Quantcast
Channel: Tech Support Forum - Virus/Trojan/Spyware Help
Viewing all articles
Browse latest Browse all 2798

Win 7 Home Security 2011

$
0
0
I'm trying to figure out how to get Win 7 Home Security off of my computer. The computer won't let me connect to the internet and also will not let any .exe files run. I attached the dds. and attach zip file.

Attachment 119942

Attachment 119943

DDS (Ver_2012-11-20.01) - NTFS_AMD64 NETWORK
Internet Explorer: 9.0.8112.16457
Run by Beau at 15:37:27 on 2012-12-16
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.4094.3345 [GMT -6:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: McAfee Firewall *Enabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
.
============== Running Processes ===============
.
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\mfevtps.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\McAfee\MAT\McPvTray.exe
C:\Users\Beau\AppData\Local\fdw.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uURLSearchHooks: SearchHook Class: {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
uURLSearchHooks: Coupons.com Toolbar: {37153479-1976-43c3-a1ee-557513977b64} - C:\Program Files (x86)\Coupons.com\prxtbCoup.dll
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
mURLSearchHooks: Coupons.com Toolbar: {37153479-1976-43c3-a1ee-557513977b64} - C:\Program Files (x86)\Coupons.com\prxtbCoup.dll
mWinlogon: Userinit = userinit.exe
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Coupons.com Toolbar: {37153479-1976-43c3-a1ee-557513977b64} - C:\Program Files (x86)\Coupons.com\prxtbCoup.dll
BHO: Java(tm) Plug-In SSV Helper: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll
BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
BHO: Bing Bar Helper: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: Coupons.com Toolbar: {37153479-1976-43C3-A1EE-557513977B64} - C:\Program Files (x86)\Coupons.com\prxtbCoup.dll
TB: Coupons.com Toolbar: {37153479-1976-43c3-a1ee-557513977b64} - C:\Program Files (x86)\Coupons.com\prxtbCoup.dll
TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
TB: Bing Bar: {8dcb7100-df86-4384-8842-8fa844297b3f} -
uRun: [ISUSPM Startup] C:\PROGRA~2\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
uRun: [Steam] "C:\Program Files (x86)\Steam\Steam.exe" -silent
uRun: [Google Update] "C:\Users\Beau\AppData\Local\Google\Update\GoogleUpdate.exe" /c
uRun: [GameTracker] C:\Program Files (x86)\GameTracker\GTLite.exe
uRun: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
uRun: [CmTray] "C:\Program Files (x86)\Content Manager\launchCM.exe"
uRun: [ctfmon.exe] C:\Windows\System32\ctfmon.exe
uRun: [InstallIQUpdater] "C:\Program Files (x86)\W3i\InstallIQUpdater\InstallIQUpdater.exe" /silent /autorun
mRun: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
mRun: [ISUSScheduler] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\issch.exe" -start
mRun: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
mRun: [RemoteControl11] C:\Program Files (x86)\CyberLink\PowerDVD11\PDVD11Serv.exe
mRun: [EVTUNE] C:\Program Files (x86)\EVGA Precision\Bundle\EVTune\EVTune.exe -silent
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [PowerDVD12DMREngine] "C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe"
mRun: [PowerDVD12Agent] "C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe"
mRun: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [HP Software Update] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
StartupFolder: C:\Users\Beau\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\PDANET~1.LNK - C:\Program Files (x86)\PdaNet for Android\PdaNetPC.exe
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-System: ConsentPromptBehaviorAdmin = dword:5
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: SoftwareSASGeneration = dword:1
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~2\OFFICE11\EXCEL.EXE/3000
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
DPF: {0D6709DD-4ED8-40CA-B459-2757AEEF7BEE} - hxxp://download.gigabyte.com.tw/object/Dldrv.ocx
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262F} - hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{1FD3B709-CD3D-4BEF-BB4A-96B430082E2B} : DHCPNameServer = 192.168.42.129
TCP: Interfaces\{B30AE06E-E219-440C-ADB5-78594CD1E5B1} : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{B30AE06E-E219-440C-ADB5-78594CD1E5B1}\14E64627F69646455647865627 : DHCPNameServer = 192.168.2.254
TCP: Interfaces\{C24ED481-AFDC-4C06-956A-0445BA47F0A9} : DHCPNameServer = 192.168.1.254 192.168.1.254
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll
SSODL: WebCheck - <orphaned>
mASetup: {10880D85-AAD9-4558-ABDC-2AB1552D831F} - "C:\Program Files (x86)\Common Files\LightScribe\LSRunOnce.exe"
x64-BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
x64-TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Run: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
x64-Run: [PocketCloud Location] "C:\Program Files (x86)\Wyse\PocketCloud Windows Companion\WyseBrowser.exe"
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
x64-DPF: {CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
x64-Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll
x64-Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll
x64-SSODL: WebCheck - <orphaned>
.
============= SERVICES / DRIVERS ===============
.
R0 CLBStor;CLBStor;C:\Windows\System32\drivers\CLBStor.sys [2011-12-27 24560]
R0 McPvDrv;McPvDrv Driver;C:\Windows\System32\drivers\McPvDrv.sys [2012-12-9 73096]
R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\System32\drivers\mfehidk.sys [2012-12-9 771096]
R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\System32\drivers\mfewfpk.sys [2012-12-9 339776]
R2 McMPFSvc;McAfee Personal Firewall Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-12-9 201304]
R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [2012-12-9 218320]
R2 mfevtp;McAfee Validation Trust Protection Service;C:\Windows\System32\mfevtps.exe [2012-4-13 177680]
R3 cfwids;McAfee Inc. cfwids;C:\Windows\System32\drivers\cfwids.sys [2012-12-9 69672]
R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\System32\drivers\mfefirek.sys [2012-12-9 515528]
R3 pneteth;PdaNet Broadband;C:\Windows\System32\drivers\pneteth.sys [2012-5-25 15360]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2011-6-10 539240]
R3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;C:\Windows\System32\drivers\rtl8192ce.sys [2012-12-6 1145960]
S1 AppleCharger;AppleCharger;C:\Windows\System32\drivers\AppleCharger.sys [2011-9-8 21544]
S2 {329F96B6-DF1E-4328-BFDA-39EA953C1312};Power Control [2012/01/28 23:24:17];C:\Program Files (x86)\CyberLink\PowerDVD11\Common\NavFilter\000.fcl [2011-9-16 148976]
S2 AsusSE;AsusSE;C:\Program Files (x86)\ASUS\PCE-N15 WLAN Card Utilities\RtlService.exe [2012-12-6 36864]
S2 BBSvc;BingBar Service;C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BBSvc.EXE [2012-6-11 193616]
S2 BCUService;Browser Configuration Utility Service;C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe [2009-10-15 223464]
S2 CLHNServiceForPowerDVD;CLHNServiceForPowerDVD;C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\CLHNServiceForPowerDVD.exe [2012-1-28 83240]
S2 CLHNServiceForPowerDVD12;CLHNServiceForPowerDVD12;C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\CLHNServiceForPowerDVD12.exe [2012-3-10 87336]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 CyberLink PowerDVD 11.0 Monitor Service;CyberLink PowerDVD 11.0 Monitor Service;C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSMonitorService.exe [2012-1-28 75048]
S2 CyberLink PowerDVD 11.0 Service;CyberLink PowerDVD 11.0 Service;C:\Program Files (x86)\CyberLink\PowerDVD11\Common\MediaServer\CLMSServerForPDVD11.exe [2012-1-28 292136]
S2 CyberLink PowerDVD 12 Media Server Monitor Service;CyberLink PowerDVD 12 Media Server Monitor Service;C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSMonitorServicePDVD12.exe [2012-3-10 75048]
S2 CyberLink PowerDVD 12 Media Server Service;CyberLink PowerDVD 12 Media Server Service;C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe [2012-3-10 296232]
S2 ES lite Service;ES lite Service for program management.;C:\Program Files (x86)\Gigabyte\EasySaver\essvr.exe [2011-9-8 68136]
S2 GS In-Game Service;GS In-Game Service;C:\Program Files (x86)\GameTracker\GSInGameService.exe [2011-11-9 1677072]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-12-9 201304]
S2 McciCMService64;McciCMService64;C:\Program Files\Common Files\Motive\McciCMService.exe [2011-9-30 517632]
S2 McNaiAnn;McAfee VirusScan Announcer;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-12-9 201304]
S2 McProxy;McAfee Proxy Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-12-9 201304]
S2 McShield;McAfee McShield;C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe [2012-12-9 241016]
S2 MotoHelper;MotoHelper Service;C:\Program Files (x86)\Motorola\MotoHelper\MotoHelperService.exe [2011-12-6 214896]
S2 ntk_PowerDVD;ntk_PowerDVD;C:\Program Files (x86)\CyberLink\PowerDVD11\Kernel\DMP\ntk_PowerDVD_64.sys [2012-1-28 75248]
S2 ntk_PowerDVD12;ntk_PowerDVD12;C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMP\CLHNServer\ntk_PowerDVD12_64.sys [2012-3-10 82928]
S2 regi;regi;C:\Windows\System32\drivers\regi.sys [2012-1-28 15672]
S2 RtNdPt60;Realtek NDIS Protocol Driver;C:\Windows\System32\drivers\RtNdPt60.sys [2011-9-8 27136]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2012-10-2 382824]
S3 AppleChargerSrv;AppleChargerSrv;system32\AppleChargerSrv.exe --> system32\AppleChargerSrv.exe [?]
S3 BBUpdate;BBUpdate;C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\SeaPort.EXE [2012-6-11 240208]
S3 BTCFilterService;USB Networking Driver Filter Service;C:\Windows\System32\drivers\motfilt.sys [2009-1-29 6144]
S3 etdrv;etdrv;C:\Windows\etdrv.sys [2011-10-3 25640]
S3 GVTDrv64;GVTDrv64;C:\Windows\GVTDrv64.sys [2011-9-8 30528]
S3 HipShieldK;McAfee Inc. HipShieldK;C:\Windows\System32\drivers\HipShieldK.sys [2012-12-9 196440]
S3 McAWFwk;McAfee Activation Service;C:\PROGRA~1\mcafee\msc\mcawfwk.exe [2012-12-9 225216]
S3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\System32\drivers\mfeavfk.sys [2012-12-9 309400]
S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\System32\drivers\mferkdet.sys [2012-12-9 106112]
S3 motandroidusb;Mot ADB Interface Driver;C:\Windows\System32\drivers\motoandroid.sys [2009-7-10 31744]
S3 motccgp;Motorola USB Composite Device Driver;C:\Windows\System32\drivers\motccgp.sys [2011-4-4 21504]
S3 motccgpfl;MotCcgpFlService;C:\Windows\System32\drivers\motccgpfl.sys [2009-1-29 9216]
S3 Motousbnet;Motorola USB Networking Driver Service;C:\Windows\System32\drivers\Motousbnet.sys [2010-4-1 26624]
S3 motusbdevice;Motorola USB Dev Driver;C:\Windows\System32\drivers\motusbdevice.sys [2011-11-8 11776]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;C:\Windows\System32\drivers\rdpvideominiport.sys [2012-12-6 19456]
S3 RTCore64;RTCore64;C:\Program Files (x86)\EVGA Precision\RTCore64.sys [2012-1-16 13416]
S3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.0);C:\Windows\System32\drivers\RtTeam60.sys [2011-9-8 51712]
S3 RTVLANPT;Realtek Vlan Protocol Driver (NDIS 6.2);C:\Windows\System32\drivers\RtVlan60.sys [2011-9-8 24064]
S3 SaiH0460;SaiH0460;C:\Windows\System32\drivers\SaiH0460.sys [2008-11-24 179584]
S3 TEAM;Realtek Virtual Miniport Driver for Teaming (NDIS 6.0);C:\Windows\System32\drivers\RtTeam60.sys [2011-9-8 51712]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2012-12-6 57856]
S3 USBAAPL64;Apple Mobile USB Driver;C:\Windows\System32\drivers\usbaapl64.sys [2011-5-10 51712]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-9-5 1255736]
S4 McOobeSv;McAfee OOBE Service;C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe [2012-12-9 201304]
.
=============== File Associations ===============
.
FileExt: .exe: exefile="C:\Users\Beau\AppData\Local\fdw.exe" -a "%1" %*
.
=============== Created Last 30 ================
.
2012-12-15 22:44:20 -------- d-----w- C:\Users\Beau\AppData\Local\{F2685706-6C30-F70B-6548-6086452C165D}
2012-12-15 22:43:12 303296 --sha-w- C:\Users\Beau\AppData\Local\fdw.exe
2012-12-11 23:55:51 2048 ----a-w- C:\Windows\SysWow64\tzres.dll
2012-12-11 23:55:51 2048 ----a-w- C:\Windows\System32\tzres.dll
2012-12-11 23:55:27 3149824 ----a-w- C:\Windows\System32\win32k.sys
2012-12-11 23:55:21 478208 ----a-w- C:\Windows\System32\dpnet.dll
2012-12-11 23:55:21 376832 ----a-w- C:\Windows\SysWow64\dpnet.dll
2012-12-11 23:55:18 46080 ----a-w- C:\Windows\System32\atmlib.dll
2012-12-11 23:55:18 367616 ----a-w- C:\Windows\System32\atmfd.dll
2012-12-11 23:55:18 34304 ----a-w- C:\Windows\SysWow64\atmlib.dll
2012-12-11 23:55:18 295424 ----a-w- C:\Windows\SysWow64\atmfd.dll
2012-12-09 17:46:35 196440 ----a-w- C:\Windows\System32\drivers\HipShieldK.sys
2012-12-09 17:46:28 73096 ----a-w- C:\Windows\System32\drivers\McPvDrv.sys
2012-12-09 17:46:25 -------- d-----w- C:\Users\Beau\AppData\Local\McAfee Anti-Theft
2012-12-09 17:46:10 -------- d-----w- C:\Program Files (x86)\McAfee.com
2012-12-09 17:46:06 10288 ----a-w- C:\Windows\System32\drivers\mfeclnk.sys
2012-12-09 17:45:54 771096 ----a-w- C:\Windows\System32\drivers\mfehidk.sys
2012-12-09 17:45:54 69672 ----a-w- C:\Windows\System32\drivers\cfwids.sys
2012-12-09 17:45:54 515528 ----a-w- C:\Windows\System32\drivers\mfefirek.sys
2012-12-09 17:45:54 339776 ----a-w- C:\Windows\System32\drivers\mfewfpk.sys
2012-12-09 17:45:54 309400 ----a-w- C:\Windows\System32\drivers\mfeavfk.sys
2012-12-09 17:45:54 178840 ----a-w- C:\Windows\System32\drivers\mfeapfk.sys
2012-12-09 17:45:54 106112 ----a-w- C:\Windows\System32\drivers\mferkdet.sys
2012-12-09 17:45:51 -------- d-----w- C:\Program Files\Common Files\McAfee
2012-12-09 17:45:38 -------- d-----w- C:\Program Files\McAfee.com
2012-12-09 17:45:36 -------- d-----w- C:\Program Files (x86)\McAfee
2012-12-08 23:34:48 -------- d-----w- C:\ProgramData\HP Photo Creations
2012-12-08 23:34:48 -------- d-----w- C:\Program Files (x86)\HP Photo Creations
2012-12-08 23:34:31 -------- d-----w- C:\Users\Beau\AppData\Roaming\HpUpdate
2012-12-08 23:34:03 778088 ------w- C:\Windows\System32\HPDiscoPMa011.dll
2012-12-08 23:33:18 -------- d-----w- C:\Program Files (x86)\HP
2012-12-08 23:32:25 -------- d-----w- C:\Program Files\HP
2012-12-08 23:31:06 -------- d-----w- C:\Users\Beau\AppData\Local\HP
2012-12-07 20:37:16 -------- d-----w- C:\Users\Beau\AppData\Roaming\NASA
2012-12-07 20:35:55 -------- d-----w- C:\Program Files (x86)\NASA
2012-12-07 02:20:58 785512 ----a-w- C:\Windows\System32\drivers\Wdf01000.sys
2012-12-07 02:20:58 54376 ----a-w- C:\Windows\System32\drivers\WdfLdr.sys
2012-12-07 02:20:58 2560 ----a-w- C:\Windows\System32\drivers\en-US\wdf01000.sys.mui
2012-12-07 02:20:57 9728 ----a-w- C:\Windows\System32\Wdfres.dll
2012-12-07 02:04:29 87040 ----a-w- C:\Windows\System32\drivers\WUDFPf.sys
2012-12-07 02:04:29 198656 ----a-w- C:\Windows\System32\drivers\WUDFRd.sys
2012-12-07 02:04:27 84992 ----a-w- C:\Windows\System32\WUDFSvc.dll
2012-12-07 02:04:27 194048 ----a-w- C:\Windows\System32\WUDFPlatform.dll
2012-12-07 02:04:26 744448 ----a-w- C:\Windows\System32\WUDFx.dll
2012-12-07 02:04:26 45056 ----a-w- C:\Windows\System32\WUDFCoinstaller.dll
2012-12-07 02:04:26 229888 ----a-w- C:\Windows\System32\WUDFHost.exe
2012-12-07 01:54:14 458712 ----a-w- C:\Windows\System32\drivers\cng.sys
2012-12-07 01:54:14 340992 ----a-w- C:\Windows\System32\schannel.dll
2012-12-07 01:54:14 307200 ----a-w- C:\Windows\System32\ncrypt.dll
2012-12-07 01:54:14 247808 ----a-w- C:\Windows\SysWow64\schannel.dll
2012-12-07 01:54:13 220160 ----a-w- C:\Windows\SysWow64\ncrypt.dll
2012-12-07 01:54:13 22016 ----a-w- C:\Windows\SysWow64\secur32.dll
2012-12-07 01:54:13 154480 ----a-w- C:\Windows\System32\drivers\ksecpkg.sys
2012-12-07 01:54:13 1448448 ----a-w- C:\Windows\System32\lsasrv.dll
2012-12-07 01:54:12 96768 ----a-w- C:\Windows\SysWow64\sspicli.dll
2012-12-07 01:54:07 514560 ----a-w- C:\Windows\SysWow64\qdvd.dll
2012-12-07 01:54:07 366592 ----a-w- C:\Windows\System32\qdvd.dll
2012-12-07 01:47:58 70656 ----a-w- C:\Windows\System32\nlaapi.dll
2012-12-07 01:47:58 45568 ----a-w- C:\Windows\System32\drivers\tcpipreg.sys
2012-12-07 01:47:57 18944 ----a-w- C:\Windows\SysWow64\netevent.dll
2012-12-07 01:47:57 18944 ----a-w- C:\Windows\System32\netevent.dll
2012-12-07 01:47:38 209920 ----a-w- C:\Windows\System32\profsvc.dll
2012-12-07 01:47:36 220160 ----a-w- C:\Windows\System32\wintrust.dll
2012-12-07 01:47:33 172544 ----a-w- C:\Windows\SysWow64\wintrust.dll
2012-12-07 01:45:12 245760 ----a-w- C:\Windows\System32\OxpsConverter.exe
2012-12-07 01:45:08 210944 ----a-w- C:\Windows\System32\drivers\rdpwd.sys
2012-12-07 01:44:51 715776 ----a-w- C:\Windows\System32\kerberos.dll
2012-12-07 01:44:50 542208 ----a-w- C:\Windows\SysWow64\kerberos.dll
2012-12-07 01:44:48 3216384 ----a-w- C:\Windows\System32\msi.dll
2012-12-07 01:44:47 2342400 ----a-w- C:\Windows\SysWow64\msi.dll
2012-12-07 01:44:44 95744 ----a-w- C:\Windows\System32\synceng.dll
2012-12-07 01:44:41 78336 ----a-w- C:\Windows\SysWow64\synceng.dll
2012-12-07 01:44:17 59392 ----a-w- C:\Windows\System32\browcli.dll
2012-12-07 01:44:17 136704 ----a-w- C:\Windows\System32\browser.dll
2012-12-07 01:44:16 41984 ----a-w- C:\Windows\SysWow64\browcli.dll
2012-12-06 21:33:03 -------- d-----w- C:\Program Files (x86)\Cisco
2012-12-06 21:31:42 1145960 ----a-r- C:\Windows\System32\drivers\rtl8192ce.sys
2012-12-06 21:31:22 614400 ----a-w- C:\Windows\SysWow64\Rtlihvs.dll
2012-12-06 21:31:22 451072 ----a-w- C:\Windows\SysWow64\ISSRemoveSP.exe
2012-12-06 21:31:22 380928 ----a-w- C:\Windows\RtlUI2.exe
2012-12-06 21:31:22 188416 ----a-w- C:\Windows\SysWow64\RTLExtUI.dll
2012-12-06 21:31:22 -------- d-----w- C:\Program Files (x86)\ASUS
2012-12-04 02:11:37 2622464 ----a-w- C:\Windows\System32\wucltux.dll
2012-12-04 02:11:26 99840 ----a-w- C:\Windows\System32\wudriver.dll
2012-12-04 02:11:15 36864 ----a-w- C:\Windows\System32\wuapp.exe
2012-12-04 02:11:15 186752 ----a-w- C:\Windows\System32\wuwebv.dll
.
==================== Find3M ====================
.
2012-12-16 00:31:56 25640 ----a-w- C:\Windows\gdrv.sys
2012-12-15 03:42:59 73656 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-12-15 03:42:59 697272 ----a-w- C:\Windows\SysWow64\FlashPlayerApp.exe
2012-12-14 01:49:28 281520 ----a-w- C:\Windows\SysWow64\PnkBstrB.xtr
2012-12-14 01:49:28 281520 ----a-w- C:\Windows\SysWow64\PnkBstrB.exe
2012-12-13 02:58:42 281768 ----a-w- C:\Windows\SysWow64\PnkBstrB.ex0
2012-12-04 23:00:55 30528 ----a-w- C:\Windows\GVTDrv64.sys
2012-11-14 06:11:44 2312704 ----a-w- C:\Windows\System32\jscript9.dll
2012-11-14 06:04:11 1392128 ----a-w- C:\Windows\System32\wininet.dll
2012-11-14 06:02:49 1494528 ----a-w- C:\Windows\System32\inetcpl.cpl
2012-11-14 05:57:46 599040 ----a-w- C:\Windows\System32\vbscript.dll
2012-11-14 05:57:35 173056 ----a-w- C:\Windows\System32\ieUnatt.exe
2012-11-14 05:52:40 2382848 ----a-w- C:\Windows\System32\mshtml.tlb
2012-11-14 02:09:22 1800704 ----a-w- C:\Windows\SysWow64\jscript9.dll
2012-11-14 01:58:15 1427968 ----a-w- C:\Windows\SysWow64\inetcpl.cpl
2012-11-14 01:57:37 1129472 ----a-w- C:\Windows\SysWow64\wininet.dll
2012-11-14 01:49:25 142848 ----a-w- C:\Windows\SysWow64\ieUnatt.exe
2012-11-14 01:48:27 420864 ----a-w- C:\Windows\SysWow64\vbscript.dll
2012-11-14 01:44:42 2382848 ----a-w- C:\Windows\SysWow64\mshtml.tlb
2012-11-09 12:37:30 177680 ----a-w- C:\Windows\System32\mfevtps.exe
2012-11-02 21:38:36 50856 ----a-w- C:\Windows\System32\drivers\point64.sys
2012-11-02 21:38:36 1795952 ----a-w- C:\Windows\System32\WdfCoInstaller01011.dll
2012-10-16 08:38:37 135168 ----a-w- C:\Windows\apppatch\AppPatch64\AcXtrnal.dll
2012-10-16 08:38:34 350208 ----a-w- C:\Windows\apppatch\AppPatch64\AcLayers.dll
2012-10-16 07:39:52 561664 ----a-w- C:\Windows\apppatch\AcLayers.dll
2012-10-09 18:17:13 55296 ----a-w- C:\Windows\System32\dhcpcsvc6.dll
2012-10-09 18:17:13 226816 ----a-w- C:\Windows\System32\dhcpcore6.dll
2012-10-09 17:40:31 44032 ----a-w- C:\Windows\SysWow64\dhcpcsvc6.dll
2012-10-09 17:40:31 193536 ----a-w- C:\Windows\SysWow64\dhcpcore6.dll
2012-10-04 17:46:16 362496 ----a-w- C:\Windows\System32\wow64win.dll
2012-10-04 17:46:15 243200 ----a-w- C:\Windows\System32\wow64.dll
2012-10-04 17:46:15 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2012-10-04 17:45:55 215040 ----a-w- C:\Windows\System32\winsrv.dll
2012-10-04 17:43:28 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2012-10-04 17:41:16 424960 ----a-w- C:\Windows\System32\KernelBase.dll
2012-10-04 16:47:41 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2012-10-04 16:47:41 274944 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2012-10-04 15:21:55 338432 ----a-w- C:\Windows\System32\conhost.exe
2012-10-04 14:46:46 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2012-10-04 14:46:46 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2012-10-04 14:46:44 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2012-10-04 14:46:43 2048 ----a-w- C:\Windows\SysWow64\user.exe
2012-10-04 14:41:50 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2012-10-04 14:41:50 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2012-10-04 14:41:50 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2012-10-04 14:41:50 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2012-10-03 17:56:54 1914248 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2012-10-03 17:44:21 303104 ----a-w- C:\Windows\System32\nlasvc.dll
2012-10-03 17:44:17 246272 ----a-w- C:\Windows\System32\netcorehc.dll
2012-10-03 17:44:16 216576 ----a-w- C:\Windows\System32\ncsi.dll
2012-10-03 17:42:16 569344 ----a-w- C:\Windows\System32\iphlpsvc.dll
2012-10-03 16:42:24 175104 ----a-w- C:\Windows\SysWow64\netcorehc.dll
2012-10-03 16:42:23 156672 ----a-w- C:\Windows\SysWow64\ncsi.dll
2012-10-02 19:51:15 3536817 ----a-w- C:\Windows\System32\nvcoproc.bin
2012-10-02 19:51:11 3293544 ----a-w- C:\Windows\System32\nvsvc64.dll
2012-10-02 19:51:04 6200680 ----a-w- C:\Windows\System32\nvcpl.dll
2012-10-02 19:50:57 891240 ----a-w- C:\Windows\System32\nvvsvc.exe
2012-10-02 19:50:57 63336 ----a-w- C:\Windows\System32\nvshext.dll
2012-10-02 19:50:57 118120 ----a-w- C:\Windows\System32\nvmctray.dll
2012-10-02 19:15:52 430952 ----a-w- C:\Windows\SysWow64\nvStreaming.exe
2012-09-29 04:32:08 2177688 ----a-w- C:\Windows\System32\coin92.dll
.
============= FINISH: 15:38:43.77 ===============

Attached Files
File Type: zip attach.zip (4.4 KB)
File Type: txt dds1.txt (26.1 KB)

Viewing all articles
Browse latest Browse all 2798

Trending Articles