Logfile of random's system information tool 1.05 (written by random/random) Run by [removed] at 2009-03-12 21:43:56 Microsoft� Windows Vista� Home Premium System drive C: has 371 GB (78%) free of 477 GB Total RAM: 2047 MB (75% free) Logfile of Trend Micro HijackThis v2.0.2 Scan saved at 21:44:04, on 12/03/2009 Platform: Windows Vista (WinNT 6.00.1904) MSIE: Internet Explorer v7.00 (7.00.6000.16809) Boot mode: Normal Running processes: C:\Windows\system32\Dwm.exe C:\Windows\Explorer.EXE C:\Windows\system32\taskeng.exe C:\Program Files\Windows Defender\MSASCui.exe C:\Windows\SOUNDMAN.EXE C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe C:\Windows\System32\rundll32.exe C:\Program Files\Windows Live\Messenger\msnmsgr.exe C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe C:\Program Files\Windows Media Player\wmpnscfg.exe C:\Program Files\Logitech\SetPoint\SetPoint.exe C:\Program Files\Common Files\Logishrd\KHAL2\KHALMNPR.EXE C:\Windows\System32\mobsync.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Windows\system32\SearchFilterHost.exe C:\Windows\system32\wuauclt.exe C:\Users\Angus\Desktop\RSIT.exe C:\Program Files\Trend Micro\HijackThis\Angus.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = O1 - Hosts: ::1 localhost O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe" O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe O4 - HKLM\..\Run: [avgnt] "C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe" /min O4 - HKLM\..\Run: [TrojanScanner] C:\Program Files\Trojan Remover\Trjscan.exe /boot O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE O4 - HKLM\..\Run: [NBKeyScan] "C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe" O4 - HKCU\..\Run: [EPSON Stylus Photo 1400 Series] C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBUE.EXE /FU "C:\Windows\TEMP\E_SB413.tmp" /EF "HKCU" O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe" ASO-616B5711-6DAE-4795-A05F-39A1E5104020 O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE') O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE') O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe O13 - Gopher Prefix: O16 - DPF: {56762DEC-6B0D-4AB4-A8AD-989993B5D08B} (OnlineScanner Control) - http://www.eset.eu/buxus/docs/OnlineScanner.cab O23 - Service: Avira AntiVir Personal - Free Antivirus Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe O23 - Service: Avira AntiVir Personal - Free Antivirus Guard (AntiVirService) - Avira GmbH - C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe O23 - Service: Nero BackItUp Scheduler 3 - Nero AG - C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe O23 - Service: NMIndexingService - Nero AG - C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe O23 - Service: PLFlash DeviceIoControl Service - Prolific Technology Inc. - C:\Windows\system32\IoctlSvc.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe O23 - Service: Spyware Terminator Realtime Shield Service (sp_rssrv) - Crawler.com - C:\Program Files\Spyware Terminator\sp_rsser.exe -- End of file - 4706 bytes ======Scheduled tasks folder====== C:\Windows\tasks\Ad-Aware Update (Weekly).job ======Registry dump====== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}] Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}] Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22 408448] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run] "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2009-03-09 1006264] "SoundMan"=C:\Windows\SOUNDMAN.EXE [2007-03-09 598016] "Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-10-15 39792] "Ad-Watch"=C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe [2009-01-18 506712] "avgnt"=C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgnt.exe [2008-06-12 266497] "TrojanScanner"=C:\Program Files\Trojan Remover\Trjscan.exe [2009-03-07 1303432] "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2009-02-18 13683232] "NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2009-02-18 92704] "Kernel and Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2008-12-18 76304] "NBKeyScan"=C:\Program Files\Nero\Nero8\Nero BackItUp\NBKeyScan.exe [2008-12-02 2221352] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "EPSON Stylus Photo 1400 Series"=C:\Windows\system32\spool\DRIVERS\W32X86\3\E_FATIBUE.EXE [2006-07-04 139264] "msnmsgr"=C:\Program Files\Windows Live\Messenger\msnmsgr.exe [2009-02-06 3885408] "IndxStoreSvr_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}"=C:\Program Files\Common Files\Nero\Lib\NMIndexStoreSvr.exe [2008-12-12 1840424] "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2006-11-02 201728] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Lavasoft Ad-Aware Service] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System] "EnableLUA"=0 "dontdisplaylastusername"=0 "legalnoticecaption"= "legalnoticetext"= "shutdownwithoutlogon"=1 "undockwithoutlogon"=1 [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list] [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list] [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\I] shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL I:\RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com l:\ shell\Open\command - I:\RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com l:\ [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\J] shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL J:\RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com d:\ shell\Open\command - J:\RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com d:\ [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\K] shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com m:\ shell\Open\command - RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com m:\ [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{af6d5dbe-0ced-11de-96f7-806e6f6e6963}] shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL I:\RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com l:\ shell\Open\command - I:\RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com l:\ [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{af6d5dbf-0ced-11de-96f7-806e6f6e6963}] shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL J:\RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com d:\ shell\Open\command - J:\RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com d:\ [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{af6d5dc0-0ced-11de-96f7-806e6f6e6963}] shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com m:\ shell\Open\command - RECYCLER\S-8-8-87-100000221-100007090-100025092-4445.com m:\ ======List of files/folders created in the last 1 months====== 2009-03-12 21:43:56 ----D---- C:\rsit 2009-03-12 09:19:21 ----A---- C:\Windows\system32\ShellManager310E2D762.dll 2009-03-11 21:18:22 ----D---- C:\Program Files\EsetOnlineScanner 2009-03-11 20:51:20 ----D---- C:\Users\Angus\AppData\Roaming\Malwarebytes 2009-03-11 20:51:15 ----D---- C:\ProgramData\Malwarebytes 2009-03-11 20:51:15 ----D---- C:\Program Files\Malwarebytes' Anti-Malware 2009-03-11 20:47:28 ----D---- C:\Users\Angus\AppData\Roaming\Nero 2009-03-11 20:47:03 ----A---- C:\Windows\system32\MsiExec.exe.log 2009-03-11 20:43:42 ----D---- C:\ProgramData\Nero 2009-03-11 20:43:42 ----D---- C:\Program Files\Nero 2009-03-11 20:43:42 ----D---- C:\Program Files\Common Files\Nero 2009-03-11 09:39:48 ----D---- C:\ProgramData\LogiShrd 2009-03-11 09:38:38 ----A---- C:\Windows\system32\BtCoreIf.dll 2009-03-11 09:38:35 ----A---- C:\Windows\system32\KemXML.dll 2009-03-11 09:38:35 ----A---- C:\Windows\system32\KemWnd.dll 2009-03-11 09:38:35 ----A---- C:\Windows\system32\KemUtil.dll 2009-03-11 09:38:35 ----A---- C:\Windows\system32\kemutb.dll 2009-03-11 09:38:14 ----D---- C:\ProgramData\Logitech 2009-03-11 09:38:09 ----D---- C:\Program Files\Common Files\Logishrd 2009-03-11 08:30:39 ----A---- C:\rapport1.txt 2009-03-11 08:29:05 ----A---- C:\Users\Angus\AppData\Roaming\SetValue.bat 2009-03-11 08:29:05 ----A---- C:\Users\Angus\AppData\Roaming\GetValue.vbs 2009-03-10 22:28:55 ----A---- C:\Windows\system32\wmp.dll 2009-03-10 22:28:54 ----A---- C:\Windows\system32\wmploc.DLL 2009-03-10 22:28:54 ----A---- C:\Windows\system32\spwmp.dll 2009-03-10 22:28:54 ----A---- C:\Windows\system32\dxmasf.dll 2009-03-10 22:28:50 ----A---- C:\Windows\system32\schannel.dll 2009-03-10 22:27:56 ----A---- C:\Windows\system32\tmp.txt 2009-03-10 22:27:54 ----A---- C:\rapport.txt 2009-03-10 19:27:53 ----D---- C:\ProgramData\NVIDIA 2009-03-10 19:20:22 ----A---- C:\Windows\system32\NVUNINST.EXE 2009-03-10 19:20:05 ----D---- C:\NVIDIA 2009-03-10 18:29:24 ----D---- C:\Program Files\Microsoft 2009-03-10 18:29:05 ----D---- C:\Program Files\Windows Live SkyDrive 2009-03-10 18:28:49 ----D---- C:\Program Files\Windows Live 2009-03-10 18:28:32 ----D---- C:\Windows\PCHEALTH 2009-03-10 18:25:21 ----D---- C:\Program Files\Common Files\Windows Live 2009-03-10 17:36:02 ----AD---- C:\ProgramData\TEMP 2009-03-10 17:35:14 ----A---- C:\Windows\system32\ztvunrar36.dll 2009-03-10 17:35:14 ----A---- C:\Windows\system32\ztvunace26.dll 2009-03-10 17:35:13 ----A---- C:\Windows\system32\ztvcabinet.dll 2009-03-10 17:35:13 ----A---- C:\Windows\system32\UNRAR3.dll 2009-03-10 17:35:13 ----A---- C:\Windows\system32\unacev2.dll 2009-03-10 17:35:12 ----D---- C:\Users\Angus\AppData\Roaming\Simply Super Software 2009-03-10 17:35:12 ----D---- C:\ProgramData\Simply Super Software 2009-03-10 17:35:12 ----D---- C:\Program Files\Trojan Remover 2009-03-10 17:23:16 ----D---- C:\ProgramData\Avira 2009-03-10 17:23:16 ----D---- C:\Program Files\Avira 2009-03-10 15:21:53 ----A---- C:\Windows\WININIT.INI 2009-03-10 15:20:03 ----D---- C:\Program Files\Trend Micro 2009-03-10 15:02:10 ----A---- C:\Windows\system32\lsdelete.exe 2009-03-10 14:56:31 ----D---- C:\Users\Angus\AppData\Roaming\Spyware Terminator 2009-03-10 14:56:31 ----D---- C:\ProgramData\Spyware Terminator 2009-03-10 14:56:29 ----D---- C:\Program Files\Spyware Terminator 2009-03-10 14:52:39 ----DC---- C:\Windows\system32\DRVSTORE 2009-03-10 14:52:20 ----HDC---- C:\ProgramData\{83C91755-2546-441D-AC40-9A6B4B860800} 2009-03-10 14:52:09 ----D---- C:\ProgramData\Lavasoft 2009-03-10 14:52:09 ----D---- C:\Program Files\Lavasoft 2009-03-10 10:37:43 ----A---- C:\Windows\system32\XAudio2_1.dll 2009-03-10 10:37:43 ----A---- C:\Windows\system32\XAPOFX1_0.dll 2009-03-10 10:37:42 ----A---- C:\Windows\system32\xactengine3_1.dll 2009-03-10 10:37:42 ----A---- C:\Windows\system32\X3DAudio1_4.dll 2009-03-10 10:37:41 ----A---- C:\Windows\system32\d3dx10_38.dll 2009-03-10 10:37:41 ----A---- C:\Windows\system32\D3DCompiler_38.dll 2009-03-10 10:37:40 ----A---- C:\Windows\system32\XAudio2_0.dll 2009-03-10 10:37:40 ----A---- C:\Windows\system32\xactengine3_0.dll 2009-03-10 10:37:40 ----A---- C:\Windows\system32\X3DAudio1_3.dll 2009-03-10 10:37:40 ----A---- C:\Windows\system32\D3DX9_38.dll 2009-03-10 10:37:39 ----A---- C:\Windows\system32\D3DX9_37.dll 2009-03-10 10:37:39 ----A---- C:\Windows\system32\d3dx10_37.dll 2009-03-10 10:37:39 ----A---- C:\Windows\system32\D3DCompiler_37.dll 2009-03-10 10:37:38 ----A---- C:\Windows\system32\xactengine2_10.dll 2009-03-10 10:37:38 ----A---- C:\Windows\system32\d3dx10_36.dll 2009-03-10 10:37:38 ----A---- C:\Windows\system32\D3DCompiler_36.dll 2009-03-10 10:37:37 ----A---- C:\Windows\system32\xactengine2_9.dll 2009-03-10 10:37:37 ----A---- C:\Windows\system32\d3dx9_36.dll 2009-03-10 10:37:36 ----A---- C:\Windows\system32\d3dx10_35.dll 2009-03-10 10:37:36 ----A---- C:\Windows\system32\D3DCompiler_35.dll 2009-03-10 10:37:35 ----A---- C:\Windows\system32\xactengine2_8.dll 2009-03-10 10:37:35 ----A---- C:\Windows\system32\X3DAudio1_2.dll 2009-03-10 10:37:35 ----A---- C:\Windows\system32\d3dx9_35.dll 2009-03-10 10:11:40 ----D---- C:\RECYCLER 2009-03-10 10:10:36 ----D---- C:\Program Files\Adobe 2009-03-10 10:08:23 ----A---- C:\Windows\system32\XceedZip.dll 2009-03-10 10:08:22 ----D---- C:\Program Files\Driver-Soft 2009-03-10 10:04:36 ----D---- C:\Program Files\CCleaner 2009-03-10 10:03:13 ----D---- C:\ProgramData\Adobe 2009-03-10 10:03:05 ----D---- C:\Program Files\Common Files\Adobe 2009-03-10 09:48:06 ----HD---- C:\ProgramData\{983E5E27-ED7A-4551-8D0E-8536786F9C14} 2009-03-10 09:48:06 ----D---- C:\Program Files\Stardock 2009-03-10 09:47:08 ----SHD---- C:\Windows\ftpcache 2009-03-10 09:36:21 ----D---- C:\ProgramData\UDL 2009-03-10 09:33:24 ----D---- C:\Program Files\EPSON Print CD 2009-03-10 09:32:14 ----A---- C:\Windows\system32\PICSDK2.dll 2009-03-10 09:32:14 ----A---- C:\Windows\system32\PICSDK.ini 2009-03-10 09:32:14 ----A---- C:\Windows\system32\PICSDK.dll 2009-03-10 09:32:14 ----A---- C:\Windows\system32\PICEntry.dll 2009-03-10 09:32:14 ----A---- C:\Windows\system32\EpPicPrt.dll 2009-03-10 09:32:14 ----A---- C:\Windows\system32\EPPicMgr.dll 2009-03-10 09:32:03 ----D---- C:\Users\Angus\AppData\Roaming\InstallShield 2009-03-10 09:30:39 ----A---- C:\Windows\system32\E_DCINST.DLL 2009-03-10 09:30:38 ----A---- C:\Windows\system32\E_FLBBUE.DLL 2009-03-10 09:30:38 ----A---- C:\Windows\system32\E_FD4BBUE.DLL 2009-03-10 09:30:32 ----D---- C:\Program Files\EPSON 2009-03-10 09:30:08 ----A---- C:\Windows\CDE ESP1400Euro.ini 2009-03-10 08:33:35 ----D---- C:\Users\Angus\AppData\Roaming\DivX 2009-03-10 08:29:48 ----D---- C:\Program Files\Common Files\PX Storage Engine 2009-03-10 08:29:31 ----D---- C:\Program Files\DivX 2009-03-10 08:08:13 ----D---- C:\Users\Angus\AppData\Roaming\WinRAR 2009-03-10 08:07:06 ----D---- C:\Program Files\WinRAR 2009-03-10 02:27:42 ----D---- C:\Windows\Panther 2009-03-10 02:19:26 ----SHD---- C:\System Volume Information 2009-03-10 02:17:34 ----RAS---- C:\BOOTSECT.BAK 2009-03-10 02:17:33 ----SHD---- C:\Boot 2009-03-09 23:06:41 ----D---- C:\ProgramData\WinZip 2009-03-09 22:18:04 ----A---- C:\Windows\system32\xinput1_3.dll 2009-03-09 22:18:04 ----A---- C:\Windows\system32\d3dx9_34.dll 2009-03-09 22:18:04 ----A---- C:\Windows\system32\d3dx10_34.dll 2009-03-09 22:18:04 ----A---- C:\Windows\system32\D3DCompiler_34.dll 2009-03-09 22:18:03 ----A---- C:\Windows\system32\xactengine2_7.dll 2009-03-09 22:18:03 ----A---- C:\Windows\system32\d3dx9_33.dll 2009-03-09 22:18:03 ----A---- C:\Windows\system32\d3dx10_33.dll 2009-03-09 22:18:03 ----A---- C:\Windows\system32\D3DCompiler_33.dll 2009-03-09 22:18:02 ----A---- C:\Windows\system32\xactengine2_6.dll 2009-03-09 22:18:02 ----A---- C:\Windows\system32\xactengine2_5.dll 2009-03-09 22:18:02 ----A---- C:\Windows\system32\d3dx10.dll 2009-03-09 22:18:01 ----A---- C:\Windows\system32\xactengine2_4.dll 2009-03-09 22:18:01 ----A---- C:\Windows\system32\x3daudio1_1.dll 2009-03-09 22:18:01 ----A---- C:\Windows\system32\d3dx9_32.dll 2009-03-09 22:18:00 ----A---- C:\Windows\system32\xinput1_2.dll 2009-03-09 22:18:00 ----A---- C:\Windows\system32\xactengine2_3.dll 2009-03-09 22:18:00 ----A---- C:\Windows\system32\d3dx9_31.dll 2009-03-09 22:17:59 ----A---- C:\Windows\system32\xinput1_1.dll 2009-03-09 22:17:59 ----A---- C:\Windows\system32\xactengine2_2.dll 2009-03-09 22:17:59 ----A---- C:\Windows\system32\xactengine2_1.dll 2009-03-09 22:17:55 ----A---- C:\Windows\system32\xactengine2_0.dll 2009-03-09 22:17:55 ----A---- C:\Windows\system32\x3daudio1_0.dll 2009-03-09 22:17:55 ----A---- C:\Windows\system32\d3dx9_30.dll 2009-03-09 22:17:54 ----A---- C:\Windows\system32\d3dx9_29.dll 2009-03-09 22:17:54 ----A---- C:\Windows\system32\d3dx9_28.dll 2009-03-09 22:17:54 ----A---- C:\Windows\system32\d3dx9_27.dll 2009-03-09 22:17:53 ----A---- C:\Windows\system32\d3dx9_26.dll 2009-03-09 22:17:53 ----A---- C:\Windows\system32\d3dx9_25.dll 2009-03-09 22:17:52 ----A---- C:\Windows\system32\d3dx9_24.dll 2009-03-09 22:15:36 ----A---- C:\Windows\system32\PnkBstrB.exe 2009-03-09 22:15:34 ----A---- C:\Windows\system32\PnkBstrA.exe 2009-03-09 22:00:22 ----D---- C:\Program Files\Activision 2009-03-09 21:38:00 ----D---- C:\Users\Angus\AppData\Roaming\teamspeak2 2009-03-09 21:37:39 ----D---- C:\Program Files\Teamspeak2_RC2 2009-03-09 21:08:51 ----D---- C:\Users\Angus\AppData\Roaming\Macromedia 2009-03-09 21:08:51 ----D---- C:\Users\Angus\AppData\Roaming\Adobe 2009-03-09 21:01:00 ----A---- C:\Windows\system32\es.dll 2009-03-09 20:41:33 ----D---- C:\Users\Angus\AppData\Roaming\Logitech 2009-03-09 20:37:23 ----N---- C:\Windows\bwUnin-7.2.0.137-8876480SL.exe 2009-03-09 20:35:50 ----A---- C:\Windows\system32\unicows.dll 2009-03-09 20:35:50 ----A---- C:\Windows\system32\msvcr71.dll 2009-03-09 20:35:50 ----A---- C:\Windows\system32\msvcp71.dll 2009-03-09 20:35:49 ----A---- C:\Windows\system32\MFC71u.dll 2009-03-09 20:35:49 ----A---- C:\Windows\system32\MFC71.dll 2009-03-09 20:35:48 ----A---- C:\Windows\system32\atl71.dll 2009-03-09 20:35:47 ----D---- C:\Program Files\Common Files\Logitech 2009-03-09 20:35:38 ----D---- C:\Program Files\Logitech 2009-03-09 20:35:36 ----HD---- C:\Program Files\InstallShield Installation Information 2009-03-09 20:35:28 ----D---- C:\Program Files\Common Files\InstallShield 2009-03-09 20:33:02 ----D---- C:\Windows\Minidump 2009-03-09 20:27:46 ----D---- C:\Windows\AS_SCRIPTS 2009-03-09 20:27:46 ----A---- C:\Windows\Ascd_tmp.ini 2009-03-09 20:27:44 ----A---- C:\Windows\AS_Debug.txt 2009-03-09 20:13:27 ----D---- C:\Users\Angus\AppData\Roaming\GrabIt 2009-03-09 20:12:46 ----A---- C:\Windows\system32\winipsec.dll 2009-03-09 20:12:46 ----A---- C:\Windows\system32\IPSECSVC.DLL 2009-03-09 20:12:46 ----A---- C:\Windows\system32\FwRemoteSvr.dll 2009-03-09 20:12:45 ----A---- C:\Windows\system32\polstore.dll 2009-03-09 20:12:02 ----A---- C:\Windows\system32\riched20.dll 2009-03-09 20:12:01 ----A---- C:\Windows\system32\riched32.dll 2009-03-09 20:11:59 ----A---- C:\Windows\system32\rasser.dll 2009-03-09 20:11:59 ----A---- C:\Windows\system32\rasdiag.dll 2009-03-09 20:11:59 ----A---- C:\Windows\system32\rascfg.dll 2009-03-09 20:11:58 ----A---- C:\Windows\system32\rasmxs.dll 2009-03-09 20:11:58 ----A---- C:\Windows\system32\netcfgx.dll 2009-03-09 20:11:58 ----A---- C:\Windows\system32\msftedit.dll 2009-03-09 20:11:57 ----A---- C:\Windows\system32\ipnathlp.dll 2009-03-09 20:11:57 ----A---- C:\Windows\system32\icsunattend.exe 2009-03-09 20:11:56 ----A---- C:\Windows\system32\wshqos.dll 2009-03-09 20:11:56 ----A---- C:\Windows\system32\traffic.dll 2009-03-09 20:11:56 ----A---- C:\Windows\system32\pacerprf.dll 2009-03-09 20:11:55 ----A---- C:\Windows\system32\localspl.dll 2009-03-09 20:11:55 ----A---- C:\Windows\system32\dps.dll 2009-03-09 20:11:55 ----A---- C:\Windows\system32\cdd.dll 2009-03-09 20:11:14 ----A---- C:\Windows\system32\PortableDeviceTypes.dll 2009-03-09 20:11:14 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll 2009-03-09 20:11:14 ----A---- C:\Windows\system32\PortableDeviceApi.dll 2009-03-09 20:10:27 ----A---- C:\Windows\system32\msoert2.dll 2009-03-09 20:10:27 ----A---- C:\Windows\system32\msoeacct.dll 2009-03-09 20:10:27 ----A---- C:\Windows\system32\ACCTRES.dll 2009-03-09 20:09:34 ----A---- C:\Windows\system32\wtsapi32.dll 2009-03-09 20:09:31 ----A---- C:\Windows\system32\sysmain.dll 2009-03-09 20:09:29 ----A---- C:\Windows\system32\wlansvc.dll 2009-03-09 20:09:29 ----A---- C:\Windows\system32\wlansec.dll 2009-03-09 20:09:29 ----A---- C:\Windows\system32\wlanmsm.dll 2009-03-09 20:09:29 ----A---- C:\Windows\system32\wlanhlp.dll 2009-03-09 20:09:29 ----A---- C:\Windows\system32\wlanapi.dll 2009-03-09 20:08:50 ----A---- C:\Windows\system32\WebClnt.dll 2009-03-09 20:07:47 ----A---- C:\Windows\system32\ieapfltr.dll 2009-03-09 20:07:47 ----A---- C:\Windows\system32\advpack.dll 2009-03-09 20:07:46 ----A---- C:\Windows\system32\wininet.dll 2009-03-09 20:07:46 ----A---- C:\Windows\system32\jsproxy.dll 2009-03-09 20:07:45 ----A---- C:\Windows\system32\dxtrans.dll 2009-03-09 20:07:45 ----A---- C:\Windows\system32\dxtmsft.dll 2009-03-09 20:07:44 ----A---- C:\Windows\system32\msfeeds.dll 2009-03-09 20:07:43 ----A---- C:\Windows\system32\ieui.dll 2009-03-09 20:07:43 ----A---- C:\Windows\system32\ieframe.dll 2009-03-09 20:07:41 ----A---- C:\Windows\system32\mshtmled.dll 2009-03-09 20:07:40 ----A---- C:\Windows\system32\mshtml.dll 2009-03-09 20:07:38 ----A---- C:\Windows\system32\mstime.dll 2009-03-09 20:07:38 ----A---- C:\Windows\system32\icardie.dll 2009-03-09 20:07:36 ----A---- C:\Windows\system32\ieUnatt.exe 2009-03-09 20:07:35 ----A---- C:\Windows\system32\urlmon.dll 2009-03-09 20:07:34 ----A---- C:\Windows\system32\pngfilt.dll 2009-03-09 20:07:34 ----A---- C:\Windows\system32\iertutil.dll 2009-03-09 20:07:34 ----A---- C:\Windows\system32\iernonce.dll 2009-03-09 20:07:34 ----A---- C:\Windows\system32\ie4uinit.exe 2009-03-09 20:07:33 ----A---- C:\Windows\system32\iesetup.dll 2009-03-09 20:06:33 ----A---- C:\Windows\system32\winsrv.dll 2009-03-09 20:06:33 ----A---- C:\Windows\system32\csrsrv.dll 2009-03-09 20:04:46 ----D---- C:\Users\Angus\AppData\Roaming\Thunderbird 2009-03-09 20:04:16 ----D---- C:\Program Files\Mozilla Thunderbird 2009-03-09 20:04:03 ----A---- C:\Windows\system32\gdi32.dll 2009-03-09 20:02:37 ----A---- C:\Windows\system32\Apphlpdm.dll 2009-03-09 20:02:35 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll 2009-03-09 20:02:35 ----A---- C:\Windows\system32\gameux.dll 2009-03-09 20:02:00 ----A---- C:\Windows\system32\wmpeffects.dll 2009-03-09 20:01:03 ----A---- C:\Windows\system32\msxml3r.dll 2009-03-09 20:01:03 ----A---- C:\Windows\system32\msxml3.dll 2009-03-09 20:00:36 ----A---- C:\Windows\system32\msscp.dll 2009-03-09 20:00:06 ----A---- C:\Windows\system32\MediaMetadataHandler.dll 2009-03-09 19:59:39 ----A---- C:\Windows\system32\MPSSVC.dll 2009-03-09 19:59:39 ----A---- C:\Windows\system32\FirewallAPI.dll 2009-03-09 19:59:38 ----A---- C:\Windows\system32\wfapigp.dll 2009-03-09 19:59:38 ----A---- C:\Windows\system32\icfupgd.dll 2009-03-09 19:59:38 ----A---- C:\Windows\system32\cmifw.dll 2009-03-09 19:59:37 ----A---- C:\Windows\system32\iphlpsvc.dll 2009-03-09 19:59:13 ----A---- C:\Windows\system32\netapi32.dll 2009-03-09 19:58:41 ----A---- C:\Windows\system32\tzres.dll 2009-03-09 19:57:57 ----D---- C:\Program Files\GrabIt 2009-03-09 19:57:41 ----A---- C:\Windows\system32\mcmde.dll 2009-03-09 19:57:40 ----A---- C:\Windows\system32\psisdecd.dll 2009-03-09 19:57:40 ----A---- C:\Windows\system32\EncDec.dll 2009-03-09 19:57:18 ----D---- C:\Windows\system32\Macromed 2009-03-09 19:56:35 ----A---- C:\Windows\system32\shell32.dll 2009-03-09 19:54:52 ----A---- C:\Windows\system32\DWWIN.EXE 2009-03-09 19:54:33 ----A---- C:\Windows\explorer.exe 2009-03-09 19:53:51 ----A---- C:\Windows\system32\hcrstco.dll 2009-03-09 19:53:51 ----A---- C:\Windows\system32\hccoin.dll 2009-03-09 19:53:15 ----A---- C:\Windows\system32\netcfg.exe 2009-03-09 19:53:14 ----A---- C:\Windows\system32\tcpipcfg.dll 2009-03-09 19:53:14 ----A---- C:\Windows\system32\netiougc.exe 2009-03-09 19:52:50 ----A---- C:\Windows\system32\NlsLexicons0049.dll 2009-03-09 19:52:50 ----A---- C:\Windows\system32\NlsLexicons0047.dll 2009-03-09 19:52:50 ----A---- C:\Windows\system32\NlsLexicons0046.dll 2009-03-09 19:52:50 ----A---- C:\Windows\system32\NlsLexicons0045.dll 2009-03-09 19:52:50 ----A---- C:\Windows\system32\NlsLexicons0039.dll 2009-03-09 19:52:50 ----A---- C:\Windows\system32\NlsLexicons0020.dll 2009-03-09 19:52:49 ----A---- C:\Windows\system32\NlsLexicons0024.dll 2009-03-09 19:52:49 ----A---- C:\Windows\system32\NlsLexicons0022.dll 2009-03-09 19:52:49 ----A---- C:\Windows\system32\NlsLexicons0021.dll 2009-03-09 19:52:48 ----A---- C:\Windows\system32\NlsLexicons0027.dll 2009-03-09 19:52:48 ----A---- C:\Windows\system32\NlsLexicons0026.dll 2009-03-09 19:52:48 ----A---- C:\Windows\system32\NlsLexicons0010.dll 2009-03-09 19:52:47 ----A---- C:\Windows\system32\NlsLexicons0018.dll 2009-03-09 19:52:47 ----A---- C:\Windows\system32\NlsLexicons0013.dll 2009-03-09 19:52:47 ----A---- C:\Windows\system32\NlsLexicons0011.dll 2009-03-09 19:52:46 ----A---- C:\Windows\system32\NlsLexicons0019.dll 2009-03-09 19:52:46 ----A---- C:\Windows\system32\NlsLexicons0003.dll 2009-03-09 19:52:46 ----A---- C:\Windows\system32\NlsLexicons0002.dll 2009-03-09 19:52:46 ----A---- C:\Windows\system32\NlsLexicons0001.dll 2009-03-09 19:52:45 ----A---- C:\Windows\system32\NlsLexicons0009.dll 2009-03-09 19:52:45 ----A---- C:\Windows\system32\NlsLexicons0007.dll 2009-03-09 19:52:44 ----A---- C:\Windows\system32\NlsLexicons004e.dll 2009-03-09 19:52:44 ----A---- C:\Windows\system32\NlsLexicons004c.dll 2009-03-09 19:52:44 ----A---- C:\Windows\system32\NlsLexicons004b.dll 2009-03-09 19:52:44 ----A---- C:\Windows\system32\NlsLexicons004a.dll 2009-03-09 19:52:44 ----A---- C:\Windows\system32\NlsLexicons003e.dll 2009-03-09 19:52:43 ----A---- C:\Windows\system32\NlsLexicons002a.dll 2009-03-09 19:52:43 ----A---- C:\Windows\system32\NlsLexicons001b.dll 2009-03-09 19:52:43 ----A---- C:\Windows\system32\NlsLexicons001a.dll 2009-03-09 19:52:42 ----A---- C:\Windows\system32\NlsLexicons001d.dll 2009-03-09 19:52:42 ----A---- C:\Windows\system32\NlsLexicons000d.dll 2009-03-09 19:52:42 ----A---- C:\Windows\system32\NlsLexicons000c.dll 2009-03-09 19:52:42 ----A---- C:\Windows\system32\NlsLexicons000a.dll 2009-03-09 19:52:41 ----A---- C:\Windows\system32\NlsLexicons0816.dll 2009-03-09 19:52:41 ----A---- C:\Windows\system32\NlsLexicons0416.dll 2009-03-09 19:52:41 ----A---- C:\Windows\system32\NlsLexicons0414.dll 2009-03-09 19:52:41 ----A---- C:\Windows\system32\NlsLexicons000f.dll 2009-03-09 19:52:40 ----A---- C:\Windows\system32\NlsModels0011.dll 2009-03-09 19:52:40 ----A---- C:\Windows\system32\NlsLexicons081a.dll 2009-03-09 19:52:40 ----A---- C:\Windows\system32\NlsData0046.dll 2009-03-09 19:52:40 ----A---- C:\Windows\system32\NlsData0045.dll 2009-03-09 19:52:39 ----A---- C:\Windows\system32\NlsData0049.dll 2009-03-09 19:52:39 ----A---- C:\Windows\system32\NlsData0047.dll 2009-03-09 19:52:39 ----A---- C:\Windows\system32\NlsData0039.dll 2009-03-09 19:52:39 ----A---- C:\Windows\system32\NlsData0020.dll 2009-03-09 19:52:38 ----A---- C:\Windows\system32\NlsData0027.dll 2009-03-09 19:52:38 ----A---- C:\Windows\system32\NlsData0026.dll 2009-03-09 19:52:38 ----A---- C:\Windows\system32\NlsData0024.dll 2009-03-09 19:52:38 ----A---- C:\Windows\system32\NlsData0022.dll 2009-03-09 19:52:38 ----A---- C:\Windows\system32\NlsData0021.dll 2009-03-09 19:52:37 ----A---- C:\Windows\system32\NlsData0013.dll 2009-03-09 19:52:37 ----A---- C:\Windows\system32\NlsData0011.dll 2009-03-09 19:52:37 ----A---- C:\Windows\system32\NlsData0010.dll 2009-03-09 19:52:36 ----A---- C:\Windows\system32\NlsData0019.dll 2009-03-09 19:52:36 ----A---- C:\Windows\system32\NlsData0018.dll 2009-03-09 19:52:36 ----A---- C:\Windows\system32\NlsData0002.dll 2009-03-09 19:52:36 ----A---- C:\Windows\system32\NlsData0001.dll 2009-03-09 19:52:36 ----A---- C:\Windows\system32\NlsData0000.dll 2009-03-09 19:52:35 ----A---- C:\Windows\system32\NlsData004a.dll 2009-03-09 19:52:35 ----A---- C:\Windows\system32\NlsData0009.dll 2009-03-09 19:52:35 ----A---- C:\Windows\system32\NlsData0007.dll 2009-03-09 19:52:35 ----A---- C:\Windows\system32\NlsData0003.dll 2009-03-09 19:52:34 ----A---- C:\Windows\system32\NlsData004e.dll 2009-03-09 19:52:34 ----A---- C:\Windows\system32\NlsData004c.dll 2009-03-09 19:52:34 ----A---- C:\Windows\system32\NlsData004b.dll 2009-03-09 19:52:34 ----A---- C:\Windows\system32\NlsData003e.dll 2009-03-09 19:52:33 ----A---- C:\Windows\system32\NlsData002a.dll 2009-03-09 19:52:33 ----A---- C:\Windows\system32\NlsData001d.dll 2009-03-09 19:52:33 ----A---- C:\Windows\system32\NlsData001b.dll 2009-03-09 19:52:33 ----A---- C:\Windows\system32\NlsData001a.dll 2009-03-09 19:52:32 ----A---- C:\Windows\system32\NlsData000d.dll 2009-03-09 19:52:32 ----A---- C:\Windows\system32\NlsData000c.dll 2009-03-09 19:52:32 ----A---- C:\Windows\system32\NlsData000a.dll 2009-03-09 19:52:31 ----A---- C:\Windows\system32\NlsData0416.dll 2009-03-09 19:52:31 ----A---- C:\Windows\system32\NlsData0414.dll 2009-03-09 19:52:31 ----A---- C:\Windows\system32\NlsData000f.dll 2009-03-09 19:52:31 ----A---- C:\Windows\system32\NaturalLanguage6.dll 2009-03-09 19:52:30 ----A---- C:\Windows\system32\NlsLexicons0c1a.dll 2009-03-09 19:52:30 ----A---- C:\Windows\system32\NlsData0c1a.dll 2009-03-09 19:52:30 ----A---- C:\Windows\system32\NlsData081a.dll 2009-03-09 19:52:30 ----A---- C:\Windows\system32\NlsData0816.dll 2009-03-09 19:50:13 ----A---- C:\Windows\system32\setupapi.dll 2009-03-09 19:49:57 ----A---- C:\Windows\system32\srclient.dll 2009-03-09 19:49:57 ----A---- C:\Windows\system32\rstrui.exe 2009-03-09 19:49:56 ----A---- C:\Windows\system32\wpd_ci.dll 2009-03-09 19:49:56 ----A---- C:\Windows\system32\srdelayed.exe 2009-03-09 19:49:56 ----A---- C:\Windows\system32\srcore.dll 2009-03-09 19:49:56 ----A---- C:\Windows\system32\kd1394.dll 2009-03-09 19:49:55 ----A---- C:\Windows\system32\winresume.exe 2009-03-09 19:49:55 ----A---- C:\Windows\system32\winload.exe 2009-03-09 19:49:55 ----A---- C:\Windows\system32\ci.dll 2009-03-09 19:49:54 ----A---- C:\Windows\system32\umpnpmgr.dll 2009-03-09 19:49:54 ----A---- C:\Windows\system32\drvinst.exe 2009-03-09 19:49:54 ----A---- C:\Windows\system32\dpx.dll 2009-03-09 19:49:54 ----A---- C:\Windows\system32\cfgmgr32.dll 2009-03-09 19:49:53 ----A---- C:\Windows\system32\unlodctr.exe 2009-03-09 19:49:53 ----A---- C:\Windows\system32\prflbmsg.dll 2009-03-09 19:49:53 ----A---- C:\Windows\system32\oleaut32.dll 2009-03-09 19:49:53 ----A---- C:\Windows\system32\nshhttp.dll 2009-03-09 19:49:53 ----A---- C:\Windows\system32\lodctr.exe 2009-03-09 19:49:53 ----A---- C:\Windows\system32\loadperf.dll 2009-03-09 19:49:53 ----A---- C:\Windows\system32\kbd106n.dll 2009-03-09 19:49:51 ----A---- C:\Windows\system32\schedsvc.dll 2009-03-09 19:49:51 ----A---- C:\Windows\system32\f3ahvoas.dll 2009-03-09 19:49:50 ----A---- C:\Windows\system32\dispci.dll 2009-03-09 19:49:50 ----A---- C:\Windows\system32\batt.dll 2009-03-09 19:48:22 ----A---- C:\Windows\system32\WMASF.DLL 2009-03-09 19:48:22 ----A---- C:\Windows\system32\LAPRXY.DLL 2009-03-09 19:48:22 ----A---- C:\Windows\system32\asferror.dll 2009-03-09 19:48:05 ----A---- C:\Windows\system32\SLC.dll 2009-03-09 19:48:05 ----A---- C:\Windows\system32\mcbuilder.exe 2009-03-09 19:48:04 ----A---- C:\Windows\system32\slwmi.dll 2009-03-09 19:48:04 ----A---- C:\Windows\system32\SLUI.exe 2009-03-09 19:48:04 ----A---- C:\Windows\system32\SLCommDlg.dll 2009-03-09 19:48:03 ----A---- C:\Windows\system32\SLUINotify.dll 2009-03-09 19:48:03 ----A---- C:\Windows\system32\SLsvc.exe 2009-03-09 19:48:03 ----A---- C:\Windows\system32\SLLUA.exe 2009-03-09 19:48:03 ----A---- C:\Windows\system32\slcinst.dll 2009-03-09 19:47:40 ----A---- C:\Windows\system32\WindowsCodecs.dll 2009-03-09 19:47:40 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll 2009-03-09 19:47:39 ----A---- C:\Windows\system32\WindowsCodecsExt.dll 2009-03-09 19:46:39 ----A---- C:\Windows\system32\ntprint.exe 2009-03-09 19:46:39 ----A---- C:\Windows\system32\ntprint.dll 2009-03-09 19:46:37 ----A---- C:\Windows\system32\dhcpcsvc.dll 2009-03-09 19:46:37 ----A---- C:\Windows\system32\dhcpcmonitor.dll 2009-03-09 19:46:36 ----A---- C:\Windows\system32\dhcpcsvc6.dll 2009-03-09 19:46:36 ----A---- C:\Windows\system32\authui.dll 2009-03-09 19:46:34 ----A---- C:\Windows\system32\msvidc32.dll 2009-03-09 19:46:34 ----A---- C:\Windows\system32\msvfw32.dll 2009-03-09 19:46:34 ----A---- C:\Windows\system32\msrle32.dll 2009-03-09 19:46:34 ----A---- C:\Windows\system32\mciavi32.dll 2009-03-09 19:46:34 ----A---- C:\Windows\system32\avifil32.dll 2009-03-09 19:46:34 ----A---- C:\Windows\system32\avicap32.dll 2009-03-09 19:46:33 ----A---- C:\Windows\system32\sendmail.dll 2009-03-09 19:46:12 ----A---- C:\Windows\system32\win32spl.dll 2009-03-09 19:46:12 ----A---- C:\Windows\system32\printcom.dll 2009-03-09 19:45:36 ----A---- C:\Windows\system32\wshrm.dll 2009-03-09 19:45:08 ----A---- C:\Windows\system32\sbunattend.exe 2009-03-09 19:44:35 ----A---- C:\Windows\system32\dnsrslvr.dll 2009-03-09 19:44:35 ----A---- C:\Windows\system32\dnscacheugc.exe 2009-03-09 19:44:35 ----A---- C:\Windows\system32\dnsapi.dll 2009-03-09 19:40:59 ----D---- C:\Users\Angus\AppData\Roaming\Mozilla 2009-03-09 19:40:47 ----D---- C:\Program Files\Mozilla Firefox 2009-03-09 19:36:15 ----D---- C:\ProgramData\EPSON 2009-03-09 19:35:28 ----A---- C:\Windows\system32\E_FLBBUA.DLL 2009-03-09 19:35:27 ----A---- C:\Windows\system32\E_FD4BBUA.DLL 2009-03-09 19:30:29 ----SHD---- C:\Windows\Installer 2009-03-09 19:17:01 ----A---- C:\Windows\system32\rrinstaller.exe 2009-03-09 19:17:01 ----A---- C:\Windows\system32\mfps.dll 2009-03-09 19:17:01 ----A---- C:\Windows\system32\mfpmp.exe 2009-03-09 19:17:01 ----A---- C:\Windows\system32\mferror.dll 2009-03-09 19:17:01 ----A---- C:\Windows\system32\mf.dll 2009-03-09 19:17:00 ----A---- C:\Windows\system32\WMVCORE.DLL 2009-03-09 19:17:00 ----A---- C:\Windows\system32\WMNetMgr.dll 2009-03-09 19:17:00 ----A---- C:\Windows\system32\logagent.exe 2009-03-09 19:16:37 ----A---- C:\Windows\system32\rpcrt4.dll 2009-03-09 19:16:22 ----A---- C:\Windows\system32\INETRES.dll 2009-03-09 19:16:22 ----A---- C:\Windows\system32\inetcomm.dll 2009-03-09 19:16:07 ----A---- C:\Windows\system32\connect.dll 2009-03-09 19:15:55 ----A---- C:\Windows\system32\wmi.dll 2009-03-09 19:15:55 ----A---- C:\Windows\system32\imagehlp.dll 2009-03-09 19:15:44 ----A---- C:\Windows\system32\quartz.dll 2009-03-09 19:15:28 ----A---- C:\Windows\system32\crypt32.dll 2009-03-09 19:15:14 ----A---- C:\Windows\system32\ntoskrnl.exe 2009-03-09 19:15:14 ----A---- C:\Windows\system32\ntkrnlpa.exe 2009-03-09 19:15:04 ----A---- C:\Windows\system32\user32.dll 2009-03-09 19:14:55 ----A---- C:\Windows\system32\msxml6r.dll 2009-03-09 19:14:55 ----A---- C:\Windows\system32\msxml6.dll 2009-03-09 19:13:37 ----A---- C:\Windows\system32\qmgr.dll 2009-03-09 18:47:43 ----D---- C:\Users\Angus\AppData\Roaming\Identities 2009-03-09 18:47:36 ----SD---- C:\Users\Angus\AppData\Roaming\Microsoft 2009-03-09 18:47:36 ----D---- C:\Users\Angus\AppData\Roaming\Media Center Programs 2009-03-09 18:45:59 ----A---- C:\Windows\system32\wups2.dll 2009-03-09 18:45:59 ----A---- C:\Windows\system32\wucltux.dll 2009-03-09 18:45:58 ----A---- C:\Windows\system32\wuaueng.dll 2009-03-09 18:45:58 ----A---- C:\Windows\system32\wuauclt.exe 2009-03-09 18:45:13 ----A---- C:\Windows\system32\wudriver.dll 2009-03-09 18:45:12 ----A---- C:\Windows\system32\wups.dll 2009-03-09 18:45:12 ----A---- C:\Windows\system32\wuapi.dll 2009-03-09 18:44:46 ----A---- C:\Windows\system32\wuwebv.dll 2009-03-09 18:44:46 ----A---- C:\Windows\system32\wuapp.exe 2009-03-09 18:32:36 ----D---- C:\Windows\SoftwareDistribution 2009-03-09 18:30:26 ----D---- C:\Windows\Debug 2009-03-09 18:29:01 ----D---- C:\Windows\Prefetch 2009-03-09 18:28:54 ----A---- C:\Windows\DUMP3085.tmp 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvwssr.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvwss.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvwgf2um.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvvsvc.exe 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvvitvsr.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvvitvs.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvudisp.exe 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvsvsr.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvsvs.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvsvcr.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvsvc.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvoglv32.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvmoblsr.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvmobls.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvmctray.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvmccssr.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvmccss.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvmccsrs.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvmccs.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvgamesr.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvgames.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvdispsr.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvdisps.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvcuvid.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvcuda.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvcpluir.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvcplui.exe 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvcpl.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvcod140.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvcod.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvapi.dll 2009-02-18 14:44:00 ----A---- C:\Windows\system32\dpinst.exe ======List of files/folders modified in the last 1 months====== 2009-03-12 21:44:05 ----D---- C:\Windows\Temp 2009-03-12 12:12:25 ----D---- C:\Windows 2009-03-12 12:11:58 ----D---- C:\Windows\System32 2009-03-12 11:31:14 ----D---- C:\Windows\system32\catroot2 2009-03-12 09:19:55 ----RSD---- C:\Windows\assembly 2009-03-12 07:45:32 ----D---- C:\Windows\system32\drivers 2009-03-11 23:48:22 ----D---- C:\Windows\system32\WDI 2009-03-11 23:25:42 ----SD---- C:\Windows\Downloaded Program Files 2009-03-11 21:18:22 ----RD---- C:\Program Files 2009-03-11 20:51:15 ----HD---- C:\ProgramData 2009-03-11 20:49:06 ----D---- C:\Windows\winsxs 2009-03-11 20:43:42 ----D---- C:\Program Files\Common Files 2009-03-11 20:43:41 ----D---- C:\Windows\Cursors 2009-03-11 09:39:40 ----D---- C:\Windows\system32\catroot 2009-03-11 09:39:40 ----D---- C:\Windows\inf 2009-03-10 22:47:10 ----D---- C:\Program Files\Windows Media Player 2009-03-10 22:47:10 ----D---- C:\Program Files\Windows Mail 2009-03-10 19:32:22 ----A---- C:\Windows\system32\PerfStringBackup.INI 2009-03-10 19:21:58 ----D---- C:\Windows\Help 2009-03-10 18:29:11 ----D---- C:\Program Files\Common Files\microsoft shared 2009-03-10 18:25:08 ----SD---- C:\ProgramData\Microsoft 2009-03-10 14:52:53 ----D---- C:\Windows\system32\Tasks 2009-03-10 14:52:50 ----D---- C:\Windows\Tasks 2009-03-10 12:09:38 ----D---- C:\Windows\system32\NDF 2009-03-10 10:36:54 ----D---- C:\Windows\Logs 2009-03-10 03:00:54 ----D---- C:\Windows\servicing 2009-03-09 22:17:56 ----D---- C:\Windows\Microsoft.NET 2009-03-09 22:15:34 ----D---- C:\Windows\system32\LogFiles 2009-03-09 20:22:13 ----ASH---- C:\Program Files\desktop.ini 2009-03-09 20:22:03 ----D---- C:\Windows\rescache 2009-03-09 20:18:01 ----D---- C:\Windows\system32\en-US 2009-03-09 20:18:00 ----D---- C:\Windows\system32\ras 2009-03-09 20:18:00 ----D---- C:\Windows\system32\icsxml 2009-03-09 20:18:00 ----D---- C:\Program Files\Windows Calendar 2009-03-09 20:17:58 ----D---- C:\Program Files\Common Files\System 2009-03-09 20:17:57 ----D---- C:\Windows\system32\wbem 2009-03-09 20:17:57 ----D---- C:\Program Files\Internet Explorer 2009-03-09 20:17:56 ----D---- C:\Windows\system32\migration 2009-03-09 20:17:55 ----D---- C:\Windows\AppPatch 2009-03-09 20:17:54 ----D---- C:\Program Files\Windows Defender 2009-03-09 20:17:52 ----D---- C:\Windows\ehome 2009-03-09 20:17:41 ----D---- C:\Windows\system32\SLUI 2009-03-09 20:17:40 ----D---- C:\Program Files\Windows Sidebar 2009-03-09 18:47:57 ----SHD---- C:\$Recycle.Bin 2009-03-09 18:47:26 ----RD---- C:\Users 2009-03-09 18:44:14 ----D---- C:\Windows\system32\restore 2009-02-18 14:44:00 ----A---- C:\Windows\system32\nvd3dum.dll ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R1 avgio;avgio; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgio.sys [2007-02-27 11840] R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2008-10-30 75072] R1 ssmdrv;ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [2007-03-01 28352] R2 EIO;EIO; \??\C:\Windows\system32\drivers\EIO.sys [2005-08-01 11264] R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\Windows\system32\drivers\RTKVAC.SYS [2008-03-25 4137312] R3 avgntflt;avgntflt; \??\C:\Program Files\Avira\AntiVir PersonalEdition Classic\avgntflt.sys [2008-05-20 52032] R3 LHidFilt;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2008-12-18 35472] R3 LMouFilt;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2008-12-18 37392] R3 MTsensor;ATK0110 ACPI UTILITY; C:\Windows\system32\DRIVERS\ASACPI.sys [2004-08-13 5810] R3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm60x32.sys [2006-11-02 429056] R3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2009-02-18 7765504] R3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 82560] R3 yukonwlh;NDIS6.0 Miniport Driver for Marvell Yukon Ethernet Controller; C:\Windows\system32\DRIVERS\yk60x86.sys [2006-11-02 194048] S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 5632] S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 8192] S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 5888] S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 5504] S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 6016] S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264] ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)====== R2 AntiVirScheduler;Avira AntiVir Personal - Free Antivirus Scheduler; C:\Program Files\Avira\AntiVir PersonalEdition Classic\sched.exe [2008-10-15 68865] R2 AntiVirService;Avira AntiVir Personal - Free Antivirus Guard; C:\Program Files\Avira\AntiVir PersonalEdition Classic\avguard.exe [2008-10-15 151297] R2 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service; C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe [2009-01-18 921936] R2 Nero BackItUp Scheduler 3;Nero BackItUp Scheduler 3; C:\Program Files\Nero\Nero8\Nero BackItUp\NBService.exe [2008-12-02 877864] R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2009-02-18 207392] R2 PLFlash DeviceIoControl Service;PLFlash DeviceIoControl Service; C:\Windows\system32\IoctlSvc.exe [2006-12-19 81920] R2 PnkBstrA;PnkBstrA; C:\Windows\system32\PnkBstrA.exe [2009-03-12 75064] R2 PnkBstrB;PnkBstrB; C:\Windows\system32\PnkBstrB.exe [2009-03-12 189072] R2 sp_rssrv;Spyware Terminator Realtime Shield Service; C:\Program Files\Spyware Terminator\sp_rsser.exe [2009-03-10 606720] R3 NMIndexingService;NMIndexingService; C:\Program Files\Common Files\Nero\Lib\NMIndexingService.exe [2008-12-12 537896] S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\Logitech\Bluetooth\LBTServ.exe [2009-02-19 121360] -----------------EOF-----------------