Quantcast
Channel: Tech Support Forum - Virus/Trojan/Spyware Help
Viewing all articles
Browse latest Browse all 2798

from BSOD: Conduit, ect malware:

$
0
0
see previous thread http://www.techsupportforum.com/foru...ml#post4986850 for background information.

Cannot download windows updates, frequent BSOD in full boot but fine in safe mode, chrome goes to conduit in full boot/blank tab in safe mode [stable in safe mode/networking], among other issues.

I have already performed an upgrade to SP1 using the download EXE, and attempted repair install, did not fix anything.

Code:

DDS (Ver_2012-11-20.01) - NTFS_AMD64 NETWORK
Internet Explorer: 9.0.8112.16476
Run by Paula at 18:06:10 on 2014-03-15
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\ctfmon.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Windows\system32\ctfmon.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com
uWindow Title = Windows Internet Explorer provided by AOL
uSearch Bar = hxxp://www.google.com
uSearch Page = hxxp://www.google.com
uDefault_Page_URL = hxxp://www.aol.com/?ncid=customie9
uSearchAssistant = hxxp://www.google.com
uURLSearchHooks: <No Name>: {f4c28532-b9d0-4950-a2df-e83f9929242b} - C:\Program Files (x86)\MyFunCards_5m\bar\1.bin\5mSrcAs.dll
uURLSearchHooks: <No Name>: {cc8ae5b8-005b-4b1a-a27d-307eddffe5c8} - C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jSrcAs.dll
mWinlogon: Userinit = userinit.exe,
BHO: &Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll
BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\Hp\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO: Toolbar BHO: {06e3475c-5521-4de8-bb12-50720f21631c} - C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jbar.dll
BHO: AOL Toolbar Loader: {3ef64538-8b54-4573-b48f-4d34b0238ab2} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
BHO: Norton Identity Protection: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\CoIEPlg.dll
BHO: Norton Vulnerability Protection: {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\IPS\IPSBHO.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL
BHO: Search Assistant BHO: {b7acdf9c-c4f9-4d5d-998e-b147866b4d4c} - C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jSrcAs.dll
BHO: Search Assistant BHO: {c4b22c87-45ef-4f43-89f2-40db2078864e} - C:\Program Files (x86)\MyFunCards_5m\bar\1.bin\5mSrcAs.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll
BHO: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
BHO: Toolbar BHO: {da71fd14-5f7b-46ae-b8b1-44074a38f331} - C:\Program Files (x86)\MyFunCards_5m\bar\1.bin\5mbar.dll
BHO: SingleInstance Class: {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\Hp\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
TB: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB: Recipe Hub: {CF51DE5B-EB36-4114-BB69-84DF63FBADB4} - C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jbar.dll
TB: AOL Toolbar: {BA00B7B1-0351-477A-B948-23E3EE5A73D4} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll
TB: Ask Toolbar: {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll
TB: The Weather Channel Toolbar: {2E5E800E-6AC0-411E-940A-369530A35E43} - C:\Windows\SysWOW64\TwcToolbarIe7.dll
TB: Recipe Hub: {cf51de5b-eb36-4114-bb69-84df63fbadb4} - C:\Program Files (x86)\RecipeHub_2j\bar\1.bin\2jbar.dll
TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll
TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\CoIEPlg.dll
TB: MyFunCards: {210f1b36-3b7f-41a4-b5da-3eb87f5a56c2} - C:\Program Files (x86)\MyFunCards_5m\bar\1.bin\5mbar.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll
TB: AOL Toolbar: {ba00b7b1-0351-477a-b948-23e3ee5a73d4} - C:\Program Files (x86)\AOL Toolbar\aoltb.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\Hp\Digital Imaging\Smart Web Printing\hpswp_bho.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\Hp\Digital Imaging\Smart Web Printing\hpswp_bho.dll
uRun: [AVG-Secure-Search-Update_0214c] C:\Users\Paula\AppData\Roaming\AVG 0214c Campaign\AVG-Secure-Search-Update-0214c.exe /PROMPT /mid=85ef95e99c2e47d29fb0d14acce4e9e6-128d2f7c12732fb442b376a509afa728cc2ac6ef /CMPID=0214c
mRun: [StartCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
mRun: [HP Software Update] c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
mRun: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [MyFunCards Search Scope Monitor] "C:\PROGRA~2\MYFUNC~2\bar\1.bin\5msrchmn.exe" /m=2 /w /h
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
IE: Se&nd to OneNote - C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\Hp\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} - hxxp://pcpitstop.com/betapit/PCPitStop.CAB
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{A1FBAE5D-47A3-49F6-937F-38F480B2C04F} : DHCPNameServer = 192.168.1.254
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
Notify: SDWinLogon - SDWinLogon.dll
SSODL: WebCheck - <orphaned>
mASetup: {8A69D345-D564-463c-AFF1-A69D9E530F96} - "C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.107\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
x64-BHO: Norton Identity Protection: {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\CoIEPlg.dll
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: ValueApps: {93DBF2BB-A2B3-4683-A92E-57E60751F346} -
x64-BHO: TidyNetwork: {A27E976A-25F0-31FE-E71E-88A8F7D42FD0} -
x64-BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL
x64-BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\amd64\BingExt.dll
x64-TB: Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll
x64-TB: Norton Toolbar: {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\CoIEPlg.dll
x64-TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [hpsysdrv] c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe
x64-IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files\Microsoft Office\Office14\ONBttnIE.dll
x64-IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - C:\Program Files\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
x64-Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R? AERTFilters;Andrea RT Filters Service
R? AMD External Events Utility;AMD External Events Utility
R? BackupStack;Computer Backup (MyPC Backup)
R? BBSvc;BingBar Service
R? BBUpdate;BBUpdate
R? BHDrvx64;BHDrvx64
R? CalendarSynchService;CalendarSynchService
R? ccSet_NIS;NIS Settings Manager
R? CinemaNow Service;CinemaNow Service
R? clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86
R? clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64
R? clwvd;HP Webcam Splitter
R? EraserUtilRebootDrv;EraserUtilRebootDrv
R? GamesAppIntegrationService;GamesAppIntegrationService
R? GamesAppService;GamesAppService
R? HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service
R? IDSVia64;IDSVia64
R? IntuitUpdateServiceV4;Intuit Update Service v4
R? NIS;Norton Internet Security
R? NOBU;Norton Online Backup
R? PdiService;Portrait Displays SDK Service
R? SDScannerService;Spybot-S&D 2 Scanner Service
R? SDUpdateService;Spybot-S&D 2 Updating Service
R? SDWSCService;Spybot-S&D 2 Security Center Service
R? SymIRON;Symantec Iron Driver
R? SymNetS;Symantec Network Security WFP Driver
R? TsUsbFlt;TsUsbFlt
R? UpdateServiceTool;UpdateSoftware
R? USBAAPL64;Apple Mobile USB Driver
R? WatAdminSvc;Windows Activation Technologies Service
S? amd_sata;amd_sata
S? amd_xata;amd_xata
S? netr28x;Ralink 802.11n Extensible Wireless Driver
S? RTL8167;Realtek 8167 NT Driver
S? SymDS;Symantec Data Store
S? SymEFA;Symantec Extended File Attributes
S? usbfilter;AMD USB Filter Driver
.
=============== Created Last 30 ================
.
2014-03-14 09:30:14        --------        d-----w-        C:\f409aa5d3c58c161cc7de99521
2014-03-14 08:55:38        --------        d-----w-        C:\Windows\System32\MRT
2014-03-14 08:55:22        46080        ----a-w-        C:\Windows\System32\atmlib.dll
2014-03-14 08:55:22        367616        ----a-w-        C:\Windows\System32\atmfd.dll
2014-03-14 08:55:22        34304        ----a-w-        C:\Windows\SysWow64\atmlib.dll
2014-03-14 08:55:21        295424        ----a-w-        C:\Windows\SysWow64\atmfd.dll
2014-03-14 08:48:43        81408        ----a-w-        C:\Windows\System32\imagehlp.dll
2014-03-14 08:48:43        23408        ----a-w-        C:\Windows\System32\drivers\fs_rec.sys
2014-03-14 08:48:42        5120        ----a-w-        C:\Windows\SysWow64\wmi.dll
2014-03-14 08:48:42        5120        ----a-w-        C:\Windows\System32\wmi.dll
2014-03-14 08:48:42        220672        ----a-w-        C:\Windows\System32\wintrust.dll
2014-03-14 08:48:42        172544        ----a-w-        C:\Windows\SysWow64\wintrust.dll
2014-03-14 08:48:42        159232        ----a-w-        C:\Windows\SysWow64\imagehlp.dll
2014-03-14 08:27:53        --------        d-----w-        C:\Windows\System32\SPReview
2014-03-14 04:11:02        2560        ----a-w-        C:\Windows\System32\drivers\en-US\rdpwd.sys.mui
2014-03-14 04:09:47        3072        ----a-w-        C:\Windows\System32\drivers\en-US\tsusbflt.sys.mui
2014-03-14 04:05:20        6144        ----a-w-        C:\Windows\System32\drivers\en-US\IPMIDrv.sys.mui
2014-03-14 04:05:13        4608        ----a-w-        C:\Windows\System32\drivers\en-US\kbdclass.sys.mui
2014-03-14 02:54:59        86528        ----a-w-        C:\Windows\SysWow64\isoburn.exe
2014-03-14 02:53:58        84480        ----a-w-        C:\Windows\SysWow64\mciavi32.dll
2014-03-14 02:52:59        902656        ----a-w-        C:\Windows\SysWow64\WMADMOD.DLL
2014-03-14 02:51:59        586752        ----a-w-        C:\Windows\SysWow64\dfrgui.exe
2014-03-14 02:50:59        503296        ----a-w-        C:\Program Files\Common Files\Microsoft Shared\ink\tiptsf.dll
2014-03-14 02:37:39        --------        d-----w-        C:\Windows\System32\EventProviders
2014-03-14 02:37:32        --------        d-----w-        C:\417448ed10f0c1263f5f
2014-03-14 00:53:20        2622464        ----a-w-        C:\Windows\System32\wucltux.dll
2014-03-14 00:52:39        99840        ----a-w-        C:\Windows\System32\wudriver.dll
2014-03-14 00:52:27        36864        ----a-w-        C:\Windows\System32\wuapp.exe
2014-03-14 00:52:27        186752        ----a-w-        C:\Windows\System32\wuwebv.dll
2014-03-13 18:30:55        33240        ----a-w-        C:\GEARAspiWDM.sys
2014-03-13 18:30:55        147456        ----a-w-        C:\cdrom.sys
2014-03-12 20:26:35        --------        d-----w-        C:\Windows\pss
2014-03-12 20:23:23        --------        d-----w-        C:\Program Files\WhoCrashed
2014-03-12 18:40:41        --------        d-----w-        C:\Users\Paula\AppData\Roaming\TuneUp Software
2014-03-12 18:22:46        --------        d--h--w-        C:\ProgramData\Common Files
2014-03-12 18:22:46        --------        d-----w-        C:\Users\Paula\AppData\Local\MFAData
2014-03-12 18:22:46        --------        d-----w-        C:\ProgramData\MFAData
2014-03-12 17:52:44        --------        d-----w-        C:\Program Files (x86)\SuperFastPC
2014-03-12 17:47:33        --------        d-----w-        C:\Users\Paula\AppData\Roaming\Malwarebytes
2014-03-12 17:46:30        --------        d-----w-        C:\ProgramData\Malwarebytes
2014-03-12 17:46:22        25928        ----a-w-        C:\Windows\System32\drivers\mbam.sys
2014-03-12 17:46:22        --------        d-----w-        C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-03-12 17:44:27        21040        ----a-w-        C:\Windows\System32\sdnclean64.exe
2014-03-12 17:44:26        --------        d-----w-        C:\ProgramData\Spybot - Search & Destroy
2014-03-12 17:44:23        --------        d-----w-        C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-03-10 23:43:04        --------        d-----w-        C:\Program Files (x86)\MediaViewV1
2014-03-09 22:48:41        310        ----a-w-        C:\Windows\SysWow64\ff.bin
2014-03-09 22:47:29        536        ----a-w-        C:\Windows\SysWow64\schtasks.bin
2014-03-09 22:27:38        --------        d-----w-        C:\Users\Paula\AppData\Roaming\Activeris
2014-03-09 22:25:25        --------        d-----w-        C:\Program Files (x86)\HiDefMedia
2014-03-03 19:52:28        --------        d-----w-        C:\Program Files\iPod
2014-03-03 19:52:25        --------        d-----w-        C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-03 19:52:25        --------        d-----w-        C:\Program Files\iTunes
2014-03-03 19:52:25        --------        d-----w-        C:\Program Files (x86)\iTunes
2014-03-03 19:46:12        159744        ----a-w-        C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin5.dll
2014-03-03 19:46:12        159744        ----a-w-        C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin4.dll
2014-03-03 19:46:12        159744        ----a-w-        C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin3.dll
2014-03-03 19:46:12        159744        ----a-w-        C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin2.dll
2014-03-03 19:46:12        159744        ----a-w-        C:\Program Files (x86)\Internet Explorer\Plugins\npqtplugin.dll
2014-02-21 01:18:17        --------        d-----w-        C:\Program Files (x86)\TempInstaller
2014-02-21 01:17:47        --------        d-----w-        C:\Users\Paula\AppData\Roaming\ValueApps
2014-02-21 01:17:47        --------        d-----w-        C:\Program Files\Conduit
2014-02-21 01:17:45        --------        d-----w-        C:\Users\Paula\AppData\Local\Conduit
2014-02-21 01:17:45        --------        d-----w-        C:\Program Files (x86)\Conduit
2014-02-21 01:17:17        --------        d-----w-        C:\Program Files (x86)\TidyNetwork
2014-02-21 01:17:00        --------        d-----w-        C:\Users\Paula\AppData\Local\SwvUpdater
2014-02-21 01:11:38        --------        d-----w-        C:\ProgramData\Updater
2014-02-21 01:11:35        --------        d-----w-        C:\ProgramData\Websteroids
2014-02-21 01:11:27        --------        d-----w-        C:\Program Files (x86)\YTD Downloader
2014-02-21 01:11:27        --------        d-----w-        C:\Program Files (x86)\Bin
2014-02-21 01:11:22        --------        d-----w-        C:\Program Files (x86)\Manuals Finder
.
==================== Find3M  ====================
.
2014-03-14 08:24:11        175616        ----a-w-        C:\Windows\System32\msclmd.dll
2014-03-14 08:24:11        152576        ----a-w-        C:\Windows\SysWow64\msclmd.dll
2014-03-12 21:34:46        71048        ----a-w-        C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2014-03-12 21:34:46        692616        ----a-w-        C:\Windows\SysWow64\FlashPlayerApp.exe
2014-02-07 15:29:33        58696        ----a-w-        C:\Windows\SysWow64\AOLParconLink.exe
2014-01-30 21:22:25        348160        ----a-w-        C:\Windows\SysWow64\msvcr71.dll
2014-01-30 21:22:24        499712        ----a-w-        C:\Windows\SysWow64\msvcp71.dll
2014-01-17 22:24:12        94208        ----a-w-        C:\Windows\SysWow64\QuickTimeVR.qtx
2014-01-17 22:24:12        69632        ----a-w-        C:\Windows\SysWow64\QuickTime.qts
2013-12-17 14:01:40        177752        ----a-w-        C:\Windows\System32\drivers\SYMEVENT64x86.SYS
.
============= FINISH: 18:35:47.35 ===============


Attached Files
File Type: zip attach.zip (4.9 KB)

Viewing all articles
Browse latest Browse all 2798

Trending Articles