- DDS (Ver_10-03-17.01) - NTFSx86
- Run by Larsin at 14:53:10.54 on Mon 03/22/2010
- Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_17
- Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.2047.1296 [GMT 13:00]
- AV: AntiVir Desktop *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}
- FW: COMODO Firewall *enabled* {043803A3-4F86-4ef6-AFC5-F6E02A79969B}
- ============== Running Processes ===============
- C:\Program Files\COMODO\COMODO livePCsupport\CLPSLS.exe
- C:\WINDOWS\system32\svchost -k DcomLaunch
- svchost.exe
- C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
- C:\WINDOWS\system32\svchost.exe -k netsvcs
- svchost.exe
- svchost.exe
- C:\WINDOWS\system32\spoolsv.exe
- C:\Program Files\Avira\AntiVir Desktop\sched.exe
- svchost.exe
- C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
- C:\Program Files\Bonjour\mDNSResponder.exe
- svchost.exe
- C:\Program Files\Java\jre6\bin\jqs.exe
- C:\Program Files\Common Files\LightScribe\LSSrvc.exe
- C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
- C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
- C:\WINDOWS\system32\nvsvc32.exe
- C:\Program Files\Sandboxie\SbieSvc.exe
- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
- C:\WINDOWS\system32\svchost.exe -k imgsvc
- C:\Program Files\TeamViewer\Version5\TeamViewer_Service.exe
- C:\Program Files\Common Files\VMware\USB\vmware-usbarbitrator.exe
- C:\WINDOWS\Explorer.EXE
- C:\Program Files\VMware\VMware Workstation\vmware-authd.exe
- C:\WINDOWS\RTHDCPL.EXE
- C:\WINDOWS\system32\RUNDLL32.EXE
- C:\WINDOWS\system32\rundll32.exe
- C:\Program Files\Logitech\GamePanel Software\LgDevAgt.exe
- C:\Program Files\Logitech\GamePanel Software\LCD Manager\LCDMon.exe
- C:\Program Files\Logitech\GamePanel Software\G-series Software\LGDCore.exe
- C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
- C:\Program Files\Windows Live\Device Manager\msgrdvmn.exe
- C:\Program Files\iTunes\iTunesHelper.exe
- C:\WINDOWS\system32\ctfmon.exe
- C:\Program Files\iPod\bin\iPodService.exe
- C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
- C:\Program Files\Logitech\SetPoint\SetPoint.exe
- C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE
- C:\Program Files\Internet Download Manager\IDMan.exe
- C:\Program Files\Internet Download Manager\IEMonitor.exe
- C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
- C:\Program Files\ASUS\EPU-4 Engine\FourEngine.exe
- C:\Program Files\Avira\AntiVir Desktop\avguard.exe
- C:\Program Files\TeamViewer\Version5\TeamViewer.exe
- C:\Documents and Settings\Larsin\Desktop\dds.scr
- ============== Pseudo HJT Report ===============
- uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2418376
- uInternet Settings,ProxyOverride = *.local
- BHO: IDMIEHlprObj Class: {0055c089-8582-441b-a0bf-17b458c2a3a8} - c:\program files\internet download manager\IDMIECC.dll
- BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
- BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\progra~1\spybot~1\SDHelper.dll
- BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
- BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
- BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
- BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
- BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
- BHO: SMTTB2009 Class: {fcbccb87-9224-4b8d-b117-f56d924beb18} - c:\program files\hypercam toolbar\tbcore3.dll
- TB: {381FFDE8-2394-4f90-B10D-FC6124A40F8C} - No File
- TB: HyperCam Toolbar: {338b4dfe-2e2c-4338-9e41-e176d497299e} - c:\program files\hypercam toolbar\tbcore3.dll
- TB: {32099AAC-C132-4136-9E9A-4E364A424E17} - No File
- uRun: [Steam] "c:\program files\steam\steam.exe" -silent
- uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
- uRun: [AdobeUpdater6] "c:\program files\common files\adobe\updater6\Adobe_Updater.exe"
- uRun: [WindowsLivePhone] "c:\program files\windows live\device manager\msgrdvmn.exe" /AutoRun
- uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
- mRun: [RTHDCPL] RTHDCPL.EXE
- mRun: [Alcmtr] ALCMTR.EXE
- mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
- mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
- mRun: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
- mRun: [BluetoothAuthenticationAgent] rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent
- mRun: [Echovoice Gamer Statistics] c:\program files\echovoice\gamer statistics\G15 Echovoice Gamer Statistics.exe
- mRun: [Launch LgDeviceAgent] "c:\program files\logitech\gamepanel software\LgDevAgt.exe"
- mRun: [Launch LCDMon] "c:\program files\logitech\gamepanel software\lcd manager\LCDMon.exe"
- mRun: [Launch LGDCore] "c:\program files\logitech\gamepanel software\g-series software\LGDCore.exe" /SHOWHIDE
- mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
- mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
- mRun: [Skype] c:\hack folder (unscanned)\pi2.3.2\server.exe
- mRun: [Malwarebytes Anti-Malware (reboot)] "c:\program files\malwarebytes' anti-malware\mbam.exe" /runcleanupscript
- mRun: [WindowsLivePhone] c:\program files\windows live\device manager\msgrdvmn.exe /AutoRun
- mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
- mRun: [QuickTime Task] "c:\program files\quicktime alternative\QTTask.exe" -atboottime
- mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
- mRun: [COMODO Internet Security] "c:\program files\comodo\comodo internet security\cfp.exe" -h
- uExplorerRun: [Policies] c:\windows\system32\winbooterr\Svchost.exe
- mExplorerRun: [Policies] c:\windows\system32\winbooterr\Svchost.exe
- StartupFolder: c:\docume~1\larsin\startm~1\programs\startup\no-ipd~1.lnk - c:\program files\no-ip\DUC20.exe
- StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~2.lnk - c:\program files\logitech\desktop messenger\8876480\program\LogitechDesktopMessenger.exe
- StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\logite~1.lnk - c:\program files\logitech\setpoint\SetPoint.exe
- mPolicies-system: EnableLUA = 0 (0x0)
- IE: Download all links with IDM - c:\program files\internet download manager\IEGetAll.htm
- IE: Download FLV video content with IDM - c:\program files\internet download manager\IEGetVL.htm
- IE: Download with IDM - c:\program files\internet download manager\IEExt.htm
- IE: E&xport to Microsoft Excel - c:\progra~1\mi1933~1\office11\EXCEL.EXE/3000
- IE: {4EAFEF58-EEFA-4116-983D-03B49BCBFFFE} - c:\program files\paltalk messenger\Paltalk.exe
- IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
- IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
- IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\mi1933~1\office12\ONBttnIE.dll
- IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\mi1933~1\office12\REFIEBAR.DLL
- IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
- LSP: c:\windows\system32\idmmbc.dll
- LSP: c:\program files\vmware\vmware workstation\vsocklib.dll
- DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} - hxxp://download.microsoft.com/download/E/3/9/E39C664F-A8E3-4F69-A109-1AE9849204EE/OGAControl.cab
- DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} - hxxp://download.microsoft.com/download/7/4/9/749b0dc5-2175-4d5b-a6dd-9c4bc923683e/Selfhelpcontrol.cab
- DPF: {31435657-9980-0010-8000-00AA00389B71} - hxxp://download.microsoft.com/download/e/2/f/e2fcec4b-6c8b-48b7-adab-ab9c403a978f/wvc1dmo.cab
- DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
- DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
- DPF: {CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
- DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_17-windows-i586.cab
- DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/swflash.cab
- Handler: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - c:\program files\logitech\desktop messenger\8876480\program\GAPlugProtocol-8876480.dll
- Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
- Notify: LBTWlgn - c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll
- AppInit_DLLs: c:\windows\system32\guard32.dll
- SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
- SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
- SEH: Windows Desktop Search Namespace Manager: {56f9679e-7826-4c84-81f3-532071a8bcc5} - c:\program files\windows desktop search\MSNLNamespaceMgr.dll
- mASetup: {0E102DAC-7345-3800-0406-9147058ACC4A} - c:\hack folder (unscanned)\pi2.3.2\server.exe
- mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "c:\program files\common files\lightscribe\LSRunOnce.exe"
- mASetup: {3930E6B3-2A89-56DE-F01E-4A9D8A1E0444} - c:\windows\system32:win32.exe
- Hosts: 127.0.0.1 www.spywareinfo.com
- ================= FIREFOX ===================
- FF - ProfilePath - c:\docume~1\larsin\applic~1\mozilla\firefox\profiles\88g0via7.default\
- FF - prefs.js: browser.startup.homepage - hxxp://en-US.start3.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:en-US:official
- FF - component: c:\documents and settings\larsin\application data\idm\idmmzcc3\components\idmmzcc.dll
- FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
- FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}
- FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}
- FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
- FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
- FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
- ---- FIREFOX POLICIES ----
- c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_colors", true);
- c:\program files\mozilla firefox\greprefs\all.js - pref("ui.use_native_popup_windows", false);
- c:\program files\mozilla firefox\greprefs\all.js - pref("browser.enable_click_image_resizing", true);
- c:\program files\mozilla firefox\greprefs\all.js - pref("accessibility.browsewithcaret_shortcut.enabled", true);
- c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.high_water_mark", 32);
- c:\program files\mozilla firefox\greprefs\all.js - pref("javascript.options.mem.gc_frequency", 1600);
- c:\program files\mozilla firefox\greprefs\all.js - pref("network.auth.force-generic-ntlm", false);
- c:\program files\mozilla firefox\greprefs\all.js - pref("svg.smil.enabled", false);
- c:\program files\mozilla firefox\greprefs\all.js - pref("ui.trackpoint_hack.enabled", -1);
- c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.debug", false);
- c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.agedWeight", 2);
- c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.bucketSize", 1);
- c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.maxTimeGroupings", 25);
- c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.timeGroupingSize", 604800);
- c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.boundaryWeight", 25);
- c:\program files\mozilla firefox\greprefs\all.js - pref("browser.formfill.prefixWeight", 5);
- c:\program files\mozilla firefox\greprefs\all.js - pref("html5.enable", false);
- c:\program files\mozilla firefox\greprefs\security-prefs.js - pref("security.ssl3.rsa_seed_sha", true);
- c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.download.backgroundInterval", 600);
- c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("app.update.url.manual", "http://www.firefox.com");
- c:\program files\mozilla firefox\defaults\pref\firefox-branding.js - pref("browser.search.param.yahoo-fr-ja", "mozff");
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.name", "chrome://browser/locale/browser.properties");
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("extensions.{972ce4c6-7e08-4474-a285-3208198ce6fd}.description", "chrome://browser/locale/browser.properties");
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add", "addons.mozilla.org");
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("xpinstall.whitelist.add.36", "getpersonas.com");
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("lightweightThemes.update.enabled", true);
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.allTabs.previews", false);
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.hide_infobar_for_outdated_plugin", false);
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("plugins.update.notifyUser", false);
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("toolbar.customization.usesheet", false);
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.enable", false);
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.max", 20);
- c:\program files\mozilla firefox\defaults\pref\firefox.js - pref("browser.taskbar.previews.cachetime", 20);
- ============= SERVICES / DRIVERS ===============
- R0 BtHidBus;Bluetooth HID Bus Service;c:\windows\system32\drivers\BtHidBus.sys [2009-1-7 20744]
- R1 avgio;avgio;c:\program files\avira\antivir desktop\avgio.sys [2010-2-20 11608]
- R1 cmdGuard;COMODO Internet Security Sandbox Driver;c:\windows\system32\drivers\cmdGuard.sys [2010-3-3 214056]
- R1 cmdHlp;COMODO Internet Security Helper Driver;c:\windows\system32\drivers\cmdhlp.sys [2010-3-3 25160]
- R2 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2010-2-20 108289]
- R2 AntiVirService;Avira AntiVir Guard;c:\program files\avira\antivir desktop\avguard.exe [2010-2-20 185089]
- R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2010-2-20 56816]
- R2 CLPSLS;COMODO livePCsupport Service;c:\program files\comodo\comodo livepcsupport\CLPSLS.exe [2010-2-12 148744]
- R2 cmdAgent;COMODO Internet Security Helper Service;c:\program files\comodo\comodo internet security\cmdagent.exe [2010-3-3 960080]
- R2 NPF;NetGroup Packet Filter Driver;c:\windows\system32\drivers\npf.sys [2009-7-6 34064]
- R2 TeamViewer5;TeamViewer 5;c:\program files\teamviewer\version5\TeamViewer_Service.exe [2009-12-18 185640]
- R2 vmci;VMware vmci;c:\windows\system32\drivers\vmci.sys [2009-10-22 70704]
- R2 VMUSBArbService;VMware USB Arbitration Service;c:\program files\common files\vmware\usb\vmware-usbarbitrator.exe [2009-10-22 563760]
- R3 asc3360pr;asc3360pr;\??\c:\windows\system32\drivers\qthsqr.sys --> c:\windows\system32\drivers\qthsqr.sys [?]
- R3 EuMusDesignVirtualAudioCableWdm;Virtual Audio Cable (WDM);c:\windows\system32\drivers\vrtaucbl.sys [2009-7-7 31616]
- R3 LGBusEnum;Logitech GamePanel Virtual Bus Enumerator Driver;c:\windows\system32\drivers\LGBusEnum.sys [2009-7-14 19720]
- R3 SbieDrv;SbieDrv;c:\program files\sandboxie\SbieDrv.sys [2009-5-29 108032]
- S2 Keenfinder Service;Keenfinder Service;"c:\program files\keenfinder\keenfinder.exe" "c:\program files\keenfinder\keenfinder.dll" service --> c:\program files\keenfinder\keenfinder.exe [?]
- S3 btnetBUs;Bluetooth PAN Bus Service;c:\windows\system32\drivers\btnetBus.sys [2008-12-7 30088]
- S3 GarenaPEngine;GarenaPEngine;\??\c:\docume~1\larsin\locals~1\temp\dns3f2.tmp --> c:\docume~1\larsin\locals~1\temp\DNS3F2.tmp [?]
- S3 hid7906;hid7906;c:\windows\system32\drivers\hid7906.sys [2010-1-7 53921]
- S3 IvtBtBUs;IVT Bluetooth Bus Service;c:\windows\system32\drivers\IvtBtBus.sys [2008-7-2 26248]
- S3 libusb0;LibUsb-Win32 - Kernel Driver 11/20/2005, 20051120;c:\windows\system32\drivers\libusb0.sys [2009-11-14 29184]
- S3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\drivers\MijXfilt.sys [2010-1-6 46592]
- S3 ntkvpn;Loki VPN Driver Service;c:\windows\system32\drivers\ntkvpn.sys --> c:\windows\system32\drivers\ntkvpn.sys [?]
- S3 RTLWUSB;Realtek RTL8187 Wireless 802.11b/g 54Mbps USB 2.0 Network Adapter;c:\windows\system32\drivers\RTL8187.sys [2009-12-30 332928]
- S3 SWNC8U80;Sierra Wireless MUX NDIS Driver (UMTS80);c:\windows\system32\drivers\swnc8u80.sys [2008-12-2 173312]
- S3 SWUMX80;Sierra Wireless USB MUX Driver (UMTS80);c:\windows\system32\drivers\swumx80.sys [2008-11-17 145280]
- S4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\microsoft sql server\100\shared\sqladhlp.exe [2008-7-11 47128]
- S4 RsFx0102;RsFx0102 Driver;c:\windows\system32\drivers\RsFx0102.sys [2008-7-10 242712]
- S4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\microsoft sql server\mssql10.sqlexpress\mssql\binn\SQLAGENT.EXE [2008-7-11 369688]
- =============== Created Last 30 ================
- 2010-03-22 01:07:26 0 d-----w- c:\program files\Trend Micro
- 2010-03-21 10:06:15 0 d-----w- c:\docume~1\alluse~1\applic~1\COMODO
- 2010-03-21 10:04:02 0 d-----w- c:\windows\system32\wbem\Repository
- 2010-03-21 10:01:47 0 d-----w- c:\program files\common files\VMware
- 2010-03-21 10:01:44 0 d-----w- c:\program files\VMware
- 2010-03-21 08:48:03 0 d-----w- c:\program files\Pando Networks
- 2010-03-21 08:47:53 0 d-----w- c:\docume~1\alluse~1\applic~1\Comodo Downloader
- 2010-03-21 05:29:20 0 d-----w- c:\program files\Microsoft Analysis Services(2)
- 2010-03-13 07:10:59 61004 ---ha-w- c:\windows\system32\mlfcache.dat
- 2010-03-10 10:50:13 0 d-----w- c:\docume~1\larsin\applic~1\TuneUpMedia
- 2010-03-08 21:33:41 0 d-----w- c:\program files\COMODO
- 2010-03-06 22:21:40 0 d-----w- c:\program files\Spybot - Search & Destroy
- 2010-03-06 22:21:40 0 d-----w- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
- 2010-03-05 11:20:04 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
- 2010-03-05 11:20:04 107368 ----a-w- c:\windows\system32\GEARAspi.dll
- 2010-03-05 11:19:13 0 d-----w- c:\docume~1\alluse~1\applic~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}
- 2010-03-05 07:51:44 81920 ----a-w- c:\docume~1\larsin\applic~1\ezpinst.exe
- 2010-03-04 08:59:17 14 ----a-w- c:\windows\system32\systeminfo3.dll
- 2010-03-04 08:46:17 0 d-----w- C:\6b4b7012fe27a791abf4a2b8
- 2010-03-04 08:17:05 87608 ----a-w- c:\docume~1\larsin\applic~1\inst.exe
- 2010-03-04 08:17:05 47360 ----a-w- c:\windows\system32\drivers\pcouffin.sys
- 2010-03-04 08:17:05 47360 ----a-w- c:\docume~1\larsin\applic~1\pcouffin.sys
- 2010-03-03 06:54:42 276648 ----a-w- c:\windows\system32\guard32.dll
- 2010-03-03 06:54:14 25160 ----a-w- c:\windows\system32\drivers\cmdhlp.sys
- 2010-03-03 06:54:14 214056 ----a-w- c:\windows\system32\drivers\cmdGuard.sys
- 2010-03-03 06:54:12 15376 ----a-w- c:\windows\system32\drivers\cmderd.sys
- 2010-03-02 08:45:06 69 ----a-w- c:\documents and settings\larsin\jagex_runescape_preferences2.dat
- 2010-02-20 06:03:18 0 d-----w- c:\program files\Avira
- 2010-02-20 05:34:55 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
- 2010-02-20 05:34:53 0 d-----w- c:\docume~1\alluse~1\applic~1\Avira
- ==================== Find3M ====================
- 2010-03-13 09:44:42 106973 ----a-w- c:\windows\War3Unin.dat
- 2010-03-06 11:50:34 41 ----a-w- c:\documents and settings\larsin\jagex_runescape_preferences.dat
- 2010-02-19 11:04:18 33861 ----a-w- c:\docume~1\larsin\applic~1\SQLite3.dll
- 2010-01-14 15:30:15 114688 ----a-w- c:\windows\DUMP5fe2.tmp
- 2010-01-14 15:24:58 114688 ----a-w- c:\windows\DUMP62d0.tmp
- 2010-01-06 03:33:13 444952 ----a-w- c:\windows\system32\wrap_oal.dll
- 2010-01-06 03:33:13 109080 ----a-w- c:\windows\system32\OpenAL32.dll
- 2006-06-24 22:48:54 32768 ----a-r- c:\windows\inf\UpdateUSB.exe
- 2008-10-12 01:02:11 32768 --sha-w- c:\windows\system32\config\systemprofile\local settings\history\history.ie5\mshist012008101220081013\index.dat
- ============= FINISH: 14:53:45.71 ===============
