Here they are
.
DDS (Ver_2011-08-26.01) - NTFSAMD64 NETWORK
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_29
Run by sbwong at 16:19:54 on 2012-03-17
Microsoft Windows 7 Enterprise 6.1.7600.0.1252.1.1033.18.2038.1240 [GMT -6:00]
.
AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Spybot - Search & Destroy *Enabled/Updated* {1EAF1D03-5480-F3B2-EB14-11F0F5EE2699}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: FireWall *Enabled* {CE40CCC0-8ADB-6D67-25A0-C5B6438E4B57}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\servicing\TrustedInstaller.exe
C:\Windows\system32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Hamachi\hamachi-2.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\Explorer.EXE
C:\Windows\system32\ctfmon.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\SysWOW64\cmd.exe
C:\Windows\system32\conhost.exe
C:\Windows\SysWOW64\cscript.exe
C:\Windows\system32\wbem\wmiprvse.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
BHO: IE7Pro BHO: {00011268-e188-40df-a514-835fcd78b1bf} - C:\Program Files (x86)\IEPro\iepro.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: DivX Plus Web Player HTML5 <video>: {326e768d-4182-46fd-9c16-1449a49795f4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
BHO: SDHelper: {53707962-6f74-2d53-2644-206d7942484f} - C:\Program Files (x86)\Spybot\SDHelper.dll
BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB: Grab Pro: {c55bbcd6-41ad-48ad-9953-3609c48eacc7} - C:\Program Files (x86)\IEPro\IEProRecorder.dll
TB: {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - No File
uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
uRun: [ScreenSnapr] C:\Program Files (x86)\ScreenSnapr\ScreenSnapr.exe /winstart
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes\mbamgui.exe" /starttray
mRun: [SDTray] "C:\Program Files (x86)\Spybot\SDTray.exe"
mRun: [PlusService] C:\Program Files (x86)\Messenger Plus!\PlusService.exe
mRun: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
mRun: [UnlockerAssistant] "C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe"
mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
mRun: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mRun: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
mRun: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\Hamachi\hamachi-2-ui.exe" --auto-start
StartupFolder: C:\Users\sbwong\AppData\Roaming\MICROS~1\Windows\STARTM~1\Programs\Startup\Dropbox.lnk - C:\Users\sbwong\AppData\Roaming\Dropbox\bin\Dropbox.exe
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
IE: Sothink SWF Catcher - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
IE: {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
IE: {000002a3-84fe-43f1-b958-f2c3ca804f1a} - {CD275D4E-791A-4993-9D4D-6A071EDD2709} - C:\Program Files (x86)\IEPro\iepro.dll
IE: {0026439F-A980-4f18-8C95-4F1CBBF9C1D8} - {B119EB0C-C021-46CF-85B0-34A760E0D5FE} - C:\Program Files (x86)\IEPro\iepro.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
LSP: C:\Program Files (x86)\Avira\AntiVir Desktop\avsda.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_27-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: Interfaces\{4330DA31-61B4-4024-898E-ED67112E5467} : DhcpNameServer = 192.168.10.1
TCP: Interfaces\{8A0240A1-8E28-4AA1-BF3A-9E12FC07AE40} : DhcpNameServer = 192.168.10.1
TCP: Interfaces\{8A0240A1-8E28-4AA1-BF3A-9E12FC07AE40}\34245402C41475E4 : DhcpNameServer = 64.81.79.2
TCP: Interfaces\{8A0240A1-8E28-4AA1-BF3A-9E12FC07AE40}\C696E6B6379737 : DhcpNameServer = 192.168.1.1
TCP: Interfaces\{B0E88D1C-519F-49E7-840C-DD59429632B0} : DhcpNameServer = 192.168.10.1
TCP: Interfaces\{B0E88D1C-519F-49E7-840C-DD59429632B0}\14E64627F69646021405 : DhcpNameServer = 192.168.43.1
TCP: Interfaces\{B0E88D1C-519F-49E7-840C-DD59429632B0}\14E64627F696461405 : DhcpNameServer = 192.168.43.1
TCP: Interfaces\{B0E88D1C-519F-49E7-840C-DD59429632B0}\342454027457563747E45647 : DhcpNameServer = 64.81.79.2
TCP: Interfaces\{B0E88D1C-519F-49E7-840C-DD59429632B0}\34245402C41475E4 : DhcpNameServer = 64.81.79.2
TCP: Interfaces\{B0E88D1C-519F-49E7-840C-DD59429632B0}\7527F6E67602D4F62696C656 : DhcpNameServer = 192.168.43.1
TCP: Interfaces\{C527B26A-CF3B-4099-9361-2783F4D4BE79} : DhcpNameServer = 192.168.10.1
Notify: SDWinLogon - SDWinLogon.dll
BHO-X64: IE7Pro BHO: {00011268-E188-40DF-A514-835FCD78B1BF} - C:\Program Files (x86)\IEPro\iepro.dll
BHO-X64: IE7Pro - No File
BHO-X64: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO-X64: AcroIEHelperStub - No File
BHO-X64: DivX Plus Web Player HTML5 <video>: {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll
BHO-X64: Increase performance and video formats for your HTML5 <video> - No File
BHO-X64: SDHelper: {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot\SDHelper.dll
BHO-X64: SDHelper - No File
BHO-X64: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO-X64: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
TB-X64: Grab Pro: {C55BBCD6-41AD-48AD-9953-3609C48EACC7} - C:\Program Files (x86)\IEPro\IEProRecorder.dll
TB-X64: {BF7380FA-E3B4-4DB2-AF3E-9D8783A45BFC} - No File
mRun-x64: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun-x64: [Malwarebytes' Anti-Malware] "C:\Program Files (x86)\Malwarebytes\mbamgui.exe" /starttray
mRun-x64: [SDTray] "C:\Program Files (x86)\Spybot\SDTray.exe"
mRun-x64: [PlusService] C:\Program Files (x86)\Messenger Plus!\PlusService.exe
mRun-x64: [PWRISOVM.EXE] C:\Program Files (x86)\PowerISO\PWRISOVM.EXE
mRun-x64: [UnlockerAssistant] "C:\Program Files (x86)\Unlocker\UnlockerAssistant.exe"
mRun-x64: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
mRun-x64: [AdobeCS5.5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5.5ServiceManager\CS5.5ServiceManager.exe" -launchedbylogin
mRun-x64: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
mRun-x64: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
mRun-x64: [DivXUpdate] "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
mRun-x64: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\Hamachi\hamachi-2-ui.exe" --auto-start
IE-X64: {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files (x86)\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
Hosts: 127.0.0.1
www.spywareinfo.com
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\sbwong\AppData\Roaming\Mozilla\Firefox\Profiles\xabivk2t.default\
FF - prefs.js: browser.startup.homepage - file:///C:/Program%20Files%20(x86)/Firefox/homepage/index.htm
FF - prefs.js: network.proxy.type - 0
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll
FF - plugin: C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll
FF - plugin: C:\Program Files (x86)\Firefox\plugins\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60831.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\OnLive\Plugin\npolgdet.dll
FF - plugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
FF - plugin: C:\Program Files (x86)\VLC\npvlc.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
============= SERVICES / DRIVERS ===============
.
R1 avfwot;avfwot;C:\Windows\system32\DRIVERS\avfwot.sys --> C:\Windows\system32\DRIVERS\avfwot.sys [?]
R1 VWiFiFlt;Virtual WiFi Filter Driver;C:\Windows\system32\DRIVERS\vwififlt.sys --> C:\Windows\system32\DRIVERS\vwififlt.sys [?]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;C:\Program Files (x86)\Hamachi\hamachi-2.exe [2012-2-28 2343816]
R3 avfwim;AvFw Packet Filter Miniport;C:\Windows\system32\DRIVERS\avfwim.sys --> C:\Windows\system32\DRIVERS\avfwim.sys [?]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\system32\DRIVERS\netw5v64.sys --> C:\Windows\system32\DRIVERS\netw5v64.sys [?]
S1 avkmgr;avkmgr;C:\Windows\system32\DRIVERS\avkmgr.sys --> C:\Windows\system32\DRIVERS\avkmgr.sys [?]
S1 SDHookDriver;Spybot-S&D 2 Hook Driver;C:\Program Files (x86)\Spybot\SDHookDrv64.sys [2011-9-23 48888]
S2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952]
S2 AntiVirFirewallService;Avira FireWall;C:\Program Files (x86)\Avira\AntiVir Desktop\avfwsvc.exe [2012-1-21 616400]
S2 AntiVirSchedulerService;Avira Scheduler;C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2012-1-21 86224]
S2 AntiVirService;Avira Realtime Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2012-1-21 110032]
S2 AntiVirWebService;Avira Web Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avwebgrd.exe [2012-1-21 463824]
S2 avgntflt;avgntflt;C:\Windows\system32\DRIVERS\avgntflt.sys --> C:\Windows\system32\DRIVERS\avgntflt.sys [?]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 MBAMService;MBAMService;C:\Program Files (x86)\Malwarebytes\mbamservice.exe [2011-12-29 652872]
S2 SDHookService;Spybot S&D 2 Live Protection Service;C:\Program Files (x86)\Spybot\SDHookSvc.exe [2011-9-23 130976]
S2 SDScannerService;Spybot-S&D 2 Scanner Service;C:\Program Files (x86)\Spybot\SDFSSvc.exe [2011-12-30 892336]
S2 SDUpdateService;Spybot-S&D 2 Updating Service;C:\Program Files (x86)\Spybot\SDUpdSvc.exe [2011-9-23 955816]
S2 SDWSCService;Spybot-S&D 2 Security Center Service;C:\Program Files (x86)\Spybot\SDWSCSvc.exe [2011-9-23 169624]
S2 TeamViewer7;TeamViewer 7;C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [2012-2-23 2886528]
S3 MBAMProtector;MBAMProtector;\??\C:\Windows\system32\drivers\mbam.sys --> C:\Windows\system32\drivers\mbam.sys [?]
S3 ScreamBAudioSvc;ScreamBee Audio;C:\Windows\system32\drivers\ScreamingBAudio64.sys --> C:\Windows\system32\drivers\ScreamingBAudio64.sys [?]
S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\system32\DRIVERS\VSTAZL6.SYS --> C:\Windows\system32\DRIVERS\VSTAZL6.SYS [?]
S3 SrvHsfV92;SrvHsfV92;C:\Windows\system32\DRIVERS\VSTDPV6.SYS --> C:\Windows\system32\DRIVERS\VSTDPV6.SYS [?]
S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\system32\DRIVERS\VSTCNXT6.SYS --> C:\Windows\system32\DRIVERS\VSTCNXT6.SYS [?]
S3 StorSvc;Storage Service;C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted [2009-7-13 20992]
S3 SwitchBoard;Adobe SwitchBoard;C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-2-19 517096]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service;C:\Windows\system32\DRIVERS\vwifimp.sys --> C:\Windows\system32\DRIVERS\vwifimp.sys [?]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\system32\Wat\WatAdminSvc.exe --> C:\Windows\system32\Wat\WatAdminSvc.exe [?]
S4 AntiVirMailService;Avira Mail Protection;C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe [2012-1-21 342480]
.
=============== Created Last 30 ================
.
2012-03-17 14:41:28 -------- d-----w- C:\Users\sbwong\AppData\Local\{8C90B231-F001-40D8-BEFA-2AC4BC67049D}
2012-03-17 14:41:01 -------- d-----w- C:\Users\sbwong\AppData\Local\{7A1E736B-E568-40B6-A364-360C5F2B2CA1}
2012-03-17 02:40:31 -------- d-----w- C:\Users\sbwong\AppData\Local\{6BB52499-65B7-4220-9A3A-683194C8A3F6}
2012-03-17 02:40:06 -------- d-----w- C:\Users\sbwong\AppData\Local\{384CF5DD-1E70-49A2-8028-DA5FFB32F4C2}
2012-03-15 00:31:47 -------- d-----w- C:\Users\sbwong\AppData\Local\{DFBE50A5-70BF-4FD9-8A09-D3A092815DDF}
2012-03-12 20:57:43 -------- d-----w- C:\Users\sbwong\AppData\Local\{C798F957-C621-49B9-BED6-00C1F2336D7A}
2012-03-12 08:55:53 -------- d-----w- C:\Users\sbwong\AppData\Local\{1D687E91-B03C-4939-AFC0-B051583B0B8A}
2012-03-11 20:55:15 -------- d-----w- C:\Users\sbwong\AppData\Local\{559C0B36-74C1-419E-B91C-0AC8F8283F46}
2012-03-11 20:55:01 -------- d-----w- C:\Users\sbwong\AppData\Local\{949B8B12-8648-44FC-8BC1-3668007BC601}
2012-03-11 20:54:49 -------- d-----w- C:\Users\sbwong\AppData\Local\{58574ED1-C24A-4521-BFEB-4E2B84D56C01}
2012-03-11 20:54:20 -------- d-----w- C:\Users\sbwong\AppData\Local\{E99FFCCD-83F4-451D-AA13-97714A948837}
2012-03-11 20:49:47 -------- d-----w- C:\Windows\System32\SPReview
2012-03-11 20:46:46 -------- d-----w- C:\Windows\System32\EventProviders
2012-03-11 15:22:42 -------- d-----w- C:\ProgramData\SecTaskMan
2012-03-11 15:21:34 -------- d-----w- C:\Program Files (x86)\Security Task Manager
2012-03-10 21:14:02 -------- d-----w- C:\Users\sbwong\AppData\Local\{B6A9C7DB-69BD-4BB8-AD64-24A0D902FEF4}
2012-03-10 21:13:35 -------- d-----w- C:\Users\sbwong\AppData\Local\{26BDA260-E6B7-43CA-A5E7-AB5069E328B5}
2012-03-10 03

11 -------- d-----w- C:\Program Files (x86)\Hamachi
2012-03-09 17:32:04 -------- d-----w- C:\Users\sbwong\AppData\Local\{92054F62-9D66-492C-B81B-F673089EB575}
2012-03-09 17:31:53 -------- d-----w- C:\Users\sbwong\AppData\Local\{B75CFCCA-38C7-4A9C-A882-8BB1C382198F}
2012-03-09 05:31:02 -------- d-----w- C:\Users\sbwong\AppData\Local\{C7701E88-D969-44EB-830D-89DF925416F6}
2012-03-09 05:30:51 -------- d-----w- C:\Users\sbwong\AppData\Local\{4DDF2C45-FE09-4F98-932C-65159F59642D}
2012-03-08 17:29:58 -------- d-----w- C:\Users\sbwong\AppData\Local\{DEECF573-D71E-48C7-BF65-9502B33BB4AB}
2012-03-08 17:29:47 -------- d-----w- C:\Users\sbwong\AppData\Local\{F0BA7B5E-47AE-42BF-A994-B6A6DB961222}
2012-03-08 05:28:56 -------- d-----w- C:\Users\sbwong\AppData\Local\{8B4797BB-4589-4F54-8ACF-08BBA115F4F9}
2012-03-08 05:28:45 -------- d-----w- C:\Users\sbwong\AppData\Local\{E0FE5AD0-23A6-4274-A182-C237EE66E808}
2012-03-07 17:27:52 -------- d-----w- C:\Users\sbwong\AppData\Local\{73044FA5-741D-43A3-A03A-5821F03B4751}
2012-03-07 17:27:40 -------- d-----w- C:\Users\sbwong\AppData\Local\{5991BEE1-B95A-4814-AEF6-BD915076642C}
2012-03-07 05:26:43 -------- d-----w- C:\Users\sbwong\AppData\Local\{3496F4EB-6810-4065-8DEA-D68123F49832}
2012-03-07 05:26:31 -------- d-----w- C:\Users\sbwong\AppData\Local\{9C17F46D-E3B5-49CE-88C7-C243C98C8213}
2012-03-07 05:26:18 -------- d-----w- C:\Users\sbwong\AppData\Local\{57F81820-D244-4E8D-B332-87626D15B767}
2012-03-06 17:25:35 -------- d-----w- C:\Users\sbwong\AppData\Local\{F2FF2E1A-83DB-4B6D-88A5-C667A85EB7E4}
2012-03-06 05:24:52 -------- d-----w- C:\Users\sbwong\AppData\Local\{78125A3D-360C-407C-8580-4BADC3AEBC5F}
2012-03-05 17:24:12 -------- d-----w- C:\Users\sbwong\AppData\Local\{F49A5820-A43C-4680-AC22-0534AE5C0EFC}
2012-03-05 05:23:32 -------- d-----w- C:\Users\sbwong\AppData\Local\{74C58D2B-DB3D-4C99-9692-877871A936E9}
2012-03-04 17:22:50 -------- d-----w- C:\Users\sbwong\AppData\Local\{2DBC7720-07FA-4AA0-A5B8-BD76A4591996}
2012-03-04 05:22:08 -------- d-----w- C:\Users\sbwong\AppData\Local\{7EDF4F41-7691-4BD7-8384-2C8A1CC65570}
2012-03-04 05:21:39 -------- d-----w- C:\Users\sbwong\AppData\Local\{357410CF-2952-493C-968F-637E3632AB7E}
2012-03-03 17:21:06 -------- d-----w- C:\Users\sbwong\AppData\Local\{0CB6EFA4-9C3B-4556-94B3-CE4EEBDE4A31}
2012-03-03 05:20:23 -------- d-----w- C:\Users\sbwong\AppData\Local\{1D9CD0DA-D337-4D4B-BEB9-3A631408F04D}
2012-03-02 17:19:38 -------- d-----w- C:\Users\sbwong\AppData\Local\{9081D2EC-D7AF-4887-AF97-8EFC92ED5351}
2012-03-02 05:22:00 -------- d-----w- C:\Users\sbwong\AppData\Roaming\SWFWireDebugger
2012-03-02 05:21:53 -------- d-----w- C:\Program Files (x86)\SWFWire Debugger
2012-03-02 05:18:57 -------- d-----w- C:\Users\sbwong\AppData\Local\{7126251C-0A24-496F-813A-57FDC20A2A04}
2012-03-02 05:17:58 -------- d-----w- C:\Program Files (x86)\FlashDecompiler
2012-03-01 17:18:15 -------- d-----w- C:\Users\sbwong\AppData\Local\{A80DD9E3-5C48-4F5E-AFD0-0C8E3BE9DBCD}
2012-03-01 05:17:34 -------- d-----w- C:\Users\sbwong\AppData\Local\{A804C396-75C4-4AF7-BC31-0C3DCE0807E8}
2012-02-29 17:16:52 -------- d-----w- C:\Users\sbwong\AppData\Local\{9A4ECD0B-0228-4D8D-A0DB-2F5AAC120BDE}
2012-02-29 05:16:10 -------- d-----w- C:\Users\sbwong\AppData\Local\{9A4D0983-DBED-4BD5-B311-224919C5C809}
2012-02-28 17:15:29 -------- d-----w- C:\Users\sbwong\AppData\Local\{D7AAC295-947B-4EF3-9C8B-35FE29BCB041}
2012-02-28 05:14:45 -------- d-----w- C:\Users\sbwong\AppData\Local\{B9E95BEC-2530-4673-803D-0E59CB876334}
2012-02-28 02:10:49 -------- d-----w- C:\Users\sbwong\AppData\Roaming\Powerbat
2012-02-27 17:14:04 -------- d-----w- C:\Users\sbwong\AppData\Local\{DBE102A4-3042-4D3D-844F-56B4F6E53769}
2012-02-27 05:13:19 -------- d-----w- C:\Users\sbwong\AppData\Local\{3FCA2B78-EF44-4019-A355-0A69B908E0F9}
2012-02-27 05:12:51 -------- d-----w- C:\Users\sbwong\AppData\Local\{20553986-D753-4107-8BE4-FC28172FE443}
2012-02-26 17:12:15 -------- d-----w- C:\Users\sbwong\AppData\Local\{0DC0B0D3-E103-4572-834A-02B04D92B8D2}
2012-02-26 17:12:09 -------- d-----w- C:\Users\sbwong\AppData\Local\{B437B9C6-8FF0-485D-ADF9-879C7487DC64}
2012-02-26 17:11:46 -------- d-----w- C:\Users\sbwong\AppData\Local\{E9634BFB-97B5-4ABE-AF82-322337F76D1E}
2012-02-26 02:41:18 -------- d-----w- C:\Users\sbwong\AppData\Roaming\fofix
2012-02-26 00:32:54 -------- d-----w- C:\FoFiX
2012-02-26 00:30:21 -------- d-----w- C:\Program Files (x86)\FoFiX
2012-02-25 23:36:18 -------- d-----w- C:\Users\sbwong\AppData\Local\{714276AD-77B5-4F5B-AE97-1F7012928C11}
2012-02-25 23

36 -------- d-----w- C:\Users\sbwong\AppData\Local\DDMSettings
2012-02-25 22:02:11 -------- d-----w- C:\Program Files (x86)\ScreenSnapr
2012-02-25 11:35:34 -------- d-----w- C:\Users\sbwong\AppData\Local\{682EFEE8-1E02-4631-8466-244AF0BC687F}
2012-02-24 23:34:52 -------- d-----w- C:\Users\sbwong\AppData\Local\{E33E740E-2AA2-4C26-ACF7-08DA37E6175D}
2012-02-24 11:34:20 -------- d-----w- C:\Users\sbwong\AppData\Local\{C589FEBE-F6B6-4E41-B09B-0D93A39A6106}
2012-02-24 05:33:52 -------- d-----w- C:\Ace of Spades
2012-02-23 23:33:38 -------- d-----w- C:\Users\sbwong\AppData\Local\{5E41CFF5-6E82-4F11-8A70-98CD0A640C72}
2012-02-23 11:32:55 -------- d-----w- C:\Users\sbwong\AppData\Local\{FFB6A13F-0E39-4171-A4FE-873551C36F52}
2012-02-22 23:32:06 -------- d-----w- C:\Users\sbwong\AppData\Local\{C93B47E5-F49F-49A2-A6DE-FBCF2DC07F34}
2012-02-22 23:31:41 -------- d-----w- C:\Users\sbwong\AppData\Local\{3FA5D384-F950-4B1F-8611-F3F7A86B008E}
2012-02-21 04:02:04 -------- d-----w- C:\Users\sbwong\AppData\Local\{ADA6E03E-06FC-431C-8962-DB93334E3E96}
2012-02-21 04:01:37 -------- d-----w- C:\Users\sbwong\AppData\Local\{54D98A21-D879-4DC1-8E50-819E9068BE55}
2012-02-20 16:00:31 -------- d-----w- C:\Users\sbwong\AppData\Local\{F8E89E5D-52B8-4258-B996-A5077CEAC822}
2012-02-20 15:59:34 -------- d-----w- C:\Users\sbwong\AppData\Local\{C1184060-8DAB-4500-BB88-271AE8FD63C4}
2012-02-20 03:59:15 -------- d-----w- C:\Users\sbwong\AppData\Local\{91035AB4-D627-4E66-BE4C-6525EC2122E7}
2012-02-20 03:58:51 -------- d-----w- C:\Users\sbwong\AppData\Local\{788FB8EF-2D92-4616-A697-DBF99E940BE6}
2012-02-19 15:58:32 -------- d-----w- C:\Users\sbwong\AppData\Local\{38D7109B-EE68-4E19-B582-74514C075D77}
2012-02-19 15:58:06 -------- d-----w- C:\Users\sbwong\AppData\Local\{2EEAEBB4-4CF7-42E4-B7F8-0F8FB2DFC63B}
2012-02-19 03:57:49 -------- d-----w- C:\Users\sbwong\AppData\Local\{4D7294B3-C216-4924-8773-1BA6E2622763}
2012-02-19 03:57:23 -------- d-----w- C:\Users\sbwong\AppData\Local\{7D7B4299-3715-4E64-B80D-78C077663BDD}
2012-02-18 20:13:39 -------- d-----w- C:\Program Files (x86)\PopCap Games
2012-02-18 20:09:19 -------- d-----w- C:\ProgramData\PopCap Games
2012-02-18 15:57:07 -------- d-----w- C:\Users\sbwong\AppData\Local\{79F0C71A-05AF-4212-B2DE-80839E73BCAA}
2012-02-18 15:56:42 -------- d-----w- C:\Users\sbwong\AppData\Local\{46808610-B070-4813-9B1C-3741439C0D76}
2012-02-18 03:56:26 -------- d-----w- C:\Users\sbwong\AppData\Local\{3A4044E7-E29A-44EC-AF6F-EB3BCE8B50FC}
2012-02-17 15:55:44 -------- d-----w- C:\Users\sbwong\AppData\Local\{2B2FFFEE-0599-485C-959E-FD6E9842C8EE}
2012-02-17 03:55:02 -------- d-----w- C:\Users\sbwong\AppData\Local\{9AE62B46-A86C-4396-8004-D21F06F0C831}
.
==================== Find3M ====================
.
2012-03-15 01:36:55 414368 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2012-01-14 04:02:25 3143168 ----a-w- C:\Windows\System32\win32k.sys
2012-01-04 00:48:42 354176 ----a-w- C:\Windows\SysWow64\DivXControlPanelApplet.cpl
2011-12-28 03:59:11 499200 ----a-w- C:\Windows\System32\drivers\afd.sys
.
============= FINISH: 16:22:00.22 ===============