DDS (Ver_10-12-12.02) - NTFS_AMD64 Run by Kari at 19:27:37,75 on 05.02.2011 Internet Explorer: 8.0.7600.16385 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.47.1044.18.3956.2528 [GMT 1:00] AV: McAfee Anti-Virus og Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637} SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} SP: McAfee Anti-Virus og Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A} FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C} ============== Running Processes =============== C:\Windows\system32\wininit.exe C:\Windows\system32\lsm.exe C:\Windows\system32\svchost.exe -k DcomLaunch C:\Windows\system32\svchost.exe -k RPCSS C:\Windows\system32\atiesrxx.exe C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted C:\Windows\system32\svchost.exe -k netsvcs C:\Windows\system32\svchost.exe -k LocalService C:\Windows\system32\atieclxx.exe C:\Windows\system32\svchost.exe -k NetworkService C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\System32\spoolsv.exe C:\Windows\system32\taskhost.exe C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork C:\Program Files (x86)\Launch Manager\dsiwmis.exe C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation C:\Program Files (x86)\Acer\Registration\GREGsvc.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe C:\Windows\system32\rundll32.exe C:\Windows\SysWOW64\rundll32.exe C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe C:\Windows\system32\svchost.exe -k imgsvc C:\Program Files\Acer\Acer Updater\UpdaterService.exe C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted C:\Windows\System32\rundll32.exe C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe C:\Program Files\Synaptics\SynTP\SynTPEnh.exe C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe C:\Program Files\Windows Sidebar\sidebar.exe C:\Program Files\mcafee.com\agent\mcagent.exe C:\Program Files\Synaptics\SynTP\SynTPHelper.exe C:\Windows\system32\SearchIndexer.exe C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe C:\Program Files (x86)\Launch Manager\LManager.exe C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe C:\Program Files (x86)\Launch Manager\LMworker.exe C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe C:\Windows\system32\wbem\unsecapp.exe C:\Windows\system32\wbem\wmiprvse.exe C:\Program Files\Windows Media Player\wmpnetwk.exe C:\Windows\System32\svchost.exe -k LocalServicePeerNet C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe C:\Program Files\Common Files\McAfee\Core\mchost.exe C:\Windows\system32\WUDFHost.exe C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Program Files (x86)\Internet Explorer\iexplore.exe C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SCServer\SCServer.exe C:\Windows\system32\SearchProtocolHost.exe C:\Windows\system32\SearchFilterHost.exe C:\Users\Kari\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3VPSBZ90\dds[1].scr C:\Windows\system32\conhost.exe C:\Windows\system32\wbem\wmiprvse.exe ============== Pseudo HJT Report =============== uStart Page = hxxp://www.sol.no/ mStart Page = hxxp://acer.msn.com uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll BHO: McAfee Phishing Filter: {27b4851a-3207-45a2-b947-be8afe6163ab} - c:\progra~1\mcafee\msk\mskapbho.dll BHO: Search Helper: {6ebf7485-159f-4bff-a14f-b9e3aac4465b} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20110118005516.dll BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll BHO: Bing Bar BHO: {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll TB: @C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll,-100: {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\MSN Toolbar\Platform\6.0.2282.0\npwinext.dll TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll uRun: [swg] "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" uRun: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun uRun: [igndlm.exe] C:\Program Files (x86)\Download Manager\DLM.exe /windowsstart /startifwork mRun: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" mRun: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey mRun: [BackupManagerTray] "C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe" -h -k mRun: [Norton Online Backup] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe mRun: [SuiteTray] "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" mRun: [EgisUpdate] "C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe" -d mRun: [EgisTecPMMUpdate] "C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe" mRun: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe mRun: [Microsoft Default Manager] "C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Default Manager\DefMgr.exe" -resume mRun: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" mRun: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun mRun: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5) mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3) mPolicies-system: EnableUIADesktopToggle = 0 (0x0) IE: Google Sidewiki - C:\Program Files (x86)\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} - hxxp://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.10.115.cab DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_23-windows-i586.cab Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\McAfee\SITEAD~1\McIEPlg.dll {27B4851A-3207-45A2-B947-BE8AFE6163AB} {7DB2D5A0-7241-4E79-B68D-6309F01C5231} {AA58ED58-01DD-4d91-8333-CF10577473F7} {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} {B164E929-A1B6-4A06-B104-2CD0E90A88FF} {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} {2318C2B1-4965-11d4-9B18-009027A5CD4F} mRun-x64: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe mRun-x64: [mwlDaemon] C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe mRun-x64: [RtHDVCpl] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s mRun-x64: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe mRun-x64: [Acer ePower Management] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe mRun-x64: [Logitech Download Assistant] C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch ============= SERVICES / DRIVERS =============== R0 mfehidk;McAfee Inc. mfehidk;C:\Windows\System32\drivers\mfehidk.sys [2010-1-6 529128] R0 mfewfpk;McAfee Inc. mfewfpk;C:\Windows\System32\drivers\mfewfpk.sys [2010-1-6 283360] R1 mfenlfk;McAfee NDIS Light Filter;C:\Windows\System32\drivers\mfenlfk.sys [2010-1-6 75032] R1 mwlPSDFilter;mwlPSDFilter;C:\Windows\System32\drivers\mwlPSDFilter.sys [2009-6-3 22576] R1 mwlPSDNServ;mwlPSDNServ;C:\Windows\System32\drivers\mwlPSDNserv.sys [2009-6-3 20016] R1 mwlPSDVDisk;mwlPSDVDisk;C:\Windows\System32\drivers\mwlPSDVDisk.sys [2009-6-3 60464] R1 vwififlt;Virtual WiFi Filter Driver;C:\Windows\System32\drivers\vwififlt.sys [2009-7-14 59904] R2 AMD External Events Utility;AMD External Events Utility;C:\Windows\System32\atiesrxx.exe [2010-11-26 203776] R2 DsiWMIService;Dritek WMI Service;C:\Program Files (x86)\Launch Manager\dsiwmis.exe [2010-10-5 321104] R2 ePowerSvc;Acer ePower Service;C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [2010-10-5 868896] R2 GREGService;GREGService;C:\Program Files (x86)\Acer\Registration\GREGsvc.exe [2010-1-8 23584] R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-1-18 355440] R2 McMPFSvc;McAfee Personal Firewall-tjeneste;"C:\Program Files\Common Files\McAfee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-1-18 355440] R2 McNaiAnn;McAfee VirusScan Announcer;"C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-1-18 355440] R2 McProxy;McAfee Proxy Service;"C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-1-18 355440] R2 McShield;McShield;C:\Program Files\Common Files\mcafee\systemcore\mcshield.exe [2010-9-16 200056] R2 mfefire;McAfee Firewall Core Service;C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe [2010-9-16 245352] R2 mfevtp;McAfee Validation Trust Protection Service;C:\Program Files\Common Files\mcafee\systemcore\mfevtps.exe [2010-9-16 149032] R2 NOBU;Norton Online Backup;C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2010-6-1 2804568] R2 NTI IScheduleSvc;NTI IScheduleSvc;C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [2010-6-28 255744] R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [2010-4-17 144640] R2 UNS;Intel(R) Management & Security Application User Notification Service;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2010-10-5 2320920] R2 Updater Service;Updater Service;C:\Program Files\Acer\Acer Updater\UpdaterService.exe [2010-9-16 243232] R3 amdkmdag;amdkmdag;C:\Windows\System32\drivers\atikmdag.sys [2010-11-26 8120320] R3 amdkmdap;amdkmdap;C:\Windows\System32\drivers\atikmpag.sys [2010-11-26 289792] R3 AtiHDAudioService;ATI Function Driver for HD Audio Service;C:\Windows\System32\drivers\AtihdW76.sys [2010-10-5 116240] R3 cfwids;McAfee Inc. cfwids;C:\Windows\System32\drivers\cfwids.sys [2010-1-6 62800] R3 HECIx64;Intel(R) Management Engine Interface;C:\Windows\System32\drivers\HECIx64.sys [2010-10-5 56344] R3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;C:\Windows\System32\drivers\k57nd60a.sys [2010-6-8 406056] R3 mfeavfk;McAfee Inc. mfeavfk;C:\Windows\System32\drivers\mfeavfk.sys [2010-1-6 190136] R3 mfefirek;McAfee Inc. mfefirek;C:\Windows\System32\drivers\mfefirek.sys [2010-1-6 441328] S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384] S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-3-18 138576] S2 gupdate;Googles oppdateringstjeneste (gupdate);C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-1-17 136176] S3 AmUStor;AM USB Stroage Driver;C:\Windows\System32\drivers\AmUStor.sys [2010-6-10 40448] S3 mferkdet;McAfee Inc. mferkdet;C:\Windows\System32\drivers\mferkdet.sys [2010-1-6 94864] S3 MWLService;MyWinLocker Service;C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [2010-5-27 305520] S3 NTIBackupSvc;NTI Backup Now 5 Backup Service;C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe [2010-4-17 50432] S3 WatAdminSvc;Windows Activation Technologies Service;C:\Windows\System32\Wat\WatAdminSvc.exe [2011-1-18 1255736] S4 McOobeSv;McAfee OOBE Service;"C:\Program Files\Common Files\mcafee\McSvcHost\McSvHost.exe" /McCoreSvc [2011-1-18 355440] =============== File Associations =============== inffile=%SystemRoot%\SysWow64\NOTEPAD.EXE %1 VBEFile=%SystemRoot%\SysWow64\WScript.exe "%1" %* VBSFile=%SystemRoot%\SysWow64\WScript.exe "%1" %* =============== Created Last 30 ================ 2011-02-05 15:31:33 98816 ----a-w- C:\Windows\sed.exe 2011-02-05 15:31:33 89088 ----a-w- C:\Windows\MBR.exe 2011-02-05 15:31:33 256512 ----a-w- C:\Windows\PEV.exe 2011-02-05 15:31:33 161792 ----a-w- C:\Windows\SWREG.exe 2011-02-05 14:35:44 -------- d-----w- C:\Users\Kari\AppData\Roaming\Malwarebytes 2011-02-05 14:35:39 38224 ----a-w- C:\Windows\SysWow64\drivers\mbamswissarmy.sys 2011-02-05 14:35:39 -------- d-----w- C:\PROGRA~3\Malwarebytes 2011-02-05 14:35:36 24152 ----a-w- C:\Windows\System32\drivers\mbam.sys 2011-02-05 14:35:36 -------- d-----w- C:\Program Files (x86)\Malwarebytes' Anti-Malware 2011-02-01 16:19:04 -------- d-----w- C:\Program Files (x86)\Download Manager 2011-01-31 19:29:27 -------- d-----w- C:\PROGRA~3\boost_interprocess 2011-01-31 17:58:42 48648 ----a-w- C:\PROGRA~3\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\Markup.dll 2011-01-23 20:28:54 -------- d-----w- C:\Program Files (x86)\Eidos 2011-01-23 20:24:46 -------- d-----w- C:\Program Files\Common Files\ATI Technologies 2011-01-23 20:24:46 -------- d-----w- C:\Program Files (x86)\Common Files\ATI Technologies 2011-01-23 20:24:41 -------- d-----w- C:\Program Files (x86)\ATI Stream 2011-01-23 20:22:55 -------- d-----w- C:\Program Files\ATI Technologies 2011-01-23 20:21:25 -------- d-----w- C:\ATI 2011-01-23 20:13:10 -------- d-----w- C:\AMD 2011-01-20 18:54:26 472808 ----a-w- C:\Windows\SysWow64\deployJava1.dll 2011-01-18 19:38:19 48648 ----a-w- C:\PROGRA~3\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\Markup.dll 2011-01-18 19:38:14 555328 ----a-w- C:\PROGRA~3\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll 2011-01-18 19:25:38 -------- d-----w- C:\Users\Kari\AppData\Local\CANON_INC 2011-01-18 19:25:11 -------- d-----w- C:\Users\Kari\AppData\Roaming\ZoomBrowser EX 2011-01-18 19:19:18 -------- d-----w- C:\Users\Kari\AppData\Local\Adobe 2011-01-18 19:08:09 -------- d-----w- C:\PROGRA~3\ZoomBrowser 2011-01-18 19:06:58 -------- d-----w- C:\Program Files (x86)\Canon 2011-01-18 18:49:19 -------- d-----w- C:\Program Files (x86)\Common Files\Canon 2011-01-18 17:39:11 99176 ----a-w- C:\Windows\SysWow64\PresentationHostProxy.dll 2011-01-18 17:39:11 49472 ----a-w- C:\Windows\SysWow64\netfxperf.dll 2011-01-18 17:39:11 48960 ----a-w- C:\Windows\System32\netfxperf.dll 2011-01-18 17:39:11 444752 ----a-w- C:\Windows\System32\mscoree.dll 2011-01-18 17:39:11 320352 ----a-w- C:\Windows\System32\PresentationHost.exe 2011-01-18 17:39:11 297808 ----a-w- C:\Windows\SysWow64\mscoree.dll 2011-01-18 17:39:11 295264 ----a-w- C:\Windows\SysWow64\PresentationHost.exe 2011-01-18 17:39:11 1942856 ----a-w- C:\Windows\System32\dfshim.dll 2011-01-18 17:39:11 1130824 ----a-w- C:\Windows\SysWow64\dfshim.dll 2011-01-18 17:39:11 109912 ----a-w- C:\Windows\System32\PresentationHostProxy.dll 2011-01-18 17:38:55 294912 ----a-w- C:\Windows\System32\browserchoice.exe 2011-01-18 17:25:56 -------- d-----w- C:\Users\Kari\AppData\Local\ATI 2011-01-18 02:39:00 7680 ----a-w- C:\Program Files\Internet Explorer\iecompat.dll 2011-01-18 02:39:00 7680 ----a-w- C:\Program Files (x86)\Internet Explorer\iecompat.dll 2011-01-18 02:37:32 2048 ----a-w- C:\Windows\SysWow64\tzres.dll 2011-01-18 02:35:48 3124224 ----a-w- C:\Windows\System32\win32k.sys 2011-01-18 02:35:47 1896832 ----a-w- C:\Windows\System32\drivers\tcpip.sys 2011-01-18 02:35:39 5507968 ----a-w- C:\Windows\System32\ntoskrnl.exe 2011-01-18 02:35:38 3955080 ----a-w- C:\Windows\SysWow64\ntkrnlpa.exe 2011-01-18 02:35:38 3899784 ----a-w- C:\Windows\SysWow64\ntoskrnl.exe 2011-01-18 02:35:37 340992 ----a-w- C:\Windows\System32\schannel.dll 2011-01-18 02:35:37 224256 ----a-w- C:\Windows\SysWow64\schannel.dll 2011-01-18 02:35:35 633856 ----a-w- C:\Windows\System32\comctl32.dll 2011-01-18 02:35:34 530432 ----a-w- C:\Windows\SysWow64\comctl32.dll 2011-01-18 02:34:42 52224 ----a-w- C:\Windows\System32\rtutils.dll 2011-01-18 02:34:42 37376 ----a-w- C:\Windows\SysWow64\rtutils.dll 2011-01-18 02:34:36 558592 ----a-w- C:\Windows\System32\spoolsv.exe 2011-01-18 02:34:35 395776 ----a-w- C:\Windows\System32\webio.dll 2011-01-18 02:34:35 314368 ----a-w- C:\Windows\SysWow64\webio.dll 2011-01-18 02:33:32 738816 ----a-w- C:\Windows\SysWow64\wmpmde.dll 2011-01-18 02:33:32 1024512 ----a-w- C:\Windows\System32\wmpmde.dll 2011-01-18 02:32:31 516096 ----a-w- C:\Program Files\Windows Mail\wab.exe 2011-01-18 02:32:31 516096 ----a-w- C:\Program Files (x86)\Windows Mail\wab.exe 2011-01-18 02:32:31 35328 ----a-w- C:\Program Files\Windows Mail\wabfind.dll 2011-01-18 02:32:30 1877504 ----a-w- C:\Windows\System32\msxml3.dll 2011-01-18 02:32:30 1233920 ----a-w- C:\Windows\SysWow64\msxml3.dll 2011-01-18 02:05:17 463360 ----a-w- C:\Windows\System32\drivers\srv.sys 2011-01-17 22:04:04 -------- d-----w- C:\Users\Kari\AppData\Local\Google 2011-01-17 19:17:04 -------- d-----w- C:\Users\Kari\AppData\Local\ElevatedDiagnostics 2011-01-17 19:14:46 -------- d-----w- C:\Users\Kari\AppData\Local\Diagnostics 2011-01-17 19:09:11 -------- d-----w- C:\Users\Kari\AppData\Local\EgisTec IPS 2011-01-17 19:07:54 -------- d-----w- C:\Users\Kari\AppData\Local\VirtualStore 2011-01-17 19:04:58 -------- d-sh--we C:\Programfiler 2011-01-17 19:04:58 -------- d-sh--we C:\Program Files\Fellesfiler 2011-01-17 19:04:58 -------- d-sh--we C:\PROGRA~3\Start-meny 2011-01-17 19:04:58 -------- d-sh--we C:\PROGRA~3\Skrivebord 2011-01-17 19:04:58 -------- d-sh--we C:\PROGRA~3\Programdata 2011-01-17 19:04:58 -------- d-sh--we C:\PROGRA~3\Maler 2011-01-17 19:04:58 -------- d-sh--we C:\PROGRA~3\Favoritter 2011-01-17 19:04:58 -------- d-sh--we C:\PROGRA~3\Dokumenter 2011-01-15 14:17:43 -------- d-----w- C:\Windows\SysWow64\Wat 2011-01-15 14:17:43 -------- d-----w- C:\Windows\System32\Wat 2011-01-14 18:51:21 -------- d-----w- C:\BOOK 2011-01-14 18:47:33 -------- d-----w- C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2011-01-14 18:46:06 -------- d-----w- C:\Windows\PCHEALTH 2011-01-14 18:44:09 136948560 ----a-w- C:\Program Files (x86)\Common Files\Windows Live\.cache\wlc7FAC.tmp 2011-01-14 18:43:58 -------- d-----w- C:\Program Files (x86)\Common Files\Windows Live 2011-01-14 18:28:53 -------- d-----w- C:\Recovery ==================== Find3M ==================== 2010-12-07 11:17:20 51200 ----a-w- C:\Windows\SysWow64\OpenCL.dll 2010-12-07 11:15:30 52736 ----a-w- C:\Windows\System32\OpenCL.dll 2010-11-26 04:20:20 8120320 ----a-w- C:\Windows\System32\drivers\atikmdag.sys 2010-11-26 03:19:32 21610496 ----a-w- C:\Windows\System32\atio6axx.dll 2010-11-26 03:02:08 16702976 ----a-w- C:\Windows\SysWow64\atioglxx.dll 2010-11-26 02:58:22 143360 ----a-w- C:\Windows\System32\atiapfxx.exe 2010-11-26 02:58:12 550400 ----a-w- C:\Windows\SysWow64\aticfx32.dll 2010-11-26 02:57:08 648704 ----a-w- C:\Windows\System32\aticfx64.dll 2010-11-26 02:54:58 462848 ----a-w- C:\Windows\System32\ATIDEMGX.dll 2010-11-26 02:54:48 478720 ----a-w- C:\Windows\System32\atieclxx.exe 2010-11-26 02:54:12 203776 ----a-w- C:\Windows\System32\atiesrxx.exe 2010-11-26 02:53:00 120320 ----a-w- C:\Windows\System32\atitmm64.dll 2010-11-26 02:52:42 423424 ----a-w- C:\Windows\System32\atipdl64.dll 2010-11-26 02:52:36 356352 ----a-w- C:\Windows\SysWow64\atipdlxx.dll 2010-11-26 02:52:26 278528 ----a-w- C:\Windows\SysWow64\Oemdspif.dll 2010-11-26 02:52:20 16384 ----a-w- C:\Windows\System32\atimuixx.dll 2010-11-26 02:52:16 59392 ----a-w- C:\Windows\System32\atiedu64.dll 2010-11-26 02:52:10 43520 ----a-w- C:\Windows\SysWow64\ati2edxx.dll 2010-11-26 02:49:04 4066816 ----a-w- C:\Windows\SysWow64\atidxx32.dll 2010-11-26 02:40:14 4794368 ----a-w- C:\Windows\System32\atidxx64.dll 2010-11-26 02:30:20 51200 ----a-w- C:\Windows\System32\aticalrt64.dll 2010-11-26 02:30:20 4122624 ----a-w- C:\Windows\SysWow64\atiumdag.dll 2010-11-26 02:30:18 46080 ----a-w- C:\Windows\SysWow64\aticalrt.dll 2010-11-26 02:30:10 44544 ----a-w- C:\Windows\System32\aticalcl64.dll 2010-11-26 02:30:08 44032 ----a-w- C:\Windows\SysWow64\aticalcl.dll 2010-11-26 02:29:58 6815232 ----a-w- C:\Windows\System32\aticaldd64.dll 2010-11-26 02:29:52 3217408 ----a-w- C:\Windows\System32\atiumd6a.dll 2010-11-26 02:28:44 5441024 ----a-w- C:\Windows\SysWow64\aticaldd.dll 2010-11-26 02:24:38 58880 ----a-w- C:\Windows\System32\coinst.dll 2010-11-26 02:24:06 5258240 ----a-w- C:\Windows\System32\atiumd64.dll 2010-11-26 02:22:26 3460096 ----a-w- C:\Windows\SysWow64\atiumdva.dll 2010-11-26 02:17:28 351232 ----a-w- C:\Windows\System32\atiadlxx.dll 2010-11-26 02:17:20 249856 ----a-w- C:\Windows\SysWow64\atiadlxy.dll 2010-11-26 02:17:08 14848 ----a-w- C:\Windows\System32\atig6pxx.dll 2010-11-26 02:17:04 12800 ----a-w- C:\Windows\SysWow64\atiglpxx.dll 2010-11-26 02:17:04 12800 ----a-w- C:\Windows\System32\atiglpxx.dll 2010-11-26 02:17:00 31744 ----a-w- C:\Windows\System32\atig6txx.dll 2010-11-26 02:16:54 27136 ----a-w- C:\Windows\SysWow64\atigktxx.dll 2010-11-26 02:16:46 289792 ----a-w- C:\Windows\System32\drivers\atikmpag.sys 2010-11-26 02:16:04 39936 ----a-w- C:\Windows\System32\atiuxp64.dll 2010-11-26 02:15:58 30720 ----a-w- C:\Windows\SysWow64\atiuxpag.dll 2010-11-26 02:15:52 37888 ----a-w- C:\Windows\System32\atiu9p64.dll 2010-11-26 02:15:42 28672 ----a-w- C:\Windows\SysWow64\atiu9pag.dll 2010-11-26 02:15:00 53248 ----a-w- C:\Windows\System32\drivers\ati2erec.dll 2010-11-26 02:09:18 53760 ----a-w- C:\Windows\System32\atimpc64.dll 2010-11-26 02:09:18 53760 ----a-w- C:\Windows\System32\amdpcom64.dll 2010-11-26 02:09:12 52736 ----a-w- C:\Windows\SysWow64\atimpc32.dll 2010-11-26 02:09:12 52736 ----a-w- C:\Windows\SysWow64\amdpcom32.dll ============= FINISH: 19:28:43,31 ===============