Laptop Slow & Freezes
Hi
My wife has been complaining that her laptop has been running slow, and more often lately has been freezing (mouse won't move - just changes from a pointer to a rotating arrow, hard drive activity light blinking like mad) for sometimes as long as a few minutes - then makes a beep and becomes useable.
We have run McAfee but that has made no difference. She reckons this happens every couple of days.
I have downloaded and rub DDS. Text file blow (wish I could read these things);
DS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 7.0.6002.18005 BrowserJavaVersion: 1.6.0_20
Run by Bev at 10:28:20 on 2013-01-23
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1252.44.1033.18.3000.902 [GMT 0:00]
.
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {9FF26384-70D4-CE6B-3ECB-E759A6A40116}
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Enabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Lavasoft Ad-Watch Live! *Disabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
FW: McAfee Firewall *Enabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\agrsmsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
C:\Windows\system32\dgdersvc.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\FsUsbExService.Exe
C:\Program Files\Kontiki\KService.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Acer\Mobility Center\MobilityService.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
C:\Windows\system32\rundll32.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files\McAfee\MSC\McAPExe.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Hewlett-Packard\HP Mouse Suite\hpMonitor.exe
C:\ProgramData\HP Mouse Suite Config\hpwjd.exe
C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe
C:\ProgramData\HP Mouse Suite Config\hpwmsd.exe
C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Users\Bev\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
c:\PROGRA~1\mcafee\SITEAD~1\saui.exe
C:\Windows\system32\SndVol.exe
C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://mystart.incredimail.com?a=6PQrgSBCA3
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACA ... spire_7730
uSearchURL,(Default) = hxxp://uk.search.yahoo.com/search?fr=mcafee&p=%s%s
uURLSearchHooks: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
dURLSearchHooks: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
BHO: Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
BHO: MSS+ Identifier: {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - c:\program files\mcafee security scan\3.8.130\McAfeeMSS_IE.dll
BHO: McAfee Phishing Filter: {27B4851A-3207-45A2-B947-BE8AFE6163AB} -
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - c:\program files\canon\easy-webprint ex\ewpexbho.dll
BHO: ShowBarObj Class: {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - c:\program files\acer\empowering technology\edatasecurity\x86\ActiveToolBand.dll
BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
TB: Acer eDataSecurity Management: {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - c:\program files\acer\empowering technology\edatasecurity\x86\eDStoolbar.dll
TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
EB: Canon Easy-WebPrint EX: {21347690-EC41-4F9A-8887-1F4AEE672439} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
uRun: [kdx] c:\program files\kontiki\KHost.exe -all
uRun: [Messenger (Yahoo!)] "c:\program files\yahoo!\messenger\YahooMessenger.exe" -quiet
uRun: [KiesTrayAgent] c:\program files\samsung\kies\/\KiesTrayAgent.exe
uRun: [QuitCounter] c:\program files\quit counter\QuitCounter.exe
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil32_11_9_900_170_Plugin.exe -update plugin
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [ePower_DMC] c:\program files\acer\empowering technology\epower\ePower_DMC.exe
mRun: [eDataSecurity Loader] c:\program files\acer\empowering technology\edatasecurity\x86\eDSloader.exe
mRun: [eAudio] "c:\program files\acer\empowering technology\eaudio\eAudio.exe"
mRun: [BkupTray] "c:\program files\newtech infosystems\nti backup now 5\BkupTray.exe"
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [IAAnotif] c:\program files\intel\intel matrix storage manager\iaanotif.exe
mRun: [LManager] c:\progra~1\launch~1\QtZgAcer.EXE
mRun: [PLFSetI] c:\windows\PLFSetI.exe
mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup
mRun: [ArcadeDeluxeAgent] "c:\program files\acer arcade deluxe\acer arcade deluxe\ArcadeDeluxeAgent.exe"
mRun: [PlayMovie] "c:\program files\acer arcade deluxe\playmovie\PMVService.exe"
mRun: [ProductReg] "c:\program files\acer\wr_popup\ProductReg.exe"
mRun: [SSBkgdUpdate] "c:\program files\common files\scansoft shared\ssbkgdupdate\SSBkgdupdate.exe" -Embedding -boot
mRun: [OpwareSE4] "c:\program files\scansoft\omnipagese4.0\OpwareSE4.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Skytel] Skytel.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [mcui_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
mRun: [CanonMyPrinter] c:\program files\canon\myprinter\BJMyPrt.exe /logon
mRun: [CanonSolutionMenuEx] c:\program files\canon\solution menu ex\CNSEMAIN.EXE /logon
mRun: [mcpltui_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [CLMLServer] "c:\program files\acer arcade deluxe\acer arcade deluxe\kernel\clml\CLMLSvc.exe"
mRun: [SDTray] "c:\program files\spybot - search & destroy 2\SDTray.exe"
dRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil10d.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpmoni~1.lnk - c:\program files\hewlett-packard\hp mouse suite\hpMonitor.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpwjde~1.lnk - c:\programdata\hp mouse suite config\hpwjd.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpwmsd~1.lnk - c:\programdata\hp mouse suite config\hpwmsd.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\3.8.130\SSScheduler.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\winzip~1.lnk - c:\program files\winzip\WZQKPICK.EXE
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_2EC7709873947E87.dll/cmsidewiki.html
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: NameServer = 192.168.1.254 192.168.1.254
TCP: Interfaces\{26C2E4C4-E2BE-4CC4-B5E9-F2C5411F0ABA} : DHCPNameServer = 192.168.1.254 192.168.1.254
TCP: Interfaces\{6D1BAFBA-2E42-4BF5-8DF9-8C3CC90677F6} : DHCPNameServer = 192.168.1.254 192.168.1.254
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files\mcafee\msc\McSnIePl.dll
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
Notify: igfxcui - igfxdev.dll
Notify: SDWinLogon - SDWinLogon.dll
AppInit_DLLs= c:\progra~1\google\google~1\GoogleDesktopNetwork3.dll
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\bev\appdata\roaming\mozilla\firefox\profiles\xvg8xryl.default\
FF - prefs.js: browser.search.selectedEngine - Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://www.ebay.co.uk
FF - prefs.js: keyword.URL - hxxp://uk.search.yahoo.com/search?fr=mc ... A111GB0&p=
FF - plugin: c:\progra~1\mcafee\msc\npMcSnFFPl.dll
FF - plugin: c:\progra~1\micros~2\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\micros~2\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\canon\easy-photoprint ex\NPEZFFPI.DLL
FF - plugin: c:\program files\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\program files\mcafee security scan\3.8.130\npMcAfeeMSS.dll
FF - plugin: c:\program files\mcafee\siteadvisor\NPMcFFPlg32.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\users\bev\appdata\local\google\update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: c:\users\bev\appdata\roaming\facebook\npfbplugin_1_0_3.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_9_900_170.dll
FF - ExtSQL: !HIDDEN! 2009-09-02 08:19; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2011-8-28 64512]
R1 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2010-5-3 213392]
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\acer arcade deluxe\playmovie\000.fcl [2008-10-16 61424]
R2 BUNAgentSvc;NTI Backup Now 5 Agent Service;c:\program files\newtech infosystems\nti backup now 5\client\Agentsvc.exe [2008-3-3 16384]
R2 CLHNService;CLHNService;c:\program files\acer arcade deluxe\homemedia\kernel\dmp\CLHNService.exe [2008-10-16 81504]
R2 dgdersvc;Device Error Recovery Service;c:\windows\system32\dgdersvc.exe [2009-12-22 95568]
R2 ETService;Empowering Technology Service;c:\program files\acer\empowering technology\service\ETService.exe [2008-4-17 24576]
R2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-21 21504]
R2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [2010-9-19 217088]
R2 HomeNetSvc;McAfee Home Network;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\mcafee\siteadvisor\McSACore.exe [2008-12-26 104880]
R2 McAPExe;McAfee AP Service;c:\program files\mcafee\msc\McAPExe.exe [2012-12-16 145088]
R2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 mcpltsvc;McAfee Platform Services;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 McProxy;McAfee Proxy Service;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 McShield;McAfee McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2010-5-3 203400]
R2 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2011-9-10 236000]
R2 mfecore;McAfee Anti-Malware Core;c:\program files\common files\mcafee\amcore\mcshield.exe [2012-12-16 638976]
R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2010-5-3 169320]
R2 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2008-4-17 572528]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\program files\common files\mcafee\systemcore\mfevtps.exe [2010-5-3 172416]
R2 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\newtech infosystems\nti backup now 5\BackupSvc.exe [2008-4-7 50424]
R2 NTIPPKernel;NTIPPKernel;c:\program files\acer arcade deluxe\homemedia\kernel\dmp\NTIPPKernel.sys [2008-10-16 122368]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\newtech infosystems\nti backup now 5\SchedulerSvc.exe [2008-4-4 131072]
R2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files\spybot - search & destroy 2\SDFSSvc.exe [2013-1-23 3921880]
R2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files\spybot - search & destroy 2\SDUpdSvc.exe [2013-1-23 1042272]
R2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files\spybot - search & destroy 2\SDWSCSvc.exe [2013-1-23 171416]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2008-3-28 210432]
R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2010-5-3 60920]
R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2009-12-22 18120]
R3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.Sys [2010-9-19 36640]
R3 HP8207_8307;HP-HP8207_8307;c:\windows\system32\drivers\HP8207_8307.sys [2010-2-4 13952]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [2008-9-3 112128]
R3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [2008-4-17 81296]
R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2008-4-17 65928]
R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2010-5-3 365416]
R3 mfencbdc;McAfee Inc. mfencbdc;c:\windows\system32\drivers\mfencbdc.sys [2013-9-20 301248]
R3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:\windows\system32\drivers\NETw5v32.sys [2008-4-17 3658752]
R3 winbondcir;Winbond IR Transceiver;c:\windows\system32\drivers\winbondcir.sys [2007-3-28 43008]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2011-8-18 2152152]
S3 A310;AVerMedia A310 DVB-T;c:\windows\system32\drivers\AVerA310USB.sys [2008-4-17 25856]
S3 BDASwCap;AVerMedia A310 BDA DVBT Capture Device;c:\windows\system32\drivers\AVerA310Cap.sys [2008-4-17 42880]
S3 HipShieldK;McAfee Inc. HipShieldK;c:\windows\system32\drivers\HipShieldK.sys [2013-10-17 147912]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files\lavasoft\ad-aware\kernexplorer.sys [2011-8-18 15232]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\3.8.130\McCHSvc.exe [2013-9-6 235216]
S3 mfencrk;McAfee Inc. mfencrk;c:\windows\system32\drivers\mfencrk.sys [2013-9-20 80656]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2010-5-3 92192]
S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2008-4-17 34248]
S3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2008-4-17 40552]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\drivers\ss_bbus.sys [2010-9-19 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\drivers\ss_bmdfl.sys [2010-9-19 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\drivers\ss_bmdm.sys [2010-9-19 123648]
S3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\drivers\ss_bserd.sys [2010-9-19 100224]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2013-7-20 754856]
.
=============== Created Last 30 ================
.
2014-01-10 18:56:51 7760024 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{160d0701-007d-4a48-89d2-d838ac07586c}\mpengine.dll
2013-12-11 10:39:25 2050560 ----a-w- c:\windows\system32\win32k.sys
2013-12-11 10:39:02 282624 ----a-w- c:\program files\internet explorer\ieinstal.exe
2013-11-14 12:35:47 993792 ----a-w- c:\windows\system32\crypt32.dll
2013-11-14 12:35:17 297984 ----a-w- c:\windows\system32\gdi32.dll
2013-11-14 12:35:11 444928 ----a-w- c:\windows\system32\IKEEXT.DLL
2013-11-14 12:35:10 596480 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2013-10-17 13:52:27 147912 ----a-w- c:\windows\system32\drivers\HipShieldK.sys
2013-10-09 09:43:21 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 09:43:09 1069056 ----a-w- c:\windows\system32\DWrite.dll
2013-10-09 09:43:08 798208 ----a-w- c:\windows\system32\FntCache.dll
2013-10-09 09:43:07 683008 ----a-w- c:\windows\system32\d2d1.dll
2013-10-09 09:43:07 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2013-10-09 09:43:07 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2013-10-09 09:43:06 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2013-10-09 09:43:06 189952 ----a-w- c:\windows\system32\d3d10core.dll
2013-10-09 09:43:06 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2013-10-09 09:43:06 1029120 ----a-w- c:\windows\system32\d3d10.dll
2013-10-09 09:42:58 638400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-10-09 09:42:57 37376 ----a-w- c:\windows\system32\cdd.dll
2013-10-09 09:42:12 197632 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-10-09 09:42:10 73216 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-10-09 09:42:10 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-10-09 09:42:09 226304 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-10-09 09:42:08 39936 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-10-09 09:42:06 23552 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2013-10-09 09:41:59 293376 ----a-w- c:\windows\system32\atmfd.dll
2013-10-09 09:41:58 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-10-09 09:41:54 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-10-09 09:41:45 134272 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2013-10-09 09:41:35 532480 ----a-w- c:\windows\system32\comctl32.dll
2013-10-09 09:41:27 35328 ----a-w- c:\windows\system32\drivers\usbscan.sys
2013-10-09 09:41:26 25472 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-09-20 08:37:40 10152 ----a-w- c:\windows\system32\drivers\mfeclnrk.sys
2013-09-20 08:37:24 80656 ----a-w- c:\windows\system32\drivers\mfencrk.sys
2013-09-20 08:37:10 301248 ----a-w- c:\windows\system32\drivers\mfencbdc.sys
2013-09-14 09:43:57 615936 ----a-w- c:\windows\system32\themeui.dll
2013-09-12 12:14:42 18612928 ----a-w- c:\program files\common files\microsoft shared\office14\MSO.DLL
2013-09-05 00:43:06 72524480 ----a-w- c:\program files\common files\microsoft shared\office14\MSORES.DLL
2013-09-03 13:53:52 187248 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll
2013-08-28 09:55:00 1548288 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-08-15 19:18:26 -------- d-----w- c:\windows\system32\MRT
2013-08-14 09:16:00 24064 ----a-w- c:\windows\system32\drivers\tssecsrv.sys
2013-08-14 09:15:59 15872 ----a-w- c:\windows\system32\icaapi.dll
2013-08-14 09:15:52 905664 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-08-14 09:14:36 2048 ----a-w- c:\windows\system32\tzres.dll
2013-08-14 09:13:34 783360 ----a-w- c:\windows\system32\rpcrt4.dll
2013-08-14 09:12:36 3551680 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-08-14 09:12:35 3603904 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-08-14 09:12:34 1205168 ----a-w- c:\windows\system32\ntdll.dll
2013-08-14 09:12:15 172544 ----a-w- c:\windows\system32\wintrust.dll
2013-08-14 09:12:15 133120 ----a-w- c:\windows\system32\cryptsvc.dll
2013-08-14 09:12:13 98304 ----a-w- c:\windows\system32\cryptnet.dll
2013-07-23 18:59:14 5799592 ----a-w- c:\program files\common files\microsoft shared\office14\office setup controller\OSETUP.DLL
2013-07-10 14:51:41 505344 ----a-w- c:\windows\system32\qedit.dll
2013-07-10 14:51:11 936960 ----a-w- c:\program files\common files\microsoft shared\ink\journal.dll
2013-06-28 21:53:24 3523832 ----a-w- c:\program files\common files\microsoft shared\office14\Csi.dll
2013-06-28 21:45:56 646368 ----a-w- c:\program files\common files\microsoft shared\office14\ACEEXCL.DLL
2013-06-25 21:19:36 988888 ----a-w- c:\program files\common files\microsoft shared\office14\msoshext.dll
2013-06-25 19:22:58 988888 ----a-w- c:\program files\common files\microsoft shared\filters\odffilt.dll
2013-06-25 19:22:58 1123032 ----a-w- c:\program files\common files\microsoft shared\filters\offfiltx.dll
2013-06-24 20:25:32 -------- d-----w- c:\users\bev\appdata\roaming\PowerCinema
2013-06-22 11:13:55 443904 ----a-w- c:\windows\system32\win32spl.dll
2013-06-22 11:13:55 37376 ----a-w- c:\windows\system32\printcom.dll
2013-06-22 11:13:35 812544 ----a-w- c:\windows\system32\certutil.exe
2013-06-22 11:13:32 41984 ----a-w- c:\windows\system32\certenc.dll
2013-06-22 11:09:28 24576 ----a-w- c:\windows\system32\cryptdlg.dll
2013-05-24 11:51:44 2194128 ----a-w- c:\program files\common files\microsoft shared\office14\ACECORE.DLL
2013-05-19 10:07:48 -------- d-----w- c:\users\bev\appdata\local\Canon Easy-PhotoPrint EX
2013-04-10 13:20:19 1082232 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-10 13:20:09 64000 ----a-w- c:\windows\system32\smss.exe
2013-04-10 13:20:08 49152 ----a-w- c:\windows\system32\csrsrv.dll
2013-04-10 13:19:38 2067968 ----a-w- c:\windows\system32\mstscax.dll
2013-04-10 13:19:34 376320 ----a-w- c:\windows\system32\winsrv.dll
2013-03-21 18:07:37 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-03-20 01:24:50 105664 ----a-w- c:\program files\common files\microsoft shared\office14\1033\xlsrvintl.dll
2013-03-10 05:38:20 84736 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0.dll
2013-03-10 05:38:20 78592 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0.dll
2013-03-10 05:38:20 64240 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0.dll
2013-03-10 05:38:20 42248 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0.dll
2013-03-10 05:38:20 42240 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll
2013-03-10 05:38:20 36096 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0.dll
2013-03-10 05:38:20 33528 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinviews\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0.dll
2013-03-10 05:38:20 25336 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\contracts\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0.dll
2013-03-10 05:38:20 24816 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\contracts\Microsoft.VisualStudio.Tools.Office.Contract.v10.0.dll
2013-03-09 08:17:04 82576 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\VSTOInstaller.exe
2013-03-09 08:17:04 49832 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\VSTOMessageProvider.dll
2013-03-09 08:17:04 268440 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\VSTOLoader.dll
2013-03-09 08:17:04 19080 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\1033\VSTOLoaderUI.dll
2013-03-09 08:17:04 116880 ----a-w- c:\program files\common files\microsoft shared\vsto\vstoee.dll
2013-03-09 08:17:04 10912 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\1033\VSTOInstallerUI.dll
2013-03-08 22:59:30 378072 ----a-w- c:\program files\common files\microsoft shared\office14\ACEOLEDB.DLL
2013-03-07 12:48:02 81920 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0.dll
2013-03-07 12:48:02 36864 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0.dll
2013-03-07 12:48:00 94208 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinviews\Microsoft.Office.Tools.v9.0.dll
2013-03-07 12:48:00 49152 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\contracts\Microsoft.VisualStudio.Tools.Office.Contract.v9.0.dll
2013-03-07 12:48:00 36864 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0.dll
2013-03-07 12:48:00 131072 ----a-w- c:\program files\common files\microsoft shared\vsta\appinfodocument\microsoft.visualstudio.tools.office.appinfodocument\Microsoft.VisualStudio.Tools.Office.AppInfoDocument.v9.0.dll
2013-03-07 12:47:56 77824 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinviews\Microsoft.VisualStudio.Tools.Applications.Runtime.v9.0.dll
2013-03-07 12:47:56 45056 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll
2013-03-07 12:47:56 22016 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\contracts\Microsoft.VisualStudio.Tools.Applications.Contract.v9.0.dll
2013-03-06 08:42:18 1101504 ----a-w- c:\program files\common files\microsoft shared\office14\office setup controller\Setup.exe
2013-03-06 08:11:18 4526232 ----a-w- c:\program files\common files\microsoft shared\office14\office setup controller\promo.exe
2013-03-06 08:07:48 839360 ----a-w- c:\program files\common files\microsoft shared\dw\DW20.EXE
2013-03-06 08:07:48 520424 ----a-w- c:\program files\common files\microsoft shared\dw\DWTRIG20.EXE
2013-03-06 07:09:58 554672 ----a-w- c:\program files\common files\microsoft shared\portal\PortalConnectCore.dll
2013-02-18 15:45:56 647816 ----a-w- c:\program files\common files\microsoft shared\office14\ACEES.DLL
2013-02-18 15:45:56 544920 ----a-w- c:\program files\common files\microsoft shared\office14\ACEDAO.DLL
2013-02-18 15:45:56 528536 ----a-w- c:\program files\common files\microsoft shared\office14\ACEREP.DLL
2013-02-18 15:45:56 37000 ----a-w- c:\program files\common files\microsoft shared\office14\ACEERR.DLL
2013-02-18 15:45:56 363656 ----a-w- c:\program files\common files\microsoft shared\office14\ACEXBE.DLL
2013-02-18 15:45:56 335488 ----a-w- c:\program files\common files\microsoft shared\office14\ACEEXCH.DLL
2013-02-18 15:45:56 221304 ----a-w- c:\program files\common files\microsoft shared\office14\ACETXT.DLL
2013-02-18 14:42:42 101992 ----a-w- c:\program files\common files\microsoft shared\office14\EXP_PDF.DLL
2013-02-14 15:10:00 59480 ----a-w- c:\program files\common files\microsoft shared\office14\EXP_XPS.DLL
2013-02-14 14:21:08 45728 ----a-w- c:\program files\common files\microsoft shared\office14\ACERCLR.DLL
2013-02-14 14:21:08 330360 ----a-w- c:\program files\common files\microsoft shared\office14\ACER3X.DLL
2013-02-14 14:21:08 279696 ----a-w- c:\program files\common files\microsoft shared\office14\ACEODBC.DLL
2013-02-13 22:44:55 1314816 ----a-w- c:\windows\system32\quartz.dll
2013-02-06 11:27:07 -------- d-----w- c:\program files\Mozilla Firefox(14)
2013-01-23 10:15:37 18968 ----a-w- c:\windows\system32\sdnclean.exe
2013-01-23 10:14:37 -------- d-----w- c:\program files\Spybot - Search & Destroy 2
2013-01-23 02:12:52 62576 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{160d0701-007d-4a48-89d2-d838ac07586c}\offreg.dll
2013-01-15 12:33:16 1367640 ----a-w- c:\program files\common files\microsoft shared\office14\RICHED20.DLL
2013-01-09 14:02:22 204288 ----a-w- c:\windows\system32\ncrypt.dll
2013-01-09 14:02:13 1400832 ----a-w- c:\windows\system32\msxml6.dll
2013-01-08 06:25:18 640216 ----a-w- c:\program files\common files\microsoft shared\office14\USP10.DLL
2013-01-06 17:38:58 -------- d-----w- c:\programdata\Xerox
2013-01-06 17:14:24 73728 ------w- c:\windows\system32\BRCrypt.dll
2013-01-06 17:13:52 102400 ------w- c:\windows\system32\BrMfNt.dll
2013-01-06 17:13:44 57856 ------w- c:\windows\system32\BrWiaNCp.dll
2013-01-06 17:13:44 42496 ------w- c:\windows\system32\Brnsplg.dll
2013-01-06 17:13:43 63488 ------w- c:\windows\system32\BrNetSti.dll
2013-01-06 17:13:43 106496 ------w- c:\windows\system32\BrMuSNMP.dll
2013-01-06 17:13:16 167936 ------w- c:\windows\system32\NSSearch.dll
2013-01-06 16:41:47 -------- d-----w- c:\programdata\Brother
2013-01-06 16:41:25 -------- d-----w- c:\users\bev\appdata\local\Macromedia
2013-01-06 16:38:41 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
.
==================== Find3M ====================
.
2013-12-11 09:05:48 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-11-19 03:33:38 230048 ------w- c:\windows\system32\MpSigStub.exe
2013-11-04 17:22:36 60920 ----a-w- c:\windows\system32\drivers\cfwids.sys
2013-11-04 17:17:14 213392 ----a-w- c:\windows\system32\drivers\mfewfpk.sys
2013-11-04 17:12:26 572528 ----a-w- c:\windows\system32\drivers\mfehidk.sys
2013-11-04 17:10:42 365416 ----a-w- c:\windows\system32\drivers\mfefirek.sys
2013-11-04 17:10:02 65928 ----a-w- c:\windows\system32\drivers\mfebopk.sys
2013-11-04 17:09:20 236000 ----a-w- c:\windows\system32\drivers\mfeavfk.sys
2013-11-04 17:08:22 133992 ----a-w- c:\windows\system32\drivers\mfeapfk.sys
2013-10-30 02:13:01 1304064 ----a-w- c:\windows\system32\WMALFXGFXDSP.dll
2013-10-30 02:12:54 335360 ----a-w- c:\windows\system32\SysFxUI.dll
2013-10-30 01:43:04 130048 ----a-w- c:\windows\system32\drivers\drmk.sys
2013-10-30 00:43:06 167936 ----a-w- c:\windows\system32\drivers\portcls.sys
2013-10-24 02:17:49 834048 ----a-w- c:\windows\system32\wininet.dll
2013-10-24 02:17:06 53760 ----a-w- c:\windows\apppatch\iebrshim.dll
2013-10-24 02:16:58 19456 ----a-w- c:\windows\system32\corpol.dll
2013-10-24 00:55:43 389632 ----a-w- c:\windows\system32\html.iec
2013-10-24 00:44:32 1383424 ----a-w- c:\windows\system32\mshtml.tlb
2013-10-22 07:19:59 158208 ----a-w- c:\windows\system32\imagehlp.dll
2013-10-11 02:08:55 36864 ----a-w- c:\windows\system32\wshcon.dll
2013-10-11 02:08:55 131072 ----a-w- c:\windows\system32\wshom.ocx
2013-10-11 02:08:35 172032 ----a-w- c:\windows\system32\scrrun.dll
2013-10-11 00:35:42 135168 ----a-w- c:\windows\system32\cscript.exe
2013-10-11 00:35:41 155648 ----a-w- c:\windows\system32\wscript.exe
2012-11-09 06:52:22 9648 ----a-w- c:\windows\system32\drivers\mfeclnk.sys
2012-11-09 06:52:12 92192 ----a-w- c:\windows\system32\drivers\mferkdet.sys
2012-11-02 10:18:17 376320 ----a-w- c:\windows\system32\dpnet.dll
2012-11-02 08:26:06 23040 ----a-w- c:\windows\system32\dpnsvr.exe
.
============= FINISH: 10:30:23.33 ===============
Can anyone see if there is there anything suspicious here?
Thanks in anticipation.
My wife has been complaining that her laptop has been running slow, and more often lately has been freezing (mouse won't move - just changes from a pointer to a rotating arrow, hard drive activity light blinking like mad) for sometimes as long as a few minutes - then makes a beep and becomes useable.
We have run McAfee but that has made no difference. She reckons this happens every couple of days.
I have downloaded and rub DDS. Text file blow (wish I could read these things);
DS (Ver_2012-11-20.01) - NTFS_x86
Internet Explorer: 7.0.6002.18005 BrowserJavaVersion: 1.6.0_20
Run by Bev at 10:28:20 on 2013-01-23
Microsoft® Windows Vista™ Home Basic 6.0.6002.2.1252.44.1033.18.3000.902 [GMT 0:00]
.
AV: Lavasoft Ad-Watch Live! Anti-Virus *Disabled/Updated* {9FF26384-70D4-CE6B-3ECB-E759A6A40116}
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {ADA629C7-7F48-5689-624A-3B76997E0892}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {16C7C823-5972-5907-58FA-0004E2F9422F}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: Spybot - Search and Destroy *Enabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Lavasoft Ad-Watch Live! *Disabled/Updated* {24938260-56EE-C1E5-047B-DC2BDD234BAB}
FW: McAfee Firewall *Enabled* {959DA8E2-3527-57D1-4915-924367AD4FE9}
.
============== Running Processes ================
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\SLsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
C:\Windows\system32\agrsmsvc.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\Client\Agentsvc.exe
C:\Program Files\Acer Arcade Deluxe\HomeMedia\Kernel\DMP\CLHNService.exe
C:\Windows\system32\dgdersvc.exe
C:\Program Files\Acer\Empowering Technology\eDataSecurity\x86\eDSService.exe
C:\Program Files\Acer\Empowering Technology\Service\ETService.exe
C:\Windows\system32\taskeng.exe
C:\Windows\system32\FsUsbExService.Exe
C:\Program Files\Kontiki\KService.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\McAfee\SiteAdvisor\McSACore.exe
C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe
C:\Acer\Mobility Center\MobilityService.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\BackupSvc.exe
C:\Windows\system32\rundll32.exe
C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
C:\Program Files\Cyberlink\Shared files\RichVideo.exe
C:\Windows\system32\SearchIndexer.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
C:\Program Files\McAfee\MSC\McAPExe.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\system32\wuauclt.exe
C:\Windows\RtHDVCpl.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Acer Arcade Deluxe\Acer Arcade Deluxe\Kernel\CLML\CLMLSvc.exe
C:\Program Files\Kontiki\KHost.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Program Files\Hewlett-Packard\HP Mouse Suite\hpMonitor.exe
C:\ProgramData\HP Mouse Suite Config\hpwjd.exe
C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe
C:\ProgramData\HP Mouse Suite Config\hpwmsd.exe
C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Users\Bev\AppData\Local\Temp\RtkBtMnt.exe
C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
c:\PROGRA~1\mcafee\SITEAD~1\saui.exe
C:\Windows\system32\SndVol.exe
C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://mystart.incredimail.com?a=6PQrgSBCA3
mStart Page = hxxp://homepage.acer.com/rdr.aspx?b=ACA ... spire_7730
uSearchURL,(Default) = hxxp://uk.search.yahoo.com/search?fr=mcafee&p=%s%s
uURLSearchHooks: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
uURLSearchHooks: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
dURLSearchHooks: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
BHO: Yahoo! Toolbar Helper: {02478D38-C3F9-4efb-9B51-7695ECA05670} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
BHO: MSS+ Identifier: {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - c:\program files\mcafee security scan\3.8.130\McAfeeMSS_IE.dll
BHO: McAfee Phishing Filter: {27B4851A-3207-45A2-B947-BE8AFE6163AB} -
BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049C3E9-B461-4BC5-8870-4C09146192CA} - c:\programdata\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
BHO: Canon Easy-WebPrint EX BHO: {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - c:\program files\canon\easy-webprint ex\ewpexbho.dll
BHO: ShowBarObj Class: {83A2F9B1-01A2-4AA5-87D1-45B6B8505E96} - c:\program files\acer\empowering technology\edatasecurity\x86\ActiveToolBand.dll
BHO: McAfee SiteAdvisor BHO: {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
BHO: Office Document Cache Handler: {B4F3A835-0E21-4959-BA22-42B3008E02FF} - c:\program files\microsoft office\office14\URLREDIR.DLL
BHO: Java(tm) Plug-In 2 SSV Helper: {DBC80044-A445-435b-BC74-9C25C1C588A9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
TB: Acer eDataSecurity Management: {5CBE3B7C-1E47-477e-A7DD-396DB0476E29} - c:\program files\acer\empowering technology\edatasecurity\x86\eDStoolbar.dll
TB: McAfee SiteAdvisor Toolbar: {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: Canon Easy-WebPrint EX: {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
EB: Canon Easy-WebPrint EX: {21347690-EC41-4F9A-8887-1F4AEE672439} - c:\program files\canon\easy-webprint ex\ewpexhlp.dll
uRun: [kdx] c:\program files\kontiki\KHost.exe -all
uRun: [Messenger (Yahoo!)] "c:\program files\yahoo!\messenger\YahooMessenger.exe" -quiet
uRun: [KiesTrayAgent] c:\program files\samsung\kies\/\KiesTrayAgent.exe
uRun: [QuitCounter] c:\program files\quit counter\QuitCounter.exe
uRun: [WMPNSCFG] c:\program files\windows media player\WMPNSCFG.exe
uRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil32_11_9_900_170_Plugin.exe -update plugin
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [ePower_DMC] c:\program files\acer\empowering technology\epower\ePower_DMC.exe
mRun: [eDataSecurity Loader] c:\program files\acer\empowering technology\edatasecurity\x86\eDSloader.exe
mRun: [eAudio] "c:\program files\acer\empowering technology\eaudio\eAudio.exe"
mRun: [BkupTray] "c:\program files\newtech infosystems\nti backup now 5\BkupTray.exe"
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
mRun: [Persistence] c:\windows\system32\igfxpers.exe
mRun: [IAAnotif] c:\program files\intel\intel matrix storage manager\iaanotif.exe
mRun: [LManager] c:\progra~1\launch~1\QtZgAcer.EXE
mRun: [PLFSetI] c:\windows\PLFSetI.exe
mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup
mRun: [ArcadeDeluxeAgent] "c:\program files\acer arcade deluxe\acer arcade deluxe\ArcadeDeluxeAgent.exe"
mRun: [PlayMovie] "c:\program files\acer arcade deluxe\playmovie\PMVService.exe"
mRun: [ProductReg] "c:\program files\acer\wr_popup\ProductReg.exe"
mRun: [SSBkgdUpdate] "c:\program files\common files\scansoft shared\ssbkgdupdate\SSBkgdupdate.exe" -Embedding -boot
mRun: [OpwareSE4] "c:\program files\scansoft\omnipagese4.0\OpwareSE4.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [Skytel] Skytel.exe
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [mcui_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe" -osboot
mRun: [CanonMyPrinter] c:\program files\canon\myprinter\BJMyPrt.exe /logon
mRun: [CanonSolutionMenuEx] c:\program files\canon\solution menu ex\CNSEMAIN.EXE /logon
mRun: [mcpltui_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [CLMLServer] "c:\program files\acer arcade deluxe\acer arcade deluxe\kernel\clml\CLMLSvc.exe"
mRun: [SDTray] "c:\program files\spybot - search & destroy 2\SDTray.exe"
dRunOnce: [FlashPlayerUpdate] c:\windows\system32\macromed\flash\FlashUtil10d.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\adobeg~1.lnk - c:\program files\common files\adobe\calibration\Adobe Gamma Loader.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpmoni~1.lnk - c:\program files\hewlett-packard\hp mouse suite\hpMonitor.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpwjde~1.lnk - c:\programdata\hp mouse suite config\hpwjd.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpwmsd~1.lnk - c:\programdata\hp mouse suite config\hpwmsd.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\3.8.130\SSScheduler.exe
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\winzip~1.lnk - c:\program files\winzip\WZQKPICK.EXE
uPolicies-Explorer: NoDrives = dword:0
mPolicies-Explorer: BindDirectlyToPropertySetStorage = dword:0
mPolicies-Explorer: NoDrives = dword:0
mPolicies-System: EnableUIADesktopToggle = dword:0
IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office14\EXCEL.EXE/3000
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_2EC7709873947E87.dll/cmsidewiki.html
IE: Se&nd to OneNote - c:\progra~1\micros~2\office14\ONBttnIE.dll/105
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\program files\microsoft office\office14\ONBttnIE.dll
IE: {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - {FFFDC614-B694-4AE6-AB38-5D6374584B52} - c:\program files\microsoft office\office14\ONBttnIELinkedNotes.dll
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinsta ... s-i586.cab
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/s ... wflash.cab
TCP: NameServer = 192.168.1.254 192.168.1.254
TCP: Interfaces\{26C2E4C4-E2BE-4CC4-B5E9-F2C5411F0ABA} : DHCPNameServer = 192.168.1.254 192.168.1.254
TCP: Interfaces\{6D1BAFBA-2E42-4BF5-8DF9-8C3CC90677F6} : DHCPNameServer = 192.168.1.254 192.168.1.254
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files\mcafee\msc\McSnIePl.dll
Filter: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - c:\program files\common files\microsoft shared\office14\MSOXMLMF.DLL
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\program files\mcafee\siteadvisor\McIEPlg.dll
Notify: igfxcui - igfxdev.dll
Notify: SDWinLogon - SDWinLogon.dll
AppInit_DLLs= c:\progra~1\google\google~1\GoogleDesktopNetwork3.dll
LSA: Security Packages = kerberos msv1_0 schannel wdigest tspkg
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\bev\appdata\roaming\mozilla\firefox\profiles\xvg8xryl.default\
FF - prefs.js: browser.search.selectedEngine - Secure Search
FF - prefs.js: browser.startup.homepage - hxxp://www.ebay.co.uk
FF - prefs.js: keyword.URL - hxxp://uk.search.yahoo.com/search?fr=mc ... A111GB0&p=
FF - plugin: c:\progra~1\mcafee\msc\npMcSnFFPl.dll
FF - plugin: c:\progra~1\micros~2\office14\NPAUTHZ.DLL
FF - plugin: c:\progra~1\micros~2\office14\NPSPWRAP.DLL
FF - plugin: c:\program files\adobe\reader 10.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\canon\easy-photoprint ex\NPEZFFPI.DLL
FF - plugin: c:\program files\google\update\1.3.22.3\npGoogleUpdate3.dll
FF - plugin: c:\program files\mcafee security scan\3.8.130\npMcAfeeMSS.dll
FF - plugin: c:\program files\mcafee\siteadvisor\NPMcFFPlg32.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprpchromebrowserrecordext.dll
FF - plugin: c:\programdata\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
FF - plugin: c:\users\bev\appdata\local\google\update\1.3.21.65\npGoogleUpdate3.dll
FF - plugin: c:\users\bev\appdata\roaming\facebook\npfbplugin_1_0_3.dll
FF - plugin: c:\windows\system32\macromed\flash\NPSWF32_11_9_900_170.dll
FF - ExtSQL: !HIDDEN! 2009-09-02 08:19; {20a82645-c095-46ed-80e3-08825760534b}; c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\DotNetAssistantExtension
.
============= SERVICES / DRIVERS ===============
.
R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2011-8-28 64512]
R1 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2010-5-3 213392]
R2 {49DE1C67-83F8-4102-99E0-C16DCC7EEC796};{49DE1C67-83F8-4102-99E0-C16DCC7EEC796};c:\program files\acer arcade deluxe\playmovie\000.fcl [2008-10-16 61424]
R2 BUNAgentSvc;NTI Backup Now 5 Agent Service;c:\program files\newtech infosystems\nti backup now 5\client\Agentsvc.exe [2008-3-3 16384]
R2 CLHNService;CLHNService;c:\program files\acer arcade deluxe\homemedia\kernel\dmp\CLHNService.exe [2008-10-16 81504]
R2 dgdersvc;Device Error Recovery Service;c:\windows\system32\dgdersvc.exe [2009-12-22 95568]
R2 ETService;Empowering Technology Service;c:\program files\acer\empowering technology\service\ETService.exe [2008-4-17 24576]
R2 FontCache;Windows Font Cache Service;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-21 21504]
R2 FsUsbExService;FsUsbExService;c:\windows\system32\FsUsbExService.Exe [2010-9-19 217088]
R2 HomeNetSvc;McAfee Home Network;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\mcafee\siteadvisor\McSACore.exe [2008-12-26 104880]
R2 McAPExe;McAfee AP Service;c:\program files\mcafee\msc\McAPExe.exe [2012-12-16 145088]
R2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 mcpltsvc;McAfee Platform Services;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 McProxy;McAfee Proxy Service;c:\program files\common files\mcafee\platform\mcsvchost\McSvHost.exe [2012-12-16 281560]
R2 McShield;McAfee McShield;c:\program files\common files\mcafee\systemcore\mcshield.exe [2010-5-3 203400]
R2 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2011-9-10 236000]
R2 mfecore;McAfee Anti-Malware Core;c:\program files\common files\mcafee\amcore\mcshield.exe [2012-12-16 638976]
R2 mfefire;McAfee Firewall Core Service;c:\program files\common files\mcafee\systemcore\mfefire.exe [2010-5-3 169320]
R2 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2008-4-17 572528]
R2 mfevtp;McAfee Validation Trust Protection Service;c:\program files\common files\mcafee\systemcore\mfevtps.exe [2010-5-3 172416]
R2 NTIBackupSvc;NTI Backup Now 5 Backup Service;c:\program files\newtech infosystems\nti backup now 5\BackupSvc.exe [2008-4-7 50424]
R2 NTIPPKernel;NTIPPKernel;c:\program files\acer arcade deluxe\homemedia\kernel\dmp\NTIPPKernel.sys [2008-10-16 122368]
R2 NTISchedulerSvc;NTI Backup Now 5 Scheduler Service;c:\program files\newtech infosystems\nti backup now 5\SchedulerSvc.exe [2008-4-4 131072]
R2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files\spybot - search & destroy 2\SDFSSvc.exe [2013-1-23 3921880]
R2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files\spybot - search & destroy 2\SDUpdSvc.exe [2013-1-23 1042272]
R2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files\spybot - search & destroy 2\SDWSCSvc.exe [2013-1-23 171416]
R3 b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0;c:\windows\system32\drivers\b57nd60x.sys [2008-3-28 210432]
R3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2010-5-3 60920]
R3 dgderdrv;dgderdrv;c:\windows\system32\drivers\dgderdrv.sys [2009-12-22 18120]
R3 FsUsbExDisk;FsUsbExDisk;c:\windows\system32\FsUsbExDisk.Sys [2010-9-19 36640]
R3 HP8207_8307;HP-HP8207_8307;c:\windows\system32\drivers\HP8207_8307.sys [2010-2-4 13952]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI;c:\windows\system32\drivers\IntcHdmi.sys [2008-9-3 112128]
R3 JMCR;JMCR;c:\windows\system32\drivers\jmcr.sys [2008-4-17 81296]
R3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2008-4-17 65928]
R3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2010-5-3 365416]
R3 mfencbdc;McAfee Inc. mfencbdc;c:\windows\system32\drivers\mfencbdc.sys [2013-9-20 301248]
R3 NETw5v32;Intel(R) Wireless WiFi Link Adapter Driver for Windows Vista 32 Bit ;c:\windows\system32\drivers\NETw5v32.sys [2008-4-17 3658752]
R3 winbondcir;Winbond IR Transceiver;c:\windows\system32\drivers\winbondcir.sys [2007-3-28 43008]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
S2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2011-8-18 2152152]
S3 A310;AVerMedia A310 DVB-T;c:\windows\system32\drivers\AVerA310USB.sys [2008-4-17 25856]
S3 BDASwCap;AVerMedia A310 BDA DVBT Capture Device;c:\windows\system32\drivers\AVerA310Cap.sys [2008-4-17 42880]
S3 HipShieldK;McAfee Inc. HipShieldK;c:\windows\system32\drivers\HipShieldK.sys [2013-10-17 147912]
S3 Lavasoft Kernexplorer;Lavasoft helper driver;c:\program files\lavasoft\ad-aware\kernexplorer.sys [2011-8-18 15232]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\3.8.130\McCHSvc.exe [2013-9-6 235216]
S3 mfencrk;McAfee Inc. mfencrk;c:\windows\system32\drivers\mfencrk.sys [2013-9-20 80656]
S3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2010-5-3 92192]
S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2008-4-17 34248]
S3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2008-4-17 40552]
S3 ss_bbus;SAMSUNG USB Mobile Device (WDM);c:\windows\system32\drivers\ss_bbus.sys [2010-9-19 98432]
S3 ss_bmdfl;SAMSUNG USB Mobile Modem (Filter);c:\windows\system32\drivers\ss_bmdfl.sys [2010-9-19 14848]
S3 ss_bmdm;SAMSUNG USB Mobile Modem;c:\windows\system32\drivers\ss_bmdm.sys [2010-9-19 123648]
S3 ss_bserd;SAMSUNG USB Mobile Logging Driver;c:\windows\system32\drivers\ss_bserd.sys [2010-9-19 100224]
S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2013-7-20 754856]
.
=============== Created Last 30 ================
.
2014-01-10 18:56:51 7760024 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{160d0701-007d-4a48-89d2-d838ac07586c}\mpengine.dll
2013-12-11 10:39:25 2050560 ----a-w- c:\windows\system32\win32k.sys
2013-12-11 10:39:02 282624 ----a-w- c:\program files\internet explorer\ieinstal.exe
2013-11-14 12:35:47 993792 ----a-w- c:\windows\system32\crypt32.dll
2013-11-14 12:35:17 297984 ----a-w- c:\windows\system32\gdi32.dll
2013-11-14 12:35:11 444928 ----a-w- c:\windows\system32\IKEEXT.DLL
2013-11-14 12:35:10 596480 ----a-w- c:\windows\system32\FWPUCLNT.DLL
2013-10-17 13:52:27 147912 ----a-w- c:\windows\system32\drivers\HipShieldK.sys
2013-10-09 09:43:21 102608 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-10-09 09:43:09 1069056 ----a-w- c:\windows\system32\DWrite.dll
2013-10-09 09:43:08 798208 ----a-w- c:\windows\system32\FntCache.dll
2013-10-09 09:43:07 683008 ----a-w- c:\windows\system32\d2d1.dll
2013-10-09 09:43:07 486400 ----a-w- c:\windows\system32\d3d10level9.dll
2013-10-09 09:43:07 1172480 ----a-w- c:\windows\system32\d3d10warp.dll
2013-10-09 09:43:06 219648 ----a-w- c:\windows\system32\d3d10_1core.dll
2013-10-09 09:43:06 189952 ----a-w- c:\windows\system32\d3d10core.dll
2013-10-09 09:43:06 160768 ----a-w- c:\windows\system32\d3d10_1.dll
2013-10-09 09:43:06 1029120 ----a-w- c:\windows\system32\d3d10.dll
2013-10-09 09:42:58 638400 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-10-09 09:42:57 37376 ----a-w- c:\windows\system32\cdd.dll
2013-10-09 09:42:12 197632 ----a-w- c:\windows\system32\drivers\usbhub.sys
2013-10-09 09:42:10 73216 ----a-w- c:\windows\system32\drivers\usbccgp.sys
2013-10-09 09:42:10 6016 ----a-w- c:\windows\system32\drivers\usbd.sys
2013-10-09 09:42:09 226304 ----a-w- c:\windows\system32\drivers\usbport.sys
2013-10-09 09:42:08 39936 ----a-w- c:\windows\system32\drivers\usbehci.sys
2013-10-09 09:42:06 23552 ----a-w- c:\windows\system32\drivers\usbuhci.sys
2013-10-09 09:41:59 293376 ----a-w- c:\windows\system32\atmfd.dll
2013-10-09 09:41:58 34304 ----a-w- c:\windows\system32\atmlib.dll
2013-10-09 09:41:54 527064 ----a-w- c:\windows\system32\drivers\Wdf01000.sys
2013-10-09 09:41:45 134272 ----a-w- c:\windows\system32\drivers\usbvideo.sys
2013-10-09 09:41:35 532480 ----a-w- c:\windows\system32\comctl32.dll
2013-10-09 09:41:27 35328 ----a-w- c:\windows\system32\drivers\usbscan.sys
2013-10-09 09:41:26 25472 ----a-w- c:\windows\system32\drivers\hidparse.sys
2013-09-20 08:37:40 10152 ----a-w- c:\windows\system32\drivers\mfeclnrk.sys
2013-09-20 08:37:24 80656 ----a-w- c:\windows\system32\drivers\mfencrk.sys
2013-09-20 08:37:10 301248 ----a-w- c:\windows\system32\drivers\mfencbdc.sys
2013-09-14 09:43:57 615936 ----a-w- c:\windows\system32\themeui.dll
2013-09-12 12:14:42 18612928 ----a-w- c:\program files\common files\microsoft shared\office14\MSO.DLL
2013-09-05 00:43:06 72524480 ----a-w- c:\program files\common files\microsoft shared\office14\MSORES.DLL
2013-09-03 13:53:52 187248 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll
2013-08-28 09:55:00 1548288 ----a-w- c:\windows\system32\WMVDECOD.DLL
2013-08-15 19:18:26 -------- d-----w- c:\windows\system32\MRT
2013-08-14 09:16:00 24064 ----a-w- c:\windows\system32\drivers\tssecsrv.sys
2013-08-14 09:15:59 15872 ----a-w- c:\windows\system32\icaapi.dll
2013-08-14 09:15:52 905664 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-08-14 09:14:36 2048 ----a-w- c:\windows\system32\tzres.dll
2013-08-14 09:13:34 783360 ----a-w- c:\windows\system32\rpcrt4.dll
2013-08-14 09:12:36 3551680 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-08-14 09:12:35 3603904 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-08-14 09:12:34 1205168 ----a-w- c:\windows\system32\ntdll.dll
2013-08-14 09:12:15 172544 ----a-w- c:\windows\system32\wintrust.dll
2013-08-14 09:12:15 133120 ----a-w- c:\windows\system32\cryptsvc.dll
2013-08-14 09:12:13 98304 ----a-w- c:\windows\system32\cryptnet.dll
2013-07-23 18:59:14 5799592 ----a-w- c:\program files\common files\microsoft shared\office14\office setup controller\OSETUP.DLL
2013-07-10 14:51:41 505344 ----a-w- c:\windows\system32\qedit.dll
2013-07-10 14:51:11 936960 ----a-w- c:\program files\common files\microsoft shared\ink\journal.dll
2013-06-28 21:53:24 3523832 ----a-w- c:\program files\common files\microsoft shared\office14\Csi.dll
2013-06-28 21:45:56 646368 ----a-w- c:\program files\common files\microsoft shared\office14\ACEEXCL.DLL
2013-06-25 21:19:36 988888 ----a-w- c:\program files\common files\microsoft shared\office14\msoshext.dll
2013-06-25 19:22:58 988888 ----a-w- c:\program files\common files\microsoft shared\filters\odffilt.dll
2013-06-25 19:22:58 1123032 ----a-w- c:\program files\common files\microsoft shared\filters\offfiltx.dll
2013-06-24 20:25:32 -------- d-----w- c:\users\bev\appdata\roaming\PowerCinema
2013-06-22 11:13:55 443904 ----a-w- c:\windows\system32\win32spl.dll
2013-06-22 11:13:55 37376 ----a-w- c:\windows\system32\printcom.dll
2013-06-22 11:13:35 812544 ----a-w- c:\windows\system32\certutil.exe
2013-06-22 11:13:32 41984 ----a-w- c:\windows\system32\certenc.dll
2013-06-22 11:09:28 24576 ----a-w- c:\windows\system32\cryptdlg.dll
2013-05-24 11:51:44 2194128 ----a-w- c:\program files\common files\microsoft shared\office14\ACECORE.DLL
2013-05-19 10:07:48 -------- d-----w- c:\users\bev\appdata\local\Canon Easy-PhotoPrint EX
2013-04-10 13:20:19 1082232 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-10 13:20:09 64000 ----a-w- c:\windows\system32\smss.exe
2013-04-10 13:20:08 49152 ----a-w- c:\windows\system32\csrsrv.dll
2013-04-10 13:19:38 2067968 ----a-w- c:\windows\system32\mstscax.dll
2013-04-10 13:19:34 376320 ----a-w- c:\windows\system32\winsrv.dll
2013-03-21 18:07:37 15872 ----a-w- c:\windows\system32\drivers\usb8023.sys
2013-03-20 01:24:50 105664 ----a-w- c:\program files\common files\microsoft shared\office14\1033\xlsrvintl.dll
2013-03-10 05:38:20 84736 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Office.Word.HostAdapter.v10.0.dll
2013-03-10 05:38:20 78592 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Office.Excel.HostAdapter.v10.0.dll
2013-03-10 05:38:20 64240 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Office.HostAdapter.v10.0.dll
2013-03-10 05:38:20 42248 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Office.Outlook.HostAdapter.v10.0.dll
2013-03-10 05:38:20 42240 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v10.0.dll
2013-03-10 05:38:20 36096 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\hostsideadapters\Microsoft.VisualStudio.Tools.Applications.HostAdapter.v10.0.dll
2013-03-10 05:38:20 33528 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinviews\Microsoft.VisualStudio.Tools.Applications.Runtime.v10.0.dll
2013-03-10 05:38:20 25336 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\contracts\Microsoft.VisualStudio.Tools.Applications.Contract.v10.0.dll
2013-03-10 05:38:20 24816 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\contracts\Microsoft.VisualStudio.Tools.Office.Contract.v10.0.dll
2013-03-09 08:17:04 82576 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\VSTOInstaller.exe
2013-03-09 08:17:04 49832 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\VSTOMessageProvider.dll
2013-03-09 08:17:04 268440 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\VSTOLoader.dll
2013-03-09 08:17:04 19080 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\1033\VSTOLoaderUI.dll
2013-03-09 08:17:04 116880 ----a-w- c:\program files\common files\microsoft shared\vsto\vstoee.dll
2013-03-09 08:17:04 10912 ----a-w- c:\program files\common files\microsoft shared\vsto\10.0\1033\VSTOInstallerUI.dll
2013-03-08 22:59:30 378072 ----a-w- c:\program files\common files\microsoft shared\office14\ACEOLEDB.DLL
2013-03-07 12:48:02 81920 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Office.AddInAdapter.v9.0.dll
2013-03-07 12:48:02 36864 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Office.Word.AddInAdapter.v9.0.dll
2013-03-07 12:48:00 94208 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinviews\Microsoft.Office.Tools.v9.0.dll
2013-03-07 12:48:00 49152 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\contracts\Microsoft.VisualStudio.Tools.Office.Contract.v9.0.dll
2013-03-07 12:48:00 36864 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Office.Excel.AddInAdapter.v9.0.dll
2013-03-07 12:48:00 131072 ----a-w- c:\program files\common files\microsoft shared\vsta\appinfodocument\microsoft.visualstudio.tools.office.appinfodocument\Microsoft.VisualStudio.Tools.Office.AppInfoDocument.v9.0.dll
2013-03-07 12:47:56 77824 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinviews\Microsoft.VisualStudio.Tools.Applications.Runtime.v9.0.dll
2013-03-07 12:47:56 45056 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\addinsideadapters\Microsoft.VisualStudio.Tools.Applications.AddInAdapter.v9.0.dll
2013-03-07 12:47:56 22016 ----a-w- c:\program files\common files\microsoft shared\vsta\pipeline.v10.0\contracts\Microsoft.VisualStudio.Tools.Applications.Contract.v9.0.dll
2013-03-06 08:42:18 1101504 ----a-w- c:\program files\common files\microsoft shared\office14\office setup controller\Setup.exe
2013-03-06 08:11:18 4526232 ----a-w- c:\program files\common files\microsoft shared\office14\office setup controller\promo.exe
2013-03-06 08:07:48 839360 ----a-w- c:\program files\common files\microsoft shared\dw\DW20.EXE
2013-03-06 08:07:48 520424 ----a-w- c:\program files\common files\microsoft shared\dw\DWTRIG20.EXE
2013-03-06 07:09:58 554672 ----a-w- c:\program files\common files\microsoft shared\portal\PortalConnectCore.dll
2013-02-18 15:45:56 647816 ----a-w- c:\program files\common files\microsoft shared\office14\ACEES.DLL
2013-02-18 15:45:56 544920 ----a-w- c:\program files\common files\microsoft shared\office14\ACEDAO.DLL
2013-02-18 15:45:56 528536 ----a-w- c:\program files\common files\microsoft shared\office14\ACEREP.DLL
2013-02-18 15:45:56 37000 ----a-w- c:\program files\common files\microsoft shared\office14\ACEERR.DLL
2013-02-18 15:45:56 363656 ----a-w- c:\program files\common files\microsoft shared\office14\ACEXBE.DLL
2013-02-18 15:45:56 335488 ----a-w- c:\program files\common files\microsoft shared\office14\ACEEXCH.DLL
2013-02-18 15:45:56 221304 ----a-w- c:\program files\common files\microsoft shared\office14\ACETXT.DLL
2013-02-18 14:42:42 101992 ----a-w- c:\program files\common files\microsoft shared\office14\EXP_PDF.DLL
2013-02-14 15:10:00 59480 ----a-w- c:\program files\common files\microsoft shared\office14\EXP_XPS.DLL
2013-02-14 14:21:08 45728 ----a-w- c:\program files\common files\microsoft shared\office14\ACERCLR.DLL
2013-02-14 14:21:08 330360 ----a-w- c:\program files\common files\microsoft shared\office14\ACER3X.DLL
2013-02-14 14:21:08 279696 ----a-w- c:\program files\common files\microsoft shared\office14\ACEODBC.DLL
2013-02-13 22:44:55 1314816 ----a-w- c:\windows\system32\quartz.dll
2013-02-06 11:27:07 -------- d-----w- c:\program files\Mozilla Firefox(14)
2013-01-23 10:15:37 18968 ----a-w- c:\windows\system32\sdnclean.exe
2013-01-23 10:14:37 -------- d-----w- c:\program files\Spybot - Search & Destroy 2
2013-01-23 02:12:52 62576 ----a-w- c:\programdata\microsoft\windows defender\definition updates\{160d0701-007d-4a48-89d2-d838ac07586c}\offreg.dll
2013-01-15 12:33:16 1367640 ----a-w- c:\program files\common files\microsoft shared\office14\RICHED20.DLL
2013-01-09 14:02:22 204288 ----a-w- c:\windows\system32\ncrypt.dll
2013-01-09 14:02:13 1400832 ----a-w- c:\windows\system32\msxml6.dll
2013-01-08 06:25:18 640216 ----a-w- c:\program files\common files\microsoft shared\office14\USP10.DLL
2013-01-06 17:38:58 -------- d-----w- c:\programdata\Xerox
2013-01-06 17:14:24 73728 ------w- c:\windows\system32\BRCrypt.dll
2013-01-06 17:13:52 102400 ------w- c:\windows\system32\BrMfNt.dll
2013-01-06 17:13:44 57856 ------w- c:\windows\system32\BrWiaNCp.dll
2013-01-06 17:13:44 42496 ------w- c:\windows\system32\Brnsplg.dll
2013-01-06 17:13:43 63488 ------w- c:\windows\system32\BrNetSti.dll
2013-01-06 17:13:43 106496 ------w- c:\windows\system32\BrMuSNMP.dll
2013-01-06 17:13:16 167936 ------w- c:\windows\system32\NSSearch.dll
2013-01-06 16:41:47 -------- d-----w- c:\programdata\Brother
2013-01-06 16:41:25 -------- d-----w- c:\users\bev\appdata\local\Macromedia
2013-01-06 16:38:41 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe
.
==================== Find3M ====================
.
2013-12-11 09:05:48 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-11-19 03:33:38 230048 ------w- c:\windows\system32\MpSigStub.exe
2013-11-04 17:22:36 60920 ----a-w- c:\windows\system32\drivers\cfwids.sys
2013-11-04 17:17:14 213392 ----a-w- c:\windows\system32\drivers\mfewfpk.sys
2013-11-04 17:12:26 572528 ----a-w- c:\windows\system32\drivers\mfehidk.sys
2013-11-04 17:10:42 365416 ----a-w- c:\windows\system32\drivers\mfefirek.sys
2013-11-04 17:10:02 65928 ----a-w- c:\windows\system32\drivers\mfebopk.sys
2013-11-04 17:09:20 236000 ----a-w- c:\windows\system32\drivers\mfeavfk.sys
2013-11-04 17:08:22 133992 ----a-w- c:\windows\system32\drivers\mfeapfk.sys
2013-10-30 02:13:01 1304064 ----a-w- c:\windows\system32\WMALFXGFXDSP.dll
2013-10-30 02:12:54 335360 ----a-w- c:\windows\system32\SysFxUI.dll
2013-10-30 01:43:04 130048 ----a-w- c:\windows\system32\drivers\drmk.sys
2013-10-30 00:43:06 167936 ----a-w- c:\windows\system32\drivers\portcls.sys
2013-10-24 02:17:49 834048 ----a-w- c:\windows\system32\wininet.dll
2013-10-24 02:17:06 53760 ----a-w- c:\windows\apppatch\iebrshim.dll
2013-10-24 02:16:58 19456 ----a-w- c:\windows\system32\corpol.dll
2013-10-24 00:55:43 389632 ----a-w- c:\windows\system32\html.iec
2013-10-24 00:44:32 1383424 ----a-w- c:\windows\system32\mshtml.tlb
2013-10-22 07:19:59 158208 ----a-w- c:\windows\system32\imagehlp.dll
2013-10-11 02:08:55 36864 ----a-w- c:\windows\system32\wshcon.dll
2013-10-11 02:08:55 131072 ----a-w- c:\windows\system32\wshom.ocx
2013-10-11 02:08:35 172032 ----a-w- c:\windows\system32\scrrun.dll
2013-10-11 00:35:42 135168 ----a-w- c:\windows\system32\cscript.exe
2013-10-11 00:35:41 155648 ----a-w- c:\windows\system32\wscript.exe
2012-11-09 06:52:22 9648 ----a-w- c:\windows\system32\drivers\mfeclnk.sys
2012-11-09 06:52:12 92192 ----a-w- c:\windows\system32\drivers\mferkdet.sys
2012-11-02 10:18:17 376320 ----a-w- c:\windows\system32\dpnet.dll
2012-11-02 08:26:06 23040 ----a-w- c:\windows\system32\dpnsvr.exe
.
============= FINISH: 10:30:23.33 ===============
Can anyone see if there is there anything suspicious here?
Thanks in anticipation.