DDS (Ver_09-12-01.01) - NTFSX64
Run by Steen at 19:32:53,27 on 11-03-2010
Internet Explorer: 8.0.6001.18882
Microsoft® Windows Vista™ Home Premium 6.0.6002.2.1252.45.1030.18.4094.1919 [GMT 1:00]
SP: Windows Defender *enabled* (Updated) {D68DDC3A-831F-4FAE-9E44-DA132C1ACF46}
SP: SUPERAntiSpyware *disabled* (Updated) {222A897C-5018-402e-943F-7E7AC8560DA7}
============== Running Processes ===============
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\nvvsvc.exe
C:\Windows\system32\svchost.exe -k rpcss
C:\Windows\System32\svchost.exe -k secsvcs
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\SLsvc.exe
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\nvvsvc.exe
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\BullGuard Ltd\BullGuard\BullGuard.exe
C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD64.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
C:\Windows\V0220Mon.exe
C:\Program Files (x86)\Spyware Doctor\pctsTray.exe
C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\BullGuard Ltd\BullGuard\BullGuardUpdate.exe
C:\Windows\System32\svchost.exe -k BullGuard
C:\Program Files (x86)\Bonjour\mDNSResponder.exe
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\SysWOW64\svchost.exe -k netsvcs
c:\hp\HPEZBTN\HPBtnSrv.exe
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Program Files (x86)\Spyware Doctor\pctsAuxs.exe
C:\Program Files (x86)\Spyware Doctor\pctsSvc.exe
C:\Windows\system32\svchost.exe -k imgsvc
C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
C:\Windows\System32\svchost.exe -k WerSvcGroup
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\WUDFHost.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
C:\Windows\ehome\ehsched.exe
C:\Windows\system32\svchost.exe -k HPService
C:\hp\kbd\kbd.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Windows Media Player\wmpnetwk.exe
C:\Windows\ehome\ehRecvr.exe
c:\Program Files (x86)\Hewlett-Packard\HP Health Check\hphc_service.exe
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Users\Steen\Desktop\dds.scr
C:\Windows\SysWOW64\conime.exe
C:\Windows\system32\wbem\wmiprvse.exe
============== Pseudo HJT Report ===============
uStart Page = about:blank
uDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=da_dk&c=84&bd=Pavilion&pf=cndt
mStart Page = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=da_dk&c=84&bd=Pavilion&pf=cndt
mDefault_Page_URL = hxxp://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=da_dk&c=84&bd=Pavilion&pf=cndt
mLocal Page = c:\windows\syswow64\blank.htm
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files (x86)\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AOL Toolbar BHO: {7c554162-8cb7-45a4-b8f4-8ea1c75885f9} - c:\program files (x86)\aol\aol verktygsfält 5.0\aoltb.dll
BHO: Hjælp til tilmelding til Windows Live ID: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files (x86)\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files (x86)\google\googletoolbarnotifier\5.3.4501.1418\swg.dll
BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files (x86)\java\jre6\bin\jp2ssv.dll
BHO: HP Smart BHO Class: {ffffffff-cf4e-4f2b-bdc2-0e72e116a856} - c:\program files (x86)\hp\digital imaging\smart web printing\hpswp_BHO.dll
TB: AOL Toolbar: {de9c389f-3316-41a7-809b-aa305ed9d922} - c:\program files (x86)\aol\aol verktygsfält 5.0\aoltb.dll
uRun: [Sidebar] c:\program files\windows sidebar\sidebar.exe /autoRun
uRun: [msnmsgr] “c:\program files (x86)\windows live\messenger\msnmsgr.exe” /background
uRun: [ehTray.exe] c:\windows\ehome\ehTray.exe
uRun: [<NO NAME>]
uRun: [BullGuard] “c:\program files\bullguard ltd\bullguard\bullguard.exe”
uRun: [TomTomHOME.exe] “c:\program files (x86)\tomtom home 2\TomTomHOMERunner.exe”
uRun: [PC Suite Tray] “c:\program files (x86)\nokia\nokia pc suite 7\PCSuite.exe” -onlytray
mRun: [hpsysdrv] c:\hp\support\hpsysdrv.exe
mRun: [KBD] c:\hp\kbd\KbdStub.EXE
mRun: [OsdMaestro] c:\program files\hewlett-packard\on-screen osd indicator\OSD64.exe
mRun: [HP Health Check Scheduler] c:\program files (x86)\hewlett-packard\hp health check\HPHC_Scheduler.exe
mRun: [HP Software Update] c:\program files (x86)\hp\hp software update\HPWuSchd2.exe
mRun: [hpqSRMon] c:\program files (x86)\hp\digital imaging\bin\hpqSRMon.exe
mRun: [V0220Mon.exe] c:\windows\V0220Mon.exe
mRun: [Adobe Reader Speed Launcher] “c:\program files (x86)\adobe\reader 9.0\reader\Reader_sl.exe”
mRun: [Adobe ARM] “c:\program files (x86)\common files\adobe\arm\1.0\AdobeARM.exe”
mRun: [SunJavaUpdateSched] “c:\program files (x86)\java\jre6\bin\jusched.exe”
mRun: [ISTray] “c:\program files (x86)\spyware doctor\pctsTray.exe”
StartupFolder: c:\progra~3\micros~1\windows\startm~1\programs\startup\hpdigi~1.lnk - c:\program files (x86)\hp\digital imaging\bin\hpqtra08.exe
mPolicies-explorer: NoActiveDesktop = 1 (0x1)
mPolicies-explorer: ForceActiveDesktopOn = 0 (0x0)
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
mPolicies-system: HideFastUserSwitching = 0 (0x0)
IE: &AOL; Toolbar-søgning - c:\programdata\aol\ietoolbar\resources\da-dk\local\search.html
IE: E&ksporter; til Microsoft Excel - c:\progra~2\micros~2\office12\EXCEL.EXE/3000
IE: {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - {5F7B1267-94A9-47F5-98DB-E99415F33AEC} - c:\program files (x86)\windows live\writer\WriterBrowserExtension.dll
IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~2\micros~2\office12\ONBttnIE.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~2\micros~2\office12\REFIEBAR.DLL
IE: {DDE87865-83C5-48c4-8357-2F5B1AA84522} - {DDE87865-83C5-48c4-8357-2F5B1AA84522} - c:\program files (x86)\hp\digital imaging\smart web printing\hpswp_BHO.dll
LSP: c:\windows\system32\BGLsp.dll
Trusted Zone: danskebank.dk
DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
SEH: EasyBits ShellExecute Hook: {e54729e8-bb3d-4270-9d49-7389ea579090} - c:\windows\syswow64\EZUPBH~1.DLL
{4f3ed5cd-0726-42a9-87f5-d13f3d2976ac}
{9030D464-4C02-4ABF-8ECC-5164760863C6}
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}
{DBC80044-A445-435b-BC74-9C25C1C588A9}
{DE9C389F-3316-41A7-809B-AA305ED9D922}
mRun-x64: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
mRun-x64: [SunJavaUpdateSched] “c:\program files\java\jre6\bin\jusched.exe”
mRun-x64: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun-x64: [BullGuard] “c:\program files\bullguard ltd\bullguard\bullguard.exe” -boot
============= SERVICES / DRIVERS ===============
R0 PCTCore;PCTools KDS;c:\windows\system32\drivers\PCTCore64.sys [2009-11-20 218056]
R1 afw;Agnitum Firewall Driver;c:\windows\system32\drivers\Afw.sys [2009-3-23 31768]
R2 BdFileSpy;BullGuard File Monitor Driver;c:\windows\system32\drivers\BdFileSpy.sys [2010-1-20 53840]
R2 BsFileScan;BullGuard File Scan Service;c:\windows\system32\svchost.exe -k BullGuard [2008-1-21 27648]
R2 BsFire;BullGuard Firewall Service;c:\windows\system32\svchost.exe -k BullGuard [2008-1-21 27648]
R2 BsMailProxy;BullGuard Email Monitoring Service;c:\windows\system32\svchost.exe -k BullGuard [2008-1-21 27648]
R2 ezSharedSvc;Easybits Shared Services for Windows;c:\windows\system32\svchost.exe -k netsvcs [2008-1-21 27648]
R2 HPBtnSrv;HP Chasis Button Service;c:\hp\hpezbtn\HPBtnSrv.exe [2008-11-18 198240]
R2 sdAuxService;PC Tools Auxiliary Service;c:\program files (x86)\spyware doctor\pctsAuxs.exe [2009-10-14 358600]
R2 sdCoreService;PC Tools Security Service;c:\program files (x86)\spyware doctor\pctsSvc.exe [2009-10-14 1141200]
R2 TomTomHOMEService;TomTomHOMEService;c:\program files (x86)\tomtom home 2\TomTomHOMEService.exe [2009-11-13 92008]
R3 afwcore;afwcore;c:\windows\system32\drivers\AfwCore.sys [2009-3-23 413208]
R3 HCW85BDA;Hauppauge WinTV 885 Video Capture;c:\windows\system32\drivers\HCW85BDA.sys [2008-10-21 1655296]
R3 netr28x;Ralink 802.11n Wireless Driver for Windows Vista;c:\windows\system32\drivers\netr28x.sys [2008-11-18 459776]
R3 V0220Dev;Live! Cam Video IM;c:\windows\system32\drivers\V0220Dev.sys [2009-2-18 208352]
R3 V0220Vfx;V0220VFX;c:\windows\system32\drivers\V0220Vfx.sys [2009-2-18 12288]
S1 SASDIFSV;SASDIFSV;c:\users\steen\appdata\local\temp\sas_selfextract\sasdifsv.sys [2010-3-10 9968]
S1 SASKUTIL;SASKUTIL;c:\users\steen\appdata\local\temp\sas_selfextract\SASKUTIL.SYS [2010-3-10 74480]
S3 clr_optimization_v2.0.50727_64;Microsoft .NET Framework NGEN v2.0.50727_X64;c:\windows\microsoft.net\framework64\v2.0.50727\mscorsvw.exe [2009-7-7 89920]
S3 FontCache;Tjenesten Windows-skrifttypecache;c:\windows\system32\svchost.exe -k LocalServiceAndNoImpersonation [2008-1-21 27648]
S3 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr.sys [2009-11-6 61280]
S3 fsssvc;Windows Live-tjenesten Family Safety;c:\program files (x86)\windows live\family safety\fsssvc.exe [2009-8-5 704864]
S3 PerfHost;Vært for DLL-ydelsestæller;c:\windows\syswow64\perfhost.exe [2008-1-21 19968]
============== File Associations ===============
JSEFile=c:\windows\syswow64\WScript.exe “%1” %*
=============== Created Last 30 ================
2010-03-10 19:40:27 0 d——-w- c:\users\steen\appdata\roaming\SUPERAntiSpyware.com
2010-03-10 19:40:27 0 d——-w- c:\programdata\SUPERAntiSpyware.com
2010-03-10 17:15:26 0 d——-w- c:\program files (x86)\common files\Wise Installation Wizard
2010-03-10 11:12:10 22104 ——a-w- c:\windows\system32\drivers\mbam.sys
2010-03-10 11:11:19 0 d——-w- c:\users\steen\appdata\roaming\Malwarebytes
2010-03-10 11:11:11 0 d——-w- c:\programdata\Malwarebytes
2010-03-10 11:11:10 0 d——-w- c:\program files (x86)\Malwarebytes’ Anti-Malware
2010-03-10 10:47:23 294912 ——a-w- c:\windows\system32\browserchoice.exe
2010-03-10 10:39:09 0 d——-w- c:\program files (x86)\CCleaner
2010-03-10 09:45:50 32768 ——a-w- c:\windows\system32\nshhttp.dll
2010-03-10 09:45:49 24064 ——a-w- c:\windows\syswow64\nshhttp.dll
2010-03-10 09:45:23 620032 ——a-w- c:\windows\system32\drivers\http.sys
2010-03-10 09:45:21 33792 ——a-w- c:\windows\system32\httpapi.dll
2010-03-10 09:45:18 30720 ——a-w- c:\windows\syswow64\httpapi.dll
2010-02-28 14:06:06 0 d——-w- c:\program files (x86)\TomTom International B.V
2010-02-28 14:04:27 0 d——-w- c:\program files (x86)\TomTom HOME 2
2010-02-24 18:02:03 471552 ——a-w- c:\windows\syswow64\secproc_isv.dll
2010-02-24 18:02:01 471552 ——a-w- c:\windows\syswow64\secproc.dll
2010-02-24 17:57:25 2048 ——a-w- c:\windows\syswow64\tzres.dll
2010-02-24 17:57:25 2048 ——a-w- c:\windows\system32\tzres.dll
2010-02-24 17:53:59 726528 ——a-w- c:\windows\syswow64\jscript.dll
2010-02-24 17:53:55 1927680 ——a-w- c:\windows\system32\gameux.dll
2010-02-24 17:53:55 1696256 ——a-w- c:\windows\syswow64\gameux.dll
2010-02-24 17:53:52 4240384 ——a-w- c:\windows\syswow64\GameUXLegacyGDFs.dll
2010-02-24 17:53:52 32256 ——a-w- c:\windows\system32\Apphlpdm.dll
2010-02-24 17:53:52 28672 ——a-w- c:\windows\syswow64\Apphlpdm.dll
2010-02-24 17:53:51 4240384 ——a-w- c:\windows\system32\GameUXLegacyGDFs.dll
2010-02-13 17:59:52 0 d——-w- c:\program files (x86)\FileHippo.com
2010-02-10 15:15:59 40448 ——a-w- c:\windows\system32\drivers\tcpipreg.sys
2010-02-10 15:15:44 273408 ——a-w- c:\windows\system32\drivers\mrxsmb10.sys
2010-02-10 15:15:44 135168 ——a-w- c:\windows\system32\drivers\mrxsmb.sys
2010-02-10 15:15:27 453632 ——a-w- c:\windows\system32\drivers\srv.sys
2010-02-10 15:15:27 142336 ——a-w- c:\windows\system32\drivers\srvnet.sys
2010-02-10 15:15:15 4698184 ——a-w- c:\windows\system32\ntoskrnl.exe
==================== Find3M ====================
2010-03-11 11:31:21 31871 ——a-w- c:\programdata\nvModes.dat
2010-03-10 23:16:54 51200 ——a-w- c:\windows\inf\infpub.dat
2010-03-10 23:16:54 143360 ——a-w- c:\windows\inf\infstrng.dat
2010-03-10 23:15:53 143360 ——a-w- c:\windows\inf\infstor.dat
2010-03-10 23:10:50 81394 ——a-w- c:\windows\system32\perfc006.dat
2010-03-10 23:10:50 463106 ——a-w- c:\windows\system32\perfh006.dat
2010-02-24 17:27:43 665600 ——a-w- c:\windows\inf\drvindex.dat
2010-02-24 08:16:06 212864 ———w- c:\windows\system32\MpSigStub.exe
2010-02-22 17:00:02 588472 ——a-w- c:\windows\syswow64\ezsvc7x.dll
2010-02-11 10:33:11 87376 ——a-w- c:\windows\syswow64\BGLsp.dll
2010-02-11 10:33:11 85328 ——a-w- c:\windows\system32\BGLsp.dll
2010-02-11 10:33:11 15696 ——a-w- c:\windows\system32\client_cc.dll
2010-02-11 10:33:09 413208 ——a-r- c:\windows\system32\drivers\AfwCore.sys
2010-02-11 10:33:09 31768 ——a-r- c:\windows\system32\drivers\Afw.sys
2010-01-25 12:10:22 538624 ——a-w- c:\windows\system32\secproc_isv.dll
2010-01-25 12:10:22 160768 ——a-w- c:\windows\system32\secproc_ssp_isv.dll
2010-01-25 12:10:22 160768 ——a-w- c:\windows\system32\secproc_ssp.dll
2010-01-25 12:10:03 539136 ——a-w- c:\windows\system32\secproc.dll
2010-01-25 12:08:59 460288 ——a-w- c:\windows\system32\msdrm.dll
2010-01-25 12:00:35 152576 ——a-w- c:\windows\syswow64\secproc_ssp_isv.dll
2010-01-25 12:00:35 152064 ——a-w- c:\windows\syswow64\secproc_ssp.dll
2010-01-25 11:58:52 332288 ——a-w- c:\windows\syswow64\msdrm.dll
2010-01-25 08:29:35 413696 ——a-w- c:\windows\system32\RMActivate_ssp_isv.exe
2010-01-25 08:29:31 600576 ——a-w- c:\windows\system32\RMActivate_isv.exe
2010-01-25 08:29:31 409600 ——a-w- c:\windows\system32\RMActivate_ssp.exe
2010-01-25 08:29:28 599552 ——a-w- c:\windows\system32\RMActivate.exe
2010-01-25 08:21:20 526336 ——a-w- c:\windows\syswow64\RMActivate_isv.exe
2010-01-25 08:21:20 346624 ——a-w- c:\windows\syswow64\RMActivate_ssp_isv.exe
2010-01-25 08:21:18 518144 ——a-w- c:\windows\syswow64\RMActivate.exe
2010-01-25 08:21:18 347136 ——a-w- c:\windows\syswow64\RMActivate_ssp.exe
2010-01-20 22:27:11 23880 ——a-w- c:\windows\system32\BgOutlookHook.dll
2010-01-07 11:15:05 182830 ——a-w- c:\windows\hpoins21.dat
2010-01-02 07:08:29 1147904 ——a-w- c:\windows\system32\wininet.dll
2010-01-02 07:03:21 77312 ——a-w- c:\windows\system32\iesetup.dll
2010-01-02 07:03:21 132096 ——a-w- c:\windows\system32\iesysprep.dll
2010-01-02 06:38:20 916480 ——a-w- c:\windows\syswow64\wininet.dll
2010-01-02 06:38:04 1208832 ——a-w- c:\windows\syswow64\urlmon.dll
2010-01-02 06:36:10 206848 ——a-w- c:\windows\syswow64\occache.dll
2010-01-02 06:33:34 5942784 ——a-w- c:\windows\syswow64\mshtml.dll
2010-01-02 06:33:32 594432 ——a-w- c:\windows\syswow64\msfeeds.dll
2010-01-02 06:33:32 55296 ——a-w- c:\windows\syswow64\msfeedsbs.dll
2010-01-02 06:32:51 25600 ——a-w- c:\windows\syswow64\jsproxy.dll
2010-01-02 06:32:33 71680 ——a-w- c:\windows\syswow64\iesetup.dll
2010-01-02 06:32:33 1985536 ——a-w- c:\windows\syswow64\iertutil.dll
2010-01-02 06:32:33 164352 ——a-w- c:\windows\syswow64\ieui.dll
2010-01-02 06:32:33 109056 ——a-w- c:\windows\syswow64\iesysprep.dll
2010-01-02 06:32:32 55808 ——a-w- c:\windows\syswow64\iernonce.dll
2010-01-02 06:32:32 184320 ——a-w- c:\windows\syswow64\iepeers.dll
2010-01-02 06:32:32 11070464 ——a-w- c:\windows\syswow64\ieframe.dll
2010-01-02 06:32:26 387584 ——a-w- c:\windows\syswow64\iedkcs32.dll
2010-01-02 05:25:39 162816 ——a-w- c:\windows\system32\ieUnatt.exe
2010-01-02 04:57:00 133632 ——a-w- c:\windows\syswow64\ieUnatt.exe
2010-01-02 04:56:50 173056 ——a-w- c:\windows\syswow64\ie4uinit.exe
2010-01-02 04:56:14 13312 ——a-w- c:\windows\syswow64\msfeedssync.exe
2009-12-30 10:31:30 67584 ——a-w- c:\windows\system32\nmwcdclsx64.dll
2008-11-19 00:37:09 36364 ——a-w- c:\windows\inf\perflib\0406\perfd.dat
2008-11-19 00:37:09 36364 ——a-w- c:\windows\inf\perflib\0406\perfc.dat
2008-11-19 00:37:09 300302 ——a-w- c:\windows\inf\perflib\0406\perfi.dat
2008-11-19 00:37:09 300302 ——a-w- c:\windows\inf\perflib\0406\perfh.dat
2008-01-21 03:21:59 174 —sha-w- c:\program files\desktop.ini
2008-01-21 03:21:59 174 —sha-w- c:\program files (x86)\desktop.ini
2006-11-02 10:52:12 287440 ——a-w- c:\windows\inf\perflib\0000\perfi.dat
2006-11-02 10:52:12 287440 ——a-w- c:\windows\inf\perflib\0000\perfh.dat
2006-11-02 10:52:10 30674 ——a-w- c:\windows\inf\perflib\0000\perfd.dat
2006-11-02 10:52:10 30674 ——a-w- c:\windows\inf\perflib\0000\perfc.dat
2009-10-14 13:41:45 245760 —sha-w- c:\windows\serviceprofiles\networkservice\appdata\roaming\microsoft\windows\ietldcache\index.dat
2009-01-21 17:18:35 22 —sha-w- c:\windows\sminst\HPCD.sys
2009-10-14 13:37:25 245760 —sha-w- c:\windows\syswow64\config\systemprofile\appdata\roaming\microsoft\windows\ietldcache\index.dat
2008-11-19 01:16:58 8192 —sha-w- c:\windows\users\default\NTUSER.DAT
============= FINISH: 19:34:49,38 ===============