Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Malware removal log

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Malware removal log

Unread postby alwysbtchn » October 10th, 2008, 6:53 pm

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:39:17 PM, on 10/10/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\PrevxCSI\prevxcsi.exe
C:\Program Files\PrevxCSI\prevxcsi.exe
C:\Program Files\PC Tools Disk Suite\DSService.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\eHome\ehSched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\PC Tools Disk Suite\aDSProcMngr.exe
C:\PROTEC~1\PPTbc.EXE
C:\PROTEC~1\PPInupdt.exe
C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
C:\Program Files\XoftSpySE\xoftspy.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Protector Plus\PPAVMon.exe
C:\Protector Plus\PPServ.exe
C:\Protector Plus\POPSCAN.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\Serials2000 7.2\serial2k.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\SoftwareDistribution\Download\cf8ec753e88561d2ddb53e183dc05c3e\update\update.exe
C:\Program Files\Copernic Agent\CopernicAgent.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\DOCUME~1\KARAKR~1\LOCALS~1\Temp\Rar$EX00.515\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_BAND_SEARCHBAR_HTML
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = dynhost.inetcam.com;register.inetcam.com
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {453F51E8-FEF5-4C54-B136-944BF434360C} - C:\WINDOWS\system32\tuvSIyxU.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {8E9887CE-1786-475B-ADE4-2B1A65487FBA} - C:\WINDOWS\system32\pmnKabCS.dll (file missing)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Windows Live Toolbar Beta - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: {fb910702-173e-323a-6024-ebabd5c9033e} - {e3309c5d-babe-4206-a323-e371207019bf} - C:\WINDOWS\system32\dfmksc.dll (file missing)
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: &Windows Live Toolbar Beta - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Protector Plus Taskbar Control] C:\PROTEC~1\PPTbc.EXE
O4 - HKLM\..\Run: [Protector Plus InstaUpdate] C:\PROTEC~1\PPInupdt.exe
O4 - HKLM\..\Run: [XoftSpySE] C:\Program Files\XoftSpySE\xoftspy.exe -s
O4 - HKCU\..\Run: [StartupRepair] C:\Program Files\StartupRepair\StartupRepair.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: Bingo Luau by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Dice City Roller by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Lottso by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Scrabble by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Tumble Bees by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: World Class Solitaire by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/St ... b55579.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZB ... b55579.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZP ... b55579.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/So ... b56986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 2034459328
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 2228339109
O16 - DPF: {A5180646-FE0F-4C97-AA29-2A0F41515623} - http://zone.msn.com/bingame/zpagames/ZP ... b61895.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v ... b56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.eu/Register ... lashax.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/St ... b55579.cab
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Object) - https://bellerock.microgaming.com/freeplay/FlashAX2.cab
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://zone.msn.com/bingame/zpagames/ZP ... b64162.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: dfmksc.dll,avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: tuvSIyxU - tuvSIyxU.dll (file missing)
O21 - SSODL: StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: CSIScanner - Prevx - C:\Program Files\PrevxCSI\prevxcsi.exe
O23 - Service: PC Tools Disk Suite (DiskSuiteService) - Unknown owner - C:\Program Files\PC Tools Disk Suite\DSService.exe
O23 - Service: Fix-It Task Manager - Avanquest North America, Inc. - C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (UnRegistered) (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe

--
End of file - 10556 bytes
Here is my log.. I had a friend that went to sites he shouldn't have and that is whne my problems began, the malware took over every function of my computer, including ctrl+alt+del. I reinstalled windows , then norton and it appeared it had gotten rid of most or all of it. Then i downloaded a file with a virus and it just got worse, i downloaded some programs, ad-aware-super antispyware and they have found some but definitly havent gotten rid of all of them. They end up crashing on me.I am not sure if the scan has "awaken" these other viruses but it is detecting them in my old windows that i saved the files from. Would love some help. Thanks. :o
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA
Advertisement
Register to Remove

Re: Malware removal log

Unread postby Shaba » October 12th, 2008, 4:50 am

Hi alwysbtchn

You are running HijackThis from temp folder so that needs to be corrected first:

Click here to download HJTInstall.exe
  • Save HJTInstall.exe to your desktop.
  • Doubleclick on the HJTInstall.exe icon on your desktop.
  • By default it will install to C:\Program Files\Trend Micro\HijackThis .
  • Click on Install.
  • It will create a HijackThis icon on the desktop.
  • Once installed, it will launch Hijackthis.
  • Click on the Do a system scan and save a logfile button. It will scan and the log should open in notepad.
  • Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
  • Come back here to this thread and Paste the log in your next reply.
  • DO NOT use the AnalyseThis button, its findings are dangerous if misinterpreted.
  • DO NOT have Hijackthis fix anything yet. Most of what it finds will be harmless or even required.
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: Malware removal log

Unread postby alwysbtchn » October 12th, 2008, 10:44 pm

Hi , Thanks for your quick response, I did as you asked and here it is....(since then I installed some other antivirus and malware removals and think I got most of them but every time I launch my browser it says an tracking cookie is opened but no suggestionsafter that, great huh?
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 19:41:38, on 10/12/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\PC Tools Disk Suite\DSService.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\AVG\AVG8\aAvgApi.exe
C:\Program Files\Windows Live\Toolbar\wltuser.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_BAND_SEARCHBAR_HTML
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = dynhost.inetcam.com;register.inetcam.com
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {453F51E8-FEF5-4C54-B136-944BF434360C} - C:\WINDOWS\system32\tuvSIyxU.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {8E9887CE-1786-475B-ADE4-2B1A65487FBA} - C:\WINDOWS\system32\pmnKabCS.dll (file missing)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Windows Live Toolbar Beta - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: {fb910702-173e-323a-6024-ebabd5c9033e} - {e3309c5d-babe-4206-a323-e371207019bf} - C:\WINDOWS\system32\dfmksc.dll (file missing)
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: &Windows Live Toolbar Beta - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Protector Plus Taskbar Control] C:\PROTEC~1\PPTbc.EXE
O4 - HKLM\..\Run: [Protector Plus InstaUpdate] C:\PROTEC~1\PPInupdt.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: Bingo Luau by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Dice City Roller by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Lottso by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Scrabble by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Tumble Bees by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: World Class Solitaire by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/St ... b55579.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZB ... b55579.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZP ... b55579.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/So ... b56986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 2034459328
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 2228339109
O16 - DPF: {A5180646-FE0F-4C97-AA29-2A0F41515623} - http://zone.msn.com/bingame/zpagames/ZP ... b61895.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v ... b56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.eu/Register ... lashax.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/St ... b55579.cab
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Object) - https://bellerock.microgaming.com/freeplay/FlashAX2.cab
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://zone.msn.com/bingame/zpagames/ZP ... b64162.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: dfmksc.dll,avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: tuvSIyxU - tuvSIyxU.dll (file missing)
O21 - SSODL: StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Creative Service for CDROM Access - Unknown owner - C:\WINDOWS\system32\CTsvcCDA.exe (file missing)
O23 - Service: CSIScanner - Prevx - C:\Program Files\PrevxCSI\prevxcsi.exe
O23 - Service: PC Tools Disk Suite (DiskSuiteService) - Unknown owner - C:\Program Files\PC Tools Disk Suite\DSService.exe
O23 - Service: Fix-It Task Manager - Avanquest North America, Inc. - C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (UnRegistered) (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe
Oh and again thanks bunches for you time!
--
End of file - 10566 bytes
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby alwysbtchn » October 12th, 2008, 10:47 pm

Oh also, when i first boot it says I have like 50 -processes going and I am used to like 30ish so I shut them all down, don't know if that makes a difference in the report or not..
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby Shaba » October 13th, 2008, 4:05 am

Tracking cookies are not dangerous. I will give you later tips how to prevent them coming.

  • Download random's system information tool (RSIT) by random/random from here and save it to your desktop.
  • Double click on RSIT.exe to run RSIT.
  • Click Continue at the disclaimer screen.
  • Once it has finished, two logs will open. Please post the contents of both log.txt (<<will be maximized) and info.txt (<<will be minimized)
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: Malware removal log

Unread postby alwysbtchn » October 13th, 2008, 6:54 pm

here is the info
info.txt logfile of random's system information tool 1.04 2008-10-13 15:33:26

======Uninstall list======

-->"C:\Program Files\Common Files\Intel Shared\IP Video Telephony\Setup.exe" uninstall webclient clientid="CS5" clientpath="C:\Program Files\Intel\Createshare\VideoPhone\" inf="VSDKWSetup.inf"
-->"C:\Program Files\CyberDefender\cdinstx.exe" /u "C:\Program Files\CyberDefender\earlySpam\cdinstx.log" /t "CyberDefender Early Detection Center - AntiSpam"
-->"C:\Program Files\Intel\Createshare\Inetcam\uninstall.exe" /s
-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wpfull.inf,WebPostUninstall
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{25B20E43-4CE3-11D4-AF89-00A0C9E05BC5}\Setup.exe"
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5C9DDCE0-66CF-11D4-9100-0090274FBE9A}\setup.exe"
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68DC5968-0278-11D5-8EAA-00062973342B}\setup.exe" maintflag
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll<UNINSTALL_CMD>
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Ad-Aware-->MsiExec.exe /I{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
Adobe Acrobat 5.0-->C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll"
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 7.0-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A90000000001}
Adobe Shockwave Player 11-->C:\WINDOWS\system32\adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Apple Mobile Device Support-->MsiExec.exe /I{976C2B2A-CE59-4AB3-83FB-BF895E28F2E6}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Ashampoo ClipFinder 1.47-->"C:\Program Files\Ashampoo\Ashampoo ClipFinder\unins000.exe"
AVG 8.0-->C:\Program Files\AVG\AVG8\setup.exe /UNINSTALL
Belarc Advisor 7.2-->C:\PROGRA~1\Belarc\Advisor\Uninstall.exe C:\PROGRA~1\Belarc\Advisor\INSTALL.LOG
Copernic Agent Professional-->"C:\WINDOWS\CopernicAgentUninstall.exe" /ARGSFILE="C:\Program Files\Copernic Agent\unwise.dat"
CyberDefender Early Detection Center-->C:\Program Files\CyberDefender\cdinstx.exe /u
Digital Media Reader-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{4AC55A61-BA20-4DF5-ABFF-8F4819E0C875} /l1033
DivX Codec 3.1alpha release-->C:\WINDOWS\system32\rundll32.exe setupapi,InstallHinfSection Remove_DivX 132 C:\WINDOWS\INF\DivX.inf
Driver Detective-->C:\Program Files\InstallShield Installation Information\{621C02EA-AAFF-4026-A903-165D59529A16}\setup.exe -runfromtemp -l0x0409
DVD Solution-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\setup.exe" -uninstall
FILE RECOVERY for Windows-->C:\Program Files\FILE RECOVERY for Windows\Uninstall.exe
Fix-It Utilities 8 Professional-->MsiExec.exe /I{5158974E-2D28-4018-9335-7694C2974746}
getPlus(R) for Adobe-->"C:\Program Files\NOS\bin\getPlus_HelperSvc.exe" /UninstallGet1
HijackThis 2.0.2-->"C:\DOCUME~1\KARAKR~1\LOCALS~1\Temp\Rar$EX00.515\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.0 (KB932471)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {ECD292A0-0347-4244-8C24-5DBCE990FB40} /package {BAF78226-3200-4DB4-BE33-4D922A799840}
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 10 (KB903157)-->"C:\WINDOWS\$NtUninstallKB903157$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB954708)-->"C:\WINDOWS\$NtUninstallKB954708$\spuninst\spuninst.exe"
Huffyuv AVI lossless video codec (Remove Only)-->rundll.exe setupx.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\HUFFYUV.INF
Intel® Create & Share® Software-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9496E9E4-F20A-11D4-8EAA-00062973342B}\setup.exe" -l0009 maintflag
IrfanView (remove only)-->C:\My Backup -- 08-09-21 0105PM\Program Files\IrfanView\iv_uninstall.exe
iTunes-->MsiExec.exe /I{DDDE0BE3-0CBE-4BF6-B75A-E3F69C947843}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Lexmark X1100 Series-->C:\WINDOWS\system32\spool\drivers\w32x86\3\LXBKUN5C.EXE -dLexmark X1100 Series
Logitech SetPoint-->C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe -runfromtemp -l0x0009 -removeonly
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft Base Smart Card Cryptographic Service Provider Package-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
Microsoft Color Control Panel Applet for Windows XP-->MsiExec.exe /X{CE378F36-E404-4244-A33F-F50A2A6D31BD}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Professional 2007 Trial-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROR /dll OSETUP.DLL
Microsoft Office Professional 2007-->MsiExec.exe /X{91120000-0014-0000-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{A853BEB2-B270-4645-AAAA-9D83C2233BD3}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mozilla Firefox (3.0.3)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
MyIdentityDefender Toolbar (CyberDefender Corporation)-->C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdinstx.exe /u
NVIDIA Drivers-->C:\WINDOWS\system32\nvuninst.exe UninstallGUI
Opera 9.52-->MsiExec.exe /X{775EA80D-E368-4310-97B6-3D47EB9BB3F1}
PC Tools Disk Suite 1.0-->"C:\Program Files\PC Tools Disk Suite\unins000.exe"
Power2Go 4.0-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\setup.exe" -uninstall
PowerDVD-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
Prevx CSI-->"C:\Program Files\PrevxCSI\prevxcsi.exe" /prop UNINSTALL=Y
C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}\setup.exe" -l0x9 -removeonly
Protector Plus for Windows-->C:\Protector Plus\Setup.exe /DEINSTALL
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" -l0x9 -removeonly
Security Update for 2007 Microsoft Office System (KB951596)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {1AFF2298-CC00-4A3B-866A-C62B8373794E}
Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft Office Excel 2007 (KB951546)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {7399DD71-8E24-4E60-B6A8-6CED89C0AC26}
Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
Security Update for Microsoft Office system 2007 (KB951808)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {8F375E11-4FD6-4B89-9E2B-A76D48B51E00}
Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
Security Update for Microsoft Office Word 2007 (KB950113)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {AD72BABE-C733-4FCF-9674-4314466191B9}
Security Update for Windows Media Player 10 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Serials 2005-->MsiExec.exe /I{A31838F1-8E0D-4CA3-A40A-20825B92F125}
Serials2000 7.2-->C:\WINDOWS\Serials2000 7.2 Uninstaller.exe
Serif PhotoPlus 6.0-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0609D0AF-1382-42BE-81DB-CF30F8B0F6E2}\Setup.exe" -l0x9
Skype™ 3.8-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
Sonic Encoders-->MsiExec.exe /I{9941F0AA-B903-4AF4-A055-83A9815CC011}
Startup Repair for Windows 1.0.0.1-->"C:\Program Files\StartupRepair\unins000.exe"
SUPERAntiSpyware Free Edition-->MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
ubCore-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{F65FE148-FCF5-42F7-8803-FA0B7DA8B8A4}
Update for Windows Media Player 10 (KB913800)-->"C:\WINDOWS\$NtUninstallKB913800$\spuninst\spuninst.exe"
Update for Windows XP (KB943729)-->"C:\WINDOWS\$NtUninstallKB943729$\spuninst\spuninst.exe"
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Update for Windows XP (KB953356)-->"C:\WINDOWS\$NtUninstallKB953356$\spuninst\spuninst.exe"
Update Rollup 2 for Windows XP Media Center Edition 2005-->C:\WINDOWS\$NtUninstallKB900325$\spuninst\spuninst.exe
VeohTV BETA-->C:\Program Files\InstallShield Installation Information\{0405E51E-9582-4207-8F38-AC44201D3808}\setup.exe -runfromtemp -l0x0409
WinAce Archiver 2.0-->C:\Program Files\WinAce\SXUNINST.EXE C:\Program Files\WinAce\SXUNINST.INI
Windows Backup Utility-->MsiExec.exe /I{76EFFC7C-17A6-479D-9E47-8E658C1695AE}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Beta (all programs)-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Beta (all programs)-->MsiExec.exe /I{5D4A033A-A286-44BE-A0F0-B05FAC25D07F}
Windows Live Call-->MsiExec.exe /I{78AC782A-C708-4B21-A3A0-ECD4A3284588}
Windows Live Family Safety-->MsiExec.exe /X{3491D278-AF52-4A0E-A1F5-D1A57B4F2222}
Windows Live Mail-->MsiExec.exe /I{DFD6935E-D94A-4DBE-AD8F-E37CBC6B577F}
Windows Live Messenger-->MsiExec.exe /X{B1403D7D-C725-4858-AACC-7E5FA2D72859}
Windows Live OneCare safety scanner-->RunDll32.exe "C:\Program Files\Windows Live Safety Center\wlscCore.dll",UninstallFunction WLSC_SCANNER_PRODUCT
Windows Live Photo Gallery Beta-->MsiExec.exe /X{F6D0986F-D9A8-479B-A80F-61D53CDF65BA}
Windows Live Sign-in Assistant-->MsiExec.exe /I{8984E374-6C93-427C-A3B9-AD92472FDCA0}
Windows Live Toolbar Beta-->MsiExec.exe /X{5524A0D4-F826-4961-9B53-EFF6C615251B}
Windows Live Writer-->MsiExec.exe /X{AC5568AB-C3E3-490E-BE40-50977C12288D}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Media Center Edition 2005 KB925766-->"C:\WINDOWS\$NtUninstallKB925766$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
WinZip-->"C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
Wordscape Online Party (remove only)-->"C:\Program Files\iWin.com\Wordscape Online Party\Uninstall.exe"
Writer's Blocks-->C:\PROGRA~1\WRITER~1\UNWISE.EXE C:\PROGRA~1\WRITER~1\install.log
XP Codec Pack-->C:\Program Files\XP Codec Pack\Uninstall.exe

======Security center information======

AV: Protector Plus Anti-virus Software
AV: Avanquest VirusScanner Pro
AV: AVG Anti-Virus
AV: CyberDefender Internet Security

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 43 Stepping 1, AuthenticAMD
"PROCESSOR_REVISION"=2b01
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_07\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_07\lib\ext\QTJava.zip

-----------------EOF-----------------
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby alwysbtchn » October 13th, 2008, 6:54 pm

here is the info
info.txt logfile of random's system information tool 1.04 2008-10-13 15:33:26

======Uninstall list======

-->"C:\Program Files\Common Files\Intel Shared\IP Video Telephony\Setup.exe" uninstall webclient clientid="CS5" clientpath="C:\Program Files\Intel\Createshare\VideoPhone\" inf="VSDKWSetup.inf"
-->"C:\Program Files\CyberDefender\cdinstx.exe" /u "C:\Program Files\CyberDefender\earlySpam\cdinstx.log" /t "CyberDefender Early Detection Center - AntiSpam"
-->"C:\Program Files\Intel\Createshare\Inetcam\uninstall.exe" /s
-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->RunDll32 ADVPACK.DLL,LaunchINFSection C:\WINDOWS\INF\wpfull.inf,WebPostUninstall
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{25B20E43-4CE3-11D4-AF89-00A0C9E05BC5}\Setup.exe"
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5C9DDCE0-66CF-11D4-9100-0090274FBE9A}\setup.exe"
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{68DC5968-0278-11D5-8EAA-00062973342B}\setup.exe" maintflag
-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll<UNINSTALL_CMD>
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
Ad-Aware-->MsiExec.exe /I{DED53B0B-B67C-4244-AE6A-D6FD3C28D1EF}
Adobe Acrobat 5.0-->C:\WINDOWS\ISUNINST.EXE -f"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.isu" -c"C:\Program Files\Common Files\Adobe\Acrobat 5.0\NT\Uninst.dll"
Adobe Flash Player ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player Plugin-->C:\WINDOWS\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Reader 7.0-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70000000000}
Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A90000000001}
Adobe Shockwave Player 11-->C:\WINDOWS\system32\adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Apple Mobile Device Support-->MsiExec.exe /I{976C2B2A-CE59-4AB3-83FB-BF895E28F2E6}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Ashampoo ClipFinder 1.47-->"C:\Program Files\Ashampoo\Ashampoo ClipFinder\unins000.exe"
AVG 8.0-->C:\Program Files\AVG\AVG8\setup.exe /UNINSTALL
Belarc Advisor 7.2-->C:\PROGRA~1\Belarc\Advisor\Uninstall.exe C:\PROGRA~1\Belarc\Advisor\INSTALL.LOG
Copernic Agent Professional-->"C:\WINDOWS\CopernicAgentUninstall.exe" /ARGSFILE="C:\Program Files\Copernic Agent\unwise.dat"
CyberDefender Early Detection Center-->C:\Program Files\CyberDefender\cdinstx.exe /u
Digital Media Reader-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{4AC55A61-BA20-4DF5-ABFF-8F4819E0C875} /l1033
DivX Codec 3.1alpha release-->C:\WINDOWS\system32\rundll32.exe setupapi,InstallHinfSection Remove_DivX 132 C:\WINDOWS\INF\DivX.inf
Driver Detective-->C:\Program Files\InstallShield Installation Information\{621C02EA-AAFF-4026-A903-165D59529A16}\setup.exe -runfromtemp -l0x0409
DVD Solution-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}\setup.exe" -uninstall
FILE RECOVERY for Windows-->C:\Program Files\FILE RECOVERY for Windows\Uninstall.exe
Fix-It Utilities 8 Professional-->MsiExec.exe /I{5158974E-2D28-4018-9335-7694C2974746}
getPlus(R) for Adobe-->"C:\Program Files\NOS\bin\getPlus_HelperSvc.exe" /UninstallGet1
HijackThis 2.0.2-->"C:\DOCUME~1\KARAKR~1\LOCALS~1\Temp\Rar$EX00.515\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.0 (KB932471)-->C:\WINDOWS\system32\msiexec.exe /promptrestart /uninstall {ECD292A0-0347-4244-8C24-5DBCE990FB40} /package {BAF78226-3200-4DB4-BE33-4D922A799840}
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 10 (KB903157)-->"C:\WINDOWS\$NtUninstallKB903157$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB915800-v4)-->"C:\WINDOWS\$NtUninstallKB915800-v4$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB954708)-->"C:\WINDOWS\$NtUninstallKB954708$\spuninst\spuninst.exe"
Huffyuv AVI lossless video codec (Remove Only)-->rundll.exe setupx.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\HUFFYUV.INF
Intel® Create & Share® Software-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{9496E9E4-F20A-11D4-8EAA-00062973342B}\setup.exe" -l0009 maintflag
IrfanView (remove only)-->C:\My Backup -- 08-09-21 0105PM\Program Files\IrfanView\iv_uninstall.exe
iTunes-->MsiExec.exe /I{DDDE0BE3-0CBE-4BF6-B75A-E3F69C947843}
Java(TM) 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Lexmark X1100 Series-->C:\WINDOWS\system32\spool\drivers\w32x86\3\LXBKUN5C.EXE -dLexmark X1100 Series
Logitech SetPoint-->C:\Program Files\InstallShield Installation Information\{F29B21BD-CAA6-445F-8EF7-A7E2B9D8B14E}\setup.exe -runfromtemp -l0x0009 -removeonly
Messenger Plus! Live-->"C:\Program Files\Messenger Plus! Live\Uninstall.exe"
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft Base Smart Card Cryptographic Service Provider Package-->"C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
Microsoft Color Control Panel Applet for Windows XP-->MsiExec.exe /X{CE378F36-E404-4244-A33F-F50A2A6D31BD}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Professional 2007 Trial-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROR /dll OSETUP.DLL
Microsoft Office Professional 2007-->MsiExec.exe /X{91120000-0014-0000-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Search Enhancement Pack-->MsiExec.exe /I{A853BEB2-B270-4645-AAAA-9D83C2233BD3}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Mozilla Firefox (3.0.3)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSXML 6.0 Parser (KB933579)-->MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
MyIdentityDefender Toolbar (CyberDefender Corporation)-->C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdinstx.exe /u
NVIDIA Drivers-->C:\WINDOWS\system32\nvuninst.exe UninstallGUI
Opera 9.52-->MsiExec.exe /X{775EA80D-E368-4310-97B6-3D47EB9BB3F1}
PC Tools Disk Suite 1.0-->"C:\Program Files\PC Tools Disk Suite\unins000.exe"
Power2Go 4.0-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40BF1E83-20EB-11D8-97C5-0009C5020658}\setup.exe" -uninstall
PowerDVD-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{6811CAA0-BF12-11D4-9EA1-0050BAE317E1}\setup.exe" -uninstall
Prevx CSI-->"C:\Program Files\PrevxCSI\prevxcsi.exe" /prop UNINSTALL=Y
C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{DFFE2B1F-07E0-45A9-8801-CD8514CAA876}\setup.exe" -l0x9 -removeonly
Protector Plus for Windows-->C:\Protector Plus\Setup.exe /DEINSTALL
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" -l0x9 -removeonly
Security Update for 2007 Microsoft Office System (KB951596)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {1AFF2298-CC00-4A3B-866A-C62B8373794E}
Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Microsoft Office Excel 2007 (KB951546)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {7399DD71-8E24-4E60-B6A8-6CED89C0AC26}
Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
Security Update for Microsoft Office system 2007 (KB951808)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {8F375E11-4FD6-4B89-9E2B-A76D48B51E00}
Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
Security Update for Microsoft Office Word 2007 (KB950113)-->msiexec /package {91120000-0014-0000-0000-0000000FF1CE} /uninstall {AD72BABE-C733-4FCF-9674-4314466191B9}
Security Update for Windows Media Player 10 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Serials 2005-->MsiExec.exe /I{A31838F1-8E0D-4CA3-A40A-20825B92F125}
Serials2000 7.2-->C:\WINDOWS\Serials2000 7.2 Uninstaller.exe
Serif PhotoPlus 6.0-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0609D0AF-1382-42BE-81DB-CF30F8B0F6E2}\Setup.exe" -l0x9
Skype™ 3.8-->MsiExec.exe /X{5C82DAE5-6EB0-4374-9254-BE3319BA4E82}
Sonic Encoders-->MsiExec.exe /I{9941F0AA-B903-4AF4-A055-83A9815CC011}
Startup Repair for Windows 1.0.0.1-->"C:\Program Files\StartupRepair\unins000.exe"
SUPERAntiSpyware Free Edition-->MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
ubCore-->C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\11\INTEL3~1\IDriver.exe /M{F65FE148-FCF5-42F7-8803-FA0B7DA8B8A4}
Update for Windows Media Player 10 (KB913800)-->"C:\WINDOWS\$NtUninstallKB913800$\spuninst\spuninst.exe"
Update for Windows XP (KB943729)-->"C:\WINDOWS\$NtUninstallKB943729$\spuninst\spuninst.exe"
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update for Windows XP (KB951978)-->"C:\WINDOWS\$NtUninstallKB951978$\spuninst\spuninst.exe"
Update for Windows XP (KB953356)-->"C:\WINDOWS\$NtUninstallKB953356$\spuninst\spuninst.exe"
Update Rollup 2 for Windows XP Media Center Edition 2005-->C:\WINDOWS\$NtUninstallKB900325$\spuninst\spuninst.exe
VeohTV BETA-->C:\Program Files\InstallShield Installation Information\{0405E51E-9582-4207-8F38-AC44201D3808}\setup.exe -runfromtemp -l0x0409
WinAce Archiver 2.0-->C:\Program Files\WinAce\SXUNINST.EXE C:\Program Files\WinAce\SXUNINST.INI
Windows Backup Utility-->MsiExec.exe /I{76EFFC7C-17A6-479D-9E47-8E658C1695AE}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Beta (all programs)-->C:\Program Files\Windows Live\Installer\wlarp.exe
Windows Live Beta (all programs)-->MsiExec.exe /I{5D4A033A-A286-44BE-A0F0-B05FAC25D07F}
Windows Live Call-->MsiExec.exe /I{78AC782A-C708-4B21-A3A0-ECD4A3284588}
Windows Live Family Safety-->MsiExec.exe /X{3491D278-AF52-4A0E-A1F5-D1A57B4F2222}
Windows Live Mail-->MsiExec.exe /I{DFD6935E-D94A-4DBE-AD8F-E37CBC6B577F}
Windows Live Messenger-->MsiExec.exe /X{B1403D7D-C725-4858-AACC-7E5FA2D72859}
Windows Live OneCare safety scanner-->RunDll32.exe "C:\Program Files\Windows Live Safety Center\wlscCore.dll",UninstallFunction WLSC_SCANNER_PRODUCT
Windows Live Photo Gallery Beta-->MsiExec.exe /X{F6D0986F-D9A8-479B-A80F-61D53CDF65BA}
Windows Live Sign-in Assistant-->MsiExec.exe /I{8984E374-6C93-427C-A3B9-AD92472FDCA0}
Windows Live Toolbar Beta-->MsiExec.exe /X{5524A0D4-F826-4961-9B53-EFF6C615251B}
Windows Live Writer-->MsiExec.exe /X{AC5568AB-C3E3-490E-BE40-50977C12288D}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Media Center Edition 2005 KB925766-->"C:\WINDOWS\$NtUninstallKB925766$\spuninst\spuninst.exe"
Windows XP Service Pack 3-->"C:\WINDOWS\$NtServicePackUninstall$\spuninst\spuninst.exe"
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
WinZip-->"C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
Wordscape Online Party (remove only)-->"C:\Program Files\iWin.com\Wordscape Online Party\Uninstall.exe"
Writer's Blocks-->C:\PROGRA~1\WRITER~1\UNWISE.EXE C:\PROGRA~1\WRITER~1\install.log
XP Codec Pack-->C:\Program Files\XP Codec Pack\Uninstall.exe

======Security center information======

AV: Protector Plus Anti-virus Software
AV: Avanquest VirusScanner Pro
AV: AVG Anti-Virus
AV: CyberDefender Internet Security

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 43 Stepping 1, AuthenticAMD
"PROCESSOR_REVISION"=2b01
"NUMBER_OF_PROCESSORS"=2
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_07\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_07\lib\ext\QTJava.zip

-----------------EOF-----------------
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby alwysbtchn » October 13th, 2008, 6:55 pm

here is the log
Logfile of random's system information tool 1.04 (written by random/random)
Run by KaraKristi at 2008-10-13 15:32:57
Microsoft Windows XP Professional Service Pack 3
System drive C: has 45 GB (19%) free of 238 GB
Total RAM: 2046 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:33:19, on 10/13/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Protector Plus\PPServ.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\PC Tools Disk Suite\DSService.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Documents and Settings\KaraKristi\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\KaraKristi.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://safesearch.cyberdefender.com/smallsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.myidentitydefender.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = dynhost.inetcam.com;register.inetcam.com
R3 - URLSearchHook: (no name) - ~BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - (no file)
R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {453F51E8-FEF5-4C54-B136-944BF434360C} - C:\WINDOWS\system32\tuvSIyxU.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {8E9887CE-1786-475B-ADE4-2B1A65487FBA} - C:\WINDOWS\system32\pmnKabCS.dll (file missing)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O2 - BHO: Windows Live Toolbar Beta - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: {fb910702-173e-323a-6024-ebabd5c9033e} - {e3309c5d-babe-4206-a323-e371207019bf} - C:\WINDOWS\system32\dfmksc.dll (file missing)
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: &Windows Live Toolbar Beta - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Protector Plus Taskbar Control] C:\PROTEC~1\PPTbc.EXE
O4 - HKLM\..\Run: [Protector Plus InstaUpdate] C:\PROTEC~1\PPInupdt.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CyberDefender Early Detection Center] "C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe"
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: Bingo Luau by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Dice City Roller by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Lottso by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Scrabble by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Tumble Bees by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: World Class Solitaire by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/St ... b55579.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZB ... b55579.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZP ... b55579.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/So ... b56986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 2034459328
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 2228339109
O16 - DPF: {A5180646-FE0F-4C97-AA29-2A0F41515623} - http://zone.msn.com/bingame/zpagames/ZP ... b61895.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v ... b56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.eu/Register ... lashax.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/St ... b55579.cab
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Object) - https://bellerock.microgaming.com/freeplay/FlashAX2.cab
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://zone.msn.com/bingame/zpagames/ZP ... b64162.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: dfmksc.dll,avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: tuvSIyxU - tuvSIyxU.dll (file missing)
O21 - SSODL: StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Creative Service for CDROM Access - Unknown owner - C:\WINDOWS\system32\CTsvcCDA.exe (file missing)
O23 - Service: CSIScanner - Prevx - C:\Program Files\PrevxCSI\prevxcsi.exe
O23 - Service: PC Tools Disk Suite (DiskSuiteService) - Unknown owner - C:\Program Files\PC Tools Disk Suite\DSService.exe
O23 - Service: Fix-It Task Manager - Avanquest North America, Inc. - C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (UnRegistered) (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe

--
End of file - 11393 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1 Copernic Intra-Daily ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\2 Copernic Daily ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\3 Copernic Weekly ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\4 Copernic Monthly ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At10.job
C:\WINDOWS\tasks\At11.job
C:\WINDOWS\tasks\At12.job
C:\WINDOWS\tasks\At13.job
C:\WINDOWS\tasks\At14.job
C:\WINDOWS\tasks\At15.job
C:\WINDOWS\tasks\At16.job
C:\WINDOWS\tasks\At17.job
C:\WINDOWS\tasks\At18.job
C:\WINDOWS\tasks\At19.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At20.job
C:\WINDOWS\tasks\At21.job
C:\WINDOWS\tasks\At22.job
C:\WINDOWS\tasks\At23.job
C:\WINDOWS\tasks\At24.job
C:\WINDOWS\tasks\At25.job
C:\WINDOWS\tasks\At26.job
C:\WINDOWS\tasks\At27.job
C:\WINDOWS\tasks\At28.job
C:\WINDOWS\tasks\At29.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At30.job
C:\WINDOWS\tasks\At31.job
C:\WINDOWS\tasks\At32.job
C:\WINDOWS\tasks\At33.job
C:\WINDOWS\tasks\At34.job
C:\WINDOWS\tasks\At35.job
C:\WINDOWS\tasks\At36.job
C:\WINDOWS\tasks\At37.job
C:\WINDOWS\tasks\At38.job
C:\WINDOWS\tasks\At39.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\At40.job
C:\WINDOWS\tasks\At41.job
C:\WINDOWS\tasks\At42.job
C:\WINDOWS\tasks\At43.job
C:\WINDOWS\tasks\At44.job
C:\WINDOWS\tasks\At45.job
C:\WINDOWS\tasks\At46.job
C:\WINDOWS\tasks\At47.job
C:\WINDOWS\tasks\At48.job
C:\WINDOWS\tasks\At5.job
C:\WINDOWS\tasks\At6.job
C:\WINDOWS\tasks\At7.job
C:\WINDOWS\tasks\At8.job
C:\WINDOWS\tasks\At9.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-10-01 308832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2008-10-03 455960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{453F51E8-FEF5-4C54-B136-944BF434360C}]
C:\WINDOWS\system32\tuvSIyxU.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E9887CE-1786-475B-ADE4-2B1A65487FBA}]
C:\WINDOWS\system32\pmnKabCS.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-02-22 401968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-10-03 2055960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6}]
MyIdentityDefender - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll [2008-10-13 3822920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Beta - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-09-02 953360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e3309c5d-babe-4206-a323-e371207019bf}]
C:\WINDOWS\system32\dfmksc.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - Copernic Agent - C:\PROGRA~1\COPERN~1\COPERN~1.DLL [2004-12-02 1142744]
{D0943516-5076-4020-A3B5-AEFAF26AB263} - Veoh Browser Plug-in - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll [2008-08-28 352256]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar Beta - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-09-02 953360]
{A057A204-BACC-4D26-9990-79A187E2698E} - AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-10-03 2055960]
{A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - MyIdentityDefender - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll [2008-10-13 3822920]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2008-10-03 1235736]
"Protector Plus Taskbar Control"=C:\PROTEC~1\PPTbc.EXE [2008-10-08 1159848]
"Protector Plus InstaUpdate"=C:\PROTEC~1\PPInupdt.exe [2008-10-08 1159848]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-09-17 13574144]
"CyberDefender Early Detection Center"=C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe [2008-10-13 566600]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-13 169984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\24c37e47]
C:\WINDOWS\system32\wvmpquae.dll []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BM27f04ddb]
C:\WINDOWS\system32\wocthtdu.dll []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper]
C:\WINDOWS\system32\CTHELPER.EXE [2007-04-09 19456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
C:\WINDOWS\system32\CTXFIHLP.EXE [2007-04-09 19968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CyberDefender Early Detection Center]
C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe [2008-10-13 619848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray]
C:\WINDOWS\ehome\ehtray.exe [2005-08-05 64512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer]
C:\WINDOWS\KHALMNPR.EXE [2008-02-29 76304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck]
C:\WINDOWS\system32\dumprep 0 -k []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lexmark X1100 Series]
C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe [2003-08-19 57344]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2008-09-09 3513344]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2008-09-17 13574144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2008-09-17 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OE]
C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Power2GoExpress]
NA []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\prunnet]
C:\DOCUME~1\KARAKR~1\LOCALS~1\Temp\prun.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\readericon]
C:\Program Files\Digital Media Reader\readericon45G.exe [2005-08-27 139264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SetDefaultMIDI]
C:\WINDOWS\system32\MIDIDef.exe [2007-04-09 28672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpyEmergency]
C:\My Backup -- 08-09-21 0105PM\Program Files\NETGATE\Spy Emergency 2008\SpyEmergency.exe [2008-08-25 2030136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartupRepair]
C:\Program Files\StartupRepair\StartupRepair.exe [2006-04-27 192512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2008-09-03 1576176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SVCHOST.EXE]
C:\WINDOWS\system32\drivers\svchost.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-10-01 185872]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UfSeAgnt.exe]
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Veoh]
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe [2008-08-28 3660848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirusScannerPro]
C:\PROGRA~1\AVANQU~1\Fix-It\MemCheck.exe [2008-08-26 173312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\webHancer Agent]
C:\Program Files\webHancer\Programs\whagent.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinColorReminder]
C:\Program Files\Pro Imaging Powertoys\Microsoft Color Control Panel Applet for Windows XP\WinColorReminder.exe [2005-10-31 101120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wllvkizbsndy]
C:\WINDOWS\system32\thdtujwdxvpny.dll EntryPoint []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XoftSpySE]
C:\Program Files\XoftSpySE\xoftspy.exe -s []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^PalTalk.lnk]
C:\PROGRA~1\PALTAL~1\paltalk.exe [2008-09-10 11713536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Service Manager.lnk]
C:\PROGRA~1\MI6841~1\80\Tools\Binn\sqlmangr.exe /n []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"PrismXL"=3
"odserv"=3
"iPod Service"=3
"idsvc"=2
"IDriverT"=3
"getPlus(R) Helper"=3

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="dfmksc.dll,avgrsstx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2008-07-23 352256]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2008-05-02 72208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvSIyxU]
tuvSIyxU.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-13 239616]
StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{453F51E8-FEF5-4C54-B136-944BF434360C}"=C:\WINDOWS\system32\tuvSIyxU.dll []
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
C:\WINDOWS\system32\pmnKabCS

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme
"DisableCAD"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"NoDriveTypeAutoRun"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\WINDOWS\system32\mmc.exe"="C:\WINDOWS\system32\mmc.exe:*:Enabled:MicrosoftManagementConsole"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\WINDOWS\system32\drivers\svchost.exe"="C:\WINDOWS\system32\drivers\svchost.exe:*:Disabled:svchost"
"C:\Program Files\Paltalk Messenger\paltalk.exe"="C:\Program Files\Paltalk Messenger\paltalk.exe:*:Enabled:PaltalkScene"
"C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe"="C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe:*:Disabled:DkAdminService"
"C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKAdmin.exe"="C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKAdmin.exe:*:Disabled:DkAdminUI"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Disabled:Microsoft Office Outlook"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\Program Files\Veoh Networks\Veoh\VeohClient.exe"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe:*:Disabled:Veoh Client"
"C:\My Backup -- 08-09-21 0105PM\Program Files\Veoh Networks\Veoh\VeohClient.exe"="C:\My Backup -- 08-09-21 0105PM\Program Files\Veoh Networks\Veoh\VeohClient.exe:*:Disabled:Veoh Client"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgnsx.exe"="C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Documents and Settings\KaraKristi\Desktop\winks,moods,muggins,weemees and meegos\mcoinstall.exe"="C:\Documents and Settings\KaraKristi\Desktop\winks,moods,muggins,weemees and meegos\mcoinstall.exe:*:Enabled:mcoinstall"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe"="C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe:*:Enabled:CyberDefender Internet Security"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"

======List of files/folders created in the last 1 months======

2008-10-13 15:32:57 ----D---- C:\rsit
2008-10-13 13:01:43 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-10-13 12:57:46 ----A---- C:\WINDOWS\st_affiliate.ini
2008-10-13 12:16:07 ----A---- C:\WINDOWS\av_affiliate.ini
2008-10-13 12:16:05 ----A---- C:\WINDOWS\as_affiliate.ini
2008-10-13 12:13:46 ----D---- C:\Program Files\CyberDefender
2008-10-13 11:44:35 ----A---- C:\WINDOWS\lexstat.ini
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkvs.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkpwr.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKPMNT.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLSNT.EXE
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLCNT.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLCNP.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKIH.EXE
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKCU.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkcomm.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKCFG.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXPPS.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXPING.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXP2P32.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXBCES.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXBCE.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEX2KUSB.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\INSTMON.EXE
2008-10-13 11:43:49 ----A---- C:\WINDOWS\system32\LXBKCUR.DLL
2008-10-13 11:43:49 ----A---- C:\WINDOWS\system32\LEXLMPM.DLL
2008-10-13 11:43:24 ----A---- C:\WINDOWS\system32\wiafbdrv.dll
2008-10-13 11:43:07 ----A---- C:\WINDOWS\system32\LXBKUTIL.DLL
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkscin.dll
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\LXBKGF.DLL
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcoin.ini
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcoin.dll
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcinf.dll
2008-10-13 11:43:05 ----D---- C:\Program Files\Lexmark X1100 Series
2008-10-13 11:43:05 ----A---- C:\WINDOWS\system32\LXBKJSWR.DLL
2008-10-13 11:42:57 ----A---- C:\WINDOWS\uninst.exe
2008-10-13 11:41:01 ----D---- C:\Program Files\Realtek AC97
2008-10-12 19:40:53 ----D---- C:\Program Files\Trend Micro
2008-10-12 18:02:58 ----A---- C:\win32upd.exe
2008-10-12 10:09:42 ----A---- C:\WINDOWS\ntbtlog.txt
2008-10-11 07:10:56 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Ultra Fractal 5
2008-10-11 05:54:45 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-10-11 04:57:00 ----D---- C:\Program Files\Pixarra
2008-10-11 04:20:25 ----A---- C:\WINDOWS\system32\swxcacls.exe
2008-10-11 04:20:24 ----A---- C:\WINDOWS\system32\SrchSTS.exe
2008-10-11 04:20:24 ----A---- C:\WINDOWS\system32\dumphive.exe
2008-10-11 04:20:23 ----A---- C:\WINDOWS\system32\swsc.exe
2008-10-11 04:20:22 ----A---- C:\WINDOWS\system32\swreg.exe
2008-10-11 04:20:21 ----A---- C:\WINDOWS\system32\Process.exe
2008-10-10 16:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$
2008-10-10 16:03:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-10-10 16:03:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-10-10 16:03:05 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-10-10 16:02:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-10-10 16:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-10-10 16:02:23 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-10-10 16:02:09 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-10-10 16:01:58 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-10-10 16:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-10-10 16:01:32 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-10-10 16:01:19 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2008-10-10 15:57:34 ----D---- C:\WINDOWS\system32\scripting
2008-10-10 15:57:33 ----D---- C:\WINDOWS\l2schemas
2008-10-10 15:57:31 ----D---- C:\WINDOWS\system32\en
2008-10-10 15:57:29 ----D---- C:\WINDOWS\system32\bits
2008-10-10 15:50:51 ----D---- C:\WINDOWS\ServicePackFiles
2008-10-10 15:47:22 ----D---- C:\WINDOWS\network diagnostic
2008-10-10 15:41:59 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-10-10 10:15:36 ----D---- C:\Documents and Settings\KaraKristi\Application Data\skypePM
2008-10-10 10:15:00 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Skype
2008-10-10 10:14:40 ----D---- C:\Program Files\Skype
2008-10-10 10:14:39 ----D---- C:\Program Files\Common Files\Skype
2008-10-10 10:14:26 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2008-10-10 08:34:04 ----D---- C:\Program Files\Lavasoft
2008-10-10 08:34:03 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-10-09 22:32:47 ----D---- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-10-09 22:32:18 ----D---- C:\Program Files\SUPERAntiSpyware
2008-10-09 22:32:18 ----D---- C:\Documents and Settings\KaraKristi\Application Data\SUPERAntiSpyware.com
2008-10-09 21:55:10 ----N---- C:\WINDOWS\system32\wlanapi.dll
2008-10-09 21:55:00 ----N---- C:\WINDOWS\system32\tspkg.dll
2008-10-09 21:54:47 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2008-10-09 21:54:46 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slserv.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slrundll.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slgen.dll
2008-10-09 21:54:45 ----N---- C:\WINDOWS\slrundll.exe
2008-10-09 21:54:44 ----N---- C:\WINDOWS\system32\slextspk.dll
2008-10-09 21:54:44 ----N---- C:\WINDOWS\system32\slcoinst.dll
2008-10-09 21:54:40 ----N---- C:\WINDOWS\system32\setupn.exe
2008-10-09 21:54:37 ----N---- C:\WINDOWS\system32\s3gnb.dll
2008-10-09 21:54:33 ----N---- C:\WINDOWS\system32\rasqec.dll
2008-10-09 21:54:32 ----N---- C:\WINDOWS\system32\qutil.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qcliprov.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qagentrt.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qagent.dll
2008-10-09 21:54:24 ----N---- C:\WINDOWS\system32\onex.dll
2008-10-09 21:53:47 ----N---- C:\WINDOWS\system32\napstat.exe
2008-10-09 21:53:47 ----N---- C:\WINDOWS\system32\napmontr.dll
2008-10-09 21:53:46 ----N---- C:\WINDOWS\system32\napipsec.dll
2008-10-09 21:53:45 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2008-10-09 21:53:35 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2008-10-09 21:53:35 ----N---- C:\WINDOWS\system32\mssha.dll
2008-10-09 21:52:46 ----N---- C:\WINDOWS\system32\mmcperf.exe
2008-10-09 21:52:45 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2008-10-09 21:52:45 ----N---- C:\WINDOWS\system32\mmcex.dll
2008-10-09 21:52:44 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2008-10-09 21:52:36 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2008-10-09 21:52:08 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2008-10-09 21:51:59 ----N---- C:\WINDOWS\system32\kmsvc.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdpash.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2008-10-09 21:51:56 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2008-10-09 21:51:08 ----N---- C:\WINDOWS\system32\smtpapi.dll
2008-10-09 21:51:07 ----N---- C:\WINDOWS\system32\rwnh.dll
2008-10-09 21:50:50 ----N---- C:\WINDOWS\system32\comsdupd.exe
2008-10-09 21:50:38 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2008-10-09 21:50:24 ----N---- C:\WINDOWS\system32\faxpatch.exe
2008-10-09 21:50:24 ----A---- C:\WINDOWS\003272_.tmp
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapsvc.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapqec.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eappprxy.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapphost.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eappgnui.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eappcfg.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eapolqec.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3ui.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3svc.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3msm.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2008-10-09 21:50:09 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2008-10-09 21:50:09 ----N---- C:\WINDOWS\system32\dot3api.dll
2008-10-09 21:50:05 ----N---- C:\WINDOWS\system32\dimsroam.dll
2008-10-09 21:50:05 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2008-10-09 21:50:03 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2008-10-09 21:49:52 ----N---- C:\WINDOWS\system32\credssp.dll
2008-10-09 21:49:39 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2008-10-09 21:49:38 ----N---- C:\WINDOWS\system32\azroles.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ati3duag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2008-10-09 21:42:04 ----D---- C:\Program Files\PrevxCSI
2008-10-09 21:41:59 ----D---- C:\Documents and Settings\All Users\Application Data\PrevxCSI
2008-10-08 13:41:53 ----A---- C:\WINDOWS\system32\_PPCXM_.DLL
2008-10-08 13:41:43 ----D---- C:\Protector Plus
2008-10-08 13:41:43 ----A---- C:\WINDOWS\_SETUPD_.EXE
2008-10-08 13:23:49 ----D---- C:\ead2f0f9345be0c185d958
2008-10-08 09:03:44 ----D---- C:\ed0099868e76aeb8189631ef49c4
2008-10-08 08:23:37 ----D---- C:\Program Files\PC Tools Disk Suite
2008-10-08 08:23:37 ----D---- C:\Documents and Settings\All Users\Application Data\PC Tools
2008-10-08 01:57:10 ----D---- C:\Program Files\NOS
2008-10-03 23:35:43 ----D---- C:\WINDOWS\system32\FlashAX2
2008-10-03 22:43:54 ----A---- C:\WINDOWS\system32\GEARAspi.dll
2008-10-03 22:42:48 ----D---- C:\Program Files\iPod
2008-10-03 22:42:45 ----D---- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-10-03 22:42:44 ----D---- C:\Program Files\iTunes
2008-10-03 22:38:28 ----D---- C:\Program Files\QuickTime
2008-10-03 22:38:26 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-10-03 22:36:23 ----D---- C:\Program Files\Apple Software Update
2008-10-03 22:34:06 ----D---- C:\Program Files\Common Files\Apple
2008-10-03 22:34:05 ----D---- C:\Documents and Settings\All Users\Application Data\Apple
2008-10-03 21:30:01 ----SH---- C:\WINDOWS\system32\xlpqcasj.ini
2008-10-03 21:29:55 ----A---- C:\WINDOWS\system32\emljoqwy.dll
2008-10-03 18:57:06 ----HD---- C:\$AVG8.VAULT$
2008-10-03 18:51:28 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2008-10-03 18:51:15 ----D---- C:\Documents and Settings\KaraKristi\Application Data\AVGTOOLBAR
2008-10-03 18:50:56 ----D---- C:\Program Files\AVG
2008-10-03 18:50:56 ----D---- C:\Documents and Settings\All Users\Application Data\avg8
2008-10-03 18:43:50 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Thinstall
2008-10-03 18:32:43 ----D---- C:\Program Files\USB Disk Security
2008-10-03 17:24:22 ----D---- C:\Ww
2008-10-03 17:21:23 ----D---- C:\Program Files\yjfcjyb
2008-10-03 17:21:20 ----D---- C:\Documents and Settings\All Users\Application Data\tclinany
2008-10-03 17:13:10 ----D---- C:\Documents and Settings\All Users\Application Data\POP3Profiles
2008-10-03 17:10:29 ----D---- C:\Program Files\Ubisoft
2008-10-03 16:46:06 ----D---- C:\Program Files\Messenger Plus! Live
2008-10-03 14:17:26 ----A---- C:\WINDOWS\cdplayer.ini
2008-10-02 21:35:38 ----SH---- C:\WINDOWS\system32\eauqpmvw.ini
2008-10-02 08:02:08 ----D---- C:\Documents and Settings\KaraKristi\Application Data\LimeWire
2008-10-01 23:52:00 ----A---- C:\WINDOWS\system32\nvunrm.exe
2008-10-01 23:43:41 ----D---- C:\Program Files\Unibrain
2008-10-01 23:42:52 ----D---- C:\Program Files\Intel Desktop Board
2008-10-01 23:27:21 ----D---- C:\NVIDIA
2008-10-01 23:10:27 ----D---- C:\Program Files\PC Drivers HeadQuarters
2008-10-01 23:10:27 ----D---- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\javaws.exe
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\javaw.exe
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\java.exe
2008-10-01 23:01:04 ----D---- C:\Program Files\Java
2008-10-01 23:00:03 ----D---- C:\Program Files\Common Files\Java
2008-10-01 21:46:34 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink
2008-10-01 21:46:28 ----D---- C:\Documents and Settings\KaraKristi\Application Data\CyberLink
2008-10-01 21:40:36 ----D---- C:\Program Files\Uniblue
2008-10-01 21:40:36 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Uniblue
2008-10-01 21:40:36 ----D---- C:\Documents and Settings\All Users\Application Data\DriverScanner
2008-10-01 21:30:48 ----SH---- C:\WINDOWS\system32\fpbuiaoh.ini
2008-10-01 08:06:46 ----D---- C:\Program Files\Common Files\xing shared
2008-10-01 01:17:21 ----D---- C:\Program Files\Nikopol
2008-10-01 00:50:42 ----D---- C:\Documents and Settings\All Users\Application Data\Trend Micro
2008-09-30 23:26:37 ----D---- C:\Program Files\PowerISO
2008-09-30 23:25:31 ----D---- C:\Document
2008-09-30 22:56:40 ----A---- C:\WINDOWS\system32\XceedCry.dll
2008-09-30 22:56:40 ----A---- C:\WINDOWS\system32\XceedBkp.dll
2008-09-30 22:56:38 ----A---- C:\WINDOWS\system32\VB6STKIT.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MSVCRTD.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MFCO42D.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MFC42D.DLL
2008-09-30 21:41:08 ----D---- C:\Program Files\StartupRepair
2008-09-30 20:28:06 ----SH---- C:\WINDOWS\system32\rrklyafk.ini
2008-09-29 21:55:53 ----D---- C:\Program Files\Windows Live Safety Center
2008-09-29 18:36:28 ----D---- C:\Documents and Settings\KaraKristi\Application Data\IrfanView
2008-09-29 16:00:28 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2008-09-29 15:59:51 ----A---- C:\WINDOWS\system32\pndx5032.dll
2008-09-29 15:59:51 ----A---- C:\WINDOWS\system32\pndx5016.dll
2008-09-29 15:59:30 ----D---- C:\Program Files\Real
2008-09-29 15:59:30 ----D---- C:\Program Files\Common Files\Real
2008-09-29 15:59:07 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Real
2008-09-29 13:05:18 ----SH---- C:\WINDOWS\system32\noensywk.ini
2008-09-29 13:02:16 ----A---- C:\WINDOWS\system32\ocxlvq.dll
2008-09-29 13:02:15 ----A---- C:\WINDOWS\system32\hxhwocpg.dll
2008-09-29 13:00:28 ----A---- C:\WINDOWS\system32\vsneryfl.dll
2008-09-28 18:30:02 ----A---- C:\WINDOWS\system32\10Lpdc2R.exe.a_a
2008-09-28 17:43:53 ----D---- C:\WINDOWS\Sun
2008-09-28 17:43:53 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Sun
2008-09-28 17:39:40 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Apple Computer
2008-09-28 15:16:32 ----D---- C:\Program Files\Belarc
2008-09-28 15:01:59 ----D---- C:\WINDOWS\system32\appmgmt
2008-09-28 14:35:26 ----A---- C:\WINDOWS\system32\XffC0E3M.exe.a_a
2008-09-28 13:37:22 ----D---- C:\Documents and Settings\All Users\Application Data\LogiShrd
2008-09-28 13:37:16 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Logitech
2008-09-28 13:35:47 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$
2008-09-28 13:34:45 ----A---- C:\WINDOWS\system32\BtCoreIf.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemXML.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemWnd.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemUtil.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\kemutb.dll
2008-09-28 13:34:19 ----D---- C:\Documents and Settings\All Users\Application Data\Logitech
2008-09-28 13:34:17 ----D---- C:\Program Files\Common Files\Logishrd
2008-09-28 13:34:09 ----D---- C:\Program Files\Logitech
2008-09-28 13:34:08 ----D---- C:\Documents and Settings\KaraKristi\Application Data\InstallShield
2008-09-28 08:49:04 ----SH---- C:\WINDOWS\system32\lsckuhjl.ini
2008-09-28 08:46:42 ----A---- C:\diffdebug.txt
2008-09-28 08:46:28 ----A---- C:\WINDOWS\system32\2fe0ba39-.txt
2008-09-28 08:45:57 ----ASH---- C:\WINDOWS\system32\SCbaKnmp.ini2
2008-09-28 08:45:57 ----ASH---- C:\WINDOWS\system32\SCbaKnmp.ini
2008-09-28 08:45:15 ----A---- C:\WINDOWS\system32\javaee.dll
2008-09-28 08:33:16 ----SHD---- C:\WINDOWS\S2FyYUtyaXN0aQ
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\zep
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\tcon
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\oib
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\CP6
2008-09-28 08:32:57 ----D---- C:\WINDOWS\system32\EV19
2008-09-28 08:32:57 ----D---- C:\Temp
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\vpdf32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\vchart3235.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\leon3_32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\Dav3_32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\BarVisD.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\APIGUIDE.DLL
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\apigid32.dll
2008-09-28 08:09:32 ----A---- C:\WINDOWS\system32\vpep3235.dll
2008-09-28 08:09:32 ----A---- C:\WINDOWS\system32\dwStg.dll
2008-09-28 08:09:29 ----D---- C:\Program Files\Writer's Blocks 3 Trial
2008-09-28 08:09:28 ----A---- C:\WINDOWS\WB3USER.INI
2008-09-28 07:58:40 ----N---- C:\WINDOWS\pcdlib32.dll
2008-09-28 07:58:30 ----D---- C:\Program Files\Serif
2008-09-27 23:25:07 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Paltalk
2008-09-27 23:25:04 ----D---- C:\WINDOWS\PaltalkScene
2008-09-27 23:25:04 ----D---- C:\Program Files\Paltalk Messenger
2008-09-27 22:07:59 ----A---- C:\WINDOWS\system32\tdssinit.dll
2008-09-27 20:46:33 ----D---- C:\WINDOWS\system32\FlashAX
2008-09-27 20:46:19 ----D---- C:\Documents and Settings\All Users\Application Data\Microgaming
2008-09-27 20:46:19 ----D---- C:\Documents and Settings\All Users\Application Data\MGS
2008-09-27 20:46:16 ----D---- C:\MicroGaming
2008-09-27 08:20:28 ----HDC---- C:\WINDOWS\$NtUninstallKB954708$
2008-09-27 08:18:18 ----D---- C:\Program Files\Microsoft
2008-09-27 08:10:31 ----D---- C:\Program Files\Common Files\Windows Live
2008-09-26 20:19:13 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Spy Emergency
2008-09-26 13:14:41 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Ashampoo
2008-09-26 12:18:05 ----A---- C:\WINDOWS\system32\dbmsqlgc.dll
2008-09-26 12:18:05 ----A---- C:\WINDOWS\system32\dbmsgnet.dll
2008-09-26 12:17:45 ----D---- C:\Program Files\Microsoft SQL Server
2008-09-26 12:16:08 ----D---- C:\Program Files\Ashampoo
2008-09-26 12:14:32 ----D---- C:\Documents and Settings\All Users\Application Data\Diskeeper Corporation
2008-09-26 12:10:21 ----D---- C:\Program Files\Gabest
2008-09-26 12:10:17 ----A---- C:\WINDOWS\system32\avisynth.dll
2008-09-26 12:10:14 ----D---- C:\Program Files\DivXCodec
2008-09-26 12:10:11 ----A---- C:\WINDOWS\system32\DivXc32f.dll
2008-09-26 12:10:11 ----A---- C:\WINDOWS\system32\DivXc32.dll
2008-09-26 12:10:09 ----D---- C:\Program Files\GordianKnot
2008-09-26 12:10:09 ----A---- C:\WINDOWS\system32\HUFFYUV.DLL
2008-09-26 10:18:48 ----D---- C:\Program Files\Pro Imaging Powertoys
2008-09-26 02:33:15 ----D---- C:\Documents and Settings\KaraKristi\Application Data\iWin
2008-09-26 02:29:48 ----D---- C:\Documents and Settings\KaraKristi\Application Data\iWinArcade
2008-09-26 02:29:31 ----D---- C:\Program Files\iWin.com
2008-09-26 02:26:37 ----D---- C:\Documents and Settings\All Users\Application Data\iWin Games
2008-09-25 21:20:40 ----N---- C:\WINDOWS\WB.ini
2008-09-25 08:49:50 ----N---- C:\WINDOWS\system32\wbsys.dll
2008-09-25 08:49:50 ----D---- C:\Program Files\Stardock
2008-09-25 08:14:27 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Windows Search
2008-09-25 01:30:28 ----A---- C:\WINDOWS\system32\jit.dll
2008-09-25 01:30:28 ----A---- C:\WINDOWS\system32\dx3j.dll
2008-09-25 01:30:28 ----A---- C:\WINDOWS\setdebug.exe
2008-09-25 01:30:24 ----A---- C:\WINDOWS\system32\wjview.exe
2008-09-25 01:30:24 ----A---- C:\WINDOWS\system32\vmhelper.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msjdbc10.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msjava.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msawt.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\jview.exe
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\jdbgmgr.exe
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javart.dll
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javaprxy.dll
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javacypt.dll
2008-09-25 01:30:21 ----A---- C:\WINDOWS\system32\clspack.exe
2008-09-25 00:07:23 ----D---- C:\WINDOWS\system32\windows media
2008-09-25 00:01:15 ----A---- C:\WINDOWS\oodcnt.INI
2008-09-24 23:56:48 ----D---- C:\Documents and Settings\All Users\Application Data\Trymedia
2008-09-24 23:54:02 ----A---- C:\Hardware.ini
2008-09-24 23:51:30 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2008-09-24 23:48:12 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2008-09-24 23:45:01 ----A---- C:\WINDOWS\system32\atl71.dll
2008-09-24 23:27:32 ----D---- C:\Program Files\Jasc Software Inc
2008-09-24 23:23:14 ----D---- C:\Program Files\WinAce
2008-09-24 23:21:46 ----D---- C:\Program Files\WinRAR
2008-09-24 23:19:55 ----D---- C:\Program Files\WinZip
2008-09-24 23:19:08 ----D---- C:\Program Files\XP Codec Pack
2008-09-24 23:18:23 ----HDC---- C:\WINDOWS\$NtUninstallKB943729$
2008-09-24 22:48:48 ----D---- C:\Program Files\Windows Desktop Search
2008-09-24 22:48:47 ----HD---- C:\WINDOWS\system32\GroupPolicy
2008-09-24 22:48:33 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4_0$
2008-09-24 22:48:26 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2008-09-24 22:48:23 ----N---- C:\WINDOWS\system32\xmllite.dll
2008-09-24 22:43:12 ----A---- C:\WINDOWS\RtlRack.ini
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\Icam7EXT.dll
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\icam7com.dll
2008-09-24 22:22:20 ----A---- C:\WINDOWS\system32\cttele.dll
2008-09-24 22:22:06 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Creative
2008-09-24 22:18:38 ----A---- C:\WINDOWS\system32\RtlCPAPI.dll
2008-09-24 22:18:38 ----A---- C:\WINDOWS\system32\ChCfg.exe
2008-09-24 22:18:38 ----A---- C:\WINDOWS\soundman.exe
2008-09-24 22:18:37 ----A---- C:\WINDOWS\system32\RTLCPL.exe
2008-09-24 22:18:13 ----D---- C:\Program Files\Realtek Sound Manager
2008-09-24 22:18:13 ----D---- C:\Program Files\AvRack
2008-09-24 22:18:04 ----A---- C:\WINDOWS\alcupd.exe
2008-09-24 22:18:04 ----A---- C:\WINDOWS\Alcrmv.exe
2008-09-24 22:17:14 ----D---- C:\WINDOWS\NV35443540.TMP
2008-09-24 22:14:52 ----D---- C:\cabs
2008-09-24 11:20:12 ----D---- C:\WINDOWS\LastGood(2)
2008-09-24 04:53:53 ----D---- C:\Program Files\IrfanView
2008-09-23 21:13:05 ----D---- C:\WINDOWS\Minidump
2008-09-23 21:10:04 ----HDC---- C:\WINDOWS\$NtUninstallKB920213$
2008-09-23 20:44:17 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2008-09-23 20:42:23 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-09-23 20:40:24 ----SHDC---- C:\Program Files\Common Files\WindowsLiveInstaller
2008-09-23 20:40:20 ----D---- C:\Program Files\Windows Live
2008-09-23 20:40:10 ----D---- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-09-23 03:09:44 ----HDC---- C:\WINDOWS\$NtUninstallKB908250$
2008-09-23 03:08:02 ----D---- C:\Program Files\MSXML 6.0
2008-09-23 03:07:24 ----HDC---- C:\WINDOWS\$NtUninstallKB925720$
2008-09-23 03:06:02 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2008-09-23 03:05:50 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2008-09-23 03:05:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2008-09-23 03:01:03 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2008-09-23 03:00:54 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
2008-09-23 02:55:52 ----D---- C:\Program Files\Veoh Networks
2008-09-23 02:22:12 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Copernic
2008-09-23 02:22:10 ----D---- C:\Program Files\Common Files\Copernic
2008-09-23 02:22:09 ----D---- C:\Program Files\Copernic Agent
2008-09-23 02:22:09 ----A---- C:\WINDOWS\CopernicAgentUninstall.exe
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\muweb.dll
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\mucltui.dll
2008-09-22 23:15:33 ----D---- C:\Documents and Settings\All Users\Application Data\BVRP Software
2008-09-22 23:14:49 ----RSHD---- C:\_Backup.RC
2008-09-22 23:14:47 ----HD---- C:\_Backup
2008-09-22 23:12:53 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Avanquest
2008-09-22 23:12:16 ----D---- C:\Program Files\Avanquest
2008-09-22 23:06:47 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-09-21 21:05:44 ----D---- C:\Program Files\FILE RECOVERY for Windows
2008-09-21 18:13:53 ----HDC---- C:\WINDOWS\$NtUninstallKB938464_0$
2008-09-21 18:12:54 ----A---- C:\WINDOWS\system32\MRT.exe
2008-09-21 18:12:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2008-09-21 18:12:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
2008-09-21 18:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2008-09-21 18:12:23 ----HDC---- C:\WINDOWS\$NtUninstallKB953838_0$
2008-09-21 18:12:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2008-09-21 18:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2008-09-21 18:12:08 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2008-09-21 18:11:56 ----HDC---- C:\WINDOWS\$NtUninstallKB953839$
2008-09-21 18:11:51 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2008-09-21 18:11:45 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2008-09-21 18:11:40 ----HDC---- C:\WINDOWS\$NtUninstallKB951698_0$
2008-09-21 18:11:35 ----HDC---- C:\WINDOWS\$NtUninstallKB953356$
2008-09-21 18:11:32 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2008-09-21 18:11:27 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2008-09-21 18:11:23 ----N---- C:\WINDOWS\system32\spmsg.dll
2008-09-21 18:11:22 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2008-09-21 18:11:13 ----D---- C:\Program Files\Windows Media Connect 2
2008-09-21 18:11:03 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2008-09-21 18:10:35 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2008-09-21 18:10:25 ----D---- C:\42d35e341d9c6b57d4cbcf
2008-09-21 18:10:23 ----D---- C:\WINDOWS\system32\LogFiles
2008-09-21 18:10:19 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2008-09-21 18:10:10 ----D---- C:\1637ce17eb4eae094e41249521b28a
2008-09-21 18:09:56 ----HDC---- C:\WINDOWS\$NtUninstallKB925766$
2008-09-21 18:09:46 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2008-09-21 18:09:34 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2008-09-21 18:09:26 ----HDC---- C:\WINDOWS\$NtUninstallKB950749$
2008-09-21 18:09:16 ----HDC---- C:\WINDOWS\$NtUninstallKB948590$
2008-09-21 18:09:12 ----HDC---- C:\WINDOWS\$NtUninstallKB945553$
2008-09-21 18:09:07 ----HDC---- C:\WINDOWS\$NtUninstallKB941693$
2008-09-21 17:03:17 ----HDC---- C:\WINDOWS\$NtUninstallKB943055$
2008-09-21 17:03:13 ----HDC---- C:\WINDOWS\$NtUninstallKB946026$
2008-09-21 17:03:09 ----HDC---- C:\WINDOWS\$NtUninstallKB943485$
2008-09-21 17:03:06 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-09-21 17:02:55 ----HDC---- C:\WINDOWS\$NtUninstallKB937894$
2008-09-21 17:02:50 ----HDC---- C:\WINDOWS\$NtUninstallKB944653$
2008-09-21 17:02:45 ----HDC---- C:\WINDOWS\$NtUninstallKB943460$
2008-09-21 17:01:31 ----D---- C:\Program Files\MSBuild
2008-09-21 16:58:23 ----D---- C:\WINDOWS\system32\XPSViewer
2008-09-21 16:57:32 ----D---- C:\Program Files\Reference Assemblies
2008-09-21 16:55:55 ----N---- C:\WINDOWS\system32\spmsg2.dll
2008-09-21 16:55:47 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2008-09-21 16:55:43 ----D---- C:\0b939189125f9c3e5ae27f65
2008-09-21 16:55:39 ----HDC---- C:\WINDOWS\$NtUninstallKB933729$
2008-09-21 16:55:32 ----HDC---- C:\WINDOWS\$NtUninstallKB936021$
2008-09-21 16:55:26 ----HDC---- C:\WINDOWS\$NtUninstallKB938127$
2008-09-21 16:55:20 ----HDC---- C:\WINDOWS\$NtUninstallKB938828$
2008-09-21 16:55:11 ----HDC---- C:\WINDOWS\$NtUninstallKB930494$
2008-09-21 16:55:01 ----HDC---- C:\WINDOWS\$NtUninstallKB925398_WMP64$
2008-09-21 16:54:47 ----HDC---- C:\WINDOWS\$NtUninstallKB935839$
2008-09-21 16:54:44 ----HDC---- C:\WINDOWS\$NtUninstallKB935840$
2008-09-21 16:54:39 ----HDC---- C:\WINDOWS\$NtUninstallKB929123$
2008-09-21 16:54:34 ----HDC---- C:\WINDOWS\$NtUninstallKB927891$
2008-09-21 16:54:30 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$
2008-09-21 16:54:25 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$
2008-09-21 16:54:21 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$
2008-09-21 16:54:18 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$
2008-09-21 16:54:14 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$
2008-09-21 16:54:07 ----HDC---- C:\WINDOWS\$NtUninstallKB931784$
2008-09-21 16:54:01 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$
2008-09-21 16:53:54 ----D---- C:\WINDOWS\system32\en-us
2008-09-21 16:53:42 ----HDC---- C:\WINDOWS\$NtUninstallKB925876$
2008-09-21 16:53:37 ----HDC---- C:\WINDOWS\$NtUninstallKB926436$
2008-09-21 16:53:33 ----HDC---- C:\WINDOWS\$NtUninstallKB918118$
2008-09-21 16:53:29 ----HDC---- C:\WINDOWS\$NtUninstallKB927779$
2008-09-21 16:53:25 ----HDC---- C:\WINDOWS\$NtUninstallKB924667$
2008-09-21 16:53:22 ----HDC---- C:\WINDOWS\$NtUninstallKB927802$
2008-09-21 16:53:18 ----HDC---- C:\WINDOWS\$NtUninstallKB928843$
2008-09-21 16:53:12 ----HDC---- C:\WINDOWS\$NtUninstallKB928255$
2008-09-21 16:53:08 ----HDC---- C:\WINDOWS\$NtUninstallKB926255$
2008-09-21 16:53:03 ----HDC---- C:\WINDOWS\$NtUninstallKB923980$
2008-09-21 16:52:59 ----HDC---- C:\WINDOWS\$NtUninstallKB924270$
2008-09-21 16:52:55 ----HDC---- C:\WINDOWS\$NtUninstallKB923191$
2008-09-21 16:52:50 ----HDC---- C:\WINDOWS\$NtUninstallKB924496$
2008-09-21 16:52:46 ----HDC---- C:\WINDOWS\$NtUninstallKB923414$
2008-09-21 16:52:42 ----HDC---- C:\WINDOWS\$NtUninstallKB920872$
2008-09-21 16:52:37 ----HDC---- C:\WINDOWS\$NtUninstallKB920685$
2008-09-21 16:52:32 ----HDC---- C:\WINDOWS\$NtUninstallKB916595$
2008-09-21 16:52:28 ----HDC---- C:\WINDOWS\$NtUninstallKB922582$
2008-09-21 16:52:21 ----HDC---- C:\WINDOWS\$NtUninstallKB920683$
2008-09-21 16:52:17 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$
2008-09-21 16:52:12 ----HDC---- C:\WINDOWS\$NtUninstallKB914388$
2008-09-21 16:52:08 ----HDC---- C:\WINDOWS\$NtUninstallKB904942$
2008-09-21 16:52:04 ----HDC---- C:\WINDOWS\$NtUninstallKB911280$
2008-09-21 16:51:59 ----HDC---- C:\WINDOWS\$NtUninstallKB913580$
2008-09-21 16:51:55 ----HDC---- C:\WINDOWS\$NtUninstallKB918439$
2008-09-21 16:51:51 ----HDC---- C:\WINDOWS\$NtUninstallKB914389$
2008-09-21 16:51:45 ----HDC---- C:\WINDOWS\$NtUninstallKB908531$
2008-09-21 16:51:41 ----HDC---- C:\WINDOWS\$NtUninstallKB900485$
2008-09-21 16:51:30 ----HDC---- C:\WINDOWS\$NtUninstallKB913800$
2008-09-21 16:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2008-09-21 16:51:05 ----HDC---- C:\WINDOWS\$NtUninstallKB912024$
2008-09-21 16:50:59 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$
2008-09-21 16:49:01 ----SHD---- C:\Config.Msi
2008-09-21 16:48:22 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$
2008-09-21 16:48:19 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$
2008-09-21 16:48:13 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2008-09-21 16:48:06 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$
2008-09-21 16:48:01 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$
2008-09-21 16:47:58 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$
2008-09-21 16:47:54 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$
2008-09-21 16:47:45 ----HDC---- C:\WINDOWS\$NtUninstallKB902400$
2008-09-21 16:47:40 ----HDC---- C:\WINDOWS\$NtUninstallKB894391$
2008-09-21 16:47:36 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$
2008-09-21 16:47:33 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$
2008-09-21 16:47:29 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$
2008-09-21 16:47:25 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$
2008-09-21 16:47:21 ----HDC---- C:\WINDOWS\$NtUninstallKB896358$
2008-09-21 16:47:14 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$
2008-09-21 16:47:10 ----HDC---- C:\WINDOWS\$NtUninstallKB901214$
2008-09-21 16:47:04 ----HDC---- C:\WINDOWS\$NtUninstallKB896344$
2008-09-21 16:46:59 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$
2008-09-21 16:46:55 ----HDC---- C:\WINDOWS\$NtUninstallKB885835$
2008-09-21 16:46:52 ----HDC---- C:\WINDOWS\$NtUninstallKB891781$
2008-09-21 16:46:48 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$
2008-09-21 16:46:45 ----HDC---- C:\WINDOWS\$NtUninstallKB885836$
2008-09-21 16:46:41 ----HDC---- C:\WINDOWS\$NtUninstallKB886185$
2008-09-21 16:46:35 ----HDC---- C:\WINDOWS\$NtUninstallKB873339$
2008-09-21 16:32:37 ----N---- C:\WINDOWS\system32\tsgqec.dll
2008-09-21 16:32:37 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2008-09-21 16:32:37 ----A---- C:\WINDOWS\system32\aaclient.dll
2008-09-21 16:28:29 ----N---- C:\WINDOWS\kb913800.exe
2008-09-21 16:22:46 ----A---- C:\WINDOWS\system32\fdco1ins.dll
2008-09-21 16:22:44 ----D---- C:\WINDOWS\NV4562036.TMP
2008-09-21 16:22:43 ----A---- C:\WINDOWS\system32\bdco1ins.dll
2008-09-21 16:22:42 ----A---- C:\WINDOWS\system32\nvusmb.exe
2008-09-21 16:22:25 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2008-09-21 16:19:59 ----D---- C:\Program Files\CyberLink
2008-09-21 16:19:54 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-09-21 16:19:21 ----A---- C:\WINDOWS\system32\msvcr71.dll
2008-09-21 16:19:21 ----A---- C:\WINDOWS\system32\msvcp71.dll
2008-09-21 16:19:10 ----D---- C:\Program Files\Adobe
2008-09-21 16:19:10 ----D---- C:\Documents and Settings\All Users\Application Data\Prism Deploy
2008-09-21 16:19:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2008-09-21 16:19:08 ----HD---- C:\Program Files\InstallShield Installation Information
2008-09-21 16:19:08 ----D---- C:\Program Files\Common Files\New Boundary
2008-09-21 16:19:00 ----D---- C:\Program Files\Digital Media Reader
2008-09-21 16:18:48 ----D---- C:\WINDOWS\Downloaded Installations
2008-09-21 16:18:48 ----D---- C:\Program Files\Common Files\InstallShield
2008-09-21 16:18:41 ----D---- C:\DriversApps
2008-09-21 16:18:18 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Mozilla
2008-09-21 16:11:43 ----SHD---- C:\WINDOWS\ftpcache
2008-09-21 16:08:29 ----D---- C:\SYSPREP
2008-09-21 16:08:22 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Identities
2008-09-21 16:08:22 ----ASH---- C:\Documents and Settings\KaraKristi\Application Data\desktop.ini
2008-09-21 16:08:21 ----SD---- C:\Documents and Settings\KaraKristi\Application Data\Microsoft
2008-09-21 16:07:45 ----D---- C:\Program Files\Mozilla Firefox
2008-09-21 16:05:47 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Opera
2008-09-21 16:05:32 ----D---- C:\Program Files\Opera
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\Iyvu9_32.dll
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\ir50_lcs.dll
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\iacenc.dll
2008-09-21 16:04:48 ----A---- C:\WINDOWS\system32\OLEMSG32.DLL
2008-09-21 16:04:48 ----A---- C:\WINDOWS\system32\GAPI32.DLL
2008-09-21 16:04:39 ----D---- C:\Galleries
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTTWN80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTKRN80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTIMG80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTFIL80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTEFX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFTIF80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFMSP80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFLMB80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFLMA80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFKODAK.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFPX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFPX7.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFAX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFCMP80N.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\SCALE_EN.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\LFCAL80N.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\LFBMP80N.DLL
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\SmtpX.DLL
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\MimeX.dll
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\MabryObj.dll
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\EncodeX.dll
2008-09-21 16:03:39 ----N---- C:\WINDOWS\h263test.ini
2008-09-21 16:03:11 ----D---- C:\Program Files\Common Files\Intel Shared
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLPX.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLP6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLP5.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLM6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLM5.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLA6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPL.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\ijl15.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\Cpuinf32.dll
2008-09-21 16:02:14 ----D---- C:\Program Files\Web Publish
2008-09-21 16:02:11 ----A---- C:\WINDOWS\system32\LMRTREND.dll
2008-09-21 16:02:10 ----A---- C:\WINDOWS\system32\dxtmsft3.dll
2008-09-21 16:02:08 ----A---- C:\WINDOWS\system32\unam4ie.exe
2008-09-21 16:02:05 ----A---- C:\WINDOWS\system32\vidx16.dll
2008-09-21 16:02:05 ----A---- C:\WINDOWS\system32\qcut.dll
2008-09-21 16:01:56 ----D---- C:\Program Files\Intel
2008-09-21 16:01:55 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Help
2008-09-21 15:52:31 ----SHD---- C:\RECYCLER
2008-09-21 15:51:46 ----D---- C:\Program Files\Microsoft Works
2008-09-21 15:51:33 ----D---- C:\Program Files\Microsoft Visual Studio
2008-09-21 15:51:33 ----D---- C:\Program Files\Common Files\DESIGNER
2008-09-21 15:50:58 ----D---- C:\Program Files\Microsoft.NET
2008-09-21 15:50:14 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-09-21 15:47:17 ----A---- C:\WINDOWS\system32\hccoin.dll
2008-09-21 15:46:40 ----D---- C:\WINDOWS\SHELLNEW
2008-09-21 15:46:13 ----D---- C:\Program Files\Microsoft Office
2008-09-21 15:46:13 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-09-21 15:45:34 ----RHD---- C:\MSOCache
2008-09-21 15:45:20 ----SHD---- C:\System Volume Information
2008-09-21 15:42:09 ----D---- C:\WINDOWS\nview
2008-09-21 15:42:09 ----D---- C:\WINDOWS\NV40164012.TMP
2008-09-21 15:42:09 ----A---- C:\WINDOWS\system32\nvudisp.exe
2008-09-21 15:40:03 ----D---- C:\WINDOWS\Profiles
2008-09-21 15:40:02 ----D---- C:\Documents and Settings\KaraKristi\Application Data\InterTrust
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\MFCUIA32.DLL
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\MFCANS32.DLL
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\INETWH32.DLL
2008-09-21 15:38:10 ----A---- C:\WINDOWS\system32\ksuser.dll
2008-09-21 15:38:01 ----D---- C:\WINDOWS\system32\Data
2008-09-21 15:34:35 ----A---- C:\WINDOWS\SBWIN.INI
2008-09-21 15:33:45 ----D---- C:\Program Files\Creative
2008-09-21 15:27:31 ----D---- C:\WINDOWS\system32\PreInstall
2008-09-21 15:27:29 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-09-21 15:27:07 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2008-09-21 15:19:00 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Macromedia
2008-09-21 15:18:19 ----D---- C:\Program Files\Common Files\Adobe
2008-09-21 15:12:13 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Adobe
2008-09-21 15:11:27 ----D---- C:\WINDOWS\system32\Adobe
2008-09-21 15:11:08 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2008-09-21 15:04:54 ----D---- C:\WINDOWS\pss
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wups2.dll
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2008-09-21 15:03:28 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-09-21 15:03:28 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2008-09-21 13:25:02 ----A---- C:\WINDOWS\system32\wowfaxui.dll
2008-09-21 13:24:59 ----A---- C:\WINDOWS\system32\wowfax.dll
2008-09-21 13:24:52 ----A---- C:\WINDOWS\system32\usrvpa.dll
2008-09-21 13:24:49 ----A---- C:\WINDOWS\system32\usrvoica.dll
2008-09-21 13:24:46 ----A---- C:\WINDOWS\system32\usrv80a.dll
2008-09-21 13:24:42 ----A---- C:\WINDOWS\system32\usrv42a.dll
2008-09-21 13:24:39 ----A---- C:\WINDOWS\system32\usrsvpia.dll
2008-09-21 13:24:36 ----A---- C:\WINDOWS\system32\usrshuta.exe
2008-09-21 13:24:33 ----A---- C:\WINDOWS\system32\usrsdpia.dll
2008-09-21 13:24:29 ----A---- C:\WINDOWS\system32\usrrtosa.dll
2008-09-21 13:24:26 ----A---- C:\WINDOWS\system32\usrprbda.exe
2008-09-21 13:24:23 ----A---- C:\WINDOWS\system32\usrmlnka.exe
2008-09-21 13:24:20 ----A---- C:\WINDOWS\system32\usrlbva.dll
2008-09-21 13:24:16 ----A---- C:\WINDOWS\system32\usrfaxa.dll
2008-09-21 13:24:13 ----A---- C:\WINDOWS\system32\usrdtea.dll
2008-09-21 13:24:10 ----A---- C:\WINDOWS\system32\usrdpa.dll
2008-09-21 13:24:07 ----A---- C:\WINDOWS\system32\usrcoina.dll
2008-09-21 13:24:03 ----A---- C:\WINDOWS\system32\usrcntra.dll
2008-09-21 13:24:03 ----A---- C:\WINDOWS\system32\usbui.dll
2008-09-21 13:23:59 ----A---- C:\WINDOWS\system32\tsbyuv.dll
2008-09-21 13:23:56 ----A---- C:\WINDOWS\system32\streamci.dll
2008-09-21 13:23:56 ----A---- C:\WINDOWS\system32\storprop.dll
2008-09-21 13:23:53 ----A---- C:\WINDOWS\system32\sprio800.dll
2008-09-21 13:23:50 ----A---- C:\WINDOWS\system32\sprio600.dll
2008-09-21 13:23:45 ----A---- C:\WINDOWS\system32\spnike.dll
2008-09-21 13:23:42 ----A---- C:\WINDOWS\system32\pjlmon.dll
2008-09-21 13:23:42 ----A---- C:\WINDOWS\system32\pid.dll
2008-09-21 13:23:39 ----A---- C:\WINDOWS\system32\paqsp.dll
2008-09-21 13:23:35 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2008-09-21 13:23:35 ----A---- C:\WINDOWS\system32\ntkrnlpa.exe
2008-09-21 13:23:31 ----A---- C:\WINDOWS\system32\msyuv.dll
2008-09-21 13:23:25 ----A---- C:\WINDOWS\system32\mdwmdmsp.dll
2008-09-21 13:23:23 ----A---- C:\WINDOWS\system32\iyuv_32.dll
2008-09-21 13:23:22 ----A---- C:\WINDOWS\system32\hid.dll
2008-09-21 13:23:20 ----A---- C:\WINDOWS\system32\dvdplay.exe
2008-09-21 13:22:30 ----A---- C:\WINDOWS\system32\dmutil.dll
2008-09-21 13:22:28 ----A---- C:\WINDOWS\system32\cnbjmon.dll
2008-09-21 13:21:42 ----A---- C:\WINDOWS\system32\zipfldr.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpob2res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xolehlp.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xmlprov.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xenroll.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xcopy.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xactsrv.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuweb.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wups.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wupdmgr.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wucltui.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauserv.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuaueng.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauclt.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuapi.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wtsapi32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wstdecod.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsock32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsnmp32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshtcpip.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshrm.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshnetbs.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshisn.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wship6.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshext.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshcon.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshbth.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshatm.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsecedit.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscsvc.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscript.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscntfy.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\ws2help.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\ws2_32.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\write.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wpnpinst.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wpabaln.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wowexec.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wowdeb.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wow32.dll
2008-09-21 13:21:37 ----A---- C:\WINDOWS\system32\wmstream.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmsdmoe.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpui.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpsrcwp.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpshell.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmploc.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpencen.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpcore.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpcd.dll
2008-09-21 13:21:34 ----A---- C:\WINDOWS\system32\wmpasf.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmiscmgr.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmiprop.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmi.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmerror.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmerrenu.dll
2008-09-21 13:21:31 ----N---- C:\WINDOWS\system32\_000010_.tmp.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wlnotify.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wldap32.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wkssvc.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winver.exe
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wintrust.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winstrm.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsta.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsrv.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winspool.exe
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsock.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winshfhc.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winscard.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winrnr.dll
2008-09-21 13:21:30 ----A---- C:\WINDOWS\system32\winntbbu.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\winhlp32.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\winhelp.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winnls.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmsd.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmm.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmine.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winlogon.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winipsec.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\wininet.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winhttp.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winhlp32.exe
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winfax.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winchat.exe
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winbrand.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\win87em.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\win32spl.dll
2008-09-21 13:21:27 ----N---- C:\WINDOWS\system32\_000012_.tmp.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\win.com
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wifeman.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiavusd.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiavideo.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiashext.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaservc.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaservc(2).dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiascr.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiadss.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiadefui.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wextract.exe
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\webvw.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\webhits.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webclnt.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webclnt(3).dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webcheck.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\wdigest.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\wdigest(3).dll
2008-09-21 13:21:24 ----A---- C:\WINDOWS\system32\wavemsp.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\vmmreg32.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w3ssl.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32topl.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32tm.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32time.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vwipxspx.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vwipxspx.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssvc.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssapi.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssadmin.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vss_ps.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vjoy.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga64k.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga256.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vfpodbc.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\version.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\verifier.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\verifier.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\ver.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vdmredir.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vdmdbg.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vcdex.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vbscript.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vbajet32.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\uxtheme.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\utilman.exe
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\utildll.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\usp10.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\userinit.exe
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\userenv.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\user32.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\user.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\usbmon.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\urlmon.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\url.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\ureg.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\ups.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnpui.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnphost.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnpcont.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnp.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twunk_32.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twunk_16.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twain_32.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twain.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\untfs.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\unlodctr.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\uniplat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\unimdmat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umpnpmgr(3).dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umdmxfrm.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umandlg.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\ulib.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\ufat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\udhisapi.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\typeperf.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\typelib.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\txflog.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\txflog(3).dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\twext.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tslabels.ini
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tskill.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsddd.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsd32.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscon.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsappcmp.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\trkwks.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tree.com
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\traffic.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracert6.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracert.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracerpt.exe
2008-09-21 13:21:18 ----A---- C:\WINDOWS\system32\tourstart.exe
2008-09-21 13:21:18 ----A---- C:\WINDOWS\system32\toolhelp.dll
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsvrp.dll
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsvr.exe
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsess.exe
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntadmn.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\themeui.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tftp.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\termmgr.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\telnet.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpsvcs.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmonui.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmon.ini
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmon.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmib.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\TASKMAN.EXE
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tcmsetup.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskmgr.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskman.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tasklist.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskkill.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapiui.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapisrv.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapisrv(3).dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapiperf.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi32.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi3.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\t2embed.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\systray.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\systeminfo.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syssetup.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysocmgr.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syskey.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysinv.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysedit.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syncui.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\synceng.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syncapp.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sxs.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sxs(3).dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\swprv.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\svcpack.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\svchost.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\subst.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\strmfilt.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\strmdll.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\storage.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stobject.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stimon.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sti_ci.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sti.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stclient.dll
2008-09-21 13:21:12 ----N---- C:\WINDOWS\system32\_000003_.tmp.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srvsvc.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srsvc.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srrstr.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srclient.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlwoa.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlwid.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlunirl.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\spxcoins.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sprestrt.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolsv.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolsv(2).exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolss.dll
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spnpinst.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spiisupd.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spider.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sort.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sol.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\softpub.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\snmpsnap.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\snmpapi.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sndvol32.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sndrec32.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smss.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smlogsvc.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smlogcfg.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smbinst.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbrccsp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbiop.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbcsp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slayerxp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\skeys.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\skdll.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sisbkup.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sigverif.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sigtab.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shutdown.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shsvcs.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shsvcs(3).dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shscrap.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shrpubw.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shmgrate.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shmedia.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shlwapi.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shimgvw.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shimeng.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shgina.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shfolder.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(5).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(4).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(3).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shdocvw.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shdoclc.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\share.exe
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shadow.exe
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\sfmapi.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfcfiles.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc_os.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setver.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setupdll.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setupapi.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setup.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sethc.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sessmgr.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\serwvdrv.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\services.msc
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\services.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\servdeps.dll
2008-09-21 13:21:02 ----N---- C:\WINDOWS\system32\_000006_.tmp.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\serialui.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\senscfg.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sensapi.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sens.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sendmail.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sendcmsg.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\security.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secur32.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secpol.msc
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\seclogon.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secedit.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdpblb.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdhcinst.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdbinst.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scrrun.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scrobj.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scriptpw.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scredir.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sclgntfy.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schtasks.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schedsvc.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schannel.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scesrv.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scecli.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sccsccp.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sccbase.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scardsvr.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scardssp.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scarddlg.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\sc.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\sbeio.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\savedump.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\samsrv.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\samlib.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrslv.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrdm.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rwinsta.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\runonce.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rundll32.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\runas.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtutils.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtm.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtipxmib.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtcshare.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpsp.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpperf.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpmsg.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvp.ini
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvp.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsopprov.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsop.msc
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsnotify.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmui.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmsink.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmps.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsm.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rshx32.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsh.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsfsaps.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsaenh.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss(4).dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss(3).dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcns4.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\routetab.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\routemon.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\route.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rnr20.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched32.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched20.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched20(2).dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rexec.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\resutils.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\reset.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\replace.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rend.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\remotepg.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\relog.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regwizc.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regwiz.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regsvr32.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regsvc.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regini.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regedt32.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regapi.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\reg.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\redir.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\recover.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdshost.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpdd.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpclip.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdchost.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcp.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcimlby.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcbdyctl.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\regedit.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rastls.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rastapi.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasser.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rassapi.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasrad.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasppp.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasphone.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmxs.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmontr.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmans.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmans(3).dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasman.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasdlg.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasdial.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasctrs.ini
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasctrs.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\raschap.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasautou.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasauto.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasapi32.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasadhlp.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasadhlp(3).dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\racpldlg.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\qwinsta.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\query.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qprocess.exe
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qosname.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qmgr.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qedwipes.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qedit.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qdv.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qcap.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qappsrv.exe
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pubprn.vbs
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pstorsvc.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pstorec.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psnppagn.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pschdprf.ini
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pschdprf.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psbase.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psapi.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\proxycfg.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\proquota.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\progman.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\profmap.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prodspec.ini
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnqctl.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnport.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnmngr.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnjobs.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prndrvr.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prncnfg.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\printui.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\print.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prflbmsg.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\powrprof.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\powercfg.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\polstore.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pmspl.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\plustab.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\ping6.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\ping.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pifmgr.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pidgen.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\photowiz.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfwci.ini
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfts.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfproc.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfos.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfnw.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfnet.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfmon.msc
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfmon.exe
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perffilt.ini
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfdisk.dll
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfctrs.dll
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfci.ini
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\pentnt.exe
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\pdh.dll
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\pautoenr.dll
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\pathping.exe
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\panmap.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\pagefileconfig.vbs
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\packager.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2psvc.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pgraph.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pgasvc.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2p.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osuninst.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osuninst.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osk.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\openfiles.exe
2008-09-21 13:20:45 ----N---- C:\WINDOWS\system32\_000008_.tmp.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\opengl32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olethk32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olesvr32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olesvr.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olepro32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleprn.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oledlg.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecnv32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32(4).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32(3).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleaut32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleaccrc.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleacc.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32(4).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32(3).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2nls.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2disp.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\offfilt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odtext32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odpdx32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odfox32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odexl32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\oddbse32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbctrac.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcp32r.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcjt32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcji32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcint.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccu32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccr32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccp32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcconf.exe
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcconf.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcbcp.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcad32.exe
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc32gt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc16gt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\ocmanage.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\occache.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\objsel.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\oakley.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwwks.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwscript.exe
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwprovau.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwevent.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwcfg.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwapi32.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwapi16.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nw16.exe
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntvdmd.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntvdm.exe
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntshrui.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntsdexts.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntsd.exe
2008-09-21 13:20:37 ----A---- C:\WINDOWS\system32\ntprint.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmssvc.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsoprq.msc
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsmgr.msc
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsmgr.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsevt.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsdba.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsapi.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmarta.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlsapi.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanui2.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanui.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanman.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdsbcli.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdsapi.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdll.dll
2008-09-21 13:20:34 ----A---- C:\WINDOWS\system32\ntbackup.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nslookup.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\npptools.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\notepad.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nlsfunc.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\notepad.exe
2008-09-21 13:20:32 ----A---- C:\WINDOWS\system32\nlhtml.dll
2008-09-21 13:20:32 ----A---- C:\WINDOWS\system32\newdev.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui2.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui1.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui0.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netstat.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netsh.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netsetup.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netrap.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netplwiz.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netmsg.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netman.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netman(3).dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netlogon.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netid.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\neth.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netevent.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netdde.exe
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netcfgx.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi32.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi32(3).dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\net1.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\net.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddenb32.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddeapir.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddeapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\ncxpnt.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nbtstat.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\narrhook.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\narrator.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\mydocs.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\mycomput.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxoci.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxex.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxdm.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu(4).dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu(3).dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxmlr.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml3r.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml3.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml2r.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml2.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxbde40.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mswstr10.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mswsock.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\mswebdvd.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\mswdat10.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msw3prt.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvideo.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvidc32.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvfw32.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt40.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt20.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcp60.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcp50.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcirt.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msvbvm60.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msvbvm50.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msv1_0.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msutb.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstscax.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstsc.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstlsapi.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstinit.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstime.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstext40.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstask.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msswchx.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msswch.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssip32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssign32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssap.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrle32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrepl40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrecr40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrd3x40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrd2x40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrclr40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrating.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msratelc.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msr2cenu.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msr2c.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msprivs.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msports.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspbde40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspatcha.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspaint.exe
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msorcl32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msorc32r.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msoert2.dll
2008-09-21 13:20:23 ----A---- C:\WINDOWS\system32\msoeacct.dll
2008-09-21 13:20:23 ----A---- C:\WINDOWS\system32\msobjs.dll
2008-09-21 13:20:22 ----A---- C:\WINDOWS\system32\msnsspc.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msltus40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msls31.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\mslbui.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjtes40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjter40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjint40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjetoledb40.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msjet40.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msisip.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimtf.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimsg.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimg32.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msihnd.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msiexec.exe
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msieftp.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msidntld.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msidle.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msident.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msi.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\mshtmler.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\mshtmled.dll
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshtml.dll
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshta.exe
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshearts.exe
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\msgsvc.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msgina.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msg.exe
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msftedit.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msexcl40.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msexch40.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msencode.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msdxmlc.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtctm.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtclog.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtc.exe
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdmo.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdart.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdadiag.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msctfp.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msctf.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscpxl32.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscpx32r.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msconf.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscms.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscdexnt.exe
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscat32.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msaudite.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msasn1.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msapsspc.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msafd.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\msdfmap.ini
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msacm32.dll
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msacm.dll
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msaatext.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mrinfo.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqutil.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqupgrd.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqtrig.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqtgsvc.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsvc.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsnap.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsec.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqrtdep.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqrt.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqqm.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqperf.ini
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqperf.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqoa.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqise.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqgentr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqdscli.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqcertui.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqbkup.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqad.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprui.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprmsg.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprdim.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprddm.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprapi.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mpr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mpnotify.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mplay32.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\MPG4DMOD.dll
2008-09-21 13:20:09 ----A---- C:\WINDOWS\system32\MP4SDMOD.dll
2008-09-21 13:20:09 ----A---- C:\WINDOWS\system32\MP43DMOD.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mountvol.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\moricons.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\more.com
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\modex.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\modemui.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mode.com
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mobsync.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mobsync.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mnmdd.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mmutilse.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mmsystem.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmfutil.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmdrv.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcshext.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcbase.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmc.exe
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_qic.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_mtf.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_hp.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mlang.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mimefilt.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\migpwd.exe
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\miglibnt.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\midimap.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\mgmtapi.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\mfcsubs.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc42u.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc42.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc40u.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc40.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mf3216.dll
2008-09-21 13:20:04 ----A---- C:\WINDOWS\system32\mem.exe
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mdminst.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mdhcp.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciwave.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciseq.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciqtz32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciole32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciole16.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcicda.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciavi32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mchgrcoi.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcdsrv32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcd32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcastmib.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mapistub.dll
2008-09-21 13:20:02 ----N---- C:\WINDOWS\system32\_000013_.tmp.dll
2008-09-21 13:20:02 ----N---- C:\WINDOWS\system32\_000007_.tmp.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\makecab.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\magnify.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\mag_hook.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lzexpand.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lz32.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lusrmgr.msc
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lsass.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lsasrv.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lprmonui.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lprhelp.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lpr.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lpq.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lpk.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logonui.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logoff.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logman.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\login.cmd
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loghours.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lodctr.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\locator.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localui.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localspl.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localsec.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loadperf.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loadfix.com
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lnkstub.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lmrt.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lmhsvc.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\linkinfo.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\linkinfo(2).dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lights.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licwmi.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licmgr10.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licdll.dll
2008-09-21 13:20:00 ----A---- C:\WINDOWS\system32\langwrbk.dll
2008-09-21 13:19:20 ----N---- C:\WINDOWS\system32\_000011_.tmp.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\label.exe
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\krnl386.exe
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\keymgr.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kernel32.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kerberos.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kerberos(3).dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kdcom.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kd1394.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdycl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdycc.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbduzb.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusx.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusr.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdus.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdur.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdukx.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbduk.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtuq.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtuf.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtat.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsw.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsp.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsg.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsf.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdru1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdru.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdro.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpo.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdno1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdno.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdnec.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdne.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmon.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmaori.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmac.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlv1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlv.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlt1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlt.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdla.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdkyr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdkaz.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdit142.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdit.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdir.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinmal.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinben.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinbe1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdic.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhu.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhept.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhela3.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhela2.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe319.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe220.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgr1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgkl.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgae.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfo.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfi1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfi.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfc.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdest.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdes.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbddv.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdda.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz2.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcan.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdca.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbu.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdblr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbene.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbe.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdazel.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdaze.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kb16.com
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jsproxy.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jscript.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jobexec.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgsh400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgsd400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgpl400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgmd400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgdw400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgaw400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jet500.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\ixsso.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\iuengine.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\itss.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\itircl.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\isign32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\irclass.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_qcx.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_qc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir41_qcx.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir41_qc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir32_32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxwan.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxsap.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxrtmgr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxroute.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxrip.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxpromn.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxmontr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipv6mon.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipv6.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsecsvc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsec6.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprtprio.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprop.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ippromon.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipmontr.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iphlpapi.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iphlpapi(3).dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipconfig.exe
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iologmsg.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\inseng.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\input.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\initpki.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\infosoft.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetres.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetppui.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetpp.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetmib1.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcplc.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcomm.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcfg.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imm32.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imgutil.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imeshare.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imapi.exe
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imagehlp.dll
2008-09-21 13:19:15 ----A---- C:\WINDOWS\system32\ils.dll
2008-09-21 13:19:15 ----A---- C:\WINDOWS\system32\iissuba.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\igmpagnt.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ifsutil.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ifmon.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iexpress.exe
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iesetup.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iernonce.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iepeers.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieencode.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieakui.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieaksie.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieakeng.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\idq.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\icwphbk.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\icwdial.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icmui.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icmp.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icm32.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iccvid.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icaapi.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassvcs.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassdo.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassam.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasrecst.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasrad.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iaspolcy.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasnap.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iashlpr.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasads.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasacct.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\hypertrm.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\htui.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\httpapi.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\hticons.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hotplug.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hostname.exe
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetwiz.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetmon.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hlink.dll
2008-09-21 13:19:11 ----A---- C:\WINDOWS\system32\hhsetup.dll
2008-09-21 13:19:11 ----A---- C:\WINDOWS\hh.exe
2008-09-21 13:19:10 ----A---- C:\WINDOWS\system32\help.exe
2008-09-21 13:19:10 ----A---- C:\WINDOWS\system32\h323msp.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\grpconv.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\graphics.com
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\graftabl.com
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpupdate.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gptext.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpresult.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpkrsrc.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpkcsp.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpedit.msc
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpedit.dll
2008-09-21 13:19:08 ----A---- C:\WINDOWS\system32\glu32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\glmf32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\getuname.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\getmac.exe
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gdi32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gdi.exe
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gcdef.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fwcfg.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\ftsrch.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\ftp.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsutil.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsusd.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsquirt.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsmgmt.msc
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\freecell.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\framebuf.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\format.com
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\forcedos.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontview.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontsub.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontext.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fmifs.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fltmc.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fltlib.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fldrclnr.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fixmapi.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\finger.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\findstr.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\find.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\filemgmt.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\feclient.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fdeploy.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fde.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fc.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\faultrep.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fastopen.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\exts.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\extrac32.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\extmgr.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\expsrv.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\expand.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\exe2bin.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\eventtriggers.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\eventquery.vbs
2008-09-21 13:19:04 ----A---- C:\WINDOWS\explorer.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventvwr.msc
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventvwr.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventlog.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventcreate.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventcls.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eudcedit.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentutl.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentprf.ini
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentprf.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent97.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent(3).dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\es.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\ersvc.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\encapi.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\els.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\efsadu.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\edlin.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\edit.com
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxtrans.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxmasf.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxdiag.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dx8vb.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dx7vb.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dwwin.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\duser.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dumprep.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dswave.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsuiext.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dssenh.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dssec.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsquery.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsprpres.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsprop.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsound3d.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsound.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dskquoui.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dskquota.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsdmo.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsauth.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\ds32gt.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\ds16gt.dLL
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\drwtsn32.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\drwatson.exe
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drprov.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drmstor.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drmclien.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\driverquery.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpwsockx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpwsock.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvvox.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvoice.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvacm.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpserial.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnwsock.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnmodem.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnet.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpmodemx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplayx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplay.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpcdll.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dosx.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\doskey.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\docprop2.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\docprop.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dnsapi.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmusic.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmsynth.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmstyle.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmserver.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmscript.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmremote.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmocx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmloader.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmintf.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmime.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdskres.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdlgs.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmconfig.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmcompos.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmband.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmadmin.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dllhst3g.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dllhost.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dispex.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskperf.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskpart.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskmgmt.msc
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcopy.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcopy.com
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcomp.com
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dinput8.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dinput.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dimap.dll
2008-09-21 13:18:35 ----N---- C:\WINDOWS\system32\_000009_.tmp.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\digest.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\diantz.exe
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\diactfrm.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpmon.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgsetup.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgnet.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dfsshlex.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dfrgui.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgres.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrg.msc
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devmgr.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devmgmt.msc
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devenum.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskperf.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskmon.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskadp.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\defrag.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\debug.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddrawex.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddraw.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddeshare.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddeml.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dciman32.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbnetlib.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbghelp.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\dbgeng.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\davclnt.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\datime.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\dataclen.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\danim.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dxof.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3drm.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dramp.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dpmesh.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dim700.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dim.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3d9.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2008-09-21 13:18:32 ----A---- C:\WINDOWS\system32\d3d8.dll
2008-09-21 13:18:31 ----RA---- C:\WINDOWS\system32\ctl3dv2.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\ctl3d32.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\ctfmon.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csseqchk.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csrss.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csrsrv.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscui.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscript.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptui.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptsvc.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptnet.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptext.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptdlg.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\crypt32.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\crtdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\credui.dll
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\corpol.dll
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\convert.exe
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\control.exe
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\console.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\conime.exe
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\confmsp.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comuid.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comsvcs.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comsnap.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comres.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comrepl.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\compstui.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\compobj.dll
2008-09-21 13:18:28 ----A---- C:\WINDOWS\system32\compmgmt.msc
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\compatui.dll
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\compact.exe
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\comp.exe
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\commdlg.dll
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\command.com
2008-09-21 13:18:24 ----N---- C:\WINDOWS\system32\_000005_.tmp.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comdlg32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comctl32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comcat.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comaddin.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\colbact.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\colbact(3).dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cnvfat.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cnetcfg.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmutil.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmstp.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmsetacl.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmprops.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmpbk32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmmon32.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmdl32.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmdial32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmd.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmcfg32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clusapi.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clipsrv.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clipbrd.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\shellstyle.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cliconfg.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cliconfg.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatq.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatq(3).dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatex.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clb.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ckcnv.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cisvc.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cipher.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciodm.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cidaemon.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cic.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciadv.msc
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciadmin.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chkntfs.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chkdsk.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chcp.com
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\charmap.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\certmgr.msc
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\certmgr.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\certcli.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdosys.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdmodem.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdm.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdfview.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\ccfgnt.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvut.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvut(3).dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvps.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrv.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrv(3).dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cards.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\capesnpn.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\camocx.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\calc.exe
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cacls.exe
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cabview.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cabinet.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\btpanui.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\bthserv.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bthci.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browsewm.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browseui.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browser.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browselc.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootvrfy.exe
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootvid.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootok.exe
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootcfg.exe
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\blastcln.exe
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bidispl.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\batt.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\batmeter.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\basesrv.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avwav.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avtapi.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avmeter.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avifile.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avifil32.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avicap32.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avicap.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autolfn.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autofmt.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autodisc.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autoconv.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autochk.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\authz.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\authz(3).dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\auditusr.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\audiodev.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\attrib.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atrace.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmpvcno.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmlib.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atmadm.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atl.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atkctrs.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\at.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asycfilt.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_pfu.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_ldm.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_fmt.exe
2008-09-21 13:18:15 ----A---- C:\WINDOWS\system32\asferror.dll
2008-09-21 13:18:14 ----A---- C:\WINDOWS\system32\arp.exe
2008-09-21 13:18:13 ----D---- C:\WINDOWS\SMINST
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\appmgr.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\appmgmts.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\apphelp.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\append.exe
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\apcups.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\amstream.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\alrsvc.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\alg.exe
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\ahui.exe
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\advpack.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\advapi32.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnw.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnt.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnds.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsmsext.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsldpc.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsldp.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adptif.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\admparse.dll
2008-09-21 13:18:11 ----D---- C:\WINDOWS\I386
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\actxprxy.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\actmovie.exe
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\activeds.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\aclui.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\acledit.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\accwiz.exe
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\acctres.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\aaaamon.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\6to4svc.dll
2008-09-21 13:05:54 ----D---- C:\My Backup -- 08-09-21 0105PM
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nwiz.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwimg.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwdmcpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvshell.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccsrs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nview.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvdspsch.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcuda.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcplui.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcolor.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvappbar.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\keystone.exe

======List of files/folders modified in the last 1 months======

2008-10-13 15:33:18 ----D---- C:\WINDOWS\Temp
2008-10-13 15:09:47 ----RSH---- C:\boot.ini
2008-10-13 15:09:47 ----A---- C:\WINDOWS\win.ini
2008-10-13 15:09:47 ----A---- C:\WINDOWS\system.ini
2008-10-13 15:08:31 ----D---- C:\WINDOWS\Registration
2008-10-13 15:04:47 ----D---- C:\WINDOWS
2008-10-13 13:01:44 ----SHD---- C:\WINDOWS\Installer
2008-10-13 13:01:43 ----RD---- C:\Program Files
2008-10-13 12:14:52 ----D---- C:\WINDOWS\system32\drivers
2008-10-13 12:14:51 ----HD---- C:\WINDOWS\inf
2008-10-13 12:14:47 ----D---- C:\WINDOWS\system32\CatRoot2
2008-10-13 11:44:11 ----D---- C:\WINDOWS\system32
2008-10-13 11:43:34 ----RSHDC---- C:\WINDOWS\system32\dllcache
2008-10-13 11:42:49 ----D---- C:\WINDOWS\security
2008-10-13 07:34:36 ----SD---- C:\WINDOWS\Tasks
2008-10-12 19:52:36 ----D---- C:\WINDOWS\system32\Restore
2008-10-11 05:53:52 ----HD---- C:\WINDOWS\$hf_mig$
2008-10-10 19:28:34 ----D---- C:\WINDOWS\Help
2008-10-10 19:22:33 ----RSD---- C:\WINDOWS\assembly
2008-10-10 19:22:33 ----D---- C:\WINDOWS\Microsoft.NET
2008-10-10 19:14:24 ----D---- C:\WINDOWS\Debug
2008-10-10 17:15:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-10-10 17:08:55 ----D---- C:\WINDOWS\system32\wbem
2008-10-10 17:08:55 ----D---- C:\WINDOWS\system32\Setup
2008-10-10 17:08:55 ----D---- C:\WINDOWS\AppPatch
2008-10-10 17:08:53 ----RSD---- C:\WINDOWS\Fonts
2008-10-10 16:04:45 ----D---- C:\WINDOWS\system32\CatRoot
2008-10-10 16:01:46 ----D---- C:\Program Files\Messenger
2008-10-10 15:58:44 ----D---- C:\WINDOWS\WinSxS
2008-10-10 15:58:12 ----D---- C:\WINDOWS\system32\inetsrv
2008-10-10 15:58:11 ----D---- C:\WINDOWS\ime
2008-10-10 15:57:38 ----D---- C:\WINDOWS\system32\usmt
2008-10-10 15:57:33 ----D---- C:\Program Files\Internet Explorer
2008-10-10 15:57:29 ----D---- C:\WINDOWS\PeerNet
2008-10-10 15:57:29 ----D---- C:\Program Files\Movie Maker
2008-10-10 15:50:31 ----D---- C:\WINDOWS\system32\npp
2008-10-10 15:50:31 ----D---- C:\WINDOWS\mui
2008-10-10 15:50:28 ----D---- C:\WINDOWS\msagent
2008-10-10 15:50:25 ----D---- C:\WINDOWS\srchasst
2008-10-10 15:50:24 ----D---- C:\Program Files\NetMeeting
2008-10-10 15:50:22 ----D---- C:\WINDOWS\system32\Com
2008-10-10 15:50:18 ----D---- C:\Program Files\Windows NT
2008-10-10 15:50:18 ----D---- C:\Program Files\Windows Media Player
2008-10-10 15:50:18 ----D---- C:\Program Files\Outlook Express
2008-10-10 15:50:13 ----D---- C:\Program Files\Common Files\System
2008-10-10 15:49:49 ----D---- C:\WINDOWS\system32\oobe
2008-10-10 15:49:46 ----D---- C:\WINDOWS\system
2008-10-10 15:41:58 ----D---- C:\WINDOWS\ehome
2008-10-10 10:14:39 ----D---- C:\Program Files\Common Files
2008-10-08 13:41:58 ----A---- C:\AUTOEXEC.BAT
2008-10-06 11:55:48 ----D---- C:\WINDOWS\system32\config
2008-10-03 23:35:45 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-10-01 08:02:41 ----A---- C:\WINDOWS\system32\pncrt.dll
2008-09-28 20:36:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-09-27 22:30:41 ----D---- C:\WINDOWS\system32\Macromed
2008-09-27 08:21:25 ----D---- C:\WINDOWS\system32\DirectX
2008-09-27 08:19:44 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-09-27 08:18:01 ----D---- C:\Program Files\Common Files\Microsoft Shared
2008-09-26 12:18:04 ----HD---- C:\Program Files\Uninstall Information
2008-09-26 00:42:04 ----D---- C:\My Backup -- 08-01-26 0134AM
2008-09-26 00:41:31 ----D---- C:\My Backup -- 05-01-03 0547AM
2008-09-25 01:30:27 ----D---- C:\WINDOWS\java
2008-09-25 00:07:23 ----D---- C:\WINDOWS\RegisteredPackages
2008-09-24 22:23:16 ----D---- C:\WINDOWS\Media
2008-09-24 22:21:25 ----D---- C:\Program Files\Online Services
2008-09-24 02:18:35 ----D---- C:\WINDOWS\SoftwareDistribution
2008-09-21 16:55:57 ----D---- C:\WINDOWS\system32\spool
2008-09-21 16:08:21 ----D---- C:\Documents and Settings
2008-09-21 15:52:12 ----D---- C:\WINDOWS\OPTIONS
2008-09-21 15:50:58 ----D---- C:\WINDOWS\pchealth
2008-09-21 13:25:07 ----D---- C:\Program Files\Common Files\Services
2008-09-21 13:25:06 ----D---- C:\WINDOWS\twain_32
2008-09-21 13:23:43 ----D---- C:\WINDOWS\system32\ras
2008-09-21 13:23:22 ----D---- C:\WINDOWS\system32\icsxml
2008-09-21 13:23:22 ----D---- C:\WINDOWS\system32\ias
2008-09-21 13:22:23 ----D---- C:\WINDOWS\system32\1033
2008-09-21 13:22:16 ----RD---- C:\WINDOWS\Web
2008-09-21 13:21:55 ----D---- C:\WINDOWS\Cursors
2008-09-21 13:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB903157$
2008-09-21 13:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB900325$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB899337$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB895961$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB891593$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB888795$
2008-09-21 13:17:08 ----RD---- C:\WINDOWS\Offline Web Pages
2008-09-21 13:16:54 ----SHD---- C:\WINDOWS\CSC
2008-09-21 13:16:42 ----D---- C:\WINDOWS\system32\URTTemp
2008-09-21 13:16:41 ----D---- C:\WINDOWS\system32\MsDtc
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwss.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwddi.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvvitvs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvnt4cpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmobls.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccss.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvgames.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvdisps.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcodins.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcod.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvapi.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdPPM;AMD HwPState Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2008-10-03 97928]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2008-10-03 26824]
R1 BANTExt;Belarc SMBios Access; C:\WINDOWS\System32\Drivers\BANTExt.sys [2008-02-27 3840]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2006-11-06 30988]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-10 12032]
R2 AvgTdiX;AVG8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2008-10-03 76040]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr.sys [2008-09-04 56344]
R2 tmpreflt;tmpreflt; \??\C:\PROGRA~1\AVANQU~1\Fix-It\tmpreflt.sys []
R2 tmxpflt;tmxpflt; \??\C:\PROGRA~1\AVANQU~1\Fix-It\tmxpflt.sys []
R2 Vsapint;Vsapint; \??\C:\PROGRA~1\AVANQU~1\Fix-It\Vsapint.sys []
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
R3 CDAVFS;CDAVFS; C:\WINDOWS\system32\DRIVERS\CDAVFS.sys [2008-10-13 67424]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 15464]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ICam7fil;Intel(r) CS431 Audio Filter Driver; C:\WINDOWS\system32\drivers\icam7fil.sys [2001-07-31 19640]
R3 Icam7USB;Intel(r) PC Camera CS431; C:\WINDOWS\System32\Drivers\ICAM7D2.SYS [2001-07-31 158848]
R3 MailScan;MailScan; \??\C:\PROGRA~1\AVANQU~1\Fix-It\MailScan.sys []
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-09-17 6132576]
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2008-08-01 54784]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2008-08-01 22016]
R3 PPDrv;Protector Plus Driver (UnRegistered); \??\C:\Protector Plus\PPDrv.sys []
R3 PPEMSCAN;Protector Plus Email Scan Driver; \??\C:\Protector Plus\PPEMSCAN.sys []
R3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
R3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S1 P3;Intel PentiumIII Processor Driver; C:\WINDOWS\system32\DRIVERS\p3.sys [2008-04-13 42752]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 COMMONFX.DLL;COMMONFX.DLL; C:\WINDOWS\system32\COMMONFX.DLL [2007-04-18 98600]
S3 CT20XUT.DLL;CT20XUT.DLL; C:\WINDOWS\system32\CT20XUT.DLL [2007-04-12 164608]
S3 ctac32k;Creative AC3 Software Decoder; C:\WINDOWS\system32\drivers\ctac32k.sys [2007-04-10 511272]
S3 ctaud2k;Creative Audio Driver (WDM); C:\WINDOWS\system32\drivers\ctaud2k.sys [2007-04-10 520488]
S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\WINDOWS\system32\CTAUDFX.DLL [2007-04-12 546048]
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\WINDOWS\system32\drivers\ctdvda2k.sys [2007-04-10 347128]
S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\WINDOWS\system32\CTEAPSFX.DLL [2007-04-12 168192]
S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\WINDOWS\system32\CTEDSPFX.DLL [2007-04-12 280320]
S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\WINDOWS\system32\CTEDSPIO.DLL [2007-04-12 128768]
S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\WINDOWS\system32\CTEDSPSY.DLL [2007-04-12 323328]
S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\WINDOWS\system32\CTERFXFX.DLL [2007-04-12 94976]
S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\WINDOWS\system32\CTEXFIFX.DLL [2007-04-12 1317632]
S3 ctgame;Game Port; C:\WINDOWS\system32\DRIVERS\ctgame.sys [2007-04-10 19112]
S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\WINDOWS\system32\CTHWIUT.DLL [2007-04-12 66816]
S3 ctprxy2k;Creative Proxy Driver; C:\WINDOWS\system32\drivers\ctprxy2k.sys [2007-04-10 14632]
S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\WINDOWS\system32\CTSBLFX.DLL [2007-04-12 560384]
S3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\system32\drivers\ctsfm2k.sys [2007-04-10 157480]
S3 emupia;E-mu Plug-in Architecture Driver; C:\WINDOWS\system32\drivers\emupia2k.sys [2007-04-10 92968]
S3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\WINDOWS\system32\drivers\ha10kx2k.sys [2007-04-10 797992]
S3 hap16v2k;Creative P16V HAL Driver; C:\WINDOWS\system32\drivers\hap16v2k.sys [2007-04-10 163112]
S3 hap17v2k;Creative P17V HAL Driver; C:\WINDOWS\system32\drivers\hap17v2k.sys [2007-04-10 189736]
S3 L8042Kbd;Logitech SetPoint Keyboard Driver; C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys [2008-02-29 20240]
S3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2008-02-29 35344]
S3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2008-02-29 36880]
S3 MHNDRV;MHN driver; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 mxnic;Macronix MX987xx Family Fast Ethernet NT Driver; C:\WINDOWS\system32\DRIVERS\mxnic.sys [2001-08-17 19968]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\drivers\ctoss2k.sys [2007-04-10 126760]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 XDva197;XDva197; \??\C:\WINDOWS\system32\XDva197.sys []
S4 SpyEmrg;Spy Emergency Driver; C:\WINDOWS\System32\Drivers\spyemrg.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-10-10 611664]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-10-01 116040]
R2 avg8emc;AVG8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-10-03 875288]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-10-03 231704]
R2 DiskSuiteService;PC Tools Disk Suite; C:\Program Files\PC Tools Disk Suite\DSService.exe [2008-07-30 464192]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2006-10-09 237568]
R2 ehSched;Media Center Scheduler Service; C:\WINDOWS\eHome\ehSched.exe [2005-08-05 102912]
R2 Fix-It Task Manager;Fix-It Task Manager; C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe [2008-08-26 152832]
R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2003-08-18 303104]
R2 McrdSvc;Media Center Extender Service; C:\WINDOWS\ehome\mcrdsvc.exe [2005-08-05 99328]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-09-17 163908]
R2 ProtectorPlusService;Protector Plus Service (UnRegistered); C:\Protector Plus\PPServ.exe [2008-10-08 78504]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520]
S2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe []
S2 CSIScanner;CSIScanner; C:\Program Files\PrevxCSI\prevxcsi.exe [2008-10-09 876088]
S2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S2 ProtectorPlusAVMonitor;Protector Plus Anti-virus Monitor Service; C:\Protector Plus\PPAVMon.exe [2008-10-08 62120]
S2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 fsssvc;Windows Live Family Safety; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2008-09-04 512536]
S4 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2008-08-29 33752]
S4 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S4 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S4 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]
S4 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe [2008-05-02 121360]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
S4 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S4 PrismXL;PrismXL; C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS [2008-09-24 65536]
S4 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]

-----------------EOF-----------------
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby alwysbtchn » October 13th, 2008, 6:56 pm

here is the log
Logfile of random's system information tool 1.04 (written by random/random)
Run by KaraKristi at 2008-10-13 15:32:57
Microsoft Windows XP Professional Service Pack 3
System drive C: has 45 GB (19%) free of 238 GB
Total RAM: 2046 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:33:19, on 10/13/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Protector Plus\PPServ.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\PC Tools Disk Suite\DSService.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Documents and Settings\KaraKristi\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\KaraKristi.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://safesearch.cyberdefender.com/smallsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.myidentitydefender.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = dynhost.inetcam.com;register.inetcam.com
R3 - URLSearchHook: (no name) - ~BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - (no file)
R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {453F51E8-FEF5-4C54-B136-944BF434360C} - C:\WINDOWS\system32\tuvSIyxU.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {8E9887CE-1786-475B-ADE4-2B1A65487FBA} - C:\WINDOWS\system32\pmnKabCS.dll (file missing)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O2 - BHO: Windows Live Toolbar Beta - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: {fb910702-173e-323a-6024-ebabd5c9033e} - {e3309c5d-babe-4206-a323-e371207019bf} - C:\WINDOWS\system32\dfmksc.dll (file missing)
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: &Windows Live Toolbar Beta - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Protector Plus Taskbar Control] C:\PROTEC~1\PPTbc.EXE
O4 - HKLM\..\Run: [Protector Plus InstaUpdate] C:\PROTEC~1\PPInupdt.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CyberDefender Early Detection Center] "C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe"
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: Bingo Luau by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Dice City Roller by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Lottso by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Scrabble by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Tumble Bees by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: World Class Solitaire by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/St ... b55579.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZB ... b55579.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZP ... b55579.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/So ... b56986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 2034459328
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 2228339109
O16 - DPF: {A5180646-FE0F-4C97-AA29-2A0F41515623} - http://zone.msn.com/bingame/zpagames/ZP ... b61895.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v ... b56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.eu/Register ... lashax.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/St ... b55579.cab
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Object) - https://bellerock.microgaming.com/freeplay/FlashAX2.cab
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://zone.msn.com/bingame/zpagames/ZP ... b64162.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: dfmksc.dll,avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: tuvSIyxU - tuvSIyxU.dll (file missing)
O21 - SSODL: StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Creative Service for CDROM Access - Unknown owner - C:\WINDOWS\system32\CTsvcCDA.exe (file missing)
O23 - Service: CSIScanner - Prevx - C:\Program Files\PrevxCSI\prevxcsi.exe
O23 - Service: PC Tools Disk Suite (DiskSuiteService) - Unknown owner - C:\Program Files\PC Tools Disk Suite\DSService.exe
O23 - Service: Fix-It Task Manager - Avanquest North America, Inc. - C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (UnRegistered) (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe

--
End of file - 11393 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1 Copernic Intra-Daily ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\2 Copernic Daily ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\3 Copernic Weekly ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\4 Copernic Monthly ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At10.job
C:\WINDOWS\tasks\At11.job
C:\WINDOWS\tasks\At12.job
C:\WINDOWS\tasks\At13.job
C:\WINDOWS\tasks\At14.job
C:\WINDOWS\tasks\At15.job
C:\WINDOWS\tasks\At16.job
C:\WINDOWS\tasks\At17.job
C:\WINDOWS\tasks\At18.job
C:\WINDOWS\tasks\At19.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At20.job
C:\WINDOWS\tasks\At21.job
C:\WINDOWS\tasks\At22.job
C:\WINDOWS\tasks\At23.job
C:\WINDOWS\tasks\At24.job
C:\WINDOWS\tasks\At25.job
C:\WINDOWS\tasks\At26.job
C:\WINDOWS\tasks\At27.job
C:\WINDOWS\tasks\At28.job
C:\WINDOWS\tasks\At29.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At30.job
C:\WINDOWS\tasks\At31.job
C:\WINDOWS\tasks\At32.job
C:\WINDOWS\tasks\At33.job
C:\WINDOWS\tasks\At34.job
C:\WINDOWS\tasks\At35.job
C:\WINDOWS\tasks\At36.job
C:\WINDOWS\tasks\At37.job
C:\WINDOWS\tasks\At38.job
C:\WINDOWS\tasks\At39.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\At40.job
C:\WINDOWS\tasks\At41.job
C:\WINDOWS\tasks\At42.job
C:\WINDOWS\tasks\At43.job
C:\WINDOWS\tasks\At44.job
C:\WINDOWS\tasks\At45.job
C:\WINDOWS\tasks\At46.job
C:\WINDOWS\tasks\At47.job
C:\WINDOWS\tasks\At48.job
C:\WINDOWS\tasks\At5.job
C:\WINDOWS\tasks\At6.job
C:\WINDOWS\tasks\At7.job
C:\WINDOWS\tasks\At8.job
C:\WINDOWS\tasks\At9.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-10-01 308832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2008-10-03 455960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{453F51E8-FEF5-4C54-B136-944BF434360C}]
C:\WINDOWS\system32\tuvSIyxU.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E9887CE-1786-475B-ADE4-2B1A65487FBA}]
C:\WINDOWS\system32\pmnKabCS.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-02-22 401968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-10-03 2055960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6}]
MyIdentityDefender - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll [2008-10-13 3822920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Beta - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-09-02 953360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e3309c5d-babe-4206-a323-e371207019bf}]
C:\WINDOWS\system32\dfmksc.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - Copernic Agent - C:\PROGRA~1\COPERN~1\COPERN~1.DLL [2004-12-02 1142744]
{D0943516-5076-4020-A3B5-AEFAF26AB263} - Veoh Browser Plug-in - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll [2008-08-28 352256]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar Beta - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-09-02 953360]
{A057A204-BACC-4D26-9990-79A187E2698E} - AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-10-03 2055960]
{A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - MyIdentityDefender - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll [2008-10-13 3822920]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2008-10-03 1235736]
"Protector Plus Taskbar Control"=C:\PROTEC~1\PPTbc.EXE [2008-10-08 1159848]
"Protector Plus InstaUpdate"=C:\PROTEC~1\PPInupdt.exe [2008-10-08 1159848]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-09-17 13574144]
"CyberDefender Early Detection Center"=C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe [2008-10-13 566600]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-13 169984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\24c37e47]
C:\WINDOWS\system32\wvmpquae.dll []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BM27f04ddb]
C:\WINDOWS\system32\wocthtdu.dll []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper]
C:\WINDOWS\system32\CTHELPER.EXE [2007-04-09 19456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
C:\WINDOWS\system32\CTXFIHLP.EXE [2007-04-09 19968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CyberDefender Early Detection Center]
C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe [2008-10-13 619848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray]
C:\WINDOWS\ehome\ehtray.exe [2005-08-05 64512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer]
C:\WINDOWS\KHALMNPR.EXE [2008-02-29 76304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck]
C:\WINDOWS\system32\dumprep 0 -k []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lexmark X1100 Series]
C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe [2003-08-19 57344]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2008-09-09 3513344]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2008-09-17 13574144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2008-09-17 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OE]
C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Power2GoExpress]
NA []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\prunnet]
C:\DOCUME~1\KARAKR~1\LOCALS~1\Temp\prun.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\readericon]
C:\Program Files\Digital Media Reader\readericon45G.exe [2005-08-27 139264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SetDefaultMIDI]
C:\WINDOWS\system32\MIDIDef.exe [2007-04-09 28672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpyEmergency]
C:\My Backup -- 08-09-21 0105PM\Program Files\NETGATE\Spy Emergency 2008\SpyEmergency.exe [2008-08-25 2030136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartupRepair]
C:\Program Files\StartupRepair\StartupRepair.exe [2006-04-27 192512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2008-09-03 1576176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SVCHOST.EXE]
C:\WINDOWS\system32\drivers\svchost.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-10-01 185872]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UfSeAgnt.exe]
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Veoh]
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe [2008-08-28 3660848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirusScannerPro]
C:\PROGRA~1\AVANQU~1\Fix-It\MemCheck.exe [2008-08-26 173312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\webHancer Agent]
C:\Program Files\webHancer\Programs\whagent.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinColorReminder]
C:\Program Files\Pro Imaging Powertoys\Microsoft Color Control Panel Applet for Windows XP\WinColorReminder.exe [2005-10-31 101120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wllvkizbsndy]
C:\WINDOWS\system32\thdtujwdxvpny.dll EntryPoint []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XoftSpySE]
C:\Program Files\XoftSpySE\xoftspy.exe -s []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^PalTalk.lnk]
C:\PROGRA~1\PALTAL~1\paltalk.exe [2008-09-10 11713536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Service Manager.lnk]
C:\PROGRA~1\MI6841~1\80\Tools\Binn\sqlmangr.exe /n []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"PrismXL"=3
"odserv"=3
"iPod Service"=3
"idsvc"=2
"IDriverT"=3
"getPlus(R) Helper"=3

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="dfmksc.dll,avgrsstx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2008-07-23 352256]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2008-05-02 72208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvSIyxU]
tuvSIyxU.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-13 239616]
StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{453F51E8-FEF5-4C54-B136-944BF434360C}"=C:\WINDOWS\system32\tuvSIyxU.dll []
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
C:\WINDOWS\system32\pmnKabCS

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme
"DisableCAD"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"NoDriveTypeAutoRun"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\WINDOWS\system32\mmc.exe"="C:\WINDOWS\system32\mmc.exe:*:Enabled:MicrosoftManagementConsole"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\WINDOWS\system32\drivers\svchost.exe"="C:\WINDOWS\system32\drivers\svchost.exe:*:Disabled:svchost"
"C:\Program Files\Paltalk Messenger\paltalk.exe"="C:\Program Files\Paltalk Messenger\paltalk.exe:*:Enabled:PaltalkScene"
"C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe"="C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe:*:Disabled:DkAdminService"
"C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKAdmin.exe"="C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKAdmin.exe:*:Disabled:DkAdminUI"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Disabled:Microsoft Office Outlook"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\Program Files\Veoh Networks\Veoh\VeohClient.exe"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe:*:Disabled:Veoh Client"
"C:\My Backup -- 08-09-21 0105PM\Program Files\Veoh Networks\Veoh\VeohClient.exe"="C:\My Backup -- 08-09-21 0105PM\Program Files\Veoh Networks\Veoh\VeohClient.exe:*:Disabled:Veoh Client"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgnsx.exe"="C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Documents and Settings\KaraKristi\Desktop\winks,moods,muggins,weemees and meegos\mcoinstall.exe"="C:\Documents and Settings\KaraKristi\Desktop\winks,moods,muggins,weemees and meegos\mcoinstall.exe:*:Enabled:mcoinstall"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe"="C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe:*:Enabled:CyberDefender Internet Security"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"

======List of files/folders created in the last 1 months======

2008-10-13 15:32:57 ----D---- C:\rsit
2008-10-13 13:01:43 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-10-13 12:57:46 ----A---- C:\WINDOWS\st_affiliate.ini
2008-10-13 12:16:07 ----A---- C:\WINDOWS\av_affiliate.ini
2008-10-13 12:16:05 ----A---- C:\WINDOWS\as_affiliate.ini
2008-10-13 12:13:46 ----D---- C:\Program Files\CyberDefender
2008-10-13 11:44:35 ----A---- C:\WINDOWS\lexstat.ini
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkvs.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkpwr.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKPMNT.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLSNT.EXE
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLCNT.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLCNP.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKIH.EXE
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKCU.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkcomm.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKCFG.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXPPS.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXPING.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXP2P32.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXBCES.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXBCE.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEX2KUSB.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\INSTMON.EXE
2008-10-13 11:43:49 ----A---- C:\WINDOWS\system32\LXBKCUR.DLL
2008-10-13 11:43:49 ----A---- C:\WINDOWS\system32\LEXLMPM.DLL
2008-10-13 11:43:24 ----A---- C:\WINDOWS\system32\wiafbdrv.dll
2008-10-13 11:43:07 ----A---- C:\WINDOWS\system32\LXBKUTIL.DLL
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkscin.dll
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\LXBKGF.DLL
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcoin.ini
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcoin.dll
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcinf.dll
2008-10-13 11:43:05 ----D---- C:\Program Files\Lexmark X1100 Series
2008-10-13 11:43:05 ----A---- C:\WINDOWS\system32\LXBKJSWR.DLL
2008-10-13 11:42:57 ----A---- C:\WINDOWS\uninst.exe
2008-10-13 11:41:01 ----D---- C:\Program Files\Realtek AC97
2008-10-12 19:40:53 ----D---- C:\Program Files\Trend Micro
2008-10-12 18:02:58 ----A---- C:\win32upd.exe
2008-10-12 10:09:42 ----A---- C:\WINDOWS\ntbtlog.txt
2008-10-11 07:10:56 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Ultra Fractal 5
2008-10-11 05:54:45 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-10-11 04:57:00 ----D---- C:\Program Files\Pixarra
2008-10-11 04:20:25 ----A---- C:\WINDOWS\system32\swxcacls.exe
2008-10-11 04:20:24 ----A---- C:\WINDOWS\system32\SrchSTS.exe
2008-10-11 04:20:24 ----A---- C:\WINDOWS\system32\dumphive.exe
2008-10-11 04:20:23 ----A---- C:\WINDOWS\system32\swsc.exe
2008-10-11 04:20:22 ----A---- C:\WINDOWS\system32\swreg.exe
2008-10-11 04:20:21 ----A---- C:\WINDOWS\system32\Process.exe
2008-10-10 16:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$
2008-10-10 16:03:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-10-10 16:03:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-10-10 16:03:05 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-10-10 16:02:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-10-10 16:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-10-10 16:02:23 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-10-10 16:02:09 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-10-10 16:01:58 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-10-10 16:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-10-10 16:01:32 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-10-10 16:01:19 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2008-10-10 15:57:34 ----D---- C:\WINDOWS\system32\scripting
2008-10-10 15:57:33 ----D---- C:\WINDOWS\l2schemas
2008-10-10 15:57:31 ----D---- C:\WINDOWS\system32\en
2008-10-10 15:57:29 ----D---- C:\WINDOWS\system32\bits
2008-10-10 15:50:51 ----D---- C:\WINDOWS\ServicePackFiles
2008-10-10 15:47:22 ----D---- C:\WINDOWS\network diagnostic
2008-10-10 15:41:59 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-10-10 10:15:36 ----D---- C:\Documents and Settings\KaraKristi\Application Data\skypePM
2008-10-10 10:15:00 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Skype
2008-10-10 10:14:40 ----D---- C:\Program Files\Skype
2008-10-10 10:14:39 ----D---- C:\Program Files\Common Files\Skype
2008-10-10 10:14:26 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2008-10-10 08:34:04 ----D---- C:\Program Files\Lavasoft
2008-10-10 08:34:03 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-10-09 22:32:47 ----D---- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-10-09 22:32:18 ----D---- C:\Program Files\SUPERAntiSpyware
2008-10-09 22:32:18 ----D---- C:\Documents and Settings\KaraKristi\Application Data\SUPERAntiSpyware.com
2008-10-09 21:55:10 ----N---- C:\WINDOWS\system32\wlanapi.dll
2008-10-09 21:55:00 ----N---- C:\WINDOWS\system32\tspkg.dll
2008-10-09 21:54:47 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2008-10-09 21:54:46 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slserv.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slrundll.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slgen.dll
2008-10-09 21:54:45 ----N---- C:\WINDOWS\slrundll.exe
2008-10-09 21:54:44 ----N---- C:\WINDOWS\system32\slextspk.dll
2008-10-09 21:54:44 ----N---- C:\WINDOWS\system32\slcoinst.dll
2008-10-09 21:54:40 ----N---- C:\WINDOWS\system32\setupn.exe
2008-10-09 21:54:37 ----N---- C:\WINDOWS\system32\s3gnb.dll
2008-10-09 21:54:33 ----N---- C:\WINDOWS\system32\rasqec.dll
2008-10-09 21:54:32 ----N---- C:\WINDOWS\system32\qutil.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qcliprov.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qagentrt.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qagent.dll
2008-10-09 21:54:24 ----N---- C:\WINDOWS\system32\onex.dll
2008-10-09 21:53:47 ----N---- C:\WINDOWS\system32\napstat.exe
2008-10-09 21:53:47 ----N---- C:\WINDOWS\system32\napmontr.dll
2008-10-09 21:53:46 ----N---- C:\WINDOWS\system32\napipsec.dll
2008-10-09 21:53:45 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2008-10-09 21:53:35 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2008-10-09 21:53:35 ----N---- C:\WINDOWS\system32\mssha.dll
2008-10-09 21:52:46 ----N---- C:\WINDOWS\system32\mmcperf.exe
2008-10-09 21:52:45 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2008-10-09 21:52:45 ----N---- C:\WINDOWS\system32\mmcex.dll
2008-10-09 21:52:44 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2008-10-09 21:52:36 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2008-10-09 21:52:08 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2008-10-09 21:51:59 ----N---- C:\WINDOWS\system32\kmsvc.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdpash.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2008-10-09 21:51:56 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2008-10-09 21:51:08 ----N---- C:\WINDOWS\system32\smtpapi.dll
2008-10-09 21:51:07 ----N---- C:\WINDOWS\system32\rwnh.dll
2008-10-09 21:50:50 ----N---- C:\WINDOWS\system32\comsdupd.exe
2008-10-09 21:50:38 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2008-10-09 21:50:24 ----N---- C:\WINDOWS\system32\faxpatch.exe
2008-10-09 21:50:24 ----A---- C:\WINDOWS\003272_.tmp
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapsvc.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapqec.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eappprxy.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapphost.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eappgnui.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eappcfg.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eapolqec.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3ui.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3svc.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3msm.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2008-10-09 21:50:09 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2008-10-09 21:50:09 ----N---- C:\WINDOWS\system32\dot3api.dll
2008-10-09 21:50:05 ----N---- C:\WINDOWS\system32\dimsroam.dll
2008-10-09 21:50:05 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2008-10-09 21:50:03 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2008-10-09 21:49:52 ----N---- C:\WINDOWS\system32\credssp.dll
2008-10-09 21:49:39 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2008-10-09 21:49:38 ----N---- C:\WINDOWS\system32\azroles.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ati3duag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2008-10-09 21:42:04 ----D---- C:\Program Files\PrevxCSI
2008-10-09 21:41:59 ----D---- C:\Documents and Settings\All Users\Application Data\PrevxCSI
2008-10-08 13:41:53 ----A---- C:\WINDOWS\system32\_PPCXM_.DLL
2008-10-08 13:41:43 ----D---- C:\Protector Plus
2008-10-08 13:41:43 ----A---- C:\WINDOWS\_SETUPD_.EXE
2008-10-08 13:23:49 ----D---- C:\ead2f0f9345be0c185d958
2008-10-08 09:03:44 ----D---- C:\ed0099868e76aeb8189631ef49c4
2008-10-08 08:23:37 ----D---- C:\Program Files\PC Tools Disk Suite
2008-10-08 08:23:37 ----D---- C:\Documents and Settings\All Users\Application Data\PC Tools
2008-10-08 01:57:10 ----D---- C:\Program Files\NOS
2008-10-03 23:35:43 ----D---- C:\WINDOWS\system32\FlashAX2
2008-10-03 22:43:54 ----A---- C:\WINDOWS\system32\GEARAspi.dll
2008-10-03 22:42:48 ----D---- C:\Program Files\iPod
2008-10-03 22:42:45 ----D---- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-10-03 22:42:44 ----D---- C:\Program Files\iTunes
2008-10-03 22:38:28 ----D---- C:\Program Files\QuickTime
2008-10-03 22:38:26 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-10-03 22:36:23 ----D---- C:\Program Files\Apple Software Update
2008-10-03 22:34:06 ----D---- C:\Program Files\Common Files\Apple
2008-10-03 22:34:05 ----D---- C:\Documents and Settings\All Users\Application Data\Apple
2008-10-03 21:30:01 ----SH---- C:\WINDOWS\system32\xlpqcasj.ini
2008-10-03 21:29:55 ----A---- C:\WINDOWS\system32\emljoqwy.dll
2008-10-03 18:57:06 ----HD---- C:\$AVG8.VAULT$
2008-10-03 18:51:28 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2008-10-03 18:51:15 ----D---- C:\Documents and Settings\KaraKristi\Application Data\AVGTOOLBAR
2008-10-03 18:50:56 ----D---- C:\Program Files\AVG
2008-10-03 18:50:56 ----D---- C:\Documents and Settings\All Users\Application Data\avg8
2008-10-03 18:43:50 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Thinstall
2008-10-03 18:32:43 ----D---- C:\Program Files\USB Disk Security
2008-10-03 17:24:22 ----D---- C:\Ww
2008-10-03 17:21:23 ----D---- C:\Program Files\yjfcjyb
2008-10-03 17:21:20 ----D---- C:\Documents and Settings\All Users\Application Data\tclinany
2008-10-03 17:13:10 ----D---- C:\Documents and Settings\All Users\Application Data\POP3Profiles
2008-10-03 17:10:29 ----D---- C:\Program Files\Ubisoft
2008-10-03 16:46:06 ----D---- C:\Program Files\Messenger Plus! Live
2008-10-03 14:17:26 ----A---- C:\WINDOWS\cdplayer.ini
2008-10-02 21:35:38 ----SH---- C:\WINDOWS\system32\eauqpmvw.ini
2008-10-02 08:02:08 ----D---- C:\Documents and Settings\KaraKristi\Application Data\LimeWire
2008-10-01 23:52:00 ----A---- C:\WINDOWS\system32\nvunrm.exe
2008-10-01 23:43:41 ----D---- C:\Program Files\Unibrain
2008-10-01 23:42:52 ----D---- C:\Program Files\Intel Desktop Board
2008-10-01 23:27:21 ----D---- C:\NVIDIA
2008-10-01 23:10:27 ----D---- C:\Program Files\PC Drivers HeadQuarters
2008-10-01 23:10:27 ----D---- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\javaws.exe
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\javaw.exe
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\java.exe
2008-10-01 23:01:04 ----D---- C:\Program Files\Java
2008-10-01 23:00:03 ----D---- C:\Program Files\Common Files\Java
2008-10-01 21:46:34 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink
2008-10-01 21:46:28 ----D---- C:\Documents and Settings\KaraKristi\Application Data\CyberLink
2008-10-01 21:40:36 ----D---- C:\Program Files\Uniblue
2008-10-01 21:40:36 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Uniblue
2008-10-01 21:40:36 ----D---- C:\Documents and Settings\All Users\Application Data\DriverScanner
2008-10-01 21:30:48 ----SH---- C:\WINDOWS\system32\fpbuiaoh.ini
2008-10-01 08:06:46 ----D---- C:\Program Files\Common Files\xing shared
2008-10-01 01:17:21 ----D---- C:\Program Files\Nikopol
2008-10-01 00:50:42 ----D---- C:\Documents and Settings\All Users\Application Data\Trend Micro
2008-09-30 23:26:37 ----D---- C:\Program Files\PowerISO
2008-09-30 23:25:31 ----D---- C:\Document
2008-09-30 22:56:40 ----A---- C:\WINDOWS\system32\XceedCry.dll
2008-09-30 22:56:40 ----A---- C:\WINDOWS\system32\XceedBkp.dll
2008-09-30 22:56:38 ----A---- C:\WINDOWS\system32\VB6STKIT.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MSVCRTD.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MFCO42D.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MFC42D.DLL
2008-09-30 21:41:08 ----D---- C:\Program Files\StartupRepair
2008-09-30 20:28:06 ----SH---- C:\WINDOWS\system32\rrklyafk.ini
2008-09-29 21:55:53 ----D---- C:\Program Files\Windows Live Safety Center
2008-09-29 18:36:28 ----D---- C:\Documents and Settings\KaraKristi\Application Data\IrfanView
2008-09-29 16:00:28 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2008-09-29 15:59:51 ----A---- C:\WINDOWS\system32\pndx5032.dll
2008-09-29 15:59:51 ----A---- C:\WINDOWS\system32\pndx5016.dll
2008-09-29 15:59:30 ----D---- C:\Program Files\Real
2008-09-29 15:59:30 ----D---- C:\Program Files\Common Files\Real
2008-09-29 15:59:07 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Real
2008-09-29 13:05:18 ----SH---- C:\WINDOWS\system32\noensywk.ini
2008-09-29 13:02:16 ----A---- C:\WINDOWS\system32\ocxlvq.dll
2008-09-29 13:02:15 ----A---- C:\WINDOWS\system32\hxhwocpg.dll
2008-09-29 13:00:28 ----A---- C:\WINDOWS\system32\vsneryfl.dll
2008-09-28 18:30:02 ----A---- C:\WINDOWS\system32\10Lpdc2R.exe.a_a
2008-09-28 17:43:53 ----D---- C:\WINDOWS\Sun
2008-09-28 17:43:53 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Sun
2008-09-28 17:39:40 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Apple Computer
2008-09-28 15:16:32 ----D---- C:\Program Files\Belarc
2008-09-28 15:01:59 ----D---- C:\WINDOWS\system32\appmgmt
2008-09-28 14:35:26 ----A---- C:\WINDOWS\system32\XffC0E3M.exe.a_a
2008-09-28 13:37:22 ----D---- C:\Documents and Settings\All Users\Application Data\LogiShrd
2008-09-28 13:37:16 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Logitech
2008-09-28 13:35:47 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$
2008-09-28 13:34:45 ----A---- C:\WINDOWS\system32\BtCoreIf.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemXML.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemWnd.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemUtil.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\kemutb.dll
2008-09-28 13:34:19 ----D---- C:\Documents and Settings\All Users\Application Data\Logitech
2008-09-28 13:34:17 ----D---- C:\Program Files\Common Files\Logishrd
2008-09-28 13:34:09 ----D---- C:\Program Files\Logitech
2008-09-28 13:34:08 ----D---- C:\Documents and Settings\KaraKristi\Application Data\InstallShield
2008-09-28 08:49:04 ----SH---- C:\WINDOWS\system32\lsckuhjl.ini
2008-09-28 08:46:42 ----A---- C:\diffdebug.txt
2008-09-28 08:46:28 ----A---- C:\WINDOWS\system32\2fe0ba39-.txt
2008-09-28 08:45:57 ----ASH---- C:\WINDOWS\system32\SCbaKnmp.ini2
2008-09-28 08:45:57 ----ASH---- C:\WINDOWS\system32\SCbaKnmp.ini
2008-09-28 08:45:15 ----A---- C:\WINDOWS\system32\javaee.dll
2008-09-28 08:33:16 ----SHD---- C:\WINDOWS\S2FyYUtyaXN0aQ
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\zep
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\tcon
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\oib
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\CP6
2008-09-28 08:32:57 ----D---- C:\WINDOWS\system32\EV19
2008-09-28 08:32:57 ----D---- C:\Temp
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\vpdf32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\vchart3235.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\leon3_32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\Dav3_32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\BarVisD.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\APIGUIDE.DLL
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\apigid32.dll
2008-09-28 08:09:32 ----A---- C:\WINDOWS\system32\vpep3235.dll
2008-09-28 08:09:32 ----A---- C:\WINDOWS\system32\dwStg.dll
2008-09-28 08:09:29 ----D---- C:\Program Files\Writer's Blocks 3 Trial
2008-09-28 08:09:28 ----A---- C:\WINDOWS\WB3USER.INI
2008-09-28 07:58:40 ----N---- C:\WINDOWS\pcdlib32.dll
2008-09-28 07:58:30 ----D---- C:\Program Files\Serif
2008-09-27 23:25:07 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Paltalk
2008-09-27 23:25:04 ----D---- C:\WINDOWS\PaltalkScene
2008-09-27 23:25:04 ----D---- C:\Program Files\Paltalk Messenger
2008-09-27 22:07:59 ----A---- C:\WINDOWS\system32\tdssinit.dll
2008-09-27 20:46:33 ----D---- C:\WINDOWS\system32\FlashAX
2008-09-27 20:46:19 ----D---- C:\Documents and Settings\All Users\Application Data\Microgaming
2008-09-27 20:46:19 ----D---- C:\Documents and Settings\All Users\Application Data\MGS
2008-09-27 20:46:16 ----D---- C:\MicroGaming
2008-09-27 08:20:28 ----HDC---- C:\WINDOWS\$NtUninstallKB954708$
2008-09-27 08:18:18 ----D---- C:\Program Files\Microsoft
2008-09-27 08:10:31 ----D---- C:\Program Files\Common Files\Windows Live
2008-09-26 20:19:13 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Spy Emergency
2008-09-26 13:14:41 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Ashampoo
2008-09-26 12:18:05 ----A---- C:\WINDOWS\system32\dbmsqlgc.dll
2008-09-26 12:18:05 ----A---- C:\WINDOWS\system32\dbmsgnet.dll
2008-09-26 12:17:45 ----D---- C:\Program Files\Microsoft SQL Server
2008-09-26 12:16:08 ----D---- C:\Program Files\Ashampoo
2008-09-26 12:14:32 ----D---- C:\Documents and Settings\All Users\Application Data\Diskeeper Corporation
2008-09-26 12:10:21 ----D---- C:\Program Files\Gabest
2008-09-26 12:10:17 ----A---- C:\WINDOWS\system32\avisynth.dll
2008-09-26 12:10:14 ----D---- C:\Program Files\DivXCodec
2008-09-26 12:10:11 ----A---- C:\WINDOWS\system32\DivXc32f.dll
2008-09-26 12:10:11 ----A---- C:\WINDOWS\system32\DivXc32.dll
2008-09-26 12:10:09 ----D---- C:\Program Files\GordianKnot
2008-09-26 12:10:09 ----A---- C:\WINDOWS\system32\HUFFYUV.DLL
2008-09-26 10:18:48 ----D---- C:\Program Files\Pro Imaging Powertoys
2008-09-26 02:33:15 ----D---- C:\Documents and Settings\KaraKristi\Application Data\iWin
2008-09-26 02:29:48 ----D---- C:\Documents and Settings\KaraKristi\Application Data\iWinArcade
2008-09-26 02:29:31 ----D---- C:\Program Files\iWin.com
2008-09-26 02:26:37 ----D---- C:\Documents and Settings\All Users\Application Data\iWin Games
2008-09-25 21:20:40 ----N---- C:\WINDOWS\WB.ini
2008-09-25 08:49:50 ----N---- C:\WINDOWS\system32\wbsys.dll
2008-09-25 08:49:50 ----D---- C:\Program Files\Stardock
2008-09-25 08:14:27 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Windows Search
2008-09-25 01:30:28 ----A---- C:\WINDOWS\system32\jit.dll
2008-09-25 01:30:28 ----A---- C:\WINDOWS\system32\dx3j.dll
2008-09-25 01:30:28 ----A---- C:\WINDOWS\setdebug.exe
2008-09-25 01:30:24 ----A---- C:\WINDOWS\system32\wjview.exe
2008-09-25 01:30:24 ----A---- C:\WINDOWS\system32\vmhelper.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msjdbc10.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msjava.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msawt.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\jview.exe
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\jdbgmgr.exe
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javart.dll
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javaprxy.dll
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javacypt.dll
2008-09-25 01:30:21 ----A---- C:\WINDOWS\system32\clspack.exe
2008-09-25 00:07:23 ----D---- C:\WINDOWS\system32\windows media
2008-09-25 00:01:15 ----A---- C:\WINDOWS\oodcnt.INI
2008-09-24 23:56:48 ----D---- C:\Documents and Settings\All Users\Application Data\Trymedia
2008-09-24 23:54:02 ----A---- C:\Hardware.ini
2008-09-24 23:51:30 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2008-09-24 23:48:12 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2008-09-24 23:45:01 ----A---- C:\WINDOWS\system32\atl71.dll
2008-09-24 23:27:32 ----D---- C:\Program Files\Jasc Software Inc
2008-09-24 23:23:14 ----D---- C:\Program Files\WinAce
2008-09-24 23:21:46 ----D---- C:\Program Files\WinRAR
2008-09-24 23:19:55 ----D---- C:\Program Files\WinZip
2008-09-24 23:19:08 ----D---- C:\Program Files\XP Codec Pack
2008-09-24 23:18:23 ----HDC---- C:\WINDOWS\$NtUninstallKB943729$
2008-09-24 22:48:48 ----D---- C:\Program Files\Windows Desktop Search
2008-09-24 22:48:47 ----HD---- C:\WINDOWS\system32\GroupPolicy
2008-09-24 22:48:33 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4_0$
2008-09-24 22:48:26 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2008-09-24 22:48:23 ----N---- C:\WINDOWS\system32\xmllite.dll
2008-09-24 22:43:12 ----A---- C:\WINDOWS\RtlRack.ini
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\Icam7EXT.dll
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\icam7com.dll
2008-09-24 22:22:20 ----A---- C:\WINDOWS\system32\cttele.dll
2008-09-24 22:22:06 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Creative
2008-09-24 22:18:38 ----A---- C:\WINDOWS\system32\RtlCPAPI.dll
2008-09-24 22:18:38 ----A---- C:\WINDOWS\system32\ChCfg.exe
2008-09-24 22:18:38 ----A---- C:\WINDOWS\soundman.exe
2008-09-24 22:18:37 ----A---- C:\WINDOWS\system32\RTLCPL.exe
2008-09-24 22:18:13 ----D---- C:\Program Files\Realtek Sound Manager
2008-09-24 22:18:13 ----D---- C:\Program Files\AvRack
2008-09-24 22:18:04 ----A---- C:\WINDOWS\alcupd.exe
2008-09-24 22:18:04 ----A---- C:\WINDOWS\Alcrmv.exe
2008-09-24 22:17:14 ----D---- C:\WINDOWS\NV35443540.TMP
2008-09-24 22:14:52 ----D---- C:\cabs
2008-09-24 11:20:12 ----D---- C:\WINDOWS\LastGood(2)
2008-09-24 04:53:53 ----D---- C:\Program Files\IrfanView
2008-09-23 21:13:05 ----D---- C:\WINDOWS\Minidump
2008-09-23 21:10:04 ----HDC---- C:\WINDOWS\$NtUninstallKB920213$
2008-09-23 20:44:17 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2008-09-23 20:42:23 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-09-23 20:40:24 ----SHDC---- C:\Program Files\Common Files\WindowsLiveInstaller
2008-09-23 20:40:20 ----D---- C:\Program Files\Windows Live
2008-09-23 20:40:10 ----D---- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-09-23 03:09:44 ----HDC---- C:\WINDOWS\$NtUninstallKB908250$
2008-09-23 03:08:02 ----D---- C:\Program Files\MSXML 6.0
2008-09-23 03:07:24 ----HDC---- C:\WINDOWS\$NtUninstallKB925720$
2008-09-23 03:06:02 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2008-09-23 03:05:50 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2008-09-23 03:05:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2008-09-23 03:01:03 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2008-09-23 03:00:54 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
2008-09-23 02:55:52 ----D---- C:\Program Files\Veoh Networks
2008-09-23 02:22:12 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Copernic
2008-09-23 02:22:10 ----D---- C:\Program Files\Common Files\Copernic
2008-09-23 02:22:09 ----D---- C:\Program Files\Copernic Agent
2008-09-23 02:22:09 ----A---- C:\WINDOWS\CopernicAgentUninstall.exe
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\muweb.dll
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\mucltui.dll
2008-09-22 23:15:33 ----D---- C:\Documents and Settings\All Users\Application Data\BVRP Software
2008-09-22 23:14:49 ----RSHD---- C:\_Backup.RC
2008-09-22 23:14:47 ----HD---- C:\_Backup
2008-09-22 23:12:53 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Avanquest
2008-09-22 23:12:16 ----D---- C:\Program Files\Avanquest
2008-09-22 23:06:47 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-09-21 21:05:44 ----D---- C:\Program Files\FILE RECOVERY for Windows
2008-09-21 18:13:53 ----HDC---- C:\WINDOWS\$NtUninstallKB938464_0$
2008-09-21 18:12:54 ----A---- C:\WINDOWS\system32\MRT.exe
2008-09-21 18:12:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2008-09-21 18:12:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
2008-09-21 18:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2008-09-21 18:12:23 ----HDC---- C:\WINDOWS\$NtUninstallKB953838_0$
2008-09-21 18:12:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2008-09-21 18:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2008-09-21 18:12:08 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2008-09-21 18:11:56 ----HDC---- C:\WINDOWS\$NtUninstallKB953839$
2008-09-21 18:11:51 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2008-09-21 18:11:45 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2008-09-21 18:11:40 ----HDC---- C:\WINDOWS\$NtUninstallKB951698_0$
2008-09-21 18:11:35 ----HDC---- C:\WINDOWS\$NtUninstallKB953356$
2008-09-21 18:11:32 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2008-09-21 18:11:27 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2008-09-21 18:11:23 ----N---- C:\WINDOWS\system32\spmsg.dll
2008-09-21 18:11:22 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2008-09-21 18:11:13 ----D---- C:\Program Files\Windows Media Connect 2
2008-09-21 18:11:03 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2008-09-21 18:10:35 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2008-09-21 18:10:25 ----D---- C:\42d35e341d9c6b57d4cbcf
2008-09-21 18:10:23 ----D---- C:\WINDOWS\system32\LogFiles
2008-09-21 18:10:19 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2008-09-21 18:10:10 ----D---- C:\1637ce17eb4eae094e41249521b28a
2008-09-21 18:09:56 ----HDC---- C:\WINDOWS\$NtUninstallKB925766$
2008-09-21 18:09:46 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2008-09-21 18:09:34 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2008-09-21 18:09:26 ----HDC---- C:\WINDOWS\$NtUninstallKB950749$
2008-09-21 18:09:16 ----HDC---- C:\WINDOWS\$NtUninstallKB948590$
2008-09-21 18:09:12 ----HDC---- C:\WINDOWS\$NtUninstallKB945553$
2008-09-21 18:09:07 ----HDC---- C:\WINDOWS\$NtUninstallKB941693$
2008-09-21 17:03:17 ----HDC---- C:\WINDOWS\$NtUninstallKB943055$
2008-09-21 17:03:13 ----HDC---- C:\WINDOWS\$NtUninstallKB946026$
2008-09-21 17:03:09 ----HDC---- C:\WINDOWS\$NtUninstallKB943485$
2008-09-21 17:03:06 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-09-21 17:02:55 ----HDC---- C:\WINDOWS\$NtUninstallKB937894$
2008-09-21 17:02:50 ----HDC---- C:\WINDOWS\$NtUninstallKB944653$
2008-09-21 17:02:45 ----HDC---- C:\WINDOWS\$NtUninstallKB943460$
2008-09-21 17:01:31 ----D---- C:\Program Files\MSBuild
2008-09-21 16:58:23 ----D---- C:\WINDOWS\system32\XPSViewer
2008-09-21 16:57:32 ----D---- C:\Program Files\Reference Assemblies
2008-09-21 16:55:55 ----N---- C:\WINDOWS\system32\spmsg2.dll
2008-09-21 16:55:47 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2008-09-21 16:55:43 ----D---- C:\0b939189125f9c3e5ae27f65
2008-09-21 16:55:39 ----HDC---- C:\WINDOWS\$NtUninstallKB933729$
2008-09-21 16:55:32 ----HDC---- C:\WINDOWS\$NtUninstallKB936021$
2008-09-21 16:55:26 ----HDC---- C:\WINDOWS\$NtUninstallKB938127$
2008-09-21 16:55:20 ----HDC---- C:\WINDOWS\$NtUninstallKB938828$
2008-09-21 16:55:11 ----HDC---- C:\WINDOWS\$NtUninstallKB930494$
2008-09-21 16:55:01 ----HDC---- C:\WINDOWS\$NtUninstallKB925398_WMP64$
2008-09-21 16:54:47 ----HDC---- C:\WINDOWS\$NtUninstallKB935839$
2008-09-21 16:54:44 ----HDC---- C:\WINDOWS\$NtUninstallKB935840$
2008-09-21 16:54:39 ----HDC---- C:\WINDOWS\$NtUninstallKB929123$
2008-09-21 16:54:34 ----HDC---- C:\WINDOWS\$NtUninstallKB927891$
2008-09-21 16:54:30 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$
2008-09-21 16:54:25 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$
2008-09-21 16:54:21 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$
2008-09-21 16:54:18 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$
2008-09-21 16:54:14 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$
2008-09-21 16:54:07 ----HDC---- C:\WINDOWS\$NtUninstallKB931784$
2008-09-21 16:54:01 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$
2008-09-21 16:53:54 ----D---- C:\WINDOWS\system32\en-us
2008-09-21 16:53:42 ----HDC---- C:\WINDOWS\$NtUninstallKB925876$
2008-09-21 16:53:37 ----HDC---- C:\WINDOWS\$NtUninstallKB926436$
2008-09-21 16:53:33 ----HDC---- C:\WINDOWS\$NtUninstallKB918118$
2008-09-21 16:53:29 ----HDC---- C:\WINDOWS\$NtUninstallKB927779$
2008-09-21 16:53:25 ----HDC---- C:\WINDOWS\$NtUninstallKB924667$
2008-09-21 16:53:22 ----HDC---- C:\WINDOWS\$NtUninstallKB927802$
2008-09-21 16:53:18 ----HDC---- C:\WINDOWS\$NtUninstallKB928843$
2008-09-21 16:53:12 ----HDC---- C:\WINDOWS\$NtUninstallKB928255$
2008-09-21 16:53:08 ----HDC---- C:\WINDOWS\$NtUninstallKB926255$
2008-09-21 16:53:03 ----HDC---- C:\WINDOWS\$NtUninstallKB923980$
2008-09-21 16:52:59 ----HDC---- C:\WINDOWS\$NtUninstallKB924270$
2008-09-21 16:52:55 ----HDC---- C:\WINDOWS\$NtUninstallKB923191$
2008-09-21 16:52:50 ----HDC---- C:\WINDOWS\$NtUninstallKB924496$
2008-09-21 16:52:46 ----HDC---- C:\WINDOWS\$NtUninstallKB923414$
2008-09-21 16:52:42 ----HDC---- C:\WINDOWS\$NtUninstallKB920872$
2008-09-21 16:52:37 ----HDC---- C:\WINDOWS\$NtUninstallKB920685$
2008-09-21 16:52:32 ----HDC---- C:\WINDOWS\$NtUninstallKB916595$
2008-09-21 16:52:28 ----HDC---- C:\WINDOWS\$NtUninstallKB922582$
2008-09-21 16:52:21 ----HDC---- C:\WINDOWS\$NtUninstallKB920683$
2008-09-21 16:52:17 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$
2008-09-21 16:52:12 ----HDC---- C:\WINDOWS\$NtUninstallKB914388$
2008-09-21 16:52:08 ----HDC---- C:\WINDOWS\$NtUninstallKB904942$
2008-09-21 16:52:04 ----HDC---- C:\WINDOWS\$NtUninstallKB911280$
2008-09-21 16:51:59 ----HDC---- C:\WINDOWS\$NtUninstallKB913580$
2008-09-21 16:51:55 ----HDC---- C:\WINDOWS\$NtUninstallKB918439$
2008-09-21 16:51:51 ----HDC---- C:\WINDOWS\$NtUninstallKB914389$
2008-09-21 16:51:45 ----HDC---- C:\WINDOWS\$NtUninstallKB908531$
2008-09-21 16:51:41 ----HDC---- C:\WINDOWS\$NtUninstallKB900485$
2008-09-21 16:51:30 ----HDC---- C:\WINDOWS\$NtUninstallKB913800$
2008-09-21 16:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2008-09-21 16:51:05 ----HDC---- C:\WINDOWS\$NtUninstallKB912024$
2008-09-21 16:50:59 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$
2008-09-21 16:49:01 ----SHD---- C:\Config.Msi
2008-09-21 16:48:22 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$
2008-09-21 16:48:19 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$
2008-09-21 16:48:13 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2008-09-21 16:48:06 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$
2008-09-21 16:48:01 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$
2008-09-21 16:47:58 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$
2008-09-21 16:47:54 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$
2008-09-21 16:47:45 ----HDC---- C:\WINDOWS\$NtUninstallKB902400$
2008-09-21 16:47:40 ----HDC---- C:\WINDOWS\$NtUninstallKB894391$
2008-09-21 16:47:36 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$
2008-09-21 16:47:33 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$
2008-09-21 16:47:29 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$
2008-09-21 16:47:25 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$
2008-09-21 16:47:21 ----HDC---- C:\WINDOWS\$NtUninstallKB896358$
2008-09-21 16:47:14 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$
2008-09-21 16:47:10 ----HDC---- C:\WINDOWS\$NtUninstallKB901214$
2008-09-21 16:47:04 ----HDC---- C:\WINDOWS\$NtUninstallKB896344$
2008-09-21 16:46:59 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$
2008-09-21 16:46:55 ----HDC---- C:\WINDOWS\$NtUninstallKB885835$
2008-09-21 16:46:52 ----HDC---- C:\WINDOWS\$NtUninstallKB891781$
2008-09-21 16:46:48 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$
2008-09-21 16:46:45 ----HDC---- C:\WINDOWS\$NtUninstallKB885836$
2008-09-21 16:46:41 ----HDC---- C:\WINDOWS\$NtUninstallKB886185$
2008-09-21 16:46:35 ----HDC---- C:\WINDOWS\$NtUninstallKB873339$
2008-09-21 16:32:37 ----N---- C:\WINDOWS\system32\tsgqec.dll
2008-09-21 16:32:37 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2008-09-21 16:32:37 ----A---- C:\WINDOWS\system32\aaclient.dll
2008-09-21 16:28:29 ----N---- C:\WINDOWS\kb913800.exe
2008-09-21 16:22:46 ----A---- C:\WINDOWS\system32\fdco1ins.dll
2008-09-21 16:22:44 ----D---- C:\WINDOWS\NV4562036.TMP
2008-09-21 16:22:43 ----A---- C:\WINDOWS\system32\bdco1ins.dll
2008-09-21 16:22:42 ----A---- C:\WINDOWS\system32\nvusmb.exe
2008-09-21 16:22:25 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2008-09-21 16:19:59 ----D---- C:\Program Files\CyberLink
2008-09-21 16:19:54 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-09-21 16:19:21 ----A---- C:\WINDOWS\system32\msvcr71.dll
2008-09-21 16:19:21 ----A---- C:\WINDOWS\system32\msvcp71.dll
2008-09-21 16:19:10 ----D---- C:\Program Files\Adobe
2008-09-21 16:19:10 ----D---- C:\Documents and Settings\All Users\Application Data\Prism Deploy
2008-09-21 16:19:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2008-09-21 16:19:08 ----HD---- C:\Program Files\InstallShield Installation Information
2008-09-21 16:19:08 ----D---- C:\Program Files\Common Files\New Boundary
2008-09-21 16:19:00 ----D---- C:\Program Files\Digital Media Reader
2008-09-21 16:18:48 ----D---- C:\WINDOWS\Downloaded Installations
2008-09-21 16:18:48 ----D---- C:\Program Files\Common Files\InstallShield
2008-09-21 16:18:41 ----D---- C:\DriversApps
2008-09-21 16:18:18 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Mozilla
2008-09-21 16:11:43 ----SHD---- C:\WINDOWS\ftpcache
2008-09-21 16:08:29 ----D---- C:\SYSPREP
2008-09-21 16:08:22 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Identities
2008-09-21 16:08:22 ----ASH---- C:\Documents and Settings\KaraKristi\Application Data\desktop.ini
2008-09-21 16:08:21 ----SD---- C:\Documents and Settings\KaraKristi\Application Data\Microsoft
2008-09-21 16:07:45 ----D---- C:\Program Files\Mozilla Firefox
2008-09-21 16:05:47 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Opera
2008-09-21 16:05:32 ----D---- C:\Program Files\Opera
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\Iyvu9_32.dll
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\ir50_lcs.dll
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\iacenc.dll
2008-09-21 16:04:48 ----A---- C:\WINDOWS\system32\OLEMSG32.DLL
2008-09-21 16:04:48 ----A---- C:\WINDOWS\system32\GAPI32.DLL
2008-09-21 16:04:39 ----D---- C:\Galleries
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTTWN80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTKRN80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTIMG80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTFIL80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTEFX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFTIF80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFMSP80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFLMB80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFLMA80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFKODAK.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFPX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFPX7.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFAX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFCMP80N.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\SCALE_EN.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\LFCAL80N.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\LFBMP80N.DLL
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\SmtpX.DLL
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\MimeX.dll
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\MabryObj.dll
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\EncodeX.dll
2008-09-21 16:03:39 ----N---- C:\WINDOWS\h263test.ini
2008-09-21 16:03:11 ----D---- C:\Program Files\Common Files\Intel Shared
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLPX.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLP6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLP5.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLM6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLM5.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLA6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPL.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\ijl15.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\Cpuinf32.dll
2008-09-21 16:02:14 ----D---- C:\Program Files\Web Publish
2008-09-21 16:02:11 ----A---- C:\WINDOWS\system32\LMRTREND.dll
2008-09-21 16:02:10 ----A---- C:\WINDOWS\system32\dxtmsft3.dll
2008-09-21 16:02:08 ----A---- C:\WINDOWS\system32\unam4ie.exe
2008-09-21 16:02:05 ----A---- C:\WINDOWS\system32\vidx16.dll
2008-09-21 16:02:05 ----A---- C:\WINDOWS\system32\qcut.dll
2008-09-21 16:01:56 ----D---- C:\Program Files\Intel
2008-09-21 16:01:55 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Help
2008-09-21 15:52:31 ----SHD---- C:\RECYCLER
2008-09-21 15:51:46 ----D---- C:\Program Files\Microsoft Works
2008-09-21 15:51:33 ----D---- C:\Program Files\Microsoft Visual Studio
2008-09-21 15:51:33 ----D---- C:\Program Files\Common Files\DESIGNER
2008-09-21 15:50:58 ----D---- C:\Program Files\Microsoft.NET
2008-09-21 15:50:14 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-09-21 15:47:17 ----A---- C:\WINDOWS\system32\hccoin.dll
2008-09-21 15:46:40 ----D---- C:\WINDOWS\SHELLNEW
2008-09-21 15:46:13 ----D---- C:\Program Files\Microsoft Office
2008-09-21 15:46:13 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-09-21 15:45:34 ----RHD---- C:\MSOCache
2008-09-21 15:45:20 ----SHD---- C:\System Volume Information
2008-09-21 15:42:09 ----D---- C:\WINDOWS\nview
2008-09-21 15:42:09 ----D---- C:\WINDOWS\NV40164012.TMP
2008-09-21 15:42:09 ----A---- C:\WINDOWS\system32\nvudisp.exe
2008-09-21 15:40:03 ----D---- C:\WINDOWS\Profiles
2008-09-21 15:40:02 ----D---- C:\Documents and Settings\KaraKristi\Application Data\InterTrust
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\MFCUIA32.DLL
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\MFCANS32.DLL
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\INETWH32.DLL
2008-09-21 15:38:10 ----A---- C:\WINDOWS\system32\ksuser.dll
2008-09-21 15:38:01 ----D---- C:\WINDOWS\system32\Data
2008-09-21 15:34:35 ----A---- C:\WINDOWS\SBWIN.INI
2008-09-21 15:33:45 ----D---- C:\Program Files\Creative
2008-09-21 15:27:31 ----D---- C:\WINDOWS\system32\PreInstall
2008-09-21 15:27:29 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-09-21 15:27:07 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2008-09-21 15:19:00 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Macromedia
2008-09-21 15:18:19 ----D---- C:\Program Files\Common Files\Adobe
2008-09-21 15:12:13 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Adobe
2008-09-21 15:11:27 ----D---- C:\WINDOWS\system32\Adobe
2008-09-21 15:11:08 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2008-09-21 15:04:54 ----D---- C:\WINDOWS\pss
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wups2.dll
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2008-09-21 15:03:28 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-09-21 15:03:28 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2008-09-21 13:25:02 ----A---- C:\WINDOWS\system32\wowfaxui.dll
2008-09-21 13:24:59 ----A---- C:\WINDOWS\system32\wowfax.dll
2008-09-21 13:24:52 ----A---- C:\WINDOWS\system32\usrvpa.dll
2008-09-21 13:24:49 ----A---- C:\WINDOWS\system32\usrvoica.dll
2008-09-21 13:24:46 ----A---- C:\WINDOWS\system32\usrv80a.dll
2008-09-21 13:24:42 ----A---- C:\WINDOWS\system32\usrv42a.dll
2008-09-21 13:24:39 ----A---- C:\WINDOWS\system32\usrsvpia.dll
2008-09-21 13:24:36 ----A---- C:\WINDOWS\system32\usrshuta.exe
2008-09-21 13:24:33 ----A---- C:\WINDOWS\system32\usrsdpia.dll
2008-09-21 13:24:29 ----A---- C:\WINDOWS\system32\usrrtosa.dll
2008-09-21 13:24:26 ----A---- C:\WINDOWS\system32\usrprbda.exe
2008-09-21 13:24:23 ----A---- C:\WINDOWS\system32\usrmlnka.exe
2008-09-21 13:24:20 ----A---- C:\WINDOWS\system32\usrlbva.dll
2008-09-21 13:24:16 ----A---- C:\WINDOWS\system32\usrfaxa.dll
2008-09-21 13:24:13 ----A---- C:\WINDOWS\system32\usrdtea.dll
2008-09-21 13:24:10 ----A---- C:\WINDOWS\system32\usrdpa.dll
2008-09-21 13:24:07 ----A---- C:\WINDOWS\system32\usrcoina.dll
2008-09-21 13:24:03 ----A---- C:\WINDOWS\system32\usrcntra.dll
2008-09-21 13:24:03 ----A---- C:\WINDOWS\system32\usbui.dll
2008-09-21 13:23:59 ----A---- C:\WINDOWS\system32\tsbyuv.dll
2008-09-21 13:23:56 ----A---- C:\WINDOWS\system32\streamci.dll
2008-09-21 13:23:56 ----A---- C:\WINDOWS\system32\storprop.dll
2008-09-21 13:23:53 ----A---- C:\WINDOWS\system32\sprio800.dll
2008-09-21 13:23:50 ----A---- C:\WINDOWS\system32\sprio600.dll
2008-09-21 13:23:45 ----A---- C:\WINDOWS\system32\spnike.dll
2008-09-21 13:23:42 ----A---- C:\WINDOWS\system32\pjlmon.dll
2008-09-21 13:23:42 ----A---- C:\WINDOWS\system32\pid.dll
2008-09-21 13:23:39 ----A---- C:\WINDOWS\system32\paqsp.dll
2008-09-21 13:23:35 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2008-09-21 13:23:35 ----A---- C:\WINDOWS\system32\ntkrnlpa.exe
2008-09-21 13:23:31 ----A---- C:\WINDOWS\system32\msyuv.dll
2008-09-21 13:23:25 ----A---- C:\WINDOWS\system32\mdwmdmsp.dll
2008-09-21 13:23:23 ----A---- C:\WINDOWS\system32\iyuv_32.dll
2008-09-21 13:23:22 ----A---- C:\WINDOWS\system32\hid.dll
2008-09-21 13:23:20 ----A---- C:\WINDOWS\system32\dvdplay.exe
2008-09-21 13:22:30 ----A---- C:\WINDOWS\system32\dmutil.dll
2008-09-21 13:22:28 ----A---- C:\WINDOWS\system32\cnbjmon.dll
2008-09-21 13:21:42 ----A---- C:\WINDOWS\system32\zipfldr.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpob2res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xolehlp.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xmlprov.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xenroll.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xcopy.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xactsrv.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuweb.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wups.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wupdmgr.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wucltui.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauserv.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuaueng.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauclt.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuapi.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wtsapi32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wstdecod.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsock32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsnmp32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshtcpip.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshrm.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshnetbs.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshisn.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wship6.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshext.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshcon.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshbth.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshatm.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsecedit.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscsvc.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscript.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscntfy.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\ws2help.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\ws2_32.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\write.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wpnpinst.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wpabaln.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wowexec.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wowdeb.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wow32.dll
2008-09-21 13:21:37 ----A---- C:\WINDOWS\system32\wmstream.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmsdmoe.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpui.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpsrcwp.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpshell.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmploc.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpencen.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpcore.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpcd.dll
2008-09-21 13:21:34 ----A---- C:\WINDOWS\system32\wmpasf.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmiscmgr.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmiprop.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmi.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmerror.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmerrenu.dll
2008-09-21 13:21:31 ----N---- C:\WINDOWS\system32\_000010_.tmp.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wlnotify.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wldap32.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wkssvc.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winver.exe
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wintrust.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winstrm.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsta.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsrv.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winspool.exe
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsock.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winshfhc.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winscard.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winrnr.dll
2008-09-21 13:21:30 ----A---- C:\WINDOWS\system32\winntbbu.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\winhlp32.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\winhelp.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winnls.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmsd.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmm.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmine.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winlogon.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winipsec.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\wininet.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winhttp.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winhlp32.exe
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winfax.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winchat.exe
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winbrand.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\win87em.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\win32spl.dll
2008-09-21 13:21:27 ----N---- C:\WINDOWS\system32\_000012_.tmp.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\win.com
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wifeman.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiavusd.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiavideo.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiashext.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaservc.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaservc(2).dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiascr.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiadss.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiadefui.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wextract.exe
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\webvw.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\webhits.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webclnt.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webclnt(3).dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webcheck.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\wdigest.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\wdigest(3).dll
2008-09-21 13:21:24 ----A---- C:\WINDOWS\system32\wavemsp.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\vmmreg32.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w3ssl.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32topl.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32tm.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32time.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vwipxspx.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vwipxspx.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssvc.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssapi.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssadmin.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vss_ps.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vjoy.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga64k.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga256.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vfpodbc.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\version.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\verifier.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\verifier.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\ver.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vdmredir.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vdmdbg.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vcdex.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vbscript.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vbajet32.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\uxtheme.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\utilman.exe
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\utildll.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\usp10.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\userinit.exe
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\userenv.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\user32.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\user.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\usbmon.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\urlmon.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\url.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\ureg.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\ups.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnpui.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnphost.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnpcont.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnp.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twunk_32.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twunk_16.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twain_32.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twain.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\untfs.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\unlodctr.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\uniplat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\unimdmat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umpnpmgr(3).dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umdmxfrm.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umandlg.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\ulib.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\ufat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\udhisapi.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\typeperf.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\typelib.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\txflog.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\txflog(3).dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\twext.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tslabels.ini
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tskill.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsddd.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsd32.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscon.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsappcmp.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\trkwks.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tree.com
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\traffic.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracert6.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracert.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracerpt.exe
2008-09-21 13:21:18 ----A---- C:\WINDOWS\system32\tourstart.exe
2008-09-21 13:21:18 ----A---- C:\WINDOWS\system32\toolhelp.dll
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsvrp.dll
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsvr.exe
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsess.exe
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntadmn.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\themeui.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tftp.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\termmgr.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\telnet.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpsvcs.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmonui.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmon.ini
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmon.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmib.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\TASKMAN.EXE
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tcmsetup.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskmgr.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskman.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tasklist.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskkill.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapiui.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapisrv.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapisrv(3).dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapiperf.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi32.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi3.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\t2embed.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\systray.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\systeminfo.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syssetup.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysocmgr.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syskey.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysinv.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysedit.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syncui.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\synceng.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syncapp.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sxs.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sxs(3).dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\swprv.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\svcpack.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\svchost.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\subst.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\strmfilt.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\strmdll.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\storage.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stobject.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stimon.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sti_ci.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sti.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stclient.dll
2008-09-21 13:21:12 ----N---- C:\WINDOWS\system32\_000003_.tmp.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srvsvc.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srsvc.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srrstr.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srclient.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlwoa.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlwid.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlunirl.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\spxcoins.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sprestrt.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolsv.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolsv(2).exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolss.dll
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spnpinst.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spiisupd.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spider.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sort.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sol.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\softpub.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\snmpsnap.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\snmpapi.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sndvol32.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sndrec32.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smss.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smlogsvc.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smlogcfg.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smbinst.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbrccsp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbiop.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbcsp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slayerxp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\skeys.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\skdll.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sisbkup.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sigverif.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sigtab.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shutdown.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shsvcs.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shsvcs(3).dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shscrap.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shrpubw.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shmgrate.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shmedia.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shlwapi.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shimgvw.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shimeng.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shgina.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shfolder.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(5).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(4).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(3).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shdocvw.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shdoclc.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\share.exe
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shadow.exe
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\sfmapi.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfcfiles.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc_os.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setver.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setupdll.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setupapi.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setup.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sethc.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sessmgr.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\serwvdrv.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\services.msc
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\services.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\servdeps.dll
2008-09-21 13:21:02 ----N---- C:\WINDOWS\system32\_000006_.tmp.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\serialui.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\senscfg.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sensapi.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sens.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sendmail.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sendcmsg.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\security.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secur32.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secpol.msc
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\seclogon.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secedit.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdpblb.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdhcinst.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdbinst.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scrrun.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scrobj.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scriptpw.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scredir.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sclgntfy.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schtasks.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schedsvc.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schannel.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scesrv.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scecli.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sccsccp.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sccbase.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scardsvr.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scardssp.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scarddlg.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\sc.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\sbeio.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\savedump.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\samsrv.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\samlib.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrslv.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrdm.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rwinsta.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\runonce.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rundll32.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\runas.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtutils.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtm.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtipxmib.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtcshare.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpsp.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpperf.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpmsg.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvp.ini
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvp.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsopprov.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsop.msc
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsnotify.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmui.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmsink.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmps.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsm.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rshx32.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsh.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsfsaps.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsaenh.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss(4).dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss(3).dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcns4.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\routetab.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\routemon.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\route.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rnr20.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched32.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched20.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched20(2).dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rexec.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\resutils.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\reset.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\replace.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rend.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\remotepg.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\relog.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regwizc.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regwiz.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regsvr32.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regsvc.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regini.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regedt32.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regapi.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\reg.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\redir.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\recover.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdshost.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpdd.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpclip.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdchost.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcp.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcimlby.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcbdyctl.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\regedit.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rastls.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rastapi.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasser.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rassapi.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasrad.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasppp.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasphone.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmxs.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmontr.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmans.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmans(3).dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasman.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasdlg.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasdial.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasctrs.ini
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasctrs.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\raschap.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasautou.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasauto.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasapi32.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasadhlp.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasadhlp(3).dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\racpldlg.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\qwinsta.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\query.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qprocess.exe
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qosname.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qmgr.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qedwipes.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qedit.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qdv.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qcap.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qappsrv.exe
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pubprn.vbs
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pstorsvc.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pstorec.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psnppagn.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pschdprf.ini
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pschdprf.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psbase.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psapi.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\proxycfg.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\proquota.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\progman.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\profmap.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prodspec.ini
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnqctl.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnport.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnmngr.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnjobs.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prndrvr.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prncnfg.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\printui.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\print.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prflbmsg.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\powrprof.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\powercfg.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\polstore.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pmspl.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\plustab.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\ping6.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\ping.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pifmgr.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pidgen.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\photowiz.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfwci.ini
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfts.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfproc.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfos.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfnw.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfnet.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfmon.msc
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfmon.exe
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perffilt.ini
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfdisk.dll
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfctrs.dll
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfci.ini
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\pentnt.exe
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\pdh.dll
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\pautoenr.dll
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\pathping.exe
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\panmap.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\pagefileconfig.vbs
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\packager.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2psvc.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pgraph.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pgasvc.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2p.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osuninst.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osuninst.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osk.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\openfiles.exe
2008-09-21 13:20:45 ----N---- C:\WINDOWS\system32\_000008_.tmp.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\opengl32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olethk32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olesvr32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olesvr.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olepro32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleprn.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oledlg.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecnv32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32(4).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32(3).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleaut32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleaccrc.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleacc.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32(4).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32(3).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2nls.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2disp.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\offfilt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odtext32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odpdx32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odfox32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odexl32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\oddbse32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbctrac.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcp32r.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcjt32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcji32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcint.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccu32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccr32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccp32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcconf.exe
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcconf.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcbcp.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcad32.exe
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc32gt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc16gt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\ocmanage.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\occache.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\objsel.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\oakley.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwwks.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwscript.exe
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwprovau.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwevent.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwcfg.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwapi32.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwapi16.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nw16.exe
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntvdmd.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntvdm.exe
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntshrui.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntsdexts.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntsd.exe
2008-09-21 13:20:37 ----A---- C:\WINDOWS\system32\ntprint.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmssvc.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsoprq.msc
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsmgr.msc
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsmgr.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsevt.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsdba.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsapi.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmarta.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlsapi.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanui2.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanui.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanman.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdsbcli.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdsapi.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdll.dll
2008-09-21 13:20:34 ----A---- C:\WINDOWS\system32\ntbackup.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nslookup.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\npptools.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\notepad.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nlsfunc.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\notepad.exe
2008-09-21 13:20:32 ----A---- C:\WINDOWS\system32\nlhtml.dll
2008-09-21 13:20:32 ----A---- C:\WINDOWS\system32\newdev.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui2.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui1.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui0.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netstat.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netsh.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netsetup.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netrap.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netplwiz.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netmsg.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netman.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netman(3).dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netlogon.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netid.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\neth.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netevent.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netdde.exe
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netcfgx.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi32.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi32(3).dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\net1.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\net.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddenb32.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddeapir.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddeapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\ncxpnt.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nbtstat.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\narrhook.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\narrator.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\mydocs.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\mycomput.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxoci.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxex.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxdm.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu(4).dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu(3).dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxmlr.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml3r.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml3.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml2r.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml2.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxbde40.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mswstr10.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mswsock.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\mswebdvd.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\mswdat10.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msw3prt.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvideo.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvidc32.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvfw32.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt40.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt20.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcp60.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcp50.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcirt.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msvbvm60.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msvbvm50.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msv1_0.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msutb.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstscax.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstsc.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstlsapi.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstinit.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstime.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstext40.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstask.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msswchx.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msswch.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssip32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssign32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssap.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrle32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrepl40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrecr40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrd3x40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrd2x40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrclr40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrating.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msratelc.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msr2cenu.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msr2c.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msprivs.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msports.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspbde40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspatcha.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspaint.exe
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msorcl32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msorc32r.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msoert2.dll
2008-09-21 13:20:23 ----A---- C:\WINDOWS\system32\msoeacct.dll
2008-09-21 13:20:23 ----A---- C:\WINDOWS\system32\msobjs.dll
2008-09-21 13:20:22 ----A---- C:\WINDOWS\system32\msnsspc.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msltus40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msls31.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\mslbui.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjtes40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjter40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjint40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjetoledb40.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msjet40.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msisip.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimtf.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimsg.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimg32.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msihnd.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msiexec.exe
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msieftp.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msidntld.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msidle.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msident.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msi.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\mshtmler.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\mshtmled.dll
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshtml.dll
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshta.exe
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshearts.exe
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\msgsvc.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msgina.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msg.exe
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msftedit.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msexcl40.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msexch40.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msencode.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msdxmlc.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtctm.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtclog.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtc.exe
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdmo.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdart.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdadiag.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msctfp.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msctf.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscpxl32.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscpx32r.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msconf.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscms.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscdexnt.exe
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscat32.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msaudite.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msasn1.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msapsspc.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msafd.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\msdfmap.ini
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msacm32.dll
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msacm.dll
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msaatext.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mrinfo.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqutil.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqupgrd.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqtrig.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqtgsvc.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsvc.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsnap.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsec.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqrtdep.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqrt.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqqm.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqperf.ini
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqperf.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqoa.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqise.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqgentr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqdscli.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqcertui.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqbkup.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqad.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprui.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprmsg.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprdim.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprddm.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprapi.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mpr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mpnotify.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mplay32.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\MPG4DMOD.dll
2008-09-21 13:20:09 ----A---- C:\WINDOWS\system32\MP4SDMOD.dll
2008-09-21 13:20:09 ----A---- C:\WINDOWS\system32\MP43DMOD.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mountvol.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\moricons.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\more.com
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\modex.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\modemui.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mode.com
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mobsync.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mobsync.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mnmdd.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mmutilse.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mmsystem.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmfutil.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmdrv.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcshext.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcbase.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmc.exe
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_qic.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_mtf.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_hp.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mlang.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mimefilt.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\migpwd.exe
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\miglibnt.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\midimap.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\mgmtapi.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\mfcsubs.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc42u.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc42.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc40u.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc40.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mf3216.dll
2008-09-21 13:20:04 ----A---- C:\WINDOWS\system32\mem.exe
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mdminst.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mdhcp.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciwave.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciseq.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciqtz32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciole32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciole16.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcicda.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciavi32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mchgrcoi.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcdsrv32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcd32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcastmib.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mapistub.dll
2008-09-21 13:20:02 ----N---- C:\WINDOWS\system32\_000013_.tmp.dll
2008-09-21 13:20:02 ----N---- C:\WINDOWS\system32\_000007_.tmp.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\makecab.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\magnify.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\mag_hook.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lzexpand.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lz32.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lusrmgr.msc
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lsass.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lsasrv.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lprmonui.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lprhelp.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lpr.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lpq.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lpk.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logonui.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logoff.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logman.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\login.cmd
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loghours.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lodctr.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\locator.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localui.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localspl.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localsec.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loadperf.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loadfix.com
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lnkstub.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lmrt.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lmhsvc.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\linkinfo.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\linkinfo(2).dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lights.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licwmi.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licmgr10.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licdll.dll
2008-09-21 13:20:00 ----A---- C:\WINDOWS\system32\langwrbk.dll
2008-09-21 13:19:20 ----N---- C:\WINDOWS\system32\_000011_.tmp.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\label.exe
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\krnl386.exe
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\keymgr.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kernel32.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kerberos.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kerberos(3).dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kdcom.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kd1394.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdycl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdycc.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbduzb.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusx.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusr.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdus.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdur.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdukx.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbduk.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtuq.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtuf.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtat.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsw.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsp.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsg.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsf.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdru1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdru.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdro.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpo.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdno1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdno.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdnec.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdne.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmon.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmaori.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmac.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlv1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlv.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlt1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlt.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdla.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdkyr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdkaz.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdit142.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdit.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdir.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinmal.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinben.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinbe1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdic.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhu.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhept.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhela3.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhela2.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe319.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe220.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgr1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgkl.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgae.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfo.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfi1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfi.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfc.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdest.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdes.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbddv.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdda.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz2.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcan.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdca.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbu.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdblr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbene.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbe.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdazel.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdaze.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kb16.com
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jsproxy.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jscript.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jobexec.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgsh400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgsd400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgpl400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgmd400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgdw400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgaw400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jet500.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\ixsso.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\iuengine.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\itss.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\itircl.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\isign32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\irclass.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_qcx.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_qc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir41_qcx.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir41_qc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir32_32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxwan.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxsap.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxrtmgr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxroute.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxrip.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxpromn.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxmontr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipv6mon.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipv6.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsecsvc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsec6.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprtprio.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprop.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ippromon.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipmontr.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iphlpapi.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iphlpapi(3).dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipconfig.exe
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iologmsg.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\inseng.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\input.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\initpki.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\infosoft.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetres.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetppui.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetpp.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetmib1.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcplc.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcomm.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcfg.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imm32.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imgutil.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imeshare.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imapi.exe
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imagehlp.dll
2008-09-21 13:19:15 ----A---- C:\WINDOWS\system32\ils.dll
2008-09-21 13:19:15 ----A---- C:\WINDOWS\system32\iissuba.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\igmpagnt.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ifsutil.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ifmon.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iexpress.exe
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iesetup.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iernonce.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iepeers.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieencode.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieakui.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieaksie.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieakeng.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\idq.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\icwphbk.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\icwdial.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icmui.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icmp.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icm32.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iccvid.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icaapi.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassvcs.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassdo.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassam.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasrecst.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasrad.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iaspolcy.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasnap.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iashlpr.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasads.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasacct.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\hypertrm.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\htui.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\httpapi.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\hticons.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hotplug.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hostname.exe
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetwiz.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetmon.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hlink.dll
2008-09-21 13:19:11 ----A---- C:\WINDOWS\system32\hhsetup.dll
2008-09-21 13:19:11 ----A---- C:\WINDOWS\hh.exe
2008-09-21 13:19:10 ----A---- C:\WINDOWS\system32\help.exe
2008-09-21 13:19:10 ----A---- C:\WINDOWS\system32\h323msp.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\grpconv.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\graphics.com
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\graftabl.com
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpupdate.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gptext.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpresult.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpkrsrc.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpkcsp.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpedit.msc
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpedit.dll
2008-09-21 13:19:08 ----A---- C:\WINDOWS\system32\glu32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\glmf32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\getuname.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\getmac.exe
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gdi32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gdi.exe
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gcdef.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fwcfg.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\ftsrch.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\ftp.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsutil.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsusd.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsquirt.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsmgmt.msc
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\freecell.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\framebuf.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\format.com
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\forcedos.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontview.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontsub.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontext.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fmifs.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fltmc.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fltlib.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fldrclnr.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fixmapi.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\finger.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\findstr.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\find.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\filemgmt.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\feclient.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fdeploy.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fde.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fc.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\faultrep.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fastopen.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\exts.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\extrac32.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\extmgr.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\expsrv.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\expand.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\exe2bin.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\eventtriggers.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\eventquery.vbs
2008-09-21 13:19:04 ----A---- C:\WINDOWS\explorer.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventvwr.msc
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventvwr.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventlog.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventcreate.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventcls.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eudcedit.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentutl.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentprf.ini
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentprf.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent97.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent(3).dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\es.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\ersvc.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\encapi.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\els.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\efsadu.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\edlin.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\edit.com
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxtrans.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxmasf.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxdiag.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dx8vb.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dx7vb.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dwwin.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\duser.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dumprep.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dswave.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsuiext.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dssenh.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dssec.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsquery.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsprpres.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsprop.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsound3d.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsound.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dskquoui.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dskquota.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsdmo.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsauth.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\ds32gt.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\ds16gt.dLL
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\drwtsn32.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\drwatson.exe
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drprov.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drmstor.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drmclien.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\driverquery.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpwsockx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpwsock.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvvox.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvoice.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvacm.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpserial.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnwsock.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnmodem.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnet.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpmodemx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplayx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplay.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpcdll.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dosx.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\doskey.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\docprop2.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\docprop.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dnsapi.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmusic.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmsynth.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmstyle.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmserver.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmscript.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmremote.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmocx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmloader.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmintf.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmime.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdskres.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdlgs.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmconfig.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmcompos.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmband.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmadmin.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dllhst3g.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dllhost.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dispex.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskperf.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskpart.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskmgmt.msc
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcopy.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcopy.com
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcomp.com
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dinput8.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dinput.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dimap.dll
2008-09-21 13:18:35 ----N---- C:\WINDOWS\system32\_000009_.tmp.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\digest.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\diantz.exe
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\diactfrm.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpmon.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgsetup.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgnet.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dfsshlex.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dfrgui.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgres.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrg.msc
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devmgr.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devmgmt.msc
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devenum.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskperf.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskmon.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskadp.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\defrag.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\debug.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddrawex.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddraw.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddeshare.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddeml.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dciman32.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbnetlib.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbghelp.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\dbgeng.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\davclnt.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\datime.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\dataclen.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\danim.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dxof.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3drm.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dramp.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dpmesh.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dim700.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dim.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3d9.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2008-09-21 13:18:32 ----A---- C:\WINDOWS\system32\d3d8.dll
2008-09-21 13:18:31 ----RA---- C:\WINDOWS\system32\ctl3dv2.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\ctl3d32.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\ctfmon.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csseqchk.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csrss.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csrsrv.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscui.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscript.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptui.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptsvc.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptnet.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptext.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptdlg.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\crypt32.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\crtdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\credui.dll
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\corpol.dll
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\convert.exe
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\control.exe
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\console.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\conime.exe
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\confmsp.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comuid.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comsvcs.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comsnap.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comres.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comrepl.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\compstui.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\compobj.dll
2008-09-21 13:18:28 ----A---- C:\WINDOWS\system32\compmgmt.msc
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\compatui.dll
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\compact.exe
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\comp.exe
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\commdlg.dll
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\command.com
2008-09-21 13:18:24 ----N---- C:\WINDOWS\system32\_000005_.tmp.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comdlg32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comctl32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comcat.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comaddin.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\colbact.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\colbact(3).dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cnvfat.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cnetcfg.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmutil.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmstp.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmsetacl.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmprops.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmpbk32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmmon32.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmdl32.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmdial32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmd.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmcfg32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clusapi.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clipsrv.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clipbrd.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\shellstyle.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cliconfg.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cliconfg.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatq.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatq(3).dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatex.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clb.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ckcnv.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cisvc.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cipher.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciodm.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cidaemon.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cic.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciadv.msc
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciadmin.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chkntfs.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chkdsk.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chcp.com
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\charmap.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\certmgr.msc
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\certmgr.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\certcli.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdosys.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdmodem.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdm.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdfview.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\ccfgnt.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvut.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvut(3).dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvps.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrv.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrv(3).dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cards.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\capesnpn.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\camocx.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\calc.exe
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cacls.exe
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cabview.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cabinet.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\btpanui.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\bthserv.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bthci.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browsewm.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browseui.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browser.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browselc.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootvrfy.exe
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootvid.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootok.exe
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootcfg.exe
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\blastcln.exe
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bidispl.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\batt.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\batmeter.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\basesrv.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avwav.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avtapi.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avmeter.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avifile.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avifil32.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avicap32.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avicap.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autolfn.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autofmt.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autodisc.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autoconv.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autochk.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\authz.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\authz(3).dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\auditusr.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\audiodev.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\attrib.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atrace.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmpvcno.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmlib.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atmadm.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atl.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atkctrs.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\at.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asycfilt.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_pfu.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_ldm.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_fmt.exe
2008-09-21 13:18:15 ----A---- C:\WINDOWS\system32\asferror.dll
2008-09-21 13:18:14 ----A---- C:\WINDOWS\system32\arp.exe
2008-09-21 13:18:13 ----D---- C:\WINDOWS\SMINST
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\appmgr.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\appmgmts.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\apphelp.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\append.exe
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\apcups.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\amstream.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\alrsvc.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\alg.exe
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\ahui.exe
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\advpack.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\advapi32.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnw.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnt.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnds.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsmsext.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsldpc.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsldp.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adptif.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\admparse.dll
2008-09-21 13:18:11 ----D---- C:\WINDOWS\I386
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\actxprxy.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\actmovie.exe
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\activeds.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\aclui.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\acledit.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\accwiz.exe
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\acctres.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\aaaamon.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\6to4svc.dll
2008-09-21 13:05:54 ----D---- C:\My Backup -- 08-09-21 0105PM
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nwiz.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwimg.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwdmcpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvshell.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccsrs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nview.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvdspsch.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcuda.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcplui.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcolor.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvappbar.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\keystone.exe

======List of files/folders modified in the last 1 months======

2008-10-13 15:33:18 ----D---- C:\WINDOWS\Temp
2008-10-13 15:09:47 ----RSH---- C:\boot.ini
2008-10-13 15:09:47 ----A---- C:\WINDOWS\win.ini
2008-10-13 15:09:47 ----A---- C:\WINDOWS\system.ini
2008-10-13 15:08:31 ----D---- C:\WINDOWS\Registration
2008-10-13 15:04:47 ----D---- C:\WINDOWS
2008-10-13 13:01:44 ----SHD---- C:\WINDOWS\Installer
2008-10-13 13:01:43 ----RD---- C:\Program Files
2008-10-13 12:14:52 ----D---- C:\WINDOWS\system32\drivers
2008-10-13 12:14:51 ----HD---- C:\WINDOWS\inf
2008-10-13 12:14:47 ----D---- C:\WINDOWS\system32\CatRoot2
2008-10-13 11:44:11 ----D---- C:\WINDOWS\system32
2008-10-13 11:43:34 ----RSHDC---- C:\WINDOWS\system32\dllcache
2008-10-13 11:42:49 ----D---- C:\WINDOWS\security
2008-10-13 07:34:36 ----SD---- C:\WINDOWS\Tasks
2008-10-12 19:52:36 ----D---- C:\WINDOWS\system32\Restore
2008-10-11 05:53:52 ----HD---- C:\WINDOWS\$hf_mig$
2008-10-10 19:28:34 ----D---- C:\WINDOWS\Help
2008-10-10 19:22:33 ----RSD---- C:\WINDOWS\assembly
2008-10-10 19:22:33 ----D---- C:\WINDOWS\Microsoft.NET
2008-10-10 19:14:24 ----D---- C:\WINDOWS\Debug
2008-10-10 17:15:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-10-10 17:08:55 ----D---- C:\WINDOWS\system32\wbem
2008-10-10 17:08:55 ----D---- C:\WINDOWS\system32\Setup
2008-10-10 17:08:55 ----D---- C:\WINDOWS\AppPatch
2008-10-10 17:08:53 ----RSD---- C:\WINDOWS\Fonts
2008-10-10 16:04:45 ----D---- C:\WINDOWS\system32\CatRoot
2008-10-10 16:01:46 ----D---- C:\Program Files\Messenger
2008-10-10 15:58:44 ----D---- C:\WINDOWS\WinSxS
2008-10-10 15:58:12 ----D---- C:\WINDOWS\system32\inetsrv
2008-10-10 15:58:11 ----D---- C:\WINDOWS\ime
2008-10-10 15:57:38 ----D---- C:\WINDOWS\system32\usmt
2008-10-10 15:57:33 ----D---- C:\Program Files\Internet Explorer
2008-10-10 15:57:29 ----D---- C:\WINDOWS\PeerNet
2008-10-10 15:57:29 ----D---- C:\Program Files\Movie Maker
2008-10-10 15:50:31 ----D---- C:\WINDOWS\system32\npp
2008-10-10 15:50:31 ----D---- C:\WINDOWS\mui
2008-10-10 15:50:28 ----D---- C:\WINDOWS\msagent
2008-10-10 15:50:25 ----D---- C:\WINDOWS\srchasst
2008-10-10 15:50:24 ----D---- C:\Program Files\NetMeeting
2008-10-10 15:50:22 ----D---- C:\WINDOWS\system32\Com
2008-10-10 15:50:18 ----D---- C:\Program Files\Windows NT
2008-10-10 15:50:18 ----D---- C:\Program Files\Windows Media Player
2008-10-10 15:50:18 ----D---- C:\Program Files\Outlook Express
2008-10-10 15:50:13 ----D---- C:\Program Files\Common Files\System
2008-10-10 15:49:49 ----D---- C:\WINDOWS\system32\oobe
2008-10-10 15:49:46 ----D---- C:\WINDOWS\system
2008-10-10 15:41:58 ----D---- C:\WINDOWS\ehome
2008-10-10 10:14:39 ----D---- C:\Program Files\Common Files
2008-10-08 13:41:58 ----A---- C:\AUTOEXEC.BAT
2008-10-06 11:55:48 ----D---- C:\WINDOWS\system32\config
2008-10-03 23:35:45 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-10-01 08:02:41 ----A---- C:\WINDOWS\system32\pncrt.dll
2008-09-28 20:36:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-09-27 22:30:41 ----D---- C:\WINDOWS\system32\Macromed
2008-09-27 08:21:25 ----D---- C:\WINDOWS\system32\DirectX
2008-09-27 08:19:44 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-09-27 08:18:01 ----D---- C:\Program Files\Common Files\Microsoft Shared
2008-09-26 12:18:04 ----HD---- C:\Program Files\Uninstall Information
2008-09-26 00:42:04 ----D---- C:\My Backup -- 08-01-26 0134AM
2008-09-26 00:41:31 ----D---- C:\My Backup -- 05-01-03 0547AM
2008-09-25 01:30:27 ----D---- C:\WINDOWS\java
2008-09-25 00:07:23 ----D---- C:\WINDOWS\RegisteredPackages
2008-09-24 22:23:16 ----D---- C:\WINDOWS\Media
2008-09-24 22:21:25 ----D---- C:\Program Files\Online Services
2008-09-24 02:18:35 ----D---- C:\WINDOWS\SoftwareDistribution
2008-09-21 16:55:57 ----D---- C:\WINDOWS\system32\spool
2008-09-21 16:08:21 ----D---- C:\Documents and Settings
2008-09-21 15:52:12 ----D---- C:\WINDOWS\OPTIONS
2008-09-21 15:50:58 ----D---- C:\WINDOWS\pchealth
2008-09-21 13:25:07 ----D---- C:\Program Files\Common Files\Services
2008-09-21 13:25:06 ----D---- C:\WINDOWS\twain_32
2008-09-21 13:23:43 ----D---- C:\WINDOWS\system32\ras
2008-09-21 13:23:22 ----D---- C:\WINDOWS\system32\icsxml
2008-09-21 13:23:22 ----D---- C:\WINDOWS\system32\ias
2008-09-21 13:22:23 ----D---- C:\WINDOWS\system32\1033
2008-09-21 13:22:16 ----RD---- C:\WINDOWS\Web
2008-09-21 13:21:55 ----D---- C:\WINDOWS\Cursors
2008-09-21 13:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB903157$
2008-09-21 13:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB900325$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB899337$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB895961$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB891593$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB888795$
2008-09-21 13:17:08 ----RD---- C:\WINDOWS\Offline Web Pages
2008-09-21 13:16:54 ----SHD---- C:\WINDOWS\CSC
2008-09-21 13:16:42 ----D---- C:\WINDOWS\system32\URTTemp
2008-09-21 13:16:41 ----D---- C:\WINDOWS\system32\MsDtc
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwss.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwddi.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvvitvs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvnt4cpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmobls.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccss.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvgames.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvdisps.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcodins.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcod.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvapi.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdPPM;AMD HwPState Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2008-10-03 97928]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2008-10-03 26824]
R1 BANTExt;Belarc SMBios Access; C:\WINDOWS\System32\Drivers\BANTExt.sys [2008-02-27 3840]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2006-11-06 30988]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-10 12032]
R2 AvgTdiX;AVG8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2008-10-03 76040]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr.sys [2008-09-04 56344]
R2 tmpreflt;tmpreflt; \??\C:\PROGRA~1\AVANQU~1\Fix-It\tmpreflt.sys []
R2 tmxpflt;tmxpflt; \??\C:\PROGRA~1\AVANQU~1\Fix-It\tmxpflt.sys []
R2 Vsapint;Vsapint; \??\C:\PROGRA~1\AVANQU~1\Fix-It\Vsapint.sys []
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
R3 CDAVFS;CDAVFS; C:\WINDOWS\system32\DRIVERS\CDAVFS.sys [2008-10-13 67424]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 15464]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ICam7fil;Intel(r) CS431 Audio Filter Driver; C:\WINDOWS\system32\drivers\icam7fil.sys [2001-07-31 19640]
R3 Icam7USB;Intel(r) PC Camera CS431; C:\WINDOWS\System32\Drivers\ICAM7D2.SYS [2001-07-31 158848]
R3 MailScan;MailScan; \??\C:\PROGRA~1\AVANQU~1\Fix-It\MailScan.sys []
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-09-17 6132576]
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2008-08-01 54784]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2008-08-01 22016]
R3 PPDrv;Protector Plus Driver (UnRegistered); \??\C:\Protector Plus\PPDrv.sys []
R3 PPEMSCAN;Protector Plus Email Scan Driver; \??\C:\Protector Plus\PPEMSCAN.sys []
R3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
R3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S1 P3;Intel PentiumIII Processor Driver; C:\WINDOWS\system32\DRIVERS\p3.sys [2008-04-13 42752]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 COMMONFX.DLL;COMMONFX.DLL; C:\WINDOWS\system32\COMMONFX.DLL [2007-04-18 98600]
S3 CT20XUT.DLL;CT20XUT.DLL; C:\WINDOWS\system32\CT20XUT.DLL [2007-04-12 164608]
S3 ctac32k;Creative AC3 Software Decoder; C:\WINDOWS\system32\drivers\ctac32k.sys [2007-04-10 511272]
S3 ctaud2k;Creative Audio Driver (WDM); C:\WINDOWS\system32\drivers\ctaud2k.sys [2007-04-10 520488]
S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\WINDOWS\system32\CTAUDFX.DLL [2007-04-12 546048]
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\WINDOWS\system32\drivers\ctdvda2k.sys [2007-04-10 347128]
S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\WINDOWS\system32\CTEAPSFX.DLL [2007-04-12 168192]
S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\WINDOWS\system32\CTEDSPFX.DLL [2007-04-12 280320]
S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\WINDOWS\system32\CTEDSPIO.DLL [2007-04-12 128768]
S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\WINDOWS\system32\CTEDSPSY.DLL [2007-04-12 323328]
S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\WINDOWS\system32\CTERFXFX.DLL [2007-04-12 94976]
S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\WINDOWS\system32\CTEXFIFX.DLL [2007-04-12 1317632]
S3 ctgame;Game Port; C:\WINDOWS\system32\DRIVERS\ctgame.sys [2007-04-10 19112]
S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\WINDOWS\system32\CTHWIUT.DLL [2007-04-12 66816]
S3 ctprxy2k;Creative Proxy Driver; C:\WINDOWS\system32\drivers\ctprxy2k.sys [2007-04-10 14632]
S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\WINDOWS\system32\CTSBLFX.DLL [2007-04-12 560384]
S3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\system32\drivers\ctsfm2k.sys [2007-04-10 157480]
S3 emupia;E-mu Plug-in Architecture Driver; C:\WINDOWS\system32\drivers\emupia2k.sys [2007-04-10 92968]
S3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\WINDOWS\system32\drivers\ha10kx2k.sys [2007-04-10 797992]
S3 hap16v2k;Creative P16V HAL Driver; C:\WINDOWS\system32\drivers\hap16v2k.sys [2007-04-10 163112]
S3 hap17v2k;Creative P17V HAL Driver; C:\WINDOWS\system32\drivers\hap17v2k.sys [2007-04-10 189736]
S3 L8042Kbd;Logitech SetPoint Keyboard Driver; C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys [2008-02-29 20240]
S3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2008-02-29 35344]
S3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2008-02-29 36880]
S3 MHNDRV;MHN driver; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 mxnic;Macronix MX987xx Family Fast Ethernet NT Driver; C:\WINDOWS\system32\DRIVERS\mxnic.sys [2001-08-17 19968]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\drivers\ctoss2k.sys [2007-04-10 126760]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 XDva197;XDva197; \??\C:\WINDOWS\system32\XDva197.sys []
S4 SpyEmrg;Spy Emergency Driver; C:\WINDOWS\System32\Drivers\spyemrg.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-10-10 611664]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-10-01 116040]
R2 avg8emc;AVG8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-10-03 875288]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-10-03 231704]
R2 DiskSuiteService;PC Tools Disk Suite; C:\Program Files\PC Tools Disk Suite\DSService.exe [2008-07-30 464192]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2006-10-09 237568]
R2 ehSched;Media Center Scheduler Service; C:\WINDOWS\eHome\ehSched.exe [2005-08-05 102912]
R2 Fix-It Task Manager;Fix-It Task Manager; C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe [2008-08-26 152832]
R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2003-08-18 303104]
R2 McrdSvc;Media Center Extender Service; C:\WINDOWS\ehome\mcrdsvc.exe [2005-08-05 99328]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-09-17 163908]
R2 ProtectorPlusService;Protector Plus Service (UnRegistered); C:\Protector Plus\PPServ.exe [2008-10-08 78504]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520]
S2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe []
S2 CSIScanner;CSIScanner; C:\Program Files\PrevxCSI\prevxcsi.exe [2008-10-09 876088]
S2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S2 ProtectorPlusAVMonitor;Protector Plus Anti-virus Monitor Service; C:\Protector Plus\PPAVMon.exe [2008-10-08 62120]
S2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 fsssvc;Windows Live Family Safety; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2008-09-04 512536]
S4 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2008-08-29 33752]
S4 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S4 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S4 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]
S4 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe [2008-05-02 121360]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
S4 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S4 PrismXL;PrismXL; C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS [2008-09-24 65536]
S4 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]

-----------------EOF-----------------
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby alwysbtchn » October 13th, 2008, 6:56 pm

here is the log
Logfile of random's system information tool 1.04 (written by random/random)
Run by KaraKristi at 2008-10-13 15:32:57
Microsoft Windows XP Professional Service Pack 3
System drive C: has 45 GB (19%) free of 238 GB
Total RAM: 2046 MB (65% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 15:33:19, on 10/13/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Protector Plus\PPServ.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\PC Tools Disk Suite\DSService.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Live\Mail\wlmail.exe
C:\Documents and Settings\KaraKristi\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\KaraKristi.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://safesearch.cyberdefender.com/smallsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.myidentitydefender.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = dynhost.inetcam.com;register.inetcam.com
R3 - URLSearchHook: (no name) - ~BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - (no file)
R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {453F51E8-FEF5-4C54-B136-944BF434360C} - C:\WINDOWS\system32\tuvSIyxU.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {8E9887CE-1786-475B-ADE4-2B1A65487FBA} - C:\WINDOWS\system32\pmnKabCS.dll (file missing)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O2 - BHO: Windows Live Toolbar Beta - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: {fb910702-173e-323a-6024-ebabd5c9033e} - {e3309c5d-babe-4206-a323-e371207019bf} - C:\WINDOWS\system32\dfmksc.dll (file missing)
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: &Windows Live Toolbar Beta - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: MyIdentityDefender - {A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Protector Plus Taskbar Control] C:\PROTEC~1\PPTbc.EXE
O4 - HKLM\..\Run: [Protector Plus InstaUpdate] C:\PROTEC~1\PPInupdt.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [CyberDefender Early Detection Center] "C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe"
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: Bingo Luau by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Dice City Roller by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Lottso by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Scrabble by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Tumble Bees by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: World Class Solitaire by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/St ... b55579.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZB ... b55579.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZP ... b55579.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/So ... b56986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 2034459328
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 2228339109
O16 - DPF: {A5180646-FE0F-4C97-AA29-2A0F41515623} - http://zone.msn.com/bingame/zpagames/ZP ... b61895.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v ... b56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.eu/Register ... lashax.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/St ... b55579.cab
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Object) - https://bellerock.microgaming.com/freeplay/FlashAX2.cab
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://zone.msn.com/bingame/zpagames/ZP ... b64162.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: dfmksc.dll,avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: tuvSIyxU - tuvSIyxU.dll (file missing)
O21 - SSODL: StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Creative Service for CDROM Access - Unknown owner - C:\WINDOWS\system32\CTsvcCDA.exe (file missing)
O23 - Service: CSIScanner - Prevx - C:\Program Files\PrevxCSI\prevxcsi.exe
O23 - Service: PC Tools Disk Suite (DiskSuiteService) - Unknown owner - C:\Program Files\PC Tools Disk Suite\DSService.exe
O23 - Service: Fix-It Task Manager - Avanquest North America, Inc. - C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Proland Software - C:\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (UnRegistered) (ProtectorPlusService) - Proland Software - C:\Protector Plus\PPServ.exe

--
End of file - 11393 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\1 Copernic Intra-Daily ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\2 Copernic Daily ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\3 Copernic Weekly ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\4 Copernic Monthly ~QWERTY KaraKristi.job
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\At1.job
C:\WINDOWS\tasks\At10.job
C:\WINDOWS\tasks\At11.job
C:\WINDOWS\tasks\At12.job
C:\WINDOWS\tasks\At13.job
C:\WINDOWS\tasks\At14.job
C:\WINDOWS\tasks\At15.job
C:\WINDOWS\tasks\At16.job
C:\WINDOWS\tasks\At17.job
C:\WINDOWS\tasks\At18.job
C:\WINDOWS\tasks\At19.job
C:\WINDOWS\tasks\At2.job
C:\WINDOWS\tasks\At20.job
C:\WINDOWS\tasks\At21.job
C:\WINDOWS\tasks\At22.job
C:\WINDOWS\tasks\At23.job
C:\WINDOWS\tasks\At24.job
C:\WINDOWS\tasks\At25.job
C:\WINDOWS\tasks\At26.job
C:\WINDOWS\tasks\At27.job
C:\WINDOWS\tasks\At28.job
C:\WINDOWS\tasks\At29.job
C:\WINDOWS\tasks\At3.job
C:\WINDOWS\tasks\At30.job
C:\WINDOWS\tasks\At31.job
C:\WINDOWS\tasks\At32.job
C:\WINDOWS\tasks\At33.job
C:\WINDOWS\tasks\At34.job
C:\WINDOWS\tasks\At35.job
C:\WINDOWS\tasks\At36.job
C:\WINDOWS\tasks\At37.job
C:\WINDOWS\tasks\At38.job
C:\WINDOWS\tasks\At39.job
C:\WINDOWS\tasks\At4.job
C:\WINDOWS\tasks\At40.job
C:\WINDOWS\tasks\At41.job
C:\WINDOWS\tasks\At42.job
C:\WINDOWS\tasks\At43.job
C:\WINDOWS\tasks\At44.job
C:\WINDOWS\tasks\At45.job
C:\WINDOWS\tasks\At46.job
C:\WINDOWS\tasks\At47.job
C:\WINDOWS\tasks\At48.job
C:\WINDOWS\tasks\At5.job
C:\WINDOWS\tasks\At6.job
C:\WINDOWS\tasks\At7.job
C:\WINDOWS\tasks\At8.job
C:\WINDOWS\tasks\At9.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-10-01 308832]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2008-10-03 455960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{453F51E8-FEF5-4C54-B136-944BF434360C}]
C:\WINDOWS\system32\tuvSIyxU.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E9887CE-1786-475B-ADE4-2B1A65487FBA}]
C:\WINDOWS\system32\pmnKabCS.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2008-02-22 401968]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-10-03 2055960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6}]
MyIdentityDefender - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll [2008-10-13 3822920]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E15A8DC0-8516-42A1-81EA-DC94EC1ACF10}]
Windows Live Toolbar Beta - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-09-02 953360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e3309c5d-babe-4206-a323-e371207019bf}]
C:\WINDOWS\system32\dfmksc.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - Copernic Agent - C:\PROGRA~1\COPERN~1\COPERN~1.DLL [2004-12-02 1142744]
{D0943516-5076-4020-A3B5-AEFAF26AB263} - Veoh Browser Plug-in - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll [2008-08-28 352256]
{21FA44EF-376D-4D53-9B0F-8A89D3229068} - &Windows Live Toolbar Beta - C:\Program Files\Windows Live\Toolbar\wltcore.dll [2008-09-02 953360]
{A057A204-BACC-4D26-9990-79A187E2698E} - AVG Security Toolbar - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [2008-10-03 2055960]
{A26503FE-B3B8-4910-A9DC-9CBD25C6B8D6} - MyIdentityDefender - C:\Documents and Settings\KaraKristi\Local Settings\Application Data\CyberDefender\cdmyidd.dll [2008-10-13 3822920]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2008-10-03 1235736]
"Protector Plus Taskbar Control"=C:\PROTEC~1\PPTbc.EXE [2008-10-08 1159848]
"Protector Plus InstaUpdate"=C:\PROTEC~1\PPInupdt.exe [2008-10-08 1159848]
"NvCplDaemon"=C:\WINDOWS\system32\NvCpl.dll [2008-09-17 13574144]
"CyberDefender Early Detection Center"=C:\Program Files\CyberDefender\AntiSpyware\ISSIntro.exe [2008-10-13 566600]
"MSConfig"=C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe [2008-04-13 169984]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\24c37e47]
C:\WINDOWS\system32\wvmpquae.dll []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BM27f04ddb]
C:\WINDOWS\system32\wocthtdu.dll []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper]
C:\WINDOWS\system32\CTHELPER.EXE [2007-04-09 19456]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTxfiHlp]
C:\WINDOWS\system32\CTXFIHLP.EXE [2007-04-09 19968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CyberDefender Early Detection Center]
C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe [2008-10-13 619848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ehTray]
C:\WINDOWS\ehome\ehtray.exe [2005-08-05 64512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer]
C:\WINDOWS\KHALMNPR.EXE [2008-02-29 76304]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KernelFaultCheck]
C:\WINDOWS\system32\dumprep 0 -k []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Lexmark X1100 Series]
C:\Program Files\Lexmark X1100 Series\lxbkbmgr.exe [2003-08-19 57344]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\msnmsgr]
C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2008-09-09 3513344]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
C:\WINDOWS\system32\NvCpl.dll [2008-09-17 13574144]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
C:\WINDOWS\system32\NvMcTray.dll [2008-09-17 86016]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
nwiz.exe /install []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\OE]
C:\Program Files\Trend Micro\Internet Security\TMAS_OE\TMAS_OEMon.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Power2GoExpress]
NA []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\prunnet]
C:\DOCUME~1\KARAKR~1\LOCALS~1\Temp\prun.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\readericon]
C:\Program Files\Digital Media Reader\readericon45G.exe [2005-08-27 139264]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SetDefaultMIDI]
C:\WINDOWS\system32\MIDIDef.exe [2007-04-09 28672]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMan]
C:\WINDOWS\SOUNDMAN.EXE [2007-04-16 577536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpyEmergency]
C:\My Backup -- 08-09-21 0105PM\Program Files\NETGATE\Spy Emergency 2008\SpyEmergency.exe [2008-08-25 2030136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartupRepair]
C:\Program Files\StartupRepair\StartupRepair.exe [2006-04-27 192512]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware]
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2008-09-03 1576176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SVCHOST.EXE]
C:\WINDOWS\system32\drivers\svchost.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-10-01 185872]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UfSeAgnt.exe]
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg]
[]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Veoh]
C:\Program Files\Veoh Networks\Veoh\VeohClient.exe [2008-08-28 3660848]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VirusScannerPro]
C:\PROGRA~1\AVANQU~1\Fix-It\MemCheck.exe [2008-08-26 173312]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\webHancer Agent]
C:\Program Files\webHancer\Programs\whagent.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinColorReminder]
C:\Program Files\Pro Imaging Powertoys\Microsoft Color Control Panel Applet for Windows XP\WinColorReminder.exe [2005-10-31 101120]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wllvkizbsndy]
C:\WINDOWS\system32\thdtujwdxvpny.dll EntryPoint []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\XoftSpySE]
C:\Program Files\XoftSpySE\xoftspy.exe -s []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^PalTalk.lnk]
C:\PROGRA~1\PALTAL~1\paltalk.exe [2008-09-10 11713536]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Service Manager.lnk]
C:\PROGRA~1\MI6841~1\80\Tools\Binn\sqlmangr.exe /n []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"PrismXL"=3
"odserv"=3
"iPod Service"=3
"idsvc"=2
"IDriverT"=3
"getPlus(R) Helper"=3

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="dfmksc.dll,avgrsstx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2008-07-23 352256]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2008-05-02 72208]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvSIyxU]
tuvSIyxU.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
UPnPMonitor - {e57ce738-33e8-4c51-8354-bb4de9d215d1} - C:\WINDOWS\system32\upnpui.dll [2008-04-13 239616]
StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{453F51E8-FEF5-4C54-B136-944BF434360C}"=C:\WINDOWS\system32\tuvSIyxU.dll []
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"authentication packages"=msv1_0
C:\WINDOWS\system32\pmnKabCS

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{1a3e09be-1e45-494b-9174-d7385b45bbf5}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme
"DisableCAD"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
""=
"NoDriveTypeAutoRun"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\WINDOWS\system32\mmc.exe"="C:\WINDOWS\system32\mmc.exe:*:Enabled:MicrosoftManagementConsole"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"C:\WINDOWS\system32\drivers\svchost.exe"="C:\WINDOWS\system32\drivers\svchost.exe:*:Disabled:svchost"
"C:\Program Files\Paltalk Messenger\paltalk.exe"="C:\Program Files\Paltalk Messenger\paltalk.exe:*:Enabled:PaltalkScene"
"C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe"="C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKSAdmin.exe:*:Disabled:DkAdminService"
"C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKAdmin.exe"="C:\Program Files\Diskeeper Corporation\Diskeeper Administrator\DKAdmin.exe:*:Disabled:DkAdminUI"
"C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE"="C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE:*:Disabled:Microsoft Office Outlook"
"C:\WINDOWS\system32\sessmgr.exe"="C:\WINDOWS\system32\sessmgr.exe:*:Disabled:@xpsp2res.dll,-22019"
"C:\Program Files\Veoh Networks\Veoh\VeohClient.exe"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe:*:Disabled:Veoh Client"
"C:\My Backup -- 08-09-21 0105PM\Program Files\Veoh Networks\Veoh\VeohClient.exe"="C:\My Backup -- 08-09-21 0105PM\Program Files\Veoh Networks\Veoh\VeohClient.exe:*:Disabled:Veoh Client"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgnsx.exe"="C:\Program Files\AVG\AVG8\avgnsx.exe:*:Enabled:avgnsx.exe"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Documents and Settings\KaraKristi\Desktop\winks,moods,muggins,weemees and meegos\mcoinstall.exe"="C:\Documents and Settings\KaraKristi\Desktop\winks,moods,muggins,weemees and meegos\mcoinstall.exe:*:Enabled:mcoinstall"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe"="C:\Program Files\CyberDefender\AntiSpyware\cdas5.exe:*:Enabled:CyberDefender Internet Security"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Windows Live\Messenger\wlcsdk.exe"="C:\Program Files\Windows Live\Messenger\wlcsdk.exe:*:Enabled:Windows Live Call"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"

======List of files/folders created in the last 1 months======

2008-10-13 15:32:57 ----D---- C:\rsit
2008-10-13 13:01:43 ----D---- C:\Program Files\Microsoft CAPICOM 2.1.0.2
2008-10-13 12:57:46 ----A---- C:\WINDOWS\st_affiliate.ini
2008-10-13 12:16:07 ----A---- C:\WINDOWS\av_affiliate.ini
2008-10-13 12:16:05 ----A---- C:\WINDOWS\as_affiliate.ini
2008-10-13 12:13:46 ----D---- C:\Program Files\CyberDefender
2008-10-13 11:44:35 ----A---- C:\WINDOWS\lexstat.ini
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkvs.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkpwr.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKPMNT.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLSNT.EXE
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLCNT.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKLCNP.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKIH.EXE
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKCU.DLL
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\lxbkcomm.dll
2008-10-13 11:43:52 ----A---- C:\WINDOWS\system32\LXBKCFG.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXPPS.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXPING.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXP2P32.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXBCES.EXE
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEXBCE.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\LEX2KUSB.DLL
2008-10-13 11:43:51 ----A---- C:\WINDOWS\system32\INSTMON.EXE
2008-10-13 11:43:49 ----A---- C:\WINDOWS\system32\LXBKCUR.DLL
2008-10-13 11:43:49 ----A---- C:\WINDOWS\system32\LEXLMPM.DLL
2008-10-13 11:43:24 ----A---- C:\WINDOWS\system32\wiafbdrv.dll
2008-10-13 11:43:07 ----A---- C:\WINDOWS\system32\LXBKUTIL.DLL
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkscin.dll
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\LXBKGF.DLL
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcoin.ini
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcoin.dll
2008-10-13 11:43:06 ----A---- C:\WINDOWS\system32\lxbkcinf.dll
2008-10-13 11:43:05 ----D---- C:\Program Files\Lexmark X1100 Series
2008-10-13 11:43:05 ----A---- C:\WINDOWS\system32\LXBKJSWR.DLL
2008-10-13 11:42:57 ----A---- C:\WINDOWS\uninst.exe
2008-10-13 11:41:01 ----D---- C:\Program Files\Realtek AC97
2008-10-12 19:40:53 ----D---- C:\Program Files\Trend Micro
2008-10-12 18:02:58 ----A---- C:\win32upd.exe
2008-10-12 10:09:42 ----A---- C:\WINDOWS\ntbtlog.txt
2008-10-11 07:10:56 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Ultra Fractal 5
2008-10-11 05:54:45 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-10-11 04:57:00 ----D---- C:\Program Files\Pixarra
2008-10-11 04:20:25 ----A---- C:\WINDOWS\system32\swxcacls.exe
2008-10-11 04:20:24 ----A---- C:\WINDOWS\system32\SrchSTS.exe
2008-10-11 04:20:24 ----A---- C:\WINDOWS\system32\dumphive.exe
2008-10-11 04:20:23 ----A---- C:\WINDOWS\system32\swsc.exe
2008-10-11 04:20:22 ----A---- C:\WINDOWS\system32\swreg.exe
2008-10-11 04:20:21 ----A---- C:\WINDOWS\system32\Process.exe
2008-10-10 16:03:46 ----HDC---- C:\WINDOWS\$NtUninstallKB953838$
2008-10-10 16:03:32 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-10-10 16:03:20 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-10-10 16:03:05 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-10-10 16:02:50 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-10-10 16:02:38 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-10-10 16:02:23 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-10-10 16:02:09 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-10-10 16:01:58 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-10-10 16:01:44 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-10-10 16:01:32 ----HDC---- C:\WINDOWS\$NtUninstallKB938464$
2008-10-10 16:01:19 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4$
2008-10-10 15:57:34 ----D---- C:\WINDOWS\system32\scripting
2008-10-10 15:57:33 ----D---- C:\WINDOWS\l2schemas
2008-10-10 15:57:31 ----D---- C:\WINDOWS\system32\en
2008-10-10 15:57:29 ----D---- C:\WINDOWS\system32\bits
2008-10-10 15:50:51 ----D---- C:\WINDOWS\ServicePackFiles
2008-10-10 15:47:22 ----D---- C:\WINDOWS\network diagnostic
2008-10-10 15:41:59 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-10-10 10:15:36 ----D---- C:\Documents and Settings\KaraKristi\Application Data\skypePM
2008-10-10 10:15:00 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Skype
2008-10-10 10:14:40 ----D---- C:\Program Files\Skype
2008-10-10 10:14:39 ----D---- C:\Program Files\Common Files\Skype
2008-10-10 10:14:26 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2008-10-10 08:34:04 ----D---- C:\Program Files\Lavasoft
2008-10-10 08:34:03 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-10-09 22:32:47 ----D---- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
2008-10-09 22:32:18 ----D---- C:\Program Files\SUPERAntiSpyware
2008-10-09 22:32:18 ----D---- C:\Documents and Settings\KaraKristi\Application Data\SUPERAntiSpyware.com
2008-10-09 21:55:10 ----N---- C:\WINDOWS\system32\wlanapi.dll
2008-10-09 21:55:00 ----N---- C:\WINDOWS\system32\tspkg.dll
2008-10-09 21:54:47 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2008-10-09 21:54:46 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slserv.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slrundll.exe
2008-10-09 21:54:45 ----N---- C:\WINDOWS\system32\slgen.dll
2008-10-09 21:54:45 ----N---- C:\WINDOWS\slrundll.exe
2008-10-09 21:54:44 ----N---- C:\WINDOWS\system32\slextspk.dll
2008-10-09 21:54:44 ----N---- C:\WINDOWS\system32\slcoinst.dll
2008-10-09 21:54:40 ----N---- C:\WINDOWS\system32\setupn.exe
2008-10-09 21:54:37 ----N---- C:\WINDOWS\system32\s3gnb.dll
2008-10-09 21:54:33 ----N---- C:\WINDOWS\system32\rasqec.dll
2008-10-09 21:54:32 ----N---- C:\WINDOWS\system32\qutil.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qcliprov.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qagentrt.dll
2008-10-09 21:54:30 ----N---- C:\WINDOWS\system32\qagent.dll
2008-10-09 21:54:24 ----N---- C:\WINDOWS\system32\onex.dll
2008-10-09 21:53:47 ----N---- C:\WINDOWS\system32\napstat.exe
2008-10-09 21:53:47 ----N---- C:\WINDOWS\system32\napmontr.dll
2008-10-09 21:53:46 ----N---- C:\WINDOWS\system32\napipsec.dll
2008-10-09 21:53:45 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2008-10-09 21:53:35 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2008-10-09 21:53:35 ----N---- C:\WINDOWS\system32\mssha.dll
2008-10-09 21:52:46 ----N---- C:\WINDOWS\system32\mmcperf.exe
2008-10-09 21:52:45 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2008-10-09 21:52:45 ----N---- C:\WINDOWS\system32\mmcex.dll
2008-10-09 21:52:44 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2008-10-09 21:52:36 ----N---- C:\WINDOWS\system32\mdmxsdk.dll
2008-10-09 21:52:08 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2008-10-09 21:51:59 ----N---- C:\WINDOWS\system32\kmsvc.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdpash.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2008-10-09 21:51:57 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2008-10-09 21:51:56 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2008-10-09 21:51:08 ----N---- C:\WINDOWS\system32\smtpapi.dll
2008-10-09 21:51:07 ----N---- C:\WINDOWS\system32\rwnh.dll
2008-10-09 21:50:50 ----N---- C:\WINDOWS\system32\comsdupd.exe
2008-10-09 21:50:38 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2008-10-09 21:50:24 ----N---- C:\WINDOWS\system32\faxpatch.exe
2008-10-09 21:50:24 ----A---- C:\WINDOWS\003272_.tmp
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapsvc.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapqec.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eappprxy.dll
2008-10-09 21:50:22 ----N---- C:\WINDOWS\system32\eapphost.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eappgnui.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eappcfg.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2008-10-09 21:50:21 ----N---- C:\WINDOWS\system32\eapolqec.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3ui.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3svc.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3msm.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2008-10-09 21:50:10 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2008-10-09 21:50:09 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2008-10-09 21:50:09 ----N---- C:\WINDOWS\system32\dot3api.dll
2008-10-09 21:50:05 ----N---- C:\WINDOWS\system32\dimsroam.dll
2008-10-09 21:50:05 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2008-10-09 21:50:03 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2008-10-09 21:49:52 ----N---- C:\WINDOWS\system32\credssp.dll
2008-10-09 21:49:39 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2008-10-09 21:49:38 ----N---- C:\WINDOWS\system32\azroles.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ativvaxx.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2008-10-09 21:49:37 ----N---- C:\WINDOWS\system32\ati3duag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2dvag.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2008-10-09 21:49:36 ----N---- C:\WINDOWS\system32\ati2cqag.dll
2008-10-09 21:42:04 ----D---- C:\Program Files\PrevxCSI
2008-10-09 21:41:59 ----D---- C:\Documents and Settings\All Users\Application Data\PrevxCSI
2008-10-08 13:41:53 ----A---- C:\WINDOWS\system32\_PPCXM_.DLL
2008-10-08 13:41:43 ----D---- C:\Protector Plus
2008-10-08 13:41:43 ----A---- C:\WINDOWS\_SETUPD_.EXE
2008-10-08 13:23:49 ----D---- C:\ead2f0f9345be0c185d958
2008-10-08 09:03:44 ----D---- C:\ed0099868e76aeb8189631ef49c4
2008-10-08 08:23:37 ----D---- C:\Program Files\PC Tools Disk Suite
2008-10-08 08:23:37 ----D---- C:\Documents and Settings\All Users\Application Data\PC Tools
2008-10-08 01:57:10 ----D---- C:\Program Files\NOS
2008-10-03 23:35:43 ----D---- C:\WINDOWS\system32\FlashAX2
2008-10-03 22:43:54 ----A---- C:\WINDOWS\system32\GEARAspi.dll
2008-10-03 22:42:48 ----D---- C:\Program Files\iPod
2008-10-03 22:42:45 ----D---- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-10-03 22:42:44 ----D---- C:\Program Files\iTunes
2008-10-03 22:38:28 ----D---- C:\Program Files\QuickTime
2008-10-03 22:38:26 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-10-03 22:36:23 ----D---- C:\Program Files\Apple Software Update
2008-10-03 22:34:06 ----D---- C:\Program Files\Common Files\Apple
2008-10-03 22:34:05 ----D---- C:\Documents and Settings\All Users\Application Data\Apple
2008-10-03 21:30:01 ----SH---- C:\WINDOWS\system32\xlpqcasj.ini
2008-10-03 21:29:55 ----A---- C:\WINDOWS\system32\emljoqwy.dll
2008-10-03 18:57:06 ----HD---- C:\$AVG8.VAULT$
2008-10-03 18:51:28 ----A---- C:\WINDOWS\system32\avgrsstx.dll
2008-10-03 18:51:15 ----D---- C:\Documents and Settings\KaraKristi\Application Data\AVGTOOLBAR
2008-10-03 18:50:56 ----D---- C:\Program Files\AVG
2008-10-03 18:50:56 ----D---- C:\Documents and Settings\All Users\Application Data\avg8
2008-10-03 18:43:50 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Thinstall
2008-10-03 18:32:43 ----D---- C:\Program Files\USB Disk Security
2008-10-03 17:24:22 ----D---- C:\Ww
2008-10-03 17:21:23 ----D---- C:\Program Files\yjfcjyb
2008-10-03 17:21:20 ----D---- C:\Documents and Settings\All Users\Application Data\tclinany
2008-10-03 17:13:10 ----D---- C:\Documents and Settings\All Users\Application Data\POP3Profiles
2008-10-03 17:10:29 ----D---- C:\Program Files\Ubisoft
2008-10-03 16:46:06 ----D---- C:\Program Files\Messenger Plus! Live
2008-10-03 14:17:26 ----A---- C:\WINDOWS\cdplayer.ini
2008-10-02 21:35:38 ----SH---- C:\WINDOWS\system32\eauqpmvw.ini
2008-10-02 08:02:08 ----D---- C:\Documents and Settings\KaraKristi\Application Data\LimeWire
2008-10-01 23:52:00 ----A---- C:\WINDOWS\system32\nvunrm.exe
2008-10-01 23:43:41 ----D---- C:\Program Files\Unibrain
2008-10-01 23:42:52 ----D---- C:\Program Files\Intel Desktop Board
2008-10-01 23:27:21 ----D---- C:\NVIDIA
2008-10-01 23:10:27 ----D---- C:\Program Files\PC Drivers HeadQuarters
2008-10-01 23:10:27 ----D---- C:\Documents and Settings\All Users\Application Data\PC Drivers HeadQuarters
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\javaws.exe
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\javaw.exe
2008-10-01 23:01:53 ----A---- C:\WINDOWS\system32\java.exe
2008-10-01 23:01:04 ----D---- C:\Program Files\Java
2008-10-01 23:00:03 ----D---- C:\Program Files\Common Files\Java
2008-10-01 21:46:34 ----D---- C:\Documents and Settings\All Users\Application Data\CyberLink
2008-10-01 21:46:28 ----D---- C:\Documents and Settings\KaraKristi\Application Data\CyberLink
2008-10-01 21:40:36 ----D---- C:\Program Files\Uniblue
2008-10-01 21:40:36 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Uniblue
2008-10-01 21:40:36 ----D---- C:\Documents and Settings\All Users\Application Data\DriverScanner
2008-10-01 21:30:48 ----SH---- C:\WINDOWS\system32\fpbuiaoh.ini
2008-10-01 08:06:46 ----D---- C:\Program Files\Common Files\xing shared
2008-10-01 01:17:21 ----D---- C:\Program Files\Nikopol
2008-10-01 00:50:42 ----D---- C:\Documents and Settings\All Users\Application Data\Trend Micro
2008-09-30 23:26:37 ----D---- C:\Program Files\PowerISO
2008-09-30 23:25:31 ----D---- C:\Document
2008-09-30 22:56:40 ----A---- C:\WINDOWS\system32\XceedCry.dll
2008-09-30 22:56:40 ----A---- C:\WINDOWS\system32\XceedBkp.dll
2008-09-30 22:56:38 ----A---- C:\WINDOWS\system32\VB6STKIT.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MSVCRTD.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MFCO42D.DLL
2008-09-30 21:41:12 ----A---- C:\WINDOWS\system32\MFC42D.DLL
2008-09-30 21:41:08 ----D---- C:\Program Files\StartupRepair
2008-09-30 20:28:06 ----SH---- C:\WINDOWS\system32\rrklyafk.ini
2008-09-29 21:55:53 ----D---- C:\Program Files\Windows Live Safety Center
2008-09-29 18:36:28 ----D---- C:\Documents and Settings\KaraKristi\Application Data\IrfanView
2008-09-29 16:00:28 ----A---- C:\WINDOWS\system32\rmoc3260.dll
2008-09-29 15:59:51 ----A---- C:\WINDOWS\system32\pndx5032.dll
2008-09-29 15:59:51 ----A---- C:\WINDOWS\system32\pndx5016.dll
2008-09-29 15:59:30 ----D---- C:\Program Files\Real
2008-09-29 15:59:30 ----D---- C:\Program Files\Common Files\Real
2008-09-29 15:59:07 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Real
2008-09-29 13:05:18 ----SH---- C:\WINDOWS\system32\noensywk.ini
2008-09-29 13:02:16 ----A---- C:\WINDOWS\system32\ocxlvq.dll
2008-09-29 13:02:15 ----A---- C:\WINDOWS\system32\hxhwocpg.dll
2008-09-29 13:00:28 ----A---- C:\WINDOWS\system32\vsneryfl.dll
2008-09-28 18:30:02 ----A---- C:\WINDOWS\system32\10Lpdc2R.exe.a_a
2008-09-28 17:43:53 ----D---- C:\WINDOWS\Sun
2008-09-28 17:43:53 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Sun
2008-09-28 17:39:40 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Apple Computer
2008-09-28 15:16:32 ----D---- C:\Program Files\Belarc
2008-09-28 15:01:59 ----D---- C:\WINDOWS\system32\appmgmt
2008-09-28 14:35:26 ----A---- C:\WINDOWS\system32\XffC0E3M.exe.a_a
2008-09-28 13:37:22 ----D---- C:\Documents and Settings\All Users\Application Data\LogiShrd
2008-09-28 13:37:16 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Logitech
2008-09-28 13:35:47 ----HDC---- C:\WINDOWS\$NtUninstallWdf01005$
2008-09-28 13:34:45 ----A---- C:\WINDOWS\system32\BtCoreIf.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemXML.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemWnd.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\KemUtil.dll
2008-09-28 13:34:40 ----A---- C:\WINDOWS\system32\kemutb.dll
2008-09-28 13:34:19 ----D---- C:\Documents and Settings\All Users\Application Data\Logitech
2008-09-28 13:34:17 ----D---- C:\Program Files\Common Files\Logishrd
2008-09-28 13:34:09 ----D---- C:\Program Files\Logitech
2008-09-28 13:34:08 ----D---- C:\Documents and Settings\KaraKristi\Application Data\InstallShield
2008-09-28 08:49:04 ----SH---- C:\WINDOWS\system32\lsckuhjl.ini
2008-09-28 08:46:42 ----A---- C:\diffdebug.txt
2008-09-28 08:46:28 ----A---- C:\WINDOWS\system32\2fe0ba39-.txt
2008-09-28 08:45:57 ----ASH---- C:\WINDOWS\system32\SCbaKnmp.ini2
2008-09-28 08:45:57 ----ASH---- C:\WINDOWS\system32\SCbaKnmp.ini
2008-09-28 08:45:15 ----A---- C:\WINDOWS\system32\javaee.dll
2008-09-28 08:33:16 ----SHD---- C:\WINDOWS\S2FyYUtyaXN0aQ
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\zep
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\tcon
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\oib
2008-09-28 08:33:06 ----D---- C:\WINDOWS\system32\CP6
2008-09-28 08:32:57 ----D---- C:\WINDOWS\system32\EV19
2008-09-28 08:32:57 ----D---- C:\Temp
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\vpdf32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\vchart3235.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\leon3_32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\Dav3_32.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\BarVisD.dll
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\APIGUIDE.DLL
2008-09-28 08:09:33 ----A---- C:\WINDOWS\system32\apigid32.dll
2008-09-28 08:09:32 ----A---- C:\WINDOWS\system32\vpep3235.dll
2008-09-28 08:09:32 ----A---- C:\WINDOWS\system32\dwStg.dll
2008-09-28 08:09:29 ----D---- C:\Program Files\Writer's Blocks 3 Trial
2008-09-28 08:09:28 ----A---- C:\WINDOWS\WB3USER.INI
2008-09-28 07:58:40 ----N---- C:\WINDOWS\pcdlib32.dll
2008-09-28 07:58:30 ----D---- C:\Program Files\Serif
2008-09-27 23:25:07 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Paltalk
2008-09-27 23:25:04 ----D---- C:\WINDOWS\PaltalkScene
2008-09-27 23:25:04 ----D---- C:\Program Files\Paltalk Messenger
2008-09-27 22:07:59 ----A---- C:\WINDOWS\system32\tdssinit.dll
2008-09-27 20:46:33 ----D---- C:\WINDOWS\system32\FlashAX
2008-09-27 20:46:19 ----D---- C:\Documents and Settings\All Users\Application Data\Microgaming
2008-09-27 20:46:19 ----D---- C:\Documents and Settings\All Users\Application Data\MGS
2008-09-27 20:46:16 ----D---- C:\MicroGaming
2008-09-27 08:20:28 ----HDC---- C:\WINDOWS\$NtUninstallKB954708$
2008-09-27 08:18:18 ----D---- C:\Program Files\Microsoft
2008-09-27 08:10:31 ----D---- C:\Program Files\Common Files\Windows Live
2008-09-26 20:19:13 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Spy Emergency
2008-09-26 13:14:41 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Ashampoo
2008-09-26 12:18:05 ----A---- C:\WINDOWS\system32\dbmsqlgc.dll
2008-09-26 12:18:05 ----A---- C:\WINDOWS\system32\dbmsgnet.dll
2008-09-26 12:17:45 ----D---- C:\Program Files\Microsoft SQL Server
2008-09-26 12:16:08 ----D---- C:\Program Files\Ashampoo
2008-09-26 12:14:32 ----D---- C:\Documents and Settings\All Users\Application Data\Diskeeper Corporation
2008-09-26 12:10:21 ----D---- C:\Program Files\Gabest
2008-09-26 12:10:17 ----A---- C:\WINDOWS\system32\avisynth.dll
2008-09-26 12:10:14 ----D---- C:\Program Files\DivXCodec
2008-09-26 12:10:11 ----A---- C:\WINDOWS\system32\DivXc32f.dll
2008-09-26 12:10:11 ----A---- C:\WINDOWS\system32\DivXc32.dll
2008-09-26 12:10:09 ----D---- C:\Program Files\GordianKnot
2008-09-26 12:10:09 ----A---- C:\WINDOWS\system32\HUFFYUV.DLL
2008-09-26 10:18:48 ----D---- C:\Program Files\Pro Imaging Powertoys
2008-09-26 02:33:15 ----D---- C:\Documents and Settings\KaraKristi\Application Data\iWin
2008-09-26 02:29:48 ----D---- C:\Documents and Settings\KaraKristi\Application Data\iWinArcade
2008-09-26 02:29:31 ----D---- C:\Program Files\iWin.com
2008-09-26 02:26:37 ----D---- C:\Documents and Settings\All Users\Application Data\iWin Games
2008-09-25 21:20:40 ----N---- C:\WINDOWS\WB.ini
2008-09-25 08:49:50 ----N---- C:\WINDOWS\system32\wbsys.dll
2008-09-25 08:49:50 ----D---- C:\Program Files\Stardock
2008-09-25 08:14:27 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Windows Search
2008-09-25 01:30:28 ----A---- C:\WINDOWS\system32\jit.dll
2008-09-25 01:30:28 ----A---- C:\WINDOWS\system32\dx3j.dll
2008-09-25 01:30:28 ----A---- C:\WINDOWS\setdebug.exe
2008-09-25 01:30:24 ----A---- C:\WINDOWS\system32\wjview.exe
2008-09-25 01:30:24 ----A---- C:\WINDOWS\system32\vmhelper.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msjdbc10.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msjava.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\msawt.dll
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\jview.exe
2008-09-25 01:30:23 ----A---- C:\WINDOWS\system32\jdbgmgr.exe
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javart.dll
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javaprxy.dll
2008-09-25 01:30:22 ----A---- C:\WINDOWS\system32\javacypt.dll
2008-09-25 01:30:21 ----A---- C:\WINDOWS\system32\clspack.exe
2008-09-25 00:07:23 ----D---- C:\WINDOWS\system32\windows media
2008-09-25 00:01:15 ----A---- C:\WINDOWS\oodcnt.INI
2008-09-24 23:56:48 ----D---- C:\Documents and Settings\All Users\Application Data\Trymedia
2008-09-24 23:54:02 ----A---- C:\Hardware.ini
2008-09-24 23:51:30 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2008-09-24 23:48:12 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2008-09-24 23:45:01 ----A---- C:\WINDOWS\system32\atl71.dll
2008-09-24 23:27:32 ----D---- C:\Program Files\Jasc Software Inc
2008-09-24 23:23:14 ----D---- C:\Program Files\WinAce
2008-09-24 23:21:46 ----D---- C:\Program Files\WinRAR
2008-09-24 23:19:55 ----D---- C:\Program Files\WinZip
2008-09-24 23:19:08 ----D---- C:\Program Files\XP Codec Pack
2008-09-24 23:18:23 ----HDC---- C:\WINDOWS\$NtUninstallKB943729$
2008-09-24 22:48:48 ----D---- C:\Program Files\Windows Desktop Search
2008-09-24 22:48:47 ----HD---- C:\WINDOWS\system32\GroupPolicy
2008-09-24 22:48:33 ----HDC---- C:\WINDOWS\$NtUninstallKB915800-v4_0$
2008-09-24 22:48:26 ----HDC---- C:\WINDOWS\$NtUninstallKB915865$
2008-09-24 22:48:23 ----N---- C:\WINDOWS\system32\xmllite.dll
2008-09-24 22:43:12 ----A---- C:\WINDOWS\RtlRack.ini
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\vfwwdm32.dll
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\Icam7EXT.dll
2008-09-24 22:24:32 ----A---- C:\WINDOWS\system32\icam7com.dll
2008-09-24 22:22:20 ----A---- C:\WINDOWS\system32\cttele.dll
2008-09-24 22:22:06 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Creative
2008-09-24 22:18:38 ----A---- C:\WINDOWS\system32\RtlCPAPI.dll
2008-09-24 22:18:38 ----A---- C:\WINDOWS\system32\ChCfg.exe
2008-09-24 22:18:38 ----A---- C:\WINDOWS\soundman.exe
2008-09-24 22:18:37 ----A---- C:\WINDOWS\system32\RTLCPL.exe
2008-09-24 22:18:13 ----D---- C:\Program Files\Realtek Sound Manager
2008-09-24 22:18:13 ----D---- C:\Program Files\AvRack
2008-09-24 22:18:04 ----A---- C:\WINDOWS\alcupd.exe
2008-09-24 22:18:04 ----A---- C:\WINDOWS\Alcrmv.exe
2008-09-24 22:17:14 ----D---- C:\WINDOWS\NV35443540.TMP
2008-09-24 22:14:52 ----D---- C:\cabs
2008-09-24 11:20:12 ----D---- C:\WINDOWS\LastGood(2)
2008-09-24 04:53:53 ----D---- C:\Program Files\IrfanView
2008-09-23 21:13:05 ----D---- C:\WINDOWS\Minidump
2008-09-23 21:10:04 ----HDC---- C:\WINDOWS\$NtUninstallKB920213$
2008-09-23 20:44:17 ----A---- C:\WINDOWS\system32\d3dx9_32.dll
2008-09-23 20:42:23 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-09-23 20:40:24 ----SHDC---- C:\Program Files\Common Files\WindowsLiveInstaller
2008-09-23 20:40:20 ----D---- C:\Program Files\Windows Live
2008-09-23 20:40:10 ----D---- C:\Documents and Settings\All Users\Application Data\WLInstaller
2008-09-23 03:09:44 ----HDC---- C:\WINDOWS\$NtUninstallKB908250$
2008-09-23 03:08:02 ----D---- C:\Program Files\MSXML 6.0
2008-09-23 03:07:24 ----HDC---- C:\WINDOWS\$NtUninstallKB925720$
2008-09-23 03:06:02 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2008-09-23 03:05:50 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2008-09-23 03:05:29 ----HDC---- C:\WINDOWS\$NtUninstallKB951066_0$
2008-09-23 03:01:03 ----HDC---- C:\WINDOWS\$NtUninstallKB954154_WM11$
2008-09-23 03:00:54 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
2008-09-23 02:55:52 ----D---- C:\Program Files\Veoh Networks
2008-09-23 02:22:12 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Copernic
2008-09-23 02:22:10 ----D---- C:\Program Files\Common Files\Copernic
2008-09-23 02:22:09 ----D---- C:\Program Files\Copernic Agent
2008-09-23 02:22:09 ----A---- C:\WINDOWS\CopernicAgentUninstall.exe
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\muweb.dll
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\mucltui.dll.mui
2008-09-23 01:25:48 ----A---- C:\WINDOWS\system32\mucltui.dll
2008-09-22 23:15:33 ----D---- C:\Documents and Settings\All Users\Application Data\BVRP Software
2008-09-22 23:14:49 ----RSHD---- C:\_Backup.RC
2008-09-22 23:14:47 ----HD---- C:\_Backup
2008-09-22 23:12:53 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Avanquest
2008-09-22 23:12:16 ----D---- C:\Program Files\Avanquest
2008-09-22 23:06:47 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-09-21 21:05:44 ----D---- C:\Program Files\FILE RECOVERY for Windows
2008-09-21 18:13:53 ----HDC---- C:\WINDOWS\$NtUninstallKB938464_0$
2008-09-21 18:12:54 ----A---- C:\WINDOWS\system32\MRT.exe
2008-09-21 18:12:48 ----HDC---- C:\WINDOWS\$NtUninstallKB952287_0$
2008-09-21 18:12:43 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
2008-09-21 18:12:38 ----HDC---- C:\WINDOWS\$NtUninstallKB950974_0$
2008-09-21 18:12:23 ----HDC---- C:\WINDOWS\$NtUninstallKB953838_0$
2008-09-21 18:12:17 ----HDC---- C:\WINDOWS\$NtUninstallKB952954_0$
2008-09-21 18:12:12 ----HDC---- C:\WINDOWS\$NtUninstallKB946648_0$
2008-09-21 18:12:08 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP10$
2008-09-21 18:11:56 ----HDC---- C:\WINDOWS\$NtUninstallKB953839$
2008-09-21 18:11:51 ----HDC---- C:\WINDOWS\$NtUninstallKB944338-v2$
2008-09-21 18:11:45 ----HDC---- C:\WINDOWS\$NtUninstallKB951748_0$
2008-09-21 18:11:40 ----HDC---- C:\WINDOWS\$NtUninstallKB951698_0$
2008-09-21 18:11:35 ----HDC---- C:\WINDOWS\$NtUninstallKB953356$
2008-09-21 18:11:32 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2_0$
2008-09-21 18:11:27 ----HDC---- C:\WINDOWS\$NtUninstallKB926239$
2008-09-21 18:11:23 ----N---- C:\WINDOWS\system32\spmsg.dll
2008-09-21 18:11:22 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2008-09-21 18:11:13 ----D---- C:\Program Files\Windows Media Connect 2
2008-09-21 18:11:03 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2008-09-21 18:10:35 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2008-09-21 18:10:25 ----D---- C:\42d35e341d9c6b57d4cbcf
2008-09-21 18:10:23 ----D---- C:\WINDOWS\system32\LogFiles
2008-09-21 18:10:19 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2008-09-21 18:10:10 ----D---- C:\1637ce17eb4eae094e41249521b28a
2008-09-21 18:09:56 ----HDC---- C:\WINDOWS\$NtUninstallKB925766$
2008-09-21 18:09:46 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2008-09-21 18:09:34 ----HDC---- C:\WINDOWS\$NtUninstallKB950762_0$
2008-09-21 18:09:26 ----HDC---- C:\WINDOWS\$NtUninstallKB950749$
2008-09-21 18:09:16 ----HDC---- C:\WINDOWS\$NtUninstallKB948590$
2008-09-21 18:09:12 ----HDC---- C:\WINDOWS\$NtUninstallKB945553$
2008-09-21 18:09:07 ----HDC---- C:\WINDOWS\$NtUninstallKB941693$
2008-09-21 17:03:17 ----HDC---- C:\WINDOWS\$NtUninstallKB943055$
2008-09-21 17:03:13 ----HDC---- C:\WINDOWS\$NtUninstallKB946026$
2008-09-21 17:03:09 ----HDC---- C:\WINDOWS\$NtUninstallKB943485$
2008-09-21 17:03:06 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-09-21 17:02:55 ----HDC---- C:\WINDOWS\$NtUninstallKB937894$
2008-09-21 17:02:50 ----HDC---- C:\WINDOWS\$NtUninstallKB944653$
2008-09-21 17:02:45 ----HDC---- C:\WINDOWS\$NtUninstallKB943460$
2008-09-21 17:01:31 ----D---- C:\Program Files\MSBuild
2008-09-21 16:58:23 ----D---- C:\WINDOWS\system32\XPSViewer
2008-09-21 16:57:32 ----D---- C:\Program Files\Reference Assemblies
2008-09-21 16:55:55 ----N---- C:\WINDOWS\system32\spmsg2.dll
2008-09-21 16:55:47 ----HDC---- C:\WINDOWS\$NtUninstallWIC$
2008-09-21 16:55:43 ----D---- C:\0b939189125f9c3e5ae27f65
2008-09-21 16:55:39 ----HDC---- C:\WINDOWS\$NtUninstallKB933729$
2008-09-21 16:55:32 ----HDC---- C:\WINDOWS\$NtUninstallKB936021$
2008-09-21 16:55:26 ----HDC---- C:\WINDOWS\$NtUninstallKB938127$
2008-09-21 16:55:20 ----HDC---- C:\WINDOWS\$NtUninstallKB938828$
2008-09-21 16:55:11 ----HDC---- C:\WINDOWS\$NtUninstallKB930494$
2008-09-21 16:55:01 ----HDC---- C:\WINDOWS\$NtUninstallKB925398_WMP64$
2008-09-21 16:54:47 ----HDC---- C:\WINDOWS\$NtUninstallKB935839$
2008-09-21 16:54:44 ----HDC---- C:\WINDOWS\$NtUninstallKB935840$
2008-09-21 16:54:39 ----HDC---- C:\WINDOWS\$NtUninstallKB929123$
2008-09-21 16:54:34 ----HDC---- C:\WINDOWS\$NtUninstallKB927891$
2008-09-21 16:54:30 ----HDC---- C:\WINDOWS\$NtUninstallKB930916$
2008-09-21 16:54:25 ----HDC---- C:\WINDOWS\$NtUninstallKB890046$
2008-09-21 16:54:21 ----HDC---- C:\WINDOWS\$NtUninstallKB932168$
2008-09-21 16:54:18 ----HDC---- C:\WINDOWS\$NtUninstallKB931261$
2008-09-21 16:54:14 ----HDC---- C:\WINDOWS\$NtUninstallKB930178$
2008-09-21 16:54:07 ----HDC---- C:\WINDOWS\$NtUninstallKB931784$
2008-09-21 16:54:01 ----HDC---- C:\WINDOWS\$NtUninstallKB925902$
2008-09-21 16:53:54 ----D---- C:\WINDOWS\system32\en-us
2008-09-21 16:53:42 ----HDC---- C:\WINDOWS\$NtUninstallKB925876$
2008-09-21 16:53:37 ----HDC---- C:\WINDOWS\$NtUninstallKB926436$
2008-09-21 16:53:33 ----HDC---- C:\WINDOWS\$NtUninstallKB918118$
2008-09-21 16:53:29 ----HDC---- C:\WINDOWS\$NtUninstallKB927779$
2008-09-21 16:53:25 ----HDC---- C:\WINDOWS\$NtUninstallKB924667$
2008-09-21 16:53:22 ----HDC---- C:\WINDOWS\$NtUninstallKB927802$
2008-09-21 16:53:18 ----HDC---- C:\WINDOWS\$NtUninstallKB928843$
2008-09-21 16:53:12 ----HDC---- C:\WINDOWS\$NtUninstallKB928255$
2008-09-21 16:53:08 ----HDC---- C:\WINDOWS\$NtUninstallKB926255$
2008-09-21 16:53:03 ----HDC---- C:\WINDOWS\$NtUninstallKB923980$
2008-09-21 16:52:59 ----HDC---- C:\WINDOWS\$NtUninstallKB924270$
2008-09-21 16:52:55 ----HDC---- C:\WINDOWS\$NtUninstallKB923191$
2008-09-21 16:52:50 ----HDC---- C:\WINDOWS\$NtUninstallKB924496$
2008-09-21 16:52:46 ----HDC---- C:\WINDOWS\$NtUninstallKB923414$
2008-09-21 16:52:42 ----HDC---- C:\WINDOWS\$NtUninstallKB920872$
2008-09-21 16:52:37 ----HDC---- C:\WINDOWS\$NtUninstallKB920685$
2008-09-21 16:52:32 ----HDC---- C:\WINDOWS\$NtUninstallKB916595$
2008-09-21 16:52:28 ----HDC---- C:\WINDOWS\$NtUninstallKB922582$
2008-09-21 16:52:21 ----HDC---- C:\WINDOWS\$NtUninstallKB920683$
2008-09-21 16:52:17 ----HDC---- C:\WINDOWS\$NtUninstallKB920670$
2008-09-21 16:52:12 ----HDC---- C:\WINDOWS\$NtUninstallKB914388$
2008-09-21 16:52:08 ----HDC---- C:\WINDOWS\$NtUninstallKB904942$
2008-09-21 16:52:04 ----HDC---- C:\WINDOWS\$NtUninstallKB911280$
2008-09-21 16:51:59 ----HDC---- C:\WINDOWS\$NtUninstallKB913580$
2008-09-21 16:51:55 ----HDC---- C:\WINDOWS\$NtUninstallKB918439$
2008-09-21 16:51:51 ----HDC---- C:\WINDOWS\$NtUninstallKB914389$
2008-09-21 16:51:45 ----HDC---- C:\WINDOWS\$NtUninstallKB908531$
2008-09-21 16:51:41 ----HDC---- C:\WINDOWS\$NtUninstallKB900485$
2008-09-21 16:51:30 ----HDC---- C:\WINDOWS\$NtUninstallKB913800$
2008-09-21 16:51:09 ----HDC---- C:\WINDOWS\$NtUninstallKB911562$
2008-09-21 16:51:05 ----HDC---- C:\WINDOWS\$NtUninstallKB912024$
2008-09-21 16:50:59 ----HDC---- C:\WINDOWS\$NtUninstallKB911927$
2008-09-21 16:49:01 ----SHD---- C:\Config.Msi
2008-09-21 16:48:22 ----HDC---- C:\WINDOWS\$NtUninstallKB908519$
2008-09-21 16:48:19 ----HDC---- C:\WINDOWS\$NtUninstallKB910437$
2008-09-21 16:48:13 ----HDC---- C:\WINDOWS\$NtUninstallbasecsp$
2008-09-21 16:48:06 ----HDC---- C:\WINDOWS\$NtUninstallKB900725$
2008-09-21 16:48:01 ----HDC---- C:\WINDOWS\$NtUninstallKB905749$
2008-09-21 16:47:58 ----HDC---- C:\WINDOWS\$NtUninstallKB905414$
2008-09-21 16:47:54 ----HDC---- C:\WINDOWS\$NtUninstallKB901017$
2008-09-21 16:47:45 ----HDC---- C:\WINDOWS\$NtUninstallKB902400$
2008-09-21 16:47:40 ----HDC---- C:\WINDOWS\$NtUninstallKB894391$
2008-09-21 16:47:36 ----HDC---- C:\WINDOWS\$NtUninstallKB896423$
2008-09-21 16:47:33 ----HDC---- C:\WINDOWS\$NtUninstallKB899587$
2008-09-21 16:47:29 ----HDC---- C:\WINDOWS\$NtUninstallKB899591$
2008-09-21 16:47:25 ----HDC---- C:\WINDOWS\$NtUninstallKB893756$
2008-09-21 16:47:21 ----HDC---- C:\WINDOWS\$NtUninstallKB896358$
2008-09-21 16:47:14 ----HDC---- C:\WINDOWS\$NtUninstallKB890859$
2008-09-21 16:47:10 ----HDC---- C:\WINDOWS\$NtUninstallKB901214$
2008-09-21 16:47:04 ----HDC---- C:\WINDOWS\$NtUninstallKB896344$
2008-09-21 16:46:59 ----HDC---- C:\WINDOWS\$NtUninstallKB896428$
2008-09-21 16:46:55 ----HDC---- C:\WINDOWS\$NtUninstallKB885835$
2008-09-21 16:46:52 ----HDC---- C:\WINDOWS\$NtUninstallKB891781$
2008-09-21 16:46:48 ----HDC---- C:\WINDOWS\$NtUninstallKB888302$
2008-09-21 16:46:45 ----HDC---- C:\WINDOWS\$NtUninstallKB885836$
2008-09-21 16:46:41 ----HDC---- C:\WINDOWS\$NtUninstallKB886185$
2008-09-21 16:46:35 ----HDC---- C:\WINDOWS\$NtUninstallKB873339$
2008-09-21 16:32:37 ----N---- C:\WINDOWS\system32\tsgqec.dll
2008-09-21 16:32:37 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2008-09-21 16:32:37 ----A---- C:\WINDOWS\system32\aaclient.dll
2008-09-21 16:28:29 ----N---- C:\WINDOWS\kb913800.exe
2008-09-21 16:22:46 ----A---- C:\WINDOWS\system32\fdco1ins.dll
2008-09-21 16:22:44 ----D---- C:\WINDOWS\NV4562036.TMP
2008-09-21 16:22:43 ----A---- C:\WINDOWS\system32\bdco1ins.dll
2008-09-21 16:22:42 ----A---- C:\WINDOWS\system32\nvusmb.exe
2008-09-21 16:22:25 ----A---- C:\WINDOWS\system32\NVUNINST.EXE
2008-09-21 16:19:59 ----D---- C:\Program Files\CyberLink
2008-09-21 16:19:54 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-09-21 16:19:21 ----A---- C:\WINDOWS\system32\msvcr71.dll
2008-09-21 16:19:21 ----A---- C:\WINDOWS\system32\msvcp71.dll
2008-09-21 16:19:10 ----D---- C:\Program Files\Adobe
2008-09-21 16:19:10 ----D---- C:\Documents and Settings\All Users\Application Data\Prism Deploy
2008-09-21 16:19:10 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2008-09-21 16:19:08 ----HD---- C:\Program Files\InstallShield Installation Information
2008-09-21 16:19:08 ----D---- C:\Program Files\Common Files\New Boundary
2008-09-21 16:19:00 ----D---- C:\Program Files\Digital Media Reader
2008-09-21 16:18:48 ----D---- C:\WINDOWS\Downloaded Installations
2008-09-21 16:18:48 ----D---- C:\Program Files\Common Files\InstallShield
2008-09-21 16:18:41 ----D---- C:\DriversApps
2008-09-21 16:18:18 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Mozilla
2008-09-21 16:11:43 ----SHD---- C:\WINDOWS\ftpcache
2008-09-21 16:08:29 ----D---- C:\SYSPREP
2008-09-21 16:08:22 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Identities
2008-09-21 16:08:22 ----ASH---- C:\Documents and Settings\KaraKristi\Application Data\desktop.ini
2008-09-21 16:08:21 ----SD---- C:\Documents and Settings\KaraKristi\Application Data\Microsoft
2008-09-21 16:07:45 ----D---- C:\Program Files\Mozilla Firefox
2008-09-21 16:05:47 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Opera
2008-09-21 16:05:32 ----D---- C:\Program Files\Opera
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\Iyvu9_32.dll
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\ir50_lcs.dll
2008-09-21 16:05:00 ----A---- C:\WINDOWS\system32\iacenc.dll
2008-09-21 16:04:48 ----A---- C:\WINDOWS\system32\OLEMSG32.DLL
2008-09-21 16:04:48 ----A---- C:\WINDOWS\system32\GAPI32.DLL
2008-09-21 16:04:39 ----D---- C:\Galleries
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTTWN80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTKRN80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTIMG80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTFIL80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LTEFX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFTIF80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFMSP80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFLMB80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFLMA80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFKODAK.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFPX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFPX7.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFFAX80N.DLL
2008-09-21 16:04:34 ----A---- C:\WINDOWS\system32\LFCMP80N.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\SCALE_EN.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\LFCAL80N.DLL
2008-09-21 16:04:33 ----A---- C:\WINDOWS\system32\LFBMP80N.DLL
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\SmtpX.DLL
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\MimeX.dll
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\MabryObj.dll
2008-09-21 16:03:42 ----A---- C:\WINDOWS\system32\EncodeX.dll
2008-09-21 16:03:39 ----N---- C:\WINDOWS\h263test.ini
2008-09-21 16:03:11 ----D---- C:\Program Files\Common Files\Intel Shared
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLPX.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLP6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLP5.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLM6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLM5.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPLA6.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\InetIPL.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\ijl15.dll
2008-09-21 16:02:21 ----A---- C:\WINDOWS\system32\Cpuinf32.dll
2008-09-21 16:02:14 ----D---- C:\Program Files\Web Publish
2008-09-21 16:02:11 ----A---- C:\WINDOWS\system32\LMRTREND.dll
2008-09-21 16:02:10 ----A---- C:\WINDOWS\system32\dxtmsft3.dll
2008-09-21 16:02:08 ----A---- C:\WINDOWS\system32\unam4ie.exe
2008-09-21 16:02:05 ----A---- C:\WINDOWS\system32\vidx16.dll
2008-09-21 16:02:05 ----A---- C:\WINDOWS\system32\qcut.dll
2008-09-21 16:01:56 ----D---- C:\Program Files\Intel
2008-09-21 16:01:55 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Help
2008-09-21 15:52:31 ----SHD---- C:\RECYCLER
2008-09-21 15:51:46 ----D---- C:\Program Files\Microsoft Works
2008-09-21 15:51:33 ----D---- C:\Program Files\Microsoft Visual Studio
2008-09-21 15:51:33 ----D---- C:\Program Files\Common Files\DESIGNER
2008-09-21 15:50:58 ----D---- C:\Program Files\Microsoft.NET
2008-09-21 15:50:14 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-09-21 15:47:17 ----A---- C:\WINDOWS\system32\hccoin.dll
2008-09-21 15:46:40 ----D---- C:\WINDOWS\SHELLNEW
2008-09-21 15:46:13 ----D---- C:\Program Files\Microsoft Office
2008-09-21 15:46:13 ----D---- C:\Documents and Settings\All Users\Application Data\Microsoft Help
2008-09-21 15:45:34 ----RHD---- C:\MSOCache
2008-09-21 15:45:20 ----SHD---- C:\System Volume Information
2008-09-21 15:42:09 ----D---- C:\WINDOWS\nview
2008-09-21 15:42:09 ----D---- C:\WINDOWS\NV40164012.TMP
2008-09-21 15:42:09 ----A---- C:\WINDOWS\system32\nvudisp.exe
2008-09-21 15:40:03 ----D---- C:\WINDOWS\Profiles
2008-09-21 15:40:02 ----D---- C:\Documents and Settings\KaraKristi\Application Data\InterTrust
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\MFCUIA32.DLL
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\MFCANS32.DLL
2008-09-21 15:38:49 ----N---- C:\WINDOWS\system32\INETWH32.DLL
2008-09-21 15:38:10 ----A---- C:\WINDOWS\system32\ksuser.dll
2008-09-21 15:38:01 ----D---- C:\WINDOWS\system32\Data
2008-09-21 15:34:35 ----A---- C:\WINDOWS\SBWIN.INI
2008-09-21 15:33:45 ----D---- C:\Program Files\Creative
2008-09-21 15:27:31 ----D---- C:\WINDOWS\system32\PreInstall
2008-09-21 15:27:29 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-09-21 15:27:07 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2008-09-21 15:19:00 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Macromedia
2008-09-21 15:18:19 ----D---- C:\Program Files\Common Files\Adobe
2008-09-21 15:12:13 ----D---- C:\Documents and Settings\KaraKristi\Application Data\Adobe
2008-09-21 15:11:27 ----D---- C:\WINDOWS\system32\Adobe
2008-09-21 15:11:08 ----D---- C:\Documents and Settings\All Users\Application Data\NOS
2008-09-21 15:04:54 ----D---- C:\WINDOWS\pss
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wups2.dll
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wucltui.dll.mui
2008-09-21 15:03:29 ----A---- C:\WINDOWS\system32\wuaueng.dll.mui
2008-09-21 15:03:28 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-09-21 15:03:28 ----A---- C:\WINDOWS\system32\wuapi.dll.mui
2008-09-21 13:25:02 ----A---- C:\WINDOWS\system32\wowfaxui.dll
2008-09-21 13:24:59 ----A---- C:\WINDOWS\system32\wowfax.dll
2008-09-21 13:24:52 ----A---- C:\WINDOWS\system32\usrvpa.dll
2008-09-21 13:24:49 ----A---- C:\WINDOWS\system32\usrvoica.dll
2008-09-21 13:24:46 ----A---- C:\WINDOWS\system32\usrv80a.dll
2008-09-21 13:24:42 ----A---- C:\WINDOWS\system32\usrv42a.dll
2008-09-21 13:24:39 ----A---- C:\WINDOWS\system32\usrsvpia.dll
2008-09-21 13:24:36 ----A---- C:\WINDOWS\system32\usrshuta.exe
2008-09-21 13:24:33 ----A---- C:\WINDOWS\system32\usrsdpia.dll
2008-09-21 13:24:29 ----A---- C:\WINDOWS\system32\usrrtosa.dll
2008-09-21 13:24:26 ----A---- C:\WINDOWS\system32\usrprbda.exe
2008-09-21 13:24:23 ----A---- C:\WINDOWS\system32\usrmlnka.exe
2008-09-21 13:24:20 ----A---- C:\WINDOWS\system32\usrlbva.dll
2008-09-21 13:24:16 ----A---- C:\WINDOWS\system32\usrfaxa.dll
2008-09-21 13:24:13 ----A---- C:\WINDOWS\system32\usrdtea.dll
2008-09-21 13:24:10 ----A---- C:\WINDOWS\system32\usrdpa.dll
2008-09-21 13:24:07 ----A---- C:\WINDOWS\system32\usrcoina.dll
2008-09-21 13:24:03 ----A---- C:\WINDOWS\system32\usrcntra.dll
2008-09-21 13:24:03 ----A---- C:\WINDOWS\system32\usbui.dll
2008-09-21 13:23:59 ----A---- C:\WINDOWS\system32\tsbyuv.dll
2008-09-21 13:23:56 ----A---- C:\WINDOWS\system32\streamci.dll
2008-09-21 13:23:56 ----A---- C:\WINDOWS\system32\storprop.dll
2008-09-21 13:23:53 ----A---- C:\WINDOWS\system32\sprio800.dll
2008-09-21 13:23:50 ----A---- C:\WINDOWS\system32\sprio600.dll
2008-09-21 13:23:45 ----A---- C:\WINDOWS\system32\spnike.dll
2008-09-21 13:23:42 ----A---- C:\WINDOWS\system32\pjlmon.dll
2008-09-21 13:23:42 ----A---- C:\WINDOWS\system32\pid.dll
2008-09-21 13:23:39 ----A---- C:\WINDOWS\system32\paqsp.dll
2008-09-21 13:23:35 ----A---- C:\WINDOWS\system32\nv4_disp.dll
2008-09-21 13:23:35 ----A---- C:\WINDOWS\system32\ntkrnlpa.exe
2008-09-21 13:23:31 ----A---- C:\WINDOWS\system32\msyuv.dll
2008-09-21 13:23:25 ----A---- C:\WINDOWS\system32\mdwmdmsp.dll
2008-09-21 13:23:23 ----A---- C:\WINDOWS\system32\iyuv_32.dll
2008-09-21 13:23:22 ----A---- C:\WINDOWS\system32\hid.dll
2008-09-21 13:23:20 ----A---- C:\WINDOWS\system32\dvdplay.exe
2008-09-21 13:22:30 ----A---- C:\WINDOWS\system32\dmutil.dll
2008-09-21 13:22:28 ----A---- C:\WINDOWS\system32\cnbjmon.dll
2008-09-21 13:21:42 ----A---- C:\WINDOWS\system32\zipfldr.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpsp2res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpsp1res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xpob2res.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xolehlp.dll
2008-09-21 13:21:40 ----A---- C:\WINDOWS\system32\xmlprovi.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xmlprov.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xenroll.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xcopy.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\xactsrv.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuweb.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wups.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wupdmgr.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wucltui.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauserv.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuaueng.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuauclt.exe
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wuapi.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wtsapi32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wstdecod.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsock32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsnmp32.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshtcpip.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshrm.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshnetbs.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshisn.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wship6.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshext.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshcon.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshbth.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wshatm.dll
2008-09-21 13:21:39 ----A---- C:\WINDOWS\system32\wsecedit.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscsvc.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscript.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wscntfy.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\ws2help.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\ws2_32.dll
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\write.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wpnpinst.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wpabaln.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wowexec.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wowdeb.exe
2008-09-21 13:21:38 ----A---- C:\WINDOWS\system32\wow32.dll
2008-09-21 13:21:37 ----A---- C:\WINDOWS\system32\wmstream.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmsdmoe.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpui.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpsrcwp.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmpshell.dll
2008-09-21 13:21:36 ----A---- C:\WINDOWS\system32\wmploc.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpencen.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpdxm.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpcore.dll
2008-09-21 13:21:35 ----A---- C:\WINDOWS\system32\wmpcd.dll
2008-09-21 13:21:34 ----A---- C:\WINDOWS\system32\wmpasf.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmiscmgr.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmiprop.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmi.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmerror.dll
2008-09-21 13:21:32 ----A---- C:\WINDOWS\system32\wmerrenu.dll
2008-09-21 13:21:31 ----N---- C:\WINDOWS\system32\_000010_.tmp.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wlnotify.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wldap32.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wkssvc.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winver.exe
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\wintrust.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winstrm.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsta.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsrv.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winspool.exe
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winsock.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winshfhc.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winscard.dll
2008-09-21 13:21:31 ----A---- C:\WINDOWS\system32\winrnr.dll
2008-09-21 13:21:30 ----A---- C:\WINDOWS\system32\winntbbu.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\winhlp32.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\winhelp.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winnls.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmsd.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmm.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winmine.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winlogon.exe
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winipsec.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\wininet.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winhttp.dll
2008-09-21 13:21:29 ----A---- C:\WINDOWS\system32\winhlp32.exe
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winfax.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winchat.exe
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\winbrand.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\win87em.dll
2008-09-21 13:21:28 ----A---- C:\WINDOWS\system32\win32spl.dll
2008-09-21 13:21:27 ----N---- C:\WINDOWS\system32\_000012_.tmp.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\win.com
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wifeman.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiavusd.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiavideo.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiashext.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaservc.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaservc(2).dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiascr.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiadss.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiadefui.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wiaacmgr.exe
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\wextract.exe
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\webvw.dll
2008-09-21 13:21:27 ----A---- C:\WINDOWS\system32\webhits.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webclnt.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webclnt(3).dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\webcheck.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\wdigest.dll
2008-09-21 13:21:26 ----A---- C:\WINDOWS\system32\wdigest(3).dll
2008-09-21 13:21:24 ----A---- C:\WINDOWS\system32\wavemsp.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\vmmreg32.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w3ssl.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32topl.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32tm.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\w32time.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vwipxspx.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vwipxspx.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssvc.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssapi.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vssadmin.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vss_ps.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vjoy.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga64k.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga256.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vga.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\vfpodbc.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\version.dll
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\verifier.exe
2008-09-21 13:21:23 ----A---- C:\WINDOWS\system32\verifier.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\ver.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vdmredir.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vdmdbg.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vcdex.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vbscript.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\vbajet32.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\uxtheme.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\utilman.exe
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\utildll.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\usp10.dll
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\userinit.exe
2008-09-21 13:21:22 ----A---- C:\WINDOWS\system32\userenv.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\user32.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\user.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\usbmon.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\urlmon.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\url.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\ureg.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\ups.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnpui.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnphost.dll
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnpcont.exe
2008-09-21 13:21:21 ----A---- C:\WINDOWS\system32\upnp.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twunk_32.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twunk_16.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twain_32.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\twain.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\untfs.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\unlodctr.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\uniplat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\unimdmat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umpnpmgr.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umpnpmgr(3).dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umdmxfrm.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\umandlg.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\ulib.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\ufat.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\udhisapi.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\typeperf.exe
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\typelib.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\txflog.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\txflog(3).dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\twext.dll
2008-09-21 13:21:20 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tslabels.ini
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tskill.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsddd.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsd32.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscon.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tsappcmp.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\trkwks.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tree.com
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\traffic.dll
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracert6.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracert.exe
2008-09-21 13:21:19 ----A---- C:\WINDOWS\system32\tracerpt.exe
2008-09-21 13:21:18 ----A---- C:\WINDOWS\system32\tourstart.exe
2008-09-21 13:21:18 ----A---- C:\WINDOWS\system32\toolhelp.dll
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsvrp.dll
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsvr.exe
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntsess.exe
2008-09-21 13:21:17 ----A---- C:\WINDOWS\system32\tlntadmn.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\themeui.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tftp.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\termmgr.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\telnet.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpsvcs.exe
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmonui.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmon.ini
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmon.dll
2008-09-21 13:21:16 ----A---- C:\WINDOWS\system32\tcpmib.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\TASKMAN.EXE
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tcmsetup.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskmgr.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskman.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tasklist.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\taskkill.exe
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapiui.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapisrv.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapisrv(3).dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapiperf.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi32.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi3.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\tapi.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\t2embed.dll
2008-09-21 13:21:15 ----A---- C:\WINDOWS\system32\systray.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\systeminfo.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syssetup.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysocmgr.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syskey.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysinv.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\sysedit.exe
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syncui.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\synceng.dll
2008-09-21 13:21:14 ----A---- C:\WINDOWS\system32\syncapp.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sxs.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sxs(3).dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\swprv.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\svcpack.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\svchost.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\subst.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\strmfilt.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\strmdll.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\storage.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stobject.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stimon.exe
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sti_ci.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\sti.dll
2008-09-21 13:21:13 ----A---- C:\WINDOWS\system32\stclient.dll
2008-09-21 13:21:12 ----N---- C:\WINDOWS\system32\_000003_.tmp.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\ssdpsrv.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\ssdpapi.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srvsvc.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srsvc.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srrstr.dll
2008-09-21 13:21:12 ----A---- C:\WINDOWS\system32\srclient.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlwoa.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlwid.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlunirl.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\spxcoins.dll
2008-09-21 13:21:11 ----A---- C:\WINDOWS\system32\sprestrt.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolsv.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolsv(2).exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spoolss.dll
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spnpinst.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spiisupd.exe
2008-09-21 13:21:08 ----A---- C:\WINDOWS\system32\spider.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sort.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sol.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\softpub.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\snmpsnap.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\snmpapi.dll
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sndvol32.exe
2008-09-21 13:21:07 ----A---- C:\WINDOWS\system32\sndrec32.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smss.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smlogsvc.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smlogcfg.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\smbinst.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbrccsp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbiop.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slbcsp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\slayerxp.dll
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\skeys.exe
2008-09-21 13:21:06 ----A---- C:\WINDOWS\system32\skdll.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sisbkup.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sigverif.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\sigtab.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shutdown.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shsvcs.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shsvcs(3).dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shscrap.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shrpubw.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shmgrate.exe
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shmedia.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shlwapi.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shimgvw.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shimeng.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shgina.dll
2008-09-21 13:21:05 ----A---- C:\WINDOWS\system32\shfolder.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(5).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(4).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell32(3).dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shell.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shdocvw.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shdoclc.dll
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\share.exe
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\shadow.exe
2008-09-21 13:21:04 ----A---- C:\WINDOWS\system32\sfmapi.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfcfiles.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc_os.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sfc.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setver.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setupdll.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setupapi.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\setup.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sethc.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\sessmgr.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\serwvdrv.dll
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\services.msc
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\services.exe
2008-09-21 13:21:03 ----A---- C:\WINDOWS\system32\servdeps.dll
2008-09-21 13:21:02 ----N---- C:\WINDOWS\system32\_000006_.tmp.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\serialui.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\senscfg.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sensapi.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sens.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sendmail.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sendcmsg.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\security.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secur32.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secpol.msc
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\seclogon.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\secedit.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdpblb.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdhcinst.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sdbinst.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scrrun.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scrobj.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scriptpw.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scredir.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sclgntfy.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schtasks.exe
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schedsvc.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\schannel.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scesrv.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\scecli.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sccsccp.dll
2008-09-21 13:21:02 ----A---- C:\WINDOWS\system32\sccbase.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scardsvr.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scardssp.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\scarddlg.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\sc.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\sbeio.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\savedump.exe
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\samsrv.dll
2008-09-21 13:21:01 ----A---- C:\WINDOWS\system32\samlib.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrslv.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrdm.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rwinsta.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\runonce.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rundll32.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\runas.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtutils.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtm.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtipxmib.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rtcshare.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpsp.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpperf.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvpmsg.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvp.ini
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsvp.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsopprov.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsop.msc
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsnotify.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmui.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmsink.exe
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsmps.dll
2008-09-21 13:21:00 ----A---- C:\WINDOWS\system32\rsm.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rshx32.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsh.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsfsaps.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rsaenh.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss(4).dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcss(3).dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rpcns4.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\routetab.dll
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\routemon.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\route.exe
2008-09-21 13:20:59 ----A---- C:\WINDOWS\system32\rnr20.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched32.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched20.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\riched20(2).dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rexec.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\resutils.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\reset.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\replace.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rend.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\remotepg.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\relog.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regwizc.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regwiz.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regsvr32.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regsvc.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regini.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regedt32.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\regapi.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\reg.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\redir.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\recover.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdshost.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpdd.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpclip.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rdchost.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcp.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcimlby.exe
2008-09-21 13:20:58 ----A---- C:\WINDOWS\system32\rcbdyctl.dll
2008-09-21 13:20:58 ----A---- C:\WINDOWS\regedit.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rastls.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rastapi.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasser.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rassapi.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasrad.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasppp.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasphone.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmxs.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmontr.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmans.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasmans(3).dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasman.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasdlg.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasdial.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasctrs.ini
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasctrs.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\raschap.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasautou.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasauto.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasapi32.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasadhlp.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\rasadhlp(3).dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\racpldlg.dll
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\qwinsta.exe
2008-09-21 13:20:57 ----A---- C:\WINDOWS\system32\query.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qprocess.exe
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qosname.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qmgr.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qedwipes.dll
2008-09-21 13:20:56 ----A---- C:\WINDOWS\system32\qedit.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qdv.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qcap.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\qappsrv.exe
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pubprn.vbs
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pstorsvc.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pstorec.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psnppagn.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pschdprf.ini
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\pschdprf.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psbase.dll
2008-09-21 13:20:55 ----A---- C:\WINDOWS\system32\psapi.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\proxycfg.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\proquota.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\progman.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\profmap.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prodspec.ini
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnqctl.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnport.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnmngr.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prnjobs.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prndrvr.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prncnfg.vbs
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\printui.dll
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\print.exe
2008-09-21 13:20:50 ----A---- C:\WINDOWS\system32\prflbmsg.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\powrprof.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\powercfg.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\polstore.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pnrpnsp.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pngfilt.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pmspl.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\plustab.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\ping6.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\ping.exe
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pifmgr.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\pidgen.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\photowiz.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfwci.ini
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfts.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfproc.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfos.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfnw.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfnet.dll
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfmon.msc
2008-09-21 13:20:49 ----A---- C:\WINDOWS\system32\perfmon.exe
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perffilt.ini
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfdisk.dll
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfctrs.dll
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\perfci.ini
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\pentnt.exe
2008-09-21 13:20:48 ----A---- C:\WINDOWS\system32\pdh.dll
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\pautoenr.dll
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\pathping.exe
2008-09-21 13:20:47 ----A---- C:\WINDOWS\system32\panmap.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\pagefileconfig.vbs
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\packager.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2psvc.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pnetsh.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pgraph.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2pgasvc.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\p2p.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osuninst.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osuninst.dll
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\osk.exe
2008-09-21 13:20:46 ----A---- C:\WINDOWS\system32\openfiles.exe
2008-09-21 13:20:45 ----N---- C:\WINDOWS\system32\_000008_.tmp.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\opengl32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olethk32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olesvr32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olesvr.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olepro32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleprn.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oledlg.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecnv32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32(4).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli32(3).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\olecli.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleaut32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleaccrc.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\oleacc.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32(4).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole32(3).dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2nls.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2disp.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\ole2.dll
2008-09-21 13:20:45 ----A---- C:\WINDOWS\system32\offfilt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odtext32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odpdx32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odfox32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odexl32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\oddbse32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbctrac.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcp32r.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcjt32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcji32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcint.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccu32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccr32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbccp32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcconf.exe
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcconf.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcbcp.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbcad32.exe
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc32gt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc32.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\odbc16gt.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\ocmanage.dll
2008-09-21 13:20:40 ----A---- C:\WINDOWS\system32\occache.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\objsel.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\oakley.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwwks.dll
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwscript.exe
2008-09-21 13:20:39 ----A---- C:\WINDOWS\system32\nwprovau.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwevent.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwcfg.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwapi32.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nwapi16.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\nw16.exe
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntvdmd.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntvdm.exe
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntshrui.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntsdexts.dll
2008-09-21 13:20:38 ----A---- C:\WINDOWS\system32\ntsd.exe
2008-09-21 13:20:37 ----A---- C:\WINDOWS\system32\ntprint.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmssvc.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsoprq.msc
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsmgr.msc
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsmgr.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsevt.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsdba.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmsapi.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntmarta.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlsapi.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanui2.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanui.dll
2008-09-21 13:20:36 ----A---- C:\WINDOWS\system32\ntlanman.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdsbcli.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdsapi.dll
2008-09-21 13:20:35 ----A---- C:\WINDOWS\system32\ntdll.dll
2008-09-21 13:20:34 ----A---- C:\WINDOWS\system32\ntbackup.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nslookup.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\npptools.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\notepad.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2008-09-21 13:20:33 ----A---- C:\WINDOWS\system32\nlsfunc.exe
2008-09-21 13:20:33 ----A---- C:\WINDOWS\notepad.exe
2008-09-21 13:20:32 ----A---- C:\WINDOWS\system32\nlhtml.dll
2008-09-21 13:20:32 ----A---- C:\WINDOWS\system32\newdev.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui2.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui1.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netui0.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netstat.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netsh.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netsetup.exe
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netrap.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netplwiz.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netmsg.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netman.dll
2008-09-21 13:20:31 ----A---- C:\WINDOWS\system32\netman(3).dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netlogon.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netid.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\neth.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netevent.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netdde.exe
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netcfgx.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi32.dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi32(3).dll
2008-09-21 13:20:30 ----A---- C:\WINDOWS\system32\netapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\net1.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\net.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddenb32.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddeapir.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nddeapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\ncxpnt.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\nbtstat.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\narrhook.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\narrator.exe
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\mydocs.dll
2008-09-21 13:20:29 ----A---- C:\WINDOWS\system32\mycomput.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxoci.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxex.dll
2008-09-21 13:20:28 ----A---- C:\WINDOWS\system32\mtxdm.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu(4).dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mtxclu(3).dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxmlr.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml3r.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml3.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml2r.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml2.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxml.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\msxbde40.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mswstr10.dll
2008-09-21 13:20:27 ----A---- C:\WINDOWS\system32\mswsock.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\mswebdvd.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\mswdat10.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msw3prt.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvideo.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvidc32.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvfw32.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt40.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt20.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcrt.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcp60.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcp50.dll
2008-09-21 13:20:26 ----A---- C:\WINDOWS\system32\msvcirt.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msvbvm60.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msvbvm50.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msv1_0.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msutb.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstscax.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstsc.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstlsapi.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstinit.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstime.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstext40.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\mstask.dll
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msswchx.exe
2008-09-21 13:20:25 ----A---- C:\WINDOWS\system32\msswch.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssip32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssign32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mssap.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrle32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrepl40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrecr40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrd3x40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrd2x40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrclr40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msrating.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msratelc.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msr2cenu.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msr2c.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msprivs.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msports.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspbde40.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspatcha.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\mspaint.exe
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msorcl32.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msorc32r.dll
2008-09-21 13:20:24 ----A---- C:\WINDOWS\system32\msoert2.dll
2008-09-21 13:20:23 ----A---- C:\WINDOWS\system32\msoeacct.dll
2008-09-21 13:20:23 ----A---- C:\WINDOWS\system32\msobjs.dll
2008-09-21 13:20:22 ----A---- C:\WINDOWS\system32\msnsspc.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msltus40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msls31.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\mslbui.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjtes40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjter40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjint40.dll
2008-09-21 13:20:16 ----A---- C:\WINDOWS\system32\msjetoledb40.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msjet40.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msisip.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimtf.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimsg.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msimg32.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msihnd.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msiexec.exe
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msieftp.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msidntld.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msidle.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msident.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\msi.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\mshtmler.dll
2008-09-21 13:20:15 ----A---- C:\WINDOWS\system32\mshtmled.dll
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshtml.dll
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshta.exe
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\mshearts.exe
2008-09-21 13:20:14 ----A---- C:\WINDOWS\system32\msgsvc.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msgina.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msg.exe
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msftedit.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msexcl40.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msexch40.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msencode.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msdxmlc.dll
2008-09-21 13:20:13 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtctm.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtclog.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdtc.exe
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdmo.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdart.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msdadiag.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msctfp.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msctf.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscpxl32.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscpx32r.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msconf.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscms.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscdexnt.exe
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\mscat32.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msaudite.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msasn1.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msapsspc.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\system32\msafd.dll
2008-09-21 13:20:12 ----A---- C:\WINDOWS\msdfmap.ini
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msacm32.dll
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msacm.dll
2008-09-21 13:20:11 ----A---- C:\WINDOWS\system32\msaatext.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mrinfo.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqutil.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqupgrd.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqtrig.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqtgsvc.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsvc.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsnap.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqsec.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqrtdep.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqrt.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqqm.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqperf.ini
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqperf.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqoa.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqise.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqgentr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqdscli.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqcertui.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqbkup.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mqad.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprui.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprmsg.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprdim.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprddm.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mprapi.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mpr.dll
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mpnotify.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\mplay32.exe
2008-09-21 13:20:10 ----A---- C:\WINDOWS\system32\MPG4DMOD.dll
2008-09-21 13:20:09 ----A---- C:\WINDOWS\system32\MP4SDMOD.dll
2008-09-21 13:20:09 ----A---- C:\WINDOWS\system32\MP43DMOD.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mountvol.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\moricons.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\more.com
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\modex.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\modemui.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mode.com
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mobsync.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mobsync.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mnmdd.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mmutilse.dll
2008-09-21 13:20:08 ----A---- C:\WINDOWS\system32\mmsystem.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmfutil.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmdrv.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcshext.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmcbase.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mmc.exe
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_qic.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_mtf.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mll_hp.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mlang.dll
2008-09-21 13:20:07 ----A---- C:\WINDOWS\system32\mimefilt.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\migpwd.exe
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\miglibnt.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\midimap.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\mgmtapi.dll
2008-09-21 13:20:06 ----A---- C:\WINDOWS\system32\mfcsubs.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc42u.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc42.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc40u.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mfc40.dll
2008-09-21 13:20:05 ----A---- C:\WINDOWS\system32\mf3216.dll
2008-09-21 13:20:04 ----A---- C:\WINDOWS\system32\mem.exe
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mdminst.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mdhcp.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciwave.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciseq.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciqtz32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciole32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciole16.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcicda.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mciavi32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mchgrcoi.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcdsrv32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcd32.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mcastmib.dll
2008-09-21 13:20:03 ----A---- C:\WINDOWS\system32\mapistub.dll
2008-09-21 13:20:02 ----N---- C:\WINDOWS\system32\_000013_.tmp.dll
2008-09-21 13:20:02 ----N---- C:\WINDOWS\system32\_000007_.tmp.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\makecab.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\magnify.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\mag_hook.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lzexpand.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lz32.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lusrmgr.msc
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lsass.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lsasrv.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lprmonui.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lprhelp.dll
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lpr.exe
2008-09-21 13:20:02 ----A---- C:\WINDOWS\system32\lpq.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lpk.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logonui.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logoff.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\logman.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\login.cmd
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loghours.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lodctr.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\locator.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localui.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localspl.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\localsec.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loadperf.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\loadfix.com
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lnkstub.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lmrt.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lmhsvc.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\linkinfo.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\linkinfo(2).dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\lights.exe
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licwmi.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licmgr10.dll
2008-09-21 13:20:01 ----A---- C:\WINDOWS\system32\licdll.dll
2008-09-21 13:20:00 ----A---- C:\WINDOWS\system32\langwrbk.dll
2008-09-21 13:19:20 ----N---- C:\WINDOWS\system32\_000011_.tmp.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\label.exe
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\krnl386.exe
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\keymgr.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kernel32.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kerberos.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kerberos(3).dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kdcom.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kd1394.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdycl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdycc.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbduzb.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusx.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusr.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdusl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdus.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdur.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdukx.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbduk.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtuq.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtuf.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdtat.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsw.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsp.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsmsno.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsmsfi.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsl1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsg.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdsf.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdru1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdru.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdro.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpo.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpl1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdpl.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdno1.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdno.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdnec.dll
2008-09-21 13:19:20 ----A---- C:\WINDOWS\system32\kbdne.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmon.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmlt48.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmlt47.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmaori.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdmac.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlv1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlv.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlt1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdlt.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdla.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdkyr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdkaz.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdit142.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdit.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdir.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinmal.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinben.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdinbe1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdic.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhu1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhu.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhept.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhela3.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhela2.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe319.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe220.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdhe.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgr1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgkl.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdgae.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfo.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfi1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfi.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdfc.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdest.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdes.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbddv.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdda.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz2.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz1.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcz.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdcan.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdca.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbu.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdblr.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbene.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdbe.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdazel.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kbdaze.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\KBDAL.DLL
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\kb16.com
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jsproxy.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jscript.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jobexec.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgsh400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgsd400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgpl400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgmd400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgdw400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jgaw400.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\jet500.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\ixsso.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\iuengine.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\itss.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\itircl.dll
2008-09-21 13:19:19 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\isign32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\irclass.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_qcx.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_qc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir50_32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir41_qcx.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir41_qc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ir32_32.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxwan.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxsap.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxrtmgr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxroute.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxrip.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxpromn.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipxmontr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipv6mon.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipv6.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsmsnap.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsecsvc.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsecsnp.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\ipsec6.exe
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprtrmgr.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprtprio.dll
2008-09-21 13:19:18 ----A---- C:\WINDOWS\system32\iprop.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ippromon.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipmontr.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iphlpapi.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iphlpapi(3).dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\ipconfig.exe
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\iologmsg.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\inseng.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\input.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\initpki.dll
2008-09-21 13:19:17 ----A---- C:\WINDOWS\system32\infosoft.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetres.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetppui.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetpp.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetmib1.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcplc.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcomm.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\inetcfg.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imm32.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imgutil.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imeshare.dll
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imapi.exe
2008-09-21 13:19:16 ----A---- C:\WINDOWS\system32\imagehlp.dll
2008-09-21 13:19:15 ----A---- C:\WINDOWS\system32\ils.dll
2008-09-21 13:19:15 ----A---- C:\WINDOWS\system32\iissuba.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\igmpagnt.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ifsutil.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ifmon.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iexpress.exe
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iesetup.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iernonce.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iepeers.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieencode.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieakui.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieaksie.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ieakeng.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\idq.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\icwphbk.dll
2008-09-21 13:19:14 ----A---- C:\WINDOWS\system32\icwdial.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icmui.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icmp.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icm32.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iccvid.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\icaapi.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassvcs.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassdo.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iassam.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasrecst.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasrad.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iaspolcy.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasnap.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iashlpr.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasads.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\iasacct.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\hypertrm.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\htui.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\httpapi.dll
2008-09-21 13:19:13 ----A---- C:\WINDOWS\system32\hticons.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hotplug.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hostname.exe
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetwiz.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetmon.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hnetcfg.dll
2008-09-21 13:19:12 ----A---- C:\WINDOWS\system32\hlink.dll
2008-09-21 13:19:11 ----A---- C:\WINDOWS\system32\hhsetup.dll
2008-09-21 13:19:11 ----A---- C:\WINDOWS\hh.exe
2008-09-21 13:19:10 ----A---- C:\WINDOWS\system32\help.exe
2008-09-21 13:19:10 ----A---- C:\WINDOWS\system32\h323msp.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\grpconv.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\graphics.com
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\graftabl.com
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpupdate.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gptext.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpresult.exe
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpkrsrc.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpkcsp.dll
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpedit.msc
2008-09-21 13:19:09 ----A---- C:\WINDOWS\system32\gpedit.dll
2008-09-21 13:19:08 ----A---- C:\WINDOWS\system32\glu32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\glmf32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\getuname.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\getmac.exe
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gdi32.dll
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gdi.exe
2008-09-21 13:19:07 ----A---- C:\WINDOWS\system32\gcdef.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fwcfg.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\ftsrch.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\ftp.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsutil.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsusd.dll
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsquirt.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\fsmgmt.msc
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\freecell.exe
2008-09-21 13:19:06 ----A---- C:\WINDOWS\system32\framebuf.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\format.com
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\forcedos.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontview.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontsub.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fontext.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fmifs.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fltmc.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fltlib.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fldrclnr.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fixmapi.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\finger.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\findstr.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\find.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\filemgmt.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\feclient.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fdeploy.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fde.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fc.exe
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\faultrep.dll
2008-09-21 13:19:05 ----A---- C:\WINDOWS\system32\fastopen.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\exts.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\extrac32.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\extmgr.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\expsrv.dll
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\expand.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\exe2bin.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\eventtriggers.exe
2008-09-21 13:19:04 ----A---- C:\WINDOWS\system32\eventquery.vbs
2008-09-21 13:19:04 ----A---- C:\WINDOWS\explorer.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventvwr.msc
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventvwr.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventlog.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventcreate.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eventcls.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\eudcedit.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentutl.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentprf.ini
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esentprf.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent97.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\esent(3).dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\es.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\ersvc.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\EqnClass.Dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\encapi.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\els.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\efsadu.dll
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\edlin.exe
2008-09-21 13:19:03 ----A---- C:\WINDOWS\system32\edit.com
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxtrans.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxmasf.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxdiagn.dll
2008-09-21 13:19:02 ----A---- C:\WINDOWS\system32\dxdiag.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dx8vb.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dx7vb.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dwwin.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dvdupgrd.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\duser.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dumprep.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dswave.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsuiext.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dssenh.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dssec.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsquery.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsprpres.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsprop.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsound3d.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsound.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dskquoui.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dskquota.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsdmoprp.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsdmo.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\dsauth.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\ds32gt.dll
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\ds16gt.dLL
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\drwtsn32.exe
2008-09-21 13:19:01 ----A---- C:\WINDOWS\system32\drwatson.exe
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drprov.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drmstor.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\drmclien.dll
2008-09-21 13:19:00 ----A---- C:\WINDOWS\system32\driverquery.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpwsockx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpwsock.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvvox.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvsetup.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvoice.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpvacm.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpserial.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnwsock.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnsvr.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnmodem.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnlobby.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnhupnp.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnhpast.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnet.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpnaddr.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpmodemx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplayx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplaysvr.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dplay.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dpcdll.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dosx.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\doskey.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\docprop2.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\docprop.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dnsapi.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmusic.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmsynth.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmstyle.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmserver.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmscript.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmremote.exe
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmocx.dll
2008-09-21 13:18:37 ----A---- C:\WINDOWS\system32\dmloader.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmintf.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmime.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdskres.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdskmgr.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmdlgs.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmconfig.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmcompos.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmband.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dmadmin.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dllhst3g.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dllhost.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dispex.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskperf.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskpart.exe
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskmgmt.msc
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcopy.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcopy.com
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\diskcomp.com
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dinput8.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dinput.dll
2008-09-21 13:18:36 ----A---- C:\WINDOWS\system32\dimap.dll
2008-09-21 13:18:35 ----N---- C:\WINDOWS\system32\_000009_.tmp.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\digest.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\diantz.exe
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\diactfrm.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpsapi.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpmon.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgsetup.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgrpsetu.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dgnet.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dfsshlex.dll
2008-09-21 13:18:35 ----A---- C:\WINDOWS\system32\dfrgui.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgsnap.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgres.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgntfs.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrgfat.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dfrg.msc
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devmgr.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devmgmt.msc
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\devenum.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskperf.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskmon.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\deskadp.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\defrag.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\debug.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddrawex.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddraw.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddeshare.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\ddeml.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dciman32.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbnmpntw.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbnetlib.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbmsrpcn.dll
2008-09-21 13:18:34 ----A---- C:\WINDOWS\system32\dbghelp.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\dbgeng.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\davclnt.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\datime.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\dataclen.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\danim.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dxof.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3drm.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dramp.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dpmesh.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dim700.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3dim.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3d9.dll
2008-09-21 13:18:33 ----A---- C:\WINDOWS\system32\d3d8thk.dll
2008-09-21 13:18:32 ----A---- C:\WINDOWS\system32\d3d8.dll
2008-09-21 13:18:31 ----RA---- C:\WINDOWS\system32\ctl3dv2.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\ctl3d32.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\ctfmon.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csseqchk.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csrss.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\csrsrv.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscui.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscript.exe
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cscdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptui.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptsvc.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptnet.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptext.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\cryptdlg.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\crypt32.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\crtdll.dll
2008-09-21 13:18:31 ----A---- C:\WINDOWS\system32\credui.dll
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\corpol.dll
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\convert.exe
2008-09-21 13:18:30 ----A---- C:\WINDOWS\system32\control.exe
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\console.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\conime.exe
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\confmsp.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comuid.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comsvcs.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comsnap.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comres.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\comrepl.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\compstui.dll
2008-09-21 13:18:29 ----A---- C:\WINDOWS\system32\compobj.dll
2008-09-21 13:18:28 ----A---- C:\WINDOWS\system32\compmgmt.msc
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\compatui.dll
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\compact.exe
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\comp.exe
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\commdlg.dll
2008-09-21 13:18:25 ----A---- C:\WINDOWS\system32\command.com
2008-09-21 13:18:24 ----N---- C:\WINDOWS\system32\_000005_.tmp.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comdlg32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comctl32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comcat.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\comaddin.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\colbact.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\colbact(3).dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cnvfat.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cnetcfg.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmutil.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmstp.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmsetacl.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmprops.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmpbk32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmmon32.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmdl32.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmdial32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmd.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\cmcfg32.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clusapi.dll
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clipsrv.exe
2008-09-21 13:18:24 ----A---- C:\WINDOWS\system32\clipbrd.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\shellstyle.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cliconfg.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cliconfg.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cleanmgr.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatq.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatq(3).dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clbcatex.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\clb.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ckcnv.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cisvc.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cipher.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciodm.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cidaemon.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cic.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciadv.msc
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\ciadmin.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chkntfs.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chkdsk.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\chcp.com
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\charmap.exe
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cfgmgr32.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2008-09-21 13:18:23 ----A---- C:\WINDOWS\system32\certmgr.msc
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\certmgr.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\certcli.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdosys.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdmodem.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdm.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cdfview.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\ccfgnt.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvut.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvut(3).dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrvps.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrv.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\catsrv(3).dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cards.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\capesnpn.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\camocx.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\calc.exe
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cacls.exe
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cabview.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\cabinet.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\btpanui.dll
2008-09-21 13:18:22 ----A---- C:\WINDOWS\system32\bthserv.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bthci.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browsewm.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browseui.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browser.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\browselc.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootvrfy.exe
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootvid.dll
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootok.exe
2008-09-21 13:18:21 ----A---- C:\WINDOWS\system32\bootcfg.exe
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\blastcln.exe
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\bidispl.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\batt.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\batmeter.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\basesrv.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avwav.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avtapi.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avmeter.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avifile.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avifil32.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avicap32.dll
2008-09-21 13:18:20 ----A---- C:\WINDOWS\system32\avicap.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autolfn.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autofmt.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autodisc.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autoconv.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\autochk.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\authz.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\authz(3).dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\auditusr.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\audiosrv.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\audiodev.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\attrib.exe
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atrace.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmpvcno.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmlib.dll
2008-09-21 13:18:19 ----A---- C:\WINDOWS\system32\atmfd.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atmadm.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atl.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\atkctrs.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\at.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asycfilt.dll
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_pfu.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_ldm.exe
2008-09-21 13:18:18 ----A---- C:\WINDOWS\system32\asr_fmt.exe
2008-09-21 13:18:15 ----A---- C:\WINDOWS\system32\asferror.dll
2008-09-21 13:18:14 ----A---- C:\WINDOWS\system32\arp.exe
2008-09-21 13:18:13 ----D---- C:\WINDOWS\SMINST
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\appmgr.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\appmgmts.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\apphelp.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\append.exe
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\apcups.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\amstream.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\alrsvc.dll
2008-09-21 13:18:13 ----A---- C:\WINDOWS\system32\alg.exe
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\ahui.exe
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\advpack.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\advapi32.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnw.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnt.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsnds.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsmsext.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsldpc.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adsldp.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\adptif.dll
2008-09-21 13:18:12 ----A---- C:\WINDOWS\system32\admparse.dll
2008-09-21 13:18:11 ----D---- C:\WINDOWS\I386
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\actxprxy.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\actmovie.exe
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\activeds.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\aclui.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\acledit.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\accwiz.exe
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\acctres.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\aaaamon.dll
2008-09-21 13:18:11 ----A---- C:\WINDOWS\system32\6to4svc.dll
2008-09-21 13:05:54 ----D---- C:\My Backup -- 08-09-21 0105PM
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nwiz.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwimg.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwdmcpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvshell.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccsrs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nview.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvdspsch.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcuda.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcplui.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcolor.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvappbar.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\keystone.exe

======List of files/folders modified in the last 1 months======

2008-10-13 15:33:18 ----D---- C:\WINDOWS\Temp
2008-10-13 15:09:47 ----RSH---- C:\boot.ini
2008-10-13 15:09:47 ----A---- C:\WINDOWS\win.ini
2008-10-13 15:09:47 ----A---- C:\WINDOWS\system.ini
2008-10-13 15:08:31 ----D---- C:\WINDOWS\Registration
2008-10-13 15:04:47 ----D---- C:\WINDOWS
2008-10-13 13:01:44 ----SHD---- C:\WINDOWS\Installer
2008-10-13 13:01:43 ----RD---- C:\Program Files
2008-10-13 12:14:52 ----D---- C:\WINDOWS\system32\drivers
2008-10-13 12:14:51 ----HD---- C:\WINDOWS\inf
2008-10-13 12:14:47 ----D---- C:\WINDOWS\system32\CatRoot2
2008-10-13 11:44:11 ----D---- C:\WINDOWS\system32
2008-10-13 11:43:34 ----RSHDC---- C:\WINDOWS\system32\dllcache
2008-10-13 11:42:49 ----D---- C:\WINDOWS\security
2008-10-13 07:34:36 ----SD---- C:\WINDOWS\Tasks
2008-10-12 19:52:36 ----D---- C:\WINDOWS\system32\Restore
2008-10-11 05:53:52 ----HD---- C:\WINDOWS\$hf_mig$
2008-10-10 19:28:34 ----D---- C:\WINDOWS\Help
2008-10-10 19:22:33 ----RSD---- C:\WINDOWS\assembly
2008-10-10 19:22:33 ----D---- C:\WINDOWS\Microsoft.NET
2008-10-10 19:14:24 ----D---- C:\WINDOWS\Debug
2008-10-10 17:15:20 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-10-10 17:08:55 ----D---- C:\WINDOWS\system32\wbem
2008-10-10 17:08:55 ----D---- C:\WINDOWS\system32\Setup
2008-10-10 17:08:55 ----D---- C:\WINDOWS\AppPatch
2008-10-10 17:08:53 ----RSD---- C:\WINDOWS\Fonts
2008-10-10 16:04:45 ----D---- C:\WINDOWS\system32\CatRoot
2008-10-10 16:01:46 ----D---- C:\Program Files\Messenger
2008-10-10 15:58:44 ----D---- C:\WINDOWS\WinSxS
2008-10-10 15:58:12 ----D---- C:\WINDOWS\system32\inetsrv
2008-10-10 15:58:11 ----D---- C:\WINDOWS\ime
2008-10-10 15:57:38 ----D---- C:\WINDOWS\system32\usmt
2008-10-10 15:57:33 ----D---- C:\Program Files\Internet Explorer
2008-10-10 15:57:29 ----D---- C:\WINDOWS\PeerNet
2008-10-10 15:57:29 ----D---- C:\Program Files\Movie Maker
2008-10-10 15:50:31 ----D---- C:\WINDOWS\system32\npp
2008-10-10 15:50:31 ----D---- C:\WINDOWS\mui
2008-10-10 15:50:28 ----D---- C:\WINDOWS\msagent
2008-10-10 15:50:25 ----D---- C:\WINDOWS\srchasst
2008-10-10 15:50:24 ----D---- C:\Program Files\NetMeeting
2008-10-10 15:50:22 ----D---- C:\WINDOWS\system32\Com
2008-10-10 15:50:18 ----D---- C:\Program Files\Windows NT
2008-10-10 15:50:18 ----D---- C:\Program Files\Windows Media Player
2008-10-10 15:50:18 ----D---- C:\Program Files\Outlook Express
2008-10-10 15:50:13 ----D---- C:\Program Files\Common Files\System
2008-10-10 15:49:49 ----D---- C:\WINDOWS\system32\oobe
2008-10-10 15:49:46 ----D---- C:\WINDOWS\system
2008-10-10 15:41:58 ----D---- C:\WINDOWS\ehome
2008-10-10 10:14:39 ----D---- C:\Program Files\Common Files
2008-10-08 13:41:58 ----A---- C:\AUTOEXEC.BAT
2008-10-06 11:55:48 ----D---- C:\WINDOWS\system32\config
2008-10-03 23:35:45 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-10-01 08:02:41 ----A---- C:\WINDOWS\system32\pncrt.dll
2008-09-28 20:36:43 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-09-27 22:30:41 ----D---- C:\WINDOWS\system32\Macromed
2008-09-27 08:21:25 ----D---- C:\WINDOWS\system32\DirectX
2008-09-27 08:19:44 ----SD---- C:\Documents and Settings\All Users\Application Data\Microsoft
2008-09-27 08:18:01 ----D---- C:\Program Files\Common Files\Microsoft Shared
2008-09-26 12:18:04 ----HD---- C:\Program Files\Uninstall Information
2008-09-26 00:42:04 ----D---- C:\My Backup -- 08-01-26 0134AM
2008-09-26 00:41:31 ----D---- C:\My Backup -- 05-01-03 0547AM
2008-09-25 01:30:27 ----D---- C:\WINDOWS\java
2008-09-25 00:07:23 ----D---- C:\WINDOWS\RegisteredPackages
2008-09-24 22:23:16 ----D---- C:\WINDOWS\Media
2008-09-24 22:21:25 ----D---- C:\Program Files\Online Services
2008-09-24 02:18:35 ----D---- C:\WINDOWS\SoftwareDistribution
2008-09-21 16:55:57 ----D---- C:\WINDOWS\system32\spool
2008-09-21 16:08:21 ----D---- C:\Documents and Settings
2008-09-21 15:52:12 ----D---- C:\WINDOWS\OPTIONS
2008-09-21 15:50:58 ----D---- C:\WINDOWS\pchealth
2008-09-21 13:25:07 ----D---- C:\Program Files\Common Files\Services
2008-09-21 13:25:06 ----D---- C:\WINDOWS\twain_32
2008-09-21 13:23:43 ----D---- C:\WINDOWS\system32\ras
2008-09-21 13:23:22 ----D---- C:\WINDOWS\system32\icsxml
2008-09-21 13:23:22 ----D---- C:\WINDOWS\system32\ias
2008-09-21 13:22:23 ----D---- C:\WINDOWS\system32\1033
2008-09-21 13:22:16 ----RD---- C:\WINDOWS\Web
2008-09-21 13:21:55 ----D---- C:\WINDOWS\Cursors
2008-09-21 13:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB903157$
2008-09-21 13:21:54 ----HDC---- C:\WINDOWS\$NtUninstallKB900325$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB899337$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB895961$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB891593$
2008-09-21 13:21:51 ----HDC---- C:\WINDOWS\$NtUninstallKB888795$
2008-09-21 13:17:08 ----RD---- C:\WINDOWS\Offline Web Pages
2008-09-21 13:16:54 ----SHD---- C:\WINDOWS\CSC
2008-09-21 13:16:42 ----D---- C:\WINDOWS\system32\URTTemp
2008-09-21 13:16:41 ----D---- C:\WINDOWS\system32\MsDtc
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwss.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvwddi.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvvitvs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvsvc32.exe
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvoglnt.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvnt4cpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmobls.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmctray.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccss.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvmccs.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvgames.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvdisps.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcpl.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcodins.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvcod.dll
2008-09-17 09:55:00 ----A---- C:\WINDOWS\system32\nvapi.dll

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AmdPPM;AMD HwPState Processor Driver; C:\WINDOWS\system32\DRIVERS\AmdPPM.sys [2007-04-16 33792]
R1 AvgLdx86;AVG AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2008-10-03 97928]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2008-10-03 26824]
R1 BANTExt;Belarc SMBios Access; C:\WINDOWS\System32\Drivers\BANTExt.sys [2008-02-27 3840]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R1 SCDEmu;SCDEmu; C:\WINDOWS\system32\drivers\SCDEmu.sys [2006-11-06 30988]
R1 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2004-08-10 12032]
R2 AvgTdiX;AVG8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2008-10-03 76040]
R2 fssfltr;FssFltr; C:\WINDOWS\system32\DRIVERS\fssfltr.sys [2008-09-04 56344]
R2 tmpreflt;tmpreflt; \??\C:\PROGRA~1\AVANQU~1\Fix-It\tmpreflt.sys []
R2 tmxpflt;tmxpflt; \??\C:\PROGRA~1\AVANQU~1\Fix-It\tmxpflt.sys []
R2 Vsapint;Vsapint; \??\C:\PROGRA~1\AVANQU~1\Fix-It\Vsapint.sys []
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2008-09-24 4122368]
R3 CDAVFS;CDAVFS; C:\WINDOWS\system32\DRIVERS\CDAVFS.sys [2008-10-13 67424]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2008-04-17 15464]
R3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2008-04-13 10368]
R3 ICam7fil;Intel(r) CS431 Audio Filter Driver; C:\WINDOWS\system32\drivers\icam7fil.sys [2001-07-31 19640]
R3 Icam7USB;Intel(r) PC Camera CS431; C:\WINDOWS\System32\Drivers\ICAM7D2.SYS [2001-07-31 158848]
R3 MailScan;MailScan; \??\C:\PROGRA~1\AVANQU~1\Fix-It\MailScan.sys []
R3 mouhid;Mouse HID Driver; C:\WINDOWS\system32\DRIVERS\mouhid.sys [2001-08-17 12160]
R3 nv;nv; C:\WINDOWS\system32\DRIVERS\nv4_mini.sys [2008-09-17 6132576]
R3 NVENETFD;NVIDIA nForce 10/100 Mbps Ethernet ; C:\WINDOWS\system32\DRIVERS\NVENETFD.sys [2008-08-01 54784]
R3 nvnetbus;NVIDIA Network Bus Enumerator; C:\WINDOWS\system32\DRIVERS\nvnetbus.sys [2008-08-01 22016]
R3 PPDrv;Protector Plus Driver (UnRegistered); \??\C:\Protector Plus\PPDrv.sys []
R3 PPEMSCAN;Protector Plus Email Scan Driver; \??\C:\Protector Plus\PPEMSCAN.sys []
R3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
R3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2008-04-13 60032]
R3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2008-04-13 32128]
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2008-04-13 30208]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2008-04-13 59520]
R3 usbohci;Microsoft USB Open Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbohci.sys [2008-04-13 17152]
R3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2008-04-13 25856]
R3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2008-04-13 15104]
R3 usbstor;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2008-04-13 26368]
S1 P3;Intel PentiumIII Processor Driver; C:\WINDOWS\system32\DRIVERS\p3.sys [2008-04-13 42752]
S3 Arp1394;1394 ARP Client Protocol; C:\WINDOWS\system32\DRIVERS\arp1394.sys [2008-04-13 60800]
S3 CCDECODE;Closed Caption Decoder; C:\WINDOWS\system32\DRIVERS\CCDECODE.sys [2008-04-13 17024]
S3 COMMONFX.DLL;COMMONFX.DLL; C:\WINDOWS\system32\COMMONFX.DLL [2007-04-18 98600]
S3 CT20XUT.DLL;CT20XUT.DLL; C:\WINDOWS\system32\CT20XUT.DLL [2007-04-12 164608]
S3 ctac32k;Creative AC3 Software Decoder; C:\WINDOWS\system32\drivers\ctac32k.sys [2007-04-10 511272]
S3 ctaud2k;Creative Audio Driver (WDM); C:\WINDOWS\system32\drivers\ctaud2k.sys [2007-04-10 520488]
S3 CTAUDFX.DLL;CTAUDFX.DLL; C:\WINDOWS\system32\CTAUDFX.DLL [2007-04-12 546048]
S3 ctdvda2k;Creative DVD-Audio Device Driver; C:\WINDOWS\system32\drivers\ctdvda2k.sys [2007-04-10 347128]
S3 CTEAPSFX.DLL;CTEAPSFX.DLL; C:\WINDOWS\system32\CTEAPSFX.DLL [2007-04-12 168192]
S3 CTEDSPFX.DLL;CTEDSPFX.DLL; C:\WINDOWS\system32\CTEDSPFX.DLL [2007-04-12 280320]
S3 CTEDSPIO.DLL;CTEDSPIO.DLL; C:\WINDOWS\system32\CTEDSPIO.DLL [2007-04-12 128768]
S3 CTEDSPSY.DLL;CTEDSPSY.DLL; C:\WINDOWS\system32\CTEDSPSY.DLL [2007-04-12 323328]
S3 CTERFXFX.DLL;CTERFXFX.DLL; C:\WINDOWS\system32\CTERFXFX.DLL [2007-04-12 94976]
S3 CTEXFIFX.DLL;CTEXFIFX.DLL; C:\WINDOWS\system32\CTEXFIFX.DLL [2007-04-12 1317632]
S3 ctgame;Game Port; C:\WINDOWS\system32\DRIVERS\ctgame.sys [2007-04-10 19112]
S3 CTHWIUT.DLL;CTHWIUT.DLL; C:\WINDOWS\system32\CTHWIUT.DLL [2007-04-12 66816]
S3 ctprxy2k;Creative Proxy Driver; C:\WINDOWS\system32\drivers\ctprxy2k.sys [2007-04-10 14632]
S3 CTSBLFX.DLL;CTSBLFX.DLL; C:\WINDOWS\system32\CTSBLFX.DLL [2007-04-12 560384]
S3 ctsfm2k;Creative SoundFont Management Device Driver; C:\WINDOWS\system32\drivers\ctsfm2k.sys [2007-04-10 157480]
S3 emupia;E-mu Plug-in Architecture Driver; C:\WINDOWS\system32\drivers\emupia2k.sys [2007-04-10 92968]
S3 ha10kx2k;Creative Hardware Abstract Layer Driver; C:\WINDOWS\system32\drivers\ha10kx2k.sys [2007-04-10 797992]
S3 hap16v2k;Creative P16V HAL Driver; C:\WINDOWS\system32\drivers\hap16v2k.sys [2007-04-10 163112]
S3 hap17v2k;Creative P17V HAL Driver; C:\WINDOWS\system32\drivers\hap17v2k.sys [2007-04-10 189736]
S3 L8042Kbd;Logitech SetPoint Keyboard Driver; C:\WINDOWS\system32\DRIVERS\L8042Kbd.sys [2008-02-29 20240]
S3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\WINDOWS\system32\DRIVERS\LHidFilt.Sys [2008-02-29 35344]
S3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\WINDOWS\system32\DRIVERS\LMouFilt.Sys [2008-02-29 36880]
S3 MHNDRV;MHN driver; C:\WINDOWS\system32\DRIVERS\mhndrv.sys [2004-08-10 11008]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\WINDOWS\system32\drivers\MSTEE.sys [2008-04-13 5504]
S3 mxnic;Macronix MX987xx Family Fast Ethernet NT Driver; C:\WINDOWS\system32\DRIVERS\mxnic.sys [2001-08-17 19968]
S3 NABTSFEC;NABTS/FEC VBI Codec; C:\WINDOWS\system32\DRIVERS\NABTSFEC.sys [2008-04-13 85248]
S3 NdisIP;Microsoft TV/Video Connection; C:\WINDOWS\system32\DRIVERS\NdisIP.sys [2008-04-13 10880]
S3 NIC1394;1394 Net Driver; C:\WINDOWS\system32\DRIVERS\nic1394.sys [2008-04-13 61824]
S3 ossrv;Creative OS Services Driver; C:\WINDOWS\system32\drivers\ctoss2k.sys [2007-04-10 126760]
S3 SLIP;BDA Slip De-Framer; C:\WINDOWS\system32\DRIVERS\SLIP.sys [2008-04-13 11136]
S3 streamip;BDA IPSink; C:\WINDOWS\system32\DRIVERS\StreamIP.sys [2008-04-13 15232]
S3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2008-04-13 20608]
S3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
S3 WSTCODEC;World Standard Teletext Codec; C:\WINDOWS\system32\DRIVERS\WSTCODEC.SYS [2008-04-13 19200]
S3 WudfPf;Windows Driver Foundation - User-mode Driver Framework Platform Driver; C:\WINDOWS\system32\DRIVERS\WudfPf.sys [2006-09-28 77568]
S3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 XDva197;XDva197; \??\C:\WINDOWS\system32\XDva197.sys []
S4 SpyEmrg;Spy Emergency Driver; C:\WINDOWS\System32\Drivers\spyemrg.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 aawservice;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe [2008-10-10 611664]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-10-01 116040]
R2 avg8emc;AVG8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-10-03 875288]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-10-03 231704]
R2 DiskSuiteService;PC Tools Disk Suite; C:\Program Files\PC Tools Disk Suite\DSService.exe [2008-07-30 464192]
R2 ehRecvr;Media Center Receiver Service; C:\WINDOWS\eHome\ehRecvr.exe [2006-10-09 237568]
R2 ehSched;Media Center Scheduler Service; C:\WINDOWS\eHome\ehSched.exe [2005-08-05 102912]
R2 Fix-It Task Manager;Fix-It Task Manager; C:\PROGRA~1\AVANQU~1\Fix-It\mxtask.exe [2008-08-26 152832]
R2 LexBceS;LexBce Server; C:\WINDOWS\system32\LEXBCES.EXE [2003-08-18 303104]
R2 McrdSvc;Media Center Extender Service; C:\WINDOWS\ehome\mcrdsvc.exe [2005-08-05 99328]
R2 NVSvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvsvc32.exe [2008-09-17 163908]
R2 ProtectorPlusService;Protector Plus Service (UnRegistered); C:\Protector Plus\PPServ.exe [2008-10-08 78504]
R2 WMDM PMSP Service;WMDM PMSP Service; C:\WINDOWS\system32\MsPMSPSv.exe [2000-06-26 53520]
S2 Creative Service for CDROM Access;Creative Service for CDROM Access; C:\WINDOWS\system32\CTsvcCDA.exe []
S2 CSIScanner;CSIScanner; C:\Program Files\PrevxCSI\prevxcsi.exe [2008-10-09 876088]
S2 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; c:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S2 ProtectorPlusAVMonitor;Protector Plus Anti-virus Monitor Service; C:\Protector Plus\PPAVMon.exe [2008-10-08 62120]
S2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2008-04-13 14336]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 MHN;MHN; C:\WINDOWS\System32\svchost.exe [2008-04-13 14336]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 fsssvc;Windows Live Family Safety; C:\Program Files\Windows Live\Family Safety\fsssvc.exe [2008-09-04 512536]
S4 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2008-08-29 33752]
S4 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S4 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S4 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-10-01 536872]
S4 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logishrd\Bluetooth\LBTServ.exe [2008-05-02 121360]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]
S4 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S4 PrismXL;PrismXL; C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS [2008-09-24 65536]
S4 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]

-----------------EOF-----------------
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby Shaba » October 14th, 2008, 8:34 am

There are traces of infection but before we remove them I would like to ask that are all these AVs in use and up-to-date?

AV: Protector Plus Anti-virus Software
AV: Avanquest VirusScanner Pro
AV: AVG Anti-Virus
AV: CyberDefender Internet Security
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: Malware removal log

Unread postby alwysbtchn » October 15th, 2008, 4:07 am

yes
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby Shaba » October 15th, 2008, 4:15 am

Then you should uninstall all except one antivirus.

Please post a fresh HijackThis log afterwards.
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland

Re: Malware removal log

Unread postby alwysbtchn » October 15th, 2008, 11:46 am

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 08:38:47, on 10/15/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\My Backup -- 08-09-21 0105PM\Program Files\NETGATE\Spy Emergency 2008\SpyEmergency.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\PROGRA~1\AVG\AVG8\avgam.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Winamp Remote\bin\OrbTray.exe
C:\WINDOWS\system32\msiexec.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://safesearch.cyberdefender.com/smallsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.myidentitydefender.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = dynhost.inetcam.com;register.inetcam.com
R3 - URLSearchHook: Winamp Search Class - {57BCA5FA-5DBB-45a2-B558-1755C3F6253B} - C:\Program Files\Winamp Toolbar\winamptb.dll
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O2 - BHO: Winamp Toolbar Loader - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {453F51E8-FEF5-4C54-B136-944BF434360C} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: (no name) - {8E9887CE-1786-475B-ADE4-2B1A65487FBA} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Windows Live Toolbar Beta - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: {fb910702-173e-323a-6024-ebabd5c9033e} - {e3309c5d-babe-4206-a323-e371207019bf} - (no file)
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
O3 - Toolbar: Veoh Browser Plug-in - {D0943516-5076-4020-A3B5-AEFAF26AB263} - C:\Program Files\Veoh Networks\Veoh\Plugins\reg\VeohToolbar.dll
O3 - Toolbar: &Windows Live Toolbar Beta - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinampAgent] "C:\Program Files\Winamp\winampa.exe"
O4 - HKCU\..\Run: [SpyEmergency] "C:\My Backup -- 08-09-21 0105PM\Program Files\NETGATE\Spy Emergency 2008\SpyEmergency.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Orb] "C:\Program Files\Winamp Remote\bin\OrbTray.exe" /background
O8 - Extra context menu item: &Winamp Search - C:\Documents and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Search Using Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: Bingo Luau by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Dice City Roller by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Lottso by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Scrabble by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: Tumble Bees by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: World Class Solitaire by pogo - http://game3.pogo.com/v/9.1.3.19/applet ... -en_US.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/St ... b55579.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZB ... b55579.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZP ... b55579.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/So ... b56986.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://www.update.microsoft.com/windows ... 2034459328
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftup ... 2228339109
O16 - DPF: {A5180646-FE0F-4C97-AA29-2A0F41515623} - http://zone.msn.com/bingame/zpagames/ZP ... b61895.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v ... b56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Me ... b56907.cab
O16 - DPF: {D8089245-3211-40F6-819B-9E5E92CD61A2} (FlashXControl Object) - https://signin3.valueactive.eu/Register ... lashax.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/St ... b55579.cab
O16 - DPF: {F7EDBBEA-1AD2-4EBF-AA07-D453CC29EE65} (Flash Casino Helper Object) - https://bellerock.microgaming.com/freeplay/FlashAX2.cab
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://zone.msn.com/bingame/zpagames/ZP ... b64162.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: dfmksc.dll,avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: tuvSIyxU - tuvSIyxU.dll (file missing)
O21 - SSODL: StrWeb - {63397320-E2E5-2180-D571-01E9F87169CF} - C:\Program Files\yjfcjyb\StrWeb.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Creative Service for CDROM Access - Unknown owner - C:\WINDOWS\system32\CTsvcCDA.exe (file missing)
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 10557 bytes
alwysbtchn
Regular Member
 
Posts: 47
Joined: October 10th, 2008, 6:42 pm
Location: san diego, CA

Re: Malware removal log

Unread postby Shaba » October 15th, 2008, 12:47 pm

Please download the OTMoveIt3 by OldTimer.
  • Save it to your desktop.
  • Please double-click OTMoveIt3.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
  • Copy the lines in the codebox below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):

    Code: Select all
    :files
    C:\WINDOWS\tasks\At1.job
    C:\WINDOWS\tasks\At10.job
    C:\WINDOWS\tasks\At11.job
    C:\WINDOWS\tasks\At12.job
    C:\WINDOWS\tasks\At13.job
    C:\WINDOWS\tasks\At14.job
    C:\WINDOWS\tasks\At15.job
    C:\WINDOWS\tasks\At16.job
    C:\WINDOWS\tasks\At17.job
    C:\WINDOWS\tasks\At18.job
    C:\WINDOWS\tasks\At19.job
    C:\WINDOWS\tasks\At2.job
    C:\WINDOWS\tasks\At20.job
    C:\WINDOWS\tasks\At21.job
    C:\WINDOWS\tasks\At22.job
    C:\WINDOWS\tasks\At23.job
    C:\WINDOWS\tasks\At24.job
    C:\WINDOWS\tasks\At25.job
    C:\WINDOWS\tasks\At26.job
    C:\WINDOWS\tasks\At27.job
    C:\WINDOWS\tasks\At28.job
    C:\WINDOWS\tasks\At29.job
    C:\WINDOWS\tasks\At3.job
    C:\WINDOWS\tasks\At30.job
    C:\WINDOWS\tasks\At31.job
    C:\WINDOWS\tasks\At32.job
    C:\WINDOWS\tasks\At33.job
    C:\WINDOWS\tasks\At34.job
    C:\WINDOWS\tasks\At35.job
    C:\WINDOWS\tasks\At36.job
    C:\WINDOWS\tasks\At37.job
    C:\WINDOWS\tasks\At38.job
    C:\WINDOWS\tasks\At39.job
    C:\WINDOWS\tasks\At4.job
    C:\WINDOWS\tasks\At40.job
    C:\WINDOWS\tasks\At41.job
    C:\WINDOWS\tasks\At42.job
    C:\WINDOWS\tasks\At43.job
    C:\WINDOWS\tasks\At44.job
    C:\WINDOWS\tasks\At45.job
    C:\WINDOWS\tasks\At46.job
    C:\WINDOWS\tasks\At47.job
    C:\WINDOWS\tasks\At48.job
    C:\WINDOWS\tasks\At5.job
    C:\WINDOWS\tasks\At6.job
    C:\WINDOWS\tasks\At7.job
    C:\WINDOWS\tasks\At8.job
    C:\WINDOWS\tasks\At9.job
    C:\win32upd.exe
    C:\WINDOWS\system32\xlpqcasj.ini
    C:\WINDOWS\system32\emljoqwy.dll
    C:\Program Files\yjfcjyb
    C:\Documents and Settings\All Users\Application Data\tclinany
    C:\WINDOWS\system32\eauqpmvw.ini
    C:\Documents and Settings\KaraKristi\Application Data\LimeWire
    C:\WINDOWS\system32\nvunrm.exe
    C:\WINDOWS\system32\fpbuiaoh.ini
    C:\WINDOWS\system32\rrklyafk.ini
    C:\WINDOWS\system32\noensywk.ini
    C:\WINDOWS\system32\ocxlvq.dll
    C:\WINDOWS\system32\hxhwocpg.dll
    C:\WINDOWS\system32\vsneryfl.dll
    C:\WINDOWS\system32\10Lpdc2R.exe.a_a
    C:\WINDOWS\system32\lsckuhjl.ini
    C:\WINDOWS\system32\2fe0ba39-.txt
    C:\WINDOWS\system32\SCbaKnmp.ini2
    C:\WINDOWS\system32\SCbaKnmp.ini
    C:\WINDOWS\S2FyYUtyaXN0aQ
    C:\WINDOWS\system32\zep
    C:\WINDOWS\system32\tcon
    C:\WINDOWS\system32\oib
    C:\WINDOWS\system32\CP6
    C:\WINDOWS\system32\EV19
    
    :reg
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{453F51E8-FEF5-4C54-B136-944BF434360C}]
    
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E9887CE-1786-475B-ADE4-2B1A65487FBA}]
    
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e3309c5d-babe-4206-a323-e371207019bf}]
    
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\24c37e47]
    
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BM27f04ddb]
    
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\prunnet]
    
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SVCHOST.EXE]
    
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\webHancer Agent]
    
    [-HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\wllvkizbsndy]
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
    "AppInit_DLLS"="avgrsstx.dll"
    
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\tuvSIyxU]
    
    [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
    "Authentication Packages"=hex(7):6d,73,76,31,5f,30,00,00
    
    :commands
    [EmptyTemp]
    

  • Return to OTMoveIt3, right click in the "Paste List of Files/Folders to Move" window (under the yellow bar) and choose Paste.
  • Click the red Moveit! button.
  • Copy everything in the Results window (under the green bar) to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
  • Close OTMoveIt3
Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes. In this case, after the reboot, open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTMoveIt\MovedFiles folder, and open the newest .log file present, and copy/paste the contents of that document back here in your next post.

Re-run rsit.

Post:

- a fresh rsit log
- otmoveit3 log
User avatar
Shaba
Admin/Teacher Emeritus
 
Posts: 26974
Joined: March 24th, 2006, 4:42 am
Location: Finland
Advertisement
Register to Remove

Next

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 110 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware