the file is too big, i'm going to send it in two posts...
Logfile of random's system information tool 1.06 (written by random/random)
Run by Hector at 2009-07-25 14:50:39
Microsoft® Windows Vista™ Home Premium Service Pack 2
System drive C: has 90 GB (63%) free of 143 GB
Total RAM: 2046 MB (53% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:50:50 PM, on 7/25/2009
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\System32\mobsync.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\hp\support\hpsysdrv.exe
C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\WINDOWS\RtHDVCpl.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Windows\system32\schtasks.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe
C:\Windows\system32\jusched.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Hector\Downloads\RSIT.exe
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Trend Micro\HijackThis\Hector.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://ie.redirect.hp.com/svs/rdr?TYPE= ... pf=desktopR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://ie.redirect.hp.com/svs/rdr?TYPE= ... pf=desktopR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [hpsysdrv] c:\hp\support\hpsysdrv.exe
O4 - HKLM\..\Run: [OsdMaestro] "C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe"
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [HP Health Check Scheduler] c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [SunJavaUpdateReg] "C:\Windows\system32\jureg.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter
O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Snapfish Media Detector.lnk = C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe
O8 - Extra context menu item: Add to Google Photos Screensa&ver -
res://C:\Windows\system32\GPhotos.scr/200
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O13 - Gopher Prefix:
O16 - DPF: {3860DD98-0549-4D50-AA72-5D17D200EE10} (Windows Live OneCare safety scanner control) -
http://cdn.scan.onecare.live.com/resour ... cctrl2.cabO18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: a-squared Free Service (a2free) - Emsi Software GmbH - C:\Program Files\a-squared Free\a2service.exe
O23 - Service: ArcSoft Connect Daemon (ACDaemon) - Unknown owner - C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (file missing)
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: ##Id_String1.6844F930_1628_4223_B5CC_5BB94B879762## (Bonjour Service) - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Update Service (gupdate1ca02719bd25b1) (gupdate1ca02719bd25b1) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - c:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - c:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - c:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - c:\Program Files\Common Files\SureThing Shared\stllssvr.exe
--
End of file - 7750 bytes
======Scheduled tasks folder======
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\User_Feed_Synchronization-{BB7C019E-FC6E-4429-862A-287E9204BF47}.job
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2007-03-20 803864]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2009-07-24 1111320]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll [2007-04-07 501400]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2007-03-20 803864]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-18 1008184]
"hpsysdrv"=c:\hp\support\hpsysdrv.exe [2007-04-18 65536]
"OsdMaestro"=C:\Program Files\Hewlett-Packard\On-Screen OSD Indicator\OSD.exe [2007-02-15 118784]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2008-06-02 178712]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2008-01-15 4874240]
"HP Health Check Scheduler"=c:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2007-05-24 71176]
"SunJavaUpdateReg"=C:\Windows\system32\jureg.exe [2007-04-07 54936]
""= []
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2009-07-06 1948440]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-08-09 86016]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-08-09 8466432]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-08-09 81920]
"HP Software Update"=C:\Program Files\HP\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"=C:\Windows\SMINST\launcher.exe [2007-04-03 44168]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2009-04-10 1233920]
"WindowsWelcomeCenter"=oobefldr.dll,ShowWelcomeCenter []
"HPAdvisor"=C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe [2007-06-01 1783400]
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-18 125952]
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2009-06-23 1830128]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Snapfish Media Detector.lnk - C:\Program Files\Snapfish Picture Mover\SnapfishMediaDetector.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="avgrsstx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.dll [2008-12-22 356352]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-05-13 77824]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\EarthLink TotalAccess\TaskPanl.exe"="C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d69f2dfc-6a65-11de-86f5-001e8c2b773b}]
shell\AutoRun\command - J:\PortableVault.exe
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 months======
2009-07-25 14:50:39 ----D---- C:\rsit
2009-07-23 15:37:10 ----D---- C:\ie-spyad_zo
2009-07-23 14:47:21 ----A---- C:\Windows\RTKAUDIOSERVICE.EXE
2009-07-18 13:12:52 ----D---- C:\Windows\system32\IOSUBSYS
2009-07-17 20:22:42 ----D---- C:\Program Files\Bonjour
2009-07-16 15:31:42 ----A---- C:\Windows\PCDLIB32.DLL
2009-07-16 12:00:43 ----D---- C:\Program Files\7-Zip
2009-07-15 14:14:12 ----A---- C:\Windows\system32\MSSTDFMT.DLL
2009-07-15 14:14:11 ----D---- C:\Program Files\SpywareBlaster
2009-07-15 14:06:11 ----D---- C:\Program Files\Trend Micro
2009-07-15 14:01:58 ----D---- C:\Program Files\a-squared Free
2009-07-15 13:54:42 ----D---- C:\ProgramData\SUPERAntiSpyware.com
2009-07-15 13:54:12 ----D---- C:\Program Files\SUPERAntiSpyware
2009-07-15 13:54:11 ----D---- C:\Users\Hector\AppData\Roaming\SUPERAntiSpyware.com
2009-07-15 13:53:34 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2009-07-15 13:50:02 ----D---- C:\ProgramData\Grisoft
2009-07-14 13:25:44 ----D---- C:\Program Files\Windows Live Safety Center
2009-07-14 11:09:25 ----A---- C:\Windows\system32\t2embed.dll
2009-07-14 11:09:25 ----A---- C:\Windows\system32\lpk.dll
2009-07-14 11:09:25 ----A---- C:\Windows\system32\fontsub.dll
2009-07-14 11:09:25 ----A---- C:\Windows\system32\dciman32.dll
2009-07-14 11:09:25 ----A---- C:\Windows\system32\atmfd.dll
2009-07-13 21:56:35 ----D---- C:\Users\Hector\AppData\Roaming\Malwarebytes
2009-07-13 21:56:29 ----D---- C:\ProgramData\Malwarebytes
2009-07-13 21:56:29 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-07-12 16:48:57 ----D---- C:\Program Files\Common Files\Canon
2009-07-12 15:23:39 ----HD---- C:\ProgramData\CanonBJ
2009-07-12 14:51:54 ----A---- C:\Windows\RtlUpd.exe
2009-07-12 14:51:53 ----A---- C:\Windows\RtHDVCpl.exe
2009-07-12 14:51:47 ----D---- C:\Users\Hector\AppData\Roaming\WinBatch
2009-07-12 00:03:27 ----D---- C:\Windows\system32\eu-ES
2009-07-12 00:03:27 ----D---- C:\Windows\system32\ca-ES
2009-07-12 00:03:24 ----D---- C:\Windows\system32\vi-VN
2009-07-11 23:53:21 ----D---- C:\Windows\system32\EventProviders
2009-07-11 23:52:22 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2009-07-11 23:52:03 ----A---- C:\Windows\system32\SLsvc.exe
2009-07-11 23:52:03 ----A---- C:\Windows\system32\SLCExt.dll
2009-07-11 23:51:59 ----A---- C:\Windows\system32\DevicePairingWizard.exe
2009-07-11 23:51:58 ----A---- C:\Windows\system32\FunctionDiscoveryFolder.dll
2009-07-11 23:51:52 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2009-07-11 23:51:43 ----A---- C:\Windows\system32\mssrch.dll
2009-07-11 23:51:37 ----A---- C:\Windows\system32\tquery.dll
2009-07-11 23:51:30 ----A---- C:\Windows\system32\RMActivate_isv.exe
2009-07-11 23:51:30 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-07-11 23:51:30 ----A---- C:\Windows\system32\lsasrv.dll
2009-07-11 23:51:29 ----A---- C:\Windows\system32\scavenge.dll
2009-07-11 23:51:29 ----A---- C:\Windows\system32\RMActivate.exe
2009-07-11 23:51:26 ----A---- C:\Windows\system32\msi.dll
2009-07-11 23:51:24 ----A---- C:\Windows\system32\imapi2fs.dll
2009-07-11 23:51:23 ----A---- C:\Windows\system32\secproc_isv.dll
2009-07-11 23:51:22 ----A---- C:\Windows\system32\WscEapPr.dll
2009-07-11 23:51:22 ----A---- C:\Windows\system32\wcnwiz2.dll
2009-07-11 23:51:22 ----A---- C:\Windows\system32\sysmain.dll
2009-07-11 23:51:20 ----A---- C:\Windows\system32\mf.dll
2009-07-11 23:51:20 ----A---- C:\Windows\system32\icardagt.exe
2009-07-11 23:51:19 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2009-07-11 23:51:18 ----A---- C:\Windows\system32\EhStorShell.dll
2009-07-11 23:51:17 ----A---- C:\Windows\system32\spreview.exe
2009-07-11 23:51:17 ----A---- C:\Windows\system32\spinstall.exe
2009-07-11 23:51:17 ----A---- C:\Windows\system32\drmv2clt.dll
2009-07-11 23:51:15 ----A---- C:\Windows\system32\spwizui.dll
2009-07-11 23:51:15 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2009-07-11 23:51:14 ----A---- C:\Windows\system32\secproc.dll
2009-07-11 23:51:12 ----A---- C:\Windows\system32\shell32.dll
2009-07-11 23:51:11 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-07-11 23:51:11 ----A---- C:\Windows\system32\p2psvc.dll
2009-07-11 23:51:11 ----A---- C:\Windows\system32\mssvp.dll
2009-07-11 23:51:11 ----A---- C:\Windows\system32\mscoree.dll
2009-07-11 23:51:10 ----A---- C:\Windows\system32\mssphtb.dll
2009-07-11 23:51:10 ----A---- C:\Windows\system32\mssph.dll
2009-07-11 23:51:10 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2009-07-11 23:51:10 ----A---- C:\Windows\system32\imapi2.dll
2009-07-11 23:51:09 ----A---- C:\Windows\system32\sdohlp.dll
2009-07-11 23:51:09 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-07-11 23:51:07 ----A---- C:\Windows\system32\IMJP10K.DLL
2009-07-11 23:51:07 ----A---- C:\Windows\system32\esent.dll
2009-07-11 23:51:06 ----A---- C:\Windows\system32\DevicePairing.dll
2009-07-11 23:51:03 ----A---- C:\Windows\system32\sperror.dll
2009-07-11 23:51:03 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2009-07-11 23:51:02 ----A---- C:\Windows\system32\wevtsvc.dll
2009-07-11 23:51:02 ----A---- C:\Windows\system32\korwbrkr.dll
2009-07-11 23:51:01 ----A---- C:\Windows\system32\SLC.dll
2009-07-11 23:51:01 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2009-07-11 23:51:01 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-07-11 23:51:01 ----A---- C:\Windows\system32\IasMigReader.exe
2009-07-11 23:50:59 ----A---- C:\Windows\system32\msshsq.dll
2009-07-11 23:50:58 ----A---- C:\Windows\system32\wmp.dll
2009-07-11 23:50:56 ----A---- C:\Windows\system32\WMVCORE.DLL
2009-07-11 23:50:56 ----A---- C:\Windows\system32\msjet40.dll
2009-07-11 23:50:55 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-07-11 23:50:55 ----A---- C:\Windows\system32\MPSSVC.dll
2009-07-11 23:50:54 ----A---- C:\Windows\system32\msxml6.dll
2009-07-11 23:50:52 ----A---- C:\Windows\system32\Query.dll
2009-07-11 23:50:52 ----A---- C:\Windows\system32\qmgr.dll
2009-07-11 23:50:50 ----A---- C:\Windows\system32\msexch40.dll
2009-07-11 23:50:50 ----A---- C:\Windows\system32\diagperf.dll
2009-07-11 23:50:49 ----A---- C:\Windows\system32\P2PGraph.dll
2009-07-11 23:50:48 ----A---- C:\Windows\system32\winload.exe
2009-07-11 23:50:48 ----A---- C:\Windows\system32\srchadmin.dll
2009-07-11 23:50:48 ----A---- C:\Windows\system32\ole32.dll
2009-07-11 23:50:48 ----A---- C:\Windows\system32\ntdll.dll
2009-07-11 23:50:48 ----A---- C:\Windows\system32\msxml3.dll
2009-07-11 23:50:47 ----A---- C:\Windows\system32\uDWM.dll
2009-07-11 23:50:47 ----A---- C:\Windows\system32\mmc.exe
2009-07-11 23:50:47 ----A---- C:\Windows\system32\mblctr.exe
2009-07-11 23:50:47 ----A---- C:\Windows\system32\EncDec.dll
2009-07-11 23:50:47 ----A---- C:\Windows\system32\dfsr.exe
2009-07-11 23:50:46 ----A---- C:\Windows\system32\riched20.dll
2009-07-11 23:50:46 ----A---- C:\Windows\system32\IasMigPlugin.dll
2009-07-11 23:50:46 ----A---- C:\Windows\system32\fdBth.dll
2009-07-11 23:50:45 ----A---- C:\Windows\system32\RacEngn.dll
2009-07-11 23:50:44 ----A---- C:\Windows\system32\kernel32.dll
2009-07-11 23:50:43 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-07-11 23:50:43 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-07-11 23:50:43 ----A---- C:\Windows\system32\milcore.dll
2009-07-11 23:50:43 ----A---- C:\Windows\system32\EhStorAPI.dll
2009-07-11 23:50:42 ----A---- C:\Windows\system32\spoolss.dll
2009-07-11 23:50:42 ----A---- C:\Windows\system32\schedsvc.dll
2009-07-11 23:50:42 ----A---- C:\Windows\system32\CertEnroll.dll
2009-07-11 23:50:41 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2009-07-11 23:50:40 ----A---- C:\Windows\system32\msjtes40.dll
2009-07-11 23:50:40 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2009-07-11 23:50:39 ----A---- C:\Windows\system32\msvcp60.dll
2009-07-11 23:50:39 ----A---- C:\Windows\system32\infocardapi.dll
2009-07-11 23:50:39 ----A---- C:\Windows\system32\gpedit.dll
2009-07-11 23:50:37 ----A---- C:\Windows\system32\WinSAT.exe
2009-07-11 23:50:36 ----A---- C:\Windows\system32\PresentationSettings.exe
2009-07-11 23:50:36 ----A---- C:\Windows\system32\Magnify.exe
2009-07-11 23:50:36 ----A---- C:\Windows\system32\es.dll
2009-07-11 23:50:36 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2009-07-11 23:50:35 ----A---- C:\Windows\system32\mstext40.dll
2009-07-11 23:50:35 ----A---- C:\Windows\system32\advapi32.dll
2009-07-11 23:50:33 ----A---- C:\Windows\system32\WMPhoto.dll
2009-07-11 23:50:33 ----A---- C:\Windows\system32\WebClnt.dll
2009-07-11 23:50:33 ----A---- C:\Windows\system32\msexcl40.dll
2009-07-11 23:50:32 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2009-07-11 23:50:32 ----A---- C:\Windows\system32\vssapi.dll
2009-07-11 23:50:32 ----A---- C:\Windows\system32\slwmi.dll
2009-07-11 23:50:32 ----A---- C:\Windows\system32\msxbde40.dll
2009-07-11 23:50:32 ----A---- C:\Windows\system32\comsvcs.dll
2009-07-11 23:50:32 ----A---- C:\Windows\system32\authui.dll
2009-07-11 23:50:31 ----A---- C:\Windows\system32\PresentationHost.exe
2009-07-11 23:50:31 ----A---- C:\Windows\system32\NetProjW.dll
2009-07-11 23:50:31 ----A---- C:\Windows\system32\mstscax.dll
2009-07-11 23:50:31 ----A---- C:\Windows\system32\msrepl40.dll
2009-07-11 23:50:30 ----A---- C:\Windows\system32\propsys.dll
2009-07-11 23:50:30 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-07-11 23:50:30 ----A---- C:\Windows\system32\newdev.dll
2009-07-11 23:50:30 ----A---- C:\Windows\system32\iasrecst.dll
2009-07-11 23:50:30 ----A---- C:\Windows\system32\gpsvc.dll
2009-07-11 23:50:30 ----A---- C:\Windows\system32\eudcedit.exe
2009-07-11 23:50:30 ----A---- C:\Windows\system32\crypt32.dll
2009-07-11 23:50:30 ----A---- C:\Windows\explorer.exe
2009-07-11 23:50:29 ----A---- C:\Windows\system32\setupapi.dll
2009-07-11 23:50:29 ----A---- C:\Windows\system32\rpcss.dll
2009-07-11 23:50:29 ----A---- C:\Windows\system32\mspbde40.dll
2009-07-11 23:50:29 ----A---- C:\Windows\system32\d3d9.dll
2009-07-11 23:50:28 ----A---- C:\Windows\system32\shlwapi.dll
2009-07-11 23:50:28 ----A---- C:\Windows\system32\msltus40.dll
2009-07-11 23:50:28 ----A---- C:\Windows\system32\mfc42.dll
2009-07-11 23:50:28 ----A---- C:\Windows\system32\EhStorPwdMgr.dll
2009-07-11 23:50:28 ----A---- C:\Windows\system32\EhStorAuthn.dll
2009-07-11 23:50:28 ----A---- C:\Windows\system32\davclnt.dll
2009-07-11 23:50:27 ----A---- C:\Windows\system32\msrd3x40.dll
2009-07-11 23:50:26 ----A---- C:\Windows\system32\msdtctm.dll
2009-07-11 23:50:25 ----A---- C:\Windows\system32\wevtapi.dll
2009-07-11 23:50:25 ----A---- C:\Windows\system32\photowiz.dll
2009-07-11 23:50:25 ----A---- C:\Windows\system32\browseui.dll
2009-07-11 23:50:24 ----A---- C:\Windows\system32\nlhtml.dll
2009-07-11 23:50:21 ----A---- C:\Windows\system32\user32.dll
2009-07-11 23:50:20 ----A---- C:\Windows\system32\samsrv.dll
2009-07-11 23:50:20 ----A---- C:\Windows\system32\quartz.dll
2009-07-11 23:50:20 ----A---- C:\Windows\system32\ci.dll
2009-07-11 23:50:19 ----A---- C:\Windows\system32\win32spl.dll
2009-07-11 23:50:19 ----A---- C:\Windows\system32\SLCommDlg.dll
2009-07-11 23:50:18 ----A---- C:\Windows\system32\WcnNetsh.dll
2009-07-11 23:50:17 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-07-11 23:50:17 ----A---- C:\Windows\system32\oleaut32.dll
2009-07-11 23:50:17 ----A---- C:\Windows\system32\kerberos.dll
2009-07-11 23:50:16 ----A---- C:\Windows\system32\netshell.dll
2009-07-11 23:50:16 ----A---- C:\Windows\system32\msv1_0.dll
2009-07-11 23:50:16 ----A---- C:\Windows\system32\IKEEXT.DLL
2009-07-11 23:50:16 ----A---- C:\Windows\system32\compcln.exe
2009-07-11 23:50:16 ----A---- C:\Windows\system32\apds.dll
2009-07-11 23:50:15 ----A---- C:\Windows\system32\xmlfilter.dll
2009-07-11 23:50:15 ----A---- C:\Windows\system32\winhttp.dll
2009-07-11 23:50:15 ----A---- C:\Windows\system32\mswstr10.dll
2009-07-11 23:50:15 ----A---- C:\Windows\system32\msctf.dll
2009-07-11 23:50:15 ----A---- C:\Windows\system32\emdmgmt.dll
2009-07-11 23:50:15 ----A---- C:\Windows\system32\audiosrv.dll
2009-07-11 23:50:14 ----A---- C:\Windows\system32\VSSVC.exe
2009-07-11 23:50:14 ----A---- C:\Windows\system32\QAGENTRT.DLL
2009-07-11 23:50:14 ----A---- C:\Windows\system32\msvcrt.dll
2009-07-11 23:50:14 ----A---- C:\Windows\system32\gdi32.dll
2009-07-11 23:50:13 ----A---- C:\Windows\system32\mfc42u.dll
2009-07-11 23:50:13 ----A---- C:\Windows\system32\iphlpsvc.dll
2009-07-11 23:50:12 ----A---- C:\Windows\system32\sqlsrv32.dll
2009-07-11 23:50:12 ----A---- C:\Windows\system32\SLUI.exe
2009-07-11 23:50:12 ----A---- C:\Windows\system32\msrd2x40.dll
2009-07-11 23:50:12 ----A---- C:\Windows\system32\eapphost.dll
2009-07-11 23:50:11 ----A---- C:\Windows\system32\winresume.exe
2009-07-11 23:50:11 ----A---- C:\Windows\system32\propdefs.dll
2009-07-11 23:50:11 ----A---- C:\Windows\system32\odbc32.dll
2009-07-11 23:50:10 ----A---- C:\Windows\system32\shdocvw.dll
2009-07-11 23:50:10 ----A---- C:\Windows\system32\dbgeng.dll
2009-07-11 23:50:09 ----A---- C:\Windows\system32\wevtutil.exe
2009-07-11 23:50:09 ----A---- C:\Windows\system32\mssitlb.dll
2009-07-11 23:50:08 ----A---- C:\Windows\system32\WsmSvc.dll
2009-07-11 23:50:08 ----A---- C:\Windows\system32\swprv.dll
2009-07-11 23:50:08 ----A---- C:\Windows\system32\mmcndmgr.dll
2009-07-11 23:50:07 ----A---- C:\Windows\system32\usp10.dll
2009-07-11 23:50:06 ----A---- C:\Windows\system32\vds.exe
2009-07-11 23:50:06 ----A---- C:\Windows\system32\drvinst.exe
2009-07-11 23:50:06 ----A---- C:\Windows\system32\devmgr.dll
2009-07-11 23:50:05 ----A---- C:\Windows\system32\schannel.dll
2009-07-11 23:50:05 ----A---- C:\Windows\system32\netlogon.dll
2009-07-11 23:50:05 ----A---- C:\Windows\system32\msscb.dll
2009-07-11 23:50:05 ----A---- C:\Windows\system32\msctfp.dll
2009-07-11 23:50:05 ----A---- C:\Windows\system32\fdBthProxy.dll
2009-07-11 23:50:05 ----A---- C:\Windows\system32\evr.dll
2009-07-11 23:50:05 ----A---- C:\Windows\system32\DevicePairingProxy.dll
2009-07-11 23:50:05 ----A---- C:\Windows\system32\BFE.DLL
2009-07-11 23:50:05 ----A---- C:\Windows\system32\adsldpc.dll
2009-07-11 23:50:04 ----A---- C:\Windows\system32\WSDApi.dll
2009-07-11 23:50:04 ----A---- C:\Windows\system32\WMVSDECD.DLL
2009-07-11 23:50:04 ----A---- C:\Windows\system32\Wldap32.dll
2009-07-11 23:50:04 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-07-11 23:50:04 ----A---- C:\Windows\system32\wcnwiz.dll
2009-07-11 23:50:04 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-07-11 23:50:03 ----A---- C:\Windows\system32\wercon.exe
2009-07-11 23:50:03 ----A---- C:\Windows\system32\wcncsvc.dll
2009-07-11 23:50:03 ----A---- C:\Windows\system32\services.exe
2009-07-11 23:50:03 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-07-11 23:50:03 ----A---- C:\Windows\system32\mimefilt.dll
2009-07-11 23:50:03 ----A---- C:\Windows\system32\comdlg32.dll
2009-07-11 23:50:03 ----A---- C:\Windows\system32\adtschema.dll
2009-07-11 23:50:02 ----A---- C:\Windows\system32\taskeng.exe
2009-07-11 23:50:02 ----A---- C:\Windows\system32\reg.exe
2009-07-11 23:50:02 ----A---- C:\Windows\system32\mswdat10.dll
2009-07-11 23:50:02 ----A---- C:\Windows\system32\msjter40.dll
2009-07-11 23:50:02 ----A---- C:\Windows\system32\msdtcprx.dll
2009-07-11 23:50:02 ----A---- C:\Windows\system32\msdrm.dll
2009-07-11 23:50:02 ----A---- C:\Windows\system32\ipsmsnap.dll
2009-07-11 23:50:02 ----A---- C:\Windows\system32\certcli.dll
2009-07-11 23:50:01 ----A---- C:\Windows\system32\WMNetMgr.dll
2009-07-11 23:50:01 ----A---- C:\Windows\system32\w32time.dll
2009-07-11 23:50:01 ----A---- C:\Windows\system32\umpnpmgr.dll
2009-07-11 23:50:01 ----A---- C:\Windows\system32\rtffilt.dll
2009-07-11 23:50:01 ----A---- C:\Windows\system32\dnsapi.dll
2009-07-11 23:50:01 ----A---- C:\Windows\system32\certutil.exe
2009-07-11 23:50:00 ----A---- C:\Windows\system32\msshooks.dll
2009-07-11 23:50:00 ----A---- C:\Windows\system32\msscntrs.dll
2009-07-11 23:50:00 ----A---- C:\Windows\system32\IPSECSVC.DLL
2009-07-11 23:50:00 ----A---- C:\Windows\system32\bthserv.dll
2009-07-11 23:50:00 ----A---- C:\Windows\system32\bcrypt.dll
2009-07-11 23:49:59 ----A---- C:\Windows\system32\TsWpfWrp.exe
2009-07-11 23:49:59 ----A---- C:\Windows\system32\rsaenh.dll
2009-07-11 23:49:59 ----A---- C:\Windows\system32\msstrc.dll
2009-07-11 23:49:59 ----A---- C:\Windows\system32\msihnd.dll
2009-07-11 23:49:59 ----A---- C:\Windows\system32\MMDevAPI.dll
2009-07-11 23:49:58 ----A---- C:\Windows\system32\netapi32.dll
2009-07-11 23:49:58 ----A---- C:\Windows\system32\mtxclu.dll
2009-07-11 23:49:58 ----A---- C:\Windows\system32\inetpp.dll
2009-07-11 23:49:58 ----A---- C:\Windows\system32\inetcomm.dll
2009-07-11 23:49:58 ----A---- C:\Windows\system32\dfshim.dll
2009-07-11 23:49:57 ----A---- C:\Windows\system32\mscories.dll
2009-07-11 23:49:57 ----A---- C:\Windows\system32\hidserv.dll
2009-07-11 23:49:57 ----A---- C:\Windows\system32\fundisc.dll
2009-07-11 23:49:57 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2009-07-11 23:49:57 ----A---- C:\Windows\system32\cryptsvc.dll
2009-07-11 23:49:56 ----A---- C:\Windows\system32\wmicmiplugin.dll
2009-07-11 23:49:56 ----A---- C:\Windows\system32\termsrv.dll
2009-07-11 23:49:56 ----A---- C:\Windows\system32\profsvc.dll
2009-07-11 23:49:55 ----A---- C:\Windows\system32\wdc.dll
2009-07-11 23:49:55 ----A---- C:\Windows\system32\shsvcs.dll
2009-07-11 23:49:55 ----A---- C:\Windows\system32\msiexec.exe
2009-07-11 23:49:55 ----A---- C:\Windows\system32\imapi.dll
2009-07-11 23:49:55 ----A---- C:\Windows\system32\gameux.dll
2009-07-11 23:49:54 ----A---- C:\Windows\system32\rasmans.dll
2009-07-11 23:49:54 ----A---- C:\Windows\system32\iassdo.dll
2009-07-11 23:49:54 ----A---- C:\Windows\system32\chsbrkr.dll
2009-07-11 23:49:53 ----A---- C:\Windows\system32\spoolsv.exe
2009-07-11 23:49:53 ----A---- C:\Windows\system32\pnidui.dll
2009-07-11 23:49:53 ----A---- C:\Windows\system32\icardres.dll
2009-07-11 23:49:53 ----A---- C:\Windows\system32\autofmt.exe
2009-07-11 23:49:52 ----A---- C:\Windows\system32\wersvc.dll
2009-07-11 23:49:52 ----A---- C:\Windows\system32\slmgr.vbs
2009-07-11 23:49:52 ----A---- C:\Windows\system32\scrrun.dll
2009-07-11 23:49:52 ----A---- C:\Windows\system32\PSHED.DLL
2009-07-11 23:49:51 ----A---- C:\Windows\system32\pidgenx.dll
2009-07-11 23:49:51 ----A---- C:\Windows\system32\pdh.dll
2009-07-11 23:49:51 ----A---- C:\Windows\system32\dhcpcsvc.dll
2009-07-11 23:49:51 ----A---- C:\Windows\system32\CertEnrollUI.dll
2009-07-11 23:49:51 ----A---- C:\Windows\system32\azroles.dll
2009-07-11 23:49:50 ----A---- C:\Windows\system32\wmpmde.dll
2009-07-11 23:49:49 ----A---- C:\Windows\system32\winlogon.exe
2009-07-11 23:49:49 ----A---- C:\Windows\system32\SyncCenter.dll
2009-07-11 23:49:49 ----A---- C:\Windows\system32\SLUINotify.dll
2009-07-11 23:49:49 ----A---- C:\Windows\system32\msjetoledb40.dll
2009-07-11 23:49:49 ----A---- C:\Windows\system32\comuid.dll
2009-07-11 23:49:48 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-07-11 23:49:48 ----A---- C:\Windows\system32\untfs.dll
2009-07-11 23:49:48 ----A---- C:\Windows\system32\spp.dll
2009-07-11 23:49:48 ----A---- C:\Windows\system32\sethc.exe
2009-07-11 23:49:48 ----A---- C:\Windows\system32\scrobj.dll
2009-07-11 23:49:48 ----A---- C:\Windows\system32\ncrypt.dll
2009-07-11 23:49:48 ----A---- C:\Windows\system32\kd1394.dll
2009-07-11 23:49:48 ----A---- C:\Windows\system32\iassam.dll
2009-07-11 23:49:48 ----A---- C:\Windows\system32\certmgr.dll
2009-07-11 23:49:47 ----A---- C:\Windows\system32\wisptis.exe
2009-07-11 23:49:47 ----A---- C:\Windows\system32\taskcomp.dll
2009-07-11 23:49:47 ----A---- C:\Windows\system32\rtutils.dll
2009-07-11 23:49:47 ----A---- C:\Windows\system32\dwm.exe
2009-07-11 23:49:47 ----A---- C:\Windows\system32\autochk.exe
2009-07-11 23:49:46 ----A---- C:\Windows\system32\winsrv.dll
2009-07-11 23:49:46 ----A---- C:\Windows\system32\printui.dll
2009-07-11 23:49:46 ----A---- C:\Windows\system32\iasnap.dll
2009-07-11 23:49:46 ----A---- C:\Windows\system32\autoconv.exe
2009-07-11 23:49:45 ----A---- C:\Windows\system32\wow32.dll
2009-07-11 23:49:45 ----A---- C:\Windows\system32\userenv.dll
2009-07-11 23:49:45 ----A---- C:\Windows\system32\osk.exe
2009-07-11 23:49:45 ----A---- C:\Windows\system32\onex.dll
2009-07-11 23:49:45 ----A---- C:\Windows\system32\mswsock.dll
2009-07-11 23:49:45 ----A---- C:\Windows\system32\kdcom.dll
2009-07-11 23:49:45 ----A---- C:\Windows\system32\cscript.exe
2009-07-11 23:49:45 ----A---- C:\Windows\system32\basecsp.dll
2009-07-11 23:49:45 ----A---- C:\Windows\system32\audiodg.exe
2009-07-11 23:49:44 ----A---- C:\Windows\system32\spcmsg.dll
2009-07-11 23:49:44 ----A---- C:\Windows\system32\RelMon.dll
2009-07-11 23:49:44 ----A---- C:\Windows\system32\kdusb.dll
2009-07-11 23:49:43 ----A---- C:\Windows\system32\WinSCard.dll
2009-07-11 23:49:43 ----A---- C:\Windows\system32\winmm.dll
2009-07-11 23:49:43 ----A---- C:\Windows\system32\WerFaultSecure.exe
2009-07-11 23:49:43 ----A---- C:\Windows\system32\rdpencom.dll
2009-07-11 23:49:43 ----A---- C:\Windows\system32\offfilt.dll
2009-07-11 23:49:43 ----A---- C:\Windows\system32\msftedit.dll
2009-07-11 23:49:43 ----A---- C:\Windows\system32\dnsrslvr.dll
2009-07-11 23:49:42 ----A---- C:\Windows\system32\WerFault.exe
2009-07-11 23:49:42 ----A---- C:\Windows\system32\Utilman.exe
2009-07-11 23:49:42 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2009-07-11 23:49:42 ----A---- C:\Windows\system32\secproc_ssp.dll
2009-07-11 23:49:41 ----A---- C:\Windows\system32\wsepno.dll
2009-07-11 23:49:41 ----A---- C:\Windows\system32\stobject.dll
2009-07-11 23:49:41 ----A---- C:\Windows\system32\SndVol.exe
2009-07-11 23:49:41 ----A---- C:\Windows\system32\msnetobj.dll
2009-07-11 23:49:41 ----A---- C:\Windows\system32\mscms.dll
2009-07-11 23:49:41 ----A---- C:\Windows\system32\mfplat.dll
2009-07-11 23:49:41 ----A---- C:\Windows\system32\mcmde.dll
2009-07-11 23:49:41 ----A---- C:\Windows\system32\diskraid.exe
2009-07-11 23:49:41 ----A---- C:\Windows\system32\apphelp.dll
2009-07-11 23:49:41 ----A---- C:\Windows\system32\adsmsext.dll
2009-07-11 23:49:40 ----A---- C:\Windows\system32\wscript.exe
2009-07-11 23:49:40 ----A---- C:\Windows\system32\wiaservc.dll
2009-07-11 23:49:40 ----A---- C:\Windows\system32\ulib.dll
2009-07-11 23:49:40 ----A---- C:\Windows\system32\sysclass.dll
2009-07-11 23:49:40 ----A---- C:\Windows\system32\secur32.dll
2009-07-11 23:49:40 ----A---- C:\Windows\system32\prnntfy.dll
2009-07-11 23:49:40 ----A---- C:\Windows\system32\odbccp32.dll
2009-07-11 23:49:40 ----A---- C:\Windows\system32\iasdatastore.dll
2009-07-11 23:49:39 ----A---- C:\Windows\system32\wscntfy.dll
2009-07-11 23:49:39 ----A---- C:\Windows\system32\wlansvc.dll
2009-07-11 23:49:39 ----A---- C:\Windows\system32\rastapi.dll
2009-07-11 23:49:39 ----A---- C:\Windows\system32\pnpsetup.dll
2009-07-11 23:49:39 ----A---- C:\Windows\system32\ipsecsnp.dll
2009-07-11 23:49:39 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2009-07-11 23:49:39 ----A---- C:\Windows\system32\fdProxy.dll
2009-07-11 23:49:39 ----A---- C:\Windows\system32\dsound.dll
2009-07-11 23:49:39 ----A---- C:\Windows\system32\cryptui.dll
2009-07-11 23:49:38 ----A---- C:\Windows\system32\wscsvc.dll
2009-07-11 23:49:38 ----A---- C:\Windows\system32\WMVENCOD.DLL
2009-07-11 23:49:38 ----A---- C:\Windows\system32\wlangpui.dll
2009-07-11 23:49:38 ----A---- C:\Windows\system32\vdsdyn.dll
2009-07-11 23:49:38 ----A---- C:\Windows\system32\rastls.dll
2009-07-11 23:49:38 ----A---- C:\Windows\system32\netiohlp.dll
2009-07-11 23:49:38 ----A---- C:\Windows\system32\logman.exe
2009-07-11 23:49:38 ----A---- C:\Windows\system32\iashlpr.dll
2009-07-11 23:49:38 ----A---- C:\Windows\system32\gpapi.dll
2009-07-11 23:49:38 ----A---- C:\Windows\system32\diskpart.exe
2009-07-11 23:49:38 ----A---- C:\Windows\system32\brcpl.dll
2009-07-11 23:49:37 ----A---- C:\Windows\system32\zipfldr.dll
2009-07-11 23:49:37 ----A---- C:\Windows\system32\wusa.exe
2009-07-11 23:49:37 ----A---- C:\Windows\system32\regsvc.dll
2009-07-11 23:49:37 ----A---- C:\Windows\system32\rasapi32.dll
2009-07-11 23:49:37 ----A---- C:\Windows\system32\ntprint.dll
2009-07-11 23:49:37 ----A---- C:\Windows\system32\mscorier.dll
2009-07-11 23:49:37 ----A---- C:\Windows\system32\iasrad.dll
2009-07-11 23:49:37 ----A---- C:\Windows\system32\findstr.exe
2009-07-11 23:49:36 ----A---- C:\Windows\system32\wshext.dll
2009-07-11 23:49:36 ----A---- C:\Windows\system32\wpccpl.dll
2009-07-11 23:49:36 ----A---- C:\Windows\system32\rasdlg.dll
2009-07-11 23:49:36 ----A---- C:\Windows\system32\netcenter.dll
2009-07-11 23:49:35 ----A---- C:\Windows\system32\wsnmp32.dll
2009-07-11 23:49:35 ----A---- C:\Windows\system32\wer.dll
2009-07-11 23:49:35 ----A---- C:\Windows\system32\themecpl.dll
2009-07-11 23:49:35 ----A---- C:\Windows\system32\iassvcs.dll
2009-07-11 23:49:34 ----A---- C:\Windows\system32\uxsms.dll
2009-07-11 23:49:34 ----A---- C:\Windows\system32\tsbyuv.dll
2009-07-11 23:49:34 ----A---- C:\Windows\system32\srvsvc.dll
2009-07-11 23:49:34 ----A---- C:\Windows\system32\mssprxy.dll
2009-07-11 23:49:33 ----A---- C:\Windows\system32\slcc.dll
2009-07-11 23:49:33 ----A---- C:\Windows\system32\scansetting.dll
2009-07-11 23:49:33 ----A---- C:\Windows\system32\powrprof.dll
2009-07-11 23:49:33 ----A---- C:\Windows\system32\ntmarta.dll
2009-07-11 23:49:33 ----A---- C:\Windows\system32\msutb.dll
2009-07-11 23:49:33 ----A---- C:\Windows\system32\mstsc.exe
2009-07-11 23:49:33 ----A---- C:\Windows\system32\mstlsapi.dll
2009-07-11 23:49:33 ----A---- C:\Windows\system32\iasads.dll
2009-07-11 23:49:32 ----A---- C:\Windows\system32\powercpl.dll
2009-07-11 23:49:32 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2009-07-11 23:49:32 ----A---- C:\Windows\system32\newdev.exe
2009-07-11 23:49:32 ----A---- C:\Windows\system32\networkmap.dll
2009-07-11 23:49:32 ----A---- C:\Windows\system32\iasacct.dll
2009-07-11 23:49:32 ----A---- C:\Windows\system32\authz.dll
2009-07-11 23:49:31 ----A---- C:\Windows\system32\wlanhlp.dll
2009-07-11 23:49:31 ----A---- C:\Windows\system32\themeui.dll
2009-07-11 23:49:31 ----A---- C:\Windows\system32\systemcpl.dll
2009-07-11 23:49:31 ----A---- C:\Windows\system32\sud.dll
2009-07-11 23:49:31 ----A---- C:\Windows\system32\pcaui.dll
2009-07-11 23:49:31 ----A---- C:\Windows\system32\dot3svc.dll
2009-07-11 23:49:31 ----A---- C:\Windows\system32\connect.dll
2009-07-11 23:49:30 ----A---- C:\Windows\system32\usercpl.dll
2009-07-11 23:49:30 ----A---- C:\Windows\system32\samlib.dll
2009-07-11 23:49:30 ----A---- C:\Windows\system32\qdvd.dll
2009-07-11 23:49:30 ----A---- C:\Windows\system32\mmci.dll
2009-07-11 23:49:30 ----A---- C:\Windows\system32\autoplay.dll
2009-07-11 23:49:30 ----A---- C:\Windows\system32\accessibilitycpl.dll
2009-07-11 23:49:29 ----A---- C:\Windows\system32\wpcao.dll
2009-07-11 23:49:29 ----A---- C:\Windows\system32\wlanpref.dll
2009-07-11 23:49:29 ----A---- C:\Windows\system32\vdsutil.dll
2009-07-11 23:49:29 ----A---- C:\Windows\system32\rpchttp.dll
2009-07-11 23:49:29 ----A---- C:\Windows\system32\regapi.dll
2009-07-11 23:49:29 ----A---- C:\Windows\system32\msinfo32.exe
2009-07-11 23:49:28 ----A---- C:\Windows\system32\tapisrv.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\scksp.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\scesrv.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\psisdecd.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\oleprn.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\mpr.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\imm32.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\feclient.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\dot3msm.dll
2009-07-11 23:49:28 ----A---- C:\Windows\system32\AudioSes.dll
2009-07-11 23:49:27 ----A---- C:\Windows\system32\wscisvif.dll
2009-07-11 23:49:27 ----A---- C:\Windows\system32\sdclt.exe
2009-07-11 23:49:27 ----A---- C:\Windows\system32\rekeywiz.exe
2009-07-11 23:49:27 ----A---- C:\Windows\system32\qedit.dll
2009-07-11 23:49:27 ----A---- C:\Windows\system32\pnpui.dll
2009-07-11 23:49:27 ----A---- C:\Windows\system32\perfdisk.dll
2009-07-11 23:49:27 ----A---- C:\Windows\system32\ncryptui.dll
2009-07-11 23:49:27 ----A---- C:\Windows\system32\iaspolcy.dll
2009-07-11 23:49:27 ----A---- C:\Windows\system32\Faultrep.dll
2009-07-11 23:49:27 ----A---- C:\Windows\system32\dpapimig.exe
2009-07-11 23:49:27 ----A---- C:\Windows\system32\DeviceEject.exe
2009-07-11 23:49:26 ----A---- C:\Windows\system32\TSTheme.exe
2009-07-11 23:49:26 ----A---- C:\Windows\system32\spwinsat.dll
2009-07-11 23:49:26 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2009-07-11 23:49:26 ----A---- C:\Windows\system32\scecli.dll
2009-07-11 23:49:26 ----A---- C:\Windows\system32\rasplap.dll
2009-07-11 23:49:26 ----A---- C:\Windows\system32\rasgcw.dll
2009-07-11 23:49:26 ----A---- C:\Windows\system32\hdwwiz.exe
2009-07-11 23:49:26 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2009-07-11 23:49:26 ----A---- C:\Windows\system32\certreq.exe
2009-07-11 23:49:25 ----A---- C:\Windows\system32\whealogr.dll
2009-07-11 23:49:25 ----A---- C:\Windows\system32\tcpmon.dll
2009-07-11 23:49:25 ----A---- C:\Windows\system32\tcpipcfg.dll
2009-07-11 23:49:25 ----A---- C:\Windows\system32\srcore.dll
2009-07-11 23:49:25 ----A---- C:\Windows\system32\PnPUnattend.exe
2009-07-11 23:49:25 ----A---- C:\Windows\system32\fdWSD.dll
2009-07-11 23:49:25 ----A---- C:\Windows\system32\cmmon32.exe
2009-07-11 23:49:24 ----A---- C:\Windows\system32\wiaaut.dll
2009-07-11 23:49:24 ----A---- C:\Windows\system32\SnippingTool.exe
2009-07-11 23:49:24 ----A---- C:\Windows\system32\SCardSvr.dll
2009-07-11 23:49:24 ----A---- C:\Windows\system32\raschap.dll
2009-07-11 23:49:24 ----A---- C:\Windows\system32\MSVidCtl.dll
2009-07-11 23:49:24 ----A---- C:\Windows\system32\fontext.dll
2009-07-11 23:49:24 ----A---- C:\Windows\system32\conime.exe
2009-07-11 23:49:24 ----A---- C:\Windows\system32\cmdial32.dll
2009-07-11 23:49:23 ----A---- C:\Windows\system32\WMVXENCD.DLL
2009-07-11 23:49:23 ----A---- C:\Windows\system32\wlanui.dll
2009-07-11 23:49:23 ----A---- C:\Windows\system32\wlanmsm.dll
2009-07-11 23:49:23 ----A---- C:\Windows\system32\shwebsvc.dll
2009-07-11 23:49:23 ----A---- C:\Windows\system32\rasppp.dll
2009-07-11 23:49:23 ----A---- C:\Windows\system32\PnPutil.exe
2009-07-11 23:49:23 ----A---- C:\Windows\system32\dsprop.dll
2009-07-11 23:49:23 ----A---- C:\Windows\system32\dimsroam.dll
2009-07-11 23:49:22 ----A---- C:\Windows\system32\shsetup.dll
2009-07-11 23:49:22 ----A---- C:\Windows\system32\rasmontr.dll
2009-07-11 23:49:22 ----A---- C:\Windows\system32\oobefldr.dll
2009-07-11 23:49:22 ----A---- C:\Windows\system32\mscandui.dll
2009-07-11 23:49:22 ----A---- C:\Windows\system32\modemui.dll
2009-07-11 23:49:21 ----A---- C:\Windows\system32\wmdrmsdk.dll
2009-07-11 23:49:21 ----A---- C:\Windows\system32\wlgpclnt.dll
2009-07-11 23:49:21 ----A---- C:\Windows\system32\rdpwsx.dll
2009-07-11 23:49:21 ----A---- C:\Windows\system32\dataclen.dll
2009-07-11 23:49:21 ----A---- C:\Windows\system32\chtbrkr.dll
2009-07-11 23:49:21 ----A---- C:\Windows\system32\blackbox.dll
2009-07-11 23:49:20 ----A---- C:\Windows\system32\WSDMon.dll
2009-07-11 23:49:20 ----A---- C:\Windows\system32\wmpeffects.dll
2009-07-11 23:49:20 ----A---- C:\Windows\system32\smss.exe
2009-07-11 23:49:20 ----A---- C:\Windows\system32\netplwiz.dll
2009-07-11 23:49:20 ----A---- C:\Windows\system32\credui.dll
2009-07-11 23:49:20 ----A---- C:\Windows\system32\certprop.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\wscapi.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\wpcsvc.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\thawbrkr.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\networkexplorer.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\msscp.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\msimtf.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\logagent.exe
2009-07-11 23:49:19 ----A---- C:\Windows\system32\InkEd.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\ifmon.dll
2009-07-11 23:49:19 ----A---- C:\Windows\system32\gpresult.exe
2009-07-11 23:49:19 ----A---- C:\Windows\system32\cipher.exe
2009-07-11 23:49:17 ----A---- C:\Windows\system32\softkbd.dll
2009-07-11 23:49:17 ----A---- C:\Windows\system32\sendmail.dll
2009-07-11 23:49:17 ----A---- C:\Windows\system32\msctfui.dll
2009-07-11 23:49:17 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2009-07-11 23:49:16 ----A---- C:\Windows\system32\puiapi.dll
2009-07-11 23:49:16 ----A---- C:\Windows\system32\olepro32.dll
2009-07-11 23:49:16 ----A---- C:\Windows\system32\drmmgrtn.dll
2009-07-11 23:49:16 ----A---- C:\Windows\system32\dmsynth.dll
2009-07-11 23:49:16 ----A---- C:\Windows\system32\cdd.dll
2009-07-11 23:49:16 ----A---- C:\Windows\system32\Apphlpdm.dll
2009-07-11 23:49:15 ----A---- C:\Windows\system32\wshbth.dll
2009-07-11 23:49:15 ----A---- C:\Windows\system32\version.dll
2009-07-11 23:49:15 ----A---- C:\Windows\system32\SLLUA.exe
2009-07-11 23:49:15 ----A---- C:\Windows\system32\msisip.dll
2009-07-11 23:49:15 ----A---- C:\Windows\system32\mprapi.dll
2009-07-11 23:49:15 ----A---- C:\Windows\system32\input.dll
2009-07-11 23:49:15 ----A---- C:\Windows\system32\fc.exe
2009-07-11 23:49:15 ----A---- C:\Windows\system32\ExplorerFrame.dll
2009-07-11 23:49:14 ----A---- C:\Windows\system32\fdSSDP.dll
2009-07-11 23:49:14 ----A---- C:\Windows\system32\dmusic.dll
2009-07-11 23:49:13 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-07-11 23:49:13 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-07-11 23:49:13 ----A---- C:\Windows\system32\msjint40.dll
2009-07-11 23:49:13 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2009-07-11 23:49:13 ----A---- C:\Windows\system32\l2nacp.dll
2009-07-11 23:49:13 ----A---- C:\Windows\system32\ftp.exe
2009-07-11 23:49:13 ----A---- C:\Windows\system32\eapp3hst.dll
2009-07-11 23:49:13 ----A---- C:\Windows\system32\cscdll.dll
2009-07-11 23:49:13 ----A---- C:\Windows\system32\cscapi.dll
2009-07-11 23:49:12 ----A---- C:\Windows\system32\wsdchngr.dll
2009-07-11 23:49:12 ----A---- C:\Windows\system32\Storprop.dll
2009-07-11 23:49:12 ----A---- C:\Windows\system32\SMBHelperClass.dll
2009-07-11 23:49:12 ----A---- C:\Windows\system32\rrinstaller.exe
2009-07-11 23:49:12 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-07-11 23:49:12 ----A---- C:\Windows\system32\bthci.dll
2009-07-11 23:49:11 ----A---- C:\Windows\system32\rasdial.exe
2009-07-11 23:49:11 ----A---- C:\Windows\system32\rasdiag.dll
2009-07-11 23:49:11 ----A---- C:\Windows\system32\fdWCN.dll
2009-07-11 23:49:11 ----A---- C:\Windows\system32\dot3cfg.dll
2009-07-11 23:49:11 ----A---- C:\Windows\system32\bthudtask.exe
2009-07-11 23:49:10 ----A---- C:\Windows\system32\tscupgrd.exe
2009-07-11 23:49:10 ----A---- C:\Windows\system32\slcinst.dll
2009-07-11 23:49:10 ----A---- C:\Windows\system32\nslookup.exe
2009-07-11 23:49:10 ----A---- C:\Windows\system32\networkitemfactory.dll
2009-07-11 23:49:10 ----A---- C:\Windows\system32\mfps.dll
2009-07-11 23:49:10 ----A---- C:\Windows\system32\ipconfig.exe
2009-07-11 23:49:10 ----A---- C:\Windows\system32\eappcfg.dll
2009-07-11 23:49:10 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
2009-07-11 23:49:10 ----A---- C:\Windows\system32\aaclient.dll
2009-07-11 23:49:09 ----A---- C:\Windows\system32\ocsetup.exe
2009-07-11 23:49:09 ----A---- C:\Windows\system32\hbaapi.dll
2009-07-11 23:49:09 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2009-07-11 23:49:09 ----A---- C:\Windows\system32\fdeploy.dll
2009-07-11 23:49:09 ----A---- C:\Windows\system32\eappgnui.dll
2009-07-11 23:49:08 ----A---- C:\Windows\system32\tsgqec.dll
2009-07-11 23:49:08 ----A---- C:\Windows\system32\PNPXAssoc.dll
2009-07-11 23:49:08 ----A---- C:\Windows\system32\mmcico.dll
2009-07-11 23:49:08 ----A---- C:\Windows\system32\mfpmp.exe
2009-07-11 23:49:08 ----A---- C:\Windows\system32\gpupdate.exe
2009-07-11 23:49:07 ----A---- C:\Windows\system32\csrstub.exe
2009-07-11 23:49:07 ----A---- C:\Windows\system32\cbsra.exe
2009-07-11 23:49:07 ----A---- C:\Windows\system32\bitsigd.dll
2009-07-11 23:49:07 ----A---- C:\Windows\system32\atmlib.dll
2009-07-11 23:49:06 ----A---- C:\Windows\system32\NcdProp.dll
2009-07-11 23:49:06 ----A---- C:\Windows\system32\iscsilog.dll
2009-07-11 23:49:05 ----A---- C:\Windows\system32\winrnr.dll
2009-07-11 23:49:05 ----A---- C:\Windows\system32\vdmdbg.dll
2009-07-11 23:49:05 ----A---- C:\Windows\system32\slwga.dll
2009-07-11 23:49:05 ----A---- C:\Windows\system32\odbcconf.dll
2009-07-11 23:49:05 ----A---- C:\Windows\system32\midimap.dll
2009-07-11 23:49:05 ----A---- C:\Windows\system32\inetppui.dll
2009-07-11 23:49:03 ----A---- C:\Windows\system32\spwmp.dll
2009-07-11 23:49:02 ----A---- C:\Windows\system32\wmploc.DLL
2009-07-11 23:49:02 ----A---- C:\Windows\system32\dxmasf.dll
2009-07-11 23:48:57 ----A---- C:\Windows\system32\msimsg.dll
2009-07-11 23:48:57 ----A---- C:\Windows\system32\mferror.dll
2009-07-11 23:48:57 ----A---- C:\Windows\system32\f3ahvoas.dll
2009-07-11 23:48:36 ----A---- C:\Windows\system32\SmiEngine.dll
2009-07-11 23:48:32 ----A---- C:\Windows\system32\wdscore.dll
2009-07-11 23:48:32 ----A---- C:\Windows\system32\PkgMgr.exe
2009-07-11 23:48:20 ----A---- C:\Windows\system32\drvstore.dll
2009-07-11 18:18:36 ----ASH---- C:\Users\Hector\AppData\Roaming\desktop.ini
2009-07-11 15:16:09 ----D---- C:\Users\Hector\AppData\Roaming\DivX
2009-07-11 14:46:01 ----D---- C:\Program Files\Google
2009-07-11 14:45:58 ----D---- C:\Program Files\DivX
2009-07-09 22:19:46 ----D---- C:\Users\Hector\AppData\Roaming\WildTangent
2009-07-09 21:35:32 ----HD---- C:\ProgramData\ArcSoft
2009-07-09 21:34:44 ----D---- C:\Program Files\Common Files\ArcSoft
2009-07-09 21:34:23 ----D---- C:\Users\Hector\AppData\Roaming\ArcSoft
2009-07-09 19:37:32 ----D---- C:\PerfLogs
2009-07-09 19:07:07 ----A---- C:\Windows\system32\recdisc.exe
2009-07-09 19:07:04 ----A---- C:\Windows\system32\sdspres.dll
2009-07-09 19:06:47 ----A---- C:\Windows\system32\sxproxy.dll
2009-07-09 19:06:21 ----A---- C:\Windows\system32\mstask.dll
2009-07-09 19:06:21 ----A---- C:\Windows\system32\mssha.dll
2009-07-09 19:06:21 ----A---- C:\Windows\system32\msrdc.dll
2009-07-09 19:06:21 ----A---- C:\Windows\system32\msra.exe
2009-07-09 19:06:20 ----A---- C:\Windows\system32\NAPMONTR.DLL
2009-07-09 19:06:20 ----A---- C:\Windows\system32\napipsec.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\NapiNSP.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\NAPHLPR.DLL
2009-07-09 19:06:20 ----A---- C:\Windows\system32\napdsnap.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2009-07-09 19:06:20 ----A---- C:\Windows\system32\mydocs.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\mycomput.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\MuiUnattend.exe
2009-07-09 19:06:20 ----A---- C:\Windows\system32\mtxoci.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\mtxlegih.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\mtxdm.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\mtstocom.exe
2009-07-09 19:06:20 ----A---- C:\Windows\system32\mswmdm.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\msvidc32.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\msvfw32.dll
2009-07-09 19:06:20 ----A---- C:\Windows\system32\msvbvm60.dll
2009-07-09 19:06:19 ----A---- C:\Windows\system32\msdtcVSp1res.dll
2009-07-09 19:06:19 ----A---- C:\Windows\system32\msdtcuiu.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2009-07-09 19:06:18 ----A---- C:\Windows\system32\MSMPEG2ADEC.DLL
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msmmsp.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdtclog.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdtckrm.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdtc.exe
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdt.exe
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdt.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdri.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdmo.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdelta.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdart.dll
2009-07-09 19:06:18 ----A---- C:\Windows\system32\msdadiag.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\mspatcha.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\mspaint.exe
2009-07-09 19:06:17 ----A---- C:\Windows\system32\msorcl32.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\msoert2.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\msoeacct.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\msobjs.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\msieftp.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\msidle.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\msident.dll
2009-07-09 19:06:17 ----A---- C:\Windows\system32\msidcrl30.dll
2009-07-09 19:06:15 ----A---- C:\Windows\system32\notepad.exe
2009-07-09 19:06:15 ----A---- C:\Windows\system32\Nlsdl.dll
2009-07-09 19:06:15 ----A---- C:\Windows\notepad.exe
2009-07-09 19:06:14 ----A---- C:\Windows\system32\nlmgp.dll
2009-07-09 19:06:13 ----A---- C:\Windows\system32\nlsbres.dll
2009-07-09 19:06:09 ----A---- C:\Windows\system32\odbctrac.dll
2009-07-09 19:06:09 ----A---- C:\Windows\system32\odbcjt32.dll
2009-07-09 19:06:09 ----A---- C:\Windows\system32\odbccu32.dll
2009-07-09 19:06:09 ----A---- C:\Windows\system32\odbccr32.dll
2009-07-09 19:06:09 ----A---- C:\Windows\system32\odbcbcp.dll
2009-07-09 19:06:09 ----A---- C:\Windows\system32\objsel.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\ntvdm.exe
2009-07-09 19:06:08 ----A---- C:\Windows\system32\ntshrui.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\ntlanman.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\ntdsapi.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\nsisvc.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\nsi.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\nshipsec.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\nshhttp.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\netdiagfx.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\netcorehc.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\netcfgx.dll
2009-07-09 19:06:08 ----A---- C:\Windows\system32\netcfg.exe
2009-07-09 19:06:08 ----A---- C:\Windows\system32\netbtugc.exe
2009-07-09 19:06:07 ----A---- C:\Windows\system32\nlasvc.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\nlaapi.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\Netplwiz.exe
2009-07-09 19:06:07 ----A---- C:\Windows\system32\netman.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\netiougc.exe
2009-07-09 19:06:07 ----A---- C:\Windows\system32\netid.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\netevent.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\net1.exe
2009-07-09 19:06:07 ----A---- C:\Windows\system32\net.exe
2009-07-09 19:06:07 ----A---- C:\Windows\system32\ndfetw.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\ndfapi.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\ncsi.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\ncobjapi.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\nci.dll
2009-07-09 19:06:07 ----A---- C:\Windows\system32\nbtstat.exe
2009-07-09 19:06:07 ----A---- C:\Windows\system32\NAPSTAT.EXE
2009-07-09 19:06:06 ----A---- C:\Windows\system32\netprofm.dll
2009-07-09 19:06:06 ----A---- C:\Windows\system32\netprof.dll
2009-07-09 19:06:06 ----A---- C:\Windows\system32\makecab.exe
2009-07-09 19:06:06 ----A---- C:\Windows\system32\luainstall.dll
2009-07-09 19:06:06 ----A---- C:\Windows\system32\lsmproxy.dll
2009-07-09 19:06:06 ----A---- C:\Windows\system32\lsm.exe
2009-07-09 19:06:06 ----A---- C:\Windows\system32\lpremove.exe
2009-07-09 19:06:06 ----A---- C:\Windows\system32\lpksetup.exe
2009-07-09 19:06:06 ----A---- C:\Windows\system32\LogonUI.exe
2009-07-09 19:06:06 ----A---- C:\Windows\system32\loghours.dll
2009-07-09 19:06:06 ----A---- C:\Windows\system32\lodctr.exe
2009-07-09 19:06:06 ----A---- C:\Windows\system32\localui.dll
2009-07-09 19:06:06 ----A---- C:\Windows\system32\localsec.dll
2009-07-09 19:06:05 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2009-07-09 19:06:05 ----A---- C:\Windows\system32\mfvdsp.dll
2009-07-09 19:06:05 ----A---- C:\Windows\system32\mfcsubs.dll
2009-07-09 19:06:05 ----A---- C:\Windows\system32\MdSched.exe
2009-07-09 19:06:05 ----A---- C:\Windows\system32\mdminst.dll
2009-07-09 19:06:05 ----A---- C:\Windows\system32\McxDriv.dll
2009-07-09 19:06:05 ----A---- C:\Windows\system32\Mcx2Svc.dll
2009-07-09 19:06:05 ----A---- C:\Windows\system32\mcbuilder.exe
2009-07-09 19:06:04 ----A---- C:\Windows\system32\loadperf.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\lnkstub.exe
2009-07-09 19:06:04 ----A---- C:\Windows\system32\lltdsvc.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\lltdapi.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\L2SecHC.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\l2gpstore.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\ktmw32.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\ktmutil.exe
2009-07-09 19:06:04 ----A---- C:\Windows\system32\KMSVC.DLL
2009-07-09 19:06:04 ----A---- C:\Windows\system32\keymgr.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\itss.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\iscsiwmi.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\iscsium.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\iscsiexe.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\iscsied.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\iprtrmgr.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\iprtprio.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\ipnathlp.dll
2009-07-09 19:06:04 ----A---- C:\Windows\system32\IPBusEnum.dll
2009-07-09 19:06:03 ----A---- C:\Windows\system32\msconfig.exe
2009-07-09 19:06:03 ----A---- C:\Windows\system32\mprmsg.dll
2009-07-09 19:06:03 ----A---- C:\Windows\system32\mprdim.dll
2009-07-09 19:06:03 ----A---- C:\Windows\system32\mprddm.dll
2009-07-09 19:06:03 ----A---- C:\Windows\system32\MPG4DECD.DLL
2009-07-09 19:06:03 ----A---- C:\Windows\system32\MP4SDECD.DLL
2009-07-09 19:06:03 ----A---- C:\Windows\system32\MP43DECD.DLL
2009-07-09 19:06:03 ----A---- C:\Windows\system32\MP3DMOD.DLL
2009-07-09 19:06:03 ----A---- C:\Windows\system32\mountvol.exe
2009-07-09 19:06:03 ----A---- C:\Windows\system32\KBDKOR.DLL
2009-07-09 19:06:03 ----A---- C:\Windows\system32\KBDJPN.DLL
2009-07-09 19:06:02 ----A---- C:\Windows\system32\msacm32.dll
2009-07-09 19:06:02 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2009-07-09 19:06:02 ----A---- C:\Windows\system32\msaatext.dll
2009-07-09 19:06:01 ----A---- C:\Windows\system32\mobsync.exe
2009-07-09 19:06:01 ----A---- C:\Windows\system32\mmcss.dll
2009-07-09 19:06:01 ----A---- C:\Windows\system32\mmcshext.dll
2009-07-09 19:06:01 ----A---- C:\Windows\system32\mmcbase.dll
2009-07-09 19:06:01 ----A---- C:\Windows\system32\mlang.dll
2009-07-09 19:06:00 ----A---- C:\Windows\system32\seclogon.dll
2009-07-09 19:06:00 ----A---- C:\Windows\system32\SecEdit.exe
2009-07-09 19:06:00 ----A---- C:\Windows\system32\sdshext.dll
2009-07-09 19:06:00 ----A---- C:\Windows\system32\sdrsvc.dll
2009-07-09 19:06:00 ----A---- C:\Windows\system32\migisol.dll
2009-07-09 19:06:00 ----A---- C:\Windows\system32\MigAutoPlay.exe
2009-07-09 19:05:59 ----A---- C:\Windows\system32\shutdown.exe
2009-07-09 19:05:59 ----A---- C:\Windows\system32\shrpubw.exe
2009-07-09 19:05:59 ----A---- C:\Windows\system32\shrink.dll
2009-07-09 19:05:59 ----A---- C:\Windows\system32\shimgvw.dll
2009-07-09 19:05:59 ----A---- C:\Windows\system32\shgina.dll
2009-07-09 19:05:59 ----A---- C:\Windows\system32\shacct.dll
2009-07-09 19:05:58 ----A---- C:\Windows\system32\SmiInstaller.dll
2009-07-09 19:05:58 ----A---- C:\Windows\system32\SessEnv.dll
2009-07-09 19:05:57 ----A---- C:\Windows\system32\sfc_os.dll
2009-07-09 19:05:57 ----A---- C:\Windows\system32\sfc.exe
2009-07-09 19:05:57 ----A---- C:\Windows\system32\setupugc.exe
2009-07-09 19:05:57 ----A---- C:\Windows\system32\setupSNK.exe
2009-07-09 19:05:57 ----A---- C:\Windows\system32\setupcln.dll
2009-07-09 19:05:57 ----A---- C:\Windows\system32\setupcl.exe
2009-07-09 19:05:57 ----A---- C:\Windows\system32\setbcdlocale.dll
2009-07-09 19:05:57 ----A---- C:\Windows\system32\serialui.dll
2009-07-09 19:05:57 ----A---- C:\Windows\system32\Sens.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\QAGENT.DLL
2009-07-09 19:05:56 ----A---- C:\Windows\system32\puiobj.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\psbase.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\provthrd.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\prevhost.exe
2009-07-09 19:05:56 ----A---- C:\Windows\system32\pots.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\PortableDeviceWiaCompat.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\pnrpnsp.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\PNPXAssocPrx.dll
2009-07-09 19:05:56 ----A---- C:\Windows\system32\pnpts.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\profprov.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\procinst.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\prntvpt.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\pcasvc.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\pcadm.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\p2pnetsh.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\p2phost.exe
2009-07-09 19:05:55 ----A---- C:\Windows\system32\p2pcollab.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\P2P.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\osblprov.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\osbaseln.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\OptionalFeatures.exe
2009-07-09 19:05:55 ----A---- C:\Windows\system32\olethk32.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\olesvr32.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\oledlg.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\olecli32.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\oleacc.dll
2009-07-09 19:05:55 ----A---- C:\Windows\system32\ogldrv.dll
2009-07-09 19:05:49 ----A---- C:\Windows\system32\runonce.exe
2009-07-09 19:05:49 ----A---- C:\Windows\system32\rstrui.exe
2009-07-09 19:05:49 ----A---- C:\Windows\system32\RstrtMgr.dll
2009-07-09 19:05:49 ----A---- C:\Windows\system32\rshx32.dll
2009-07-09 19:05:49 ----A---- C:\Windows\system32\PlaySndSrv.dll
2009-07-09 19:05:49 ----A---- C:\Windows\system32\pla.dll
2009-07-09 19:05:49 ----A---- C:\Windows\system32\PING.EXE
2009-07-09 19:05:49 ----A---- C:\Windows\system32\perfts.dll
2009-07-09 19:05:49 ----A---- C:\Windows\system32\perfnet.dll
2009-07-09 19:05:49 ----A---- C:\Windows\system32\perfmon.msc
2009-07-09 19:05:49 ----A---- C:\Windows\system32\perfmon.exe
2009-07-09 19:05:49 ----A---- C:\Windows\system32\pdhui.dll
2009-07-09 19:05:48 ----A---- C:\Windows\system32\sdengin2.dll
2009-07-09 19:05:48 ----A---- C:\Windows\system32\sdchange.exe
2009-07-09 19:05:48 ----A---- C:\Windows\system32\schtasks.exe
2009-07-09 19:05:48 ----A---- C:\Windows\system32\sbunattend.exe
2009-07-09 19:05:48 ----A---- C:\Windows\system32\rtm.dll
2009-07-09 19:05:48 ----A---- C:\Windows\system32\RpcPing.exe
2009-07-09 19:05:48 ----A---- C:\Windows\system32\ROUTE.EXE
2009-07-09 19:05:48 ----A---- C:\Windows\system32\Robocopy.exe
2009-07-09 19:05:48 ----A---- C:\Windows\system32\riched32.dll
2009-07-09 19:05:48 ----A---- C:\Windows\system32\rgb9rast.dll
2009-07-09 19:05:48 ----A---- C:\Windows\system32\resutils.dll
2009-07-09 19:05:48 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2009-07-09 19:05:47 ----A---- C:\Windows\system32\sbeio.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\sbe.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\remotepg.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\regini.exe
2009-07-09 19:05:47 ----A---- C:\Windows\system32\RegCtrl.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\rdrleakdiag.exe
2009-07-09 19:05:47 ----A---- C:\Windows\system32\RDPENCDD.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\rasctrs.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\rascfg.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\rasauto.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\RacAgent.exe
2009-07-09 19:05:47 ----A---- C:\Windows\system32\qwave.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\QUTIL.DLL
2009-07-09 19:05:47 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2009-07-09 19:05:47 ----A---- C:\Windows\system32\QSHVHOST.DLL
2009-07-09 19:05:47 ----A---- C:\Windows\system32\qdv.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\QCLIPROV.DLL
2009-07-09 19:05:47 ----A---- C:\Windows\system32\qcap.dll
2009-07-09 19:05:47 ----A---- C:\Windows\system32\qasf.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\rdpdd.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\rdpcfgex.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\rasqec.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\rasphone.exe
2009-07-09 19:05:46 ----A---- C:\Windows\system32\RASMM.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\rasman.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\raserver.exe
2009-07-09 19:05:46 ----A---- C:\Windows\system32\devenum.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\Defrag.exe
2009-07-09 19:05:46 ----A---- C:\Windows\system32\dbnetlib.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\d3dxof.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\d3dim700.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\d3dim.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\d3d8.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\d3d10core.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\d3d10_1core.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\d3d10_1.dll
2009-07-09 19:05:46 ----A---- C:\Windows\system32\d3d10.dll
2009-07-09 19:05:46 ----A---- C:\Windows\regedit.exe