indypooh
2011-07-14, 19:35
You guys have helped before, giving it another shot. My PC seems to get slower daily. Things like videos and music (both online and from media) are choppy and unreliable
DDS Log
DDS (Ver_2011-07-14.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_26
Run by Jeff Graham at 12:23:24 on 2011-07-14
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.1979.568 [GMT -4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}
SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
C:\Windows\system32\svchost.exe -k HsfXAudioService
C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe
C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k HPService
c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe
C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
C:\Windows\system32\DllHost.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://feetfirstconsulting.com/
uSearch Bar = hxxp://www.google.com/ie
uSearch Page = hxxp://www.google.com
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mWinlogon: Userinit = userinit.exe
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - <orphaned>
BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
mRun: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
mRun: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [TrueImageMonitor.exe] "C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\HPDIGI~1.LNK - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:255
uPolicies-Explorer: NoWindowsUpdate = dword:0
uPolicies-Explorer: NoDrives = dword:0
uPolicies-Explorer: NoViewOnDrive = dword:0
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
mPolicies-Explorer: NoWindowsUpdate = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoViewOnDrive = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} - hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{16ACAD41-E1B8-414D-BC42-F8C4549DE2A2} : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{ECE21F76-8576-48A0-9483-AEE4056E7F03} : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{ECE21F76-8576-48A0-9483-AEE4056E7F03}\D40594 : DHCPNameServer = 192.168.1.1
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg pku2u livessp
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [cAudioFilterAgent] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
x64-Run: [Acronis Scheduler2 Service] "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
x64-DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Jeff Graham\AppData\Roaming\Mozilla\Firefox\Profiles\2y4i0398.default\
FF - prefs.js: browser.startup.homepage - hxxps://apps.rackspace.com/
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
R0 tdrpman273;Acronis Try&Decide and Restore Points filter (build 273);C:\Windows\System32\drivers\tdrpm273.sys [2011-6-17 1263200]
R1 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2010-10-24 188928]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952]
R2 afcdpsrv;Acronis Nonstop Backup Service;C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2011-6-17 3246040]
R2 HsfXAudioService;HsfXAudioService;C:\Windows\System32\svchost.exe -k HsfXAudioService [2009-7-13 27136]
R2 LMIGuardianSvc;LMIGuardianSvc;C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [2011-6-8 375176]
R2 LMIInfo;LogMeIn Kernel Information Provider;C:\Program Files (x86)\LogMeIn\x64\rainfo.sys [2011-1-11 15928]
R2 LMIRfsDriver;LogMeIn Remote File System Driver;C:\Windows\System32\drivers\LMIRfsDriver.sys [2011-6-17 72216]
R3 afcdp;afcdp;C:\Windows\System32\drivers\afcdp.sys [2011-6-17 285280]
R3 CAXHWAZL;CAXHWAZL;C:\Windows\System32\drivers\CAXHWAZL.sys [2010-4-8 292864]
R3 Com4QLBEx;Com4QLBEx;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-3-13 227896]
R3 MpNWMon;Microsoft Malware Protection Network Driver;C:\Windows\System32\drivers\MpNWMon.sys [2010-10-24 40832]
R3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2010-10-24 72064]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-4-8 215040]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-6-8 136176]
S3 epmntdrv;epmntdrv;C:\Windows\System32\epmntdrv.sys [2011-6-17 16776]
S3 EuGdiDrv;EuGdiDrv;C:\Windows\System32\EuGdiDrv.sys [2011-6-17 9096]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-6-8 136176]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-3-13 216064]
S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-13 292864]
S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-13 1485312]
S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-13 740864]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-6-17 59392]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-5-13 1255736]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-6-10 389120]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2011-07-14 15:22:43 388096 ----a-r- C:\Users\Jeff Graham\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-07-14 15:22:41 -------- d-----w- C:\Program Files (x86)\Trend Micro
2011-07-14 15:08:28 8873296 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{896F6C12-C528-49FE-98B8-B17D5469570C}\mpengine.dll
2011-07-14 14:58:22 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{9C73000B-E58B-4A47-9170-982E529A2383}
2011-07-13 16:54:11 3137536 ----a-w- C:\Windows\System32\win32k.sys
2011-07-13 16:54:04 362496 ----a-w- C:\Windows\System32\wow64win.dll
2011-07-13 16:54:04 338944 ----a-w- C:\Windows\System32\conhost.exe
2011-07-13 16:54:03 214528 ----a-w- C:\Windows\System32\winsrv.dll
2011-07-13 16:54:02 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2011-07-13 16:54:02 243200 ----a-w- C:\Windows\System32\wow64.dll
2011-07-13 16:54:02 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2011-07-13 16:54:02 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2011-07-13 16:54:01 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2011-07-13 16:54:01 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2011-07-13 16:54:01 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2011-07-13 16:53:58 2048 ----a-w- C:\Windows\SysWow64\user.exe
2011-07-13 14:37:45 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{C8372683-4541-4DD1-BA22-96EC62911DEE}
2011-07-11 13:04:22 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{D06E9D8A-A5A4-4880-A18A-D61DCAC45E7E}
2011-07-08 12:57:30 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{5D9E46FB-8C89-4092-B3FD-9ED1FA92B7EF}
2011-07-07 13:26:19 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{D035D280-9F54-47EF-A24B-AC942C5679E9}
2011-07-06 12:52:17 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{EC3324BE-7403-47FC-9DE0-45B17A586E18}
2011-07-05 12:50:14 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{8087D424-87CC-44A5-8519-F63279113B75}
2011-07-01 12:48:28 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{F2640312-DAB9-484E-B0A7-62F0409BF2AB}
2011-06-30 12:45:26 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{7B4A8DE8-D00F-4692-8EBD-27F4C850D534}
2011-06-28 17:54:06 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\ElevatedDiagnostics
2011-06-28 17:48:48 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{4B091B5D-6F6E-46EE-B91E-D67E9A034E97}
2011-06-28 17:48:04 -------- d-----w- C:\Windows\en
2011-06-28 17:47:00 15712 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\61b205911cc35bb02\MeshBetaRemover.exe
2011-06-27 15:21:29 2106216 ----a-w- C:\Program Files (x86)\Mozilla Firefox\D3DCompiler_43.dll
2011-06-27 15:21:28 1998168 ----a-w- C:\Program Files (x86)\Mozilla Firefox\d3dx9_43.dll
2011-06-18 00:21:17 8873296 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2011-06-17 21:57:55 -------- d-----w- C:\Windows\System32\SPReview
2011-06-17 21:57:16 -------- d-----w- C:\Windows\System32\EventProviders
2011-06-17 21:53:59 864256 ----a-w- C:\Program Files (x86)\Common Files\System\Ole DB\oledb32.dll
2011-06-17 21:52:59 921600 ----a-w- C:\Program Files (x86)\Common Files\System\Ole DB\sqloledb.dll
2011-06-17 21:51:59 6144 ----a-w- C:\Windows\System32\drivers\en-US\IPMIDrv.sys.mui
2011-06-17 21:51:59 4608 ----a-w- C:\Windows\System32\drivers\en-US\kbdclass.sys.mui
2011-06-17 21:51:48 189952 ----a-w- C:\Windows\SysWow64\wdscore.dll
2011-06-17 21:51:47 209920 ----a-w- C:\Windows\SysWow64\PkgMgr.exe
2011-06-17 21:51:35 323072 ----a-w- C:\Windows\SysWow64\drvstore.dll
2011-06-17 21:51:35 257024 ----a-w- C:\Windows\SysWow64\dpx.dll
2011-06-17 21:51:31 606208 ----a-w- C:\Windows\SysWow64\wbem\fastprox.dll
2011-06-17 21:51:31 363008 ----a-w- C:\Windows\SysWow64\wbemcomn.dll
2011-06-17 21:49:04 529408 ----a-w- C:\Windows\System32\wbemcomn.dll
2011-06-17 21:49:04 524288 ----a-w- C:\Windows\System32\wmicmiplugin.dll
2011-06-17 21:49:04 1225216 ----a-w- C:\Windows\System32\wbem\wbemcore.dll
2011-06-17 21:48:55 933376 ----a-w- C:\Windows\System32\SmiEngine.dll
2011-06-17 21:48:49 199168 ----a-w- C:\Windows\System32\PkgMgr.exe
2011-06-17 21:48:25 422912 ----a-w- C:\Windows\System32\drvstore.dll
2011-06-17 21:48:24 399872 ----a-w- C:\Windows\System32\dpx.dll
2011-06-17 20:57:39 3106144 ----a-w- C:\Windows\System32\AutoPartNt.exe
2011-06-17 20:56:05 2784608 ----a-w- C:\Windows\System32\auto_reactivate.exe
2011-06-17 20:54:26 -------- d-sh--r- C:\bootwiz
2011-06-17 20:42:03 -------- d-----w- C:\b366138b9b96e2b285c417ce
2011-06-17 20:34:16 285280 ----a-w- C:\Windows\System32\drivers\afcdp.sys
2011-06-17 20:34:06 1263200 ----a-w- C:\Windows\System32\drivers\tdrpm273.sys
2011-06-17 20:34:02 970336 ----a-w- C:\Windows\System32\drivers\timntr.sys
2011-06-17 20:33:52 277088 ----a-w- C:\Windows\System32\drivers\snapman.sys
2011-06-17 20:21:57 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\LogMeIn
2011-06-17 20:21:52 87456 ----a-w- C:\Windows\System32\LMIRfsClientNP.dll
2011-06-17 20:21:52 72216 ----a-w- C:\Windows\System32\drivers\LMIRfsDriver.sys
2011-06-17 20:21:52 60800 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\LMIproc.dll
2011-06-17 20:21:52 33152 ----a-w- C:\Windows\System32\LMIport.dll
2011-06-17 20:21:49 80768 ----a-w- C:\Windows\System32\LMIinit.dll
2011-06-17 20:21:46 -------- d-----w- C:\ProgramData\LogMeIn
2011-06-17 20:21:34 -------- d-----w- C:\Program Files (x86)\LogMeIn
2011-06-17 20:17:49 525544 ----a-w- C:\Windows\System32\deployJava1.dll
2011-06-17 20:14:39 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\Apple Computer
2011-06-17 20:14:29 34152 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
2011-06-17 20:14:29 126312 ----a-w- C:\Windows\System32\GEARAspi64.dll
2011-06-17 20:14:29 107368 ----a-w- C:\Windows\SysWow64\GEARAspi.dll
2011-06-17 20:12:13 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\Apple
2011-06-17 20:11:32 -------- d-----w- C:\Program Files\Bonjour
2011-06-17 20:11:32 -------- d-----w- C:\Program Files (x86)\Bonjour
2011-06-17 19:46:00 748336 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe
2011-06-17 19:46:00 74752 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe
2011-06-17 19:46:00 161792 ----a-w- C:\Windows\SysWow64\msls31.dll
2011-06-17 19:46:00 1126912 ----a-w- C:\Windows\SysWow64\wininet.dll
2011-06-17 15:14:41 601424 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{4354B912-261F-4B25-94D3-F4EE26C264AE}\gapaengine.dll
2011-06-17 15:12:20 2807936 ----a-w- C:\Windows\System32\BootMan.exe
2011-06-17 15:12:20 14848 ----a-w- C:\Windows\SysWow64\EuEpmGdi.dll
2011-06-17 15:12:20 11264 ----a-w- C:\Windows\System32\EuEpmGdi.dll
2011-06-17 15:12:19 9096 ----a-w- C:\Windows\System32\EuGdiDrv.sys
2011-06-17 15:12:19 86408 ----a-w- C:\Windows\SysWow64\setupempdrv03.exe
2011-06-17 15:12:19 8456 ----a-w- C:\Windows\SysWow64\EuGdiDrv.sys
2011-06-17 15:12:19 2217088 ----a-w- C:\Windows\SysWow64\BootMan.exe
2011-06-17 15:12:19 16776 ----a-w- C:\Windows\System32\epmntdrv.sys
2011-06-17 15:12:19 14216 ----a-w- C:\Windows\SysWow64\epmntdrv.sys
2011-06-17 15:12:19 100232 ----a-w- C:\Windows\System32\setupempdrvx64.exe
2011-06-17 15:11:38 -------- d-----w- C:\Program Files (x86)\EASEUS
2011-06-17 15:08:03 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client
2011-06-17 15:07:43 -------- d-----w- C:\Program Files\Microsoft Security Client
2011-06-17 15:05:01 8718160 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AB7CC747-B8CC-405C-84E6-ECF810368D03}\mpengine.dll
2011-06-17 14:57:52 89048 ----a-w- C:\Program Files (x86)\Mozilla Firefox\libEGL.dll
2011-06-17 14:57:52 781272 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll
2011-06-17 14:57:52 465880 ----a-w- C:\Program Files (x86)\Mozilla Firefox\libGLESv2.dll
2011-06-17 14:57:52 1850328 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2011-06-17 14:57:52 15832 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll
2011-06-17 14:57:52 142296 ----a-w- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
2011-06-17 14:56:27 -------- d-----w- C:\Program Files (x86)\FileHippo.com
2011-06-17 14:55:12 -------- d-----w- C:\Users\Jeff Graham\AppData\Roaming\Malwarebytes
2011-06-17 14:55:11 -------- d-----w- C:\Program Files (x86)\2BrightSparks
2011-06-17 14:54:24 -------- d-----w- C:\Users\Jeff Graham\AppData\Roaming\Auslogics
2011-06-17 14:54:18 -------- d-----w- C:\Program Files (x86)\Auslogics
2011-06-17 14:54:09 39984 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2011-06-17 14:54:08 -------- d-----w- C:\ProgramData\Malwarebytes
2011-06-17 14:54:05 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-06-17 14:54:05 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-06-17 14:53:28 -------- d-----w- C:\Program Files\CCleaner
2011-06-17 14:47:58 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{A2754128-EEAF-4905-9918-C22B32C87FC2}
2011-06-17 14:36:48 -------- d-----w- C:\Seans Support Utils
2011-06-15 15:44:26 321024 ----a-w- C:\Windows\System32\d3d10_1core.dll
2011-06-15 15:44:26 197120 ----a-w- C:\Windows\System32\d3d10_1.dll
2011-06-15 15:44:26 161792 ----a-w- C:\Windows\SysWow64\d3d10_1.dll
2011-06-15 15:44:25 219136 ----a-w- C:\Windows\SysWow64\d3d10_1core.dll
2011-06-15 15:44:05 289280 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2011-06-15 15:44:05 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2011-06-15 15:44:05 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2011-06-15 15:41:09 410112 ----a-w- C:\Windows\System32\drivers\srv2.sys
2011-06-15 15:41:08 467456 ----a-w- C:\Windows\System32\drivers\srv.sys
2011-06-15 15:41:00 1923968 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2011-06-15 15:40:58 288640 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2011-06-15 15:40:41 861696 ----a-w- C:\Windows\System32\oleaut32.dll
2011-06-15 15:40:40 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
2011-06-15 15:31:30 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-15 15:28:50 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2011-06-15 15:28:48 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll
2011-06-14 21:08:22 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2011-06-14 21:08:16 499200 ----a-w- C:\Windows\System32\drivers\afd.sys
2011-06-14 18:29:37 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2011-06-14 18:29:37 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy
2011-06-14 18:00:12 -------- d-----w- C:\Program Files (x86)\Spyware Cease 2011
2011-06-14 17:30:53 -------- d-----w- C:\Program Files\Registry Easy
.
==================== Find3M ====================
.
2011-06-17 22:07:59 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2011-06-17 22:07:58 175616 ----a-w- C:\Windows\System32\msclmd.dll
2011-06-03 06:56:38 421888 ----a-w- C:\Windows\System32\KernelBase.dll
2011-06-03 05:57:52 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2011-06-03 05:56:11 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2011-06-03 03:48:32 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2011-06-03 03:48:31 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2011-06-03 03:48:31 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2011-06-03 03:48:31 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2011-05-24 11:42:55 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
2011-05-24 10:40:05 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
2011-05-24 10:40:05 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
2011-05-24 10:39:38 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2011-05-24 10:37:54 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
2011-05-04 08:52:22 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2011-05-04 05:25:03 2315776 ----a-w- C:\Windows\System32\tquery.dll
2011-05-04 05:22:25 778752 ----a-w- C:\Windows\System32\mssvp.dll
2011-05-04 05:22:25 2223616 ----a-w- C:\Windows\System32\mssrch.dll
2011-05-04 05:22:24 75264 ----a-w- C:\Windows\System32\msscntrs.dll
2011-05-04 05:22:24 491520 ----a-w- C:\Windows\System32\mssph.dll
2011-05-04 05:22:24 288256 ----a-w- C:\Windows\System32\mssphtb.dll
2011-05-04 05:19:28 591872 ----a-w- C:\Windows\System32\SearchIndexer.exe
2011-05-04 05:19:28 249856 ----a-w- C:\Windows\System32\SearchProtocolHost.exe
2011-05-04 05:19:28 113664 ----a-w- C:\Windows\System32\SearchFilterHost.exe
2011-05-04 04:34:43 1549312 ----a-w- C:\Windows\SysWow64\tquery.dll
2011-05-04 04:32:02 666624 ----a-w- C:\Windows\SysWow64\mssvp.dll
2011-05-04 04:32:01 337408 ----a-w- C:\Windows\SysWow64\mssph.dll
2011-05-04 04:32:01 197120 ----a-w- C:\Windows\SysWow64\mssphtb.dll
2011-05-04 04:32:01 1401344 ----a-w- C:\Windows\SysWow64\mssrch.dll
2011-05-04 04:32:00 59392 ----a-w- C:\Windows\SysWow64\msscntrs.dll
2011-05-04 04:28:31 86528 ----a-w- C:\Windows\SysWow64\SearchFilterHost.exe
2011-05-04 04:28:31 427520 ----a-w- C:\Windows\SysWow64\SearchIndexer.exe
2011-05-04 04:28:31 164352 ----a-w- C:\Windows\SysWow64\SearchProtocolHost.exe
2011-04-22 22:15:29 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
.
============= FINISH: 12:23:50.25 ===============
DDS Log
DDS (Ver_2011-07-14.01) - NTFS_AMD64
Internet Explorer: 9.0.8112.16421 BrowserJavaVersion: 1.6.0_26
Run by Jeff Graham at 12:23:24 on 2011-07-14
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.1979.568 [GMT -4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}
SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\WLANExt.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
C:\Windows\system32\svchost.exe -k HsfXAudioService
C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe
C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe
C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe
C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k HPService
c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\taskhost.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent64.exe
C:\Program Files\Microsoft Security Client\msseces.exe
C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe
C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Program Files (x86)\Hewlett-Packard\Shared\hpqToaster.exe
C:\Program Files (x86)\Hewlett-Packard\Shared\hpCaslNotification.exe
C:\Windows\system32\DllHost.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Mozilla Firefox\plugin-container.exe
C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\Yahoo!\Messenger\YahooMessenger.exe
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\conhost.exe
C:\Windows\System32\cscript.exe
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://feetfirstconsulting.com/
uSearch Bar = hxxp://www.google.com/ie
uSearch Page = hxxp://www.google.com
uDefault_Search_URL = hxxp://www.google.com/ie
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mWinlogon: Userinit = userinit.exe
BHO: {02478D38-C3F9-4efb-9B51-7695ECA05670} - <orphaned>
BHO: HP Print Enhancer: {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
BHO: Windows Live Messenger Companion Helper: {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
BHO: HP Smart BHO Class: {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
EB: HP Smart Web Printing: {555D4D79-4BD2-4094-A395-CFC534424A05} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_bho.dll
uRun: [msnmsgr] "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
uRun: [Messenger (Yahoo!)] "C:\PROGRA~2\Yahoo!\Messenger\YahooMessenger.exe" -quiet
mRun: [QlbCtrl.exe] C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
mRun: [WirelessAssistant] C:\Program Files (x86)\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
mRun: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
mRun: [TrueImageMonitor.exe] "C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe"
StartupFolder: C:\PROGRA~3\MICROS~1\Windows\STARTM~1\Programs\Startup\HPDIGI~1.LNK - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:255
uPolicies-Explorer: NoWindowsUpdate = dword:0
uPolicies-Explorer: NoDrives = dword:0
uPolicies-Explorer: NoViewOnDrive = dword:0
mPolicies-Explorer: NoActiveDesktop = dword:1
mPolicies-Explorer: NoActiveDesktopChanges = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:255
mPolicies-Explorer: NoWindowsUpdate = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: NoViewOnDrive = dword:0
mPolicies-System: ConsentPromptBehaviorAdmin = dword:0
mPolicies-System: ConsentPromptBehaviorUser = dword:3
mPolicies-System: EnableLUA = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
mPolicies-System: PromptOnSecureDesktop = dword:0
IE: Add to Google Photos Screensa&ver - C:\Windows\System32\GPhotos.scr/200
IE: E&xport to Microsoft Excel - C:\PROGRA~2\MICROS~4\Office12\EXCEL.EXE/3000
IE: {0000036B-C524-4050-81A0-243669A86B9F} - {B63DBA5F-523F-4B9C-A43D-65DF1977EAD3} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503}
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {C345E174-3E87-4F41-A01C-B066A90A49B4} - hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx
DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
TCP: NameServer = 192.168.1.254
TCP: Interfaces\{16ACAD41-E1B8-414D-BC42-F8C4549DE2A2} : DHCPNameServer = 192.168.0.1
TCP: Interfaces\{ECE21F76-8576-48A0-9483-AEE4056E7F03} : DHCPNameServer = 192.168.1.254
TCP: Interfaces\{ECE21F76-8576-48A0-9483-AEE4056E7F03}\D40594 : DHCPNameServer = 192.168.1.1
Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
SSODL: WebCheck - <orphaned>
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg pku2u livessp
x64-BHO: Windows Live ID Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
x64-BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
x64-Run: [SynTPEnh] C:\Program Files (x86)\Synaptics\SynTP\SynTPEnh.exe
x64-Run: [cAudioFilterAgent] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe
x64-Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
x64-Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe"
x64-Run: [Acronis Scheduler2 Service] "C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
x64-Run: [IgfxTray] C:\Windows\System32\igfxtray.exe
x64-Run: [HotKeysCmds] C:\Windows\System32\hkcmd.exe
x64-Run: [Persistence] C:\Windows\System32\igfxpers.exe
x64-DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
x64-DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
x64-DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
x64-Handler: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - <orphaned>
x64-Notify: igfxcui - igfxdev.dll
x64-SSODL: WebCheck - <orphaned>
.
================= FIREFOX ===================
.
FF - ProfilePath - C:\Users\Jeff Graham\AppData\Roaming\Mozilla\Firefox\Profiles\2y4i0398.default\
FF - prefs.js: browser.startup.homepage - hxxps://apps.rackspace.com/
FF - plugin: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
FF - plugin: C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll
FF - plugin: C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll
FF - plugin: C:\Program Files (x86)\Google\Update\1.3.21.57\npGoogleUpdate3.dll
FF - plugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Microsoft Silverlight\4.0.60531.0\npctrlui.dll
FF - plugin: C:\Program Files (x86)\Mozilla Firefox\plugins\npdeployJava1.dll
FF - plugin: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
FF - plugin: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll
.
---- FIREFOX POLICIES ----
FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
============= SERVICES / DRIVERS ===============
.
R0 tdrpman273;Acronis Try&Decide and Restore Points filter (build 273);C:\Windows\System32\drivers\tdrpm273.sys [2011-6-17 1263200]
R1 MpFilter;Microsoft Malware Protection Driver;C:\Windows\System32\drivers\MpFilter.sys [2010-10-24 188928]
R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-13 59904]
R2 AdobeARMservice;Adobe Acrobat Update Service;C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2011-6-6 64952]
R2 afcdpsrv;Acronis Nonstop Backup Service;C:\Program Files (x86)\Common Files\Acronis\CDP\afcdpsrv.exe [2011-6-17 3246040]
R2 HsfXAudioService;HsfXAudioService;C:\Windows\System32\svchost.exe -k HsfXAudioService [2009-7-13 27136]
R2 LMIGuardianSvc;LMIGuardianSvc;C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [2011-6-8 375176]
R2 LMIInfo;LogMeIn Kernel Information Provider;C:\Program Files (x86)\LogMeIn\x64\rainfo.sys [2011-1-11 15928]
R2 LMIRfsDriver;LogMeIn Remote File System Driver;C:\Windows\System32\drivers\LMIRfsDriver.sys [2011-6-17 72216]
R3 afcdp;afcdp;C:\Windows\System32\drivers\afcdp.sys [2011-6-17 285280]
R3 CAXHWAZL;CAXHWAZL;C:\Windows\System32\drivers\CAXHWAZL.sys [2010-4-8 292864]
R3 Com4QLBEx;Com4QLBEx;C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch Buttons\Com4QLBEx.exe [2010-3-13 227896]
R3 MpNWMon;Microsoft Malware Protection Network Driver;C:\Windows\System32\drivers\MpNWMon.sys [2010-10-24 40832]
R3 NisDrv;Microsoft Network Inspection System;C:\Windows\System32\drivers\NisDrvWFP.sys [2010-10-24 72064]
R3 NisSrv;Microsoft Network Inspection;C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [2010-11-11 282616]
R3 RTL8167;Realtek 8167 NT Driver;C:\Windows\System32\drivers\Rt64win7.sys [2010-4-8 215040]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576]
S2 gupdate;Google Update Service (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-6-8 136176]
S3 epmntdrv;epmntdrv;C:\Windows\System32\epmntdrv.sys [2011-6-17 16776]
S3 EuGdiDrv;EuGdiDrv;C:\Windows\System32\EuGdiDrv.sys [2011-6-17 9096]
S3 gupdatem;Google Update Service (gupdatem);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-6-8 136176]
S3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;C:\Windows\System32\drivers\netw5v64.sys [2009-6-10 5434368]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;C:\Windows\System32\drivers\RtsUStor.sys [2010-3-13 216064]
S3 SrvHsfHDA;SrvHsfHDA;C:\Windows\System32\drivers\VSTAZL6.SYS [2009-7-13 292864]
S3 SrvHsfV92;SrvHsfV92;C:\Windows\System32\drivers\VSTDPV6.SYS [2009-7-13 1485312]
S3 SrvHsfWinac;SrvHsfWinac;C:\Windows\System32\drivers\VSTCNXT6.SYS [2009-7-13 740864]
S3 TsUsbFlt;TsUsbFlt;C:\Windows\System32\drivers\TsUsbFlt.sys [2011-6-17 59392]
S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2010-5-13 1255736]
S3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;C:\Windows\System32\drivers\yk62x64.sys [2009-6-10 389120]
S4 wlcrasvc;Windows Live Mesh remote connections service;C:\Program Files\Windows Live\Mesh\wlcrasvc.exe [2010-9-22 57184]
.
=============== Created Last 30 ================
.
2011-07-14 15:22:43 388096 ----a-r- C:\Users\Jeff Graham\AppData\Roaming\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
2011-07-14 15:22:41 -------- d-----w- C:\Program Files (x86)\Trend Micro
2011-07-14 15:08:28 8873296 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{896F6C12-C528-49FE-98B8-B17D5469570C}\mpengine.dll
2011-07-14 14:58:22 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{9C73000B-E58B-4A47-9170-982E529A2383}
2011-07-13 16:54:11 3137536 ----a-w- C:\Windows\System32\win32k.sys
2011-07-13 16:54:04 362496 ----a-w- C:\Windows\System32\wow64win.dll
2011-07-13 16:54:04 338944 ----a-w- C:\Windows\System32\conhost.exe
2011-07-13 16:54:03 214528 ----a-w- C:\Windows\System32\winsrv.dll
2011-07-13 16:54:02 25600 ----a-w- C:\Windows\SysWow64\setup16.exe
2011-07-13 16:54:02 243200 ----a-w- C:\Windows\System32\wow64.dll
2011-07-13 16:54:02 16384 ----a-w- C:\Windows\System32\ntvdm64.dll
2011-07-13 16:54:02 14336 ----a-w- C:\Windows\SysWow64\ntvdm64.dll
2011-07-13 16:54:01 7680 ----a-w- C:\Windows\SysWow64\instnm.exe
2011-07-13 16:54:01 5120 ----a-w- C:\Windows\SysWow64\wow32.dll
2011-07-13 16:54:01 13312 ----a-w- C:\Windows\System32\wow64cpu.dll
2011-07-13 16:53:58 2048 ----a-w- C:\Windows\SysWow64\user.exe
2011-07-13 14:37:45 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{C8372683-4541-4DD1-BA22-96EC62911DEE}
2011-07-11 13:04:22 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{D06E9D8A-A5A4-4880-A18A-D61DCAC45E7E}
2011-07-08 12:57:30 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{5D9E46FB-8C89-4092-B3FD-9ED1FA92B7EF}
2011-07-07 13:26:19 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{D035D280-9F54-47EF-A24B-AC942C5679E9}
2011-07-06 12:52:17 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{EC3324BE-7403-47FC-9DE0-45B17A586E18}
2011-07-05 12:50:14 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{8087D424-87CC-44A5-8519-F63279113B75}
2011-07-01 12:48:28 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{F2640312-DAB9-484E-B0A7-62F0409BF2AB}
2011-06-30 12:45:26 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{7B4A8DE8-D00F-4692-8EBD-27F4C850D534}
2011-06-28 17:54:06 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\ElevatedDiagnostics
2011-06-28 17:48:48 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{4B091B5D-6F6E-46EE-B91E-D67E9A034E97}
2011-06-28 17:48:04 -------- d-----w- C:\Windows\en
2011-06-28 17:47:00 15712 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\61b205911cc35bb02\MeshBetaRemover.exe
2011-06-27 15:21:29 2106216 ----a-w- C:\Program Files (x86)\Mozilla Firefox\D3DCompiler_43.dll
2011-06-27 15:21:28 1998168 ----a-w- C:\Program Files (x86)\Mozilla Firefox\d3dx9_43.dll
2011-06-18 00:21:17 8873296 ----a-w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2011-06-17 21:57:55 -------- d-----w- C:\Windows\System32\SPReview
2011-06-17 21:57:16 -------- d-----w- C:\Windows\System32\EventProviders
2011-06-17 21:53:59 864256 ----a-w- C:\Program Files (x86)\Common Files\System\Ole DB\oledb32.dll
2011-06-17 21:52:59 921600 ----a-w- C:\Program Files (x86)\Common Files\System\Ole DB\sqloledb.dll
2011-06-17 21:51:59 6144 ----a-w- C:\Windows\System32\drivers\en-US\IPMIDrv.sys.mui
2011-06-17 21:51:59 4608 ----a-w- C:\Windows\System32\drivers\en-US\kbdclass.sys.mui
2011-06-17 21:51:48 189952 ----a-w- C:\Windows\SysWow64\wdscore.dll
2011-06-17 21:51:47 209920 ----a-w- C:\Windows\SysWow64\PkgMgr.exe
2011-06-17 21:51:35 323072 ----a-w- C:\Windows\SysWow64\drvstore.dll
2011-06-17 21:51:35 257024 ----a-w- C:\Windows\SysWow64\dpx.dll
2011-06-17 21:51:31 606208 ----a-w- C:\Windows\SysWow64\wbem\fastprox.dll
2011-06-17 21:51:31 363008 ----a-w- C:\Windows\SysWow64\wbemcomn.dll
2011-06-17 21:49:04 529408 ----a-w- C:\Windows\System32\wbemcomn.dll
2011-06-17 21:49:04 524288 ----a-w- C:\Windows\System32\wmicmiplugin.dll
2011-06-17 21:49:04 1225216 ----a-w- C:\Windows\System32\wbem\wbemcore.dll
2011-06-17 21:48:55 933376 ----a-w- C:\Windows\System32\SmiEngine.dll
2011-06-17 21:48:49 199168 ----a-w- C:\Windows\System32\PkgMgr.exe
2011-06-17 21:48:25 422912 ----a-w- C:\Windows\System32\drvstore.dll
2011-06-17 21:48:24 399872 ----a-w- C:\Windows\System32\dpx.dll
2011-06-17 20:57:39 3106144 ----a-w- C:\Windows\System32\AutoPartNt.exe
2011-06-17 20:56:05 2784608 ----a-w- C:\Windows\System32\auto_reactivate.exe
2011-06-17 20:54:26 -------- d-sh--r- C:\bootwiz
2011-06-17 20:42:03 -------- d-----w- C:\b366138b9b96e2b285c417ce
2011-06-17 20:34:16 285280 ----a-w- C:\Windows\System32\drivers\afcdp.sys
2011-06-17 20:34:06 1263200 ----a-w- C:\Windows\System32\drivers\tdrpm273.sys
2011-06-17 20:34:02 970336 ----a-w- C:\Windows\System32\drivers\timntr.sys
2011-06-17 20:33:52 277088 ----a-w- C:\Windows\System32\drivers\snapman.sys
2011-06-17 20:21:57 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\LogMeIn
2011-06-17 20:21:52 87456 ----a-w- C:\Windows\System32\LMIRfsClientNP.dll
2011-06-17 20:21:52 72216 ----a-w- C:\Windows\System32\drivers\LMIRfsDriver.sys
2011-06-17 20:21:52 60800 ----a-w- C:\Windows\System32\Spool\prtprocs\x64\LMIproc.dll
2011-06-17 20:21:52 33152 ----a-w- C:\Windows\System32\LMIport.dll
2011-06-17 20:21:49 80768 ----a-w- C:\Windows\System32\LMIinit.dll
2011-06-17 20:21:46 -------- d-----w- C:\ProgramData\LogMeIn
2011-06-17 20:21:34 -------- d-----w- C:\Program Files (x86)\LogMeIn
2011-06-17 20:17:49 525544 ----a-w- C:\Windows\System32\deployJava1.dll
2011-06-17 20:14:39 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\Apple Computer
2011-06-17 20:14:29 34152 ----a-w- C:\Windows\System32\drivers\GEARAspiWDM.sys
2011-06-17 20:14:29 126312 ----a-w- C:\Windows\System32\GEARAspi64.dll
2011-06-17 20:14:29 107368 ----a-w- C:\Windows\SysWow64\GEARAspi.dll
2011-06-17 20:12:13 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\Apple
2011-06-17 20:11:32 -------- d-----w- C:\Program Files\Bonjour
2011-06-17 20:11:32 -------- d-----w- C:\Program Files (x86)\Bonjour
2011-06-17 19:46:00 748336 ----a-w- C:\Program Files (x86)\Internet Explorer\iexplore.exe
2011-06-17 19:46:00 74752 ----a-w- C:\Windows\SysWow64\RegisterIEPKEYs.exe
2011-06-17 19:46:00 161792 ----a-w- C:\Windows\SysWow64\msls31.dll
2011-06-17 19:46:00 1126912 ----a-w- C:\Windows\SysWow64\wininet.dll
2011-06-17 15:14:41 601424 ------w- C:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{4354B912-261F-4B25-94D3-F4EE26C264AE}\gapaengine.dll
2011-06-17 15:12:20 2807936 ----a-w- C:\Windows\System32\BootMan.exe
2011-06-17 15:12:20 14848 ----a-w- C:\Windows\SysWow64\EuEpmGdi.dll
2011-06-17 15:12:20 11264 ----a-w- C:\Windows\System32\EuEpmGdi.dll
2011-06-17 15:12:19 9096 ----a-w- C:\Windows\System32\EuGdiDrv.sys
2011-06-17 15:12:19 86408 ----a-w- C:\Windows\SysWow64\setupempdrv03.exe
2011-06-17 15:12:19 8456 ----a-w- C:\Windows\SysWow64\EuGdiDrv.sys
2011-06-17 15:12:19 2217088 ----a-w- C:\Windows\SysWow64\BootMan.exe
2011-06-17 15:12:19 16776 ----a-w- C:\Windows\System32\epmntdrv.sys
2011-06-17 15:12:19 14216 ----a-w- C:\Windows\SysWow64\epmntdrv.sys
2011-06-17 15:12:19 100232 ----a-w- C:\Windows\System32\setupempdrvx64.exe
2011-06-17 15:11:38 -------- d-----w- C:\Program Files (x86)\EASEUS
2011-06-17 15:08:03 -------- d-----w- C:\Program Files (x86)\Microsoft Security Client
2011-06-17 15:07:43 -------- d-----w- C:\Program Files\Microsoft Security Client
2011-06-17 15:05:01 8718160 ------w- C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{AB7CC747-B8CC-405C-84E6-ECF810368D03}\mpengine.dll
2011-06-17 14:57:52 89048 ----a-w- C:\Program Files (x86)\Mozilla Firefox\libEGL.dll
2011-06-17 14:57:52 781272 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozsqlite3.dll
2011-06-17 14:57:52 465880 ----a-w- C:\Program Files (x86)\Mozilla Firefox\libGLESv2.dll
2011-06-17 14:57:52 1850328 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2011-06-17 14:57:52 15832 ----a-w- C:\Program Files (x86)\Mozilla Firefox\mozalloc.dll
2011-06-17 14:57:52 142296 ----a-w- C:\Program Files (x86)\Mozilla Firefox\components\browsercomps.dll
2011-06-17 14:56:27 -------- d-----w- C:\Program Files (x86)\FileHippo.com
2011-06-17 14:55:12 -------- d-----w- C:\Users\Jeff Graham\AppData\Roaming\Malwarebytes
2011-06-17 14:55:11 -------- d-----w- C:\Program Files (x86)\2BrightSparks
2011-06-17 14:54:24 -------- d-----w- C:\Users\Jeff Graham\AppData\Roaming\Auslogics
2011-06-17 14:54:18 -------- d-----w- C:\Program Files (x86)\Auslogics
2011-06-17 14:54:09 39984 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys
2011-06-17 14:54:08 -------- d-----w- C:\ProgramData\Malwarebytes
2011-06-17 14:54:05 25912 ----a-w- C:\Windows\System32\drivers\mbam.sys
2011-06-17 14:54:05 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware
2011-06-17 14:53:28 -------- d-----w- C:\Program Files\CCleaner
2011-06-17 14:47:58 -------- d-----w- C:\Users\Jeff Graham\AppData\Local\{A2754128-EEAF-4905-9918-C22B32C87FC2}
2011-06-17 14:36:48 -------- d-----w- C:\Seans Support Utils
2011-06-15 15:44:26 321024 ----a-w- C:\Windows\System32\d3d10_1core.dll
2011-06-15 15:44:26 197120 ----a-w- C:\Windows\System32\d3d10_1.dll
2011-06-15 15:44:26 161792 ----a-w- C:\Windows\SysWow64\d3d10_1.dll
2011-06-15 15:44:25 219136 ----a-w- C:\Windows\SysWow64\d3d10_1core.dll
2011-06-15 15:44:05 289280 ----a-w- C:\Windows\System32\drivers\mrxsmb10.sys
2011-06-15 15:44:05 158208 ----a-w- C:\Windows\System32\drivers\mrxsmb.sys
2011-06-15 15:44:05 128000 ----a-w- C:\Windows\System32\drivers\mrxsmb20.sys
2011-06-15 15:41:09 410112 ----a-w- C:\Windows\System32\drivers\srv2.sys
2011-06-15 15:41:08 467456 ----a-w- C:\Windows\System32\drivers\srv.sys
2011-06-15 15:41:00 1923968 ----a-w- C:\Windows\System32\drivers\tcpip.sys
2011-06-15 15:40:58 288640 ----a-w- C:\Windows\System32\drivers\FWPKCLNT.SYS
2011-06-15 15:40:41 861696 ----a-w- C:\Windows\System32\oleaut32.dll
2011-06-15 15:40:40 571904 ----a-w- C:\Windows\SysWow64\oleaut32.dll
2011-06-15 15:31:30 404640 ----a-w- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
2011-06-15 15:28:50 976896 ----a-w- C:\Windows\System32\inetcomm.dll
2011-06-15 15:28:48 741376 ----a-w- C:\Windows\SysWow64\inetcomm.dll
2011-06-14 21:08:22 168448 ----a-w- C:\Windows\System32\drivers\srvnet.sys
2011-06-14 21:08:16 499200 ----a-w- C:\Windows\System32\drivers\afd.sys
2011-06-14 18:29:37 -------- d-----w- C:\ProgramData\Spybot - Search & Destroy
2011-06-14 18:29:37 -------- d-----w- C:\Program Files (x86)\Spybot - Search & Destroy
2011-06-14 18:00:12 -------- d-----w- C:\Program Files (x86)\Spyware Cease 2011
2011-06-14 17:30:53 -------- d-----w- C:\Program Files\Registry Easy
.
==================== Find3M ====================
.
2011-06-17 22:07:59 152576 ----a-w- C:\Windows\SysWow64\msclmd.dll
2011-06-17 22:07:58 175616 ----a-w- C:\Windows\System32\msclmd.dll
2011-06-03 06:56:38 421888 ----a-w- C:\Windows\System32\KernelBase.dll
2011-06-03 05:57:52 44032 ----a-w- C:\Windows\apppatch\acwow64.dll
2011-06-03 05:56:11 272384 ----a-w- C:\Windows\SysWow64\KernelBase.dll
2011-06-03 03:48:32 3584 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
2011-06-03 03:48:31 6144 ---ha-w- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
2011-06-03 03:48:31 4608 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
2011-06-03 03:48:31 3072 ---ha-w- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
2011-05-24 11:42:55 404480 ----a-w- C:\Windows\System32\umpnpmgr.dll
2011-05-24 10:40:05 64512 ----a-w- C:\Windows\SysWow64\devobj.dll
2011-05-24 10:40:05 44544 ----a-w- C:\Windows\SysWow64\devrtl.dll
2011-05-24 10:39:38 145920 ----a-w- C:\Windows\SysWow64\cfgmgr32.dll
2011-05-24 10:37:54 252928 ----a-w- C:\Windows\SysWow64\drvinst.exe
2011-05-04 08:52:22 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll
2011-05-04 05:25:03 2315776 ----a-w- C:\Windows\System32\tquery.dll
2011-05-04 05:22:25 778752 ----a-w- C:\Windows\System32\mssvp.dll
2011-05-04 05:22:25 2223616 ----a-w- C:\Windows\System32\mssrch.dll
2011-05-04 05:22:24 75264 ----a-w- C:\Windows\System32\msscntrs.dll
2011-05-04 05:22:24 491520 ----a-w- C:\Windows\System32\mssph.dll
2011-05-04 05:22:24 288256 ----a-w- C:\Windows\System32\mssphtb.dll
2011-05-04 05:19:28 591872 ----a-w- C:\Windows\System32\SearchIndexer.exe
2011-05-04 05:19:28 249856 ----a-w- C:\Windows\System32\SearchProtocolHost.exe
2011-05-04 05:19:28 113664 ----a-w- C:\Windows\System32\SearchFilterHost.exe
2011-05-04 04:34:43 1549312 ----a-w- C:\Windows\SysWow64\tquery.dll
2011-05-04 04:32:02 666624 ----a-w- C:\Windows\SysWow64\mssvp.dll
2011-05-04 04:32:01 337408 ----a-w- C:\Windows\SysWow64\mssph.dll
2011-05-04 04:32:01 197120 ----a-w- C:\Windows\SysWow64\mssphtb.dll
2011-05-04 04:32:01 1401344 ----a-w- C:\Windows\SysWow64\mssrch.dll
2011-05-04 04:32:00 59392 ----a-w- C:\Windows\SysWow64\msscntrs.dll
2011-05-04 04:28:31 86528 ----a-w- C:\Windows\SysWow64\SearchFilterHost.exe
2011-05-04 04:28:31 427520 ----a-w- C:\Windows\SysWow64\SearchIndexer.exe
2011-05-04 04:28:31 164352 ----a-w- C:\Windows\SysWow64\SearchProtocolHost.exe
2011-04-22 22:15:29 27520 ----a-w- C:\Windows\System32\drivers\Diskdump.sys
.
============= FINISH: 12:23:50.25 ===============