Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- .
- DDS (Ver_2011-08-26.01) - NTFSAMD64
- Internet Explorer: 9.0.8112.16421
- Run by Sean at 9:42:15 on 2011-08-31
- Microsoft Windows 7 Home Premium 6.1.7600.0.1252.1.1033.18.8183.6657 [GMT -6:00]
- .
- SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
- .
- ============== Running Processes ===============
- .
- C:\windows\system32\wininit.exe
- C:\windows\system32\lsm.exe
- C:\windows\system32\svchost.exe -k DcomLaunch
- C:\windows\system32\svchost.exe -k RPCSS
- C:\windows\system32\atiesrxx.exe
- C:\windows\System32\svchost.exe -k LocalServiceNetworkRestricted
- C:\windows\System32\svchost.exe -k LocalSystemNetworkRestricted
- C:\windows\system32\svchost.exe -k netsvcs
- C:\windows\system32\svchost.exe -k LocalService
- C:\windows\system32\svchost.exe -k NetworkService
- C:\windows\system32\atieclxx.exe
- C:\windows\System32\spoolsv.exe
- C:\windows\system32\svchost.exe -k LocalServiceNoNetwork
- C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe
- C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe
- C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe
- C:\OEM\USBDECTION\USBS3S4Detection.exe
- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
- C:\windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
- C:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
- C:\windows\system32\SearchIndexer.exe
- C:\windows\system32\taskhost.exe
- C:\windows\system32\taskhost.exe
- C:\windows\system32\Dwm.exe
- C:\windows\Explorer.EXE
- C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
- C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
- C:\Windows\System32\rundll32.exe
- C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
- C:\Program Files (x86)\Northstar\Photo Frame\Photo Frame.exe
- C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe
- C:\Users\Sean\AppData\Local\Apps\2.0\JWMMVLMZ.GWV\02T5OE0N.18C\curs..tion_eee711038731a406_0004.0000_0d453ed5fea2fe48\CurseClient.exe
- C:\Program Files (x86)\Creative\THX TruStudio PC\THXAudioCP\THXAudio.exe
- C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
- C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
- C:\Program Files\Windows Media Player\wmpnetwk.exe
- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
- C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
- C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe
- C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe
- C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe
- C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe
- C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe
- C:\windows\SysWOW64\rundll32.exe
- C:\Users\Sean\AppData\Local\Google\Chrome\Application\chrome.exe
- C:\windows\system32\conhost.exe
- C:\Users\Sean\Desktop\WoW-4.0.0-WOW-enUS-Installer (1).exe
- C:\windows\system32\SearchProtocolHost.exe
- C:\windows\system32\SearchFilterHost.exe
- C:\windows\system32\DllHost.exe
- C:\windows\system32\DllHost.exe
- C:\windows\SysWOW64\cmd.exe
- C:\windows\system32\conhost.exe
- C:\windows\SysWOW64\cscript.exe
- C:\windows\system32\wbem\wmiprvse.exe
- .
- ============== Pseudo HJT Report ===============
- .
- uStart Page = hxxp://search.conduit.com?SearchSource=10&ctid=CT2645238
- uDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=fx6840&r=17360111z306p0495v145k48j1r538
- mDefault_Page_URL = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=fx6840&r=17360111z306p0495v145k48j1r538
- mStart Page = hxxp://homepage.gateway.com/rdr.aspx?b=ACGW&l=0409&m=fx6840&r=17360111z306p0495v145k48j1r538
- uURLSearchHooks: H - No File
- mWinlogon: Userinit=userinit.exe
- BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
- BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
- BHO: Partner BHO Class: {83ff80f4-8c74-4b80-b5ba-c8ddd434e5c4} - C:\ProgramData\Partner\Partner.dll
- BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
- BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
- BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
- BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
- TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
- uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
- uRun: [Google Update] "C:\Users\Sean\AppData\Local\Google\Update\GoogleUpdate.exe" /c
- mRun: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe" -h -k
- mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
- mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
- mRun: [OOTag] C:\Program Files (x86)\Gateway\OOBEOffer\OOTag.exe
- mRun: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio PC\THXAudioCP\THXAudio.exe" /r
- mRun: [UpdReg] C:\Windows\UpdReg.EXE
- mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
- StartupFolder: C:\Users\Sean\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip
- StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\PHOTOF~1.LNK - C:\Program Files (x86)\Northstar\Photo Frame\Photo Frame.exe
- mPolicies-explorer: NoActiveDesktop = 1 (0x1)
- mPolicies-explorer: NoActiveDesktopChanges = 1 (0x1)
- mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
- mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
- mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
- IE: Google Sidewiki... - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html
- IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
- IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
- IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
- DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
- DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
- DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
- TCP: DhcpNameServer = 192.168.0.1
- TCP: Interfaces\{12322E3D-B514-4F24-9BEB-C09F41EA66DB} : DhcpNameServer = 192.168.0.1
- BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
- BHO-X64: AcroIEHelperStub - No File
- BHO-X64: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
- BHO-X64: Partner BHO Class: {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} - C:\ProgramData\Partner\Partner.dll
- BHO-X64: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
- BHO-X64: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
- BHO-X64: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.7.6406.1642\swg.dll
- BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
- TB-X64: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
- mRun-x64: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\BackupManagerTray.exe" -h -k
- mRun-x64: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
- mRun-x64: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
- mRun-x64: [OOTag] C:\Program Files (x86)\Gateway\OOBEOffer\OOTag.exe
- mRun-x64: [THX Audio Control Panel] "C:\Program Files (x86)\Creative\THX TruStudio PC\THXAudioCP\THXAudio.exe" /r
- mRun-x64: [UpdReg] C:\Windows\UpdReg.EXE
- mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
- .
- ============= SERVICES / DRIVERS ===============
- .
- R2 AMD External Events Utility;AMD External Events Utility;C:\windows\system32\atiesrxx.exe --> C:\windows\system32\atiesrxx.exe [?]
- R2 Greg_Service;GRegService;C:\Program Files (x86)\Gateway\Registration\GregHSRW.exe [2009-8-28 1150496]
- R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Gateway MyBackup\IScheduleSvc.exe [2009-11-17 255744]
- R2 Updater Service;Updater Service;C:\Program Files\Gateway\Gateway Updater\UpdaterService.exe [2010-4-21 243232]
- R2 USBS3S4Detection;USBS3S4Detection;C:\OEM\USBDECTION\USBS3S4Detection.exe [2009-12-13 76320]
- R3 amdkmdag;amdkmdag;C:\windows\system32\DRIVERS\atipmdag.sys --> C:\windows\system32\DRIVERS\atipmdag.sys [?]
- R3 amdkmdap;amdkmdap;C:\windows\system32\DRIVERS\atikmpag.sys --> C:\windows\system32\DRIVERS\atikmpag.sys [?]
- R3 MBfilt;MBfilt;C:\windows\system32\drivers\MBfilt64.sys --> C:\windows\system32\drivers\MBfilt64.sys [?]
- R3 RTL8167;Realtek 8167 NT Driver;C:\windows\system32\DRIVERS\Rt64win7.sys --> C:\windows\system32\DRIVERS\Rt64win7.sys [?]
- S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-8-24 135664]
- S3 Creative ALchemy AL6 Licensing Service;Creative ALchemy AL6 Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [2011-1-27 79360]
- S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2011-1-27 79360]
- S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-8-24 135664]
- S3 Partner Service;Partner Service;C:\ProgramData\Partner\Partner.exe [2010-4-21 332272]
- S3 WatAdminSvc;Windows Activation Technologies Service;C:\windows\system32\Wat\WatAdminSvc.exe --> C:\windows\system32\Wat\WatAdminSvc.exe [?]
- .
- =============== Created Last 30 ================
- .
- 2011-08-31 03:29:00 -------- d-----w- C:\Program Files (x86)\Diablo II
- 2011-08-31 02:32:06 -------- d-----w- C:\ProgramData\Blizzard Entertainment
- 2011-08-31 02:00:48 34152 ----a-w- C:\windows\System32\drivers\GEARAspiWDM.sys
- 2011-08-31 02:00:36 125872 ----a-w- C:\windows\System32\GEARAspi64.dll
- 2011-08-31 02:00:36 106928 ----a-w- C:\windows\SysWow64\GEARAspi.dll
- 2011-08-31 02:00:34 -------- d-----w- C:\windows\System32\drivers\N360x64\0501000.01D
- 2011-08-31 02:00:34 -------- d-----w- C:\windows\System32\drivers\N360x64
- 2011-08-31 02:00:26 -------- d-----w- C:\windows\Internet Logs
- 2011-08-31 01:28:35 -------- d-----w- C:\Users\Sean\AppData\Roaming\CheckPoint
- 2011-08-31 01:28:26 0 ----a-w- C:\windows\SysWow64\ConduitEngine.tmp
- 2011-08-31 01:28:26 -------- d-----w- C:\Users\Sean\AppData\Local\Conduit
- 2011-08-31 01:28:22 -------- d-----w- C:\Program Files\CheckPoint
- 2011-08-31 01:28:08 374664 ----a-w- C:\windows\System32\drivers\netio.sys
- 2011-08-31 01:27:54 458840 ----a-w- C:\windows\System32\drivers\~GLH0023.TMP
- 2011-08-31 01:27:30 -------- d-----w- C:\ProgramData\CheckPoint
- 2011-08-31 01:07:37 8862544 ----a-w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{25096452-A4F0-4D67-8D27-2392EE864044}\mpengine.dll
- 2011-08-31 01:07:36 270720 ------w- C:\windows\System32\MpSigStub.exe
- 2011-08-31 00:38:48 -------- d-----w- C:\Users\Sean\AppData\Roaming\Packard Bell
- 2011-08-31 00:38:28 -------- d-----w- C:\Users\Sean\AppData\Local\Gateway
- 2011-08-30 15:09:06 1135104 ----a-w- C:\windows\System32\FntCache.dll
- 2011-08-30 15:09:05 902656 ----a-w- C:\windows\System32\d2d1.dll
- 2011-08-30 15:09:05 739840 ----a-w- C:\windows\SysWow64\d2d1.dll
- 2011-08-30 15:09:05 1540608 ----a-w- C:\windows\System32\DWrite.dll
- 2011-08-30 15:09:05 1074176 ----a-w- C:\windows\SysWow64\DWrite.dll
- 2011-08-30 14:52:37 -------- d-----w- C:\Users\Sean\AppData\Local\ElevatedDiagnostics
- 2011-08-30 14:23:17 -------- d-----w- C:\Users\Sean\AppData\Local\Diagnostics
- 2011-08-29 22:06:10 -------- d-----w- C:\windows\System32\SPReview
- 2011-08-29 22:05:46 -------- d-----w- C:\windows\System32\EventProviders
- 2011-08-29 02:39:43 -------- d-----w- C:\windows\.jagex_cache_32
- 2011-08-27 21:09:39 -------- d-----w- C:\Program Files\Ventrilo
- 2011-08-27 21:09:32 -------- d-----w- C:\Program Files (x86)\Common Files\Wise Installation Wizard
- 2011-08-27 06:57:16 -------- d-----w- C:\windows\CheckSur
- 2011-08-26 22:31:55 -------- d-----w- C:\Program Files (x86)\MSXML 4.0
- 2011-08-26 09:54:13 -------- d-----w- C:\windows\SysWow64\Wat
- 2011-08-26 09:54:12 -------- d-----w- C:\windows\System32\Wat
- 2011-08-26 09:34:17 367104 ----a-w- C:\windows\System32\wcncsvc.dll
- 2011-08-26 09:34:17 276992 ----a-w- C:\windows\SysWow64\wcncsvc.dll
- 2011-08-26 09:09:27 99176 ----a-w- C:\windows\SysWow64\PresentationHostProxy.dll
- 2011-08-26 09:09:27 49472 ----a-w- C:\windows\SysWow64\netfxperf.dll
- 2011-08-26 09:09:27 48960 ----a-w- C:\windows\System32\netfxperf.dll
- 2011-08-26 09:09:27 444752 ----a-w- C:\windows\System32\mscoree.dll
- 2011-08-26 09:09:27 320352 ----a-w- C:\windows\System32\PresentationHost.exe
- 2011-08-26 09:09:27 297808 ----a-w- C:\windows\SysWow64\mscoree.dll
- 2011-08-26 09:09:27 295264 ----a-w- C:\windows\SysWow64\PresentationHost.exe
- 2011-08-26 09:09:27 1942856 ----a-w- C:\windows\System32\dfshim.dll
- 2011-08-26 09:09:27 1130824 ----a-w- C:\windows\SysWow64\dfshim.dll
- 2011-08-26 09:09:27 109912 ----a-w- C:\windows\System32\PresentationHostProxy.dll
- 2011-08-26 09:00:17 243712 ----a-w- C:\windows\System32\drivers\ks.sys
- 2011-08-25 09:09:59 524288 ----a-w- C:\windows\System32\wmicmiplugin.dll
- 2011-08-25 09:08:59 4068864 ----a-w- C:\windows\System32\mf.dll
- 2011-08-25 09:07:59 96768 ----a-w- C:\windows\SysWow64\sspicli.dll
- 2011-08-25 00:31:17 -------- d-----w- C:\Users\Sean\AppData\Local\Mumble
- 2011-08-24 21:25:35 -------- d-----w- C:\Users\Sean\AppData\Roaming\Mumble
- 2011-08-24 21:24:43 -------- d-----w- C:\Program Files (x86)\Mumble
- 2011-08-24 17:55:17 472808 ----a-w- C:\windows\SysWow64\deployJava1.dll
- 2011-08-24 17:51:01 404640 ----a-w- C:\windows\SysWow64\FlashPlayerCPLApp.cpl
- 2011-08-24 17:47:49 220672 ----a-w- C:\windows\System32\wintrust.dll
- 2011-08-24 17:47:49 172032 ----a-w- C:\windows\SysWow64\wintrust.dll
- 2011-08-24 17:47:48 139264 ----a-w- C:\windows\System32\cabview.dll
- 2011-08-24 17:47:48 132608 ----a-w- C:\windows\SysWow64\cabview.dll
- 2011-08-24 17:45:58 -------- d-----w- C:\Users\Sean\AppData\Local\Deployment
- 2011-08-24 17:45:58 -------- d-----w- C:\Users\Sean\AppData\Local\Apps
- 2011-08-24 17:25:43 -------- d-----w- C:\Program Files (x86)\Common Files\Blizzard Entertainment
- 2011-08-24 17:23:22 -------- d-----w- C:\Users\Sean\AppData\Local\Google
- 2011-08-24 17:15:55 -------- d-----w- C:\Users\Sean\AppData\Local\ATI
- .
- ==================== Find3M ====================
- .
- 2011-07-16 05:26:54 362496 ----a-w- C:\windows\System32\wow64win.dll
- 2011-07-16 05:26:53 243200 ----a-w- C:\windows\System32\wow64.dll
- 2011-07-16 05:26:53 13312 ----a-w- C:\windows\System32\wow64cpu.dll
- 2011-07-16 05:26:18 214528 ----a-w- C:\windows\System32\winsrv.dll
- 2011-07-16 05:24:09 16384 ----a-w- C:\windows\System32\ntvdm64.dll
- 2011-07-16 05:21:32 422400 ----a-w- C:\windows\System32\KernelBase.dll
- 2011-07-16 05:17:46 338432 ----a-w- C:\windows\System32\conhost.exe
- 2011-07-16 04:36:09 14336 ----a-w- C:\windows\SysWow64\ntvdm64.dll
- 2011-07-16 04:32:14 44032 ----a-w- C:\windows\apppatch\acwow64.dll
- 2011-07-16 04:31:50 25600 ----a-w- C:\windows\SysWow64\setup16.exe
- 2011-07-16 04:30:29 5120 ----a-w- C:\windows\SysWow64\wow32.dll
- 2011-07-16 04:30:27 272384 ----a-w- C:\windows\SysWow64\KernelBase.dll
- 2011-07-16 02:26:12 7680 ----a-w- C:\windows\SysWow64\instnm.exe
- 2011-07-16 02:26:11 2048 ----a-w- C:\windows\SysWow64\user.exe
- 2011-07-16 02:21:47 6144 ---ha-w- C:\windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
- 2011-07-16 02:21:47 4608 ---ha-w- C:\windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
- 2011-07-16 02:21:47 3584 ---ha-w- C:\windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
- 2011-07-16 02:21:47 3072 ---ha-w- C:\windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
- 2011-07-09 05:14:10 2048 ----a-w- C:\windows\System32\tzres.dll
- 2011-07-09 04:30:52 2048 ----a-w- C:\windows\SysWow64\tzres.dll
- 2011-07-09 02:44:55 287744 ----a-w- C:\windows\System32\drivers\mrxsmb10.sys
- 2011-06-23 05:29:39 5507968 ----a-w- C:\windows\System32\ntoskrnl.exe
- 2011-06-23 04:38:05 3957120 ----a-w- C:\windows\SysWow64\ntkrnlpa.exe
- 2011-06-23 04:38:04 3902336 ----a-w- C:\windows\SysWow64\ntoskrnl.exe
- 2011-06-21 06:27:14 1896832 ----a-w- C:\windows\System32\drivers\tcpip.sys
- 2011-06-15 09:58:31 212992 ----a-w- C:\windows\System32\odbctrac.dll
- 2011-06-15 09:58:31 163840 ----a-w- C:\windows\System32\odbccp32.dll
- 2011-06-15 09:58:31 106496 ----a-w- C:\windows\System32\odbccu32.dll
- 2011-06-15 09:58:31 106496 ----a-w- C:\windows\System32\odbccr32.dll
- 2011-06-15 09:04:46 86016 ----a-w- C:\windows\SysWow64\odbccu32.dll
- 2011-06-15 09:04:46 81920 ----a-w- C:\windows\SysWow64\odbccr32.dll
- 2011-06-15 09:04:46 319488 ----a-w- C:\windows\SysWow64\odbcjt32.dll
- 2011-06-15 09:04:46 163840 ----a-w- C:\windows\SysWow64\odbctrac.dll
- 2011-06-15 09:04:46 122880 ----a-w- C:\windows\SysWow64\odbccp32.dll
- 2011-06-11 02:56:44 3134464 ----a-w- C:\windows\System32\win32k.sys
- .
- ============= FINISH: 9:42:43.50 ===============
Add Comment
Please, Sign In to add comment