568 ----a-w-    C:\Windows\SysWow64\msxml6.dll
  379. 2010-12-21 05:36:16 1236992 ----a-w-    C:\Windows\SysWow64\msxml3.dll
  380. 2010-12-21 05:34:12 80384   ----a-w-    C:\Windows\SysWow64\davclnt.dll
  381. 2010-12-18 06:11:41 57856   ----a-w-    C:\Windows\System32\licmgr10.dll
  382. 2010-12-18 06:11:34 714752  ----a-w-    C:\Windows\System32\kerberos.dll
  383. 2010-12-18 05:29:40 44544   ----a-w-    C:\Windows\SysWow64\licmgr10.dll
  384. 2010-12-18 05:29:31 541184  ----a-w-    C:\Windows\SysWow64\kerberos.dll
  385. 2010-12-18 04:55:03 482816  ----a-w-    C:\Windows\System32\html.iec
  386. 2010-12-18 04:20:55 386048  ----a-w-    C:\Windows\SysWow64\html.iec
  387. 2010-12-18 04:13:40 1638912 ----a-w-    C:\Windows\System32\mshtml.tlb
  388. 2010-12-18 03:47:59 1638912 ----a-w-    C:\Windows\SysWow64\mshtml.tlb
  389. 2010-12-01 04:42:14 30720   ----a-w-    C:\Windows\System32\drivers\tap0901.sys
  390.  
  391. ============= FINISH: 18:02:08.24 ===============
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement