Hi Shaba
Logs as requested:
========== FILES ==========
C:\Program Files\Antispyware moved successfully.
========== SERVICES/DRIVERS ==========
Service\Driver AntispywareSrv stopped successfully.
Service\Driver AntispywareSrv deleted successfully.
OTM by OldTimer - Version 3.0.0.4 log created on 07072009_181400
Logfile of random's system information tool 1.06 (written by random/random)
Run by Leanne x at 2009-07-07 18:20:09
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 5 GB (15%) free of 33 GB
Total RAM: 1013 MB (18% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:20:54, on 07/07/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\notepad.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Leanne x\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Leanne x.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.sky.comR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBRR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBRR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.co.uk/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/?LinkId=69157R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://g.msn.co.uk/0SEENGB/SAOS01?FORM=TOOLBRR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer Provided By Sky Broadband
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: McAfee Phishing Filter - {27B4851A-3207-45A2-B947-BE8AFE6163AB} - c:\PROGRA~1\mcafee\msk\mskapbho.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - c:\PROGRA~1\mcafee\VIRUSS~1\scriptsn.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [mcagent_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
O8 - Extra context menu item: &Windows Live Search -
res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Sky - {08E730A4-FB02-45BD-A900-01E4AD8016F6} -
http://www.sky.com (file missing)
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) -
http://wwwimages.adobe.com/www.adobe.co ... nos/gp.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
http://fpdownload2.macromedia.com/get/f ... wflash.cabO18 - Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: getPlus(R) Helper - NOS Microsystems Ltd. - C:\Program Files\NOS\bin\getPlus_HelperSvc.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MBackMonitor - McAfee - C:\Program Files\McAfee\MBK\MBackMonitor.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee, Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
--
End of file - 8080 bytes
======Scheduled tasks folder======
C:\Windows\tasks\Check Updates for Windows Live Toolbar.job
C:\Windows\tasks\McDefragTask.job
C:\Windows\tasks\McQcTask.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2009-02-27 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{27B4851A-3207-45A2-B947-BE8AFE6163AB}]
McAfee Phishing Filter - c:\PROGRA~1\mcafee\msk\mskapbho.dll [2009-01-09 246800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7DB2D5A0-7241-4E79-B68D-6309F01C5231}]
scriptproxy - c:\PROGRA~1\mcafee\VIRUSS~1\scriptsn.dll [2009-03-25 62784]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7E853D72-626A-48EC-A868-BA8D5E23E045}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-06-15 259696]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.3572\swg.dll [2009-04-16 668656]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0}]
Windows Live Toolbar Helper - C:\Program Files\Windows Live Toolbar\msntb.dll [2007-10-19 546320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll [2009-04-29 470512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-03-09 35840]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - Windows Live Toolbar - C:\Program Files\Windows Live Toolbar\msntb.dll [2007-10-19 546320]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2009-06-15 259696]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2009-05-13 177472]
"mcagent_exe"=C:\Program Files\McAfee.com\Agent\mcagent.exe [2009-01-08 645328]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2009-02-27 35696]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-06-05 292136]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-11 1233920]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2008-12-23 39408]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MsnMsgr]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Persistence]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
[]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
[]
C:\Users\Leanne x\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OneNote 2007 Screen Clipper and Launcher.lnk - C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2008-02-11 204800]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\Windows\system32\wpdshserviceobj.dll [2008-01-19 131584]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\mcmscsvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MCODS]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MpfService]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DisableTaskMgr"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"DisableTaskMgr"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoWindowsUpdate"=0
"NoThumbnailCache"=1
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2009-07-07 18:14:00 ----D---- C:\_OTM
2009-07-07 18:06:08 ----D---- C:\ProgramData\WindowsSearch
2009-07-06 23:06:42 ----D---- C:\Program Files\Mozilla Firefox
2009-07-06 13:51:29 ----D---- C:\Program Files\iPod
2009-07-06 13:50:27 ----D---- C:\Program Files\iTunes
2009-07-06 13:44:40 ----D---- C:\Program Files\QuickTime
2009-07-05 17:21:34 ----D---- C:\rsit
2009-07-03 00:17:07 ----D---- C:\Users\Leanne x\AppData\Roaming\Malwarebytes
2009-07-03 00:16:55 ----D---- C:\ProgramData\Malwarebytes
2009-07-03 00:16:54 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-07-02 22:06:32 ----D---- C:\Windows\system32\eu-ES
2009-07-02 22:06:32 ----D---- C:\Windows\system32\ca-ES
2009-07-02 22:06:27 ----D---- C:\Windows\system32\vi-VN
2009-07-02 21:30:24 ----D---- C:\Windows\system32\EventProviders
2009-07-02 21:28:36 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2009-07-02 21:28:32 ----A---- C:\Windows\system32\SLCExt.dll
2009-07-02 21:28:31 ----A---- C:\Windows\system32\SLsvc.exe
2009-07-02 21:28:29 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2009-07-02 21:28:29 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2009-07-02 21:28:28 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2009-07-02 21:28:24 ----A---- C:\Windows\system32\mssrch.dll
2009-07-02 21:28:21 ----A---- C:\Windows\system32\tquery.dll
2009-07-02 21:28:20 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-07-02 21:28:20 ----A---- C:\Windows\system32\lsasrv.dll
2009-07-02 21:28:19 ----A---- C:\Windows\system32\scavenge.dll
2009-07-02 21:28:19 ----A---- C:\Windows\system32\RMActivate_isv.exe
2009-07-02 21:28:19 ----A---- C:\Windows\system32\RMActivate.exe
2009-07-02 21:28:18 ----A---- C:\Windows\system32\msi.dll
2009-07-02 21:28:17 ----A---- C:\Windows\system32\imapi2fs.dll
2009-07-02 21:28:15 ----A---- C:\Windows\system32\WscEapPr.dll
2009-07-02 21:28:15 ----A---- C:\Windows\system32\wcnwiz2.dll
2009-07-02 21:28:15 ----A---- C:\Windows\system32\sysmain.dll
2009-07-02 21:28:15 ----A---- C:\Windows\system32\secproc_isv.dll
2009-07-02 21:28:13 ----A---- C:\Windows\system32\mf.dll
2009-07-02 21:28:13 ----A---- C:\Windows\system32\icardagt.exe
2009-07-02 21:28:12 ----A---- C:\Windows\system32\EhStorShell.dll
2009-07-02 21:28:12 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2009-07-02 21:28:11 ----A---- C:\Windows\system32\spreview.exe
2009-07-02 21:28:11 ----A---- C:\Windows\system32\spinstall.exe
2009-07-02 21:28:11 ----A---- C:\Windows\system32\drmv2clt.dll
2009-07-02 21:28:09 ----A---- C:\Windows\system32\spwizui.dll
2009-07-02 21:28:09 ----A---- C:\Windows\system32\secproc.dll
2009-07-02 21:28:09 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2009-07-02 21:28:08 ----A---- C:\Windows\system32\shell32.dll
2009-07-02 21:28:07 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-07-02 21:28:07 ----A---- C:\Windows\system32\p2psvc.dll
2009-07-02 21:28:07 ----A---- C:\Windows\system32\mssvp.dll
2009-07-02 21:28:06 ----A---- C:\Windows\system32\mssphtb.dll
2009-07-02 21:28:06 ----A---- C:\Windows\system32\mssph.dll
2009-07-02 21:28:06 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2009-07-02 21:28:06 ----A---- C:\Windows\system32\mscoree.dll
2009-07-02 21:28:06 ----A---- C:\Windows\system32\imapi2.dll
2009-07-02 21:28:05 ----A---- C:\Windows\system32\sdohlp.dll
2009-07-02 21:28:05 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-07-02 21:28:04 ----A---- C:\Windows\system32\IMJP10K.DLL
2009-07-02 21:28:04 ----A---- C:\Windows\system32\esent.dll
2009-07-02 21:28:03 ----A---- C:\Windows\system32\sperror.dll
2009-07-02 21:28:03 ----A---- C:\Windows\system32\DevicePairing.dll
2009-07-02 21:28:02 ----A---- C:\Windows\system32\wevtsvc.dll
2009-07-02 21:28:02 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2009-07-02 21:28:02 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-07-02 21:28:02 ----A---- C:\Windows\system32\korwbrkr.dll
2009-07-02 21:28:01 ----A---- C:\Windows\system32\wmp.dll
2009-07-02 21:28:01 ----A---- C:\Windows\system32\SLC.dll
2009-07-02 21:28:01 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2009-07-02 21:28:01 ----A---- C:\Windows\system32\msshsq.dll
2009-07-02 21:28:01 ----A---- C:\Windows\system32\IasMigReader.exe
2009-07-02 21:28:00 ----A---- C:\Windows\system32\WMVCORE.DLL
2009-07-02 21:27:59 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-07-02 21:27:59 ----A---- C:\Windows\system32\msjet40.dll
2009-07-02 21:27:59 ----A---- C:\Windows\system32\MPSSVC.dll
2009-07-02 21:27:58 ----A---- C:\Windows\system32\Query.dll
2009-07-02 21:27:58 ----A---- C:\Windows\system32\msxml6.dll
2009-07-02 21:27:57 ----A---- C:\Windows\system32\qmgr.dll
2009-07-02 21:27:57 ----A---- C:\Windows\system32\msexch40.dll
2009-07-02 21:27:56 ----A---- C:\Windows\system32\P2PGraph.dll
2009-07-02 21:27:56 ----A---- C:\Windows\system32\ole32.dll
2009-07-02 21:27:56 ----A---- C:\Windows\system32\diagperf.dll
2009-07-02 21:27:55 ----A---- C:\Windows\system32\winload.exe
2009-07-02 21:27:55 ----A---- C:\Windows\system32\srchadmin.dll
2009-07-02 21:27:55 ----A---- C:\Windows\system32\ntdll.dll
2009-07-02 21:27:55 ----A---- C:\Windows\system32\msxml3.dll
2009-07-02 21:27:54 ----A---- C:\Windows\system32\uDWM.dll
2009-07-02 21:27:54 ----A---- C:\Windows\system32\mmc.exe
2009-07-02 21:27:54 ----A---- C:\Windows\system32\mblctr.exe
2009-07-02 21:27:54 ----A---- C:\Windows\system32\EncDec.dll
2009-07-02 21:27:53 ----A---- C:\Windows\system32\riched20.dll
2009-07-02 21:27:53 ----A---- C:\Windows\system32\IasMigPlugin.dll
2009-07-02 21:27:53 ----A---- C:\Windows\system32\fdBth.dll
2009-07-02 21:27:53 ----A---- C:\Windows\system32\dfsr.exe
2009-07-02 21:27:52 ----A---- C:\Windows\system32\RacEngn.dll
2009-07-02 21:27:51 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-07-02 21:27:51 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-07-02 21:27:51 ----A---- C:\Windows\system32\milcore.dll
2009-07-02 21:27:51 ----A---- C:\Windows\system32\kernel32.dll
2009-07-02 21:27:50 ----A---- C:\Windows\system32\spoolss.dll
2009-07-02 21:27:50 ----A---- C:\Windows\system32\schedsvc.dll
2009-07-02 21:27:50 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2009-07-02 21:27:50 ----A---- C:\Windows\system32\EhStorAPI.dll
2009-07-02 21:27:50 ----A---- C:\Windows\system32\CertEnroll.dll
2009-07-02 21:27:49 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2009-07-02 21:27:48 ----A---- C:\Windows\system32\msvcp60.dll
2009-07-02 21:27:48 ----A---- C:\Windows\system32\msjtes40.dll
2009-07-02 21:27:48 ----A---- C:\Windows\system32\infocardapi.dll
2009-07-02 21:27:48 ----A---- C:\Windows\system32\gpedit.dll
2009-07-02 21:27:47 ----A---- C:\Windows\system32\WinSAT.exe
2009-07-02 21:27:47 ----A---- C:\Windows\system32\es.dll
2009-07-02 21:27:46 ----A---- C:\Windows\system32\PresentationSettings.exe
2009-07-02 21:27:46 ----A---- C:\Windows\system32\mstext40.dll
2009-07-02 21:27:46 ----A---- C:\Windows\system32\Magnify.exe
2009-07-02 21:27:46 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2009-07-02 21:27:46 ----A---- C:\Windows\system32\advapi32.dll
2009-07-02 21:27:45 ----A---- C:\Windows\system32\WMPhoto.dll
2009-07-02 21:27:45 ----A---- C:\Windows\system32\WebClnt.dll
2009-07-02 21:27:44 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2009-07-02 21:27:44 ----A---- C:\Windows\system32\slwmi.dll
2009-07-02 21:27:44 ----A---- C:\Windows\system32\msxbde40.dll
2009-07-02 21:27:44 ----A---- C:\Windows\system32\msexcl40.dll
2009-07-02 21:27:44 ----A---- C:\Windows\system32\comsvcs.dll
2009-07-02 21:27:43 ----A---- C:\Windows\system32\vssapi.dll
2009-07-02 21:27:43 ----A---- C:\Windows\system32\authui.dll
2009-07-02 21:27:42 ----A---- C:\Windows\system32\PresentationHost.exe
2009-07-02 21:27:42 ----A---- C:\Windows\system32\NetProjW.dll
2009-07-02 21:27:42 ----A---- C:\Windows\system32\mstscax.dll
2009-07-02 21:27:42 ----A---- C:\Windows\system32\msrepl40.dll
2009-07-02 21:27:41 ----A---- C:\Windows\system32\propsys.dll
2009-07-02 21:27:41 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-07-02 21:27:41 ----A---- C:\Windows\system32\newdev.dll
2009-07-02 21:27:41 ----A---- C:\Windows\system32\iasrecst.dll
2009-07-02 21:27:40 ----A---- C:\Windows\system32\rpcss.dll
2009-07-02 21:27:40 ----A---- C:\Windows\system32\gpsvc.dll
2009-07-02 21:27:40 ----A---- C:\Windows\system32\eudcedit.exe
2009-07-02 21:27:40 ----A---- C:\Windows\system32\crypt32.dll
2009-07-02 21:27:40 ----A---- C:\Windows\explorer.exe
2009-07-02 21:27:39 ----A---- C:\Windows\system32\setupapi.dll
2009-07-02 21:27:39 ----A---- C:\Windows\system32\mspbde40.dll
2009-07-02 21:27:39 ----A---- C:\Windows\system32\d3d9.dll
2009-07-02 21:27:38 ----A---- C:\Windows\system32\msltus40.dll
2009-07-02 21:27:38 ----A---- C:\Windows\system32\davclnt.dll
2009-07-02 21:27:37 ----A---- C:\Windows\system32\shlwapi.dll
2009-07-02 21:27:37 ----A---- C:\Windows\system32\msrd3x40.dll
2009-07-02 21:27:37 ----A---- C:\Windows\system32\mfc42.dll
2009-07-02 21:27:37 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2009-07-02 21:27:37 ----A---- C:\Windows\system32\EhStorAuthn.dll
2009-07-02 21:27:36 ----A---- C:\Windows\system32\wevtapi.dll
2009-07-02 21:27:36 ----A---- C:\Windows\system32\photowiz.dll
2009-07-02 21:27:36 ----A---- C:\Windows\system32\nlhtml.dll
2009-07-02 21:27:36 ----A---- C:\Windows\system32\msdtctm.dll
2009-07-02 21:27:36 ----A---- C:\Windows\system32\browseui.dll
2009-07-02 21:27:35 ----A---- C:\Windows\system32\user32.dll
2009-07-02 21:27:34 ----A---- C:\Windows\system32\win32spl.dll
2009-07-02 21:27:34 ----A---- C:\Windows\system32\samsrv.dll
2009-07-02 21:27:34 ----A---- C:\Windows\system32\quartz.dll
2009-07-02 21:27:34 ----A---- C:\Windows\system32\ci.dll
2009-07-02 21:27:33 ----A---- C:\Windows\system32\WcnNetsh.dll
2009-07-02 21:27:33 ----A---- C:\Windows\system32\SLCommDlg.dll
2009-07-02 21:27:33 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-07-02 21:27:33 ----A---- C:\Windows\system32\oleaut32.dll
2009-07-02 21:27:33 ----A---- C:\Windows\system32\msv1_0.dll
2009-07-02 21:27:33 ----A---- C:\Windows\system32\kerberos.dll
2009-07-02 21:27:33 ----A---- C:\Windows\system32\IKEEXT.DLL
2009-07-02 21:27:32 ----A---- C:\Windows\system32\winhttp.dll
2009-07-02 21:27:32 ----A---- C:\Windows\system32\netshell.dll
2009-07-02 21:27:32 ----A---- C:\Windows\system32\mswstr10.dll
2009-07-02 21:27:32 ----A---- C:\Windows\system32\compcln.exe
2009-07-02 21:27:32 ----A---- C:\Windows\system32\apds.dll
2009-07-02 21:27:31 ----A---- C:\Windows\system32\xmlfilter.dll
2009-07-02 21:27:31 ----A---- C:\Windows\system32\msctf.dll
2009-07-02 21:27:31 ----A---- C:\Windows\system32\emdmgmt.dll
2009-07-02 21:27:31 ----A---- C:\Windows\system32\audiosrv.dll
2009-07-02 21:27:30 ----A---- C:\Windows\system32\VSSVC.exe
2009-07-02 21:27:30 ----A---- C:\Windows\system32\QAGENTRT.DLL
2009-07-02 21:27:30 ----A---- C:\Windows\system32\msvcrt.dll
2009-07-02 21:27:30 ----A---- C:\Windows\system32\gdi32.dll
2009-07-02 21:27:29 ----A---- C:\Windows\system32\sqlsrv32.dll
2009-07-02 21:27:29 ----A---- C:\Windows\system32\SLUI.exe
2009-07-02 21:27:29 ----A---- C:\Windows\system32\msrd2x40.dll
2009-07-02 21:27:29 ----A---- C:\Windows\system32\mfc42u.dll
2009-07-02 21:27:29 ----A---- C:\Windows\system32\iphlpsvc.dll
2009-07-02 21:27:29 ----A---- C:\Windows\system32\eapphost.dll
2009-07-02 21:27:28 ----A---- C:\Windows\system32\propdefs.dll
2009-07-02 21:27:28 ----A---- C:\Windows\system32\odbc32.dll
2009-07-02 21:27:27 ----A---- C:\Windows\system32\winresume.exe
2009-07-02 21:27:27 ----A---- C:\Windows\system32\shdocvw.dll
2009-07-02 21:27:26 ----A---- C:\Windows\system32\wevtutil.exe
2009-07-02 21:27:26 ----A---- C:\Windows\system32\dbgeng.dll
2009-07-02 21:27:25 ----A---- C:\Windows\system32\mssitlb.dll
2009-07-02 21:27:24 ----A---- C:\Windows\system32\WsmSvc.dll
2009-07-02 21:27:24 ----A---- C:\Windows\system32\swprv.dll
2009-07-02 21:27:24 ----A---- C:\Windows\system32\mmcndmgr.dll
2009-07-02 21:27:23 ----A---- C:\Windows\system32\vds.exe
2009-07-02 21:27:23 ----A---- C:\Windows\system32\usp10.dll
2009-07-02 21:27:22 ----A---- C:\Windows\system32\schannel.dll
2009-07-02 21:27:22 ----A---- C:\Windows\system32\netlogon.dll
2009-07-02 21:27:22 ----A---- C:\Windows\system32\msscb.dll
2009-07-02 21:27:22 ----A---- C:\Windows\system32\msctfp.dll
2009-07-02 21:27:22 ----A---- C:\Windows\system32\fdBthProxy.dll
2009-07-02 21:27:22 ----A---- C:\Windows\system32\drvinst.exe
2009-07-02 21:27:22 ----A---- C:\Windows\system32\devmgr.dll
2009-07-02 21:27:22 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2009-07-02 21:27:22 ----A---- C:\Windows\system32\BFE.DLL
2009-07-02 21:27:22 ----A---- C:\Windows\system32\adsldpc.dll
2009-07-02 21:27:21 ----A---- C:\Windows\system32\WSDApi.dll
2009-07-02 21:27:21 ----A---- C:\Windows\system32\WMVSDECD.DLL
2009-07-02 21:27:21 ----A---- C:\Windows\system32\Wldap32.dll
2009-07-02 21:27:21 ----A---- C:\Windows\system32\wcnwiz.dll
2009-07-02 21:27:21 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-07-02 21:27:21 ----A---- C:\Windows\system32\evr.dll
2009-07-02 21:27:20 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-07-02 21:27:20 ----A---- C:\Windows\system32\services.exe
2009-07-02 21:27:19 ----A---- C:\Windows\system32\wercon.exe
2009-07-02 21:27:19 ----A---- C:\Windows\system32\mimefilt.dll
2009-07-02 21:27:19 ----A---- C:\Windows\system32\comdlg32.dll
2009-07-02 21:27:19 ----A---- C:\Windows\system32\adtschema.dll
2009-07-02 21:27:18 ----A---- C:\Windows\system32\wcncsvc.dll
2009-07-02 21:27:18 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-07-02 21:27:18 ----A---- C:\Windows\system32\msjter40.dll
2009-07-02 21:27:18 ----A---- C:\Windows\system32\msdtcprx.dll
2009-07-02 21:27:18 ----A---- C:\Windows\system32\msdrm.dll
2009-07-02 21:27:18 ----A---- C:\Windows\system32\ipsmsnap.dll
2009-07-02 21:27:18 ----A---- C:\Windows\system32\certcli.dll
2009-07-02 21:27:17 ----A---- C:\Windows\system32\umpnpmgr.dll
2009-07-02 21:27:17 ----A---- C:\Windows\system32\taskeng.exe
2009-07-02 21:27:17 ----A---- C:\Windows\system32\rtffilt.dll
2009-07-02 21:27:17 ----A---- C:\Windows\system32\reg.exe
2009-07-02 21:27:17 ----A---- C:\Windows\system32\mswdat10.dll
2009-07-02 21:27:17 ----A---- C:\Windows\system32\dnsapi.dll
2009-07-02 21:27:17 ----A---- C:\Windows\system32\certutil.exe
2009-07-02 21:27:16 ----A---- C:\Windows\system32\WMNetMgr.dll
2009-07-02 21:27:16 ----A---- C:\Windows\system32\w32time.dll
2009-07-02 21:27:16 ----A---- C:\Windows\system32\IPSECSVC.DLL
2009-07-02 21:27:15 ----A---- C:\Windows\system32\rsaenh.dll
2009-07-02 21:27:15 ----A---- C:\Windows\system32\msshooks.dll
2009-07-02 21:27:15 ----A---- C:\Windows\system32\msscntrs.dll
2009-07-02 21:27:15 ----A---- C:\Windows\system32\bthserv.dll
2009-07-02 21:27:15 ----A---- C:\Windows\system32\bcrypt.dll
2009-07-02 21:27:14 ----A---- C:\Windows\system32\TsWpfWrp.exe
2009-07-02 21:27:14 ----A---- C:\Windows\system32\msstrc.dll
2009-07-02 21:27:14 ----A---- C:\Windows\system32\msihnd.dll
2009-07-02 21:27:14 ----A---- C:\Windows\system32\MMDevAPI.dll
2009-07-02 21:27:13 ----A---- C:\Windows\system32\netapi32.dll
2009-07-02 21:27:13 ----A---- C:\Windows\system32\inetpp.dll
2009-07-02 21:27:13 ----A---- C:\Windows\system32\inetcomm.dll
2009-07-02 21:27:13 ----A---- C:\Windows\system32\dfshim.dll
2009-07-02 21:27:12 ----A---- C:\Windows\system32\wmicmiplugin.dll
2009-07-02 21:27:12 ----A---- C:\Windows\system32\mtxclu.dll
2009-07-02 21:27:12 ----A---- C:\Windows\system32\mscories.dll
2009-07-02 21:27:12 ----A---- C:\Windows\system32\hidserv.dll
2009-07-02 21:27:12 ----A---- C:\Windows\system32\fundisc.dll
2009-07-02 21:27:12 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2009-07-02 21:27:12 ----A---- C:\Windows\system32\cryptsvc.dll
2009-07-02 21:27:11 ----A---- C:\Windows\system32\termsrv.dll
2009-07-02 21:27:11 ----A---- C:\Windows\system32\profsvc.dll
2009-07-02 21:27:11 ----A---- C:\Windows\system32\gameux.dll
2009-07-02 21:27:10 ----A---- C:\Windows\system32\wdc.dll
2009-07-02 21:27:10 ----A---- C:\Windows\system32\shsvcs.dll
2009-07-02 21:27:10 ----A---- C:\Windows\system32\msiexec.exe
2009-07-02 21:27:10 ----A---- C:\Windows\system32\imapi.dll
2009-07-02 21:27:10 ----A---- C:\Windows\system32\chsbrkr.dll
2009-07-02 21:27:09 ----A---- C:\Windows\system32\rasmans.dll
2009-07-02 21:27:09 ----A---- C:\Windows\system32\iassdo.dll
2009-07-02 21:27:08 ----A---- C:\Windows\system32\spoolsv.exe
2009-07-02 21:27:08 ----A---- C:\Windows\system32\pnidui.dll
2009-07-02 21:27:08 ----A---- C:\Windows\system32\icardres.dll
2009-07-02 21:27:08 ----A---- C:\Windows\system32\autofmt.exe
2009-07-02 21:27:07 ----A---- C:\Windows\system32\scrrun.dll
2009-07-02 21:27:06 ----A---- C:\Windows\system32\wersvc.dll
2009-07-02 21:27:06 ----A---- C:\Windows\system32\slmgr.vbs
2009-07-02 21:27:06 ----A---- C:\Windows\system32\PSHED.DLL
2009-07-02 21:27:05 ----A---- C:\Windows\system32\pdh.dll
2009-07-02 21:27:05 ----A---- C:\Windows\system32\dhcpcsvc.dll
2009-07-02 21:27:05 ----A---- C:\Windows\system32\CertEnrollUI.dll
2009-07-02 21:27:05 ----A---- C:\Windows\system32\azroles.dll
2009-07-02 21:27:04 ----A---- C:\Windows\system32\wmpmde.dll
2009-07-02 21:27:04 ----A---- C:\Windows\system32\winlogon.exe
2009-07-02 21:27:04 ----A---- C:\Windows\system32\pidgenx.dll
2009-07-02 21:27:03 ----A---- C:\Windows\system32\SyncCenter.dll
2009-07-02 21:27:02 ----A---- C:\Windows\system32\SLUINotify.dll
2009-07-02 21:27:02 ----A---- C:\Windows\system32\ncrypt.dll
2009-07-02 21:27:02 ----A---- C:\Windows\system32\msjetoledb40.dll
2009-07-02 21:27:02 ----A---- C:\Windows\system32\kd1394.dll
2009-07-02 21:27:02 ----A---- C:\Windows\system32\comuid.dll
2009-07-02 21:27:02 ----A---- C:\Windows\system32\certmgr.dll
2009-07-02 21:27:01 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-07-02 21:27:01 ----A---- C:\Windows\system32\untfs.dll
2009-07-02 21:27:01 ----A---- C:\Windows\system32\spp.dll
2009-07-02 21:27:01 ----A---- C:\Windows\system32\sethc.exe
2009-07-02 21:27:01 ----A---- C:\Windows\system32\scrobj.dll
2009-07-02 21:27:01 ----A---- C:\Windows\system32\iassam.dll
2009-07-02 21:27:00 ----A---- C:\Windows\system32\wisptis.exe
2009-07-02 21:27:00 ----A---- C:\Windows\system32\taskcomp.dll
2009-07-02 21:27:00 ----A---- C:\Windows\system32\rtutils.dll
2009-07-02 21:27:00 ----A---- C:\Windows\system32\dwm.exe
2009-07-02 21:26:59 ----A---- C:\Windows\system32\printui.dll
2009-07-02 21:26:59 ----A---- C:\Windows\system32\iasnap.dll
2009-07-02 21:26:59 ----A---- C:\Windows\system32\autoconv.exe
2009-07-02 21:26:59 ----A---- C:\Windows\system32\autochk.exe
2009-07-02 21:26:58 ----A---- C:\Windows\system32\winsrv.dll
2009-07-02 21:26:57 ----A---- C:\Windows\system32\onex.dll
2009-07-02 21:26:57 ----A---- C:\Windows\system32\kdcom.dll
2009-07-02 21:26:57 ----A---- C:\Windows\system32\cscript.exe
2009-07-02 21:26:57 ----A---- C:\Windows\system32\basecsp.dll
2009-07-02 21:26:57 ----A---- C:\Windows\system32\audiodg.exe
2009-07-02 21:26:56 ----A---- C:\Windows\system32\wow32.dll
2009-07-02 21:26:56 ----A---- C:\Windows\system32\userenv.dll
2009-07-02 21:26:56 ----A---- C:\Windows\system32\osk.exe
2009-07-02 21:26:56 ----A---- C:\Windows\system32\mswsock.dll
2009-07-02 21:26:55 ----A---- C:\Windows\system32\winmm.dll
2009-07-02 21:26:55 ----A---- C:\Windows\system32\spcmsg.dll
2009-07-02 21:26:55 ----A---- C:\Windows\system32\RelMon.dll
2009-07-02 21:26:55 ----A---- C:\Windows\system32\rdpencom.dll
2009-07-02 21:26:55 ----A---- C:\Windows\system32\kdusb.dll
2009-07-02 21:26:54 ----A---- C:\Windows\system32\WinSCard.dll
2009-07-02 21:26:54 ----A---- C:\Windows\system32\WerFaultSecure.exe
2009-07-02 21:26:54 ----A---- C:\Windows\system32\offfilt.dll
2009-07-02 21:26:54 ----A---- C:\Windows\system32\msftedit.dll
2009-07-02 21:26:54 ----A---- C:\Windows\system32\dnsrslvr.dll
2009-07-02 21:26:52 ----A---- C:\Windows\system32\wsepno.dll
2009-07-02 21:26:52 ----A---- C:\Windows\system32\WerFault.exe
2009-07-02 21:26:52 ----A---- C:\Windows\system32\Utilman.exe
2009-07-02 21:26:52 ----A---- C:\Windows\system32\stobject.dll
2009-07-02 21:26:52 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2009-07-02 21:26:52 ----A---- C:\Windows\system32\secproc_ssp.dll
2009-07-02 21:26:52 ----A---- C:\Windows\system32\mfplat.dll
2009-07-02 21:26:52 ----A---- C:\Windows\system32\diskraid.exe
2009-07-02 21:26:52 ----A---- C:\Windows\system32\apphelp.dll
2009-07-02 21:26:51 ----A---- C:\Windows\system32\wiaservc.dll
2009-07-02 21:26:51 ----A---- C:\Windows\system32\sysclass.dll
2009-07-02 21:26:51 ----A---- C:\Windows\system32\SndVol.exe
2009-07-02 21:26:51 ----A---- C:\Windows\system32\prnntfy.dll
2009-07-02 21:26:51 ----A---- C:\Windows\system32\msnetobj.dll
2009-07-02 21:26:51 ----A---- C:\Windows\system32\mscms.dll
2009-07-02 21:26:51 ----A---- C:\Windows\system32\mcmde.dll
2009-07-02 21:26:51 ----A---- C:\Windows\system32\adsmsext.dll
2009-07-02 21:26:50 ----A---- C:\Windows\system32\wscript.exe
2009-07-02 21:26:50 ----A---- C:\Windows\system32\ulib.dll
2009-07-02 21:26:50 ----A---- C:\Windows\system32\secur32.dll
2009-07-02 21:26:50 ----A---- C:\Windows\system32\odbccp32.dll
2009-07-02 21:26:50 ----A---- C:\Windows\system32\iasdatastore.dll
2009-07-02 21:26:49 ----A---- C:\Windows\system32\wscntfy.dll
2009-07-02 21:26:49 ----A---- C:\Windows\system32\rastapi.dll
2009-07-02 21:26:49 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2009-07-02 21:26:49 ----A---- C:\Windows\system32\dsound.dll
2009-07-02 21:26:49 ----A---- C:\Windows\system32\cryptui.dll
2009-07-02 21:26:48 ----A---- C:\Windows\system32\wlansvc.dll
2009-07-02 21:26:48 ----A---- C:\Windows\system32\wlangpui.dll
2009-07-02 21:26:48 ----A---- C:\Windows\system32\rastls.dll
2009-07-02 21:26:48 ----A---- C:\Windows\system32\pnpsetup.dll
2009-07-02 21:26:48 ----A---- C:\Windows\system32\ipsecsnp.dll
2009-07-02 21:26:48 ----A---- C:\Windows\system32\gpapi.dll
2009-07-02 21:26:48 ----A---- C:\Windows\system32\fdProxy.dll
2009-07-02 21:26:48 ----A---- C:\Windows\system32\diskpart.exe
2009-07-02 21:26:48 ----A---- C:\Windows\system32\brcpl.dll
2009-07-02 21:26:47 ----A---- C:\Windows\system32\wscsvc.dll
2009-07-02 21:26:47 ----A---- C:\Windows\system32\WMVENCOD.DLL
2009-07-02 21:26:47 ----A---- C:\Windows\system32\vdsdyn.dll
2009-07-02 21:26:47 ----A---- C:\Windows\system32\netiohlp.dll
2009-07-02 21:26:47 ----A---- C:\Windows\system32\logman.exe
2009-07-02 21:26:47 ----A---- C:\Windows\system32\iashlpr.dll
2009-07-02 21:26:46 ----A---- C:\Windows\system32\regsvc.dll
2009-07-02 21:26:46 ----A---- C:\Windows\system32\rasapi32.dll
2009-07-02 21:26:46 ----A---- C:\Windows\system32\ntprint.dll
2009-07-02 21:26:45 ----A---- C:\Windows\system32\zipfldr.dll
2009-07-02 21:26:45 ----A---- C:\Windows\system32\wusa.exe
2009-07-02 21:26:45 ----A---- C:\Windows\system32\mscorier.dll
2009-07-02 21:26:45 ----A---- C:\Windows\system32\iasrad.dll
2009-07-02 21:26:45 ----A---- C:\Windows\system32\findstr.exe
2009-07-02 21:26:44 ----A---- C:\Windows\system32\wshext.dll
2009-07-02 21:26:44 ----A---- C:\Windows\system32\wpccpl.dll
2009-07-02 21:26:44 ----A---- C:\Windows\system32\netcenter.dll
2009-07-02 21:26:43 ----A---- C:\Windows\system32\wsnmp32.dll
2009-07-02 21:26:43 ----A---- C:\Windows\system32\wer.dll
2009-07-02 21:26:43 ----A---- C:\Windows\system32\themecpl.dll
2009-07-02 21:26:43 ----A---- C:\Windows\system32\rasdlg.dll
2009-07-02 21:26:43 ----A---- C:\Windows\system32\iassvcs.dll
2009-07-02 21:26:41 ----A---- C:\Windows\system32\uxsms.dll
2009-07-02 21:26:41 ----A---- C:\Windows\system32\tsbyuv.dll
2009-07-02 21:26:41 ----A---- C:\Windows\system32\srvsvc.dll
2009-07-02 21:26:41 ----A---- C:\Windows\system32\scansetting.dll
2009-07-02 21:26:41 ----A---- C:\Windows\system32\ntmarta.dll
2009-07-02 21:26:41 ----A---- C:\Windows\system32\mssprxy.dll
2009-07-02 21:26:40 ----A---- C:\Windows\system32\slcc.dll
2009-07-02 21:26:40 ----A---- C:\Windows\system32\powrprof.dll
2009-07-02 21:26:40 ----A---- C:\Windows\system32\msutb.dll
2009-07-02 21:26:40 ----A---- C:\Windows\system32\mstsc.exe
2009-07-02 21:26:40 ----A---- C:\Windows\system32\mstlsapi.dll
2009-07-02 21:26:40 ----A---- C:\Windows\system32\iasads.dll
2009-07-02 21:26:39 ----A---- C:\Windows\system32\powercpl.dll
2009-07-02 21:26:39 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2009-07-02 21:26:39 ----A---- C:\Windows\system32\networkmap.dll
2009-07-02 21:26:39 ----A---- C:\Windows\system32\iasacct.dll
2009-07-02 21:26:38 ----A---- C:\Windows\system32\wlanhlp.dll
2009-07-02 21:26:38 ----A---- C:\Windows\system32\sud.dll
2009-07-02 21:26:38 ----A---- C:\Windows\system32\newdev.exe
2009-07-02 21:26:38 ----A---- C:\Windows\system32\dot3svc.dll
2009-07-02 21:26:38 ----A---- C:\Windows\system32\connect.dll
2009-07-02 21:26:38 ----A---- C:\Windows\system32\authz.dll
2009-07-02 21:26:37 ----A---- C:\Windows\system32\themeui.dll
2009-07-02 21:26:37 ----A---- C:\Windows\system32\systemcpl.dll
2009-07-02 21:26:37 ----A---- C:\Windows\system32\samlib.dll
2009-07-02 21:26:37 ----A---- C:\Windows\system32\pcaui.dll
2009-07-02 21:26:37 ----A---- C:\Windows\system32\accessibilitycpl.dll
2009-07-02 21:26:36 ----A---- C:\Windows\system32\usercpl.dll
2009-07-02 21:26:36 ----A---- C:\Windows\system32\qdvd.dll
2009-07-02 21:26:36 ----A---- C:\Windows\system32\mmci.dll
2009-07-02 21:26:36 ----A---- C:\Windows\system32\autoplay.dll
2009-07-02 21:26:35 ----A---- C:\Windows\system32\wlanpref.dll
2009-07-02 21:26:35 ----A---- C:\Windows\system32\rpchttp.dll
2009-07-02 21:26:35 ----A---- C:\Windows\system32\regapi.dll
2009-07-02 21:26:35 ----A---- C:\Windows\system32\msinfo32.exe
2009-07-02 21:26:34 ----A---- C:\Windows\system32\wpcao.dll
2009-07-02 21:26:34 ----A---- C:\Windows\system32\vdsutil.dll
2009-07-02 21:26:34 ----A---- C:\Windows\system32\tapisrv.dll
2009-07-02 21:26:34 ----A---- C:\Windows\system32\scksp.dll
2009-07-02 21:26:34 ----A---- C:\Windows\system32\mpr.dll
2009-07-02 21:26:34 ----A---- C:\Windows\system32\feclient.dll
2009-07-02 21:26:33 ----A---- C:\Windows\system32\scesrv.dll
2009-07-02 21:26:33 ----A---- C:\Windows\system32\rekeywiz.exe
2009-07-02 21:26:33 ----A---- C:\Windows\system32\psisdecd.dll
2009-07-02 21:26:33 ----A---- C:\Windows\system32\oleprn.dll
2009-07-02 21:26:33 ----A---- C:\Windows\system32\imm32.dll
2009-07-02 21:26:33 ----A---- C:\Windows\system32\dot3msm.dll
2009-07-02 21:26:33 ----A---- C:\Windows\system32\AudioSes.dll
2009-07-02 21:26:32 ----A---- C:\Windows\system32\wscisvif.dll
2009-07-02 21:26:32 ----A---- C:\Windows\system32\sdclt.exe
2009-07-02 21:26:32 ----A---- C:\Windows\system32\ncryptui.dll
2009-07-02 21:26:32 ----A---- C:\Windows\system32\iaspolcy.dll
2009-07-02 21:26:32 ----A---- C:\Windows\system32\Faultrep.dll
2009-07-02 21:26:32 ----A---- C:\Windows\system32\dpapimig.exe
2009-07-02 21:26:32 ----A---- C:\Windows\system32\DeviceEject.exe
2009-07-02 21:26:31 ----A---- C:\Windows\system32\scecli.dll
2009-07-02 21:26:31 ----A---- C:\Windows\system32\rasgcw.dll
2009-07-02 21:26:31 ----A---- C:\Windows\system32\qedit.dll
2009-07-02 21:26:31 ----A---- C:\Windows\system32\pnpui.dll
2009-07-02 21:26:31 ----A---- C:\Windows\system32\perfdisk.dll
2009-07-02 21:26:31 ----A---- C:\Windows\system32\hdwwiz.exe
2009-07-02 21:26:31 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2009-07-02 21:26:31 ----A---- C:\Windows\system32\certreq.exe
2009-07-02 21:26:30 ----A---- C:\Windows\system32\TSTheme.exe
2009-07-02 21:26:30 ----A---- C:\Windows\system32\spwinsat.dll
2009-07-02 21:26:30 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2009-07-02 21:26:30 ----A---- C:\Windows\system32\rasplap.dll
2009-07-02 21:26:29 ----A---- C:\Windows\system32\tcpipcfg.dll
2009-07-02 21:26:29 ----A---- C:\Windows\system32\PnPUnattend.exe
2009-07-02 21:26:29 ----A---- C:\Windows\system32\cmmon32.exe
2009-07-02 21:26:28 ----A---- C:\Windows\system32\whealogr.dll
2009-07-02 21:26:28 ----A---- C:\Windows\system32\tcpmon.dll
2009-07-02 21:26:28 ----A---- C:\Windows\system32\srcore.dll
2009-07-02 21:26:28 ----A---- C:\Windows\system32\fdWSD.dll
2009-07-02 21:26:28 ----A---- C:\Windows\system32\cmdial32.dll
2009-07-02 21:26:27 ----A---- C:\Windows\system32\SnippingTool.exe
2009-07-02 21:26:27 ----A---- C:\Windows\system32\SCardSvr.dll
2009-07-02 21:26:27 ----A---- C:\Windows\system32\raschap.dll
2009-07-02 21:26:27 ----A---- C:\Windows\system32\MSVidCtl.dll
2009-07-02 21:26:27 ----A---- C:\Windows\system32\fontext.dll
2009-07-02 21:26:27 ----A---- C:\Windows\system32\conime.exe
2009-07-02 21:26:26 ----A---- C:\Windows\system32\WMVXENCD.DLL
2009-07-02 21:26:26 ----A---- C:\Windows\system32\wlanui.dll
2009-07-02 21:26:26 ----A---- C:\Windows\system32\wiaaut.dll
2009-07-02 21:26:26 ----A---- C:\Windows\system32\rasppp.dll
2009-07-02 21:26:26 ----A---- C:\Windows\system32\PnPutil.exe
2009-07-02 21:26:26 ----A---- C:\Windows\system32\dsprop.dll
2009-07-02 21:26:25 ----A---- C:\Windows\system32\wlanmsm.dll
2009-07-02 21:26:25 ----A---- C:\Windows\system32\shwebsvc.dll
2009-07-02 21:26:25 ----A---- C:\Windows\system32\oobefldr.dll
2009-07-02 21:26:25 ----A---- C:\Windows\system32\dimsroam.dll
2009-07-02 21:26:24 ----A---- C:\Windows\system32\shsetup.dll
2009-07-02 21:26:24 ----A---- C:\Windows\system32\rasmontr.dll
2009-07-02 21:26:24 ----A---- C:\Windows\system32\mscandui.dll
2009-07-02 21:26:24 ----A---- C:\Windows\system32\modemui.dll
2009-07-02 21:26:23 ----A---- C:\Windows\system32\wmdrmsdk.dll
2009-07-02 21:26:23 ----A---- C:\Windows\system32\dataclen.dll
2009-07-02 21:26:23 ----A---- C:\Windows\system32\chtbrkr.dll
2009-07-02 21:26:22 ----A---- C:\Windows\system32\wlgpclnt.dll
2009-07-02 21:26:22 ----A---- C:\Windows\system32\smss.exe
2009-07-02 21:26:22 ----A---- C:\Windows\system32\rdpwsx.dll
2009-07-02 21:26:22 ----A---- C:\Windows\system32\netplwiz.dll
2009-07-02 21:26:22 ----A---- C:\Windows\system32\credui.dll
2009-07-02 21:26:22 ----A---- C:\Windows\system32\blackbox.dll
2009-07-02 21:26:21 ----A---- C:\Windows\system32\WSDMon.dll
2009-07-02 21:26:21 ----A---- C:\Windows\system32\wmpeffects.dll
2009-07-02 21:26:21 ----A---- C:\Windows\system32\certprop.dll
2009-07-02 21:26:20 ----A---- C:\Windows\system32\wpcsvc.dll
2009-07-02 21:26:20 ----A---- C:\Windows\system32\networkexplorer.dll
2009-07-02 21:26:20 ----A---- C:\Windows\system32\msscp.dll
2009-07-02 21:26:20 ----A---- C:\Windows\system32\logagent.exe
2009-07-02 21:26:20 ----A---- C:\Windows\system32\InkEd.dll
2009-07-02 21:26:20 ----A---- C:\Windows\system32\ifmon.dll
2009-07-02 21:26:20 ----A---- C:\Windows\system32\gpresult.exe
2009-07-02 21:26:20 ----A---- C:\Windows\system32\cipher.exe
2009-07-02 21:26:19 ----A---- C:\Windows\system32\wscapi.dll
2009-07-02 21:26:19 ----A---- C:\Windows\system32\thawbrkr.dll
2009-07-02 21:26:19 ----A---- C:\Windows\system32\softkbd.dll
2009-07-02 21:26:19 ----A---- C:\Windows\system32\sendmail.dll
2009-07-02 21:26:19 ----A---- C:\Windows\system32\msimtf.dll
2009-07-02 21:26:18 ----A---- C:\Windows\system32\olepro32.dll
2009-07-02 21:26:18 ----A---- C:\Windows\system32\msctfui.dll
2009-07-02 21:26:18 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2009-07-02 21:26:18 ----A---- C:\Windows\system32\dmsynth.dll
2009-07-02 21:26:18 ----A---- C:\Windows\system32\Apphlpdm.dll
2009-07-02 21:26:17 ----A---- C:\Windows\system32\puiapi.dll
2009-07-02 21:26:17 ----A---- C:\Windows\system32\input.dll
2009-07-02 21:26:17 ----A---- C:\Windows\system32\drmmgrtn.dll
2009-07-02 21:26:17 ----A---- C:\Windows\system32\cdd.dll
2009-07-02 21:26:16 ----A---- C:\Windows\system32\wshbth.dll
2009-07-02 21:26:16 ----A---- C:\Windows\system32\version.dll
2009-07-02 21:26:16 ----A---- C:\Windows\system32\SLLUA.exe
2009-07-02 21:26:16 ----A---- C:\Windows\system32\msisip.dll
2009-07-02 21:26:16 ----A---- C:\Windows\system32\mprapi.dll
2009-07-02 21:26:16 ----A---- C:\Windows\system32\fc.exe
2009-07-02 21:26:16 ----A---- C:\Windows\system32\ExplorerFrame.dll
2009-07-02 21:26:15 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2009-07-02 21:26:15 ----A---- C:\Windows\system32\fdSSDP.dll
2009-07-02 21:26:15 ----A---- C:\Windows\system32\dmusic.dll
2009-07-02 21:26:14 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-07-02 21:26:14 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-07-02 21:26:14 ----A---- C:\Windows\system32\msjint40.dll
2009-07-02 21:26:14 ----A---- C:\Windows\system32\l2nacp.dll
2009-07-02 21:26:14 ----A---- C:\Windows\system32\ftp.exe
2009-07-02 21:26:14 ----A---- C:\Windows\system32\eapp3hst.dll
2009-07-02 21:26:14 ----A---- C:\Windows\system32\cscapi.dll
2009-07-02 21:26:13 ----A---- C:\Windows\system32\wsdchngr.dll
2009-07-02 21:26:13 ----A---- C:\Windows\system32\SMBHelperClass.dll
2009-07-02 21:26:13 ----A---- C:\Windows\system32\rrinstaller.exe
2009-07-02 21:26:13 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-07-02 21:26:13 ----A---- C:\Windows\system32\cscdll.dll
2009-07-02 21:26:13 ----A---- C:\Windows\system32\bthci.dll
2009-07-02 21:26:12 ----A---- C:\Windows\system32\Storprop.dll
2009-07-02 21:26:12 ----A---- C:\Windows\system32\rasdial.exe
2009-07-02 21:26:12 ----A---- C:\Windows\system32\rasdiag.dll
2009-07-02 21:26:12 ----A---- C:\Windows\system32\fdWCN.dll
2009-07-02 21:26:12 ----A---- C:\Windows\system32\eappcfg.dll
2009-07-02 21:26:12 ----A---- C:\Windows\system32\dot3cfg.dll
2009-07-02 21:26:12 ----A---- C:\Windows\system32\bthudtask.exe
2009-07-02 21:26:12 ----A---- C:\Windows\system32\aaclient.dll
2009-07-02 21:26:11 ----A---- C:\Windows\system32\tscupgrd.exe
2009-07-02 21:26:11 ----A---- C:\Windows\system32\slcinst.dll
2009-07-02 21:26:11 ----A---- C:\Windows\system32\nslookup.exe
2009-07-02 21:26:11 ----A---- C:\Windows\system32\networkitemfactory.dll
2009-07-02 21:26:11 ----A---- C:\Windows\system32\mfps.dll
2009-07-02 21:26:11 ----A---- C:\Windows\system32\ipconfig.exe
2009-07-02 21:26:11 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2009-07-02 21:26:10 ----A---- C:\Windows\system32\ocsetup.exe
2009-07-02 21:26:10 ----A---- C:\Windows\system32\mmcico.dll
2009-07-02 21:26:10 ----A---- C:\Windows\system32\hbaapi.dll
2009-07-02 21:26:10 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2009-07-02 21:26:10 ----A---- C:\Windows\system32\fdeploy.dll
2009-07-02 21:26:10 ----A---- C:\Windows\system32\eappgnui.dll
2009-07-02 21:26:09 ----A---- C:\Windows\system32\tsgqec.dll
2009-07-02 21:26:09 ----A---- C:\Windows\system32\PNPXAssoc.dll
2009-07-02 21:26:09 ----A---- C:\Windows\system32\mfpmp.exe
2009-07-02 21:26:08 ----A---- C:\Windows\system32\gpupdate.exe
2009-07-02 21:26:08 ----A---- C:\Windows\system32\atmlib.dll
2009-07-02 21:26:07 ----A---- C:\Windows\system32\NcdProp.dll
2009-07-02 21:26:07 ----A---- C:\Windows\system32\iscsilog.dll
2009-07-02 21:26:07 ----A---- C:\Windows\system32\csrstub.exe
2009-07-02 21:26:07 ----A---- C:\Windows\system32\cbsra.exe
2009-07-02 21:26:07 ----A---- C:\Windows\system32\bitsigd.dll
2009-07-02 21:26:06 ----A---- C:\Windows\system32\vdmdbg.dll
2009-07-02 21:26:06 ----A---- C:\Windows\system32\odbcconf.dll
2009-07-02 21:26:05 ----A---- C:\Windows\system32\winrnr.dll
2009-07-02 21:26:05 ----A---- C:\Windows\system32\slwga.dll
2009-07-02 21:26:05 ----A---- C:\Windows\system32\inetppui.dll
2009-07-02 21:26:04 ----A---- C:\Windows\system32\midimap.dll
2009-07-02 21:26:04 ----A---- C:\Windows\system32\atmfd.dll
2009-07-02 21:26:01 ----A---- C:\Windows\system32\spwmp.dll
2009-07-02 21:26:00 ----A---- C:\Windows\system32\dxmasf.dll
2009-07-02 21:25:59 ----A---- C:\Windows\system32\wmploc.DLL
2009-07-02 21:25:58 ----A---- C:\Windows\system32\msimsg.dll
2009-07-02 21:25:58 ----A---- C:\Windows\system32\mferror.dll
2009-07-02 21:25:58 ----A---- C:\Windows\system32\f3ahvoas.dll
2009-07-02 21:25:37 ----A---- C:\Windows\system32\SmiEngine.dll
2009-07-02 21:25:31 ----A---- C:\Windows\system32\wdscore.dll
2009-07-02 21:25:31 ----A---- C:\Windows\system32\PkgMgr.exe
2009-07-02 21:25:17 ----A---- C:\Windows\system32\drvstore.dll
2009-07-02 20:01:00 ----A---- C:\Windows\system32\iesetup.dll
2009-07-02 20:00:59 ----A---- C:\Windows\system32\wininet.dll
2009-07-02 20:00:59 ----A---- C:\Windows\system32\ieui.dll
2009-07-02 20:00:59 ----A---- C:\Windows\system32\iertutil.dll
2009-07-02 20:00:59 ----A---- C:\Windows\system32\iernonce.dll
2009-07-02 20:00:59 ----A---- C:\Windows\system32\ie4uinit.exe
2009-07-02 20:00:58 ----A---- C:\Windows\system32\jsproxy.dll
2009-07-02 20:00:58 ----A---- C:\Windows\system32\iedkcs32.dll
2009-07-02 20:00:57 ----A---- C:\Windows\system32\urlmon.dll
2009-07-02 20:00:56 ----A---- C:\Windows\system32\mshtml.dll
2009-07-02 20:00:56 ----A---- C:\Windows\system32\ieframe.dll
2009-07-02 19:59:26 ----A---- C:\Windows\system32\mshtmler.dll
2009-07-02 19:59:26 ----A---- C:\Windows\system32\mshtmled.dll
2009-07-02 19:59:26 ----A---- C:\Windows\system32\icardie.dll
2009-07-02 19:59:26 ----A---- C:\Windows\system32\admparse.dll
2009-07-02 19:59:25 ----A---- C:\Windows\system32\msls31.dll
2009-07-02 19:59:25 ----A---- C:\Windows\system32\ieakeng.dll
2009-07-02 19:59:25 ----A---- C:\Windows\system32\corpol.dll
2009-07-02 19:59:24 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-07-02 19:59:24 ----A---- C:\Windows\system32\licmgr10.dll
2009-07-02 19:59:24 ----A---- C:\Windows\system32\imgutil.dll
2009-07-02 19:59:24 ----A---- C:\Windows\system32\iepeers.dll
2009-07-02 19:59:24 ----A---- C:\Windows\system32\dxtrans.dll
2009-07-02 19:59:24 ----A---- C:\Windows\system32\dxtmsft.dll
2009-07-02 19:59:23 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-07-02 19:59:23 ----A---- C:\Windows\system32\wextract.exe
2009-07-02 19:59:23 ----A---- C:\Windows\system32\webcheck.dll
2009-07-02 19:59:23 ----A---- C:\Windows\system32\occache.dll
2009-07-02 19:59:23 ----A---- C:\Windows\system32\msrating.dll
2009-07-02 19:59:23 ----A---- C:\Windows\system32\inseng.dll
2009-07-02 19:59:23 ----A---- C:\Windows\system32\ieakui.dll
2009-07-02 19:59:23 ----A---- C:\Windows\system32\ieaksie.dll
2009-07-02 19:59:22 ----A---- C:\Windows\system32\pngfilt.dll
2009-07-02 19:59:22 ----A---- C:\Windows\system32\mstime.dll
2009-07-02 19:59:22 ----A---- C:\Windows\system32\msfeedssync.exe
2009-07-02 19:59:22 ----A---- C:\Windows\system32\msfeeds.dll
2009-07-02 19:59:22 ----A---- C:\Windows\system32\advpack.dll
2009-07-02 19:59:21 ----A---- C:\Windows\system32\vbscript.dll
2009-07-02 19:59:21 ----A---- C:\Windows\system32\jscript.dll
2009-07-02 19:59:21 ----A---- C:\Windows\system32\ieapfltr.dll
2009-07-02 19:59:20 ----A---- C:\Windows\system32\url.dll
2009-07-02 19:59:18 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-07-02 19:59:18 ----A---- C:\Windows\system32\SetDepNx.exe
2009-07-02 19:59:18 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-07-02 19:59:18 ----A---- C:\Windows\system32\PDMSetup.exe
2009-07-02 19:59:18 ----A---- C:\Windows\system32\mshta.exe
2009-07-02 19:59:18 ----A---- C:\Windows\system32\iexpress.exe
2009-07-02 19:59:18 ----A---- C:\Windows\system32\ieUnatt.exe
2009-07-02 19:59:18 ----A---- C:\Windows\system32\iesysprep.dll
2009-07-01 21:53:24 ----D---- C:\Program Files\Trend Micro
2009-06-10 01:26:45 ----A---- C:\Windows\system32\localspl.dll
2009-06-10 01:26:38 ----A---- C:\Windows\system32\rpcrt4.dll
======List of files/folders modified in the last 1 months======
2009-07-07 18:20:34 ----D---- C:\Windows\Temp
2009-07-07 18:14:00 ----RD---- C:\Program Files
2009-07-07 18:06:08 ----HD---- C:\ProgramData
2009-07-07 17:48:45 ----D---- C:\Windows\System32
2009-07-07 17:48:45 ----D---- C:\Windows\inf
2009-07-07 17:48:45 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-07-07 17:42:03 ----D---- C:\Windows\Prefetch
2009-07-07 08:42:58 ----SHD---- C:\System Volume Information
2009-07-07 02:21:16 ----D---- C:\Windows\system32\drivers
2009-07-06 23:06:55 ----D---- C:\Users\Leanne x\AppData\Roaming\Mozilla
2009-07-06 22:53:16 ----SD---- C:\Windows\Downloaded Program Files
2009-07-06 22:44:40 ----SHD---- C:\Windows\Installer
2009-07-06 13:57:21 ----D---- C:\Windows
2009-07-06 13:51:24 ----D---- C:\Program Files\Common Files\Apple
2009-07-06 13:47:55 ----D---- C:\Windows\system32\Tasks
2009-07-06 13:40:53 ----D---- C:\Windows\system32\catroot
2009-07-05 16:27:15 ----D---- C:\Program Files\LimeWire
2009-07-05 16:18:39 ----D---- C:\Users\Leanne x\AppData\Roaming\LimeWire
2009-07-03 08:03:10 ----D---- C:\Windows\Tasks
2009-07-03 00:13:25 ----D---- C:\Users\Leanne x\AppData\Roaming\Antispyware
2009-07-02 22:31:34 ----D---- C:\Windows\rescache
2009-07-02 22:26:14 ----D---- C:\Windows\Microsoft.NET
2009-07-02 22:26:03 ----RSD---- C:\Windows\assembly
2009-07-02 22:17:05 ----SHD---- C:\Boot
2009-07-02 22:08:46 ----D---- C:\Program Files\Windows Mail
2009-07-02 22:08:46 ----D---- C:\Program Files\Windows Calendar
2009-07-02 22:08:46 ----D---- C:\Program Files\Movie Maker
2009-07-02 22:08:45 ----D---- C:\Program Files\Windows Sidebar
2009-07-02 22:08:44 ----D---- C:\Program Files\Windows Media Player
2009-07-02 22:08:44 ----D---- C:\Program Files\Windows Journal
2009-07-02 22:08:44 ----D---- C:\Program Files\Windows Collaboration
2009-07-02 22:08:44 ----D---- C:\Program Files\Internet Explorer
2009-07-02 22:08:42 ----D---- C:\Program Files\Common Files\System
2009-07-02 22:08:41 ----D---- C:\Program Files\Windows Photo Gallery
2009-07-02 22:08:36 ----D---- C:\Windows\servicing
2009-07-02 22:08:36 ----D---- C:\Program Files\Windows Defender
2009-07-02 22:08:35 ----D---- C:\Windows\ehome
2009-07-02 22:08:20 ----D---- C:\Windows\IME
2009-07-02 22:08:19 ----D---- C:\Windows\system32\XPSViewer
2009-07-02 22:08:19 ----D---- C:\Windows\system32\sk-SK
2009-07-02 22:08:19 ----D---- C:\Windows\system32\lv-LV
2009-07-02 22:08:19 ----D---- C:\Windows\system32\ko-KR
2009-07-02 22:08:19 ----D---- C:\Windows\system32\hr-HR
2009-07-02 22:08:19 ----D---- C:\Windows\system32\et-EE
2009-07-02 22:08:19 ----D---- C:\Windows\system32\da-DK
2009-07-02 22:08:16 ----D---- C:\Windows\system32\en-US
2009-07-02 22:08:12 ----D---- C:\Windows\system32\oobe
2009-07-02 22:08:12 ----D---- C:\Windows\system32\migration
2009-07-02 22:08:12 ----D---- C:\Windows\system32\it-IT
2009-07-02 22:08:12 ----D---- C:\Windows\system32\el-GR
2009-07-02 22:08:12 ----D---- C:\Windows\system32\de-DE
2009-07-02 22:08:08 ----D---- C:\Windows\system32\AdvancedInstallers
2009-07-02 22:08:07 ----D---- C:\Windows\system32\sv-SE
2009-07-02 22:08:07 ----D---- C:\Windows\system32\SLUI
2009-07-02 22:08:07 ----D---- C:\Windows\system32\setup
2009-07-02 22:08:07 ----D---- C:\Windows\system32\ru-RU
2009-07-02 22:08:07 ----D---- C:\Windows\system32\pt-PT
2009-07-02 22:08:07 ----D---- C:\Windows\system32\hu-HU
2009-07-02 22:08:07 ----D---- C:\Windows\system32\he-IL
2009-07-02 22:08:07 ----D---- C:\Windows\system32\fr-FR
2009-07-02 22:08:07 ----D---- C:\Windows\system32\fi-FI
2009-07-02 22:08:07 ----D---- C:\Windows\system32\cs-CZ
2009-07-02 22:08:04 ----D---- C:\Windows\system32\zh-CN
2009-07-02 22:08:04 ----D---- C:\Windows\system32\en
2009-07-02 22:08:03 ----D---- C:\Windows\system32\zh-TW
2009-07-02 22:08:03 ----D---- C:\Windows\system32\sr-Latn-CS
2009-07-02 22:08:03 ----D---- C:\Windows\system32\sl-SI
2009-07-02 22:08:03 ----D---- C:\Windows\system32\pl-PL
2009-07-02 22:08:03 ----D---- C:\Windows\system32\manifeststore
2009-07-02 22:08:03 ----D---- C:\Windows\system32\es-ES
2009-07-02 22:08:02 ----D---- C:\Windows\system32\uk-UA
2009-07-02 22:08:02 ----D---- C:\Windows\system32\ro-RO
2009-07-02 22:08:02 ----D---- C:\Windows\system32\ja-JP
2009-07-02 22:08:02 ----D---- C:\Windows\system32\bg-BG
2009-07-02 22:08:01 ----D---- C:\Windows\system32\th-TH
2009-07-02 22:07:59 ----D---- C:\Windows\system32\tr-TR
2009-07-02 22:07:58 ----D---- C:\Windows\system32\wbem
2009-07-02 22:07:54 ----D---- C:\Windows\system32\nl-NL
2009-07-02 22:07:54 ----D---- C:\Windows\system32\nb-NO
2009-07-02 22:07:54 ----D---- C:\Windows\system32\lt-LT
2009-07-02 22:07:54 ----D---- C:\Windows\system32\ar-SA
2009-07-02 22:07:53 ----D---- C:\Windows\system32\pt-BR
2009-07-02 22:07:53 ----D---- C:\Windows\system32\migwiz
2009-07-02 22:06:46 ----RSD---- C:\Windows\Fonts
2009-07-02 22:06:45 ----D---- C:\Windows\AppPatch
2009-07-02 22:06:27 ----D---- C:\Windows\system32\Boot
2009-07-02 21:58:18 ----D---- C:\Windows\winsxs
2009-07-02 21:15:38 ----D---- C:\Windows\system32\catroot2
2009-07-02 20:46:21 ----D---- C:\Windows\PolicyDefinitions
2009-07-02 20:08:22 ----D---- C:\ProgramData\Microsoft Help
2009-07-02 20:06:23 ----D---- C:\Program Files\Common Files\microsoft shared
2009-07-02 20:05:59 ----D---- C:\Program Files\Microsoft Works
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 mfehidk;McAfee Inc. mfehidk; C:\Windows\system32\drivers\mfehidk.sys [2009-03-25 214024]
R1 MPFP;MPFP; C:\Windows\System32\Drivers\Mpfp.sys [2008-10-23 130424]
R3 bcm4sbxp;Broadcom 440x 10/100 Integrated Controller XP Driver; C:\Windows\system32\DRIVERS\bcm4sbxp.sys [2006-11-02 45056]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 EMSCR;EMSCR; C:\Windows\system32\DRIVERS\EMS7SK.sys [2006-02-16 60928]
R3 ESMCR;ESMCR; C:\Windows\system32\DRIVERS\ESM7SK.sys [2006-02-16 74624]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2009-03-19 23400]
R3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2009-04-11 236544]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2006-11-02 987648]
R3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
R3 MBAMSwissArmy;MBAMSwissArmy; \??\C:\Windows\system32\drivers\mbamswissarmy.sys [2009-06-17 38160]
R3 mfeavfk;McAfee Inc. mfeavfk; C:\Windows\system32\drivers\mfeavfk.sys [2009-03-25 79880]
R3 mfebopk;McAfee Inc. mfebopk; C:\Windows\system32\drivers\mfebopk.sys [2009-03-25 35272]
R3 mfesmfk;McAfee Inc. mfesmfk; C:\Windows\system32\drivers\mfesmfk.sys [2009-03-25 40552]
R3 NETw3v32;Intel(R) PRO/Wireless 3945ABG Adapter Driver for Windows Vista 32 Bit; C:\Windows\system32\DRIVERS\NETw3v32.sys [2008-01-19 2225664]
R3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2009-04-11 89088]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2006-11-02 654336]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-19 11264]
S3 cur_bus;Curitel USB Composite Device driver (WDM); C:\Windows\system32\DRIVERS\cur_bus.sys [2005-07-20 57744]
S3 cur_mdfl;Curitel Packet Service Filter; C:\Windows\system32\DRIVERS\cur_mdfl.sys [2005-07-20 8336]
S3 cur_mdm;Curitel Packet Service Drivers; C:\Windows\system32\DRIVERS\cur_mdm.sys [2005-07-20 93328]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2008-02-11 2302976]
S3 mferkdk;McAfee Inc. mferkdk; C:\Windows\system32\drivers\mferkdk.sys [2009-03-25 34216]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 s116bus;Sony Ericsson Device 116 driver (WDM); C:\Windows\system32\DRIVERS\s116bus.sys [2007-04-03 83336]
S3 s116mdfl;Sony Ericsson Device 116 USB WMC Modem Filter; C:\Windows\system32\DRIVERS\s116mdfl.sys [2007-04-03 15112]
S3 s116mdm;Sony Ericsson Device 116 USB WMC Modem Driver; C:\Windows\system32\DRIVERS\s116mdm.sys [2007-04-03 108680]
S3 s116mgmt;Sony Ericsson Device 116 USB WMC Device Management Drivers (WDM); C:\Windows\system32\DRIVERS\s116mgmt.sys [2007-04-03 100488]
S3 s116nd5;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (NDIS); C:\Windows\system32\DRIVERS\s116nd5.sys [2007-04-03 23176]
S3 s116obex;Sony Ericsson Device 116 USB WMC OBEX Interface; C:\Windows\system32\DRIVERS\s116obex.sys [2007-04-03 98696]
S3 s116unic;Sony Ericsson Device 116 USB Ethernet Emulation SEMC116 (WDM); C:\Windows\system32\DRIVERS\s116unic.sys [2007-04-03 99080]
S3 ss_bus;SAMSUNG Mobile USB Device 1.0 driver (WDM); C:\Windows\system32\DRIVERS\ss_bus.sys [2007-05-02 83592]
S3 ss_mdfl;SAMSUNG Mobile USB Modem 1.0 Filter; C:\Windows\system32\DRIVERS\ss_mdfl.sys [2007-05-02 15112]
S3 ss_mdm;SAMSUNG Mobile USB Modem 1.0 Drivers; C:\Windows\system32\DRIVERS\ss_mdm.sys [2007-05-02 109704]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-06-05 144712]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 mcmscsvc;McAfee Services; C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe [2009-01-08 797864]
R2 McNASvc;McAfee Network Agent; c:\program files\common files\mcafee\mna\mcnasvc.exe [2009-01-09 2482848]
R2 McProxy;McAfee Proxy Service; c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe [2009-01-09 359952]
R2 McShield;McAfee Real-time Scanner; C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe [2009-03-25 144704]
R2 MpfService;McAfee Personal Firewall Service; C:\Program Files\McAfee\MPF\MPFSrv.exe [2009-03-19 884360]
R2 MSK80Service;McAfee SpamKiller Service; C:\Program Files\McAfee\MSK\MskSrver.exe [2009-01-09 26640]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2009-06-05 541992]
R3 McSysmon;McAfee SystemGuards; C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe [2009-03-24 606736]
S3 getPlus(R) Helper;getPlus(R) Helper; C:\Program Files\NOS\bin\getPlus_HelperSvc.exe [2009-03-03 33176]
S3 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-04-29 182768]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [2005-11-14 69632]
S3 MBackMonitor;MBackMonitor; C:\Program Files\McAfee\MBK\MBackMonitor.exe [2009-01-09 68112]
S3 McODS;McAfee Scanner; C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe [2009-04-01 365072]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2008-11-04 441712]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\MSN Messenger\usnsvc.exe [2007-01-19 97136]
-----------------EOF-----------------
Phil