Scan result of Farbars's Recovery Tool (FRST written by farbar) Version 2.0.6
Ran by SYSTEM at 2011-03-20 18:37:25
Running from D:\
Windows Vista (TM) Home Premium (X64) OS Language: English(US)
The current controlset is ControlSet001
========================== Registry ==========================
HKLM\...\Run: [IAAnotif] "C:\Program Files (X86)\Intel\Intel Matrix Storage Manager\Iaanotif.exe" (Intel Corporation)[174872 2007-02-12]
HKLM\...\Run: [SysTrayApp] %ProgramFiles%\IDT\WDM\sttray64.exe (IDT, Inc.)[437760 2007-11-09]
HKLM\...\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)[1220392 2008-01-17]
HKLM\...\Run: [Start WingMan Profiler] C:\Program Files\Logitech\Gaming Software\LWEMon.exe /noui (Logitech Inc.)[190472 2009-09-16]
HKLM\...\Run: [AdobeAAMUpdater-1.0] "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" (Adobe Systems Incorporated)[500208 2010-03-05]
HKLM-x32\...\Run: [Camera Assistant Software] "C:\Program Files\Camera Assistant Software for Gateway\traybar.exe" (Chicony)[638976 2007-09-13]
HKLM-x32\...\Run: [AppleSyncNotifier] C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe (Apple Inc.)[177472 2009-05-13]
HKLM-x32\...\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" (Microsoft Corporation)[31072 2008-10-25]
HKLM-x32\...\Run: [QuickTime Task] "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime (Apple Inc.)[413696 2009-05-26]
HKLM-x32\...\Run: [hpqSRMon] C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe (Hewlett-Packard)[150528 2008-07-22]
HKLM-x32\...\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe (Hewlett-Packard)[54840 2007-05-08]
HKLM-x32\...\Run: [ArcSoft Connection Service] "C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe" (ArcSoft Inc.)[207424 2010-10-27]
HKLM-x32\...\Run: [SBAMTray] "C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMTray.exe" (Sunbelt Software)[1295696 2010-06-17]
HKLM-x32\...\Run: [SBRegRebootCleaner] "C:\Program Files (x86)\Sunbelt Software\VIPRE\SBRC.exe" (Sunbelt Software)[197968 2010-06-17]
HKU\Default\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (Microsoft Corporation)[1555968 2008-01-20]
HKU\Default User\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (Microsoft Corporation)[1555968 2008-01-20]
HKU\Owner\...\Run: [Sidebar] "C:\Program Files (x86)\Windows Sidebar\Sidebar.exe" /autorun (Microsoft Corporation)[1233920 2008-01-20]
HKU\Owner\...\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe (Microsoft Corporation)[138240 2008-01-20]
HKU\Owner\...\Run: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background (Microsoft Corporation)[3872080 2010-04-16]
HKU\Owner\...\Run: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" (Google Inc.)[39408 2010-04-15]
HKU\Owner\...\Run: [Octoshape Streaming Services] "C:\Users\Owner\AppData\Roaming\Octoshape\Octoshape Streaming Services\OctoshapeClient.exe" -inv:bootrun (Octoshape ApS)[70936 2009-01-08]
HKU\Owner\...\Run: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet (Yahoo! Inc.)[5252408 2010-06-01]
HKU\Owner\...\Run: [Google Update] "C:\Users\Owner\AppData\Local\Google\Update\GoogleUpdate.exe" /c (Google Inc.)[136176 2010-04-15]
HKU\Owner\...\Run: [googletalk] C:\Users\Owner\AppData\Roaming\Google\Google Talk\googletalk.exe /autostart (Google)[3739648 2007-01-01]
HKLM-x32\...\Runonce: [Launcher] %WINDIR%\SMINST\launcher.exe
Tcpip\Parameters: [DhcpNameServer] 192.168.200.1 192.168.200.1
==================== Drivers and Services ====================
2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
0 ACPI; C:\Windows\System32\drivers\acpi.sys [326712 2008-01-20] (Microsoft Corporation)
4 adp94xx; C:\Windows\System32\drivers\adp94xx.sys [486456 2008-01-20] (Adaptec, Inc.)
4 adpahci; C:\Windows\System32\drivers\adpahci.sys [342584 2008-01-20] (Adaptec, Inc.)
4 adpu160m; C:\Windows\System32\drivers\adpu160m.sys [126520 2008-01-20] (Adaptec, Inc.)
4 adpu320; C:\Windows\System32\drivers\adpu320.sys [185912 2008-01-20] (Adaptec, Inc.)
2 AeLookupSvc; C:\Windows\System32\aelupsvc.dll [26624 2006-11-02] (Microsoft Corporation)
1 AFD; C:\Windows\System32\drivers\afd.sys [408064 2008-01-20] (Microsoft Corporation)
2 AgereModemAudio; C:\Windows\system32\agr64svc.exe [15872 2007-12-10] (Agere Systems)
3 AgereSoftModem; C:\Windows\System32\DRIVERS\agrsm64.sys [1252352 2008-02-28] (Agere Systems)
3 agp440; C:\Windows\System32\drivers\agp440.sys [64568 2008-01-20] (Microsoft Corporation)
4 aic78xx; C:\Windows\System32\drivers\djsvs.sys [88168 2006-11-02] (Adaptec, Inc.)
3 ALG; C:\Windows\System32\alg.exe [80896 2008-01-20] (Microsoft Corporation)
4 aliide; C:\Windows\System32\drivers\aliide.sys [15976 2008-01-20] (Acer Laboratories Inc.)
4 amdide; C:\Windows\System32\drivers\amdide.sys [15976 2008-01-20] (Microsoft Corporation)
4 AmdK8; C:\Windows\System32\DRIVERS\amdk8.sys [50688 2008-01-20] (Microsoft Corporation)
3 Appinfo; C:\Windows\System32\appinfo.dll [45056 2008-01-20] (Microsoft Corporation)
4 arc; C:\Windows\System32\drivers\arc.sys [90680 2008-01-20] (Adaptec, Inc.)
4 arcsas; C:\Windows\System32\drivers\arcsas.sys [91192 2008-01-20] (Adaptec, Inc.)
3 AsyncMac; C:\Windows\System32\DRIVERS\asyncmac.sys [22016 2008-01-20] (Microsoft Corporation)
0 atapi; C:\Windows\System32\drivers\atapi.sys [22584 2008-01-20] (Microsoft Corporation)
2 AudioEndpointBuilder; C:\Windows\System32\Audiosrv.dll [444928 2008-01-20] (Microsoft Corporation)
2 AudioSrv; C:\Windows\System32\Audiosrv.dll [444928 2008-01-20] (Microsoft Corporation)
3 b57nd60a; C:\Windows\System32\DRIVERS\b57nd60a.sys [214016 2008-01-20] (Broadcom Corporation)
3 BCM43XV; C:\Windows\System32\DRIVERS\bcmwl664.sys [550912 2006-10-06] (Broadcom Corporation)
2 BFE; C:\Windows\System32\bfe.dll [458240 2008-01-20] (Microsoft Corporation)
2 BITS; C:\Windows\System32\qmgr.dll [1082368 2008-01-20] (Microsoft Corporation)
4 blbdrive; C:\Windows\System32\drivers\blbdrive.sys [55296 2008-01-20] (Microsoft Corporation)
2 Bonjour Service; "C:\Program Files (x86)\Bonjour\mDNSResponder.exe" [238888 2008-12-12] (Apple Inc.)
3 bowser; C:\Windows\System32\DRIVERS\bowser.sys [90624 2008-01-20] (Microsoft Corporation)
3 BrFiltLo; C:\Windows\System32\drivers\brfiltlo.sys [18432 2006-09-18] (Brother Industries, Ltd.)
3 BrFiltUp; C:\Windows\System32\drivers\brfiltup.sys [8704 2006-09-18] (Brother Industries, Ltd.)
2 Browser; C:\Windows\System32\browser.dll [103424 2008-01-20] (Microsoft Corporation)
4 Brserid; C:\Windows\System32\drivers\brserid.sys [86528 2006-11-02] (Brother Industries Ltd.)
4 BrSerWdm; C:\Windows\System32\drivers\brserwdm.sys [47104 2006-09-18] (Brother Industries Ltd.)
4 BrUsbMdm; C:\Windows\System32\drivers\brusbmdm.sys [14976 2006-09-18] (Brother Industries Ltd.)
3 BrUsbSer; C:\Windows\System32\drivers\brusbser.sys [14720 2006-09-19] (Brother Industries Ltd.)
3 BthEnum; C:\Windows\System32\DRIVERS\BthEnum.sys [23040 2008-01-20] (Microsoft Corporation)
4 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [50688 2006-11-02] (Microsoft Corporation)
3 BthPan; C:\Windows\System32\DRIVERS\bthpan.sys [115712 2008-01-20] (Microsoft Corporation)
3 BTHPORT; C:\Windows\System32\Drivers\BTHport.sys [276480 2008-04-28] (Microsoft Corporation)
2 BthServ; C:\Windows\System32\bthserv.dll [51200 2006-11-02] (Microsoft Corporation)
3 BTHUSB; C:\Windows\System32\Drivers\BTHUSB.sys [34304 2008-04-28] (Microsoft Corporation)
3 btwaudio; C:\Windows\System32\drivers\btwaudio.sys [88104 2007-07-15] (Broadcom Corporation.)
3 btwavdt; C:\Windows\System32\drivers\btwavdt.sys [95784 2007-07-15] (Broadcom Corporation.)
3 btwrchid; C:\Windows\System32\DRIVERS\btwrchid.sys [19752 2007-07-15] (Broadcom Corporation.)
4 cdfs; C:\Windows\System32\DRIVERS\cdfs.sys [90624 2008-01-20] (Microsoft Corporation)
1 cdrom; C:\Windows\System32\DRIVERS\cdrom.sys [79872 2008-01-20] (Microsoft Corporation)
3 CertPropSvc; C:\Windows\System32\certprop.dll [49152 2008-01-20] (Microsoft Corporation)
4 circlass; C:\Windows\System32\drivers\circlass.sys [41984 2008-01-20] (Microsoft Corporation)
0 CLFS; C:\Windows\System32\CLFS.sys [363064 2008-01-20] (Microsoft Corporation)
4 clr_optimization_v2.0.50727_32; C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [69632 2008-07-27] (Microsoft Corporation)
4 clr_optimization_v2.0.50727_64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [93184 2008-07-27] (Microsoft Corporation)
2 clr_optimization_v4.0.30319_32; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [130384 2010-03-18] (Microsoft Corporation)
2 clr_optimization_v4.0.30319_64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [138576 2010-03-18] (Microsoft Corporation)
3 CmBatt; C:\Windows\System32\DRIVERS\CmBatt.sys [17792 2008-01-20] (Microsoft Corporation)
4 cmdide; C:\Windows\System32\drivers\cmdide.sys [18024 2008-01-20] (CMD Technology, Inc.)
0 Compbatt; C:\Windows\System32\DRIVERS\compbatt.sys [23608 2008-01-20] (Microsoft Corporation)
3 COMSysApp; C:\Windows\System32\dllhost.exe /Processid:{02D4B3F1-FD88-11D1-960D-00805FC79235} [8704 2006-11-02] (Microsoft Corporation)
0 crcdisk; C:\Windows\System32\drivers\crcdisk.sys [27704 2008-01-20] (Microsoft Corporation)
2 CryptSvc; C:\Windows\System32\cryptsvc.dll [165376 2008-01-20] (Microsoft Corporation)
2 DcomLaunch; C:\Windows\System32\rpcss.dll [718336 2009-03-02] (Microsoft Corporation)
1 DfsC; C:\Windows\System32\Drivers\dfsc.sys [97792 2008-01-20] (Microsoft Corporation)
3 DFSR; C:\Windows\System32\DFSR.exe [3432960 2008-01-20] (Microsoft Corporation)
2 Dhcp; C:\Windows\System32\dhcpcsvc.dll [268288 2008-01-20] (Microsoft Corporation)
0 disk; C:\Windows\System32\drivers\disk.sys [68664 2008-01-20] (Microsoft Corporation)
2 dlbx_device; C:\Windows\system32\dlbxcoms.exe -service [567280 2007-05-22] ( )
2 Dnscache; C:\Windows\System32\dnsrslvr.dll [117760 2008-01-20] (Microsoft Corporation)
3 dot3svc; C:\Windows\System32\dot3svc.dll [208384 2008-01-20] (Microsoft Corporation)
3 Dot4; C:\Windows\System32\DRIVERS\Dot4.sys [145408 2008-01-20] (Microsoft Corporation)
3 Dot4Print; C:\Windows\System32\DRIVERS\Dot4Prt.sys [19968 2008-01-20] (Microsoft Corporation)
3 dot4usb; C:\Windows\System32\DRIVERS\dot4usb.sys [42496 2008-01-20] (Microsoft Corporation)
2 DPS; C:\Windows\System32\dps.dll [139264 2008-01-20] (Microsoft Corporation)
3 drmkaud; C:\Windows\System32\drivers\drmkaud.sys [6144 2008-01-20] (Microsoft Corporation)
3 DXGKrnl; C:\Windows\System32\drivers\dxgkrnl.sys [883200 2008-08-01] (Microsoft Corporation)
3 E1G60; C:\Windows\System32\DRIVERS\E1G6032E.sys [146176 2008-01-20] (Intel Corporation)
3 EapHost; C:\Windows\System32\eapsvc.dll [74752 2008-01-20] (Microsoft Corporation)
0 Ecache; C:\Windows\System32\drivers\ecache.sys [157240 2008-01-20] (Microsoft Corporation)
3 ehRecvr; C:\Windows\ehome\ehRecvr.exe [344064 2008-01-20] (Microsoft Corporation)
3 ehSched; C:\Windows\ehome\ehsched.exe [153600 2008-01-20] (Microsoft Corporation)
2 ehstart; C:\Windows\ehome\ehstart.dll [15360 2006-11-02] (Microsoft Corporation)
4 elxstor; C:\Windows\System32\drivers\elxstor.sys [397368 2008-01-20] (Emulex)
2 EMDMgmt; C:\Windows\System32\emdmgmt.dll [399872 2008-06-25] (Microsoft Corporation)
4 ErrDev; C:\Windows\System32\drivers\errdev.sys [8704 2008-01-20] (Microsoft Corporation)
2 Eventlog; C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted [27648 2008-01-20] (Microsoft Corporation)
2 EventSystem; C:\Windows\System32\es.dll [361984 2008-04-17] (Microsoft Corporation)
3 exfat; C:\Windows\System32\Drivers\exfat.sys [187392 2008-01-20] (Microsoft Corporation)
3 fastfat; C:\Windows\System32\Drivers\fastfat.sys [198656 2008-01-20] (Microsoft Corporation)
4 fdc; C:\Windows\System32\DRIVERS\fdc.sys [29696 2008-01-20] (Microsoft Corporation)
3 fdPHost; C:\Windows\System32\fdPHost.dll [15360 2008-01-20] (Microsoft Corporation)
2 FDResPub; C:\Windows\System32\fdrespub.dll [33280 2006-11-02] (Microsoft Corporation)
0 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [70200 2008-01-20] (Microsoft Corporation)
3 Filetrace; C:\Windows\System32\drivers\filetrace.sys [33280 2008-01-20] (Microsoft Corporation)
2 FlipShare Service; "C:\Program Files (x86)\Flip Video\FlipShare\FlipShareService.exe" [451904 2009-02-17] ()
4 flpydisk; C:\Windows\System32\DRIVERS\flpydisk.sys [24576 2008-01-20] (Microsoft Corporation)
0 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [275512 2008-01-20] (Microsoft Corporation)
3 FontCache3.0.0.0; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [46104 2008-06-19] (Microsoft Corporation)
1 Fs_Rec; C:\Windows\System32\Drivers\Fs_Rec.sys [16384 2008-01-20] (Microsoft Corporation)
3 gagp30kx; C:\Windows\System32\drivers\gagp30kx.sys [68152 2008-01-20] (Microsoft Corporation)
3 GameConsoleService; "C:\Program Files (x86)\Gateway Games\Gateway Game Console\GameConsoleService.exe" [181800 2007-08-29] (WildTangent, Inc.)
3 GEARAspiWDM; C:\Windows\System32\DRIVERS\GEARAspiWDM.sys [30760 2009-01-15] (GEAR Software Inc.)
2 gpsvc; C:\Windows\System32\gpsvc.dll [718336 2008-01-20] (Microsoft Corporation)
2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [135664 2010-04-15] (Google Inc.)
3 gusvc; "C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe" [182768 2010-04-15] (Google)
3 hcwhdpvr; C:\Windows\System32\DRIVERS\hcwhdpvr.sys [189440 2009-04-01] (Hauppauge, Inc.)
3 HdAudAddService; C:\Windows\System32\drivers\HdAudio.sys [273920 2006-11-01] (Microsoft Corporation)
3 HDAudBus; C:\Windows\System32\DRIVERS\HDAudBus.sys [50688 2008-01-20] (Microsoft Corporation)
4 HidBth; C:\Windows\System32\drivers\hidbth.sys [34304 2006-11-02] (Microsoft Corporation)
4 HidIr; C:\Windows\System32\drivers\hidir.sys [25600 2006-11-02] (Microsoft Corporation)
2 hidserv; C:\Windows\System32\hidserv.dll [24064 2006-11-02] (Microsoft Corporation)
3 HidUsb; C:\Windows\System32\DRIVERS\hidusb.sys [15872 2008-01-20] (Microsoft Corporation)
3 hkmsvc; C:\Windows\System32\kmsvc.dll [86528 2008-01-20] (Microsoft Corporation)
4 HpCISSs; C:\Windows\System32\drivers\hpcisss.sys [47672 2008-01-20] (Hewlett-Packard Company)
3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.)
2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-05-21] (Hewlett-Packard Co.)
2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1037824 2009-09-20] (Hewlett-Packard Co.)
3 HTTP; C:\Windows\System32\drivers\HTTP.sys [610304 2010-02-20] (Microsoft Corporation)
4 i2omp; C:\Windows\System32\drivers\i2omp.sys [35896 2008-01-20] (Microsoft Corporation)
1 i8042prt; C:\Windows\System32\DRIVERS\i8042prt.sys [64000 2008-01-20] (Microsoft Corporation)
2 IAANTMON; C:\Program Files (X86)\Intel\Intel Matrix Storage Manager\Iaantmon.exe [355096 2007-02-12] (Intel Corporation)
0 iaStor; C:\Windows\System32\DRIVERS\iaStor.sys [537368 2007-02-12] (Intel Corporation)
4 iaStorV; C:\Windows\System32\drivers\iastorv.sys [290872 2008-01-20] (Intel Corporation)
3 idsvc; "C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe" [859648 2008-06-19] (Microsoft Corporation)
4 iirsp; C:\Windows\System32\drivers\iirsp.sys [44648 2006-11-02] (Intel Corp./ICP vortex GmbH)
2 IKEEXT; C:\Windows\System32\ikeext.dll [454656 2008-01-20] (Microsoft Corporation)
0 intelide; C:\Windows\System32\drivers\intelide.sys [19512 2008-01-20] (Microsoft Corporation)
3 intelppm; C:\Windows\System32\DRIVERS\intelppm.sys [48128 2008-01-20] (Microsoft Corporation)
3 IPBusEnum; C:\Windows\System32\ipbusenum.dll [93696 2008-01-20] (Microsoft Corporation)
3 IpFilterDriver; C:\Windows\System32\DRIVERS\ipfltdrv.sys [67072 2008-01-20] (Microsoft Corporation)
2 iphlpsvc; C:\Windows\System32\iphlpsvc.dll [224256 2010-02-18] (Microsoft Corporation)
4 IPMIDRV; C:\Windows\System32\drivers\ipmidrv.sys [76288 2008-01-20] (Microsoft Corporation)
3 IPNAT; C:\Windows\System32\DRIVERS\ipnat.sys [115712 2008-01-20] (Microsoft Corporation)
3 IRENUM; C:\Windows\System32\drivers\irenum.sys [17408 2008-01-20] (Microsoft Corporation)
4 isapnp; C:\Windows\System32\drivers\isapnp.sys [23608 2008-01-20] (Microsoft Corporation)
3 iScsiPrt; C:\Windows\System32\DRIVERS\msiscsi.sys [215096 2008-01-20] (Microsoft Corporation)
4 iteatapi; C:\Windows\System32\drivers\iteatapi.sys [37480 2006-11-02] (Integrated Technology Express, Inc.)
4 iteraid; C:\Windows\System32\drivers\iteraid.sys [37480 2006-11-02] (Integrated Technology Express, Inc.)
1 kbdclass; C:\Windows\System32\DRIVERS\kbdclass.sys [42040 2008-01-20] (Microsoft Corporation)
1 kbdhid; C:\Windows\System32\DRIVERS\kbdhid.sys [20480 2008-01-20] (Microsoft Corporation)
3 KeyIso; C:\Windows\System32\lsass.exe [11264 2009-06-15] (Microsoft Corporation)
0 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [515656 2009-06-15] (Microsoft Corporation)
3 ksthunk; C:\Windows\System32\drivers\ksthunk.sys [20864 2008-01-20] (Microsoft Corporation)
2 KtmRm; C:\Windows\System32\msdtckrm.dll [395264 2008-01-20] (Microsoft Corporation)
2 LanmanServer; C:\Windows\System32\srvsvc.dll [179712 2010-09-06] (Microsoft Corporation)
2 LanmanWorkstation; C:\Windows\System32\wkssvc.dll [202752 2009-06-10] (Microsoft Corporation)
2 lltdio; C:\Windows\System32\DRIVERS\lltdio.sys [59392 2008-01-20] (Microsoft Corporation)
3 lltdsvc; C:\Windows\System32\lltdsvc.dll [296960 2008-01-20] (Microsoft Corporation)
2 lmhosts; C:\Windows\System32\lmhsvc.dll [24064 2008-01-20] (Microsoft Corporation)
4 LSI_FC; C:\Windows\System32\drivers\lsi_fc.sys [113720 2008-01-20] (LSI Logic)
4 LSI_SAS; C:\Windows\System32\drivers\lsi_sas.sys [105016 2008-01-20] (LSI Logic)
4 LSI_SCSI; C:\Windows\System32\drivers\lsi_scsi.sys [113720 2008-01-20] (LSI Logic)
2 luafv; C:\Windows\System32\drivers\luafv.sys [109568 2008-01-20] (Microsoft Corporation)
3 Macromedia Licensing Service; "C:\Program Files (x86)\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe" [68096 2008-09-04] ()
4 Mcx2Svc; C:\Windows\System32\Mcx2Svc.dll [67072 2008-01-20] (Microsoft Corporation)
4 megasas; C:\Windows\System32\drivers\megasas.sys [35896 2008-01-20] (LSI Corporation)
4 MegaSR; C:\Windows\System32\drivers\megasr.sys [438328 2008-01-20] (LSI Corporation, Inc.)
3 Microsoft Office Groove Audit Service; "C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe" [65888 2008-10-25] (Microsoft Corporation)
2 MMCSS; C:\Windows\System32\mmcss.dll [37888 2008-01-20] (Microsoft Corporation)
3 Modem; C:\Windows\System32\drivers\modem.sys [40448 2008-01-20] (Microsoft Corporation)
3 monitor; C:\Windows\System32\DRIVERS\monitor.sys [49152 2008-01-20] (Microsoft Corporation)
1 mouclass; C:\Windows\System32\DRIVERS\mouclass.sys [39992 2008-01-20] (Microsoft Corporation)
3 mouhid; C:\Windows\System32\DRIVERS\mouhid.sys [19968 2008-01-20] (Microsoft Corporation)
0 MountMgr; C:\Windows\System32\drivers\mountmgr.sys [70200 2008-01-20] (Microsoft Corporation)
4 mpio; C:\Windows\System32\drivers\mpio.sys [128056 2008-01-20] (Microsoft Corporation)
3 mpsdrv; C:\Windows\System32\drivers\mpsdrv.sys [81408 2008-01-20] (Microsoft Corporation)
2 MpsSvc; C:\Windows\System32\mpssvc.dll [601088 2008-01-20] (Microsoft Corporation)
4 Mraid35x; C:\Windows\System32\drivers\mraid35x.sys [39016 2006-11-02] (LSI Logic Corporation)
3 MRxDAV; C:\Windows\System32\drivers\mrxdav.sys [134144 2008-01-20] (Microsoft Corporation)
3 mrxsmb; C:\Windows\System32\DRIVERS\mrxsmb.sys [135168 2010-02-23] (Microsoft Corporation)
3 mrxsmb10; C:\Windows\System32\DRIVERS\mrxsmb10.sys [273920 2010-02-23] (Microsoft Corporation)
3 mrxsmb20; C:\Windows\System32\DRIVERS\mrxsmb20.sys [105472 2010-02-23] (Microsoft Corporation)
0 msahci; C:\Windows\System32\drivers\msahci.sys [31288 2008-01-20] (Microsoft Corporation)
4 msdsm; C:\Windows\System32\drivers\msdsm.sys [113720 2008-01-20] (Microsoft Corporation)
3 MSDTC; C:\Windows\System32\msdtc.exe [106496 2008-01-20] (Microsoft Corporation)
1 Msfs; C:\Windows\System32\Drivers\Msfs.sys [26112 2008-01-20] (Microsoft Corporation)
0 msisadrv; C:\Windows\System32\drivers\msisadrv.sys [17976 2008-01-20] (Microsoft Corporation)
3 MSiSCSI; C:\Windows\System32\iscsiexe.dll [154112 2008-01-20] (Microsoft Corporation)
3 msiserver; C:\Windows\System32\msiexec.exe /V [122368 2008-01-20] (Microsoft Corporation)
3 MSKSSRV; C:\Windows\System32\drivers\MSKSSRV.sys [11008 2008-01-20] (Microsoft Corporation)
3 MSPCLOCK; C:\Windows\System32\drivers\MSPCLOCK.sys [7040 2006-11-02] (Microsoft Corporation)
3 MSPQM; C:\Windows\System32\drivers\MSPQM.sys [6656 2006-11-02] (Microsoft Corporation)
3 MsRPC; C:\Windows\System32\Drivers\MsRPC.sys [312376 2008-01-20] (Microsoft Corporation)
3 mssmbios; C:\Windows\System32\DRIVERS\mssmbios.sys [34872 2008-01-20] (Microsoft Corporation)
3 MSTEE; C:\Windows\System32\drivers\MSTEE.sys [7936 2008-01-20] (Microsoft Corporation)
0 Mup; C:\Windows\System32\Drivers\mup.sys [61496 2008-01-20] (Microsoft Corporation)
3 napagent; C:\Windows\System32\qagentRT.dll [409600 2008-01-20] (Microsoft Corporation)
3 NativeWifiP; C:\Windows\System32\DRIVERS\nwifi.sys [187392 2008-05-19] (Microsoft Corporation)
0 NDIS; C:\Windows\System32\drivers\ndis.sys [739384 2008-01-20] (Microsoft Corporation)
3 NdisTapi; C:\Windows\System32\DRIVERS\ndistapi.sys [24064 2008-01-20] (Microsoft Corporation)
3 Ndisuio; C:\Windows\System32\DRIVERS\ndisuio.sys [22016 2008-01-20] (Microsoft Corporation)
3 NdisWan; C:\Windows\System32\DRIVERS\ndiswan.sys [169472 2008-01-20] (Microsoft Corporation)
3 NDProxy; C:\Windows\System32\Drivers\NDProxy.sys [59904 2008-01-20] (Microsoft Corporation)
2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard)
1 NetBIOS; C:\Windows\System32\DRIVERS\netbios.sys [44544 2008-01-20] (Microsoft Corporation)
1 netbt; C:\Windows\System32\DRIVERS\netbt.sys [250368 2008-01-20] (Microsoft Corporation)
3 Netlogon; C:\Windows\System32\lsass.exe [11264 2009-06-15] (Microsoft Corporation)
3 Netman; C:\Windows\System32\netman.dll [348160 2008-01-20] (Microsoft Corporation)
2 netprofm; C:\Windows\System32\netprofm.dll [304128 2008-01-20] (Microsoft Corporation)
4 NetTcpPortSharing; "C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe" [119808 2008-06-19] (Microsoft Corporation)
3 NETw4v64; C:\Windows\System32\DRIVERS\NETw4v64.sys [3197440 2007-10-31] (Intel Corporation)
4 nfrd960; C:\Windows\System32\drivers\nfrd960.sys [51816 2006-11-02] (IBM Corporation)
2 NlaSvc; C:\Windows\System32\nlasvc.dll [206336 2008-01-20] (Microsoft Corporation)
1 Npfs; C:\Windows\System32\Drivers\Npfs.sys [43520 2008-01-20] (Microsoft Corporation)
2 nsi; C:\Windows\System32\nsisvc.dll [24576 2008-01-20] (Microsoft Corporation)
1 nsiproxy; C:\Windows\System32\drivers\nsiproxy.sys [24064 2008-01-20] (Microsoft Corporation)
3 Ntfs; C:\Windows\System32\Drivers\Ntfs.sys [1540152 2008-01-20] (Microsoft Corporation)
1 Null; C:\Windows\System32\Drivers\Null.sys [6144 2006-11-02] (Microsoft Corporation)
3 nvlddmkm; C:\Windows\System32\DRIVERS\nvlddmkm.sys [12432616 2010-10-16] (NVIDIA Corporation)
4 nvraid; C:\Windows\System32\drivers\nvraid.sys [128056 2008-01-20] (NVIDIA Corporation)
4 nvstor; C:\Windows\System32\drivers\nvstor.sys [54328 2008-01-20] (NVIDIA Corporation)
2 NVSvc; C:\Windows\System32\nvvsvc.exe [989800 2010-10-16] (NVIDIA Corporation)
3 nv_agp; C:\Windows\System32\drivers\nv_agp.sys [126520 2008-01-20] (Microsoft Corporation)
3 odserv; "C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE" [441712 2008-11-03] (Microsoft Corporation)
3 ohci1394; C:\Windows\System32\DRIVERS\ohci1394.sys [72192 2008-01-20] (Microsoft Corporation)
3 OpenVPNService; "C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe" [36352 2010-11-08] ()
3 ose; "C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE" [145184 2006-10-26] (Microsoft Corporation)
3 p2pimsvc; C:\Windows\System32\p2psvc.dll [837632 2008-01-20] (Microsoft Corporation)
3 p2psvc; C:\Windows\System32\p2psvc.dll [837632 2008-01-20] (Microsoft Corporation)
3 Parport; C:\Windows\System32\drivers\parport.sys [96768 2006-11-02] (Microsoft Corporation)
0 partmgr; C:\Windows\System32\drivers\partmgr.sys [74808 2008-01-20] (Microsoft Corporation)
2 PcaSvc; C:\Windows\System32\pcasvc.dll [79360 2008-01-20] (Microsoft Corporation)
0 pci; C:\Windows\System32\drivers\pci.sys [179768 2008-01-20] (Microsoft Corporation)
4 pciide; C:\Windows\System32\drivers\pciide.sys [13416 2008-01-20] (Microsoft Corporation)
4 pcmcia; C:\Windows\System32\DRIVERS\pcmcia.sys [217144 2008-01-20] (Microsoft Corporation)
2 PEAUTH; C:\Windows\System32\drivers\peauth.sys [712704 2006-10-23] (Microsoft Corporation)
3 PerfHost; C:\Windows\SysWow64\perfhost.exe [19968 2008-01-20] (Microsoft Corporation)
3 pla; C:\Windows\System32\pla.dll [1373184 2008-01-20] (Microsoft Corporation)
2 PlugPlay; C:\Windows\System32\umpnpmgr.dll [311808 2008-01-20] (Microsoft Corporation)
2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard)
3 PNRPAutoReg; C:\Windows\System32\p2psvc.dll [837632 2008-01-20] (Microsoft Corporation)
3 PNRPsvc; C:\Windows\System32\p2psvc.dll [837632 2008-01-20] (Microsoft Corporation)
2 PolicyAgent; C:\Windows\System32\ipsecsvc.dll [531456 2008-06-19] (Microsoft Corporation)
3 PptpMiniport; C:\Windows\System32\DRIVERS\raspptp.sys [98816 2008-01-20] (Microsoft Corporation)
4 Processor; C:\Windows\System32\drivers\processr.sys [47104 2008-01-20] (Microsoft Corporation)
2 ProfSvc; C:\Windows\System32\profsvc.dll [178688 2008-01-20] (Microsoft Corporation)
3 ProtectedStorage; C:\Windows\System32\lsass.exe [11264 2009-06-15] (Microsoft Corporation)
1 PSched; C:\Windows\System32\DRIVERS\pacer.sys [94208 2008-04-04] (Microsoft Corporation)
4 ql2300; C:\Windows\System32\drivers\ql2300.sys [1221176 2008-01-20] (QLogic Corporation)
4 ql40xx; C:\Windows\System32\drivers\ql40xx.sys [124008 2006-11-02] (QLogic Corporation)
3 QWAVE; C:\Windows\system32\qwave.dll [284160 2008-01-20] (Microsoft Corporation)
3 QWAVEdrv; C:\Windows\System32\drivers\qwavedrv.sys [46592 2008-01-20] (Microsoft Corporation)
3 R300; C:\Windows\System32\DRIVERS\atikmdag.sys [2488320 2006-11-01] (ATI Technologies Inc.)
1 RasAcd; C:\Windows\System32\DRIVERS\rasacd.sys [14848 2008-01-20] (Microsoft Corporation)
3 RasAuto; C:\Windows\System32\rasauto.dll [98304 2008-01-20] (Microsoft Corporation)
3 Rasl2tp; C:\Windows\System32\DRIVERS\rasl2tp.sys [124928 2008-01-20] (Microsoft Corporation)
3 RasMan; C:\Windows\System32\rasmans.dll [308224 2008-01-20] (Microsoft Corporation)
3 RasPppoe; C:\Windows\System32\DRIVERS\raspppoe.sys [50176 2008-01-20] (Microsoft Corporation)
3 RasSstp; C:\Windows\System32\DRIVERS\rassstp.sys [78336 2008-01-20] (Microsoft Corporation)
1 rdbss; C:\Windows\System32\DRIVERS\rdbss.sys [288256 2008-01-20] (Microsoft Corporation)
1 RDPCDD; C:\Windows\System32\DRIVERS\RDPCDD.sys [7168 2008-01-20] (Microsoft Corporation)
4 rdpdr; C:\Windows\System32\drivers\rdpdr.sys [314368 2008-01-20] (Microsoft Corporation)
1 RDPENCDD; C:\Windows\System32\drivers\rdpencdd.sys [7168 2008-01-20] (Microsoft Corporation)
3 RDPWD; C:\Windows\System32\Drivers\RDPWD.sys [210432 2008-01-20] (Microsoft Corporation)
4 RemoteAccess; C:\Windows\System32\mprdim.dll [88064 2008-01-20] (Microsoft Corporation)
3 RemoteRegistry; C:\Windows\System32\regsvc.dll [206336 2008-01-20] (Microsoft Corporation)
3 RFCOMM; C:\Windows\System32\DRIVERS\rfcomm.sys [62976 2008-01-20] (Microsoft Corporation)
3 RpcLocator; C:\Windows\System32\locator.exe [8704 2006-11-02] (Microsoft Corporation)
2 RpcSs; C:\Windows\System32\rpcss.dll [718336 2009-03-02] (Microsoft Corporation)
2 rspndr; C:\Windows\System32\DRIVERS\rspndr.sys [75776 2008-01-20] (Microsoft Corporation)
3 RTL8169; C:\Windows\System32\DRIVERS\Rtlh64.sys [136704 2007-10-03] (Realtek Corporation )
3 RTSTOR; C:\Windows\System32\drivers\RTSTOR64.SYS [52224 2007-06-15] (Realtek Semiconductor Corp.)
2 SamSs; C:\Windows\System32\lsass.exe [11264 2009-06-15] (Microsoft Corporation)
2 SBAMSvc; "C:\Program Files (x86)\Sunbelt Software\VIPRE\SBAMSvc.exe" [2730120 2010-06-17] (Sunbelt Software)
2 sbapifs; C:\Windows\System32\DRIVERS\sbapifs.sys [64088 2010-01-04] (Sunbelt Software)
4 sbp2port; C:\Windows\System32\drivers\sbp2port.sys [90216 2006-11-02] (Microsoft Corporation)
2 SBPIMSvc; "C:\Program Files (x86)\Sunbelt Software\VIPRE\SBPIMSvc.exe" [181584 2010-06-17] (Sunbelt Software)
1 SBRE; \??\C:\Windows\system32\drivers\SBREdrv.sys [45656 2010-01-20] (Sunbelt Software)
1 SbTis; C:\Windows\System32\drivers\sbtis.sys [84056 2010-05-26] (Sunbelt Software, Inc.)
3 SCardSvr; C:\Windows\System32\SCardSvr.dll [147968 2008-01-20] (Microsoft Corporation)
2 Schedule; C:\Windows\System32\schedsvc.dll [854528 2010-11-05] (Microsoft Corporation)
3 SCPolicySvc; C:\Windows\System32\certprop.dll [49152 2008-01-20] (Microsoft Corporation)
4 sdbus; C:\Windows\System32\DRIVERS\sdbus.sys [111104 2008-01-20] (Microsoft Corporation)
3 SDRSVC; C:\Windows\System32\SDRSVC.dll [128000 2008-01-20] (Microsoft Corporation)
2 secdrv; C:\Windows\System32\Drivers\secdrv.sys [23040 2006-09-29] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
2 seclogon; C:\Windows\system32\seclogon.dll [28672 2008-01-20] (Microsoft Corporation)
2 SENS; C:\Windows\System32\sens.dll [61952 2008-01-20] (Microsoft Corporation)
3 Serenum; C:\Windows\System32\drivers\serenum.sys [23040 2006-11-02] (Microsoft Corporation)
3 Serial; C:\Windows\System32\drivers\serial.sys [94208 2006-11-02] (Microsoft Corporation)
4 sermouse; C:\Windows\System32\drivers\sermouse.sys [26624 2008-01-20] (Microsoft Corporation)
3 SessionEnv; C:\Windows\System32\sessenv.dll [74752 2008-01-20] (Microsoft Corporation)
4 sffdisk; C:\Windows\System32\drivers\sffdisk.sys [14848 2008-01-20] (Microsoft Corporation)
3 sffp_mmc; C:\Windows\System32\drivers\sffp_mmc.sys [14336 2008-01-20] (Microsoft Corporation)
3 sffp_sd; C:\Windows\System32\drivers\sffp_sd.sys [13824 2008-01-20] (Microsoft Corporation)
4 sfloppy; C:\Windows\System32\drivers\sfloppy.sys [16384 2006-11-02] (Microsoft Corporation)
2 SharedAccess; C:\Windows\System32\ipnathlp.dll [342016 2008-01-20] (Microsoft Corporation)
2 ShellHWDetection; C:\Windows\System32\shsvcs.dll [301568 2009-07-10] (Microsoft Corporation)
0 Si3531; C:\Windows\System32\DRIVERS\Si3531.sys [330544 2007-05-31] (Silicon Image, Inc)
0 SiFilter; C:\Windows\System32\DRIVERS\SiWinAcc.sys [22832 2007-04-03] (Silicon Image, Inc.)
0 SiRemFil; C:\Windows\System32\DRIVERS\SiRemFil.sys [17200 2007-04-03] (Silicon Image, Inc.)
4 SiSRaid2; C:\Windows\System32\drivers\sisraid2.sys [45624 2008-01-20] (Microsoft Corporation)
4 SiSRaid4; C:\Windows\System32\drivers\sisraid4.sys [78392 2008-01-20] (Silicon Integrated Systems)
2 slsvc; C:\Windows\System32\SLsvc.exe [2161664 2008-01-20] (Microsoft Corporation)
3 SLUINotify; C:\Windows\System32\SLUINotify.dll [71168 2008-01-20] (Microsoft Corporation)
1 Smb; C:\Windows\System32\DRIVERS\smb.sys [88064 2008-01-20] (Microsoft Corporation)
3 SNMPTRAP; C:\Windows\System32\snmptrap.exe [14336 2006-11-02] (Microsoft Corporation)
0 spldr; C:\Windows\System32\Drivers\spldr.sys [21048 2008-01-20] (Microsoft Corporation)
2 Spooler; C:\Windows\System32\spoolsv.exe [267776 2010-08-17] (Microsoft Corporation)
3 srv; C:\Windows\System32\DRIVERS\srv.sys [461824 2010-09-06] (Microsoft Corporation)
3 srv2; C:\Windows\System32\DRIVERS\srv2.sys [175104 2010-09-06] (Microsoft Corporation)
3 srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [144896 2010-09-06] (Microsoft Corporation)
3 SSDPSRV; C:\Windows\System32\ssdpsrv.dll [185856 2008-01-20] (Microsoft Corporation)
3 SstpSvc; C:\Windows\System32\sstpsvc.dll [141312 2008-01-20] (Microsoft Corporation)
2 STacSV; C:\Windows\system32\STacSV64.exe [242688 2007-11-09] (IDT, Inc.)
3 STHDA; C:\Windows\System32\DRIVERS\stwrt64.sys [423936 2007-11-09] (IDT, Inc.)
3 StillCam; C:\Windows\System32\DRIVERS\serscan.sys [12288 2008-01-20] (Microsoft Corporation)
2 stisvc; C:\Windows\System32\wiaservc.dll [571392 2008-01-20] (Microsoft Corporation)
3 swenum; C:\Windows\System32\DRIVERS\swenum.sys [13032 2008-01-20] (Microsoft Corporation)
3 swprv; C:\Windows\System32\swprv.dll [480768 2008-01-20] (Microsoft Corporation)
4 Symc8xx; C:\Windows\System32\drivers\symc8xx.sys [49256 2006-11-02] (LSI Logic)
4 Sym_hi; C:\Windows\System32\drivers\sym_hi.sys [44648 2006-11-02] (LSI Logic)
4 Sym_u3; C:\Windows\System32\drivers\sym_u3.sys [48232 2006-11-02] (LSI Logic)
3 SynTP; C:\Windows\System32\DRIVERS\SynTP.sys [320560 2008-01-17] (Synaptics, Inc.)
2 SysMain; C:\Windows\System32\sysmain.dll [840192 2008-01-20] (Microsoft Corporation)
2 TabletInputService; C:\Windows\System32\TabSvc.dll [84992 2006-11-02] (Microsoft Corporation)
3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [30720 2010-11-08] (The OpenVPN Project)
3 TapiSrv; C:\Windows\System32\tapisrv.dll [318464 2008-01-20] (Microsoft Corporation)
2 TBS; C:\Windows\System32\tbssvc.dll [65536 2008-01-20] (Microsoft Corporation)
0 Tcpip; C:\Windows\System32\drivers\tcpip.sys [1420176 2010-06-16] (Microsoft Corporation)
3 Tcpip6; C:\Windows\System32\DRIVERS\tcpip.sys [1420176 2010-06-16] (Microsoft Corporation)
2 tcpipreg; C:\Windows\System32\drivers\tcpipreg.sys [38400 2008-01-20] (Microsoft Corporation)
3 TDPIPE; C:\Windows\System32\drivers\tdpipe.sys [16384 2008-01-20] (Microsoft Corporation)
3 TDTCP; C:\Windows\System32\drivers\tdtcp.sys [29696 2008-01-20] (Microsoft Corporation)
1 tdx; C:\Windows\System32\DRIVERS\tdx.sys [94208 2008-01-20] (Microsoft Corporation)
2 TeamViewer6; C:\Program Files (x86)\TeamViewer\Version6\TeamViewer_Service.exe [2228008 2010-12-07] (TeamViewer GmbH)
1 TermDD; C:\Windows\System32\DRIVERS\termdd.sys [63544 2008-01-20] (Microsoft Corporation)
2 TermService; C:\Windows\System32\termsrv.dll [546816 2008-01-20] (Microsoft Corporation)
2 Themes; C:\Windows\System32\shsvcs.dll [301568 2009-07-10] (Microsoft Corporation)
3 THREADORDER; C:\Windows\System32\mmcss.dll [37888 2008-01-20] (Microsoft Corporation)
2 TrkWks; C:\Windows\System32\trkwks.dll [117248 2008-01-20] (Microsoft Corporation)
3 TrustedInstaller; C:\Windows\servicing\TrustedInstaller.exe [42496 2008-01-20] (Microsoft Corporation)
3 tssecsrv; C:\Windows\System32\DRIVERS\tssecsrv.sys [29184 2008-01-20] (Microsoft Corporation)
3 tunmp; C:\Windows\System32\DRIVERS\tunmp.sys [18432 2008-01-20] (Microsoft Corporation)
3 tunnel; C:\Windows\System32\DRIVERS\tunnel.sys [29696 2010-02-18] (Microsoft Corporation)
3 uagp35; C:\Windows\System32\drivers\uagp35.sys [67128 2008-01-20] (Microsoft Corporation)
4 udfs; C:\Windows\System32\DRIVERS\udfs.sys [299520 2008-01-20] (Microsoft Corporation)
3 UI0Detect; C:\Windows\System32\UI0Detect.exe [40960 2008-01-20] (Microsoft Corporation)
3 uliagpkx; C:\Windows\System32\drivers\uliagpkx.sys [68152 2008-01-20] (Microsoft Corporation)
4 uliahci; C:\Windows\System32\drivers\uliahci.sys [284728 2008-01-20] (ULi Electronics Inc.)
4 UlSata; C:\Windows\System32\drivers\ulsata.sys [148072 2006-11-02] (Promise Technology, Inc.)
4 ulsata2; C:\Windows\System32\drivers\ulsata2.sys [174696 2008-01-20] (Promise Technology, Inc.)
3 umbus; C:\Windows\System32\DRIVERS\umbus.sys [41984 2008-01-20] (Microsoft Corporation)
2 upnphost; C:\Windows\System32\upnphost.dll [344576 2008-01-20] (Microsoft Corporation)
3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [44544 2009-03-05] (Apple, Inc.)
3 usbccgp; C:\Windows\System32\DRIVERS\usbccgp.sys [95744 2008-01-20] (Microsoft Corporation)
4 usbcir; C:\Windows\System32\drivers\usbcir.sys [79360 2006-11-02] (Microsoft Corporation)
3 usbehci; C:\Windows\System32\DRIVERS\usbehci.sys [49152 2008-01-20] (Microsoft Corporation)
3 usbhub; C:\Windows\System32\DRIVERS\usbhub.sys [270336 2008-01-20] (Microsoft Corporation)
4 usbohci; C:\Windows\System32\DRIVERS\usbohci.sys [24064 2008-01-20] (Microsoft Corporation)
3 usbprint; C:\Windows\System32\DRIVERS\usbprint.sys [24064 2008-01-20] (Microsoft Corporation)
3 usbscan; C:\Windows\System32\DRIVERS\usbscan.sys [41984 2008-01-20] (Microsoft Corporation)
3 USBSTOR; C:\Windows\System32\DRIVERS\USBSTOR.SYS [66048 2008-01-20] (Microsoft Corporation)
3 usbuhci; C:\Windows\System32\DRIVERS\usbuhci.sys [29184 2008-01-20] (Microsoft Corporation)
3 usbvideo; C:\Windows\System32\Drivers\usbvideo.sys [168704 2008-01-20] (Microsoft Corporation)
3 UVCFTR; C:\Windows\System32\Drivers\UVCFTR_S.SYS [20784 2007-05-23] (Chicony Electronics Co., Ltd.)
2 UxSms; C:\Windows\System32\uxsms.dll [32768 2008-01-20] (Microsoft Corporation)
3 vds; C:\Windows\System32\vds.exe [453120 2008-01-20] (Microsoft Corporation)
3 vga; C:\Windows\System32\DRIVERS\vgapnp.sys [29184 2008-01-20] (Microsoft Corporation)
1 VgaSave; C:\Windows\System32\drivers\vga.sys [28672 2008-01-20] (Microsoft Corporation)
4 viaide; C:\Windows\System32\drivers\viaide.sys [18024 2008-01-20] (VIA Technologies, Inc.)
0 volmgr; C:\Windows\System32\drivers\volmgr.sys [68664 2008-01-20] (Microsoft Corporation)
0 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [409656 2008-01-20] (Microsoft Corporation)
0 volsnap; C:\Windows\System32\drivers\volsnap.sys [271416 2008-01-20] (Microsoft Corporation)
4 vsmraid; C:\Windows\System32\drivers\vsmraid.sys [149048 2008-01-20] (VIA Technologies Inc.,Ltd)
3 VSS; C:\Windows\System32\vssvc.exe [1432576 2008-01-20] (Microsoft Corporation)
2 W32Time; C:\Windows\System32\w32time.dll [372736 2008-01-20] (Microsoft Corporation)
4 WacomPen; C:\Windows\System32\drivers\wacompen.sys [26624 2006-11-02] (Microsoft Corporation)
3 Wanarp; C:\Windows\System32\DRIVERS\wanarp.sys [86016 2008-01-20] (Microsoft Corporation)
1 Wanarpv6; C:\Windows\System32\DRIVERS\wanarp.sys [86016 2008-01-20] (Microsoft Corporation)
3 wcncsvc; C:\Windows\System32\wcncsvc.dll [580608 2008-01-20] (Microsoft Corporation)
3 WcsPlugInService; C:\Windows\System32\WcsPlugInService.dll [39936 2006-11-02] (Microsoft Corporation)
4 Wd; C:\Windows\System32\drivers\wd.sys [24120 2008-01-20] (Microsoft Corporation)
0 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [881720 2008-01-20] (Microsoft Corporation)
3 WdiServiceHost; C:\Windows\System32\wdi.dll [81920 2008-01-20] (Microsoft Corporation)
3 WdiSystemHost; C:\Windows\System32\wdi.dll [81920 2008-01-20] (Microsoft Corporation)
2 WebClient; C:\Windows\System32\webclnt.dll [214016 2008-01-20] (Microsoft Corporation)
3 Wecsvc; C:\Windows\System32\wecsvc.dll [232960 2009-10-09] (Microsoft Corporation)
3 wercplsupport; C:\Windows\System32\wercplsupport.dll [85504 2006-11-02] (Microsoft Corporation)
2 WerSvc; C:\Windows\System32\WerSvc.dll [120832 2008-09-17] (Microsoft Corporation)
2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [383544 2008-01-20] (Microsoft Corporation)
3 WinHttpAutoProxySvc; C:\Windows\System32\winhttp.dll [442368 2009-08-24] (Microsoft Corporation)
2 Winmgmt; C:\Windows\System32\wbem\WMIsvc.dll [221696 2008-01-20] (Microsoft Corporation)
3 WinRM; C:\Windows\System32\WsmSvc.dll [2050048 2009-10-09] (Microsoft Corporation)
2 Wlansvc; C:\Windows\System32\wlansvc.dll [615936 2009-07-11] (Microsoft Corporation)
3 WmBEnum; C:\Windows\System32\drivers\WmBEnum.sys [26248 2009-09-11] (Logitech Inc.)
3 WmFilter; C:\Windows\System32\drivers\WmFilter.sys [41096 2009-09-11] (Logitech Inc.)
3 WmiAcpi; C:\Windows\System32\DRIVERS\wmiacpi.sys [14336 2008-01-20] (Microsoft Corporation)
3 wmiApSrv; C:\Windows\System32\wbem\WmiApSrv.exe [209920 2008-01-20] (Microsoft Corporation)
3 WMPNetworkSvc; "C:\Program Files\Windows Media Player\wmpnetwk.exe" [1216000 2008-01-20] (Microsoft Corporation)
3 WmVirHid; C:\Windows\System32\drivers\WmVirHid.sys [15880 2009-09-11] (Logitech Inc.)
3 WmXlCore; C:\Windows\System32\drivers\WmXlCore.sys [76552 2009-09-11] (Logitech Inc.)
3 WPCSvc; C:\Windows\System32\wpcsvc.dll [173568 2008-01-20] (Microsoft Corporation)
2 WPDBusEnum; C:\Windows\System32\wpdbusenum.dll [92672 2008-01-20] (Microsoft Corporation)
3 WpdUsb; C:\Windows\System32\DRIVERS\wpdusb.sys [46080 2008-01-20] (Microsoft Corporation)
3 WPFFontCache_v0400; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\WPF\WPFFontCache_v0400.exe [1020768 2010-03-18] (Microsoft Corporation)
4 ws2ifsl; C:\Windows\System32\drivers\ws2ifsl.sys [20992 2008-01-20] (Microsoft Corporation)
2 wscsvc; C:\Windows\System32\wscsvc.dll [74752 2008-01-20] (Microsoft Corporation)
2 WSearch; C:\Windows\System32\SearchIndexer.exe /Embedding [598016 2008-05-26] (Microsoft Corporation)
2 wuauserv; C:\Windows\System32\wuaueng.dll [2424024 2009-08-06] (Microsoft Corporation)
3 WUDFRd; C:\Windows\System32\DRIVERS\WUDFRd.sys [108544 2008-01-20] (Microsoft Corporation)
2 wudfsvc; C:\Windows\System32\WUDFSvc.dll [66560 2008-01-20] (Microsoft Corporation)
2 YahooAUService; "C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe" [602392 2008-11-09] (Yahoo! Inc.)
3 Afc; SysWOW64\drivers\Afc.sys [x]
1 archlp; SysWOW64\drivers\archlp.sys [x]
3 aspnet_state; [x]
1 Beep; [x]
3 catchme; \??\C:\ComboFix\catchme.sys [x]
3 getPlusHelper; [x]
3 IpInIp; [x]
1 mferkdk; \??\C:\Program Files (x86)\McAfee\VirusScan Enterprise\x64\mferkdk.sys [x]
3 NwlnkFlt; [x]
3 NwlnkFwd; [x]
3 SymIM; [x]
3 SymIMMP; [x]
2 Viewpoint Manager Service; "C:\Program Files (x86)\Viewpoint\Common\ViewpointService.exe" [x]
========================= NetSvcs ============================
============ One Month Created Files and folders ============
2011-03-20 18:37 - 2011-03-20 18:37 - 0000000 ____D C:\FRST
2011-03-18 22:49 - 2011-03-19 09:45 - 0000000 ____D C:\Windows\Minidump
2011-03-18 22:49 - 2011-03-18 22:49 - 0286312 ____A C:\Windows\Minidump\Mini031911-01.dmp
2011-03-18 22:47 - 2011-03-19 09:45 - 535353066 ____A C:\Windows\MEMORY.DMP
2011-03-18 22:45 - 2011-03-18 22:45 - 0566272 ____A (AVAST Software) C:\Users\Owner\Desktop\aswMBR.exe
2011-03-18 13:05 - 2011-03-18 13:04 - 0051382 ____A C:\Users\Owner\Desktop\l59in.png
2011-03-18 12:49 - 2011-03-18 12:49 - 1178154 ____A C:\Users\Owner\Desktop\camo.bmp
2011-03-18 09:04 - 2011-03-18 09:04 - 0020364 ____A C:\Users\Owner\Desktop\explorer.exe.txt
2011-03-18 09:03 - 2011-03-14 08:52 - 3404136 ____A (Sysinternals -
Windows Sysinternals: Documentation, downloads and additional resources) C:\Users\Owner\Desktop\procexp.exe
2011-03-18 09:03 - 2010-03-24 07:09 - 0072268 ____A C:\Users\Owner\Desktop\procexp.chm
2011-03-18 09:03 - 2006-07-28 05:32 - 0007005 ____N C:\Users\Owner\Desktop\Eula.txt
2011-03-18 09:02 - 2011-03-18 09:02 - 1544204 ____A C:\Users\Owner\Desktop\ProcessExplorer.zip
2011-03-18 09:01 - 2011-03-18 09:01 - 0000990 ____A C:\Windows\System32\look.txt
2011-03-18 09:01 - 2011-03-18 09:01 - 0000119 ____A C:\Users\Owner\Desktop\look.bat
2011-03-18 08:52 - 2011-03-18 08:52 - 0000000 __SHD C:\$RECYCLE.BIN
2011-03-18 08:25 - 2011-03-18 08:25 - 0152754 ____A C:\Users\Owner\Desktop\none.jpg
2011-03-17 14:47 - 2011-03-17 14:47 - 1029000 ____A (Skype Technologies S.A.) C:\Users\Owner\Desktop\SkypeSetup.exe
2011-03-17 14:30 - 2011-03-17 14:30 - 0019905 ____A C:\ComboFix.txt
2011-03-17 14:16 - 2000-08-31 04:00 - 0212480 ____A (SteelWerX) C:\Windows\SWXCACLS.exe
2011-03-17 12:19 - 2011-03-17 12:14 - 0103860 ____A C:\Users\Owner\Desktop\logan3.jpg
2011-03-17 12:19 - 2011-03-17 12:13 - 0101400 ____A C:\Users\Owner\Desktop\logan2.jpg
2011-03-17 12:19 - 2011-03-17 12:12 - 0084151 ____A C:\Users\Owner\Desktop\logan.jpg
2011-03-17 08:15 - 2011-03-17 08:40 - 0000000 ____D C:\Windows\ERDNT
2011-03-17 08:15 - 2011-03-17 08:13 - 4289556 ___RA C:\Users\Owner\Desktop\ComboFix.exe
2011-03-17 08:15 - 2010-11-07 21:20 - 0089088 ____A C:\Windows\MBR.exe
2011-03-17 08:15 - 2010-04-26 11:58 - 0256512 ____A C:\Windows\PEV.exe
2011-03-17 08:15 - 2009-04-20 08:56 - 0031232 ____A (NirSoft) C:\Windows\NIRCMD.exe
2011-03-17 08:15 - 2000-08-31 04:00 - 0161792 ____A (SteelWerX) C:\Windows\SWREG.exe
2011-03-17 08:15 - 2000-08-31 04:00 - 0136704 ____A (SteelWerX) C:\Windows\SWSC.exe
2011-03-17 08:15 - 2000-08-31 04:00 - 0098816 ____A C:\Windows\sed.exe
2011-03-17 08:15 - 2000-08-31 04:00 - 0080412 ____A C:\Windows\grep.exe
2011-03-17 08:15 - 2000-08-31 04:00 - 0068096 ____A C:\Windows\zip.exe
2011-03-17 08:14 - 2011-03-17 14:30 - 0000000 ___AD C:\Qoobox
2011-03-16 23:11 - 2011-03-20 14:29 - 1373815 ___AH C:\Users\Owner\Local Settings\IconCache.db
2011-03-16 23:11 - 2011-03-20 14:29 - 1373815 ___AH C:\Users\Owner\Local Settings\Application Data\IconCache.db
2011-03-16 23:11 - 2011-03-20 14:29 - 1373815 ___AH C:\Users\Owner\AppData\Local\IconCache.db
2011-03-16 21:58 - 2011-03-16 21:58 - 0022227 ____A C:\Users\Owner\Desktop\DDS.txt
2011-03-16 21:58 - 2011-03-16 21:58 - 0008740 ____A C:\Users\Owner\Desktop\Attach.txt
2011-03-16 21:54 - 2011-03-16 21:54 - 0625664 ____A C:\Users\Owner\Desktop\dds.scr
2011-03-16 12:48 - 2011-03-16 12:48 - 0000966 ____A C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
2011-03-16 12:48 - 2011-03-16 12:48 - 0000966 ____A C:\Users\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
2011-03-16 12:48 - 2011-03-16 12:48 - 0000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malwaree
2011-03-15 22:58 - 2011-03-15 22:58 - 0000336 ___AH C:\Users\All Users\Application Data\47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000336 ___AH C:\Users\All Users\47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000336 ___AH C:\ProgramData\47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000144 ___AH C:\Users\All Users\Application Data\~47898376r
2011-03-15 22:58 - 2011-03-15 22:58 - 0000144 ___AH C:\Users\All Users\~47898376r
2011-03-15 22:58 - 2011-03-15 22:58 - 0000144 ___AH C:\ProgramData\~47898376r
2011-03-15 22:58 - 2011-03-15 22:58 - 0000112 ___AH C:\Users\All Users\Application Data\~47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000112 ___AH C:\Users\All Users\~47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000112 ___AH C:\ProgramData\~47898376
2011-03-15 22:48 - 2011-03-15 22:48 - 0000000 ____D C:\Windows\Sun
2011-03-14 23:29 - 2011-03-14 21:18 - 0000386 ___AH C:\Users\Owner\My Documents\ovpn152.ovpn
2011-03-14 23:29 - 2011-03-14 21:18 - 0000386 ___AH C:\Users\Owner\Documents\ovpn152.ovpn
2011-03-14 23:26 - 2011-03-14 23:26 - 0000971 ___AH C:\Users\Owner\Desktop\OpenVPN GUI.lnk
2011-03-14 23:24 - 2011-03-14 23:26 - 0000000 ___HD C:\Program Files (x86)\OpenVPN
2011-03-14 23:00 - 2011-03-14 23:00 - 0008100 ___AH C:\Users\Owner\My Documents\vpn-in52_ovpn152_d9df4dea.zip
2011-03-14 23:00 - 2011-03-14 23:00 - 0008100 ___AH C:\Users\Owner\Documents\vpn-in52_ovpn152_d9df4dea.zip
2011-03-09 13:18 - 2010-12-29 09:53 - 0560128 ____A (Microsoft Corporation) C:\Windows\System32\EncDec.dll
2011-03-09 13:18 - 2010-12-29 09:53 - 0416768 ____A (Microsoft Corporation) C:\Windows\System32\sbe.dll
2011-03-09 13:18 - 2010-12-29 09:53 - 0210944 ____A (Microsoft Corporation) C:\Windows\System32\sbeio.dll
2011-03-09 13:18 - 2010-12-29 09:51 - 0226816 ____A (Microsoft Corporation) C:\Windows\System32\mpg2splt.ax
2011-03-09 13:18 - 2010-12-29 09:41 - 0429056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2011-03-09 13:18 - 2010-12-29 09:41 - 0323072 ____A (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll
2011-03-09 13:18 - 2010-12-29 09:41 - 0153088 ____A (Microsoft Corporation) C:\Windows\SysWOW64\sbeio.dll
2011-03-09 13:18 - 2010-12-29 09:39 - 0177664 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2011-03-09 13:18 - 2010-12-17 09:12 - 2424320 ____A (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2011-03-09 13:18 - 2010-12-17 08:43 - 2067456 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2011-03-09 13:18 - 2010-12-17 07:35 - 0730624 ____A (Microsoft Corporation) C:\Windows\System32\mstsc.exe
2011-03-09 13:18 - 2010-12-17 07:06 - 0677888 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2011-03-04 07:00 - 2011-03-04 07:00 - 0377352 ___AH C:\Users\Owner\Local Settings\dd_vcredistMSI174F.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0377352 ___AH C:\Users\Owner\Local Settings\Application Data\dd_vcredistMSI174F.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0377352 ___AH C:\Users\Owner\AppData\Local\dd_vcredistMSI174F.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0369890 ___AH C:\Users\Owner\Local Settings\dd_vcredistMSI170B.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0369890 ___AH C:\Users\Owner\Local Settings\Application Data\dd_vcredistMSI170B.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0369890 ___AH C:\Users\Owner\AppData\Local\dd_vcredistMSI170B.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0011204 ___AH C:\Users\Owner\Local Settings\dd_vcredistUI174F.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0011204 ___AH C:\Users\Owner\Local Settings\Application Data\dd_vcredistUI174F.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0011204 ___AH C:\Users\Owner\AppData\Local\dd_vcredistUI174F.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0011156 ___AH C:\Users\Owner\Local Settings\dd_vcredistUI170B.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0011156 ___AH C:\Users\Owner\Local Settings\Application Data\dd_vcredistUI170B.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0011156 ___AH C:\Users\Owner\AppData\Local\dd_vcredistUI170B.txt
2011-03-04 07:00 - 2011-03-04 07:00 - 0000000 ____A C:\Windows\wsftperr.log
2011-03-03 20:29 - 2011-03-14 22:56 - 0000000 ___HD C:\Users\Owner\Documents\imgmon.com
2011-03-03 14:20 - 2011-03-03 14:21 - 0000000 ___HD C:\Users\Owner\My Documents\images
2011-03-03 14:20 - 2011-03-03 14:21 - 0000000 ___HD C:\Users\Owner\Documents\images
2011-03-02 13:52 - 2011-03-02 13:52 - 0013078 ___AH C:\Users\Owner\My Documents\Content.docx
2011-03-02 13:52 - 2011-03-02 13:52 - 0013078 ___AH C:\Users\Owner\Documents\Content.docx
2011-03-02 13:41 - 2011-03-02 13:41 - 0000000 __SHD C:\Windows\System32\%APPDATA%
2011-03-01 10:06 - 2011-03-01 10:06 - 0000000 ____D C:\Windows\SysWOW64\WindowsPowerShell
2011-03-01 10:06 - 2011-03-01 10:06 - 0000000 ____D C:\Windows\System32\WindowsPowerShell
2011-03-01 10:04 - 2009-10-09 13:56 - 1181696 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2011-03-01 10:04 - 2009-10-09 13:56 - 0246272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2011-03-01 10:04 - 2009-10-09 13:56 - 0241152 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winrscmd.dll
2011-03-01 10:04 - 2009-10-09 13:56 - 0214016 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2011-03-01 10:04 - 2009-10-09 13:56 - 0145408 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2011-03-01 10:04 - 2009-10-09 13:56 - 0041472 ____A (Microsoft Corporation) C:\Windows\SysWOW64\pwrshplugin.dll
2011-03-01 10:04 - 2009-10-09 13:56 - 0040448 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winrs.exe
2011-03-01 10:04 - 2009-10-09 13:56 - 0020480 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winrshost.exe
2011-03-01 10:04 - 2009-10-09 13:56 - 0012800 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wsmprovhost.exe
2011-03-01 10:04 - 2009-10-09 13:56 - 0010240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wsmplpxy.dll
2011-03-01 10:04 - 2009-10-09 13:56 - 0010240 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winrssrv.dll
2011-03-01 10:04 - 2009-10-09 13:56 - 0002048 ____A (Microsoft Corporation) C:\Windows\SysWOW64\winrsmgr.dll
2011-03-01 10:04 - 2009-10-09 13:55 - 0252416 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2011-03-01 10:04 - 2009-10-09 13:55 - 0081408 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wevtfwd.dll
2011-03-01 10:04 - 2009-10-09 13:55 - 0079872 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wecutil.exe
2011-03-01 10:04 - 2009-10-09 13:55 - 0056320 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wecapi.dll
2011-03-01 10:04 - 2009-10-09 13:55 - 0054272 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WsmRes.dll
2011-03-01 10:04 - 2009-10-09 13:36 - 2050048 ____A (Microsoft Corporation) C:\Windows\System32\WsmSvc.dll
2011-03-01 10:04 - 2009-10-09 13:36 - 0053760 ____A (Microsoft Corporation) C:\Windows\System32\pwrshplugin.dll
2011-03-01 10:04 - 2009-10-09 13:35 - 0310272 ____A (Microsoft Corporation) C:\Windows\System32\WsmWmiPl.dll
2011-03-01 10:04 - 2009-10-09 13:35 - 0051200 ____A (Microsoft Corporation) C:\Windows\System32\winrs.exe
2011-03-01 10:04 - 2009-10-09 13:35 - 0024064 ____A (Microsoft Corporation) C:\Windows\System32\winrshost.exe
2011-03-01 10:04 - 2009-10-09 13:35 - 0013824 ____A (Microsoft Corporation) C:\Windows\System32\wsmprovhost.exe
2011-03-01 10:04 - 2009-10-09 13:35 - 0013312 ____A (Microsoft Corporation) C:\Windows\System32\wsmplpxy.dll
2011-03-01 10:04 - 2009-10-09 13:35 - 0002048 ____A (Microsoft Corporation) C:\Windows\System32\winrsmgr.dll
2011-03-01 10:04 - 2009-10-09 13:34 - 0370688 ____A (Microsoft Corporation) C:\Windows\System32\winrscmd.dll
2011-03-01 10:04 - 2009-10-09 13:34 - 0352768 ____A (Microsoft Corporation) C:\Windows\System32\WSManMigrationPlugin.dll
2011-03-01 10:04 - 2009-10-09 13:34 - 0348672 ____A (Microsoft Corporation) C:\Windows\System32\WSManHTTPConfig.exe
2011-03-01 10:04 - 2009-10-09 13:34 - 0232960 ____A (Microsoft Corporation) C:\Windows\System32\wecsvc.dll
2011-03-01 10:04 - 2009-10-09 13:34 - 0180736 ____A (Microsoft Corporation) C:\Windows\System32\WsmAuto.dll
2011-03-01 10:04 - 2009-10-09 13:34 - 0113152 ____A (Microsoft Corporation) C:\Windows\System32\wevtfwd.dll
2011-03-01 10:04 - 2009-10-09 13:34 - 0113152 ____A (Microsoft Corporation) C:\Windows\System32\wecutil.exe
2011-03-01 10:04 - 2009-10-09 13:34 - 0084992 ____A (Microsoft Corporation) C:\Windows\System32\wecapi.dll
2011-03-01 10:04 - 2009-10-09 13:34 - 0054272 ____A (Microsoft Corporation) C:\Windows\System32\WsmRes.dll
2011-03-01 10:04 - 2009-10-09 13:34 - 0013312 ____A (Microsoft Corporation) C:\Windows\System32\winrssrv.dll
2011-03-01 10:04 - 2009-07-31 22:27 - 0201184 ____A C:\Windows\SysWOW64\winrm.vbs
2011-03-01 10:04 - 2009-07-31 22:27 - 0201184 ____A C:\Windows\System32\winrm.vbs
2011-03-01 10:04 - 2009-07-16 09:30 - 0004675 ____A C:\Windows\SysWOW64\wsmanconfig_schema.xml
2011-03-01 10:04 - 2009-07-16 09:30 - 0004675 ____A C:\Windows\System32\wsmanconfig_schema.xml
2011-03-01 10:04 - 2009-07-16 09:30 - 0002426 ____A C:\Windows\SysWOW64\WsmTxt.xsl
2011-03-01 10:04 - 2009-07-16 09:30 - 0002426 ____A C:\Windows\System32\WsmTxt.xsl
2011-02-20 15:12 - 2011-02-10 20:52 - 0108391 ___AH C:\Users\Owner\My Documents\coldboot.raf
2011-02-20 15:12 - 2011-02-10 20:52 - 0108391 ___AH C:\Users\Owner\Documents\coldboot.raf
2011-02-20 15:08 - 2011-02-20 11:23 - 2336720 ___AH C:\Users\Owner\My Documents\Cold Boot Creator Source.zip
2011-02-20 15:08 - 2011-02-20 11:23 - 2336720 ___AH C:\Users\Owner\Documents\Cold Boot Creator Source.zip
2011-02-20 15:08 - 2011-02-20 11:23 - 0873335 ___AH C:\Users\Owner\My Documents\Windows Logo Example.rar
2011-02-20 15:08 - 2011-02-20 11:23 - 0873335 ___AH C:\Users\Owner\Documents\Windows Logo Example.rar
2011-02-20 15:08 - 2011-02-20 11:23 - 0855247 ___AH C:\Users\Owner\My Documents\Boot Logo Creator.zip
2011-02-20 15:08 - 2011-02-20 11:23 - 0855247 ___AH C:\Users\Owner\Documents\Boot Logo Creator.zip
2011-02-20 15:07 - 2011-02-20 15:07 - 4125140 ___AH C:\Users\Owner\My Documents\ps3-boot-logo-creator.zip
2011-02-20 15:07 - 2011-02-20 15:07 - 4125140 ___AH C:\Users\Owner\Documents\ps3-boot-logo-creator.zip
============ 3 Months Modified Files and folders =============
2011-03-20 18:37 - 2011-03-20 18:37 - 0000000 ____D C:\FRST
2011-03-20 14:29 - 2011-03-20 14:29 - 0000342 ____A C:\Users\Owner\Desktop\bullish.txt
2011-03-20 14:29 - 2011-03-16 23:11 - 1373815 ___AH C:\Users\Owner\Local Settings\IconCache.db
2011-03-20 14:29 - 2011-03-16 23:11 - 1373815 ___AH C:\Users\Owner\Local Settings\Application Data\IconCache.db
2011-03-20 14:29 - 2011-03-16 23:11 - 1373815 ___AH C:\Users\Owner\AppData\Local\IconCache.db
2011-03-20 14:29 - 2008-03-21 18:36 - 1120587 ____A C:\Windows\WindowsUpdate.log
2011-03-20 14:29 - 2008-03-21 18:36 - 0000012 ____A C:\Windows\bthservsdp.dat
2011-03-20 14:29 - 2006-11-02 07:42 - 0032612 ____A C:\Windows\Tasks\SCHEDLGU.TXT
2011-03-20 14:29 - 2006-11-02 07:42 - 0000006 ___AH C:\Windows\Tasks\SA.DAT
2011-03-20 14:29 - 2006-11-02 07:22 - 0003216 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2011-03-20 14:29 - 2006-11-02 07:22 - 0003216 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2011-03-20 14:28 - 2006-11-02 04:46 - 0720866 ____A C:\Windows\System32\PerfStringBackup.INI
2011-03-20 14:28 - 2006-11-02 04:46 - 0616174 ____A C:\Windows\System32\perfh009.dat
2011-03-20 14:28 - 2006-11-02 04:46 - 0109040 ____A C:\Windows\System32\perfc009.dat
2011-03-20 14:27 - 2009-11-06 12:43 - 0022854 ____A C:\Windows\setupact.log
2011-03-20 11:16 - 2010-04-15 19:59 - 0000898 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2011-03-20 10:20 - 2011-03-20 10:20 - 0101013 ____A C:\Users\Owner\Desktop\Analytics_www.kh-vids.net_20110217-20110319_(DashboardReport).pdf
2011-03-20 09:58 - 2010-10-04 22:48 - 0000908 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-987286777-748312672-3327065692-1000UA.job
2011-03-19 22:58 - 2010-10-04 22:48 - 0000856 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-987286777-748312672-3327065692-1000Core.job
2011-03-19 09:48 - 2009-11-03 05:59 - 0000000 ___HD C:\Users\Owner\Tracing
2011-03-19 09:46 - 2010-04-15 19:59 - 0000894 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2011-03-19 09:45 - 2011-03-19 09:45 - 0286312 ____A C:\Windows\Minidump\Mini031911-02.dmp
2011-03-19 09:45 - 2011-03-18 22:49 - 0000000 ____D C:\Windows\Minidump
2011-03-19 09:45 - 2011-03-18 22:47 - 535353066 ____A C:\Windows\MEMORY.DMP
2011-03-18 22:49 - 2011-03-18 22:49 - 0286312 ____A C:\Windows\Minidump\Mini031911-01.dmp
2011-03-18 22:45 - 2011-03-18 22:45 - 0566272 ____A (AVAST Software) C:\Users\Owner\Desktop\aswMBR.exe
2011-03-18 09:04 - 2011-03-18 09:04 - 0020364 ____A C:\Users\Owner\Desktop\explorer.exe.txt
2011-03-18 09:02 - 2011-03-18 09:02 - 1544204 ____A C:\Users\Owner\Desktop\ProcessExplorer.zip
2011-03-18 09:01 - 2011-03-18 09:01 - 0000990 ____A C:\Windows\System32\look.txt
2011-03-18 09:01 - 2011-03-18 09:01 - 0000119 ____A C:\Users\Owner\Desktop\look.bat
2011-03-18 08:58 - 2010-10-04 22:49 - 0002053 ___AH C:\Users\Owner\Desktop\Google Chrome.lnk
2011-03-18 08:52 - 2011-03-18 08:52 - 0000000 __SHD C:\$RECYCLE.BIN
2011-03-18 08:51 - 2008-01-20 19:26 - 0199610 ____A C:\Windows\PFRO.log
2011-03-18 08:25 - 2011-03-18 08:25 - 0152754 ____A C:\Users\Owner\Desktop\none.jpg
2011-03-17 14:47 - 2011-03-17 14:47 - 1029000 ____A (Skype Technologies S.A.) C:\Users\Owner\Desktop\SkypeSetup.exe
2011-03-17 14:30 - 2011-03-17 14:30 - 0019905 ____A C:\ComboFix.txt
2011-03-17 14:30 - 2011-03-17 08:14 - 0000000 ___AD C:\Qoobox
2011-03-17 14:27 - 2006-11-02 04:34 - 0000215 ____A C:\Windows\system.ini
2011-03-17 08:41 - 2006-11-02 05:33 - 0000000 __RHD C:\users\Public
2011-03-17 08:41 - 2006-11-02 05:33 - 0000000 __RHD C:\users\Default
2011-03-17 08:40 - 2011-03-17 08:15 - 0000000 ____D C:\Windows\ERDNT
2011-03-17 08:13 - 2011-03-17 08:15 - 4289556 ___RA C:\Users\Owner\Desktop\ComboFix.exe
2011-03-16 23:17 - 2009-03-11 03:52 - 0001356 ____A C:\Users\Owner\Local Settings\d3d9caps.dat
2011-03-16 23:17 - 2009-03-11 03:52 - 0001356 ____A C:\Users\Owner\Local Settings\Application Data\d3d9caps.dat
2011-03-16 23:17 - 2009-03-11 03:52 - 0001356 ____A C:\Users\Owner\AppData\Local\d3d9caps.dat
2011-03-16 21:58 - 2011-03-16 21:58 - 0022227 ____A C:\Users\Owner\Desktop\DDS.txt
2011-03-16 21:58 - 2011-03-16 21:58 - 0008740 ____A C:\Users\Owner\Desktop\Attach.txt
2011-03-16 21:54 - 2011-03-16 21:54 - 0625664 ____A C:\Users\Owner\Desktop\dds.scr
2011-03-16 21:34 - 2010-12-11 11:28 - 0912506 ____A C:\Windows\ntbtlog.txt
2011-03-16 12:48 - 2011-03-16 12:48 - 0000966 ____A C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk
2011-03-16 12:48 - 2011-03-16 12:48 - 0000966 ____A C:\Users\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
2011-03-16 12:48 - 2011-03-16 12:48 - 0000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malwaree
2011-03-16 12:48 - 2006-11-02 05:33 - 0000000 ___RD C:\Program Files (x86)
2011-03-16 12:47 - 2011-02-01 16:25 - 0000480 ____A C:\rkill.log
2011-03-16 12:46 - 2011-02-01 16:28 - 0000000 ___HD C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-03-15 22:58 - 2011-03-15 22:58 - 0000336 ___AH C:\Users\All Users\Application Data\47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000336 ___AH C:\Users\All Users\47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000336 ___AH C:\ProgramData\47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000144 ___AH C:\Users\All Users\Application Data\~47898376r
2011-03-15 22:58 - 2011-03-15 22:58 - 0000144 ___AH C:\Users\All Users\~47898376r
2011-03-15 22:58 - 2011-03-15 22:58 - 0000144 ___AH C:\ProgramData\~47898376r
2011-03-15 22:58 - 2011-03-15 22:58 - 0000112 ___AH C:\Users\All Users\Application Data\~47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000112 ___AH C:\Users\All Users\~47898376
2011-03-15 22:58 - 2011-03-15 22:58 - 0000112 ___AH C:\ProgramData\~47898376
2011-03-15 22:48 - 2011-03-15 22:48 - 0000000 ____D C:\Windows\Sun
2011-03-15 22:34 - 2010-09-20 09:12 - 0000000 ___HD C:\Users\Owner\Application Data\Skype
2011-03-15 22:34 - 2010-09-20 09:12 - 0000000 ___HD C:\Users\Owner\AppData\Roaming\Skype
2011-03-15 21:54 - 2009-07-26 04:33 - 0000492 ___AH C:\Users\Owner\Application Data\wklnhst.dat
2011-03-15 21:54 - 2009-07-26 04:33 - 0000492 ___AH C:\Users\Owner\AppData\Roaming\wklnhst.dat
2011-03-15 20:07 - 2010-09-20 09:13 - 0000000 ___HD C:\Users\Owner\Application Data\skypePM
2011-03-15 20:07 - 2010-09-20 09:13 - 0000000 ___HD C:\Users\Owner\AppData\Roaming\skypePM
2011-03-15 09:09 - 2006-11-02 04:35 - 39946696 ____A (Microsoft Corporation) C:\Windows\System32\mrt.exe
2011-03-15 04:07 - 2011-03-15 04:07 - 0000056 ___AH C:\Windows\SysWOW64\ezsidmv.dat
2011-03-14 23:30 - 2011-03-14 23:29 - 0000000 ___HD C:\Users\Owner\My Documents\vpn ****
2011-03-14 23:30 - 2011-03-14 23:29 - 0000000 ___HD C:\Users\Owner\Documents\vpn ****
2011-03-14 23:26 - 2011-03-14 23:26 - 0000971 ___AH C:\Users\Owner\Desktop\OpenVPN GUI.lnk
2011-03-14 23:26 - 2011-03-14 23:24 - 0000000 ___HD C:\Program Files (x86)\OpenVPN
2011-03-14 23:24 - 2008-06-06 14:00 - 0000000 ___HD C:\users\Owner
2011-03-14 23:20 - 2010-09-05 10:47 - 0000000 ___HD C:\Users\Owner\Application Data\LimeWire
2011-03-14 23:20 - 2010-09-05 10:47 - 0000000 ___HD C:\Users\Owner\AppData\Roaming\LimeWire
2011-03-14 23:00 - 2011-03-14 23:00 - 0008100 ___AH C:\Users\Owner\My Documents\vpn-in52_ovpn152_d9df4dea.zip
2011-03-14 23:00 - 2011-03-14 23:00 - 0008100 ___AH C:\Users\Owner\Documents\vpn-in52_ovpn152_d9df4dea.zip
2011-03-14 23:00 - 2010-08-14 10:18 - 0000000 ___HD C:\Users\Owner\Application Data\CoreFTP
2011-03-14 23:00 - 2010-08-14 10:18 - 0000000 ___HD C:\Users\Owner\AppData\Roaming\CoreFTP
2011-03-14 08:52 - 2011-03-18 09:03 - 3404136 ____A (Sysinternals -
Windows Sysinternals: Documentation, downloads and additional resources) C:\Users\Owner\Desktop\procexp.exe
2011-03-10 13:45 - 2011-03-10 13:45 - 0073022 ___AH C:\Users\Owner\My Documents\Screen shot 2011-03-10 at 3.20.10 PM.png
2011-03-10 13:45 - 2011-03-10 13:45 - 0073022 ___AH C:\Users\Owner\Documents\Screen shot 2011-03-10 at 3.20.10 PM.png
2011-03-04 07:14 - 2010-07-12 15:45 - 0001805 ___AH C:\Users\Public\Desktop\Ipswitch WS_FTP 12.lnk
2011-03-04 07:14 - 2010-07-12 15:45 - 0001805 ___AH C:\Users\All Users\Desktop\Ipswitch WS_FTP 12.lnk
2011-03-04 07:14 - 2010-07-12 15:45 - 0000000 ___HD C:\Users\Owner\Application Data\Ipswitch
2011-03-04 07:14 - 2010-07-12 15:45 - 0000000 ___HD C:\Users\Owner\AppData\Roaming\Ipswitch
2011-03-04 07:00 - 2011-03-04 07:00 - 0000000 ____A C:\Windows\wsftperr.log
2011-03-04 07:00 - 2010-06-09 17:38 - 0000000 ____D C:\Config.Msi
2011-03-04 07:00 - 2006-11-02 05:33 - 0000000 ___HD C:\Program Files\Common Files\Microsoft Shared
2011-03-03 14:21 - 2011-03-03 14:20 - 0000000 ___HD C:\Users\Owner\My Documents\images
2011-03-03 14:21 - 2011-03-03 14:20 - 0000000 ___HD C:\Users\Owner\Documents\images
2011-03-02 18:09 - 2006-11-02 05:33 - 0000000 ____D C:\Windows\rescache
2011-03-02 13:52 - 2011-03-02 13:52 - 0013078 ___AH C:\Users\Owner\My Documents\Content.docx
2011-03-02 13:52 - 2011-03-02 13:52 - 0013078 ___AH C:\Users\Owner\Documents\Content.docx
2011-03-02 13:41 - 2011-03-02 13:41 - 0000000 __SHD C:\Windows\System32\%APPDATA%
2011-03-02 13:38 - 2011-03-02 13:38 - 0020406 ___AH C:\Users\Owner\My Documents\Marketing.docx
2011-03-02 13:38 - 2011-03-02 13:38 - 0020406 ___AH C:\Users\Owner\Documents\Marketing.docx
2011-03-01 10:11 - 2006-11-02 05:33 - 0000000 ____D C:\Windows\Microsoft.NET
2011-03-01 10:06 - 2011-03-01 10:06 - 0000000 ____D C:\Windows\SysWOW64\WindowsPowerShell
2011-03-01 10:06 - 2011-03-01 10:06 - 0000000 ____D C:\Windows\System32\WindowsPowerShell
2011-03-01 10:06 - 2006-11-02 05:33 - 0000000 ____D C:\Windows\PolicyDefinitions
2011-02-28 18:35 - 2010-04-15 18:24 - 0000000 ___HD C:\Users\Owner\Local Settings\Google
2011-02-28 18:35 - 2010-04-15 18:24 - 0000000 ___HD C:\Users\Owner\Local Settings\Application Data\Google
2011-02-28 18:35 - 2010-04-15 18:24 - 0000000 ___HD C:\Users\Owner\AppData\Local\Google
2011-02-24 18:25 - 2011-02-17 13:19 - 0000000 ___HD C:\Users\Owner\My Documents\My Received Files
2011-02-24 18:25 - 2011-02-17 13:19 - 0000000 ___HD C:\Users\Owner\Documents\My Received Files
**edited to remove personal .docx, .jpg, and .pdf files for privacy**