Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Having trouble using my laptop!

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Having trouble using my laptop!

Unread postby LOL =) » July 28th, 2009, 7:38 pm

I was using bluetooth to transfer photos and videos. My friend was uploading those files to facebook and myspace. She says the blue screen of death popped up and it said, "A threat has been detected and your computer is being shut down to prevent any harm to your computer." or something along the lines. I tried to turn it on again but as soon as the switch has been flipped, it shut right back down and that kept repeating a few times until it turned back on. A black screen popped up asking if it should boot up normally and she chose yes. It took longer to load windows than normal. A notification popped up saying that hp advisor was not working and that windows would search for a solution. I then used avg to scan the whole computer and then left the computer unattended knowing the scan usually takes about two hours. When my friend told me that when she got to the computer, it was shut down. I started it back up and it took longer than usual again. I still had errors with the hp advisor so windows shut the program down and said it will notify me when it comes up with a solution. Afterwards, I came to this site and started typing these words. That's all I have done to this point besides the hijackthis.



----------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:10:14 PM, on 7/28/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Windows\system32\Dwm.exe
c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\RtHDVCpl.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Hp\HP Software Update\hpwuschd2.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\Shota\Program Files\DNA\btdna.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\System32\rundll32.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Windows\system32\conime.exe
C:\Users\Shota\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Shota\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Windows\System32\wsqmcons.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
R3 - URLSearchHook: (no name) - *{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
R3 - URLSearchHook: (no name) - *{03402f96-3dc7-4285-bc50-9e81fefafe43} - (no file)
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: AVG Security Toolbar BHO - {A3BC75A2-1F87-4686-AA43-5347D756017C} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll
O2 - BHO: AIM Toolbar Loader - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - C:\Program Files\AIM Toolbar\aimtb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: VeriSoft Access Manager - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
O3 - Toolbar: AVG Security Toolbar - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - C:\Program Files\AVG\AVG8\Toolbar\IEToolbar.dll
O3 - Toolbar: AIM Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - C:\Program Files\AIM Toolbar\aimtb.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe c:\PROGRA~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALuNotify.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Shota\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Users\Shota\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: NETGEAR WG111v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
O8 - Extra context menu item: &AIM Toolbar Search - C:\ProgramData\AIM Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: AIM Toolbar - {0b83c99c-1efa-4259-858f-bcb33e007a5b} - C:\Program Files\AIM Toolbar\aimtb.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: APSHook.dll,avgrsstx.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Google Update Service (gupdate1ca0b192adaaab0) (gupdate1ca0b192adaaab0) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 13369 bytes
LOL =)
Regular Member
 
Posts: 34
Joined: July 30th, 2008, 4:23 am
Location: on your mind
Advertisement
Register to Remove

Re: Having trouble using my laptop!

Unread postby MWR 3 day Mod » August 1st, 2009, 2:31 am

Hi,

We are sorry to see your topic is over three days old and no one has yet been able to respond and offer help.

If you still require assistance, please post a link to your topic in our Waiting for help with malware removal? forum, and our staff will make an effort to assist you as promptly as possible. Only post a LINK to this topic, DO NOT post your DDS log!

Please do not reply to this topic.

If you haven't posted within two days in the "Waiting for help with malware removal?" forum, we will assume you have been able to get assistance in other ways and this topic will be closed.
MWR 3 day Mod
MRU Undergrad
MRU Undergrad
 
Posts: 2534
Joined: April 4th, 2008, 8:40 am

Re: Having trouble using my laptop!

Unread postby Cypher » August 1st, 2009, 6:47 am

Hi, Welcome to the Malware Removal forum.
My name is Cypher, and I'll be helping you with your malware problems.
Before we begin...please note the following important guidelines.
  1. The instructions being given are for YOUR computer and system only!.
    Using these instructions on a different computer can cause damage to that computer and possibly render it inoperable!
  2. Please, if you have questions about something...ASK, don't guess or assume.
  3. Please -only- post your problem at (1) one help site. Applying fixes from multiple help sites can cause problems.
  4. Please -only- reply to this thread, do not start another!
  5. Please do not run any other fix/removal tools unless instructed to do so!
  6. Print each set of instructions...if possible...your Internet connection might not be available during some fix processes.
  7. Please, continue responding, until I give you the "All Clean"

If you follow these guidelines, things should proceed smoothly. :)
I am currently reviewing your log and will return, as soon as possible, with your instructions.


Please post an Uninstall list.

  1. Open HijackThis.
  2. Click on the Open the Misc Tools section button.
  3. Look under System tools.
  4. Click on the Open Uninstall Manager... button.
  5. Click on the Save list... button.
  6. It will prompt you to save. Save this log in a convenient location. By default it's named uninstall_list.txt.
  7. Notepad will open. Please post this log in your next reply.

In your next reply.

1. Uninstall list.
User avatar
Cypher
Admin/Teacher
Admin/Teacher
 
Posts: 15148
Joined: October 29th, 2008, 12:49 pm
Location: Land Of The Leprechauns

Re: Having trouble using my laptop!

Unread postby LOL =) » August 1st, 2009, 2:58 pm

ActiveCheck component for HP Active Support Library
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
Adobe Flash Player 9 ActiveX
Adobe Reader 8
AIM 6
Aim Plugin for QQ Games
AIM Toolbar
AIMTunes
AppCore
Apple Mobile Device Support
Apple Software Update
AuthenTec Fingerprint Sensor Minimum Install
AV
AVG 8.5
Bonjour
ccCommon
Download Updater (AOL LLC)
ESU for Microsoft Vista
Google Earth
Google Update Helper
Google Updater
HijackThis 2.0.2
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
HP Active Support Library
HP Active Support Library 32 bit components
HP Customer Experience Enhancements
HP Easy Setup - Frontend
HP Help and Support
HP Integrated Module with Bluetooth wireless technology
HP Pavilion Webcam Driver for Vista v061.001.00005
HP Photosmart Essential 2.0
HP Quick Launch Buttons 6.10 B9
HP QuickPlay 3.2
HP Total Care Advisor
HP Update
HP User Guides 0034
HP Wireless Assistant
HPAsset component for HP Active Support Library
HPNetworkAssistant
iPod for Windows 2005-09-23
iTunes
Java(TM) 6 Update 14
Java(TM) SE Runtime Environment 6
LimeWire 5.1.4
LiveUpdate 3.2 (Symantec Corporation)
LiveUpdate Notice (Symantec Corporation)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1
Microsoft Office Access MUI (English) 2007
Microsoft Office Access Setup Metadata MUI (English) 2007
Microsoft Office Enterprise 2007
Microsoft Office Enterprise 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Groove MUI (English) 2007
Microsoft Office Groove Setup Metadata MUI (English) 2007
Microsoft Office InfoPath MUI (English) 2007
Microsoft Office OneNote MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Word MUI (English) 2007
Microsoft VC9 runtime libraries
Microsoft Visual C++ 2005 Redistributable
Motorola SM56 Data Fax Modem
Mozilla Firefox (3.5.1)
MSCU for Microsoft Vista
MSRedist
MSXML 4.0 SP2 (KB954430)
muvee autoProducer 6.0
My HP Games
NETGEAR WG111v3 wireless USB 2.0 adapter
Norton AntiVirus
Norton Confidential Browser Component
Norton Confidential Web Protection Component
Norton Internet Security
Norton Internet Security
Norton Internet Security
Norton Internet Security
Norton Internet Security
Norton Internet Security (Symantec Corporation)
Norton Protection Center
NVIDIA Drivers
QQ Games
QuickTime
Realtek High Definition Audio Driver
Rhapsody Player Engine
Roxio Activation Module
Roxio Creator Audio
Roxio Creator Basic v9
Roxio Creator Copy
Roxio Creator Data
Roxio Creator EasyArchive
Roxio Creator Tools
Roxio Express Labeler 3
Roxio MyDVD Basic v9
Shaiya(US)
SPBBC 32bit
Symantec Real Time Storage Protection Component
SymNet
Synaptics Pointing Device Driver
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
VeriSoft Access Manager
Viewpoint Media Player
LOL =)
Regular Member
 
Posts: 34
Joined: July 30th, 2008, 4:23 am
Location: on your mind

Re: Having trouble using my laptop!

Unread postby Cypher » August 3rd, 2009, 6:38 am

Hi LOL =)

REMOVE P2P PROGRAMS

IMPORTANT I notice there are signs of one or more P2P (Person to Person) File Sharing Programs on your computer.


BitTorrent
LimeWire 5.1.4



Please read the Guidelines for P2P Programs where we explain why it's not a good idea to have them.

Note: Even if you are using a "safe" P2P program, it is only the program that is safe. You will be sharing files from uncertified sources, and these are often infected. The bad guys use P2P filesharing as a major conduit to spread their wares.


Click on start and type in > Run > Select Run type in appwiz.cpl and press OK and uninstall the programs listed above (in red) NOW.


Remove one of your Anti Virus programs.
You are operating your computer with multiple Anti Virus programs running in memory at once:

AVG8
Norton Antivirus


Anti-virus programs take up an enormous amount of your computer's resources when they are actively scanning your computer. Having two anti-virus programs running at the same time can cause your computer to run very slow, become unstable and even, in rare cases, crash.

Please remove one of them.

If you decide to remove Norton Antivirus , all of these should be removed also:

Norton Confidential Browser Component
Norton Confidential Web Protection Component
Norton Internet Security
Norton Internet Security
Norton Internet Security
Norton Internet Security
Norton Internet Security
Norton Internet Security (Symantec Corporation)
Norton Protection Center


Next.

RSIT (Random's System Information Tool)
Please download RSIT by random/random... save it to your desktop.
  1. Right click on RSIT.exe and select "Run As Administrator" to run it. If Windows UAC prompts you, please allow it.
  2. Please read the disclaimer... click on Continue.
  3. RSIT will start running. When done... 2 logs files...will be produced.
  4. The first one, "log.txt", will be maximized
  5. The second one, "info.txt", will be minimized.
Please post both... "log.txt" and "info.txt", file contents in your next reply.
(These logs can be lengthy, so post 1 log per reply please.)

In your next reply.

1. RSIT log.txt file contents and info.txt file contents.
User avatar
Cypher
Admin/Teacher
Admin/Teacher
 
Posts: 15148
Joined: October 29th, 2008, 12:49 pm
Location: Land Of The Leprechauns

Re: Having trouble using my laptop!

Unread postby LOL =) » August 5th, 2009, 6:28 pm

There wasn't enough space to paste all of the information so I will have to break the log into two pieces.

Logfile of random's system information tool 1.06 (written by random/random)
Run by Shota at 2009-08-05 18:10:32
Microsoft® Windows Vista™ Home Premium Service Pack 1
System drive C: has 91 GB (63%) free of 144 GB
Total RAM: 1982 MB (43% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:10:53 PM, on 8/5/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18813)
Boot mode: Normal

Running processes:
C:\Windows\SYSTEM32\WISPTIS.EXE
C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
C:\Windows\system32\Dwm.exe
c:\Program Files\Bioscrypt\VeriSoft\Bin\AsGHost.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\RtHDVCpl.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Hp\QuickPlay\QPService.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Hp\HP Software Update\hpwuschd2.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
C:\Users\Shota\AppData\Local\Google\Update\1.2.183.7\GoogleCrashHandler.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Hewlett-Packard\Shared\HpqToaster.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BtStackServer.exe
C:\Program Files\Hewlett-Packard\HP Advisor\SSDK04.exe
C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Users\Shota\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Shota\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\Shota\Desktop\RSIT (2).exe
C:\Program Files\Trend Micro\HijackThis\Shota.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE= ... &pf=laptop
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: AIM Toolbar Search Class - {03402f96-3dc7-4285-bc50-9e81fefafe43} - C:\Program Files\AIM Toolbar\aimtb.dll
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll
O2 - BHO: AIM Toolbar Loader - {b0cda128-b425-4eef-a174-61a11ac5dbf8} - C:\Program Files\AIM Toolbar\aimtb.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: VeriSoft Access Manager - {DF21F1DB-80C6-11D3-9483-B03D0EC10000} - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll
O3 - Toolbar: (no name) - {CCC7A320-B3CA-4199-B1A6-9F516DD69829} - (no file)
O3 - Toolbar: AIM Toolbar - {61539ecd-cc67-4437-a03c-9aaccbd14326} - C:\Program Files\AIM Toolbar\aimtb.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [CognizanceTS] rundll32.exe c:\PROGRA~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll,RegisterModule
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALuNotify.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [HPAdvisor] C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe autoRun
O4 - HKCU\..\Run: [Google Update] "C:\Users\Shota\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: NETGEAR WG111v3 Smart Wizard.lnk = C:\Program Files\NETGEAR\WG111v3\WG111v3.exe
O8 - Extra context menu item: &AIM Toolbar Search - C:\ProgramData\AIM Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Send image to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O8 - Extra context menu item: Send page to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: AIM Toolbar - {0b83c99c-1efa-4259-858f-bcb33e007a5b} - C:\Program Files\AIM Toolbar\aimtb.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O13 - Gopher Prefix:
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~3\Office12\GR99D3~1.DLL
O20 - AppInit_DLLs: APSHook.dll
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Google Update Service (gupdate1ca0b192adaaab0) (gupdate1ca0b192adaaab0) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 12869 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Google Software Updater.job
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4164504388-3128284463-414013840-1000Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4164504388-3128284463-414013840-1000UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4164504388-3128284463-414013840-1001Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4164504388-3128284463-414013840-1001UA.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4164504388-3128284463-414013840-1002Core.job
C:\Windows\tasks\GoogleUpdateTaskUserS-1-5-21-4164504388-3128284463-414013840-1002UA.job
C:\Windows\tasks\Norton Internet Security - Run Full System Scan - Shota.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E8A6170-7264-4D0F-BEAE-D42A53123C75}]
c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\NppBho.dll [2007-01-12 96936]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.1.1309.15642\swg.dll [2009-07-22 669168]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b0cda128-b425-4eef-a174-61a11ac5dbf8}]
AIM Toolbar Loader - C:\Program Files\AIM Toolbar\aimtb.dll [2009-05-06 1279272]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll [2009-07-21 41368]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DF21F1DB-80C6-11D3-9483-B03D0EC10000}]
VeriSoft Access Manager - c:\Program Files\Bioscrypt\VeriSoft\Bin\ItIEAddIn.dll [2006-11-06 71192]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{90222687-F593-4738-B738-FBEE9C7B26DF} - Show Norton Toolbar - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.5\UIBHO.dll [2007-01-12 607888]
{CCC7A320-B3CA-4199-B1A6-9F516DD69829}
{61539ecd-cc67-4437-a03c-9aaccbd14326} - AIM Toolbar - C:\Program Files\AIM Toolbar\aimtb.dll [2009-05-06 1279272]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"SMSERIAL"=C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe [2006-10-09 729088]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2007-01-12 827392]
"RtHDVCpl"=C:\Windows\RtHDVCpl.exe [2007-03-01 4390912]
"ccApp"=c:\Program Files\Common Files\Symantec Shared\ccApp.exe [2007-01-10 115816]
"QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2007-03-28 176128]
"QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2006-11-06 159744]
"HP Health Check Scheduler"=C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2007-03-12 50696]
"hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2007-03-01 472776]
"WAWifiMessage"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2007-01-10 317128]
"SunJavaUpdateSched"=C:\Program Files\Java\jre6\bin\jusched.exe [2009-07-21 148888]
"CognizanceTS"=c:\PROGRA~1\BIOSCR~1\VeriSoft\Bin\ASTSVCC.dll [2003-12-22 17920]
"Symantec PIF AlertEng"=C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]
"ALUAlert"=C:\Program Files\Symantec\LiveUpdate\ALuNotify.exe [2007-09-12 492912]
"GrooveMonitor"=C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe [2006-10-27 31016]
"NvSvc"=C:\Windows\system32\nvsvc.dll [2007-02-26 90191]
"NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2007-02-26 7770112]
"NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2007-02-26 81920]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2008-12-08 54576]
""= []
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2009-05-26 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2009-07-13 292128]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Launcher"=C:\Windows\SMINST\launcher.exe [2006-11-07 44128]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-19 1233920]
"HPAdvisor"=C:\Program Files\Hewlett-Packard\HP Advisor\HPAdvisor.exe [2007-03-20 1773568]
"Google Update"=C:\Users\Shota\AppData\Local\Google\Update\GoogleUpdate.exe [2009-07-21 133104]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2009-07-22 39408]
"Aim6"= []
"ehTray.exe"=C:\Windows\ehome\ehTray.exe [2008-01-19 125952]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
Bluetooth.lnk - C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
NETGEAR WG111v3 Smart Wizard.lnk - C:\Program Files\NETGEAR\WG111v3\WG111v3.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="APSHook.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~3\Office12\GRA8E1~1.DLL [2006-10-27 2210608]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=scecli
ASWLNPkg

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\EarthLink TotalAccess\TaskPanl.exe"="C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{f1834dd4-7532-11de-b70d-001e377a89bf}]
shell\AutoRun\command - G:\setupSNK.exe


======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 months======

2009-08-05 18:10:32 ----D---- C:\rsit
2009-07-28 20:20:15 ----DC---- C:\Windows\system32\DRVSTORE
2009-07-28 20:20:15 ----A---- C:\Windows\system32\GEARAspi.dll
2009-07-28 20:19:48 ----D---- C:\ProgramData\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-07-28 20:19:48 ----D---- C:\Program Files\iTunes
2009-07-28 20:18:24 ----D---- C:\Program Files\Bonjour
2009-07-28 20:14:15 ----D---- C:\Program Files\Apple Software Update
2009-07-28 20:11:40 ----D---- C:\Program Files\Common Files\Apple
2009-07-28 20:11:39 ----D---- C:\ProgramData\Apple
2009-07-28 19:17:13 ----A---- C:\Windows\system32\mshtml.dll
2009-07-28 19:17:13 ----A---- C:\Windows\system32\ieframe.dll
2009-07-28 19:17:11 ----A---- C:\Windows\system32\wininet.dll
2009-07-28 19:17:11 ----A---- C:\Windows\system32\urlmon.dll
2009-07-28 19:17:11 ----A---- C:\Windows\system32\occache.dll
2009-07-28 19:17:11 ----A---- C:\Windows\system32\msfeeds.dll
2009-07-28 19:17:11 ----A---- C:\Windows\system32\iertutil.dll
2009-07-28 19:17:11 ----A---- C:\Windows\system32\iedkcs32.dll
2009-07-28 19:17:10 ----A---- C:\Windows\system32\msfeedssync.exe
2009-07-28 19:17:10 ----A---- C:\Windows\system32\msfeedsbs.dll
2009-07-28 19:17:10 ----A---- C:\Windows\system32\jsproxy.dll
2009-07-28 19:17:10 ----A---- C:\Windows\system32\ieUnatt.exe
2009-07-28 19:17:10 ----A---- C:\Windows\system32\ieui.dll
2009-07-28 19:17:10 ----A---- C:\Windows\system32\iesysprep.dll
2009-07-28 19:17:10 ----A---- C:\Windows\system32\iesetup.dll
2009-07-28 19:17:10 ----A---- C:\Windows\system32\iernonce.dll
2009-07-28 19:17:10 ----A---- C:\Windows\system32\iepeers.dll
2009-07-28 19:17:10 ----A---- C:\Windows\system32\ie4uinit.exe
2009-07-28 19:09:42 ----D---- C:\Program Files\Trend Micro
2009-07-27 22:24:17 ----A---- C:\Windows\system32\SRSWOW.dll
2009-07-27 22:24:17 ----A---- C:\Windows\system32\SRSTSXT.dll
2009-07-27 22:24:17 ----A---- C:\Windows\system32\RtkPgExt.dll
2009-07-27 22:24:17 ----A---- C:\Windows\RtlUpd.exe
2009-07-27 22:24:17 ----A---- C:\Windows\RtHDVCpl.exe
2009-07-27 22:23:59 ----A---- C:\Windows\HideWin.exe
2009-07-27 22:02:55 ----D---- C:\Users\Shota\AppData\Roaming\HpUpdate
2009-07-27 22:01:51 ----D---- C:\Windows\Hewlett-Packard
2009-07-27 18:19:44 ----A---- C:\Windows\system32\msshooks.dll
2009-07-27 18:19:43 ----A---- C:\Windows\system32\msscb.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\thawbrkr.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\srchadmin.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\SearchFilterHost.exe
2009-07-27 18:19:38 ----A---- C:\Windows\system32\propsys.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\propdefs.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\msstrc.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\mssprxy.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\mssitlb.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\msshsq.dll
2009-07-27 18:19:38 ----A---- C:\Windows\system32\korwbrkr.dll
2009-07-27 18:19:37 ----A---- C:\Windows\system32\rtffilt.dll
2009-07-27 18:19:36 ----A---- C:\Windows\system32\xmlfilter.dll
2009-07-27 18:19:36 ----A---- C:\Windows\system32\wsepno.dll
2009-07-27 18:19:36 ----A---- C:\Windows\system32\SearchProtocolHost.exe
2009-07-27 18:19:36 ----A---- C:\Windows\system32\offfilt.dll
2009-07-27 18:19:36 ----A---- C:\Windows\system32\nlhtml.dll
2009-07-27 18:19:36 ----A---- C:\Windows\system32\msscntrs.dll
2009-07-27 18:19:36 ----A---- C:\Windows\system32\mimefilt.dll
2009-07-27 18:19:36 ----A---- C:\Windows\system32\chtbrkr.dll
2009-07-27 18:19:36 ----A---- C:\Windows\system32\chsbrkr.dll
2009-07-27 18:19:35 ----A---- C:\Windows\system32\tquery.dll
2009-07-27 18:19:35 ----A---- C:\Windows\system32\SearchIndexer.exe
2009-07-27 18:19:35 ----A---- C:\Windows\system32\mssvp.dll
2009-07-27 18:19:35 ----A---- C:\Windows\system32\mssrch.dll
2009-07-27 18:19:35 ----A---- C:\Windows\system32\mssphtb.dll
2009-07-27 18:19:35 ----A---- C:\Windows\system32\mssph.dll
2009-07-27 14:12:24 ----A---- C:\Windows\system32\pacerprf.dll
2009-07-27 14:12:21 ----A---- C:\Windows\system32\wersvc.dll
2009-07-27 14:12:21 ----A---- C:\Windows\system32\Faultrep.dll
2009-07-27 14:12:20 ----A---- C:\Windows\system32\emdmgmt.dll
2009-07-27 14:12:20 ----A---- C:\Windows\system32\dataclen.dll
2009-07-27 14:12:20 ----A---- C:\Windows\system32\cdd.dll
2009-07-27 14:12:17 ----A---- C:\Windows\system32\wshext.dll
2009-07-27 14:12:17 ----A---- C:\Windows\system32\wscript.exe
2009-07-27 14:12:17 ----A---- C:\Windows\system32\scrrun.dll
2009-07-27 14:12:17 ----A---- C:\Windows\system32\scrobj.dll
2009-07-27 14:12:17 ----A---- C:\Windows\system32\cscript.exe
2009-07-26 20:37:19 ----D---- C:\PerfLogs
2009-07-26 10:47:10 ----A---- C:\Windows\system32\mshtmled.dll
2009-07-26 10:47:09 ----A---- C:\Windows\system32\mshtmler.dll
2009-07-26 10:47:09 ----A---- C:\Windows\system32\icardie.dll
2009-07-26 10:47:09 ----A---- C:\Windows\system32\admparse.dll
2009-07-26 10:47:08 ----A---- C:\Windows\system32\msls31.dll
2009-07-26 10:47:08 ----A---- C:\Windows\system32\ieakeng.dll
2009-07-26 10:47:08 ----A---- C:\Windows\system32\corpol.dll
2009-07-26 10:47:07 ----A---- C:\Windows\system32\imgutil.dll
2009-07-26 10:47:07 ----A---- C:\Windows\system32\dxtrans.dll
2009-07-26 10:47:07 ----A---- C:\Windows\system32\dxtmsft.dll
2009-07-26 10:47:06 ----A---- C:\Windows\system32\webcheck.dll
2009-07-26 10:47:06 ----A---- C:\Windows\system32\msrating.dll
2009-07-26 10:47:06 ----A---- C:\Windows\system32\licmgr10.dll
2009-07-26 10:47:06 ----A---- C:\Windows\system32\inseng.dll
2009-07-26 10:47:06 ----A---- C:\Windows\system32\ieaksie.dll
2009-07-26 10:47:05 ----A---- C:\Windows\system32\WinFXDocObj.exe
2009-07-26 10:47:05 ----A---- C:\Windows\system32\wextract.exe
2009-07-26 10:47:05 ----A---- C:\Windows\system32\pngfilt.dll
2009-07-26 10:47:05 ----A---- C:\Windows\system32\mstime.dll
2009-07-26 10:47:05 ----A---- C:\Windows\system32\ieakui.dll
2009-07-26 10:47:05 ----A---- C:\Windows\system32\advpack.dll
2009-07-26 10:47:04 ----A---- C:\Windows\system32\vbscript.dll
2009-07-26 10:47:04 ----A---- C:\Windows\system32\jscript.dll
2009-07-26 10:47:04 ----A---- C:\Windows\system32\ieapfltr.dll
2009-07-26 10:47:03 ----A---- C:\Windows\system32\url.dll
2009-07-26 10:47:01 ----A---- C:\Windows\system32\SetIEInstalledDate.exe
2009-07-26 10:47:01 ----A---- C:\Windows\system32\SetDepNx.exe
2009-07-26 10:47:01 ----A---- C:\Windows\system32\RegisterIEPKEYs.exe
2009-07-26 10:47:01 ----A---- C:\Windows\system32\PDMSetup.exe
2009-07-26 10:47:01 ----A---- C:\Windows\system32\mshta.exe
2009-07-26 10:47:01 ----A---- C:\Windows\system32\iexpress.exe
2009-07-25 16:44:42 ----A---- C:\Windows\Active Setup Log.txt
2009-07-25 10:45:12 ----D---- C:\Program Files\Mozilla Firefox
2009-07-24 14:43:08 ----D---- C:\ProgramData\Applications
2009-07-23 23:10:19 ----A---- C:\Windows\system32\SLsvc.exe
2009-07-23 23:10:19 ----A---- C:\Windows\system32\onex.dll
2009-07-23 23:10:04 ----A---- C:\Windows\system32\PSHED.DLL
2009-07-23 23:10:02 ----A---- C:\Windows\system32\imagesp1.dll
2009-07-23 23:09:54 ----A---- C:\Windows\system32\dfsr.exe
2009-07-23 23:09:53 ----A---- C:\Windows\system32\pidgenx.dll
2009-07-23 23:09:51 ----A---- C:\Windows\system32\sstpsvc.dll
2009-07-23 23:09:51 ----A---- C:\Windows\system32\mstscax.dll
2009-07-23 23:09:49 ----A---- C:\Windows\system32\WsmSvc.dll
2009-07-23 23:09:49 ----A---- C:\Windows\system32\winrscmd.dll
2009-07-23 23:09:48 ----A---- C:\Windows\system32\sysmain.dll
2009-07-23 23:09:47 ----A---- C:\Windows\system32\RMActivate.exe
2009-07-23 23:09:44 ----A---- C:\Windows\system32\VSSVC.exe
2009-07-23 23:09:44 ----A---- C:\Windows\system32\vssapi.dll
2009-07-23 23:09:43 ----A---- C:\Windows\system32\secproc.dll
2009-07-23 23:09:41 ----A---- C:\Windows\system32\RMActivate_isv.exe
2009-07-23 23:09:35 ----A---- C:\Windows\system32\secproc_isv.dll
2009-07-23 23:09:32 ----A---- C:\Windows\system32\drmv2clt.dll
2009-07-23 23:09:31 ----A---- C:\Windows\system32\xpssvcs.dll
2009-07-23 23:09:31 ----A---- C:\Windows\system32\blackbox.dll
2009-07-23 23:09:27 ----A---- C:\Windows\system32\RacEngn.dll
2009-07-23 23:09:26 ----A---- C:\Windows\system32\RMActivate_ssp.exe
2009-07-23 23:09:24 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
2009-07-23 23:09:24 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
2009-07-23 23:09:20 ----A---- C:\Windows\system32\spwizimg.dll
2009-07-23 23:09:20 ----A---- C:\Windows\system32\rdpencom.dll
2009-07-23 23:09:19 ----A---- C:\Windows\system32\lpremove.exe
2009-07-23 23:09:19 ----A---- C:\Windows\bfsvc.exe
2009-07-23 23:09:18 ----A---- C:\Windows\system32\ntdll.dll
2009-07-23 23:09:18 ----A---- C:\Windows\system32\msjet40.dll
2009-07-23 23:09:17 ----A---- C:\Windows\system32\qmgr.dll
2009-07-23 23:09:16 ----A---- C:\Windows\system32\wevtsvc.dll
2009-07-23 23:09:16 ----A---- C:\Windows\system32\wcncsvc.dll
2009-07-23 23:09:16 ----A---- C:\Windows\system32\IKEEXT.DLL
2009-07-23 23:09:15 ----A---- C:\Windows\system32\TsWpfWrp.exe
2009-07-23 23:09:15 ----A---- C:\Windows\system32\recdisc.exe
2009-07-23 23:09:14 ----A---- C:\Windows\system32\vds.exe
2009-07-23 23:09:14 ----A---- C:\Windows\system32\CompMgmtLauncher.exe
2009-07-23 23:09:11 ----A---- C:\Windows\system32\mstsc.exe
2009-07-23 23:09:10 ----A---- C:\Windows\system32\wcnwiz.dll
2009-07-23 23:09:10 ----A---- C:\Windows\system32\SMBHelperClass.dll
2009-07-23 23:09:10 ----A---- C:\Windows\system32\msvbvm60.dll
2009-07-23 23:09:08 ----A---- C:\Windows\system32\termsrv.dll
2009-07-23 23:09:08 ----A---- C:\Windows\system32\msdtctm.dll
2009-07-23 23:09:07 ----A---- C:\Windows\system32\kerberos.dll
2009-07-23 23:09:07 ----A---- C:\Windows\system32\IMJP10K.DLL
2009-07-23 23:09:07 ----A---- C:\Windows\system32\advapi32.dll
2009-07-23 23:09:06 ----A---- C:\Windows\system32\mmcndmgr.dll
2009-07-23 23:09:05 ----A---- C:\Windows\system32\MSMPEG2ADEC.DLL
2009-07-23 23:09:05 ----A---- C:\Windows\system32\MPSSVC.dll
2009-07-23 23:09:05 ----A---- C:\Windows\system32\CertEnroll.dll
2009-07-23 23:09:04 ----A---- C:\Windows\system32\Query.dll
2009-07-23 23:09:03 ----A---- C:\Windows\system32\ole32.dll
2009-07-23 23:09:02 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
2009-07-23 23:09:02 ----A---- C:\Windows\system32\netlogon.dll
2009-07-23 23:09:01 ----A---- C:\Windows\system32\SSShim.dll
2009-07-23 23:09:01 ----A---- C:\Windows\system32\msvcrt.dll
2009-07-23 23:09:01 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
2009-07-23 23:09:00 ----A---- C:\Windows\system32\schedsvc.dll
2009-07-23 23:09:00 ----A---- C:\Windows\system32\nlmgp.dll
2009-07-23 23:09:00 ----A---- C:\Windows\system32\DfsShlEx.dll
2009-07-23 23:08:59 ----A---- C:\Windows\system32\shlwapi.dll
2009-07-23 23:08:59 ----A---- C:\Windows\system32\sdclt.exe
2009-07-23 23:08:59 ----A---- C:\Windows\system32\IasMigPlugin.dll
2009-07-23 23:08:58 ----A---- C:\Windows\system32\wer.dll
2009-07-23 23:08:58 ----A---- C:\Windows\system32\user32.dll
2009-07-23 23:08:58 ----A---- C:\Windows\system32\milcore.dll
2009-07-23 23:08:58 ----A---- C:\Windows\system32\clusapi.dll
2009-07-23 23:08:57 ----A---- C:\Windows\system32\vdsdyn.dll
2009-07-23 23:08:57 ----A---- C:\Windows\system32\d3d9.dll
2009-07-23 23:08:56 ----A---- C:\Windows\system32\WSDApi.dll
2009-07-23 23:08:56 ----A---- C:\Windows\system32\QAGENTRT.DLL
2009-07-23 23:08:56 ----A---- C:\Windows\system32\diagperf.dll
2009-07-23 23:08:55 ----A---- C:\Windows\system32\winrsmgr.dll
2009-07-23 23:08:55 ----A---- C:\Windows\system32\mtxclu.dll
2009-07-23 23:08:55 ----A---- C:\Windows\system32\mmc.exe
2009-07-23 23:08:54 ----A---- C:\Windows\system32\vdsbas.dll
2009-07-23 23:08:54 ----A---- C:\Windows\system32\SLC.dll
2009-07-23 23:08:53 ----A---- C:\Windows\system32\swprv.dll
2009-07-23 23:08:53 ----A---- C:\Windows\system32\msi.dll
2009-07-23 23:08:53 ----A---- C:\Windows\system32\comctl32.dll
2009-07-23 23:08:52 ----A---- C:\Windows\system32\MSVidCtl.dll
2009-07-23 23:08:51 ----A---- C:\Windows\system32\XPSSHHDR.dll
2009-07-23 23:08:51 ----A---- C:\Windows\system32\msdtckrm.dll
2009-07-23 23:08:51 ----A---- C:\Windows\system32\gpsvc.dll
2009-07-23 23:08:50 ----A---- C:\Windows\system32\sbe.dll
2009-07-23 23:08:50 ----A---- C:\Windows\system32\samsrv.dll
2009-07-23 23:08:50 ----A---- C:\Windows\system32\mfc42u.dll
2009-07-23 23:08:50 ----A---- C:\Windows\system32\FWPUCLNT.DLL
2009-07-23 23:08:49 ----A---- C:\Windows\system32\wecutil.exe
2009-07-23 23:08:49 ----A---- C:\Windows\system32\sdengin2.dll
2009-07-23 23:08:49 ----A---- C:\Windows\system32\esent.dll
2009-07-23 23:08:48 ----A---- C:\Windows\system32\usp10.dll
2009-07-23 23:08:48 ----A---- C:\Windows\system32\mfc42.dll
2009-07-23 23:08:48 ----A---- C:\Windows\system32\gacinstall.dll
2009-07-23 23:08:48 ----A---- C:\Windows\system32\cmipnpinstall.dll
2009-07-23 23:08:48 ----A---- C:\Windows\system32\cmicryptinstall.dll
2009-07-23 23:08:47 ----A---- C:\Windows\system32\crypt32.dll
2009-07-23 23:08:47 ----A---- C:\Windows\system32\comsvcs.dll
2009-07-23 23:08:46 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
2009-07-23 23:08:46 ----A---- C:\Windows\system32\mswsock.dll
2009-07-23 23:08:46 ----A---- C:\Windows\system32\certutil.exe
2009-07-23 23:08:45 ----A---- C:\Windows\system32\wmdrmsdk.dll
2009-07-23 23:08:44 ----A---- C:\Windows\system32\sqlceqp30.dll
2009-07-23 23:08:44 ----A---- C:\Windows\system32\setupapi.dll
2009-07-23 23:08:44 ----A---- C:\Windows\system32\oleaut32.dll
2009-07-23 23:08:44 ----A---- C:\Windows\system32\lsm.exe
2009-07-23 23:08:44 ----A---- C:\Windows\system32\FirewallAPI.dll
2009-07-23 23:08:43 ----A---- C:\Windows\system32\wecsvc.dll
2009-07-23 23:08:43 ----A---- C:\Windows\system32\bcrypt.dll
2009-07-23 23:08:43 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
2009-07-23 23:08:42 ----A---- C:\Windows\system32\p2psvc.dll
2009-07-23 23:08:42 ----A---- C:\Windows\system32\msv1_0.dll
2009-07-23 23:08:42 ----A---- C:\Windows\system32\iphlpsvc.dll
2009-07-23 23:08:42 ----A---- C:\Windows\system32\eapp3hst.dll
2009-07-23 23:08:41 ----A---- C:\Windows\system32\wmpmde.dll
2009-07-23 23:08:41 ----A---- C:\Windows\system32\thumbcache.dll
2009-07-23 23:08:41 ----A---- C:\Windows\system32\mcmde.dll
2009-07-23 23:08:40 ----A---- C:\Windows\system32\riched20.dll
2009-07-23 23:08:40 ----A---- C:\Windows\system32\autofmt.exe
2009-07-23 23:08:40 ----A---- C:\Windows\system32\autoconv.exe
2009-07-23 23:08:40 ----A---- C:\Windows\system32\autochk.exe
2009-07-23 23:08:39 ----A---- C:\Windows\system32\WinSAT.exe
2009-07-23 23:08:39 ----A---- C:\Windows\system32\vdsutil.dll
2009-07-23 23:08:39 ----A---- C:\Windows\system32\imapi2fs.dll
2009-07-23 23:08:39 ----A---- C:\Windows\system32\d3d10_1.dll
2009-07-23 23:08:38 ----A---- C:\Windows\system32\authui.dll
2009-07-23 23:08:38 ----A---- C:\Windows\system32\authfwcfg.dll
2009-07-23 23:08:37 ----A---- C:\Windows\system32\wevtapi.dll
2009-07-23 23:08:37 ----A---- C:\Windows\system32\dmvdsitf.dll
2009-07-23 23:08:37 ----A---- C:\Windows\system32\d3d10_1core.dll
2009-07-23 23:08:37 ----A---- C:\Windows\system32\browseui.dll
2009-07-23 23:08:36 ----A---- C:\Windows\system32\WSDMon.dll
2009-07-23 23:08:36 ----A---- C:\Windows\system32\eapphost.dll
2009-07-23 23:08:36 ----A---- C:\Windows\system32\comuid.dll
2009-07-23 23:08:36 ----A---- C:\Windows\system32\comdlg32.dll
2009-07-23 23:08:35 ----A---- C:\Windows\system32\wevtfwd.dll
2009-07-23 23:08:35 ----A---- C:\Windows\system32\uexfat.dll
2009-07-23 23:08:34 ----A---- C:\Windows\system32\untfs.dll
2009-07-23 23:08:34 ----A---- C:\Windows\system32\rasmans.dll
2009-07-23 23:08:34 ----A---- C:\Windows\system32\eappcfg.dll
2009-07-23 23:08:33 ----A---- C:\Windows\system32\sqlcese30.dll
2009-07-23 23:08:33 ----A---- C:\Windows\system32\pcaui.dll
2009-07-23 23:08:33 ----A---- C:\Windows\system32\iassam.dll
2009-07-23 23:08:33 ----A---- C:\Windows\system32\DfrgNtfs.exe
2009-07-23 23:08:32 ----A---- C:\Windows\system32\wlansvc.dll
2009-07-23 23:08:32 ----A---- C:\Windows\system32\whealogr.dll
2009-07-23 23:08:28 ----A---- C:\Windows\system32\dot3svc.dll
2009-07-23 23:08:24 ----A---- C:\Windows\system32\rdpwsx.dll
2009-07-23 23:08:23 ----A---- C:\Windows\system32\mssha.dll
2009-07-23 23:08:23 ----A---- C:\Windows\system32\msdrm.dll
2009-07-23 23:08:23 ----A---- C:\Windows\system32\evr.dll
2009-07-23 23:08:22 ----A---- C:\Windows\system32\zipfldr.dll
2009-07-23 23:08:22 ----A---- C:\Windows\system32\WsmAuto.dll
2009-07-23 23:08:22 ----A---- C:\Windows\system32\nlasvc.dll
2009-07-23 23:08:22 ----A---- C:\Windows\system32\dfrgui.exe
2009-07-23 23:08:21 ----A---- C:\Windows\system32\rasppp.dll
2009-07-23 23:08:21 ----A---- C:\Windows\system32\ncrypt.dll
2009-07-23 23:08:21 ----A---- C:\Windows\system32\BFE.DLL
2009-07-23 23:08:20 ----A---- C:\Windows\system32\wmdrmdev.dll
2009-07-23 23:08:20 ----A---- C:\Windows\system32\msrepl40.dll
2009-07-23 23:08:20 ----A---- C:\Windows\system32\audiosrv.dll
2009-07-23 23:08:19 ----A---- C:\Windows\system32\WsmWmiPl.dll
2009-07-23 23:08:19 ----A---- C:\Windows\system32\printui.dll
2009-07-23 23:08:19 ----A---- C:\Windows\system32\ddraw.dll
2009-07-23 23:08:18 ----A---- C:\Windows\system32\WebClnt.dll
2009-07-23 23:08:18 ----A---- C:\Windows\system32\themecpl.dll
2009-07-23 23:08:18 ----A---- C:\Windows\system32\rastls.dll
2009-07-23 23:08:18 ----A---- C:\Windows\system32\objsel.dll
2009-07-23 23:08:18 ----A---- C:\Windows\system32\dhcpcsvc6.dll
2009-07-23 23:08:17 ----A---- C:\Windows\system32\QAGENT.DLL
2009-07-23 23:08:17 ----A---- C:\Windows\system32\dbghelp.dll
2009-07-23 23:08:16 ----A---- C:\Windows\system32\w32time.dll
2009-07-23 23:08:16 ----A---- C:\Windows\system32\sqlsrv32.dll
2009-07-23 23:08:16 ----A---- C:\Windows\system32\iasnap.dll
2009-07-23 23:08:15 ----A---- C:\Windows\system32\wmdrmnet.dll
2009-07-23 23:08:15 ----A---- C:\Windows\system32\ncryptui.dll
2009-07-23 23:08:15 ----A---- C:\Windows\system32\icm32.dll
2009-07-23 23:08:15 ----A---- C:\Windows\system32\azroles.dll
2009-07-23 23:08:14 ----A---- C:\Windows\system32\WerFaultSecure.exe
2009-07-23 23:08:14 ----A---- C:\Windows\system32\spoolss.dll
2009-07-23 23:08:14 ----A---- C:\Windows\system32\iprtrmgr.dll
2009-07-23 23:08:10 ----A---- C:\Windows\system32\winsrv.dll
2009-07-23 23:08:10 ----A---- C:\Windows\system32\msctf.dll
2009-07-23 23:08:10 ----A---- C:\Windows\system32\bcdedit.exe
2009-07-23 23:08:10 ----A---- C:\Windows\system32\basecsp.dll
2009-07-23 23:08:09 ----A---- C:\Windows\system32\wlangpui.dll
2009-07-23 23:08:09 ----A---- C:\Windows\system32\taskschd.dll
2009-07-23 23:08:09 ----A---- C:\Windows\system32\mstlsapi.dll
2009-07-23 23:08:08 ----A---- C:\Windows\system32\scksp.dll
2009-07-23 23:08:08 ----A---- C:\Windows\system32\netprofm.dll
2009-07-23 23:08:08 ----A---- C:\Windows\system32\AudioEng.dll
2009-07-23 23:08:07 ----A---- C:\Windows\system32\winsta.dll
2009-07-23 23:08:07 ----A---- C:\Windows\system32\rsaenh.dll
2009-07-23 23:08:07 ----A---- C:\Windows\system32\netcfgx.dll
2009-07-23 23:08:07 ----A---- C:\Windows\system32\hcrstco.dll
2009-07-23 23:08:07 ----A---- C:\Windows\system32\dbgeng.dll
2009-07-23 23:08:06 ----A---- C:\Windows\system32\taskcomp.dll
2009-07-23 23:08:06 ----A---- C:\Windows\system32\cdosys.dll
2009-07-23 23:08:05 ----A---- C:\Windows\system32\winlogon.exe
2009-07-23 23:08:05 ----A---- C:\Windows\system32\wercon.exe
2009-07-23 23:08:05 ----A---- C:\Windows\system32\lpksetup.exe
2009-07-23 23:08:04 ----A---- C:\Windows\system32\wlansec.dll
2009-07-23 23:08:04 ----A---- C:\Windows\system32\msdtcuiu.dll
2009-07-23 23:08:03 ----A---- C:\Windows\system32\mprddm.dll
2009-07-23 23:08:03 ----A---- C:\Windows\system32\certcli.dll
2009-07-23 23:08:03 ----A---- C:\Windows\system32\apds.dll
2009-07-23 23:08:02 ----A---- C:\Windows\system32\tsgqec.dll
2009-07-23 23:08:02 ----A---- C:\Windows\system32\iasrad.dll
2009-07-23 23:08:02 ----A---- C:\Windows\system32\eapsvc.dll
2009-07-23 23:08:02 ----A---- C:\Windows\system32\AUDIOKSE.dll
2009-07-23 23:08:02 ----A---- C:\Windows\system32\aaclient.dll
2009-07-23 23:08:01 ----A---- C:\Windows\system32\shdocvw.dll
2009-07-23 23:08:01 ----A---- C:\Windows\system32\bcdsrv.dll
2009-07-23 23:08:00 ----A---- C:\Windows\system32\Wldap32.dll
2009-07-23 23:08:00 ----A---- C:\Windows\system32\uDWM.dll
2009-07-23 23:08:00 ----A---- C:\Windows\system32\dnsapi.dll
2009-07-23 23:08:00 ----A---- C:\Windows\system32\certmgr.dll
2009-07-23 23:07:59 ----A---- C:\Windows\system32\msidcrl30.dll
2009-07-23 23:07:58 ----A---- C:\Windows\system32\WMVDECOD.DLL
2009-07-23 23:07:58 ----A---- C:\Windows\system32\umpnpmgr.dll
2009-07-23 23:07:57 ----A---- C:\Windows\system32\pla.dll
2009-07-23 23:07:56 ----A---- C:\Windows\system32\netshell.dll
2009-07-23 23:07:56 ----A---- C:\Windows\system32\dxgi.dll
2009-07-23 23:07:56 ----A---- C:\Windows\system32\dot3gpui.dll
2009-07-23 23:07:55 ----A---- C:\Windows\system32\wmicmiplugin.dll
2009-07-23 23:07:54 ----A---- C:\Windows\system32\shsvcs.dll
2009-07-23 23:07:54 ----A---- C:\Windows\system32\ntprint.dll
2009-07-23 23:07:54 ----A---- C:\Windows\system32\MMDevAPI.dll
2009-07-23 23:07:54 ----A---- C:\Windows\system32\cryptnet.dll
2009-07-23 23:07:54 ----A---- C:\Windows\system32\comsnap.dll
2009-07-23 23:07:53 ----A---- C:\Windows\system32\winmm.dll
2009-07-23 23:07:53 ----A---- C:\Windows\system32\services.exe
2009-07-23 23:07:52 ----A---- C:\Windows\system32\wscsvc.dll
2009-07-23 23:07:52 ----A---- C:\Windows\system32\synceng.dll
2009-07-23 23:07:52 ----A---- C:\Windows\system32\pnidui.dll
2009-07-23 23:07:52 ----A---- C:\Windows\system32\cmifw.dll
2009-07-23 23:07:51 ----A---- C:\Windows\system32\wscisvif.dll
2009-07-23 23:07:51 ----A---- C:\Windows\system32\msconfig.exe
2009-07-23 23:07:50 ----A---- C:\Windows\system32\WMVSDECD.DLL
2009-07-23 23:07:50 ----A---- C:\Windows\system32\taskeng.exe
2009-07-23 23:07:50 ----A---- C:\Windows\system32\msjtes40.dll
2009-07-23 23:07:50 ----A---- C:\Windows\system32\iassdo.dll
2009-07-23 23:07:50 ----A---- C:\Windows\system32\cipher.exe
2009-07-23 23:07:49 ----A---- C:\Windows\system32\tdh.dll
2009-07-23 23:07:49 ----A---- C:\Windows\system32\rasapi32.dll
2009-07-23 23:07:49 ----A---- C:\Windows\system32\imapi2.dll
2009-07-23 23:07:48 ----A---- C:\Windows\system32\uxtheme.dll
2009-07-23 23:07:48 ----A---- C:\Windows\system32\SessEnv.dll
2009-07-23 23:07:48 ----A---- C:\Windows\system32\dot3api.dll
2009-07-23 23:07:48 ----A---- C:\Windows\system32\dmdskmgr.dll
2009-07-23 23:07:47 ----A---- C:\Windows\system32\qdvd.dll
2009-07-23 23:07:47 ----A---- C:\Windows\system32\msscp.dll
2009-07-23 23:07:47 ----A---- C:\Windows\system32\cmd.exe
2009-07-23 23:07:47 ----A---- C:\Windows\system32\cbsra.exe
2009-07-23 23:07:47 ----A---- C:\Windows\system32\AuthFWSnapin.dll
2009-07-23 23:07:46 ----A---- C:\Windows\system32\WUDFx.dll
2009-07-23 23:07:46 ----A---- C:\Windows\system32\wlanmsm.dll
2009-07-23 23:07:46 ----A---- C:\Windows\system32\wlancfg.dll
2009-07-23 23:07:46 ----A---- C:\Windows\system32\wkssvc.dll
2009-07-23 23:07:46 ----A---- C:\Windows\system32\wevtutil.exe
2009-07-23 23:07:46 ----A---- C:\Windows\system32\srvsvc.dll
2009-07-23 23:07:46 ----A---- C:\Windows\system32\loadperf.dll
2009-07-23 23:07:45 ----A---- C:\Windows\system32\msdtcVSp1res.dll
2009-07-23 23:07:45 ----A---- C:\Windows\system32\diskpart.exe
2009-07-23 23:07:45 ----A---- C:\Windows\system32\comres.dll
2009-07-23 23:07:44 ----A---- C:\Windows\system32\rpchttp.dll
2009-07-23 23:07:44 ----A---- C:\Windows\system32\rdpdd.dll
2009-07-23 23:07:44 ----A---- C:\Windows\system32\localsec.dll
2009-07-23 23:07:44 ----A---- C:\Windows\system32\fontext.dll
2009-07-23 23:07:43 ----A---- C:\Windows\system32\wlanapi.dll
2009-07-23 23:07:43 ----A---- C:\Windows\system32\WinSATAPI.dll
2009-07-23 23:07:43 ----A---- C:\Windows\system32\hnetcfg.dll
2009-07-23 23:07:42 ----A---- C:\Windows\system32\wsqmcons.exe
2009-07-23 23:07:42 ----A---- C:\Windows\system32\WMADMOD.DLL
2009-07-23 23:07:42 ----A---- C:\Windows\system32\NAPMONTR.DLL
2009-07-23 23:07:42 ----A---- C:\Windows\system32\dsound.dll
2009-07-23 23:07:41 ----A---- C:\Windows\system32\wlanpref.dll
2009-07-23 23:07:41 ----A---- C:\Windows\system32\RDPENCDD.dll
2009-07-23 23:07:41 ----A---- C:\Windows\system32\profprov.dll
2009-07-23 23:07:41 ----A---- C:\Windows\system32\filemgmt.dll
2009-07-23 23:07:41 ----A---- C:\Windows\system32\avifil32.dll
2009-07-23 23:07:40 ----A---- C:\Windows\system32\wsecedit.dll
LOL =)
Regular Member
 
Posts: 34
Joined: July 30th, 2008, 4:23 am
Location: on your mind

Re: Having trouble using my laptop!

Unread postby LOL =) » August 5th, 2009, 6:29 pm

2009-07-23 23:07:40 ----A---- C:\Windows\system32\tracerpt.exe
2009-07-23 23:07:40 ----A---- C:\Windows\system32\SLCommDlg.dll
2009-07-23 23:07:40 ----A---- C:\Windows\system32\MuiUnattend.exe
2009-07-23 23:07:40 ----A---- C:\Windows\system32\dnsrslvr.dll
2009-07-23 23:07:39 ----A---- C:\Windows\system32\WMSPDMOD.DLL
2009-07-23 23:07:39 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
2009-07-23 23:07:39 ----A---- C:\Windows\system32\P2PGraph.dll
2009-07-23 23:07:39 ----A---- C:\Windows\system32\dwmredir.dll
2009-07-23 23:07:39 ----A---- C:\Windows\system32\dhcpcsvc.dll
2009-07-23 23:07:39 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
2009-07-23 23:07:38 ----A---- C:\Windows\system32\wininit.exe
2009-07-23 23:07:38 ----A---- C:\Windows\system32\QSHVHOST.DLL
2009-07-23 23:07:38 ----A---- C:\Windows\system32\gpresult.exe
2009-07-23 23:07:38 ----A---- C:\Windows\system32\dwm.exe
2009-07-23 23:07:38 ----A---- C:\Windows\system32\apphelp.dll
2009-07-23 23:07:37 ----A---- C:\Windows\system32\spp.dll
2009-07-23 23:07:37 ----A---- C:\Windows\system32\rasdlg.dll
2009-07-23 23:07:37 ----A---- C:\Windows\system32\iassvcs.dll
2009-07-23 23:07:37 ----A---- C:\Windows\system32\azroleui.dll
2009-07-23 23:07:36 ----A---- C:\Windows\system32\mcbuilder.exe
2009-07-23 23:07:36 ----A---- C:\Windows\HelpPane.exe
2009-07-23 23:07:35 ----A---- C:\Windows\system32\srrstr.dll
2009-07-23 23:07:35 ----A---- C:\Windows\system32\spwizeng.dll
2009-07-23 23:07:35 ----A---- C:\Windows\system32\SLUI.exe
2009-07-23 23:07:34 ----A---- C:\Windows\system32\wecapi.dll
2009-07-23 23:07:34 ----A---- C:\Windows\system32\unbcl.dll
2009-07-23 23:07:34 ----A---- C:\Windows\system32\rasmontr.dll
2009-07-23 23:07:34 ----A---- C:\Windows\system32\msra.exe
2009-07-23 23:07:34 ----A---- C:\Windows\system32\lltdsvc.dll
2009-07-23 23:07:33 ----A---- C:\Windows\system32\tcpmon.dll
2009-07-23 23:07:33 ----A---- C:\Windows\system32\shrink.dll
2009-07-23 23:07:33 ----A---- C:\Windows\system32\IPHLPAPI.DLL
2009-07-23 23:07:33 ----A---- C:\Windows\system32\gpedit.dll
2009-07-23 23:07:33 ----A---- C:\Windows\system32\brcpl.dll
2009-07-23 23:07:32 ----A---- C:\Windows\system32\WMPEncEn.dll
2009-07-23 23:07:32 ----A---- C:\Windows\system32\oleacc.dll
2009-07-23 23:07:32 ----A---- C:\Windows\system32\iashlpr.dll
2009-07-23 23:07:31 ----A---- C:\Windows\system32\raschap.dll
2009-07-23 23:07:31 ----A---- C:\Windows\system32\msdri.dll
2009-07-23 23:07:30 ----A---- C:\Windows\system32\regsvc.dll
2009-07-23 23:07:30 ----A---- C:\Windows\system32\framedynos.dll
2009-07-23 23:07:29 ----A---- C:\Windows\system32\ntvdm.exe
2009-07-23 23:07:29 ----A---- C:\Windows\system32\fdWSD.dll
2009-07-23 23:07:28 ----A---- C:\Windows\system32\vsstrace.dll
2009-07-23 23:07:28 ----A---- C:\Windows\system32\PerfCenterCPL.dll
2009-07-23 23:07:28 ----A---- C:\Windows\system32\ntlanman.dll
2009-07-23 23:07:28 ----A---- C:\Windows\system32\ipsmsnap.dll
2009-07-23 23:07:27 ----A---- C:\Windows\system32\wpdshext.dll
2009-07-23 23:07:27 ----A---- C:\Windows\system32\wdc.dll
2009-07-23 23:07:27 ----A---- C:\Windows\system32\NetProjW.dll
2009-07-23 23:07:27 ----A---- C:\Windows\system32\l2nacp.dll
2009-07-23 23:07:26 ----A---- C:\Windows\system32\Storprop.dll
2009-07-23 23:07:26 ----A---- C:\Windows\system32\netman.dll
2009-07-23 23:07:26 ----A---- C:\Windows\system32\framedyn.dll
2009-07-23 23:07:26 ----A---- C:\Windows\system32\dssenh.dll
2009-07-23 23:07:25 ----A---- C:\Windows\system32\WlanMM.dll
2009-07-23 23:07:25 ----A---- C:\Windows\system32\tcpipcfg.dll
2009-07-23 23:07:25 ----A---- C:\Windows\system32\certreq.exe
2009-07-23 23:07:25 ----A---- C:\Windows\system32\adsnt.dll
2009-07-23 23:07:24 ----A---- C:\Windows\system32\WLanConn.dll
2009-07-23 23:07:24 ----A---- C:\Windows\system32\sxs.dll
2009-07-23 23:07:24 ----A---- C:\Windows\system32\profsvc.dll
2009-07-23 23:07:24 ----A---- C:\Windows\system32\KMSVC.DLL
2009-07-23 23:07:23 ----A---- C:\Windows\system32\WsmProv.dll
2009-07-23 23:07:23 ----A---- C:\Windows\system32\wlanhlp.dll
2009-07-23 23:07:23 ----A---- C:\Windows\system32\ncsi.dll
2009-07-23 23:07:23 ----A---- C:\Windows\system32\IPBusEnum.dll
2009-07-23 23:07:22 ----A---- C:\Windows\system32\wusa.exe
2009-07-23 23:07:22 ----A---- C:\Windows\system32\WUDFHost.exe
2009-07-23 23:07:22 ----A---- C:\Windows\system32\WerFault.exe
2009-07-23 23:07:22 ----A---- C:\Windows\system32\VAN.dll
2009-07-23 23:07:22 ----A---- C:\Windows\system32\userenv.dll
2009-07-23 23:07:22 ----A---- C:\Windows\system32\umb.dll
2009-07-23 23:07:22 ----A---- C:\Windows\system32\fundisc.dll
2009-07-23 23:07:21 ----A---- C:\Windows\system32\catsrvut.dll
2009-07-23 23:07:20 ----A---- C:\Windows\system32\puiobj.dll
2009-07-23 23:07:20 ----A---- C:\Windows\system32\netid.dll
2009-07-23 23:07:20 ----A---- C:\Windows\system32\cryptui.dll
2009-07-23 23:07:19 ----A---- C:\Windows\system32\photowiz.dll
2009-07-23 23:07:19 ----A---- C:\Windows\system32\netcenter.dll
2009-07-23 23:07:19 ----A---- C:\Windows\system32\MdSched.exe
2009-07-23 23:07:19 ----A---- C:\Windows\system32\InkEd.dll
2009-07-23 23:07:19 ----A---- C:\Windows\system32\dps.dll
2009-07-23 23:07:18 ----A---- C:\Windows\system32\WinSCard.dll
2009-07-23 23:07:18 ----A---- C:\Windows\system32\ipsecsnp.dll
2009-07-23 23:07:17 ----A---- C:\Windows\system32\ws2_32.dll
2009-07-23 23:07:17 ----A---- C:\Windows\system32\winrs.exe
2009-07-23 23:07:17 ----A---- C:\Windows\system32\spbcd.dll
2009-07-23 23:07:17 ----A---- C:\Windows\system32\odbcjt32.dll
2009-07-23 23:07:17 ----A---- C:\Windows\system32\ntdsapi.dll
2009-07-23 23:07:17 ----A---- C:\Windows\system32\NAPSTAT.EXE
2009-07-23 23:07:17 ----A---- C:\Windows\system32\msinfo32.exe
2009-07-23 23:07:16 ----A---- C:\Windows\system32\prnntfy.dll
2009-07-23 23:07:15 ----A---- C:\Windows\system32\mblctr.exe
2009-07-23 23:07:15 ----A---- C:\Windows\system32\cryptsvc.dll
2009-07-23 23:07:14 ----A---- C:\Windows\system32\schtasks.exe
2009-07-23 23:07:14 ----A---- C:\Windows\system32\RelMon.dll
2009-07-23 23:07:13 ----A---- C:\Windows\system32\pdh.dll
2009-07-23 23:07:13 ----A---- C:\Windows\system32\netdiagfx.dll
2009-07-23 23:07:13 ----A---- C:\Windows\system32\iasacct.dll
2009-07-23 23:07:13 ----A---- C:\Windows\system32\dmdlgs.dll
2009-07-23 23:07:13 ----A---- C:\Windows\system32\dhcpsapi.dll
2009-07-23 23:07:13 ----A---- C:\Windows\system32\catsrv.dll
2009-07-23 23:07:13 ----A---- C:\Windows\system32\activeds.dll
2009-07-23 23:07:12 ----A---- C:\Windows\system32\TSpkg.dll
2009-07-23 23:07:12 ----A---- C:\Windows\system32\FirewallControlPanel.exe
2009-07-23 23:07:12 ----A---- C:\Windows\system32\dfrgfat.exe
2009-07-23 23:07:11 ----A---- C:\Windows\system32\wvc.dll
2009-07-23 23:07:11 ----A---- C:\Windows\system32\winrm.vbs
2009-07-23 23:07:11 ----A---- C:\Windows\system32\qwave.dll
2009-07-23 23:07:11 ----A---- C:\Windows\system32\fdWCN.dll
2009-07-23 23:07:10 ----A---- C:\Windows\system32\netcorehc.dll
2009-07-23 23:07:10 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
2009-07-23 23:07:10 ----A---- C:\Windows\system32\dot3msm.dll
2009-07-23 23:07:10 ----A---- C:\Windows\system32\dot3cfg.dll
2009-07-23 23:07:10 ----A---- C:\Windows\system32\AudioSes.dll
2009-07-23 23:07:09 ----A---- C:\Windows\system32\rastapi.dll
2009-07-23 23:07:09 ----A---- C:\Windows\system32\NAPHLPR.DLL
2009-07-23 23:07:09 ----A---- C:\Windows\system32\msacm32.dll
2009-07-23 23:07:09 ----A---- C:\Windows\system32\ifmon.dll
2009-07-23 23:07:08 ----A---- C:\Windows\system32\wow32.dll
2009-07-23 23:07:08 ----A---- C:\Windows\system32\shsetup.dll
2009-07-23 23:07:08 ----A---- C:\Windows\system32\adsldp.dll
2009-07-23 23:07:07 ----A---- C:\Windows\system32\ntshrui.dll
2009-07-23 23:07:07 ----A---- C:\Windows\system32\msdt.dll
2009-07-23 23:07:07 ----A---- C:\Windows\system32\els.dll
2009-07-23 23:07:06 ----A---- C:\Windows\system32\wscntfy.dll
2009-07-23 23:07:06 ----A---- C:\Windows\system32\QUTIL.DLL
2009-07-23 23:07:06 ----A---- C:\Windows\system32\clbcatq.dll
2009-07-23 23:07:05 ----A---- C:\Windows\system32\stobject.dll
2009-07-23 23:07:05 ----A---- C:\Windows\system32\sdrsvc.dll
2009-07-23 23:07:05 ----A---- C:\Windows\system32\net1.exe
2009-07-23 23:07:05 ----A---- C:\Windows\system32\ipnathlp.dll
2009-07-23 23:07:05 ----A---- C:\Windows\system32\fdSSDP.dll
2009-07-23 23:07:04 ----A---- C:\Windows\system32\wlanui.dll
2009-07-23 23:07:04 ----A---- C:\Windows\system32\dsprop.dll
2009-07-23 23:07:03 ----A---- C:\Windows\system32\wlgpclnt.dll
2009-07-23 23:07:03 ----A---- C:\Windows\system32\upnphost.dll
2009-07-23 23:07:03 ----A---- C:\Windows\system32\smss.exe
2009-07-23 23:07:03 ----A---- C:\Windows\system32\nci.dll
2009-07-23 23:07:03 ----A---- C:\Windows\system32\mprmsg.dll
2009-07-23 23:07:03 ----A---- C:\Windows\system32\Defrag.exe
2009-07-23 23:07:03 ----A---- C:\Windows\system32\adsldpc.dll
2009-07-23 23:07:02 ----A---- C:\Windows\system32\systemcpl.dll
2009-07-23 23:07:02 ----A---- C:\Windows\system32\rasman.dll
2009-07-23 23:07:02 ----A---- C:\Windows\system32\P2P.dll
2009-07-23 23:07:02 ----A---- C:\Windows\system32\ActiveContentWizard.dll
2009-07-23 23:07:01 ----A---- C:\Windows\system32\rascfg.dll
2009-07-23 23:07:01 ----A---- C:\Windows\system32\PresentationSettings.exe
2009-07-23 23:07:01 ----A---- C:\Windows\system32\msftedit.dll
2009-07-23 23:07:01 ----A---- C:\Windows\system32\MSAC3ENC.DLL
2009-07-23 23:07:01 ----A---- C:\Windows\system32\fde.dll
2009-07-23 23:07:01 ----A---- C:\Windows\system32\CompatUI.dll
2009-07-23 23:07:00 ----A---- C:\Windows\system32\oleprn.dll
2009-07-23 23:07:00 ----A---- C:\Windows\system32\loghours.dll
2009-07-23 23:07:00 ----A---- C:\Windows\system32\L2SecHC.dll
2009-07-23 23:06:59 ----A---- C:\Windows\system32\Wpc.dll
2009-07-23 23:06:59 ----A---- C:\Windows\system32\MigAutoPlay.exe
2009-07-23 23:06:59 ----A---- C:\Windows\system32\dxdiag.exe
2009-07-23 23:06:59 ----A---- C:\Windows\system32\DFDWiz.exe
2009-07-23 23:06:58 ----A---- C:\Windows\system32\wdigest.dll
2009-07-23 23:06:58 ----A---- C:\Windows\system32\setupcl.exe
2009-07-23 23:06:58 ----A---- C:\Windows\system32\mprdim.dll
2009-07-23 23:06:58 ----A---- C:\Windows\system32\gpapi.dll
2009-07-23 23:06:58 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
2009-07-23 23:06:57 ----A---- C:\Windows\system32\rtm.dll
2009-07-23 23:06:57 ----A---- C:\Windows\system32\msutb.dll
2009-07-23 23:06:56 ----A---- C:\Windows\system32\wiaservc.dll
2009-07-23 23:06:56 ----A---- C:\Windows\system32\scansetting.dll
2009-07-23 23:06:56 ----A---- C:\Windows\system32\NAPCRYPT.DLL
2009-07-23 23:06:56 ----A---- C:\Windows\system32\devmgr.dll
2009-07-23 23:06:55 ----A---- C:\Windows\system32\msihnd.dll
2009-07-23 23:06:55 ----A---- C:\Windows\system32\CertEnrollUI.dll
2009-07-23 23:06:54 ----A---- C:\Windows\system32\ifsutil.dll
2009-07-23 23:06:54 ----A---- C:\Windows\system32\dimsroam.dll
2009-07-23 23:06:54 ----A---- C:\Windows\system32\actxprxy.dll
2009-07-23 23:06:53 ----A---- C:\Windows\system32\wscapi.dll
2009-07-23 23:06:53 ----A---- C:\Windows\system32\wdi.dll
2009-07-23 23:06:53 ----A---- C:\Windows\system32\mswmdm.dll
2009-07-23 23:06:53 ----A---- C:\Windows\system32\kdusb.dll
2009-07-23 23:06:52 ----A---- C:\Windows\system32\usbmon.dll
2009-07-23 23:06:52 ----A---- C:\Windows\system32\SyncCenter.dll
2009-07-23 23:06:52 ----A---- C:\Windows\system32\spoolsv.exe
2009-07-23 23:06:52 ----A---- C:\Windows\system32\imagehlp.dll
2009-07-23 23:06:52 ----A---- C:\Windows\system32\BOOTVID.DLL
2009-07-23 23:06:52 ----A---- C:\Windows\system32\audiodg.exe
2009-07-23 23:06:51 ----A---- C:\Windows\system32\wlandlg.dll
2009-07-23 23:06:51 ----A---- C:\Windows\system32\vssadmin.exe
2009-07-23 23:06:51 ----A---- C:\Windows\system32\uudf.dll
2009-07-23 23:06:51 ----A---- C:\Windows\system32\regapi.dll
2009-07-23 23:06:51 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
2009-07-23 23:06:51 ----A---- C:\Windows\system32\mycomput.dll
2009-07-23 23:06:50 ----A---- C:\Windows\system32\scecli.dll
2009-07-23 23:06:49 ----A---- C:\Windows\system32\SCardSvr.dll
2009-07-23 23:06:49 ----A---- C:\Windows\system32\newdev.dll
2009-07-23 23:06:49 ----A---- C:\Windows\system32\mspaint.exe
2009-07-23 23:06:49 ----A---- C:\Windows\system32\kdcom.dll
2009-07-23 23:06:48 ----A---- C:\Windows\system32\termmgr.dll
2009-07-23 23:06:48 ----A---- C:\Windows\system32\sud.dll
2009-07-23 23:06:48 ----A---- C:\Windows\system32\ssdpsrv.dll
2009-07-23 23:06:48 ----A---- C:\Windows\system32\samlib.dll
2009-07-23 23:06:48 ----A---- C:\Windows\system32\puiapi.dll
2009-07-23 23:06:48 ----A---- C:\Windows\system32\mstask.dll
2009-07-23 23:06:47 ----A---- C:\Windows\system32\tapisrv.dll
2009-07-23 23:06:47 ----A---- C:\Windows\system32\mtxoci.dll
2009-07-23 23:06:47 ----A---- C:\Windows\system32\duser.dll
2009-07-23 23:06:47 ----A---- C:\Windows\system32\adtschema.dll
2009-07-23 23:06:46 ----A---- C:\Windows\system32\Robocopy.exe
2009-07-23 23:06:46 ----A---- C:\Windows\system32\input.dll
2009-07-23 23:06:46 ----A---- C:\Windows\system32\inetpp.dll
2009-07-23 23:06:46 ----A---- C:\Windows\system32\cic.dll
2009-07-23 23:06:46 ----A---- C:\Windows\system32\AzSqlExt.dll
2009-07-23 23:06:45 ----A---- C:\Windows\system32\wisptis.exe
2009-07-23 23:06:45 ----A---- C:\Windows\system32\SLUINotify.dll
2009-07-23 23:06:44 ----A---- C:\Windows\system32\netiohlp.dll
2009-07-23 23:06:44 ----A---- C:\Windows\system32\cscapi.dll
2009-07-23 23:06:44 ----A---- C:\Windows\system32\authz.dll
2009-07-23 23:06:43 ----A---- C:\Windows\system32\WUDFPlatform.dll
2009-07-23 23:06:43 ----A---- C:\Windows\system32\verifier.exe
2009-07-23 23:06:43 ----A---- C:\Windows\system32\sdshext.dll
2009-07-23 23:06:43 ----A---- C:\Windows\system32\msdtclog.dll
2009-07-23 23:06:43 ----A---- C:\Windows\system32\msdt.exe
2009-07-23 23:06:42 ----A---- C:\Windows\system32\wpcsvc.dll
2009-07-23 23:06:42 ----A---- C:\Windows\system32\themeui.dll
2009-07-23 23:06:42 ----A---- C:\Windows\system32\slcinst.dll
2009-07-23 23:06:42 ----A---- C:\Windows\system32\d3d8.dll
2009-07-23 23:06:42 ----A---- C:\Windows\system32\cmdial32.dll
2009-07-23 23:06:41 ----A---- C:\Windows\system32\wintrust.dll
2009-07-23 23:06:41 ----A---- C:\Windows\system32\vdsldr.exe
2009-07-23 23:06:41 ----A---- C:\Windows\system32\oledlg.dll
2009-07-23 23:06:41 ----A---- C:\Windows\system32\clfsw32.dll
2009-07-23 23:06:40 ----A---- C:\Windows\system32\wpccpl.dll
2009-07-23 23:06:40 ----A---- C:\Windows\system32\WMPhoto.dll
2009-07-23 23:06:40 ----A---- C:\Windows\system32\SndVol.exe
2009-07-23 23:06:40 ----A---- C:\Windows\system32\rasgcw.dll
2009-07-23 23:06:40 ----A---- C:\Windows\system32\pnpsetup.dll
2009-07-23 23:06:40 ----A---- C:\Windows\system32\ntmarta.dll
2009-07-23 23:06:40 ----A---- C:\Windows\system32\mmcbase.dll
2009-07-23 23:06:39 ----A---- C:\Windows\system32\SnippingTool.exe
2009-07-23 23:06:39 ----A---- C:\Windows\system32\rasqec.dll
2009-07-23 23:06:39 ----A---- C:\Windows\system32\ncobjapi.dll
2009-07-23 23:06:39 ----A---- C:\Windows\system32\msrd3x40.dll
2009-07-23 23:06:39 ----A---- C:\Windows\system32\msaatext.dll
2009-07-23 23:06:39 ----A---- C:\Windows\system32\mpr.dll
2009-07-23 23:06:39 ----A---- C:\Windows\system32\mlang.dll
2009-07-23 23:06:39 ----A---- C:\Windows\system32\icfupgd.dll
2009-07-23 23:06:38 ----A---- C:\Windows\system32\wpd_ci.dll
2009-07-23 23:06:38 ----A---- C:\Windows\system32\slmgr.vbs
2009-07-23 23:06:38 ----A---- C:\Windows\system32\nslookup.exe
2009-07-23 23:06:38 ----A---- C:\Windows\system32\diskraid.exe
2009-07-23 23:06:38 ----A---- C:\Windows\system32\accessibilitycpl.dll
2009-07-23 23:06:37 ----A---- C:\Windows\system32\wtsapi32.dll
2009-07-23 23:06:37 ----A---- C:\Windows\system32\unlodctr.exe
2009-07-23 23:06:37 ----A---- C:\Windows\system32\syssetup.dll
2009-07-23 23:06:37 ----A---- C:\Windows\system32\mscms.dll
2009-07-23 23:06:37 ----A---- C:\Windows\system32\lodctr.exe
2009-07-23 23:06:33 ----A---- C:\Windows\system32\ulib.dll
2009-07-23 23:06:33 ----A---- C:\Windows\system32\sethc.exe
2009-07-23 23:06:33 ----A---- C:\Windows\system32\pnpui.dll
2009-07-23 23:06:33 ----A---- C:\Windows\system32\iaspolcy.dll
2009-07-23 23:06:33 ----A---- C:\Windows\system32\dxdiagn.dll
2009-07-23 23:06:32 ----A---- C:\Windows\system32\Utilman.exe
2009-07-23 23:06:32 ----A---- C:\Windows\system32\oobefldr.dll
2009-07-23 23:06:32 ----A---- C:\Windows\system32\Mcx2Svc.dll
2009-07-23 23:06:32 ----A---- C:\Windows\system32\cabinet.dll
2009-07-23 23:06:31 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
2009-07-23 23:06:31 ----A---- C:\Windows\system32\unattend.dll
2009-07-23 23:06:31 ----A---- C:\Windows\system32\trkwks.dll
2009-07-23 23:06:31 ----A---- C:\Windows\system32\scesrv.dll
2009-07-23 23:06:31 ----A---- C:\Windows\system32\lnkstub.exe
2009-07-23 23:06:30 ----A---- C:\Windows\system32\wermgr.exe
2009-07-23 23:06:30 ----A---- C:\Windows\system32\ogldrv.dll
2009-07-23 23:06:30 ----A---- C:\Windows\system32\cabview.dll
2009-07-23 23:06:29 ----A---- C:\Windows\system32\wpcao.dll
2009-07-23 23:06:29 ----A---- C:\Windows\system32\dfdts.dll
2009-07-23 23:06:29 ----A---- C:\Windows\system32\bthci.dll
2009-07-23 23:06:28 ----A---- C:\Windows\system32\eappgnui.dll
2009-07-23 23:06:27 ----A---- C:\Windows\system32\sdspres.dll
2009-07-23 23:06:27 ----A---- C:\Windows\system32\p2pcollab.dll
2009-07-23 23:06:27 ----A---- C:\Windows\system32\msnetobj.dll
2009-07-23 23:06:27 ----A---- C:\Windows\system32\basesrv.dll
2009-07-23 23:06:26 ----A---- C:\Windows\system32\drvinst.exe
2009-07-23 23:06:26 ----A---- C:\Windows\system32\dispdiag.exe
2009-07-23 23:06:26 ----A---- C:\Windows\system32\DHCPQEC.DLL
2009-07-23 23:06:24 ----A---- C:\Windows\system32\mmcss.dll
2009-07-23 23:06:24 ----A---- C:\Windows\system32\dsquery.dll
2009-07-23 23:06:23 ----A---- C:\Windows\system32\verifier.dll
2009-07-23 23:06:23 ----A---- C:\Windows\system32\RstrtMgr.dll
2009-07-23 23:06:22 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
2009-07-23 23:06:22 ----A---- C:\Windows\system32\secproc_ssp.dll
2009-07-23 23:06:22 ----A---- C:\Windows\system32\mprapi.dll
2009-07-23 23:06:22 ----A---- C:\Windows\system32\efsadu.dll
2009-07-23 23:06:21 ----A---- C:\Windows\system32\WMVENCOD.DLL
2009-07-23 23:06:21 ----A---- C:\Windows\system32\wercplsupport.dll
2009-07-23 23:06:21 ----A---- C:\Windows\system32\qedit.dll
2009-07-23 23:06:20 ----A---- C:\Windows\system32\WPDSp.dll
2009-07-23 23:06:20 ----A---- C:\Windows\system32\WPDShServiceObj.dll
2009-07-23 23:06:20 ----A---- C:\Windows\system32\msoeacct.dll
2009-07-23 23:06:20 ----A---- C:\Windows\system32\d3d10core.dll
2009-07-23 23:06:19 ----A---- C:\Windows\system32\wiascanprofiles.dll
2009-07-23 23:06:19 ----A---- C:\Windows\system32\setupugc.exe
2009-07-23 23:06:19 ----A---- C:\Windows\system32\QSVRMGMT.DLL
2009-07-23 23:06:19 ----A---- C:\Windows\system32\pnrpnsp.dll
2009-07-23 23:06:19 ----A---- C:\Windows\system32\networkmap.dll
2009-07-23 23:06:19 ----A---- C:\Windows\system32\iscsiexe.dll
2009-07-23 23:06:19 ----A---- C:\Windows\system32\icacls.exe
2009-07-23 23:06:19 ----A---- C:\Windows\system32\consent.exe
2009-07-23 23:06:18 ----A---- C:\Windows\system32\wiaaut.dll
2009-07-23 23:06:18 ----A---- C:\Windows\system32\usercpl.dll
2009-07-23 23:06:18 ----A---- C:\Windows\system32\p2pnetsh.dll
2009-07-23 23:06:18 ----A---- C:\Windows\system32\msdmo.dll
2009-07-23 23:06:17 ----A---- C:\Windows\system32\xactsrv.dll
2009-07-23 23:06:17 ----A---- C:\Windows\system32\PNPXAssocPrx.dll
2009-07-23 23:06:17 ----A---- C:\Windows\system32\PNPXAssoc.dll
2009-07-23 23:06:17 ----A---- C:\Windows\system32\msrdc.dll
2009-07-23 23:06:17 ----A---- C:\Windows\system32\conime.exe
2009-07-23 23:06:17 ----A---- C:\Windows\system32\autoplay.dll
2009-07-23 23:06:16 ----A---- C:\Windows\system32\systeminfo.exe
2009-07-23 23:06:16 ----A---- C:\Windows\system32\pcadm.dll
2009-07-23 23:06:16 ----A---- C:\Windows\system32\findstr.exe
2009-07-23 23:06:16 ----A---- C:\Windows\system32\eappprxy.dll
2009-07-23 23:06:16 ----A---- C:\Windows\system32\drmmgrtn.dll
2009-07-23 23:06:16 ----A---- C:\Windows\system32\dpapimig.exe
2009-07-23 23:06:15 ----A---- C:\Windows\system32\xwizards.dll
2009-07-23 23:06:15 ----A---- C:\Windows\system32\netcfg.exe
2009-07-23 23:06:15 ----A---- C:\Windows\system32\mfplat.dll
2009-07-23 23:06:15 ----A---- C:\Windows\system32\cmdl32.exe
2009-07-23 23:06:14 ----A---- C:\Windows\system32\resutils.dll
2009-07-23 23:06:14 ----A---- C:\Windows\system32\DWWIN.EXE
2009-07-23 23:06:14 ----A---- C:\Windows\system32\alg.exe
2009-07-23 23:06:13 ----A---- C:\Windows\system32\netprof.dll
2009-07-23 23:06:13 ----A---- C:\Windows\system32\MFWMAAEC.DLL
2009-07-23 23:06:13 ----A---- C:\Windows\system32\dssec.dll
2009-07-23 23:06:13 ----A---- C:\Windows\system32\dot3ui.dll
2009-07-23 23:06:13 ----A---- C:\Windows\system32\dfrgifc.exe
2009-07-23 23:06:13 ----A---- C:\Windows\system32\dbnetlib.dll
2009-07-23 23:06:12 ----A---- C:\Windows\system32\powercpl.dll
2009-07-23 23:06:12 ----A---- C:\Windows\system32\odbc32.dll
2009-07-23 23:06:12 ----A---- C:\Windows\regedit.exe
2009-07-23 23:06:11 ----A---- C:\Windows\system32\txflog.dll
2009-07-23 23:06:11 ----A---- C:\Windows\system32\nshhttp.dll
2009-07-23 23:06:11 ----A---- C:\Windows\system32\imm32.dll
2009-07-23 23:06:11 ----A---- C:\Windows\system32\feclient.dll
2009-07-23 23:06:11 ----A---- C:\Windows\system32\btpanui.dll
2009-07-23 23:06:11 ----A---- C:\Windows\system32\apircl.dll
2009-07-23 23:06:10 ----A---- C:\Windows\system32\tbssvc.dll
2009-07-23 23:06:10 ----A---- C:\Windows\system32\taskkill.exe
2009-07-23 23:06:10 ----A---- C:\Windows\system32\msieftp.dll
2009-07-23 23:06:10 ----A---- C:\Windows\system32\dxva2.dll
2009-07-23 23:06:10 ----A---- C:\Windows\system32\dwmapi.dll
2009-07-23 23:06:10 ----A---- C:\Windows\system32\bcdprov.dll
2009-07-23 23:06:10 ----A---- C:\Windows\system32\ActionQueue.dll
2009-07-23 23:06:09 ----A---- C:\Windows\system32\RASMM.dll
2009-07-23 23:06:09 ----A---- C:\Windows\system32\provthrd.dll
2009-07-23 23:06:09 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
2009-07-23 23:06:09 ----A---- C:\Windows\system32\d3d10.dll
2009-07-23 23:06:08 ----A---- C:\Windows\system32\syncui.dll
2009-07-23 23:06:08 ----A---- C:\Windows\system32\svchost.exe
2009-07-23 23:06:08 ----A---- C:\Windows\system32\slwmi.dll
2009-07-23 23:06:08 ----A---- C:\Windows\system32\shwebsvc.dll
2009-07-23 23:06:08 ----A---- C:\Windows\system32\EAPQEC.DLL
2009-07-23 23:06:08 ----A---- C:\Windows\system32\dmocx.dll
2009-07-23 23:06:07 ----A---- C:\Windows\system32\SLCExt.dll
2009-07-23 23:06:07 ----A---- C:\Windows\system32\slcc.dll
2009-07-23 23:06:07 ----A---- C:\Windows\system32\networkexplorer.dll
2009-07-23 23:06:06 ----A---- C:\Windows\system32\WMASF.DLL
2009-07-23 23:06:06 ----A---- C:\Windows\system32\raserver.exe
2009-07-23 23:06:06 ----A---- C:\Windows\system32\PnPUnattend.exe
2009-07-23 23:06:06 ----A---- C:\Windows\system32\olepro32.dll
2009-07-23 23:06:06 ----A---- C:\Windows\system32\dnscacheugc.exe
2009-07-23 23:06:06 ----A---- C:\Windows\system32\aclui.dll
2009-07-23 23:06:05 ----A---- C:\Windows\system32\xcopy.exe
2009-07-23 23:06:05 ----A---- C:\Windows\system32\uxsms.dll
2009-07-23 23:06:05 ----A---- C:\Windows\system32\UIHub.dll
2009-07-23 23:06:05 ----A---- C:\Windows\system32\taskmgr.exe
2009-07-23 23:06:05 ----A---- C:\Windows\system32\ias.dll
2009-07-23 23:06:05 ----A---- C:\Windows\system32\brcplsdw.dll
2009-07-23 23:06:05 ----A---- C:\Windows\system32\audiodev.dll
2009-07-23 23:06:04 ----A---- C:\Windows\system32\upnp.dll
2009-07-23 23:06:04 ----A---- C:\Windows\system32\reg.exe
2009-07-23 23:06:04 ----A---- C:\Windows\system32\QCLIPROV.DLL
2009-07-23 23:06:04 ----A---- C:\Windows\system32\icsfiltr.dll
2009-07-23 23:06:04 ----A---- C:\Windows\system32\cmstp.exe
2009-07-23 23:06:04 ----A---- C:\Windows\system32\atl.dll
2009-07-23 23:06:04 ----A---- C:\Windows\system32\appinfo.dll
2009-07-23 23:06:03 ----A---- C:\Windows\system32\wlanext.exe
2009-07-23 23:06:03 ----A---- C:\Windows\system32\NapiNSP.dll
2009-07-23 23:06:03 ----A---- C:\Windows\system32\msoert2.dll
2009-07-23 23:06:03 ----A---- C:\Windows\system32\msjetoledb40.dll
2009-07-23 23:06:03 ----A---- C:\Windows\system32\mountvol.exe
2009-07-23 23:06:03 ----A---- C:\Windows\system32\mmcshext.dll
2009-07-23 23:06:03 ----A---- C:\Windows\system32\browser.dll
2009-07-23 23:06:02 ----A---- C:\Windows\system32\wmpdxm.dll
2009-07-23 23:06:02 ----A---- C:\Windows\system32\perfts.dll
2009-07-23 23:06:02 ----A---- C:\Windows\system32\netplwiz.dll
2009-07-23 23:06:02 ----A---- C:\Windows\system32\inetmib1.dll
2009-07-23 23:06:02 ----A---- C:\Windows\system32\dskquoui.dll
2009-07-23 23:06:02 ----A---- C:\Windows\system32\certprop.dll
2009-07-23 23:06:02 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll
2009-07-23 23:06:01 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
2009-07-23 23:06:01 ----A---- C:\Windows\system32\WMVXENCD.DLL
2009-07-23 23:06:01 ----A---- C:\Windows\system32\SoundRecorder.exe
2009-07-23 23:06:01 ----A---- C:\Windows\system32\PING.EXE
2009-07-23 23:06:01 ----A---- C:\Windows\system32\httpapi.dll
2009-07-23 23:06:01 ----A---- C:\Windows\system32\cewmdm.dll
2009-07-23 23:06:01 ----A---- C:\Windows\system32\bitsadmin.exe
2009-07-23 23:06:00 ----A---- C:\Windows\system32\SysFxUI.dll
2009-07-23 23:06:00 ----A---- C:\Windows\system32\rekeywiz.exe
2009-07-23 23:06:00 ----A---- C:\Windows\system32\qcap.dll
2009-07-23 23:06:00 ----A---- C:\Windows\system32\qasf.dll
2009-07-23 23:06:00 ----A---- C:\Windows\system32\dsuiext.dll
2009-07-23 23:06:00 ----A---- C:\Windows\system32\dmusic.dll
2009-07-23 23:05:59 ----A---- C:\Windows\system32\WUDFSvc.dll
2009-07-23 23:05:59 ----A---- C:\Windows\system32\wmpsrcwp.dll
2009-07-23 23:05:59 ----A---- C:\Windows\system32\SecEdit.exe
2009-07-23 23:05:59 ----A---- C:\Windows\system32\mtstocom.exe
2009-07-23 23:05:59 ----A---- C:\Windows\system32\mscandui.dll
2009-07-23 23:05:59 ----A---- C:\Windows\system32\auditpol.exe
2009-07-23 23:05:59 ----A---- C:\Windows\system32\adsmsext.dll
2009-07-23 23:05:58 ----A---- C:\Windows\system32\WMVSENCD.DLL
2009-07-23 23:05:58 ----A---- C:\Windows\system32\Sens.dll
2009-07-23 23:05:58 ----A---- C:\Windows\system32\makecab.exe
2009-07-23 23:05:58 ----A---- C:\Windows\system32\lsmproxy.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\xwtpw32.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\sppnp.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\shimgvw.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\seclogon.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\sbeio.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\ndfapi.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\msdadiag.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\dot3gpclnt.dll
2009-07-23 23:05:57 ----A---- C:\Windows\system32\batt.dll
2009-07-23 23:05:56 ----A---- C:\Windows\system32\wzcdlg.dll
2009-07-23 23:05:56 ----A---- C:\Windows\system32\wscmisetup.dll
2009-07-23 23:05:56 ----A---- C:\Windows\system32\wiashext.dll
2009-07-23 23:05:56 ----A---- C:\Windows\system32\wiadefui.dll
2009-07-23 23:05:56 ----A---- C:\Windows\system32\shacct.dll
2009-07-23 23:05:56 ----A---- C:\Windows\system32\msorcl32.dll
2009-07-23 23:05:56 ----A---- C:\Windows\system32\apss.dll
2009-07-23 23:05:55 ----A---- C:\Windows\system32\wpdwcn.dll
2009-07-23 23:05:55 ----A---- C:\Windows\system32\WMSPDMOE.DLL
2009-07-23 23:05:55 ----A---- C:\Windows\system32\userinit.exe
2009-07-23 23:05:55 ----A---- C:\Windows\system32\perfmon.exe
2009-07-23 23:05:55 ----A---- C:\Windows\system32\p2phost.exe
2009-07-23 23:05:55 ----A---- C:\Windows\system32\napipsec.dll
2009-07-23 23:05:54 ----A---- C:\Windows\system32\winrshost.exe
2009-07-23 23:05:54 ----A---- C:\Windows\system32\tasklist.exe
2009-07-23 23:05:54 ----A---- C:\Windows\system32\TapiMigPlugin.dll
2009-07-23 23:05:54 ----A---- C:\Windows\system32\sxstrace.exe
2009-07-23 23:05:54 ----A---- C:\Windows\system32\prntvpt.dll
2009-07-23 23:05:54 ----A---- C:\Windows\system32\ktmutil.exe
2009-07-23 23:05:54 ----A---- C:\Windows\system32\keymgr.dll
2009-07-23 23:05:54 ----A---- C:\Windows\system32\HelpPaneProxy.dll
2009-07-23 23:05:54 ----A---- C:\Windows\system32\csrsrv.dll
2009-07-23 23:05:53 ----A---- C:\Windows\system32\UIAutomationCore.dll
2009-07-23 23:05:53 ----A---- C:\Windows\system32\notepad.exe
2009-07-23 23:05:53 ----A---- C:\Windows\system32\MP4SDECD.DLL
2009-07-23 23:05:53 ----A---- C:\Windows\system32\ftp.exe
2009-07-23 23:05:53 ----A---- C:\Windows\system32\fmifs.dll
2009-07-23 23:05:53 ----A---- C:\Windows\system32\d3dim700.dll
2009-07-23 23:05:53 ----A---- C:\Windows\system32\colorui.dll
2009-07-23 23:05:53 ----A---- C:\Windows\notepad.exe
2009-07-23 23:05:52 ----A---- C:\Windows\system32\netiougc.exe
2009-07-23 23:05:52 ----A---- C:\Windows\system32\msiexec.exe
2009-07-23 23:05:51 ----A---- C:\Windows\system32\wscproxystub.dll
2009-07-23 23:05:51 ----A---- C:\Windows\system32\winethc.dll
2009-07-23 23:05:51 ----A---- C:\Windows\system32\takeown.exe
2009-07-23 23:05:51 ----A---- C:\Windows\system32\PnPutil.exe
2009-07-23 23:05:51 ----A---- C:\Windows\system32\pcasvc.dll
2009-07-23 23:05:51 ----A---- C:\Windows\system32\nshipsec.dll
2009-07-23 23:05:51 ----A---- C:\Windows\system32\msimtf.dll
2009-07-23 23:05:51 ----A---- C:\Windows\system32\driverquery.exe
2009-07-23 23:05:51 ----A---- C:\Windows\system32\cryptdll.dll
2009-07-23 23:05:50 ----A---- C:\Windows\system32\wpdbusenum.dll
2009-07-23 23:05:50 ----A---- C:\Windows\system32\wmiprop.dll
2009-07-23 23:05:50 ----A---- C:\Windows\system32\txfw32.dll
2009-07-23 23:05:50 ----A---- C:\Windows\system32\pots.dll
2009-07-23 23:05:50 ----A---- C:\Windows\system32\findnetprinters.dll
2009-07-23 23:05:49 ----A---- C:\Windows\system32\shrpubw.exe
2009-07-23 23:05:49 ----A---- C:\Windows\system32\rasplap.dll
2009-07-23 23:05:49 ----A---- C:\Windows\system32\powrprof.dll
2009-07-23 23:05:49 ----A---- C:\Windows\system32\fsutil.exe
2009-07-23 23:05:49 ----A---- C:\Windows\system32\dnshc.dll
2009-07-23 23:05:49 ----A---- C:\Windows\system32\capisp.dll
2009-07-23 23:05:48 ----A---- C:\Windows\system32\sfc_os.dll
2009-07-23 23:05:48 ----A---- C:\Windows\system32\sendmail.dll
2009-07-23 23:05:48 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
2009-07-23 23:05:48 ----A---- C:\Windows\system32\perfnet.dll
2009-07-23 23:05:48 ----A---- C:\Windows\system32\olecli32.dll
2009-07-23 23:05:48 ----A---- C:\Windows\system32\nsisvc.dll
2009-07-23 23:05:48 ----A---- C:\Windows\system32\luainstall.dll
2009-07-23 23:05:48 ----A---- C:\Windows\system32\imapi.dll
2009-07-23 23:05:47 ----A---- C:\Windows\system32\WLanHC.dll
2009-07-23 23:05:47 ----A---- C:\Windows\system32\TMM.dll
2009-07-23 23:05:47 ----A---- C:\Windows\system32\shgina.dll
2009-07-23 23:05:47 ----A---- C:\Windows\system32\rshx32.dll
2009-07-23 23:05:47 ----A---- C:\Windows\system32\RpcPing.exe
2009-07-23 23:05:47 ----A---- C:\Windows\system32\ktmw32.dll
2009-07-23 23:05:47 ----A---- C:\Windows\system32\fdPHost.dll
2009-07-23 23:05:47 ----A---- C:\Windows\system32\cmmon32.exe
2009-07-23 23:05:46 ----A---- C:\Windows\system32\WMADMOE.DLL
2009-07-23 23:05:46 ----A---- C:\Windows\system32\wiaacmgr.exe
2009-07-23 23:05:46 ----A---- C:\Windows\system32\version.dll
2009-07-23 23:05:46 ----A---- C:\Windows\system32\runonce.exe
2009-07-23 23:05:46 ----A---- C:\Windows\system32\dimsjob.dll
2009-07-23 23:05:46 ----A---- C:\Windows\system32\d3dim.dll
2009-07-23 23:05:46 ----A---- C:\Windows\system32\compstui.dll
2009-07-23 23:05:45 ----A---- C:\Windows\system32\unregmp2.exe
2009-07-23 23:05:45 ----A---- C:\Windows\system32\UI0Detect.exe
2009-07-23 23:05:45 ----A---- C:\Windows\system32\mdminst.dll
2009-07-23 23:05:45 ----A---- C:\Windows\system32\getmac.exe
2009-07-23 23:05:45 ----A---- C:\Windows\system32\cmlua.dll
2009-07-23 23:05:44 ----A---- C:\Windows\system32\w32tm.exe
2009-07-23 23:05:44 ----A---- C:\Windows\system32\net.exe
2009-07-23 23:05:44 ----A---- C:\Windows\system32\msvfw32.dll
2009-07-23 23:05:44 ----A---- C:\Windows\system32\MPG4DECD.DLL
2009-07-23 23:05:44 ----A---- C:\Windows\system32\MP43DECD.DLL
2009-07-23 23:05:44 ----A---- C:\Windows\system32\dsauth.dll
2009-07-23 23:05:43 ----A---- C:\Windows\system32\wmpshell.dll
2009-07-23 23:05:43 ----A---- C:\Windows\system32\tscupgrd.exe
2009-07-23 23:05:42 ----A---- C:\Windows\system32\sdchange.exe
2009-07-23 23:05:42 ----A---- C:\Windows\system32\pnpts.dll
2009-07-23 23:05:42 ----A---- C:\Windows\system32\migisol.dll
2009-07-23 23:05:42 ----A---- C:\Windows\system32\ipconfig.exe
2009-07-23 23:05:42 ----A---- C:\Windows\system32\fdeploy.dll
2009-07-23 23:05:42 ----A---- C:\Windows\system32\credui.dll
2009-07-23 23:05:42 ----A---- C:\Windows\system32\cmutil.dll
2009-07-23 23:05:42 ----A---- C:\Windows\system32\ACW.exe
2009-07-23 23:05:41 ----A---- C:\Windows\system32\sfc.exe
2009-07-23 23:05:41 ----A---- C:\Windows\system32\PortableDeviceWiaCompat.dll
2009-07-23 23:05:41 ----A---- C:\Windows\system32\dispci.dll
2009-07-23 23:05:41 ----A---- C:\Windows\system32\diantz.exe
2009-07-23 23:05:41 ----A---- C:\Windows\system32\comrepl.dll
2009-07-23 23:05:40 ----A---- C:\Windows\system32\TSTheme.exe
2009-07-23 23:05:40 ----A---- C:\Windows\system32\dinput8.dll
2009-07-23 23:05:39 ----A---- C:\Windows\system32\remotepg.dll
2009-07-23 23:05:39 ----A---- C:\Windows\system32\nlaapi.dll
2009-07-23 23:05:39 ----A---- C:\Windows\system32\ExplorerFrame.dll
2009-07-23 23:05:39 ----A---- C:\Windows\system32\EncDump.dll
2009-07-23 23:05:39 ----A---- C:\Windows\system32\cfgbkend.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
2009-07-23 23:05:38 ----A---- C:\Windows\system32\wmidx.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\vdmredir.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\utildll.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\TpmInit.exe
2009-07-23 23:05:38 ----A---- C:\Windows\system32\softkbd.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\pdhui.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\modemui.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\hlink.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\fwcfg.dll
2009-07-23 23:05:38 ----A---- C:\Windows\system32\expand.exe
2009-07-23 23:05:38 ----A---- C:\Windows\system32\colbact.dll
2009-07-23 23:05:37 ----A---- C:\Windows\system32\wmvdspa.dll
2009-07-23 23:05:37 ----A---- C:\Windows\system32\sti_ci.dll
2009-07-23 23:05:37 ----A---- C:\Windows\system32\McxDriv.dll
2009-07-23 23:05:37 ----A---- C:\Windows\system32\bridgeunattend.exe
2009-07-23 23:05:37 ----A---- C:\Windows\system32\bootcfg.exe
2009-07-23 23:05:37 ----A---- C:\Windows\system32\amstream.dll
2009-07-23 23:05:36 ----A---- C:\Windows\system32\wsnmp32.dll
2009-07-23 23:05:36 ----A---- C:\Windows\system32\waitfor.exe
2009-07-23 23:05:36 ----A---- C:\Windows\system32\vds_ps.dll
2009-07-23 23:05:36 ----A---- C:\Windows\system32\tabcal.exe
2009-07-23 23:05:36 ----A---- C:\Windows\system32\rdrleakdiag.exe
2009-07-23 23:05:36 ----A---- C:\Windows\system32\qdv.dll
2009-07-23 23:05:36 ----A---- C:\Windows\system32\logman.exe
2009-07-23 23:05:36 ----A---- C:\Windows\system32\iscsium.dll
2009-07-23 23:05:36 ----A---- C:\Windows\system32\esentutl.exe
2009-07-23 23:05:36 ----A---- C:\Windows\system32\dpnet.dll
2009-07-23 23:05:36 ----A---- C:\Windows\system32\cmcfg32.dll
2009-07-23 23:05:35 ----A---- C:\Windows\system32\WsmCl.dll
2009-07-23 23:05:35 ----A---- C:\Windows\system32\wfapigp.dll
2009-07-23 23:05:35 ----A---- C:\Windows\system32\shutdown.exe
2009-07-23 23:05:35 ----A---- C:\Windows\system32\osblprov.dll
2009-07-23 23:05:35 ----A---- C:\Windows\system32\odbccp32.dll
2009-07-23 23:05:35 ----A---- C:\Windows\system32\cacls.exe
2009-07-23 23:05:29 ----A---- C:\Windows\system32\wmpcm.dll
2009-07-23 23:05:29 ----A---- C:\Windows\system32\olesvr32.dll
2009-07-23 23:05:29 ----A---- C:\Windows\system32\msdtc.exe
2009-07-23 23:05:29 ----A---- C:\Windows\system32\DpiScaling.exe
2009-07-23 23:05:29 ----A---- C:\Windows\system32\dmsynth.dll
2009-07-23 23:05:29 ----A---- C:\Windows\system32\COLORCNV.DLL
2009-07-23 23:05:28 ----A---- C:\Windows\system32\wpnpinst.exe
2009-07-23 23:05:28 ----A---- C:\Windows\system32\werdiagcontroller.dll
2009-07-23 23:05:28 ----A---- C:\Windows\system32\rasauto.dll
2009-07-23 23:05:28 ----A---- C:\Windows\system32\olethk32.dll
2009-07-23 23:05:28 ----A---- C:\Windows\system32\mfvdsp.dll
2009-07-23 23:05:28 ----A---- C:\Windows\system32\iscsiwmi.dll
2009-07-23 23:05:27 ----A---- C:\Windows\system32\wavemsp.dll
2009-07-23 23:05:27 ----A---- C:\Windows\system32\ufat.dll
2009-07-23 23:05:27 ----A---- C:\Windows\system32\sxproxy.dll
2009-07-23 23:05:27 ----A---- C:\Windows\system32\SLLUA.exe
2009-07-23 23:05:27 ----A---- C:\Windows\system32\mstext40.dll
2009-07-23 23:05:27 ----A---- C:\Windows\system32\at.exe
2009-07-23 23:05:26 ----A---- C:\Windows\system32\xmlprovi.dll
2009-07-23 23:05:26 ----A---- C:\Windows\system32\ucsvc.exe
2009-07-23 23:05:26 ----A---- C:\Windows\system32\rgb9rast.dll
2009-07-23 23:05:26 ----A---- C:\Windows\system32\RegCtrl.dll
2009-07-23 23:05:26 ----A---- C:\Windows\system32\odbctrac.dll
2009-07-23 23:05:26 ----A---- C:\Windows\system32\networkitemfactory.dll
2009-07-23 23:05:26 ----A---- C:\Windows\system32\msctfui.dll
2009-07-23 23:05:26 ----A---- C:\Windows\system32\itss.dll
2009-07-23 23:05:26 ----A---- C:\Windows\system32\convert.exe
2009-07-23 23:05:25 ----A---- C:\Windows\system32\TimeDateMUICallback.dll
2009-07-23 23:05:25 ----A---- C:\Windows\system32\prevhost.exe
2009-07-23 23:05:25 ----A---- C:\Windows\system32\mobsync.exe
2009-07-23 23:05:25 ----A---- C:\Windows\system32\csrstub.exe
2009-07-23 23:05:25 ----A---- C:\Windows\system32\bitsigd.dll
2009-07-23 23:05:24 ----A---- C:\Windows\system32\tbs.dll
2009-07-23 23:05:24 ----A---- C:\Windows\system32\netbtugc.exe
2009-07-23 23:05:24 ----A---- C:\Windows\system32\iscsied.dll
2009-07-23 23:05:24 ----A---- C:\Windows\system32\dskquota.dll
2009-07-23 23:05:24 ----A---- C:\Windows\system32\AuthFWGP.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\unattendedjoin.exe
2009-07-23 23:05:23 ----A---- C:\Windows\system32\setupcln.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\rasdiag.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\ocsetup.exe
2009-07-23 23:05:23 ----A---- C:\Windows\system32\mydocs.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\l2gpstore.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\GuidedHelp.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\fphc.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\dmime.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\cscdll.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\cmpbk32.dll
2009-07-23 23:05:23 ----A---- C:\Windows\system32\AtBroker.exe
2009-07-23 23:05:22 ----A---- C:\Windows\system32\winnsi.dll
2009-07-23 23:05:22 ----A---- C:\Windows\system32\regini.exe
2009-07-23 23:05:22 ----A---- C:\Windows\system32\napdsnap.dll
2009-07-23 23:05:22 ----A---- C:\Windows\system32\dsdmo.dll
2009-07-23 23:05:21 ----A---- C:\Windows\system32\usbui.dll
2009-07-23 23:05:21 ----A---- C:\Windows\system32\odbccu32.dll
2009-07-23 23:05:21 ----A---- C:\Windows\system32\odbccr32.dll
2009-07-23 23:05:21 ----A---- C:\Windows\system32\msident.dll
2009-07-23 23:05:21 ----A---- C:\Windows\system32\msdart.dll
2009-07-23 23:05:21 ----A---- C:\Windows\system32\dot3dlg.dll
2009-07-23 23:05:21 ----A---- C:\Windows\system32\devenum.dll
2009-07-23 23:05:21 ----A---- C:\Windows\system32\cmstplua.dll
2009-07-23 23:05:20 ----A---- C:\Windows\system32\wpclsp.dll
2009-07-23 23:05:20 ----A---- C:\Windows\system32\WINSRPC.DLL
2009-07-23 23:05:20 ----A---- C:\Windows\system32\vss_ps.dll
2009-07-23 23:05:20 ----A---- C:\Windows\system32\VIDRESZR.DLL
2009-07-23 23:05:20 ----A---- C:\Windows\system32\upnpcont.exe
2009-07-23 23:05:20 ----A---- C:\Windows\system32\RacAgent.exe
2009-07-23 23:05:20 ----A---- C:\Windows\system32\nsi.dll
2009-07-23 23:05:20 ----A---- C:\Windows\system32\nbtstat.exe
2009-07-23 23:05:20 ----A---- C:\Windows\system32\mtxlegih.dll
2009-07-23 23:05:20 ----A---- C:\Windows\system32\mtxdm.dll
2009-07-23 23:05:20 ----A---- C:\Windows\system32\MsCtfMonitor.dll
2009-07-23 23:05:20 ----A---- C:\Windows\system32\gpupdate.exe
2009-07-23 23:05:20 ----A---- C:\Windows\system32\avrt.dll
2009-07-23 23:05:19 ----A---- C:\Windows\system32\srwmi.dll
2009-07-23 23:05:19 ----A---- C:\Windows\system32\mfcsubs.dll
2009-07-23 23:05:19 ----A---- C:\Windows\system32\graftabl.com
2009-07-23 23:05:18 ----A---- C:\Windows\system32\wsock32.dll
2009-07-23 23:05:18 ----A---- C:\Windows\system32\WavDest.dll
2009-07-23 23:05:18 ----A---- C:\Windows\system32\vfwwdm32.dll
2009-07-23 23:05:18 ----A---- C:\Windows\system32\syskey.exe
2009-07-23 23:05:18 ----A---- C:\Windows\system32\rasphone.exe
2009-07-23 23:05:18 ----A---- C:\Windows\system32\odbcbcp.dll
2009-07-23 23:05:18 ----A---- C:\Windows\system32\netevent.dll
2009-07-23 23:05:18 ----A---- C:\Windows\system32\msexcl40.dll
2009-07-23 23:05:17 ----A---- C:\Windows\system32\wiarpc.dll
2009-07-23 23:05:17 ----A---- C:\Windows\system32\ROUTE.EXE
2009-07-23 23:05:17 ----A---- C:\Windows\system32\procinst.dll
2009-07-23 23:05:17 ----A---- C:\Windows\system32\ndfetw.dll
2009-07-23 23:05:17 ----A---- C:\Windows\system32\MP3DMOD.DLL
2009-07-23 23:05:17 ----A---- C:\Windows\system32\extrac32.exe
2009-07-23 23:05:17 ----A---- C:\Windows\system32\eventcls.dll
2009-07-23 23:05:16 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
2009-07-23 23:05:16 ----A---- C:\Windows\system32\wiadss.dll
2009-07-23 23:05:16 ----A---- C:\Windows\system32\TabbtnEx.dll
2009-07-23 23:05:16 ----A---- C:\Windows\system32\d3dxof.dll
2009-07-23 23:05:16 ----A---- C:\Windows\system32\csrss.exe
2009-07-23 23:05:15 ----A---- C:\Windows\system32\WlanMmHC.dll
2009-07-23 23:05:15 ----A---- C:\Windows\system32\Tabbtn.dll
2009-07-23 23:05:15 ----A---- C:\Windows\system32\psbase.dll
2009-07-23 23:05:15 ----A---- C:\Windows\system32\inetppui.dll
2009-07-23 23:05:15 ----A---- C:\Windows\system32\dmscript.dll
2009-07-23 23:05:15 ----A---- C:\Windows\system32\CertEnrollCtrl.exe
2009-07-23 23:05:14 ----A---- C:\Windows\system32\msxbde40.dll
2009-07-23 23:05:14 ----A---- C:\Windows\system32\dmloader.dll
2009-07-23 23:05:14 ----A---- C:\Windows\fveupdate.exe
2009-07-23 23:05:13 ----A---- C:\Windows\system32\wshcon.dll
2009-07-23 23:05:13 ----A---- C:\Windows\system32\Netplwiz.exe
2009-07-23 23:05:13 ----A---- C:\Windows\system32\msltus40.dll
2009-07-23 23:05:13 ----A---- C:\Windows\system32\credssp.dll
2009-07-23 23:05:12 ----A---- C:\Windows\system32\PlaySndSrv.dll
2009-07-23 23:05:12 ----A---- C:\Windows\system32\mspbde40.dll
2009-07-23 23:05:12 ----A---- C:\Windows\system32\icsunattend.exe
2009-07-23 23:05:11 ----A---- C:\Windows\system32\WsmRes.dll
2009-07-23 23:05:11 ----A---- C:\Windows\system32\WSHTCPIP.DLL
2009-07-23 23:05:11 ----A---- C:\Windows\system32\wship6.dll
2009-07-23 23:05:11 ----A---- C:\Windows\system32\sxsstore.dll
2009-07-23 23:05:11 ----A---- C:\Windows\system32\msvidc32.dll
2009-07-23 23:05:11 ----A---- C:\Windows\system32\localui.dll
2009-07-23 23:05:11 ----A---- C:\Windows\system32\lltdapi.dll
2009-07-23 23:05:11 ----A---- C:\Windows\system32\HotStartUserAgent.dll
2009-07-23 23:05:11 ----A---- C:\Windows\system32\ComputerDefaults.exe
2009-07-23 23:05:10 ----A---- C:\Windows\system32\tcpmon.ini
2009-07-23 23:05:10 ----A---- C:\Windows\system32\setupSNK.exe
2009-07-23 23:05:10 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
2009-07-23 23:05:10 ----A---- C:\Windows\system32\icaapi.dll
2009-07-23 23:05:09 ----A---- C:\Windows\system32\slwga.dll
2009-07-23 23:05:09 ----A---- C:\Windows\system32\sbunattend.exe
2009-07-23 23:05:09 ----A---- C:\Windows\system32\OptionalFeatures.exe
2009-07-23 23:05:09 ----A---- C:\Windows\system32\dmutil.dll
2009-07-23 23:05:08 ----A---- C:\Windows\system32\usbperf.dll
2009-07-23 23:05:08 ----A---- C:\Windows\system32\spopk.dll
2009-07-23 23:05:08 ----A---- C:\Windows\system32\serialui.dll
2009-07-23 23:05:08 ----A---- C:\Windows\system32\NcdProp.dll
2009-07-23 23:05:07 ----A---- C:\Windows\system32\odbcconf.dll
2009-07-23 23:05:07 ----A---- C:\Windows\system32\cofiredm.dll
2009-07-23 23:05:06 ----A---- C:\Windows\system32\hbaapi.dll
2009-07-23 23:05:05 ----A---- C:\Windows\system32\rasctrs.dll
2009-07-23 23:05:05 ----A---- C:\Windows\system32\msobjs.dll
2009-07-23 23:05:05 ----A---- C:\Windows\system32\midimap.dll
2009-07-23 23:05:05 ----A---- C:\Windows\system32\hnetmon.dll
2009-07-23 23:05:04 ----A---- C:\Windows\system32\vdmdbg.dll
2009-07-23 23:05:04 ----A---- C:\Windows\system32\nlsbres.dll
2009-07-23 23:05:04 ----A---- C:\Windows\system32\LogonUI.exe
2009-07-23 23:05:04 ----A---- C:\Windows\system32\iprtprio.dll
2009-07-23 23:05:04 ----A---- C:\Windows\system32\InfDefaultInstall.exe
2009-07-23 23:05:04 ----A---- C:\Windows\system32\esentprf.dll
2009-07-23 23:05:01 ----A---- C:\Windows\system32\osbaseln.dll
2009-07-23 23:05:01 ----A---- C:\Windows\system32\cfgmgr32.dll
2009-07-23 23:05:00 ----A---- C:\Windows\system32\msmmsp.dll
2009-07-23 23:05:00 ----A---- C:\Windows\system32\msisip.dll
2009-07-23 23:04:58 ----A---- C:\Windows\system32\winusb.dll
2009-07-23 23:04:58 ----A---- C:\Windows\system32\rdpcfgex.dll
2009-07-23 23:04:58 ----A---- C:\Windows\system32\dispex.dll
2009-07-23 23:04:52 ----A---- C:\Windows\system32\Nlsdl.dll
2009-07-23 23:04:51 ----A---- C:\Windows\system32\riched32.dll
2009-07-23 23:04:51 ----A---- C:\Windows\system32\msidle.dll
2009-07-23 23:04:51 ----A---- C:\Windows\system32\idndl.dll
2009-07-23 23:04:45 ----A---- C:\Windows\system32\KBDKOR.DLL
2009-07-23 23:04:45 ----A---- C:\Windows\system32\KBDJPN.DLL
2009-07-23 23:04:45 ----A---- C:\Windows\system32\iscsilog.dll
2009-07-23 23:04:42 ----A---- C:\Windows\system32\vga64k.dll
2009-07-23 23:04:42 ----A---- C:\Windows\system32\vga256.dll
2009-07-23 23:04:42 ----A---- C:\Windows\system32\tsddd.dll
2009-07-23 23:04:42 ----A---- C:\Windows\system32\framebuf.dll
2009-07-23 23:04:41 ----A---- C:\Windows\system32\vga.dll
2009-07-23 23:04:41 ----A---- C:\Windows\system32\dmdskres2.dll
2009-07-23 23:04:41 ----A---- C:\Windows\system32\bootstr.dll
2009-07-23 23:04:40 ----A---- C:\Windows\system32\spwizres.dll
2009-07-23 23:04:40 ----A---- C:\Windows\system32\f3ahvoas.dll
2009-07-23 23:04:38 ----A---- C:\Windows\system32\gatherWiredInfo.vbs
2009-07-23 23:04:33 ----A---- C:\Windows\system32\gatherWirelessInfo.vbs
2009-07-23 23:04:33 ----A---- C:\Windows\system32\fsmgmt.msc
2009-07-23 23:04:29 ----A---- C:\Windows\system32\perfmon.msc
2009-07-23 23:04:28 ----A---- C:\Windows\system32\vsp1cln.exe
2009-07-23 23:03:44 ----A---- C:\Windows\system32\xmllite.dll
2009-07-23 23:03:43 ----A---- C:\Windows\system32\wbemcomn.dll
2009-07-23 23:03:38 ----A---- C:\Windows\system32\sqmapi.dll
2009-07-23 23:03:38 ----A---- C:\Windows\system32\SmiInstaller.dll
2009-07-23 23:03:37 ----A---- C:\Windows\system32\SmiEngine.dll
2009-07-23 23:03:31 ----A---- C:\Windows\system32\wdscore.dll
2009-07-23 23:03:31 ----A---- C:\Windows\system32\PkgMgr.exe
2009-07-23 23:03:16 ----A---- C:\Windows\system32\drvstore.dll
2009-07-23 23:03:15 ----A---- C:\Windows\system32\mspatcha.dll
2009-07-23 23:03:15 ----A---- C:\Windows\system32\msdelta.dll
2009-07-23 23:03:15 ----A---- C:\Windows\system32\dpx.dll
2009-07-23 11:39:01 ----D---- C:\Users\Shota\AppData\Roaming\QQ Games Plugin
2009-07-23 11:38:50 ----D---- C:\Users\Shota\AppData\Roaming\acccore
2009-07-23 11:37:22 ----D---- C:\ProgramData\Tencent
2009-07-23 11:37:22 ----D---- C:\Program Files\Tencent
2009-07-23 11:36:58 ----D---- C:\Program Files\AIMTunes
2009-07-23 11:36:41 ----D---- C:\ProgramData\AOL Downloads
2009-07-23 11:36:40 ----A---- C:\Windows\atid.ini
2009-07-23 11:36:18 ----D---- C:\Program Files\Common Files\Software Update Utility
2009-07-23 11:36:11 ----D---- C:\ProgramData\AIM Toolbar
2009-07-23 11:36:11 ----D---- C:\Program Files\AIM Toolbar
2009-07-23 11:35:43 ----D---- C:\ProgramData\Viewpoint
2009-07-23 11:35:38 ----D---- C:\Program Files\Viewpoint
2009-07-23 11:35:36 ----D---- C:\ProgramData\acccore
2009-07-23 11:34:44 ----D---- C:\ProgramData\AOL OCP
2009-07-23 11:34:44 ----D---- C:\ProgramData\AOL
2009-07-23 11:33:57 ----D---- C:\Program Files\Common Files\AOL
2009-07-23 11:33:39 ----D---- C:\Program Files\AIM6
2009-07-22 23:46:31 ----D---- C:\Program Files\Common Files\INCA Shared
2009-07-22 18:07:16 ----D---- C:\ProgramData\Google Updater
2009-07-22 18:06:57 ----D---- C:\Program Files\Google
2009-07-22 01:11:38 ----D---- C:\AeriaGames
2009-07-22 01:10:10 ----D---- C:\Users\Shota\AppData\Roaming\InstallShield
2009-07-22 00:40:00 ----D---- C:\.jagex_cache_32
2009-07-21 23:36:19 ----D---- C:\Users\Shota\AppData\Roaming\Apple Computer
2009-07-21 23:35:03 ----D---- C:\Program Files\QuickTime
2009-07-21 23:33:13 ----D---- C:\ProgramData\Apple Computer
2009-07-21 23:31:43 ----D---- C:\Program Files\iPod
2009-07-21 21:04:32 ----A---- C:\Windows\system32\javaws.exe
2009-07-21 21:04:32 ----A---- C:\Windows\system32\deploytk.dll
2009-07-21 21:04:30 ----A---- C:\Windows\system32\javaw.exe
2009-07-21 21:04:24 ----A---- C:\Windows\system32\java.exe
2009-07-21 20:11:37 ----A---- C:\Windows\system32\t2embed.dll
2009-07-21 20:11:37 ----A---- C:\Windows\system32\atmlib.dll
2009-07-21 20:11:37 ----A---- C:\Windows\system32\atmfd.dll
2009-07-21 20:11:36 ----A---- C:\Windows\system32\lpk.dll
2009-07-21 20:11:36 ----A---- C:\Windows\system32\fontsub.dll
2009-07-21 20:11:36 ----A---- C:\Windows\system32\dciman32.dll
2009-07-21 20:11:02 ----A---- C:\Windows\system32\es.dll
2009-07-21 17:13:02 ----A---- C:\Windows\system32\infocardapi.dll
2009-07-21 17:13:02 ----A---- C:\Windows\system32\icardres.dll
2009-07-21 17:13:02 ----A---- C:\Windows\system32\icardagt.exe
2009-07-21 17:12:55 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2009-07-21 17:12:53 ----A---- C:\Windows\system32\PresentationHost.exe
2009-07-21 17:12:52 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
2009-07-21 17:12:52 ----A---- C:\Windows\system32\PresentationHostProxy.dll
2009-07-21 16:58:36 ----A---- C:\Windows\system32\dfshim.dll
2009-07-21 16:58:35 ----A---- C:\Windows\system32\netfxperf.dll
2009-07-21 16:58:32 ----A---- C:\Windows\system32\mscoree.dll
2009-07-21 16:58:31 ----A---- C:\Windows\system32\mscories.dll
2009-07-21 16:58:31 ----A---- C:\Windows\system32\mscorier.dll
2009-07-21 16:32:08 ----D---- C:\Windows\Minidump
2009-07-21 05:20:49 ----D---- C:\Users\Shota\AppData\Roaming\Mozilla
2009-07-21 05:20:31 ----D---- C:\Users\Shota\AppData\Roaming\LimeWire
2009-07-21 01:04:35 ----D---- C:\ProgramData\NVIDIA
2009-07-19 20:36:17 ----D---- C:\OEMSettings
2009-07-19 18:43:41 ----A---- C:\Windows\system32\winipsec.dll
2009-07-19 18:43:41 ----A---- C:\Windows\system32\polstore.dll
2009-07-19 18:43:41 ----A---- C:\Windows\system32\IPSECSVC.DLL
2009-07-19 18:43:41 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2009-07-19 18:41:13 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
2009-07-19 18:41:13 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
2009-07-19 18:41:13 ----A---- C:\Windows\system32\PortableDeviceApi.dll
2009-07-19 18:34:23 ----A---- C:\Windows\system32\EncDec.dll
2009-07-19 18:34:22 ----A---- C:\Windows\system32\psisdecd.dll
2009-07-19 18:27:08 ----A---- C:\Windows\system32\winhttp.dll
2009-07-19 18:25:33 ----A---- C:\Windows\system32\gdi32.dll
2009-07-19 18:22:44 ----A---- C:\Windows\system32\xolehlp.dll
2009-07-19 18:22:44 ----A---- C:\Windows\system32\msdtcprx.dll
2009-07-19 18:20:56 ----A---- C:\Windows\system32\Apphlpdm.dll
2009-07-19 18:20:47 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2009-07-19 18:20:40 ----A---- C:\Windows\system32\gameux.dll
2009-07-19 18:19:44 ----A---- C:\Windows\system32\wmpeffects.dll
2009-07-19 18:19:03 ----A---- C:\Windows\system32\msxml3r.dll
2009-07-19 18:19:03 ----A---- C:\Windows\system32\msxml3.dll
2009-07-19 18:15:27 ----A---- C:\Windows\system32\netapi32.dll
2009-07-19 18:14:44 ----A---- C:\Windows\system32\tzres.dll
2009-07-19 18:12:05 ----A---- C:\Windows\system32\wmploc.DLL
2009-07-19 18:11:58 ----A---- C:\Windows\system32\wmp.dll
2009-07-19 18:11:57 ----A---- C:\Windows\system32\spwmp.dll
2009-07-19 18:11:57 ----A---- C:\Windows\system32\dxmasf.dll
2009-07-19 18:09:51 ----A---- C:\Windows\system32\shell32.dll
2009-07-19 18:08:54 ----A---- C:\Windows\system32\localspl.dll
2009-07-19 17:39:59 ----A---- C:\Windows\explorer.exe
2009-07-19 16:50:42 ----A---- C:\Windows\system32\NlsLexicons0045.dll
2009-07-19 16:50:40 ----A---- C:\Windows\system32\NlsLexicons0046.dll
2009-07-19 16:50:37 ----A---- C:\Windows\system32\NlsLexicons0047.dll
2009-07-19 16:50:35 ----A---- C:\Windows\system32\NlsLexicons0049.dll
2009-07-19 16:50:33 ----A---- C:\Windows\system32\NlsLexicons0020.dll
2009-07-19 16:50:30 ----A---- C:\Windows\system32\NlsLexicons0039.dll
2009-07-19 16:50:27 ----A---- C:\Windows\system32\NlsLexicons0021.dll
2009-07-19 16:50:22 ----A---- C:\Windows\system32\NlsLexicons0022.dll
2009-07-19 16:50:12 ----A---- C:\Windows\system32\NlsLexicons0024.dll
2009-07-19 16:50:02 ----A---- C:\Windows\system32\NlsLexicons0026.dll
2009-07-19 16:49:52 ----A---- C:\Windows\system32\NlsLexicons0027.dll
2009-07-19 16:49:45 ----A---- C:\Windows\system32\NlsLexicons0010.dll
2009-07-19 16:49:40 ----A---- C:\Windows\system32\NlsLexicons0011.dll
2009-07-19 16:49:35 ----A---- C:\Windows\system32\NlsLexicons0013.dll
2009-07-19 16:49:29 ----A---- C:\Windows\system32\NlsLexicons0018.dll
2009-07-19 16:49:22 ----A---- C:\Windows\system32\NlsLexicons0019.dll
2009-07-19 16:49:06 ----A---- C:\Windows\system32\NlsLexicons0001.dll
2009-07-19 16:48:54 ----A---- C:\Windows\system32\NlsLexicons0002.dll
2009-07-19 16:48:50 ----A---- C:\Windows\system32\NlsLexicons0003.dll
2009-07-19 16:48:40 ----A---- C:\Windows\system32\NlsLexicons0007.dll
2009-07-19 16:48:28 ----A---- C:\Windows\system32\NlsLexicons0009.dll
2009-07-19 16:48:23 ----A---- C:\Windows\system32\NlsLexicons004a.dll
2009-07-19 16:48:19 ----A---- C:\Windows\system32\NlsLexicons004b.dll
2009-07-19 16:48:14 ----A---- C:\Windows\system32\NlsLexicons004c.dll
2009-07-19 16:48:10 ----A---- C:\Windows\system32\NlsLexicons004e.dll
2009-07-19 16:48:05 ----A---- C:\Windows\system32\NlsLexicons003e.dll
2009-07-19 16:48:02 ----A---- C:\Windows\system32\NlsLexicons002a.dll
2009-07-19 16:47:58 ----A---- C:\Windows\system32\NlsLexicons001a.dll
2009-07-19 16:47:48 ----A---- C:\Windows\system32\NlsLexicons001b.dll
2009-07-19 16:47:39 ----A---- C:\Windows\system32\NlsLexicons001d.dll
2009-07-19 16:47:28 ----A---- C:\Windows\system32\NlsLexicons000a.dll
2009-07-19 16:47:16 ----A---- C:\Windows\system32\NlsLexicons000c.dll
2009-07-19 16:47:10 ----A---- C:\Windows\system32\NlsLexicons000d.dll
2009-07-19 16:47:05 ----A---- C:\Windows\system32\NlsLexicons000f.dll
2009-07-19 16:46:58 ----A---- C:\Windows\system32\NlsLexicons0414.dll
2009-07-19 16:46:51 ----A---- C:\Windows\system32\NlsLexicons0416.dll
2009-07-19 16:46:44 ----A---- C:\Windows\system32\NlsLexicons0816.dll
2009-07-19 16:46:35 ----A---- C:\Windows\system32\NlsLexicons081a.dll
2009-07-19 16:46:27 ----A---- C:\Windows\system32\NlsModels0011.dll
2009-07-19 16:46:23 ----A---- C:\Windows\system32\NlsData0045.dll
2009-07-19 16:46:22 ----A---- C:\Windows\system32\NlsData0046.dll
2009-07-19 16:46:21 ----A---- C:\Windows\system32\NlsData0047.dll
2009-07-19 16:46:20 ----A---- C:\Windows\system32\NlsData0049.dll
2009-07-19 16:46:20 ----A---- C:\Windows\system32\NlsData0039.dll
2009-07-19 16:46:19 ----A---- C:\Windows\system32\NlsData0021.dll
2009-07-19 16:46:19 ----A---- C:\Windows\system32\NlsData0020.dll
2009-07-19 16:46:18 ----A---- C:\Windows\system32\NlsData0026.dll
2009-07-19 16:46:18 ----A---- C:\Windows\system32\NlsData0024.dll
2009-07-19 16:46:18 ----A---- C:\Windows\system32\NlsData0022.dll
2009-07-19 16:46:17 ----A---- C:\Windows\system32\NlsData0027.dll
2009-07-19 16:46:17 ----A---- C:\Windows\system32\NlsData0010.dll
2009-07-19 16:46:16 ----A---- C:\Windows\system32\NlsData0013.dll
2009-07-19 16:46:16 ----A---- C:\Windows\system32\NlsData0011.dll
2009-07-19 16:46:15 ----A---- C:\Windows\system32\NlsData0018.dll
2009-07-19 16:46:15 ----A---- C:\Windows\system32\NlsData0000.dll
2009-07-19 16:46:14 ----A---- C:\Windows\system32\NlsData0019.dll
2009-07-19 16:46:14 ----A---- C:\Windows\system32\NlsData0002.dll
2009-07-19 16:46:14 ----A---- C:\Windows\system32\NlsData0001.dll
2009-07-19 16:46:13 ----A---- C:\Windows\system32\NlsData0009.dll
2009-07-19 16:46:13 ----A---- C:\Windows\system32\NlsData0007.dll
2009-07-19 16:46:13 ----A---- C:\Windows\system32\NlsData0003.dll
2009-07-19 16:46:12 ----A---- C:\Windows\system32\NlsData004a.dll
2009-07-19 16:46:11 ----A---- C:\Windows\system32\NlsData004e.dll
2009-07-19 16:46:11 ----A---- C:\Windows\system32\NlsData004c.dll
2009-07-19 16:46:11 ----A---- C:\Windows\system32\NlsData004b.dll
2009-07-19 16:46:10 ----A---- C:\Windows\system32\NlsData003e.dll
2009-07-19 16:46:10 ----A---- C:\Windows\system32\NlsData002a.dll
2009-07-19 16:46:09 ----A---- C:\Windows\system32\NlsData001b.dll
2009-07-19 16:46:09 ----A---- C:\Windows\system32\NlsData001a.dll
2009-07-19 16:46:08 ----A---- C:\Windows\system32\NlsData001d.dll
2009-07-19 16:46:07 ----A---- C:\Windows\system32\NlsData000d.dll
2009-07-19 16:46:07 ----A---- C:\Windows\system32\NlsData000c.dll
2009-07-19 16:46:07 ----A---- C:\Windows\system32\NlsData000a.dll
2009-07-19 16:46:06 ----A---- C:\Windows\system32\NlsData000f.dll
2009-07-19 16:46:05 ----A---- C:\Windows\system32\NlsData0416.dll
2009-07-19 16:46:05 ----A---- C:\Windows\system32\NlsData0414.dll
2009-07-19 16:46:04 ----A---- C:\Windows\system32\NlsData081a.dll
2009-07-19 16:46:04 ----A---- C:\Windows\system32\NlsData0816.dll
2009-07-19 16:46:04 ----A---- C:\Windows\system32\NaturalLanguage6.dll
2009-07-19 16:45:54 ----A---- C:\Windows\system32\NlsLexicons0c1a.dll
2009-07-19 16:45:53 ----A---- C:\Windows\system32\NlsData0c1a.dll
2009-07-19 16:45:27 ----D---- C:\Program Files\AVG
2009-07-19 16:44:22 ----A---- C:\Windows\system32\fsquirt.exe
2009-07-19 16:42:52 ----A---- C:\Windows\system32\kbd106n.dll
2009-07-19 16:42:45 ----A---- C:\Windows\system32\winresume.exe
2009-07-19 16:42:45 ----A---- C:\Windows\system32\winload.exe
2009-07-19 16:42:45 ----A---- C:\Windows\system32\srcore.dll
2009-07-19 16:42:45 ----A---- C:\Windows\system32\srclient.dll
2009-07-19 16:42:45 ----A---- C:\Windows\system32\rstrui.exe
2009-07-19 16:42:44 ----A---- C:\Windows\system32\srdelayed.exe
2009-07-19 16:42:44 ----A---- C:\Windows\system32\setbcdlocale.dll
2009-07-19 16:42:44 ----A---- C:\Windows\system32\kd1394.dll
2009-07-19 16:42:43 ----A---- C:\Windows\system32\ci.dll
2009-07-19 16:40:52 ----A---- C:\Windows\system32\rpcss.dll
2009-07-19 16:40:51 ----A---- C:\Windows\system32\ntoskrnl.exe
2009-07-19 16:40:51 ----A---- C:\Windows\system32\ntkrnlpa.exe
2009-07-19 16:40:50 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
2009-07-19 16:40:50 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
2009-07-19 16:40:48 ----A---- C:\Windows\system32\sdohlp.dll
2009-07-19 16:40:48 ----A---- C:\Windows\system32\iasrecst.dll
2009-07-19 16:40:48 ----A---- C:\Windows\system32\iashost.exe
2009-07-19 16:40:48 ----A---- C:\Windows\system32\iasdatastore.dll
2009-07-19 16:40:48 ----A---- C:\Windows\system32\iasads.dll
2009-07-19 16:38:28 ----A---- C:\Windows\system32\secur32.dll
2009-07-19 16:38:28 ----A---- C:\Windows\system32\lsass.exe
2009-07-19 16:38:28 ----A---- C:\Windows\system32\kernel32.dll
2009-07-19 16:38:27 ----A---- C:\Windows\system32\lsasrv.dll
2009-07-19 16:38:26 ----A---- C:\Windows\system32\apilogen.dll
2009-07-19 16:38:26 ----A---- C:\Windows\system32\amxread.dll
2009-07-19 16:36:54 ----A---- C:\Windows\system32\WindowsCodecs.dll
2009-07-19 16:36:54 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
2009-07-19 16:36:53 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
2009-07-19 16:34:57 ----A---- C:\Windows\system32\printcom.dll
2009-07-19 16:34:56 ----A---- C:\Windows\system32\win32spl.dll
2009-07-19 16:34:37 ----A---- C:\Windows\system32\wshrm.dll
2009-07-19 16:32:40 ----A---- C:\Windows\system32\schannel.dll
2009-07-19 16:32:11 ----A---- C:\Windows\system32\rrinstaller.exe
2009-07-19 16:32:11 ----A---- C:\Windows\system32\mfps.dll
2009-07-19 16:32:11 ----A---- C:\Windows\system32\mferror.dll
2009-07-19 16:32:11 ----A---- C:\Windows\system32\mf.dll
2009-07-19 16:32:10 ----A---- C:\Windows\system32\mfpmp.exe
2009-07-19 16:32:09 ----A---- C:\Windows\system32\WMVCORE.DLL
2009-07-19 16:32:09 ----A---- C:\Windows\system32\WMNetMgr.dll
2009-07-19 16:32:09 ----A---- C:\Windows\system32\logagent.exe
2009-07-19 16:31:16 ----A---- C:\Windows\system32\INETRES.dll
2009-07-19 16:31:16 ----A---- C:\Windows\system32\inetcomm.dll
2009-07-19 16:30:47 ----A---- C:\Windows\system32\connect.dll
2009-07-19 16:30:10 ----A---- C:\Windows\system32\rpcrt4.dll
2009-07-19 16:29:42 ----A---- C:\Windows\system32\quartz.dll
2009-07-19 16:28:39 ----D---- C:\Program Files\MSXML 4.0
2009-07-19 16:26:32 ----A---- C:\Windows\system32\msxml6r.dll
2009-07-19 16:26:32 ----A---- C:\Windows\system32\msxml6.dll
2009-07-09 16:07:55 ----D---- C:\Program Files\Microsoft Visual Studio
2009-07-09 16:07:54 ----D---- C:\Program Files\Common Files\DESIGNER
2009-07-09 16:05:48 ----D---- C:\Windows\PCHEALTH
2009-07-09 16:05:48 ----D---- C:\Program Files\Microsoft.NET
2009-07-09 16:00:15 ----D---- C:\Program Files\Microsoft Visual Studio 8
2009-07-09 15:56:41 ----D---- C:\Program Files\Microsoft Office
2009-07-09 15:55:08 ----RHD---- C:\MSOCache
2009-07-09 15:09:30 ----A---- C:\Windows\system32\wups2.dll
2009-07-09 15:09:30 ----A---- C:\Windows\system32\wucltux.dll
2009-07-09 15:09:30 ----A---- C:\Windows\system32\wuaueng.dll
2009-07-09 15:09:30 ----A---- C:\Windows\system32\wuauclt.exe
2009-07-09 15:09:12 ----A---- C:\Windows\system32\wups.dll
2009-07-09 15:09:12 ----A---- C:\Windows\system32\wudriver.dll
2009-07-09 15:09:12 ----A---- C:\Windows\system32\wuapi.dll
2009-07-09 15:08:56 ----A---- C:\Windows\system32\wuwebv.dll
2009-07-09 15:08:56 ----A---- C:\Windows\system32\wuapp.exe
2009-07-09 15:01:59 ----D---- C:\Program Files\NETGEAR
2009-07-09 12:16:16 ----A---- C:\Windows\system32\usbaaplrc.dll
2009-07-08 18:30:01 ----D---- C:\Users\Shota\AppData\Roaming\CyberLink
2009-07-08 18:29:50 ----D---- C:\Users\Shota\AppData\Roaming\HP
2009-07-08 18:07:25 ----D---- C:\Users\Shota\AppData\Roaming\GTek
2009-07-08 18:00:03 ----D---- C:\Users\Shota\AppData\Roaming\Adobe
2009-07-08 17:59:34 ----D---- C:\Users\Shota\AppData\Roaming\Identities
2009-07-08 17:56:18 ----A---- C:\Windows\system32\BtwRSupport.dll
2009-07-08 17:56:09 ----D---- C:\Windows\system32\es-MX
2009-07-08 17:56:09 ----D---- C:\Windows\system32\es-AR
2009-07-08 17:56:07 ----D---- C:\Program Files\WIDCOMM
2009-07-08 17:55:08 ----D---- C:\Program Files\Bioscrypt
2009-07-08 17:55:03 ----RA---- C:\Windows\system32\msvcr70.dll
2009-07-08 17:54:53 ----D---- C:\Program Files\Fingerprint Sensor
2009-07-08 17:52:11 ----D---- C:\Users\Shota\AppData\Roaming\Macromedia
2009-07-08 17:50:50 ----D---- C:\Users\Shota\AppData\Roaming\Hewlett-Packard
2009-07-08 17:48:41 ----SD---- C:\Users\Shota\AppData\Roaming\Microsoft
2009-07-08 17:48:41 ----D---- C:\Users\Shota\AppData\Roaming\Media Center Programs
2009-07-08 17:45:08 ----SHD---- C:\ProgramData\Templates
2009-07-08 17:45:07 ----SHD---- C:\ProgramData\Start Menu
2009-07-08 17:45:07 ----SHD---- C:\ProgramData\Favorites
2009-07-08 17:45:07 ----SHD---- C:\ProgramData\Documents
2009-07-08 17:45:07 ----SHD---- C:\ProgramData\Desktop
2009-07-08 17:45:07 ----SHD---- C:\ProgramData\Application Data
2009-07-08 17:45:07 ----SHD---- C:\Documents and Settings
2009-07-08 17:44:39 ----SHD---- C:\System Volume Information

======List of files/folders modified in the last 1 months======

2009-08-05 18:10:43 ----D---- C:\Windows\Prefetch
2009-08-05 18:10:42 ----D---- C:\Windows\Temp
2009-08-05 10:46:10 ----D---- C:\Windows\Tasks
2009-08-05 10:39:06 ----SHD---- C:\Windows\Installer
2009-08-05 10:04:59 ----D---- C:\Windows\System32
2009-08-05 10:04:59 ----D---- C:\Windows\inf
2009-08-05 10:04:59 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-08-05 09:52:28 ----D---- C:\Windows\SMINST
2009-08-03 15:21:16 ----D---- C:\Program Files\Norton Internet Security
2009-08-03 15:03:51 ----D---- C:\Program Files\Symantec
2009-08-03 15:03:49 ----D---- C:\Windows\system32\drivers
2009-08-03 15:03:34 ----D---- C:\WINDOWS
2009-08-03 15:03:34 ----D---- C:\ProgramData\Symantec
2009-08-03 15:02:49 ----D---- C:\Program Files\Common Files\Symantec Shared
2009-08-03 15:02:08 ----D---- C:\Program Files\Common Files
2009-08-03 14:36:23 ----HD---- C:\ProgramData
2009-08-03 14:29:52 ----RD---- C:\Program Files
2009-08-01 08:39:49 ----D---- C:\Windows\LiveKernelReports
2009-07-30 22:43:55 ----D---- C:\Windows\system32\WDI
2009-07-29 18:36:30 ----D---- C:\Windows\system32\catroot2
2009-07-29 10:29:10 ----D---- C:\Windows\system32\migration
2009-07-29 10:29:09 ----D---- C:\Program Files\Internet Explorer
2009-07-28 23:41:05 ----D---- C:\Windows\winsxs
2009-07-28 21:42:40 ----D---- C:\Windows\Logs
2009-07-28 20:20:18 ----D---- C:\Windows\system32\catroot
2009-07-28 20:14:30 ----D---- C:\Windows\system32\Tasks
2009-07-28 16:46:21 ----D---- C:\Windows\ModemLogs
2009-07-27 22:26:04 ----D---- C:\Windows\system32\RTCOM
2009-07-27 22:24:27 ----A---- C:\Windows\DIFxAPI.dll
2009-07-27 22:24:16 ----D---- C:\Program Files\Realtek
2009-07-27 22:23:46 ----D---- C:\SwSetup
2009-07-27 22:22:15 ----D---- C:\Program Files\Hp
2009-07-27 22:14:18 ----D---- C:\Windows\rescache
2009-07-27 21:50:45 ----D---- C:\Windows\system32\en-US
2009-07-27 21:50:45 ----D---- C:\Windows\PolicyDefinitions
2009-07-26 21:04:09 ----D---- C:\Windows\Microsoft.NET
2009-07-26 21:03:17 ----RSD---- C:\Windows\assembly
2009-07-26 21:00:50 ----SHD---- C:\boot
2009-07-26 21:00:49 ----ASH---- C:\Program Files\desktop.ini
2009-07-26 20:48:29 ----D---- C:\Program Files\Windows Calendar
2009-07-26 20:48:28 ----D---- C:\Program Files\Windows Sidebar
2009-07-26 20:48:28 ----D---- C:\Program Files\Movie Maker
2009-07-26 20:48:25 ----D---- C:\Program Files\Windows Mail
2009-07-26 20:48:19 ----D---- C:\Program Files\Windows Media Player
2009-07-26 20:48:16 ----D---- C:\Program Files\Windows Collaboration
2009-07-26 20:48:14 ----D---- C:\Program Files\Windows Journal
2009-07-26 20:48:12 ----D---- C:\Program Files\Windows Photo Gallery
2009-07-26 20:47:59 ----D---- C:\Program Files\Common Files\System
2009-07-26 20:47:57 ----D---- C:\Program Files\Windows Defender
2009-07-26 20:47:55 ----D---- C:\Windows\servicing
2009-07-26 20:47:53 ----D---- C:\Windows\ehome
2009-07-26 20:47:34 ----D---- C:\Windows\MSAgent
2009-07-26 20:47:29 ----D---- C:\Windows\DigitalLocker
2009-07-26 20:47:28 ----D---- C:\Windows\L2Schemas
2009-07-26 20:47:28 ----D---- C:\Windows\IME
2009-07-26 20:47:26 ----D---- C:\Windows\system32\ko-KR
2009-07-26 20:47:26 ----D---- C:\Windows\system32\da-DK
2009-07-26 20:47:26 ----D---- C:\Windows\system32\com
2009-07-26 20:47:03 ----D---- C:\Windows\system32\de-DE
2009-07-26 20:47:02 ----D---- C:\Windows\system32\it-IT
2009-07-26 20:47:02 ----D---- C:\Windows\system32\el-GR
2009-07-26 20:47:01 ----D---- C:\Windows\system32\oobe
2009-07-26 20:46:59 ----D---- C:\Windows\system32\sysprep
2009-07-26 20:46:40 ----D---- C:\Windows\system32\AdvancedInstallers
2009-07-26 20:46:38 ----D---- C:\Windows\system32\sv-SE
2009-07-26 20:46:38 ----D---- C:\Windows\system32\setup
2009-07-26 20:46:38 ----D---- C:\Windows\system32\ru-RU
2009-07-26 20:46:38 ----D---- C:\Windows\system32\ias
2009-07-26 20:46:38 ----D---- C:\Windows\system32\he-IL
2009-07-26 20:46:38 ----D---- C:\Windows\system32\fr-FR
2009-07-26 20:46:37 ----D---- C:\Windows\system32\fi-FI
2009-07-26 20:46:37 ----D---- C:\Windows\system32\cs-CZ
2009-07-26 20:46:36 ----D---- C:\Windows\system32\SLUI
2009-07-26 20:46:36 ----D---- C:\Windows\system32\pt-PT
2009-07-26 20:46:36 ----D---- C:\Windows\system32\hu-HU
2009-07-26 20:46:30 ----D---- C:\Windows\system32\zh-CN
2009-07-26 20:46:30 ----D---- C:\Windows\system32\manifeststore
2009-07-26 20:46:30 ----D---- C:\Windows\system32\en
2009-07-26 20:46:29 ----D---- C:\Windows\system32\zh-TW
2009-07-26 20:46:29 ----D---- C:\Windows\system32\pl-PL
2009-07-26 20:46:29 ----D---- C:\Windows\system32\es-ES
2009-07-26 20:46:28 ----D---- C:\Windows\system32\ja-JP
2009-07-26 20:46:27 ----D---- C:\Windows\system32\ro-RO
2009-07-26 20:46:16 ----D---- C:\Windows\system32\tr-TR
2009-07-26 20:46:14 ----D---- C:\Windows\system32\wbem
2009-07-26 20:46:05 ----D---- C:\Windows\system32\nl-NL
2009-07-26 20:46:05 ----D---- C:\Windows\system32\nb-NO
2009-07-26 20:46:05 ----D---- C:\Windows\system32\ar-SA
2009-07-26 20:45:54 ----D---- C:\Windows\system32\migwiz
2009-07-26 20:45:48 ----D---- C:\Windows\system32\pt-BR
2009-07-26 20:38:04 ----D---- C:\Windows\AppPatch
2009-07-26 20:37:41 ----D---- C:\Windows\Boot
2009-07-26 20:37:29 ----D---- C:\Windows\system32\Boot
2009-07-26 11:51:47 ----A---- C:\Windows\system32\ifxcardm.dll
2009-07-26 11:51:42 ----A---- C:\Windows\system32\axaltocm.dll
2009-07-25 10:36:23 ----RD---- C:\Users
2009-07-25 10:30:22 ----SHD---- C:\$RECYCLE.BIN
2009-07-23 11:34:46 ----SD---- C:\Windows\Downloaded Program Files
2009-07-22 01:11:35 ----HD---- C:\Program Files\InstallShield Installation Information
2009-07-21 23:32:29 ----D---- C:\Windows\Downloaded Installations
2009-07-21 23:21:07 ----D---- C:\Program Files\Common Files\InstallShield
2009-07-21 21:03:27 ----D---- C:\Program Files\Java
2009-07-21 17:23:06 ----D---- C:\Windows\system32\XPSViewer
2009-07-21 16:44:07 ----D---- C:\Windows\Debug
2009-07-21 00:38:45 ----SD---- C:\ProgramData\Microsoft
2009-07-19 20:47:38 ----D---- C:\Windows\system32\NDF
2009-07-19 18:51:49 ----D---- C:\Windows\system32\ras
2009-07-19 18:51:48 ----D---- C:\Windows\system32\icsxml
2009-07-19 16:25:46 ----D---- C:\Windows\SoftwareDistribution
2009-07-09 16:15:55 ----D---- C:\ProgramData\Microsoft Help
2009-07-09 16:09:23 ----D---- C:\Program Files\Microsoft Works
2009-07-09 16:09:12 ----D---- C:\Program Files\Common Files\microsoft shared
2009-07-09 16:08:57 ----D---- C:\Program Files\MSBuild
2009-07-09 16:07:43 ----D---- C:\Windows\ShellNew
2009-07-09 16:06:33 ----RSD---- C:\Windows\Fonts
2009-07-09 15:58:59 ----A---- C:\Windows\win.ini
2009-07-09 15:29:40 ----D---- C:\Windows\system32\LogFiles
2009-07-08 21:43:37 ----D---- C:\Windows\panther
2009-07-08 18:58:57 ----D---- C:\Program Files\Yahoo!
2009-07-08 18:58:39 ----D---- C:\Program Files\Vongo
2009-07-08 18:29:50 ----D---- C:\ProgramData\HP
2009-07-08 18:00:49 ----D---- C:\ProgramData\Hewlett-Packard
2009-07-08 17:57:10 ----HD---- C:\System.sav
2009-07-08 17:55:28 ----SD---- C:\Windows\system32\Microsoft
2009-07-08 17:52:58 ----D---- C:\Windows\system32\restore
2009-07-08 17:52:32 ----D---- C:\Windows\system
2009-07-07 11:10:56 ----A---- C:\Windows\system32\mrt.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 eabfiltr;eabfiltr; C:\Windows\system32\DRIVERS\eabfiltr.sys [2006-06-28 8192]
R1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2009-06-16 371248]
R1 IDSvix86;Symantec Intrusion Prevention Driver; \??\C:\PROGRA~2\Symantec\DEFINI~1\SymcData\idsdefs\20090730.002\IDSvix86.sys [2009-07-03 272432]
R1 RtlProt;Realtke RtlProt WLAN Utility Protocol Driver; C:\Windows\system32\DRIVERS\rtlprot.sys [2007-04-23 25896]
R1 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys [2007-04-14 418104]
R1 SRTSPX;SRTSPX; C:\Windows\System32\Drivers\SRTSPX.SYS [2007-11-30 43696]
R1 SYMTDI;SYMTDI; C:\Windows\System32\Drivers\SYMTDI.SYS [2008-10-03 187952]
R2 RMCAST;RMCAST (Pgm) Protocol Driver; C:\Windows\system32\DRIVERS\RMCAST.sys [2009-07-19 113664]
R3 ATSWPDRV;AuthenTec TruePrint USB Driver (SwipeSensor); C:\Windows\system32\DRIVERS\ATSwpDrv.sys [2006-10-31 138632]
R3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\DRIVERS\BthEnum.sys [2009-07-19 19456]
R3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2008-01-19 92160]
R3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2009-07-19 29184]
R3 btwaudio;Bluetooth Audio Device Service; C:\Windows\system32\drivers\btwaudio.sys [2007-01-02 78128]
R3 btwavdt;Bluetooth AVDT; C:\Windows\system32\drivers\btwavdt.sys [2007-01-02 80688]
R3 btwrchid;btwrchid; C:\Windows\system32\DRIVERS\btwrchid.sys [2007-01-02 16560]
R3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2008-01-19 14208]
R3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2009-06-16 101936]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2009-03-19 23400]
R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-28 9472]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2007-03-01 1744928]
R3 NAVENG;NAVENG; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20090803.005\NAVENG.SYS [2009-07-15 87888]
R3 NAVEX15;NAVEX15; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20090803.005\NAVEX15.SYS [2009-07-15 875728]
R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm60x32.sys [2006-11-02 429056]
R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2007-02-26 4465184]
R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2007-02-15 12032]
R3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2008-01-19 49664]
R3 RTL8187B;NETGEAR WG111v3 54Mbps Wireless USB 2.0 Adapter Vista Driver; C:\Windows\system32\DRIVERS\wg111v3.sys [2007-12-28 289280]
R3 smserial;smserial; C:\Windows\system32\DRIVERS\smserial.sys [2006-10-09 981504]
R3 SRTSP;SRTSP; C:\Windows\System32\Drivers\SRTSP.SYS [2007-11-30 279088]
R3 SYMDNS;SYMDNS; C:\Windows\System32\Drivers\SYMDNS.SYS [2008-10-03 12848]
R3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2009-08-03 124464]
R3 SYMFW;SYMFW; C:\Windows\System32\Drivers\SYMFW.SYS [2008-10-03 146096]
R3 SYMIDS;SYMIDS; C:\Windows\System32\Drivers\SYMIDS.SYS [2008-10-03 39984]
R3 SYMNDISV;SYMNDISV; C:\Windows\System32\Drivers\SYMNDISV.SYS [2008-10-03 37936]
R3 SYMREDRV;SYMREDRV; C:\Windows\System32\Drivers\SYMREDRV.SYS [2008-10-03 27696]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2007-01-12 181432]
R3 usbvideo;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2008-01-19 134016]
R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2008-01-19 11264]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2007-01-03 534016]
S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2007-01-03 534016]
S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2009-07-19 220160]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-19 5632]
S3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\VSTDPV3.SYS [2006-11-02 987648]
S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-18 1380864]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-19 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-19 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-19 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-19 6016]
S3 SRTSPL;SRTSPL; C:\Windows\System32\Drivers\SRTSPL.SYS [2007-11-30 317616]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys [2009-07-09 39424]
S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\VSTCNXT3.SYS [2006-11-02 654336]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-19 83328]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2009-07-09 144712]
R2 ASBroker;Logon Session Broker; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 ASChannel;Local Communication Channel; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-12-12 238888]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 ccEvtMgr;Symantec Event Manager; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2007-01-10 108648]
R2 ccSetMgr;Symantec Settings Manager; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2007-01-10 108648]
R2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2007-03-28 270431]
R2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe [2007-03-28 118877]
R2 CLTNetCnService;Symantec Lic NetConnect service; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2007-01-10 108648]
R2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2007-03-14 62984]
R2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-02 135168]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-12-14 61440]
R2 LiveUpdate Notice Ex;LiveUpdate Notice Service Ex; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2007-01-10 108648]
R2 SymAppCore;Symantec AppCore Service; c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe [2007-01-05 47712]
R2 Viewpoint Manager Service;Viewpoint Manager Service; C:\Program Files\Viewpoint\Common\ViewpointService.exe [2007-01-04 24652]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2009-07-13 542496]
R3 Symantec Core LC;Symantec Core LC; C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe [2009-08-03 1251720]
S2 gupdate1ca0b192adaaab0;Google Update Service (gupdate1ca0b192adaaab0); C:\Program Files\Google\Update\GoogleUpdate.exe [2009-07-22 133104]
S2 gusvc;Google Software Updater; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2009-07-22 190448]
S2 LiveUpdate Notice Service;LiveUpdate Notice Service; C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]
S3 AddFiltr;AddFiltr; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe [2006-06-26 126976]
S3 comHost;COM Host; c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe [2007-01-13 49248]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 ISPwdSvc;Symantec IS Password Validation; c:\Program Files\Norton Internet Security\isPwdSvc.exe [2007-01-14 80504]
S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2007-09-12 2999664]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe [2006-10-27 65824]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-26 441136]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-02-12 880640]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2007-02-17 74656]
S3 usprserv;User Privilege Service; C:\Windows\System32\svchost.exe [2008-01-19 21504]

-----------------EOF-----------------
LOL =)
Regular Member
 
Posts: 34
Joined: July 30th, 2008, 4:23 am
Location: on your mind

Re: Having trouble using my laptop!

Unread postby LOL =) » August 5th, 2009, 6:31 pm

info.txt logfile of random's system information tool 1.06 2009-08-05 18:10:58

======Uninstall list======

-->"C:\Program Files\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
-->"C:\Program Files\HP Games\Blackhawk Striker 2\Uninstall.exe"
-->"C:\Program Files\HP Games\Blasterball 3\Uninstall.exe"
-->"C:\Program Files\HP Games\Bookworm Deluxe\Uninstall.exe"
-->"C:\Program Files\HP Games\Bounce Symphony\Uninstall.exe"
-->"C:\Program Files\HP Games\Cake Mania\Uninstall.exe"
-->"C:\Program Files\HP Games\Chuzzle Deluxe\Uninstall.exe"
-->"C:\Program Files\HP Games\Crystal Maze\Uninstall.exe"
-->"C:\Program Files\HP Games\Diner Dash\Uninstall.exe"
-->"C:\Program Files\HP Games\Family Feud\Uninstall.exe"
-->"C:\Program Files\HP Games\FATE\Uninstall.exe"
-->"C:\Program Files\HP Games\Final Drive Fury\Uninstall.exe"
-->"C:\Program Files\HP Games\Flip Words\Uninstall.exe"
-->"C:\Program Files\HP Games\Insaniquarium Deluxe\Uninstall.exe"
-->"C:\Program Files\HP Games\Jewel Quest\Uninstall.exe"
-->"C:\Program Files\HP Games\Lemonade Tycoon 2\Uninstall.exe"
-->"C:\Program Files\HP Games\Mah Jong Quest\Uninstall.exe"
-->"C:\Program Files\HP Games\My HP Game Console\Uninstall.exe"
-->"C:\Program Files\HP Games\Otto\Uninstall.exe"
-->"C:\Program Files\HP Games\Penguins!\Uninstall.exe"
-->"C:\Program Files\HP Games\Phoenix Assault\Uninstall.exe"
-->"C:\Program Files\HP Games\Polar Bowler\Uninstall.exe"
-->"C:\Program Files\HP Games\Polar Golfer\Uninstall.exe"
-->"C:\Program Files\HP Games\Puzzle Express\Uninstall.exe"
-->"C:\Program Files\HP Games\SCRABBLE\Uninstall.exe"
-->"C:\Program Files\HP Games\Snowboard SuperJam\Uninstall.exe"
-->"C:\Program Files\HP Games\SpongeBob SquarePants Krabby Quest\Uninstall.exe"
-->"C:\Program Files\HP Games\Super Granny\Uninstall.exe"
-->"C:\Program Files\HP Games\Tradewinds\Uninstall.exe"
-->"C:\Program Files\HP Games\Wheel of Fortune\Uninstall.exe"
-->"C:\Program Files\HP Games\Zuma Deluxe\Uninstall.exe"
ActiveCheck component for HP Active Support Library-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Flash Player 10 Plugin-->C:\Windows\system32\Macromed\Flash\uninstall_plugin.exe
Adobe Flash Player 9 ActiveX-->C:\Windows\system32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
Adobe Reader 8-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A80000000002}
AIM 6-->C:\Program Files\AIM6\uninst.exe
Aim Plugin for QQ Games-->C:\Program Files\Tencent\QQ Games\Plugin\Uninstall.EXE
AIM Toolbar-->"C:\Program Files\AIM Toolbar\uninstall.exe"
AIMTunes-->C:\Program Files\AIMTunes\Uninstall.exe
AppCore-->MsiExec.exe /I{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B}
Apple Mobile Device Support-->MsiExec.exe /I{C337BDAF-CB4E-47E2-BE1A-CB31BB7DD0E3}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
AuthenTec Fingerprint Sensor Minimum Install-->MsiExec.exe /I{55CABB2F-4513-4FF1-B912-B45F93FC5B01}
AV-->MsiExec.exe /I{F4DB525F-A986-4249-B98B-42A8066251CA}
Bonjour-->MsiExec.exe /I{07287123-B8AC-41CE-8346-3D777245C35B}
ccCommon-->MsiExec.exe /I{3CCAD2EF-CFF2-4637-82AA-AABF370282D3}
Download Updater (AOL LLC)-->C:\Program Files\Common Files\Software Update Utility\uninstall.exe
ESU for Microsoft Vista-->MsiExec.exe /X{88A548E6-4B09-43E7-AD55-3C7D1B37706D}
Google Earth-->MsiExec.exe /X{CC016F21-3970-11DE-B878-005056806466}
Google Update Helper-->MsiExec.exe /I{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}
Google Updater-->"C:\Program Files\Google\Google Updater\GoogleUpdater.exe" -uninstall
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall /qb+ REBOOTPROMPT=""
Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {A7EEA2F2-BFCD-4A54-A575-7B81A786E658} /qb+ REBOOTPROMPT=""
HP Active Support Library 32 bit components-->MsiExec.exe /I{FAB0C302-CB18-4A7A-BA03-C3DC23101A68}
HP Active Support Library-->C:\Program Files\InstallShield Installation Information\{290B83AA-093A-45BF-A917-D1C4A1E8D917}\setup.exe -runfromtemp -l0x0409
HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB5E289E-76BF-4251-9F3F-9B763F681AE0}\setup.exe" -l0x9 -removeonly
HP Easy Setup - Frontend-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40F7AED3-0C7D-4582-99F6-484A515C73F2}\setup.exe" -l0x9 -removeonly
HP Help and Support-->MsiExec.exe /I{9061CEF2-51F5-42C9-8A70-9ED351C6597A}
HP Integrated Module with Bluetooth wireless technology-->MsiExec.exe /X{A13E07E1-A423-44FB-9DEE-B24C75C1BAF2}
HP Pavilion Webcam Driver for Vista v061.001.00005-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5CA81D12-9EC2-4082-972B-43ECA63F41F2}\setup.exe" -l0x9 -removeonly
HP Photosmart Essential 2.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
HP Quick Launch Buttons 6.10 B9-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe" -l0x9 uninst
HP QuickPlay 3.2-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{45D707E9-F3C4-11D9-A373-0050BAE317E1}\setup.exe" -uninstall
HP Total Care Advisor-->MsiExec.exe /X{F6B29003-A078-4491-AFBE-62EFB6CFFE19}
HP Update-->MsiExec.exe /X{25771101-7948-4591-ABF3-B1ECE7A7F45F}
HP User Guides 0034-->MsiExec.exe /I{1B210DDA-6402-47F6-8CE4-BB8BB19809B9}
HP Wireless Assistant-->MsiExec.exe /I{D32067CD-7409-4792-BFA0-1469BCD8F0C8}
HPAsset component for HP Active Support Library-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
HPNetworkAssistant-->MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
iPod for Windows 2005-09-23-->C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{D4936AAF-FFD0-44A1-A7EA-A2DB41CEB5BC} /l1033
iTunes-->MsiExec.exe /I{99ECF41F-5CCA-42BD-B8B8-A8333E2E2944}
Java(TM) 6 Update 14-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F83216014FF}
Java(TM) SE Runtime Environment 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
LiveUpdate 3.2 (Symantec Corporation)-->"C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U
LiveUpdate Notice (Symantec Corporation)-->MsiExec.exe /X{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}
Microsoft .NET Framework 3.5 SP1-->c:\Windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
Microsoft .NET Framework 3.5 SP1-->MsiExec.exe /I{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Enterprise 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall ENTERPRISE /dll OSETUP.DLL
Microsoft Office Enterprise 2007-->MsiExec.exe /X{90120000-0030-0000-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Groove MUI (English) 2007-->MsiExec.exe /X{90120000-00BA-0409-0000-0000000FF1CE}
Microsoft Office Groove Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0114-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft VC9 runtime libraries-->MsiExec.exe /I{C4124E95-5061-4776-8D5D-E3D931C778E1}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Motorola SM56 Data Fax Modem-->rundll32.exe sm56co6a.dll,SM56UnInstaller
Mozilla Firefox (3.5.2)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MSCU for Microsoft Vista-->MsiExec.exe /I{F7F3B252-E772-48AA-93EB-7964BC326067}
MSRedist-->MsiExec.exe /I{B7C61755-DB48-4003-948F-3D34DB8EAF69}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
muvee autoProducer 6.0-->C:\Program Files\InstallShield Installation Information\{0BFC200F-C45D-4271-AF34-4CA969225DEB}\setup.exe -runfromtemp -l0x0009 -removeonly
My HP Games-->"C:\Program Files\HP Games\Uninstall.exe"
NETGEAR WG111v3 wireless USB 2.0 adapter-->C:\Program Files\InstallShield Installation Information\{5396FBD8-8BD7-47F9-92AE-F62F13D5A11D}\setup.exe -runfromtemp -l0x0409
Norton AntiVirus-->MsiExec.exe /X{830D8CBD-C668-49e2-A969-C2C2106332E0}
Norton Confidential Browser Component-->MsiExec.exe /I{4843B611-8FCB-4428-8C23-31D0A5EAE164}
Norton Confidential Web Protection Component-->MsiExec.exe /I{D353CC51-430D-4C6F-9B7E-52003DA1E05A}
Norton Internet Security (Symantec Corporation)-->"C:\Program Files\Common Files\Symantec Shared\SymSetup\{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}_10_2_0_30\{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}.exe" /X
Norton Internet Security-->MsiExec.exe /I{3672B097-EA69-4bfe-B92F-29AE6D9D2B34}
Norton Internet Security-->MsiExec.exe /I{48185814-A224-447A-81DA-71BD20580E1B}
Norton Internet Security-->MsiExec.exe /I{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}
Norton Internet Security-->MsiExec.exe /I{E3EFA461-EB83-4C3B-9C47-2C1D58A01555}
Norton Internet Security-->MsiExec.exe /I{E5EE9939-259F-4DE2-8023-5C49E16A4F43}
Norton Protection Center-->MsiExec.exe /I{9A129ABC-A53A-4209-A21E-D5DEDFB7CCA8}
NVIDIA Drivers-->C:\Windows\system32\NVUNINST.EXE UninstallGUI
QQ Games-->C:\Program Files\Tencent\QQ Games\Uninstall.EXE
QuickTime-->MsiExec.exe /I{C78EAC6F-7A73-452E-8134-DBB2165C5A68}
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -l0x9 -removeonly
Rhapsody Player Engine-->MsiExec.exe /I{2DFF31F9-7893-4922-AF66-C9A1EB4EBB31}
Roxio Activation Module-->MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}
Roxio Creator Audio-->MsiExec.exe /I{83FFCFC7-88C6-41c6-8752-958A45325C82}
Roxio Creator Basic v9-->MsiExec.exe /I{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}
Roxio Creator Copy-->MsiExec.exe /I{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}
Roxio Creator Data-->MsiExec.exe /I{0D397393-9B50-4c52-84D5-77E344289F87}
Roxio Creator EasyArchive-->MsiExec.exe /I{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}
Roxio Creator Tools-->MsiExec.exe /I{0394CDC8-FABD-4ed8-B104-03393876DFDF}
Roxio Express Labeler 3-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Roxio MyDVD Basic v9-->MsiExec.exe /I{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72}
Shaiya(US)-->C:\Program Files\InstallShield Installation Information\{9BBB19C0-1FE1-4A4E-B25F-C9E1B0497EC5}\setup.exe -runfromtemp -l0x0009 -removeonly
SPBBC 32bit-->MsiExec.exe /I{77772678-817F-4401-9301-ED1D01A8DA56}
Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Update for Microsoft .NET Framework 3.5 SP1 (KB963707)-->C:\Windows\system32\msiexec.exe /package {CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9} /uninstall {B2AE9C82-DC7B-3641-BFC8-87275C4F3607} /qb+ REBOOTPROMPT=""
VeriSoft Access Manager-->rundll32.exe "c:\Program Files\Bioscrypt\VeriSoft\Bin\SetupHelper.dll",ExecMain /Uninstall {D83899AB-9964-4CFC-A246-F1BD430A455F}
Viewpoint Media Player-->C:\Program Files\Viewpoint\Viewpoint Media Player\mtsAxInstaller.exe /u
Windows Media Player Firefox Plugin-->MsiExec.exe /I{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}

======Security center information======

AV: Norton Internet Security
FW: Norton Internet Security
AS: Windows Defender
AS: Norton Internet Security

======System event log======

Computer Name: Shota-PC
Event Code: 1003
Message: Your computer was not able to renew its address from the network (from the DHCP Server) for the Network Card with network address 001E2AD24B36. The following error occurred:
The semaphore timeout period has expired.. Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.
Record Number: 43645
Source Name: Microsoft-Windows-Dhcp-Client
Time Written: 20090805135402.000000-000
Event Type: Warning
User:

Computer Name: Shota-PC
Event Code: 7
Message: The speed of processor 1 is being limited by system firmware. The processor has been in this reduced performance state for 71 seconds since the last report.
Record Number: 43672
Source Name: Microsoft-Windows-Kernel-Processor-Power
Time Written: 20090805141150.077460-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: Shota-PC
Event Code: 7
Message: The speed of processor 0 is being limited by system firmware. The processor has been in this reduced performance state for 71 seconds since the last report.
Record Number: 43673
Source Name: Microsoft-Windows-Kernel-Processor-Power
Time Written: 20090805141150.077460-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: Shota-PC
Event Code: 1003
Message: Your computer was not able to renew its address from the network (from the DHCP Server) for the Network Card with network address 001E2AD24B36. The following error occurred:
The semaphore timeout period has expired.. Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.
Record Number: 43703
Source Name: Microsoft-Windows-Dhcp-Client
Time Written: 20090805164911.000000-000
Event Type: Warning
User:

Computer Name: Shota-PC
Event Code: 1003
Message: Your computer was not able to renew its address from the network (from the DHCP Server) for the Network Card with network address 001E2AD24B36. The following error occurred:
The operation was canceled by the user.. Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.
Record Number: 43742
Source Name: Microsoft-Windows-Dhcp-Client
Time Written: 20090805220820.000000-000
Event Type: Warning
User:

=====Application event log=====

Computer Name: Shota-PC
Event Code: 1530
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

DETAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-4164504388-3128284463-414013840-1000_Classes:
Process 996 (\Device\HarddiskVolume1\WINDOWS\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-4164504388-3128284463-414013840-1000_CLASSES

Record Number: 3645
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20090803191616.000000-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: Shota-PC
Event Code: 1000
Message: Faulting application chrome.exe, version 0.0.0.0, time stamp 0x4a6a3dc9, faulting module unknown, version 0.0.0.0, time stamp 0x00000000, exception code 0xc0000005, fault offset 0x09d87562, process id 0xc28, application start time 0x01ca156db4e27130.
Record Number: 3812
Source Name: Application Error
Time Written: 20090805030753.000000-000
Event Type: Error
User:

Computer Name: Shota-PC
Event Code: 1530
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

DETAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-4164504388-3128284463-414013840-1000:
Process 1012 (\Device\HarddiskVolume1\WINDOWS\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-4164504388-3128284463-414013840-1000

Record Number: 3818
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20090805040229.000000-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: Shota-PC
Event Code: 1530
Message: Windows detected your registry file is still in use by other applications or services. The file will be unloaded now. The applications or services that hold your registry file may not function properly afterwards.

DETAIL -
1 user registry handles leaked from \Registry\User\S-1-5-21-4164504388-3128284463-414013840-1000_Classes:
Process 1012 (\Device\HarddiskVolume1\WINDOWS\System32\svchost.exe) has opened key \REGISTRY\USER\S-1-5-21-4164504388-3128284463-414013840-1000_CLASSES

Record Number: 3819
Source Name: Microsoft-Windows-User Profiles Service
Time Written: 20090805040229.000000-000
Event Type: Warning
User: NT AUTHORITY\SYSTEM

Computer Name: Shota-PC
Event Code: 20
Message:
Record Number: 3867
Source Name: Google Update
Time Written: 20090805135815.000000-000
Event Type: Error
User: Shota-PC\Shota

=====Security event log=====

Computer Name: Shota-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume1\WINDOWS\System32\drivers\tcpip.sys
Record Number: 9004
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090805221051.523000-000
Event Type: Audit Failure
User:

Computer Name: Shota-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume1\WINDOWS\System32\drivers\tcpip.sys
Record Number: 9005
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090805221051.555000-000
Event Type: Audit Failure
User:

Computer Name: Shota-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume1\WINDOWS\System32\drivers\tcpip.sys
Record Number: 9006
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090805221051.584000-000
Event Type: Audit Failure
User:

Computer Name: Shota-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume1\WINDOWS\System32\drivers\tcpip.sys
Record Number: 9007
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090805221051.614000-000
Event Type: Audit Failure
User:

Computer Name: Shota-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume1\WINDOWS\System32\drivers\tcpip.sys
Record Number: 9008
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090805221051.645000-000
Event Type: Audit Failure
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;c:\Program Files\Bioscrypt\VeriSoft\bin;C:\Program Files\QuickTime\QTSystem\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 104 Stepping 1, AuthenticAMD
"PROCESSOR_REVISION"=6801
"NUMBER_OF_PROCESSORS"=2
"PLATFORM"=MCD
"PCBRAND"=Pavilion
"OnlineServices"=Online Services
"RoxioCentral"=C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\
"USERPART"=E:
"CLASSPATH"=.;C:\Program Files\Java\jre6\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre6\lib\ext\QTJava.zip

-----------------EOF-----------------
LOL =)
Regular Member
 
Posts: 34
Joined: July 30th, 2008, 4:23 am
Location: on your mind

Re: Having trouble using my laptop!

Unread postby Cypher » August 6th, 2009, 4:00 pm

Hi LOL =)
It will take me a while to review your logs but i will get back to you as soon as possible.
User avatar
Cypher
Admin/Teacher
Admin/Teacher
 
Posts: 15148
Joined: October 29th, 2008, 12:49 pm
Location: Land Of The Leprechauns

Re: Having trouble using my laptop!

Unread postby Cypher » August 7th, 2009, 4:13 pm

Hi LOL =)

Malwarebytes' Anti-Malware

Please download Malwarebytes' Anti-Malware to your desktop.

  • Double-click mbam-setup.exe and follow the prompts to install the program.
  • At the end, be sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select Perform full scan, then click Scan.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Checked (tick) all items except items in the C:\System Volume Information folder, and click Remove Selected.
  • When completed, a log will open in Notepad. Please save it to a convenient location.
  • The log can also be found here:
    C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt
  • Post that log back here.

Next

GMER
Please download GMER by GMER. An alternate download site.
  1. Unzip it to a folder on your desktop.
  2. Double click on gmer.exe to execute.
    If asked, allow the gmer.sys driver load.
  3. If you get a warning prompt about rootkit activity ... asking if you want to run Scan, click OK.
  4. If you don't get a warning then...
    • Click the Rootkit/Malware tab at the top of the GMER window.
    • Click the Scan button.
  5. Once the scan has finished... click Copy. ... Do not close the GMER window yet...
  6. Open Notepad and paste what you copied. Ctrl+V
  7. Select "Save As" in Notepad...saving the file to your desktop as "gmerroot.txt"... then close Notepad.

    In the GMER window...
  8. Click on the >>> tab at the top of the GMER window.
    This displays the rest of the "selection" tabs for you.
  9. Click on the Autostart tab.
  10. Click on Scan button.
  11. Once the scan has finished... click Copy.
  12. Open Notepad (again) and paste what you copied. Ctrl+V
  13. Select "Save As" in Notepad...saving the file to your desktop as "gmerauto.txt"
  14. Copy and paste the contents of the files gmerroot.txt and gmerauto.txt in you next reply.

In your next reply.

1. Malwarebytes log.
2. gmerauto.txt log and gmerroot.txt log.
User avatar
Cypher
Admin/Teacher
Admin/Teacher
 
Posts: 15148
Joined: October 29th, 2008, 12:49 pm
Location: Land Of The Leprechauns

Re: Having trouble using my laptop!

Unread postby LOL =) » August 9th, 2009, 10:09 am

Malwarebytes' Anti-Malware 1.40
Database version: 2584
Windows 6.0.6002 Service Pack 2

8/9/2009 10:00:45 AM
mbam-log-2009-08-09 (10-00-45).txt

Scan type: Full Scan (D:\|E:\|)
Objects scanned: 83106
Time elapsed: 2 minute(s), 6 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)
LOL =)
Regular Member
 
Posts: 34
Joined: July 30th, 2008, 4:23 am
Location: on your mind

Re: Having trouble using my laptop!

Unread postby Cypher » August 9th, 2009, 11:54 am

Hi LOL =)

Please run Malwarebytes' Anti-Malware again.

Select Perform Full Scan then click Scan.
When asked to select the drives to scan, Tick all the drives and click on the Start Scan button.

Also could you please posts the gmerauto.txt and gmerroot.txt logs.

In your next reply.

1. Malwarebytes log.
2. gmerauto.txt log and gmerroot.txt log.
User avatar
Cypher
Admin/Teacher
Admin/Teacher
 
Posts: 15148
Joined: October 29th, 2008, 12:49 pm
Location: Land Of The Leprechauns

Re: Having trouble using my laptop!

Unread postby LOL =) » August 9th, 2009, 5:03 pm

Every time i scan using gmer, my computer shuts down after showing the blue screen of death.
LOL =)
Regular Member
 
Posts: 34
Joined: July 30th, 2008, 4:23 am
Location: on your mind

Re: Having trouble using my laptop!

Unread postby LOL =) » August 9th, 2009, 8:40 pm

Malwarebytes' Anti-Malware 1.40
Database version: 2584
Windows 6.0.6002 Service Pack 2

8/9/2009 8:39:31 PM
mbam-log-2009-08-09 (20-39-31).txt

Scan type: Full Scan (C:\|D:\|E:\|)
Objects scanned: 252673
Time elapsed: 1 hour(s), 31 minute(s), 57 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)
LOL =)
Regular Member
 
Posts: 34
Joined: July 30th, 2008, 4:23 am
Location: on your mind

Re: Having trouble using my laptop!

Unread postby Cypher » August 10th, 2009, 6:55 am

Hi LOL =)

This should work :)


Right click on gmer.exe and select Run as adminstrator to execute.
If asked, allow the gmer.sys driver load.
If you get a warning prompt about rootkit activity ... asking if you want to run Scan, click OK.
If you don't get a warning then...
  • Click the Rootkit/Malware tab at the top of the GMER window.
  • In the right Panel Uncheck Devices
  • Click the Scan button.
Once the scan has finished... click Copy. ... Do not close the GMER window yet...
Open Notepad and paste what you copied. Ctrl+V
Select "Save As" in Notepad...saving the file to your desktop as "gmerroot.txt"... then close Notepad.

In the GMER window...
Click on the >>> tab at the top of the GMER window.
This displays the rest of the "selection" tabs for you.
Click on the Autostart tab.
Click on Scan button.
Once the scan has finished... click Copy.
Open Notepad (again) and paste what you copied. Ctrl+V
Select "Save As" in Notepad...saving the file to your desktop as "gmerauto.txt"
Copy and paste the contents of the files gmerroot.txt and gmerauto.txt in you next reply.[/list]

In your next reply.

1. gmerauto.txt log and gmerroot.txt log.
User avatar
Cypher
Admin/Teacher
Admin/Teacher
 
Posts: 15148
Joined: October 29th, 2008, 12:49 pm
Location: Land Of The Leprechauns
Advertisement
Register to Remove

Next

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 378 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware