Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Virtumonde Virus (sp?)


  • This topic is locked This topic is locked
16 replies to this topic

#1 April Bryant

April Bryant

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:16 PM

Posted 04 August 2008 - 01:26 PM

Please help... this is my second post and it's taken me an hour to reaccess this site. Below is the copy of the notepad from DSS

Deckard's System Scanner v20071014.68
Run by DEBORAH DEBORD on 2008-08-04 14:17:04
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------



-- Last 5 Restore Point(s) --
107: 2008-08-04 16:43:55 UTC - RP335 - Deckard's System Scanner Restore Point
106: 2008-08-04 04:15:04 UTC - RP334 - Last known good configuration
105: 2008-08-04 04:14:55 UTC - RP333 - Restore Operation
104: 2008-08-04 04:14:55 UTC - RP332 - Installed Battlefield 2™
103: 2008-08-04 04:14:54 UTC - RP331 - Last known good configuration


-- First Restore Point --
1: 2008-08-04 04:14:28 UTC - RP229 - System Checkpoint


Backed up registry hives.
Performed disk cleanup.

System Drive C: has 4.51 GiB (less than 15%) free.


-- HijackThis (run as DEBORAH DEBORD.exe) --------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:19:37 PM, on 8/4/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\common files\mcafee\mna\mcnasvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee\MPS\mps.exe
C:\Program Files\McAfee\MSK\MskSrver.exe
C:\Program Files\McAfee\MPS\mpsevh.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\McAfee\MSK\MskAgent.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
c:\PROGRA~1\mcafee\msc\mcuimgr.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\DEBORAH DEBORD\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\DEBORAH DEBORD.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Comcast
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: {4dae23d5-6f68-8289-6e14-1b6ce2a22920} - {02922a2e-c6b1-41e6-9828-86f65d32ead4} - C:\WINDOWS\system32\fcnrvc.dll
O2 - BHO: (no name) - {2FA24518-5FE0-4CF1-8BA1-8EB9BE93AA50} - C:\WINDOWS\system32\yayvUKdD.dll
O2 - BHO: (no name) - {4D7FC559-BFFC-4DE4-B2AA-393A250D851A} - C:\WINDOWS\system32\awtsRjii.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: adssite - {54228b51-c6e7-9dec-bbe4-e8613c152c17} - C:\WINDOWS\system32\nsn110D.dll (file missing)
O2 - BHO: (no name) - {640692F9-1882-41C5-ACFF-48F94CAA248D} - C:\WINDOWS\system32\mlljk.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {BC730A29-A729-452E-AD8C-ADAA17E20C10} - C:\WINDOWS\system32\mllji.dll (file missing)
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6253\SiteAdv.dll
O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6172\SiteAdv.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [DLCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [Host Process] C:\WINDOWS\Fonts\svchost.exe
O4 - HKLM\..\Run: [a074caae] rundll32.exe "C:\WINDOWS\system32\rhelhilw.dll",b
O4 - HKLM\..\Run: [BMa347f932] Rundll32.exe "C:\WINDOWS\system32\uyipfipv.dll",s
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {3DCEC959-378A-4922-AD7E-FD5C925D927F} (Disney Online Games ActiveX Control) - http://disney.go.com/pirates/online/testAc...OnlineGames.cab
O16 - DPF: {42D06124-98A2-47EC-8098-3778B58CE7D5} (SupportSoft External Control) - https://actsvr.comcastonline.com/techtools/...%20Controls.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab56986.cab
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{1A3DB53C-DBE7-4B51-8EEB-E810F607BB3E}: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS1\Services\Tcpip\..\{1A3DB53C-DBE7-4B51-8EEB-E810F607BB3E}: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O20 - Winlogon Notify: vtustss - vtustss.dll (file missing)
O20 - Winlogon Notify: yayvUKdD - C:\WINDOWS\SYSTEM32\yayvUKdD.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: McAfee E-mail Proxy (Emproxy) - McAfee, Inc. - C:\PROGRA~1\COMMON~1\McAfee\EmProxy\emproxy.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee HackerWatch Service - McAfee, Inc. - C:\Program Files\Common Files\McAfee\HackerWatch\HWAPI.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Redirector Service (McRedirector) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\redirsvc\redirsvc.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee Privacy Service (MPS9) - McAfee, Inc. - C:\PROGRA~1\McAfee\MPS\mps.exe
O23 - Service: McAfee SpamKiller Service (MSK80Service) - McAfee Inc. - C:\Program Files\McAfee\MSK\MskSrver.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe

--
End of file - 8501 bytes

-- File Associations -----------------------------------------------------------

.js - JSFile - DefaultIcon - "C:\Program Files\Macromedia\Dreamweaver 8\dreamweaver.exe",2


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R2 ASCTRM - c:\windows\system32\drivers\asctrm.sys <Not Verified; Windows ® 2000 DDK provider; Windows ® 2000 DDK driver>

S3 catchme - c:\docume~1\debora~1\locals~1\temp\catchme.sys (file missing)
S3 DSproct - c:\program files\dellsupport\gtaction\triggers\dsproct.sys <Not Verified; Gteko Ltd.; processt>
S3 netrcacm (RCA USB Digital Cable Modem Driver) - c:\windows\system32\drivers\639563.sys <Not Verified; Thomson Inc.; RCA Digital Cable Modem>
S3 NTIDrvr - c:\program files\muvee technologies\muvee autoproducer 6.1\mvburnerdll\ntidrvr.sys (file missing)
S3 wanatw (WAN Miniport (ATW)) - c:\windows\system32\drivers\wanatw4.sys (file missing)


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

S4 Apple Mobile Device - "c:\program files\common files\apple\mobile device support\bin\applemobiledeviceservice.exe" <Not Verified; Apple, Inc.; Apple Mobile Device Service>
S4 FreezeScreenSaver - c:\windows\system32\freezescreensaver.exe <Not Verified; ; trioService Module>
S4 NBService - c:\program files\nero\nero 7\nero backitup\nbservice.exe
S4 Viewpoint Manager Service - "c:\program files\viewpoint\common\viewpointservice.exe" <Not Verified; Viewpoint Corporation; Viewpoint Manager>


-- Device Manager: Disabled ----------------------------------------------------

No disabled devices found.


-- Scheduled Tasks -------------------------------------------------------------

2008-08-02 10:55:53 284 --a------ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
2008-08-01 01:00:33 350 --a------ C:\WINDOWS\Tasks\McQcTask.job
2008-07-15 01:15:31 358 --a------ C:\WINDOWS\Tasks\McDefragTask.job


-- Files created between 2008-07-04 and 2008-08-04 -----------------------------

2008-08-04 12:52:56 102400 --a------ C:\WINDOWS\system32\fcnrvc.dll
2008-08-04 12:52:51 102400 --a------ C:\WINDOWS\system32\pjvhwpaw.dll
2008-08-04 12:49:59 82944 --a------ C:\WINDOWS\system32\rhelhilw.dll
2008-08-04 12:48:47 2048 --a------ C:\WINDOWS\system32\lcxuurip.exe
2008-08-04 12:48:36 92672 --a------ C:\WINDOWS\system32\uyipfipv.dll
2008-08-04 00:23:48 82944 --a------ C:\WINDOWS\system32\mmebhjiw.dll
2008-08-04 00:20:23 110080 --a------ C:\WINDOWS\system32\rgzekc.dll
2008-08-04 00:20:17 110080 --a------ C:\WINDOWS\system32\lwkiyttf.dll
2008-08-04 00:16:19 93184 --a------ C:\WINDOWS\system32\ubeodcyn.dll
2008-08-04 00:11:54 0 d-------- C:\Program Files\LimeWire
2008-08-03 08:31:35 9175040 --a------ C:\Documents and Settings\DEBORAH DEBORD\ntuser.dat
2008-08-03 08:30:01 869130 --ahs---- C:\WINDOWS\system32\iijRstwa.ini2
2008-08-03 08:29:51 282624 --a------ C:\WINDOWS\system32\awtsRjii.dll
2008-08-03 08:24:45 0 d-------- C:\WINDOWS\system32\kBin02
2008-08-03 08:24:45 32256 --a------ C:\WINDOWS\system32\fccaBTji.dll
2008-08-03 08:24:43 32256 --a------ C:\WINDOWS\system32\yayvUKdD.dll
2008-08-03 08:24:43 0 d-------- C:\Temp
2008-07-30 11:54:53 0 d-------- C:\Program Files\AskSBar
2008-07-30 10:49:58 0 d-------- C:\Program Files\MonopolyHereNowEdition_at
2008-07-30 09:50:15 0 d-------- C:\Program Files\MysteryCaseFilesHuntsville_at
2008-07-30 02:08:41 11116 --a------ C:\WINDOWS\system32\ealregsnapshot1.reg
2008-07-29 19:06:12 0 d-------- C:\Program Files\School of Sword_at
2008-07-29 00:17:11 0 d-------- C:\Documents and Settings\All Users\Application Data\HipSoft
2008-07-29 00:08:45 0 d-------- C:\Program Files\BuildALot2_at
2008-07-29 00:08:04 0 d-------- C:\Program Files\FamilyRestaurant_at
2008-07-28 16:46:27 0 d-------- C:\Documents and Settings\All Users\Application Data\Fitn17
2008-07-28 16:45:56 0 d-------- C:\Program Files\FitnessFrenzy_at
2008-07-28 15:46:17 0 d-------- C:\Program Files\LEGOBuilderBots_at
2008-07-28 14:32:28 0 d-------- C:\Documents and Settings\All Users\Application Data\Fugazo
2008-07-28 14:31:14 0 d-------- C:\Program Files\CookingAcademy_at
2008-07-28 13:39:35 4096 --a------ C:\WINDOWS\d3dx.dat
2008-07-28 13:38:51 0 d-------- C:\Program Files\Saints & Sinners Bowling
2008-07-28 13:38:37 0 d-------- C:\Program Files\ReflexiveArcade


-- Find3M Report ---------------------------------------------------------------

2008-08-04 00:15:49 0 d-------- C:\Program Files\Dl_cats
2008-08-03 22:16:11 0 d-------- C:\Program Files\ContextEnhancer
2008-08-03 07:42:18 0 d-------- C:\Program Files\Apple Software Update
2008-08-02 01:07:13 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-08-02 01:06:24 0 d-------- C:\Program Files\Street Challenge LLC
2008-08-02 01:03:10 0 d-------- C:\Program Files\GameSpy Arcade
2008-08-02 00:58:50 0 d-------- C:\Program Files\EA GAMES
2008-07-30 01:53:39 0 d-------- C:\Program Files\Trillian
2008-07-22 23:48:46 0 d-------- C:\Documents and Settings\DEBORAH DEBORD\Application Data\Comcast
2008-06-30 03:42:12 0 d-------- C:\Documents and Settings\DEBORAH DEBORD\Application Data\Xfire
2008-06-29 23:44:08 0 d-------- C:\Program Files\Xfire
2008-06-24 10:13:13 0 d-------- C:\Program Files\McAfee
2008-06-23 14:23:22 0 d-------- C:\Program Files\9Dragons
2008-06-22 22:17:34 0 d-------- C:\Program Files\SmartFTP Client
2008-06-22 22:14:21 0 d-------- C:\Program Files\SmartFTP Client 3.0 Setup Files
2008-06-19 01:06:00 0 dr-h----- C:\Documents and Settings\DEBORAH DEBORD\Application Data\SecuROM
2008-06-18 21:46:13 6172 --a------ C:\Program Files\install.log


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{02922a2e-c6b1-41e6-9828-86f65d32ead4}]
08/04/2008 12:52 PM 102400 --a------ C:\WINDOWS\system32\fcnrvc.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{2FA24518-5FE0-4CF1-8BA1-8EB9BE93AA50}]
08/03/2008 08:24 AM 32256 --a------ C:\WINDOWS\system32\yayvUKdD.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{4D7FC559-BFFC-4DE4-B2AA-393A250D851A}]
08/03/2008 08:29 AM 282624 --a------ C:\WINDOWS\system32\awtsRjii.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{54228b51-c6e7-9dec-bbe4-e8613c152c17}]
C:\WINDOWS\system32\nsn110D.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{640692F9-1882-41C5-ACFF-48F94CAA248D}]
C:\WINDOWS\system32\mlljk.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{BC730A29-A729-452E-AD8C-ADAA17E20C10}]
C:\WINDOWS\system32\mllji.dll

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}"= C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [07/30/2008 11:54 AM 262144]

[-HKEY_CLASSES_ROOT\CLSID\{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [02/09/2006 10:05 PM]
"MskAgentexe"="C:\Program Files\McAfee\MSK\MskAgent.exe" [01/17/2007 06:30 PM]
"SiteAdvisor"="C:\Program Files\SiteAdvisor\6172\SiteAdv.exe" []
"!AVG Anti-Spyware"="C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" [06/11/2007 05:25 AM]
"DLCFCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll" [09/08/2005 02:55 PM]
"Host Process"="C:\WINDOWS\Fonts\svchost.exe" []
"a074caae"="C:\WINDOWS\system32\rhelhilw.dll" [08/04/2008 12:50 PM]
"BMa347f932"="C:\WINDOWS\system32\uyipfipv.dll" [08/04/2008 12:48 PM]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 06:00 AM]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [03/14/2008 07:55 AM]

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"MySpaceIM"=C:\Program Files\MySpace\IM\MySpaceIM.exe

C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\Startup\
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [3/16/2005 7:16:50 PM]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{2FA24518-5FE0-4CF1-8BA1-8EB9BE93AA50}"= C:\WINDOWS\system32\yayvUKdD.dll [08/03/2008 08:24 AM 32256]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\vtustss]
vtustss.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\yayvUKdD]
yayvUKdD.dll 08/03/2008 08:24 AM 32256 C:\WINDOWS\system32\yayvUKdD.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Authentication Packages"= msv1_0 C:\WINDOWS\system32\awtsRjii

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^DEBORAH DEBORD^Start Menu^Programs^Startup^GameSpot Download Manager.lnk]
path=C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\Startup\GameSpot Download Manager.lnk
backup=C:\WINDOWS\pss\GameSpot Download Manager.lnkStartup


[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
"C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Aim6]


[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
"C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTSVolFE]
"C:\Program Files\Creative\Mixer\CTSVolFE.exe" /r

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ddoctorv2]
"C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe" /P ddoctorv2

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSupport]
"C:\Program Files\DellSupport\DSAgnt.exe" /startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MySpaceIM]
C:\Program Files\MySpace\IM\MySpaceIM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PhotoShow Deluxe Media Manager]
C:\PROGRA~1\Comcast\COMCAS~1\data\Xtras\mssysmgr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"C:\Program Files\QuickTime\qttask.exe" -atboottime

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SigmatelSysTrayApp]
stsystra.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"Viewpoint Manager Service"=2 (0x2)
"usnjsvc"=3 (0x3)
"PnkBstrA"=2 (0x2)
"ose"=3 (0x3)
"MDM"=2 (0x2)
"idsvc"=3 (0x3)
"FreezeScreenSaver"=2 (0x2)
"DSBrokerService"=3 (0x3)
"dlcf_device"=3 (0x3)
"SiteAdvisor Service"=2 (0x2)
"sprtsvc_ddoctorv2"=2 (0x2)
"NMIndexingService"=3 (0x3)
"NBService"=3 (0x3)
"iPod Service"=3 (0x3)
"IDriverT"=3 (0x3)
"Apple Mobile Device"=2 (0x2)


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\H]
AutoRun\command- H:\LaunchU3.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\Z]
AutoRun\command- Z:\Setup.exe




-- Hosts -----------------------------------------------------------------------

127.0.0.1 007guard.com
127.0.0.1 www.007guard.com
127.0.0.1 008i.com
127.0.0.1 008k.com
127.0.0.1 www.008k.com
127.0.0.1 00hq.com
127.0.0.1 www.00hq.com
127.0.0.1 010402.com
127.0.0.1 032439.com
127.0.0.1 www.032439.com

7623 more entries in hosts file.


-- End of Deckard's System Scanner: finished at 2008-08-04 14:20:38 ------------







Deckard's System Scanner v20071014.68
Extra logfile - please post this as an attachment with your post.
--------------------------------------------------------------------------------

-- System Information ----------------------------------------------------------

Microsoft Windows XP Home Edition (build 2600) SP 2.0
Architecture: X86; Language: English

CPU 0: Intel® Pentium® D CPU 2.66GHz
CPU 1: Intel® Pentium® D CPU 2.66GHz
Percentage of Memory in Use: 40%
Physical Memory (total/avail): 1022.07 MiB / 605.83 MiB
Pagefile Memory (total/avail): 2459.02 MiB / 2016.17 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1919.49 MiB

C: is Fixed (NTFS) - 71.14 GiB total, 4.51 GiB free.
D: is CDROM (No Media)
E: is CDROM (No Media)
F: is CDROM (No Media)
G: is CDROM (No Media)

\\.\PHYSICALDRIVE0 - ST3808110AS - 74.5 GiB - 3 partitions
\PARTITION0 - Unknown - 54.88 MiB
\PARTITION1 (bootable) - Installable File System - 71.14 GiB - C:
\PARTITION2 - Unknown - 3.3 GiB



-- Security Center -------------------------------------------------------------

AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.

FirstRunDisabled is set.
AntiVirusDisableNotify is set.
FirewallDisableNotify is set.

FW: McAfee Personal Firewall v (McAfee)
AV: McAfee VirusScan v (McAfee) Disabled Outdated

[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKLM\System\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\\StubInstaller.exe"="C:\\StubInstaller.exe:*:Enabled:LimeWire swarmed installer"
"C:\\Program Files\\Xfire\\xfire.exe"="C:\\Program Files\\Xfire\\xfire.exe:*:Enabled:Xfire"
"C:\\Program Files\\Microsoft Games\\Halo Trial\\halo.exe"="C:\\Program Files\\Microsoft Games\\Halo Trial\\halo.exe:*:Enabled:Halo"
"C:\\WINDOWS\\system32\\mmc.exe"="C:\\WINDOWS\\system32\\mmc.exe:*:Enabled:Microsoft Management Console"
"C:\\Program Files\\LimeWire\\LimeWire.exe"="C:\\Program Files\\LimeWire\\LimeWire.exe:*:Enabled:LimeWire"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\Program Files\\iTunes\\iTunes.exe"="C:\\Program Files\\iTunes\\iTunes.exe:*:Enabled:iTunes"
"C:\\Program Files\\Electronic Arts\\Battlefield 2142\\BF2142.exe"="C:\\Program Files\\Electronic Arts\\Battlefield 2142\\BF2142.exe:*:Enabled:Battlefield 2"
"C:\\Program Files\\Trillian\\trillian.exe"="C:\\Program Files\\Trillian\\trillian.exe:*:Enabled:Trillian"
"C:\\Program Files\\SmartFTP Client\\SmartFTP.exe"="C:\\Program Files\\SmartFTP Client\\SmartFTP.exe:*:Enabled:SmartFTP Client 3.0"
"C:\\Program Files\\Common Files\\McAfee\\MNA\\McNASvc.exe"="C:\\Program Files\\Common Files\\McAfee\\MNA\\McNASvc.exe:*:Enabled:McAfee Network Agent"
"C:\\Program Files\\MySpace\\IM\\MySpaceIM.exe"="C:\\Program Files\\MySpace\\IM\\MySpaceIM.exe:*:Enabled:MySpaceIM"


-- Environment Variables -------------------------------------------------------

ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\DEBORAH DEBORD\Application Data
CLASSPATH=.;C:\Program Files\Java\jre1.6.0_03\lib\ext\QTJava.zip
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=DEBBIE
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\DEBORAH DEBORD
LOGONSERVER=\\DEBBIE
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\system32\wbem;C:\Program Files\ATI Technologies\ATI Control Panel;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Adobe\AGL;C:\Program Files\QuickTime\QTSystem\;;C:\PROGRA~1\COMMON~1\MUVEET~1\030625;C:\PROGRA~1\COMMON~1\MUVEET~1\030625;C:\PROGRA~1\COMMON~1\MUVEET~1\030625
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 4 Stepping 7, GenuineIntel
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=0407
ProgramFiles=C:\Program Files
PROMPT=$P$G
QTJAVA=C:\Program Files\Java\jre1.6.0_03\lib\ext\QTJava.zip
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\DEBORA~1\LOCALS~1\Temp
TMP=C:\DOCUME~1\DEBORA~1\LOCALS~1\Temp
USERDOMAIN=DEBBIE
USERNAME=DEBORAH DEBORD
USERPROFILE=C:\Documents and Settings\DEBORAH DEBORD
windir=C:\WINDOWS
__COMPAT_LAYER=EnableNXShowUI


-- User Profiles ---------------------------------------------------------------

DEBORAH DEBORD (admin)
Administrator (admin)


-- Add/Remove Programs ---------------------------------------------------------

--> C:\Program Files\Nero\Nero 7\nero\uninstall\UNNERO.exe /UNINSTALL
--> C:\WINDOWS\IsUninst.exe -fC:\WINDOWS\orun32.isu
--> C:\WINDOWS\UNNeroBackItUp.exe /UNINSTALL
--> C:\WINDOWS\UNNeroMediaHome.exe /UNINSTALL
--> C:\WINDOWS\UNNeroShowTime.exe /UNINSTALL
--> C:\WINDOWS\UNNeroVision.exe /UNINSTALL
--> C:\WINDOWS\UNRecode.exe /UNINSTALL
--> MsiExec.exe /I{403EF592-953B-4794-BCEF-ECAB835C2095}
--> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7E9BE6D1-680B-49B2-A2B0-CBC32D20DF04}\setup.exe" -l0x9
--> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A82F10CB-18B5-4EAC-AEF2-FA49CD565626}\setup.exe" -l0x9
--> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
725plc32 --> MsiExec.exe /I{162D2FB8-60A3-4871-B6A1-5C744CD34FF5}
Adobe Bridge 1.0 --> MsiExec.exe /I{B74D4E10-1033-0000-0000-000000000001}
Adobe Common File Installer --> MsiExec.exe /I{8EDBA74D-0686-4C99-BFDD-F894678E5B39}
Adobe Flash Player ActiveX --> C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Help Center 1.0 --> MsiExec.exe /I{E9787678-1033-0000-8E67-000000000001}
Adobe Photoshop CS2 --> msiexec /I {236BB7C4-4419-42FD-0409-1E257A25E34D}
Adobe Reader 8.1.2 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81200000003}
Adobe Shockwave Player --> C:\WINDOWS\system32\Macromed\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Macromed\SHOCKW~1\Install.log
Adobe Stock Photos 1.0 --> MsiExec.exe /I{786C5747-1033-0000-B58E-000000000001}
AIM 6 --> C:\Program Files\AIM6\uninst.exe
AOL Uninstaller (Choose which Products to Remove) --> C:\Program Files\Common Files\AOL\uninstaller.exe
AOLIcon --> MsiExec.exe /I{62BD0AE0-4EB1-4BBB-8F43-B6400C8FEB2C}
Apple Mobile Device Support --> MsiExec.exe /I{44734179-8A79-4DEE-BB08-73037F065543}
Apple Software Update --> MsiExec.exe /I{02DFF6B1-1654-411C-8D7B-FD6052EF016F}
Ask Toolbar --> rundll32 C:\PROGRA~1\AskSBar\bar\1.bin\AskSBar.dll,O
ATI - Software Uninstall Utility --> C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Control Panel --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{0BEDBD4E-2D34-47B5-9973-57E62B29307C}\setup.exe"
ATI Display Driver --> rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
AVG Anti-Spyware 7.5 --> C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Uninstall.exe
Battlefield 2142 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{ED50ECE9-EC54-4C05-B5ED-EE4741A9F2EC}\setup.exe" -l0x9 -removeonly
CEP - Color Enable Package --> "C:\PROGRA~1\EAGAME~1\THESIM~1\zCEP_Uninstaller\unins000.exe"
Comcast PhotoShow Deluxe 4 --> "C:\Program Files\Comcast\Comcast PhotoShow 4\data\Xtras\Uninstall.exe"
Conexant D850 56K V.9x DFVc Modem --> C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200F14F1\HXFSETUP.EXE -U -Idel200fk.inf
ContextEnhancer --> C:\Program Files\ContextEnhancer\uninstall.exe
Corel Photo Album 6 --> MsiExec.exe /X{8A9B8148-DDD7-448F-BD6C-358386D32354}
Dell CinePlayer --> MsiExec.exe /I{43CAC9A1-1993-4F65-9096-7C9AFC2BBF54}
Dell Color Printer 725 --> C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\dlcfUNST.EXE -NOLICENSE
Dell Digital Jukebox Driver --> C:\Program Files\Dell\Digital Jukebox Drivers\DrvUnins.exe /s
Dell Driver Reset Tool --> MsiExec.exe /I{5905F42D-3F5F-4916-ADA6-94A3646AEE76}
Dell Game Console --> "C:\Program Files\WildTangent\Apps\Dell Game Console\Uninstall.exe"
Dell Media Experience --> MsiExec.exe /I{AC0EE5B0-A8FB-4D0A-AF03-2EDC518F841B}
Dell Support Center --> MsiExec.exe /I{B8C54AB1-7E1A-40E8-B794-EDB6E8921F3A}
DellSupport --> MsiExec.exe /X{7EFA5E6F-74F7-4AFB-8AEA-AA790BD3A76D}
Desktop Doctor --> MsiExec.exe /I{D87149B3-7A1D-4548-9CBF-032B791E5908}
Documentation & Support Launcher --> MsiExec.exe /X{B0DF58A2-40DF-4465-AA56-38623EC9938C}
EducateU --> MsiExec.exe /I{A683A2C0-821C-486F-858C-FA634DB5E864}
ELIcon --> MsiExec.exe /I{4667B940-BB01-428B-986E-A0CC46497BF7}
Flash FLV Movie Ripper & Player --> C:\WINDOWS\system32\GKSUI20.EXE C:\Program Files\Flash FLV Movie Ripper & Player V1.2.1\UninstallF386.DAT
Games, Music, & Photos Launcher --> MsiExec.exe /X{B6884A07-0305-47AE-9969-8F26FADC17DE}
High Definition Audio Driver Package - KB835221 --> C:\WINDOWS\$NtUninstallKB835221WXP$\spuninst\spuninst.exe
HijackThis 2.0.2 --> "C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399) --> "C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Intel® PRO Network Connections Drivers --> Prounstl.exe
Intel® PROSet for Wired Connections --> MsiExec.exe /I{83F793B5-8BBF-42FD-A8A6-868CB3E2AAEA}
iTunes --> MsiExec.exe /I{80FD852F-5AAC-4129-B931-06AAFFA43138}
Java™ 6 Update 3 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160030}
K-Lite Codec Pack 3.5.7 Full --> "C:\Program Files\K-Lite Codec Pack\unins000.exe"
Kaspersky Online Scanner --> C:\WINDOWS\system32\Kaspersky Lab\Kaspersky Online Scanner\kavuninstall.exe
Learn2 Player (Uninstall Only) --> C:\Program Files\Learn2.com\StRunner\stuninst.exe
LimeWire 4.16.6 --> "C:\Program Files\LimeWire\uninstall.exe"
Macromedia Dreamweaver 8 --> MsiExec.exe /I{0837A661-FEC3-48B3-876C-91E7D32048A9}
Macromedia Extension Manager --> MsiExec.exe /I{5546CDB5-2CE2-498B-B059-5B3BF81FC41F}
Macromedia Flash 8 --> MsiExec.exe /I{2BD5C305-1B27-4D41-B690-7A61172D2FEB}
Macromedia Flash 8 Video Encoder --> MsiExec.exe /X{8BF2C401-02CE-424D-BC26-6C4F9FB446B6}
Macromedia Flash Player 8 Plugin --> MsiExec.exe /X{91057632-CA70-413C-B628-2D3CDBBB906B}
McAfee SecurityCenter --> C:\Program Files\McAfee\MSC\mcuninst.exe
McAfee Uninstaller --> C:\PROGRA~1\McAfee.com\Shared\mcappins.exe /v=3 /uninstall=1 /interact=1 /script_proactive=0 /start=c:\PROGRA~1\mcafee.com\agent\uninst\comrem.dll::uninstall.htm
MCU --> MsiExec.exe /I{D2988E9B-C73F-422C-AD4B-A66EBE257120}
Mickey Mouse Toddler --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{00EE8A81-4652-4672-BAD6-8D8CAC891507}\setup.exe" -l0x9 Mickey Mouse Toddler
Microsoft Base Smart Card Cryptographic Service Provider Package --> "C:\WINDOWS\$NtUninstallbasecsp$\spuninst\spuninst.exe"
Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5 --> "C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
Microsoft Office Basic Edition 2003 --> MsiExec.exe /I{91130409-6000-11D3-8CFE-0150048383C9}
Microsoft Office XP Professional with FrontPage --> MsiExec.exe /I{90280409-6000-11D3-8CFE-0050048383C9}
Microsoft Plus! Digital Media Edition Installer --> MsiExec.exe /X{6E45BA47-383C-4C1E-8ED0-0D4845C293D7}
Microsoft Plus! Photo Story 2 LE --> MsiExec.exe /X{0EB5D9B7-8E6C-4A9E-B74F-16B7EE89A67B}
Microsoft Publisher 2002 --> MsiExec.exe /I{90190409-6000-11D3-8CFE-0050048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Mixer --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7E9BE6D1-680B-49B2-A2B0-CBC32D20DF04}\setup.exe" -l0x9 /remove
Modem Helper --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{7F142D56-3326-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanel
Motorola Driver Installation --> MsiExec.exe /I{52F6065D-27D0-4680-B2BC-C49C9A252459}
Motorola Phone Tools --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{BAD8CA9C-77C0-4663-B00B-A8D3B13C341B}\setup.exe" -l0x9 -removeonly
Mozilla Firefox (1.5.0.12) --> C:\Program Files\Mozilla Firefox\uninstall\uninstall.exe /ua "1.5.0.12 (en-US)"
MSN --> C:\Program Files\MSN\MsnInstaller\msninst.exe /Action:ARP
MSXML 6.0 Parser (KB933579) --> MsiExec.exe /I{0A869A65-8C94-4F7C-A5C7-972D3C8CED9E}
Musicmatch® Jukebox --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{85D3CC30-8859-481A-9654-FD9B74310BEF}\setup.exe" -l0x9 -uninst
muvee autoProducer 6.1 --> C:\Program Files\InstallShield Installation Information\{7B312BFD-6C04-4409-AB6F-DD41CCD67463}\setup.exe -runfromtemp -l0x0009 -removeonly
muvee corePack --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1B0BD0D6-D7D1-4D49-9815-5A85081ECC45}\Setup.exe" -l0x9
MySpaceIM --> C:\Program Files\MySpace\IM\Uninstall.exe
Nero 7 Essentials --> MsiExec.exe /X{2E1A6A90-62A6-4862-9962-81DBFD001033}
neroxml --> MsiExec.exe /I{56C049BE-79E9-4502-BEA7-9754A3E60F9B}
NetWaiting --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\setup.exe" -l0x9 ControlPanelAnyText
PlayMP3z --> C:\Program Files\PlayMP3z\uninstall.exe
QuickTime --> MsiExec.exe /I{BFD96B89-B769-4CD6-B11E-E79FFD46F067}
RealPlayer Basic --> C:\Program Files\Common Files\Real\Update\\rnuninst.exe RealNetworks|RealPlayer|6.0
Security Update for Step By Step Interactive Training (KB898458) --> "C:\WINDOWS\$NtUninstallKB898458$\spuninst\spuninst.exe"
Security Update for Step By Step Interactive Training (KB923723) --> "C:\WINDOWS\$NtUninstallKB923723$\spuninst\spuninst.exe"
SigmaTel Audio --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}\setup.exe" -l0x9 -remove -removeonly
SmartFTP Client --> MsiExec.exe /I{6F23C1A3-9F62-470C-BD12-B83F04E67865}
SmartFTP Client 2.5 Setup Files (remove only) --> C:\Program Files\SmartFTP Client 2.5 Setup Files\uninst-sftp.exe
SmartFTP Client 3.0 Setup Files (remove only) --> C:\Program Files\SmartFTP Client 3.0 Setup Files\uninst-sftp.exe
Sonic Activation Module --> MsiExec.exe /I{5B6BE547-21E2-49CA-B2E2-6A5F470593B1}
Spybot - Search & Destroy --> "C:\Program Files\Spybot - Search & Destroy\unins000.exe"
TeamSpeak 2 RC2 --> "C:\Program Files\Teamspeak2_RC2\unins000.exe"
The Book of Pooh --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{4C612230-5534-4DC3-B721-B802A83D55C3}\setup.exe" -l0x9 The Book of Pooh
The Sims 2 Family Fun Stuff --> C:\Program Files\EA GAMES\The Sims 2 Family Fun Stuff\EAUninstall.exe
The Sims 2 Glamour Life Stuff --> C:\Program Files\EA GAMES\The Sims 2 Glamour Life Stuff\EAUninstall.exe
The Sims 2 Open For Business --> C:\Program Files\EA GAMES\The Sims 2 Open For Business\EAUninstall.exe
The Sims 2 Pets --> C:\Program Files\EA GAMES\The Sims 2 Pets\EAUninstall.exe
The Sims 2 University --> C:\Program Files\EA GAMES\The Sims 2 University\EAUninstall.exe
The Sims™ 2 Bon Voyage --> C:\Program Files\EA GAMES\The Sims 2 Bon Voyage\EAUninstall.exe
The Sims™ 2 Celebration! Stuff --> C:\Program Files\EA GAMES\The Sims 2 Celebration! Stuff\EAUninstall.exe
The Sims™ 2 Deluxe --> C:\Program Files\EA GAMES\The Sims 2 Deluxe\EAUninstall.exe
The Sims™ 2 FreeTime --> C:\Program Files\EA GAMES\The Sims 2 FreeTime\EAUninstall.exe
The Sims™ 2 H&M® Fashion Stuff --> C:\Program Files\EA GAMES\The Sims 2 H&M® Fashion Stuff\EAUninstall.exe
The Sims™ 2 Seasons --> C:\Program Files\EA GAMES\The Sims 2 Seasons\EAUninstall.exe
The Sims™ 2 Teen Style Stuff --> C:\Program Files\EA GAMES\The Sims 2 Teen Style Stuff\EAUninstall.exe
Trillian --> C:\Program Files\Trillian\trillian.exe /uninstall
TSR Wizard Manager --> MsiExec.exe /I{FD78E9A3-0016-4F5E-900F-FFFB5DC1835E}
URGE --> MsiExec.exe /I{8BBF6DFD-0AD9-43A7-9FBD-BF065E3866AF}
VCRedistSetup --> MsiExec.exe /I{3921A67A-5AB1-4E48-9444-C71814CF3027}
Ventrilo Client --> MsiExec.exe /I{789289CA-F73A-4A16-A331-54D498CE069F}
Viewpoint Media Player --> C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
Vista Codec Package --> MsiExec.exe /I{F9FD80CE-0448-4D4F-8BCD-77FC514C3F99}
WebCyberCoach 3.2 Dell --> "C:\Program Files\WebCyberCoach\b_Dell\WCC_Wipe.exe" "WebCyberCoach ext\wtrb" /inf "engine.inf,RealUninstallSection,,4" /infcfg "enginecf.inf,RealUninstallSection,,4"
Windows Imaging Component --> "C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Live Messenger --> MsiExec.exe /I{571700F0-DB9D-4B3A-B03D-35A14BB5939F}
Windows Live Sign-in Assistant --> MsiExec.exe /I{49672EC2-171B-47B4-8CE7-50D7806360D7}
Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Presentation Foundation --> MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Winnie the Pooh Toddler --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{520E8334-F4F7-4DB5-AA74-E610CB19E59A}\setup.exe" -l0x9
WinRAR archiver --> C:\Program Files\WinRAR\uninstall.exe
WinZip 11.1 --> MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}
Xfire (remove only) --> "C:\Program Files\Xfire\uninst.exe"
XML Paper Specification Shared Components Pack 1.0 -->


-- Application Event Log -------------------------------------------------------

Event Record #/Type7996 / Error
Event Submitted/Written: 08/04/2008 02:19:02 PM
Event ID/Source: 5051 / McLogEvent
Event Description:
A thread in process C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe took longer than 90000 ms to complete a request.

The process will be terminated.
Thread id : 4068 (0xfe4)

Thread address : 0x7C90EB94

Thread message :

Build VSCORE.13.3.2.116 / 5200.2160
Object being scanned = \Device\HarddiskVolume2\Documents and Settings\DEBORAH DEBORD\Desktop\wic_demo_v2.exe
by C:\WINDOWS\explorer.exe
4(0)(0)
4(0)(0)
7200(0)(0)
7595(0)(0)
7005(0)(0)
7004(0)(0)
5006(0)(0)
5004(0)(0)

Event Record #/Type7994 / Error
Event Submitted/Written: 08/04/2008 02:14:54 PM
Event ID/Source: 5051 / McLogEvent
Event Description:
A thread in process C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe took longer than 90000 ms to complete a request.

The process will be terminated.
Thread id : 2212 (0x8a4)

Thread address : 0x7C90EB94

Thread message :

Build VSCORE.13.3.2.116 / 5200.2160
Object being scanned = \Device\HarddiskVolume2\Documents and Settings\DEBORAH DEBORD\Desktop\wic_demo_v2.exe
by C:\WINDOWS\explorer.exe
4(0)(0)
4(0)(0)
7200(0)(0)
7595(0)(0)
7005(0)(0)
7004(0)(0)
5006(0)(0)
5004(0)(0)

Event Record #/Type7993 / Error
Event Submitted/Written: 08/04/2008 02:12:51 PM
Event ID/Source: 1000 / Application Error
Event Description:
Faulting application iexplore.exe, version 7.0.6000.16674, faulting module unknown, version 0.0.0.0, fault address 0x056b17e5.
Processing media-specific event for [iexplore.exe!ws!]

Event Record #/Type7990 / Error
Event Submitted/Written: 08/04/2008 00:48:11 PM
Event ID/Source: 5051 / McLogEvent
Event Description:
A thread in process C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe took longer than 90000 ms to complete a request.

The process will be terminated.
Thread id : 3112 (0xc28)

Thread address : 0x7C90EB94

Thread message :

Build VSCORE.13.3.2.116 / 5200.2160
Object being scanned = \Device\HarddiskVolume2\Documents and Settings\DEBORAH DEBORD\Desktop\wic_demo_v2.exe
by C:\WINDOWS\explorer.exe
4(0)(0)
4(0)(0)
7200(0)(0)
7595(0)(0)
7005(0)(0)
7004(0)(0)
5006(0)(0)
5004(0)(0)

Event Record #/Type7982 / Error
Event Submitted/Written: 08/04/2008 11:35:15 AM
Event ID/Source: 5051 / McLogEvent
Event Description:
A thread in process C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe took longer than 90000 ms to complete a request.

The process will be terminated.
Thread id : 2904 (0xb58)

Thread address : 0x7C90EB94

Thread message :

Build VSCORE.13.3.2.116 / 5200.2160
Object being scanned = \Device\HarddiskVolume2\Documents and Settings\DEBORAH DEBORD\Desktop\wic_demo_v2.exe
by C:\WINDOWS\explorer.exe
4(0)(0)
4(0)(0)
7200(0)(0)
7595(0)(0)
7005(0)(0)
7004(0)(0)
5006(0)(0)
5004(0)(0)



-- Security Event Log ----------------------------------------------------------

No Errors/Warnings found.


-- System Event Log ------------------------------------------------------------

Event Record #/Type42057 / Error
Event Submitted/Written: 08/04/2008 02:19:11 PM
Event ID/Source: 7034 / Service Control Manager
Event Description:
The McAfee Real-time Scanner service terminated unexpectedly. It has done this 3 time(s).

Event Record #/Type42055 / Error
Event Submitted/Written: 08/04/2008 02:14:57 PM
Event ID/Source: 7031 / Service Control Manager
Event Description:
The McAfee Real-time Scanner service terminated unexpectedly. It has done this 2 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

Event Record #/Type42054 / Error
Event Submitted/Written: 08/04/2008 00:49:22 PM
Event ID/Source: 7032 / Service Control Manager
Event Description:
The Service Control Manager tried to take a corrective action (Restart the service) after the unexpected termination of the McAfee Real-time Scanner service, but this action failed with the following error:
%%1056

Event Record #/Type42051 / Error
Event Submitted/Written: 08/04/2008 00:48:13 PM
Event ID/Source: 7031 / Service Control Manager
Event Description:
The McAfee Real-time Scanner service terminated unexpectedly. It has done this 1 time(s). The following corrective action will be taken in 60000 milliseconds: Restart the service.

Event Record #/Type42043 / Error
Event Submitted/Written: 08/04/2008 00:46:10 PM
Event ID/Source: 7000 / Service Control Manager
Event Description:
The Application Layer Gateway Service service failed to start due to the following error:
%%1053



-- End of Deckard's System Scanner: finished at 2008-08-04 14:20:38 ------------

BC AdBot (Login to Remove)

 


m

#2 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:10:16 PM

Posted 05 August 2008 - 07:00 AM

Hi,

From your log:

FW: McAfee Personal Firewall v (McAfee)
AV: McAfee VirusScan v (McAfee) Disabled Outdated

Your McAfee appears to be outdated and disabled. So what I suggest first is to uninstall McAfee, reboot afterwards and then install a working Antivirus instead. Because as a matter of fact, that's the first step you should do if your computer is infected, is to scan with an up to date Antivirus.

After you have uninstalled your McAfee, reboot.
Then,

* Please install Avira Antivirus: http://www.free-av.com/
This is a free Antivirus.

Perform a full scan with Avira and let it delete everything it is finding.
Then reboot.
After reboot, open your Avira and select "reports".
There doubleclick the report from the Full scan you have done. Click the "Report File" button and copy and paste this report in your next reply together with a new HijackThislog.
Then we'll start from there, because it really makes no sense otherwise that we clean this up manually if an Antivirusscan is not present which should be able to deal with most and prevent further reinfection.
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#3 April Bryant

April Bryant
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:16 PM

Posted 06 August 2008 - 11:18 AM

Well, that's odd about McAfee... considering the subscription comes with my internet, free...

I've uninstalled McAfee, and have gone to the AV site to download the new AV software, but this virus or whatever isn't letting the download start.

Should I try downloading it in safemode?

#4 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:10:16 PM

Posted 06 August 2008 - 11:31 AM

Yes, try it from safe mode.

Also do next first..

* Download: HostsXpert
Unzip hoster to an own folder, eg C:\HostsXpert
Start HostsExpert.exe, click 'Restore MS Hosts file' and click OK.
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#5 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:10:16 PM

Posted 06 August 2008 - 11:43 AM

Hang on.. I just tried myself and the Avira download is indeed really slow here as well.
So try another Antivirus instead..

http://free.avg.com/ww.download-avg-anti-virus-free-edition
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#6 April Bryant

April Bryant
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:16 PM

Posted 06 August 2008 - 12:40 PM

Well, I tried the hostsxpert and it gives me an error when I try to restore. "Error: Cannot create file C:\windows\system32\drivers\etc\hosts"

It gives me that error both in normal and safe modes.

I'm going to try the link for the avg now

#7 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:10:16 PM

Posted 06 August 2008 - 12:49 PM

No worries about your hostsfile... It could be locked by a third party Security application, because I see that a lot of entries were added there in your above log. Only Security tools add these and have the option to lock the hostsfile.

If AVG doesn't work either, just proceed with next step instead..

* Please visit this webpage for instructions for downloading and running ComboFix:

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

This includes installing the Windows XP Recovery Console in case you have not installed it yet.

Post the log from ComboFix when you've accomplished that, along with a new HijackThis log.
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#8 April Bryant

April Bryant
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:16 PM

Posted 06 August 2008 - 04:20 PM

OK!!! FINALLY got the AVG downloaded.. what a nightmare. Had to download in safe mode and install in normal mode.

I'll post the AVG scan report, then the HJT log, then the Combofix log.

*****AVG Scan Report*****

Scan "Scan whole computer" was finished.
Infections found:;"21"
Infected objects removed or healed:;"21"
Not removed or healed:;"0"
Spyware found:;"4"
Spyware removed:;"4"
Not removed:;"0"
Warnings count:;"78"
Information count:;"0"
Scan started:;"Wednesday, August 06, 2008, 2:38:32 PM"
Scan finished:;"Wednesday, August 06, 2008, 5:13:02 PM (2 hour(s) 34 minute(s) 30 second(s))"
Total object scanned:;"1198972"
User who launched the scan:;"DEBORAH DEBORD"

Infections
File;"Infection";"Result"
C:\WINDOWS\Fonts\a.zip;"Trojan horse Dropper.Generic.RGQ";"Moved to Virus Vault"
C:\WINDOWS\Fonts\a.zip:\Setup.exe;"Trojan horse Dropper.Generic.RGQ";"Moved to Virus Vault"
C:\WINDOWS\system32\awtsRjii.dll;"Trojan horse Generic11.DHX";"Reboot is required to finish the action"
C:\WINDOWS\system32\lsass.exe (704);"Trojan horse Generic11.DHX";"Reboot is required to finish the action"
C:\WINDOWS\system32\awtsRjii.dll;"Trojan horse Generic11.DHX";"Moved to Virus Vault"
C:\WINDOWS\system32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content\9CD8982C888AB544945893084BD7523A;"Virus identified JS/Downloader.Agent";"Moved to Virus Vault"
C:\WINDOWS\system32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content\B681B8816EE79EAEAA5CA7DA9EC0DC58;"Virus identified JS/Downloader.Agent";"Moved to Virus Vault"
C:\WINDOWS\system32\config\systemprofile\Application Data\Microsoft\CryptnetUrlCache\Content\DF1365D71945475FBDA282D5BBA2B7A0;"Virus identified JS/Downloader.Agent";"Moved to Virus Vault"
C:\WINDOWS\system32\eugpkyvm.dll;"Trojan horse Generic11.FQW";"Moved to Virus Vault"
C:\WINDOWS\system32\winlogon.exe (648);"Trojan horse Generic11.FFX";"Reboot is required to finish the action"
C:\WINDOWS\system32\fccaBTji.dll;"Trojan horse Generic11.FFX";"Moved to Virus Vault"
C:\WINDOWS\system32\fcnrvc.dll;"Trojan horse Generic11.EZQ";"Moved to Virus Vault"
C:\WINDOWS\system32\jpibmdvm.dll;"Trojan horse Generic11.FQX";"Moved to Virus Vault"
C:\WINDOWS\system32\mmebhjiw.dll;"Trojan horse Generic11.DGS";"Moved to Virus Vault"
C:\WINDOWS\system32\nsb3BA.dll;"Trojan horse Clicker.MNA";"Moved to Virus Vault"
C:\WINDOWS\system32\nsb66.dll;"Trojan horse NaviPromo.N";"Moved to Virus Vault"
C:\WINDOWS\system32\pjvhwpaw.dll;"Trojan horse Generic11.EZQ";"Moved to Virus Vault"
C:\WINDOWS\system32\qpyjvs.dll;"Trojan horse Generic11.FQW";"Moved to Virus Vault"
C:\WINDOWS\system32\uyipfipv.dll;"Trojan horse Generic11.EXJ";"Moved to Virus Vault"
C:\WINDOWS\system32\yayvUKdD.dll;"Trojan horse Generic11.FFX";"Reboot is required to finish the action"
C:\WINDOWS\system32\yayvUKdD.dll;"Trojan horse Generic11.FFX";"Moved to Virus Vault"

Spyware
File;"Infection";"Result"
C:\Program Files\ContextEnhancer\ContextEnhancer-2.dll;"Adware Generic2.ADBK";"Moved to Virus Vault"
C:\Program Files\DAEMON Tools Lite\uninst.exe;"Adware Generic3.BHV";"Moved to Virus Vault"
C:\Program Files\DAEMON Tools Lite\uninst.exe:\$JK\setuphlp.dll;"Adware Generic3.BHV";"Moved to Virus Vault"
C:\WINDOWS\system32\WhoisCL.exe;"Potentially harmful program HackTool.DHO";"Moved to Virus Vault"

Warnings
File;"Infection";"Result"
C:\Documents and Settings\Administrator\Cookies\administrator@2o7[1].txt;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@2o7[1].txt:\2o7.net.e7e7d917;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@atdmt[2].txt;"Found Tracking cookie.Atdmt";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@atdmt[2].txt:\atdmt.com.b3e33b5f;"Found Tracking cookie.Atdmt";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@doubleclick[1].txt;"Found Tracking cookie.Doubleclick";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@doubleclick[1].txt:\doubleclick.net.bf396750;"Found Tracking cookie.Doubleclick";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@revsci[1].txt;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@revsci[1].txt:\revsci.net.2df99d79;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@revsci[1].txt:\revsci.net.44927ec;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\Administrator\Cookies\administrator@revsci[1].txt:\revsci.net.e9dbeb91;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@2o7[1].txt;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@2o7[1].txt:\2o7.net.e7e7d917;"Found Tracking cookie.2o7";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adengage[1].txt;"Found Tracking cookie.Adengage";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adengage[1].txt:\adengage.com.411a57fb;"Found Tracking cookie.Adengage";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adengage[1].txt:\adengage.com.6b2a3f1;"Found Tracking cookie.Adengage";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adengage[1].txt:\adengage.com.90cfe1c9;"Found Tracking cookie.Adengage";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adopt.euroclick[2].txt;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adopt.euroclick[2].txt:\adopt.euroclick.com.17044b51;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adopt.euroclick[2].txt:\adopt.euroclick.com.6d7740f7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adopt.euroclick[2].txt:\adopt.euroclick.com.891542da;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adopt.euroclick[2].txt:\adopt.euroclick.com.8b1bd7bc;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adopt.euroclick[2].txt:\adopt.euroclick.com.fb764ef7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@adopt.euroclick[2].txt:\adopt.euroclick.com.ffe11db7;"Found Tracking cookie.Euroclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@advertising[5].txt;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@advertising[5].txt:\advertising.com.1820df7a;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@advertising[5].txt:\advertising.com.203aa218;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@advertising[5].txt:\advertising.com.525a5fb9;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@advertising[5].txt:\advertising.com.b624fa46;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@advertising[5].txt:\advertising.com.f62113d5;"Found Tracking cookie.Advertising";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@atdmt[2].txt;"Found Tracking cookie.Atdmt";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@atdmt[2].txt:\atdmt.com.b3e33b5f;"Found Tracking cookie.Atdmt";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@bluestreak[2].txt;"Found Tracking cookie.Bluestreak";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@bluestreak[2].txt:\bluestreak.com.bf396750;"Found Tracking cookie.Bluestreak";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@bs.serving-sys[1].txt;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@bs.serving-sys[1].txt:\bs.serving-sys.com.5bf1f00f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@doubleclick[1].txt;"Found Tracking cookie.Doubleclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@doubleclick[1].txt:\doubleclick.net.bf396750;"Found Tracking cookie.Doubleclick";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@findwhat[1].txt;"Found Tracking cookie.Findwhat";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@findwhat[1].txt:\findwhat.com.539b0606;"Found Tracking cookie.Findwhat";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@hypertracker[1].txt;"Found Tracking cookie.Hypertracker";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@hypertracker[1].txt:\hypertracker.com.f9487006;"Found Tracking cookie.Hypertracker";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@questionmarket[1].txt;"Found Tracking cookie.Questionmarket";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@questionmarket[1].txt:\questionmarket.com.3eb5a9f1;"Found Tracking cookie.Questionmarket";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@questionmarket[1].txt:\questionmarket.com.4dd5e426;"Found Tracking cookie.Questionmarket";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt:\realmedia.com.68087763;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt:\realmedia.com.6b2e2a72;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt:\realmedia.com.9514c147;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt:\realmedia.com.a2b49f1a;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt:\realmedia.com.a88d0a12;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt:\realmedia.com.bcf95324;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt:\realmedia.com.bf4a1fa7;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@realmedia[2].txt:\realmedia.com.dc841856;"Found Tracking cookie.Realmedia";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@revsci[2].txt;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@revsci[2].txt:\revsci.net.2df99d79;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@revsci[2].txt:\revsci.net.44927ec;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@revsci[2].txt:\revsci.net.55564293;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@revsci[2].txt:\revsci.net.e9dbeb91;"Found Tracking cookie.Revsci";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@serving-sys[2].txt;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@serving-sys[2].txt:\serving-sys.com.255d6f2f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@serving-sys[2].txt:\serving-sys.com.400f83f;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@serving-sys[2].txt:\serving-sys.com.4b416ef8;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@serving-sys[2].txt:\serving-sys.com.606c3d3b;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@serving-sys[2].txt:\serving-sys.com.6a1cf9e8;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@serving-sys[2].txt:\serving-sys.com.c9034af6;"Found Tracking cookie.Serving-sys";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@trafficmp[3].txt;"Found Tracking cookie.Trafficmp";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@trafficmp[3].txt:\trafficmp.com.37644bdb;"Found Tracking cookie.Trafficmp";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@trafficmp[3].txt:\trafficmp.com.a00e30b4;"Found Tracking cookie.Trafficmp";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@trafficmp[3].txt:\trafficmp.com.ae53b8b;"Found Tracking cookie.Trafficmp";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@trafficmp[3].txt:\trafficmp.com.e2e71e33;"Found Tracking cookie.Trafficmp";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@trafficmp[3].txt:\trafficmp.com.f3e5803e;"Found Tracking cookie.Trafficmp";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@zedo[1].txt;"Found Tracking cookie.Zedo";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@zedo[1].txt:\zedo.com.14a38114;"Found Tracking cookie.Zedo";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@zedo[1].txt:\zedo.com.775ee79c;"Found Tracking cookie.Zedo";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@zedo[1].txt:\zedo.com.a5b6a132;"Found Tracking cookie.Zedo";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@zedo[1].txt:\zedo.com.c1dd09f2;"Found Tracking cookie.Zedo";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@zedo[1].txt:\zedo.com.cef1c7af;"Found Tracking cookie.Zedo";"Potentially dangerous object"
C:\Documents and Settings\DEBORAH DEBORD\Cookies\deborah_debord@zedo[1].txt:\zedo.com.dd15d628;"Found Tracking cookie.Zedo";"Potentially dangerous object"

#9 April Bryant

April Bryant
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:16 PM

Posted 06 August 2008 - 04:23 PM

Deckard's System Scanner v20071014.68
Run by DEBORAH DEBORD on 2008-08-06 17:21:25
Computer is in Normal Mode.
--------------------------------------------------------------------------------

Percentage of Memory in Use: 90% (more than 75%).
System Drive C: has 4.07 GiB (less than 15%) free.


-- HijackThis (run as DEBORAH DEBORD.exe) --------------------------------------

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:22:05 PM, on 8/6/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DAEMON Tools Lite\daemon.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AVG\AVG8\avgtray.exe
C:\Program Files\AVG\AVG8\avgui.exe
C:\Program Files\EA GAMES\The Sims 2 FreeTime\TSBin\Sims2EP7.exe
C:\Program Files\internet explorer\iexplore.exe
C:\PROGRA~1\AVG\AVG8\aAvgApi.exe
C:\Program Files\internet explorer\iexplore.exe
C:\Documents and Settings\DEBORAH DEBORD\Desktop\dss.exe
C:\PROGRA~1\TRENDM~1\HIJACK~1\DEBORA~1.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Comcast
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: (no name) - {2FA24518-5FE0-4CF1-8BA1-8EB9BE93AA50} - C:\WINDOWS\system32\yayvUKdD.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: adssite - {54228b51-c6e7-9dec-bbe4-e8613c152c17} - C:\WINDOWS\system32\nsn110D.dll (file missing)
O2 - BHO: (no name) - {640692F9-1882-41C5-ACFF-48F94CAA248D} - C:\WINDOWS\system32\mlljk.dll (file missing)
O2 - BHO: {eac0a7ed-f758-3da8-4d64-aa09cacee437} - {734eecac-90aa-46d4-8ad3-857fde7a0cae} - C:\WINDOWS\system32\qfaopx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: (no name) - {BC730A29-A729-452E-AD8C-ADAA17E20C10} - C:\WINDOWS\system32\mllji.dll (file missing)
O2 - BHO: (no name) - {E70F149C-813E-4E19-86F4-30E5E6D4A72E} - C:\WINDOWS\system32\awtsRjii.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Ask Toolbar - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [DLCFCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [Host Process] C:\WINDOWS\Fonts\svchost.exe
O4 - HKLM\..\Run: [a074caae] rundll32.exe "C:\WINDOWS\system32\rxpiabtp.dll",b
O4 - HKLM\..\Run: [BMa347f932] Rundll32.exe "C:\WINDOWS\system32\noxthdqk.dll",s
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\daemon.exe" -autorun
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - http://support.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {3DCEC959-378A-4922-AD7E-FD5C925D927F} (Disney Online Games ActiveX Control) - http://disney.go.com/pirates/online/testAc...OnlineGames.cab
O16 - DPF: {42D06124-98A2-47EC-8098-3778B58CE7D5} (SupportSoft External Control) - https://actsvr.comcastonline.com/techtools/...%20Controls.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {5C051655-FCD5-4969-9182-770EA5AA5565} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/Solit...wn.cab56986.cab
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - http://launch.gamespyarcade.com/software/launch/alaunch.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{1A3DB53C-DBE7-4B51-8EEB-E810F607BB3E}: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CS1\Services\Tcpip\..\{1A3DB53C-DBE7-4B51-8EEB-E810F607BB3E}: NameServer = 208.67.220.220,208.67.222.222
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer = 208.67.220.220,208.67.222.222
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O20 - Winlogon Notify: vtustss - vtustss.dll (file missing)
O20 - Winlogon Notify: yayvUKdD - C:\WINDOWS\SYSTEM32\yayvUKdD.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe

--
End of file - 7287 bytes

-- Files created between 2008-07-06 and 2008-08-06 -----------------------------

2008-08-06 14:38:39 0 d--h----- C:\$AVG8.VAULT$
2008-08-06 14:36:02 0 d-------- C:\WINDOWS\system32\drivers\Avg
2008-08-06 14:36:02 0 d-------- C:\Documents and Settings\DEBORAH DEBORD\Application Data\AVGTOOLBAR
2008-08-06 14:35:45 0 d-------- C:\Program Files\AVG
2008-08-06 13:55:25 0 d-------- C:\Documents and Settings\Administrator\Application Data\AVGTOOLBAR
2008-08-06 13:55:06 0 d-------- C:\Documents and Settings\All Users\Application Data\avg8
2008-08-06 13:42:49 0 d-------- C:\Documents and Settings\Administrator\Application Data\Macromedia
2008-08-06 13:42:49 0 d-------- C:\Documents and Settings\Administrator\Application Data\Adobe
2008-08-06 13:29:46 0 d-------- C:\HostsXpert
2008-08-06 12:12:39 2048 --a------ C:\WINDOWS\system32\fivtubxo.exe
2008-08-06 12:09:42 101888 --a------ C:\WINDOWS\system32\qfaopx.dll
2008-08-06 12:09:42 101888 --a------ C:\WINDOWS\system32\irkquepk.dll
2008-08-06 12:06:46 82944 --a------ C:\WINDOWS\system32\rxpiabtp.dll
2008-08-05 12:54:54 2048 --a------ C:\WINDOWS\system32\weevvspx.exe
2008-08-04 12:48:47 2048 --a------ C:\WINDOWS\system32\lcxuurip.exe
2008-08-04 00:20:23 110080 --a------ C:\WINDOWS\system32\rgzekc.dll
2008-08-04 00:20:17 110080 --a------ C:\WINDOWS\system32\lwkiyttf.dll
2008-08-04 00:16:19 93184 --a------ C:\WINDOWS\system32\ubeodcyn.dll
2008-08-04 00:11:54 0 d-------- C:\Program Files\LimeWire
2008-08-03 08:31:35 9175040 --a------ C:\Documents and Settings\DEBORAH DEBORD\ntuser.dat
2008-08-03 08:30:01 1457 --ahs---- C:\WINDOWS\system32\iijRstwa.ini2
2008-08-03 08:29:51 282624 --a------ C:\WINDOWS\system32\awtsRjii.dll
2008-08-03 08:24:45 0 d-------- C:\WINDOWS\system32\kBin02
2008-08-03 08:24:43 32256 --a------ C:\WINDOWS\system32\yayvUKdD.dll
2008-08-03 08:24:43 0 d-------- C:\Temp
2008-07-30 11:54:53 0 d-------- C:\Program Files\AskSBar
2008-07-30 10:49:58 0 d-------- C:\Program Files\MonopolyHereNowEdition_at
2008-07-30 09:50:15 0 d-------- C:\Program Files\MysteryCaseFilesHuntsville_at
2008-07-30 02:08:41 11116 --a------ C:\WINDOWS\system32\ealregsnapshot1.reg
2008-07-29 19:06:12 0 d-------- C:\Program Files\School of Sword_at
2008-07-29 00:17:11 0 d-------- C:\Documents and Settings\All Users\Application Data\HipSoft
2008-07-29 00:08:45 0 d-------- C:\Program Files\BuildALot2_at
2008-07-29 00:08:04 0 d-------- C:\Program Files\FamilyRestaurant_at
2008-07-28 16:46:27 0 d-------- C:\Documents and Settings\All Users\Application Data\Fitn17
2008-07-28 16:45:56 0 d-------- C:\Program Files\FitnessFrenzy_at
2008-07-28 15:46:17 0 d-------- C:\Program Files\LEGOBuilderBots_at
2008-07-28 14:32:28 0 d-------- C:\Documents and Settings\All Users\Application Data\Fugazo
2008-07-28 14:31:14 0 d-------- C:\Program Files\CookingAcademy_at
2008-07-28 13:39:35 4096 --a------ C:\WINDOWS\d3dx.dat
2008-07-28 13:38:51 0 d-------- C:\Program Files\Saints & Sinners Bowling
2008-07-28 13:38:37 0 d-------- C:\Program Files\ReflexiveArcade


-- Find3M Report ---------------------------------------------------------------

2008-08-06 16:17:42 0 d-------- C:\Program Files\ContextEnhancer
2008-08-06 12:04:34 0 d-------- C:\Program Files\Common Files
2008-08-06 12:04:18 0 d-------- C:\Program Files\McAfee.com
2008-08-04 00:15:49 0 d-------- C:\Program Files\Dl_cats
2008-08-03 07:42:18 0 d-------- C:\Program Files\Apple Software Update
2008-08-02 01:07:13 0 d--h----- C:\Program Files\InstallShield Installation Information
2008-08-02 01:06:24 0 d-------- C:\Program Files\Street Challenge LLC
2008-08-02 01:03:10 0 d-------- C:\Program Files\GameSpy Arcade
2008-08-02 00:58:50 0 d-------- C:\Program Files\EA GAMES
2008-07-30 01:53:39 0 d-------- C:\Program Files\Trillian
2008-07-22 23:48:46 0 d-------- C:\Documents and Settings\DEBORAH DEBORD\Application Data\Comcast
2008-06-30 03:42:12 0 d-------- C:\Documents and Settings\DEBORAH DEBORD\Application Data\Xfire
2008-06-29 23:44:08 0 d-------- C:\Program Files\Xfire
2008-06-23 14:23:22 0 d-------- C:\Program Files\9Dragons
2008-06-22 22:17:34 0 d-------- C:\Program Files\SmartFTP Client
2008-06-22 22:14:21 0 d-------- C:\Program Files\SmartFTP Client 3.0 Setup Files
2008-06-19 01:06:00 0 dr-h----- C:\Documents and Settings\DEBORAH DEBORD\Application Data\SecuROM
2008-06-18 21:46:13 6172 --a------ C:\Program Files\install.log


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{2FA24518-5FE0-4CF1-8BA1-8EB9BE93AA50}]
08/03/2008 08:24 AM 32256 --a------ C:\WINDOWS\system32\yayvUKdD.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{54228b51-c6e7-9dec-bbe4-e8613c152c17}]
C:\WINDOWS\system32\nsn110D.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{640692F9-1882-41C5-ACFF-48F94CAA248D}]
C:\WINDOWS\system32\mlljk.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{734eecac-90aa-46d4-8ad3-857fde7a0cae}]
08/06/2008 12:09 PM 101888 --a------ C:\WINDOWS\system32\qfaopx.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{A057A204-BACC-4D26-9990-79A187E2698E}]
08/06/2008 02:35 PM 2055960 --a------ C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{BC730A29-A729-452E-AD8C-ADAA17E20C10}]
C:\WINDOWS\system32\mllji.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{E70F149C-813E-4E19-86F4-30E5E6D4A72E}]
08/03/2008 08:29 AM 282624 --a------ C:\WINDOWS\system32\awtsRjii.dll

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser]
"{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}"= C:\Program Files\AskSBar\bar\1.bin\ASKSBAR.DLL [07/30/2008 11:54 AM 262144]
"{A057A204-BACC-4D26-9990-79A187E2698E}"= C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL [08/06/2008 02:35 PM 2055960]

[-HKEY_CLASSES_ROOT\CLSID\{F0D4B239-DA4B-4DAF-81E4-DFEE4931A4AA}]

[-HKEY_CLASSES_ROOT\CLSID\{A057A204-BACC-4D26-9990-79A187E2698E}]
[HKEY_CLASSES_ROOT\avgtoolbar.AVGTOOLBAR]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [02/09/2006 10:05 PM]
"DLCFCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll" [09/08/2005 02:55 PM]
"Host Process"="C:\WINDOWS\Fonts\svchost.exe" []
"a074caae"="C:\WINDOWS\system32\rxpiabtp.dll" [08/06/2008 12:06 PM]
"BMa347f932"="C:\WINDOWS\system32\noxthdqk.dll" []
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [01/31/2008 11:13 PM]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [08/06/2008 02:35 PM]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [08/04/2004 06:00 AM]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [03/14/2008 07:55 AM]

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"MySpaceIM"=C:\Program Files\MySpace\IM\MySpaceIM.exe

C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\Startup\
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [3/16/2005 7:16:50 PM]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableRegistryTools"=0 (0x0)

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{2FA24518-5FE0-4CF1-8BA1-8EB9BE93AA50}"= C:\WINDOWS\system32\yayvUKdD.dll [08/03/2008 08:24 AM 32256]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\vtustss]
vtustss.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\yayvUKdD]
yayvUKdD.dll 08/03/2008 08:24 AM 32256 C:\WINDOWS\system32\yayvUKdD.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=avgrsstx.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa]
"Authentication Packages"= msv1_0 C:\WINDOWS\system32\awtsRjii

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^DEBORAH DEBORD^Start Menu^Programs^Startup^GameSpot Download Manager.lnk]
path=C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\Startup\GameSpot Download Manager.lnk
backup=C:\WINDOWS\pss\GameSpot Download Manager.lnkStartup


[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
"C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Aim6]


[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
"C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTSVolFE]
"C:\Program Files\Creative\Mixer\CTSVolFE.exe" /r

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ddoctorv2]
"C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe" /P ddoctorv2

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSupport]
"C:\Program Files\DellSupport\DSAgnt.exe" /startup

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MySpaceIM]
C:\Program Files\MySpace\IM\MySpaceIM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PhotoShow Deluxe Media Manager]
C:\PROGRA~1\Comcast\COMCAS~1\data\Xtras\mssysmgr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"C:\Program Files\QuickTime\qttask.exe" -atboottime

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SigmatelSysTrayApp]
stsystra.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"Viewpoint Manager Service"=2 (0x2)
"usnjsvc"=3 (0x3)
"PnkBstrA"=2 (0x2)
"ose"=3 (0x3)
"MDM"=2 (0x2)
"idsvc"=3 (0x3)
"FreezeScreenSaver"=2 (0x2)
"DSBrokerService"=3 (0x3)
"dlcf_device"=3 (0x3)
"SiteAdvisor Service"=2 (0x2)
"sprtsvc_ddoctorv2"=2 (0x2)
"NMIndexingService"=3 (0x3)
"NBService"=3 (0x3)
"iPod Service"=3 (0x3)
"IDriverT"=3 (0x3)
"Apple Mobile Device"=2 (0x2)


[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\H]
AutoRun\command- H:\LaunchU3.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\Z]
AutoRun\command- Z:\Setup.exe

*Newly Created Service* - AVG8EMC
*Newly Created Service* - AVG8WD
*Newly Created Service* - AVGLDX86
*Newly Created Service* - AVGMFX86
*Newly Created Service* - AVGTDIX



-- End of Deckard's System Scanner: finished at 2008-08-06 17:23:06 ------------

#10 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:10:16 PM

Posted 06 August 2008 - 04:25 PM

Good. :thumbsup:

Now just read the instructions to perform Combofix and post the log in your next reply. No need to post a HijackThislog anymore afterwards since Combofix already shows the same info.
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#11 April Bryant

April Bryant
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:16 PM

Posted 06 August 2008 - 05:22 PM

And done.... Here is the combofix log.

BTW - thank you so VERY much for all your help.

Part 1

ComboFix 08-08-05.09 - DEBORAH DEBORD 2008-08-06 17:43:42.3 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.590 [GMT -4:00]
Running from: C:\Documents and Settings\DEBORAH DEBORD\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\DEBORAH DEBORD\Desktop\WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\DEBORAH DEBORD\Application Data\macromedia\Flash Player\#SharedObjects\R76EYFFG\interclick.com
C:\Documents and Settings\DEBORAH DEBORD\Application Data\macromedia\Flash Player\#SharedObjects\R76EYFFG\interclick.com\ud.sol
C:\Documents and Settings\DEBORAH DEBORD\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#interclick.com
C:\Documents and Settings\DEBORAH DEBORD\Application Data\macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#interclick.com\settings.sol
C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\PlayMP3z
C:\Program Files\FBrowserAdvisor
C:\Program Files\Mozilla Firefox\components\nsBrowserOpt.dll
C:\Program Files\PlayMP3z
C:\Program Files\PlayMP3z\uninstall.exe
C:\WINDOWS\BMa347f932.txt
C:\WINDOWS\BMa347f932.xml
C:\WINDOWS\cookies.ini
C:\WINDOWS\pskt.ini
C:\WINDOWS\system32\aqwcxoya.ini
C:\WINDOWS\system32\awtsRjii.dll
C:\WINDOWS\system32\hejriyfu.ini
C:\WINDOWS\system32\iccgjymq.ini
C:\WINDOWS\system32\iijRstwa.ini
C:\WINDOWS\system32\iijRstwa.ini2
C:\WINDOWS\system32\irkquepk.dll
C:\WINDOWS\system32\kjeqvhih.ini
C:\WINDOWS\system32\kkitkvtt.ini
C:\WINDOWS\system32\lwkiyttf.dll
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\MSINET.oca
C:\WINDOWS\system32\pac.txt
C:\WINDOWS\system32\ptbaipxr.ini
C:\WINDOWS\system32\pyuuvtjk.ini
C:\WINDOWS\system32\qfaopx.dll
C:\WINDOWS\system32\rgzekc.dll
C:\WINDOWS\system32\rxpiabtp.dll
C:\WINDOWS\system32\sxhdwyft.ini
C:\WINDOWS\system32\ubeodcyn.dll
C:\WINDOWS\system32\ugkouypf.ini
C:\WINDOWS\system32\vjofkmaw.ini
C:\WINDOWS\system32\wabqpmmv.ini
C:\WINDOWS\system32\wfpyldsx.ini
C:\WINDOWS\system32\wiatfgdu.ini
C:\WINDOWS\system32\wijhbemm.ini
C:\WINDOWS\system32\wlihlehr.ini
C:\WINDOWS\system32\xagoewpg.ini
C:\WINDOWS\system32\xbcdhufr.ini
C:\WINDOWS\system32\yayvUKdD.dll

.
((((((((((((((((((((((((( Files Created from 2008-07-06 to 2008-08-06 )))))))))))))))))))))))))))))))
.

2008-08-06 14:38 . 2008-08-06 17:12 <DIR> d--h----- C:\$AVG8.VAULT$
2008-08-06 14:36 . 2008-08-06 14:37 <DIR> d-------- C:\WINDOWS\system32\drivers\Avg
2008-08-06 14:36 . 2008-08-06 17:35 <DIR> d-------- C:\Documents and Settings\DEBORAH DEBORD\Application Data\AVGTOOLBAR
2008-08-06 14:36 . 2008-08-06 14:36 96,520 --a------ C:\WINDOWS\system32\drivers\avgldx86.sys
2008-08-06 14:36 . 2008-08-06 14:36 76,040 --a------ C:\WINDOWS\system32\drivers\avgtdix.sys
2008-08-06 14:36 . 2008-08-06 14:36 10,520 --a------ C:\WINDOWS\system32\avgrsstx.dll
2008-08-06 14:35 . 2008-08-06 14:35 <DIR> d-------- C:\Program Files\AVG
2008-08-06 13:55 . 2008-08-06 14:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\avg8
2008-08-06 13:55 . 2008-08-06 13:55 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\AVGTOOLBAR
2008-08-06 13:29 . 2008-08-06 13:37 <DIR> d-------- C:\HostsXpert
2008-08-06 12:12 . 2008-08-06 12:12 2,048 --a------ C:\WINDOWS\system32\fivtubxo.exe
2008-08-05 12:54 . 2008-08-05 12:54 2,048 --a------ C:\WINDOWS\system32\weevvspx.exe
2008-08-04 12:48 . 2008-08-04 12:48 2,048 --a------ C:\WINDOWS\system32\lcxuurip.exe
2008-08-04 12:43 . 2008-08-04 12:43 <DIR> d-------- C:\Deckard
2008-08-04 00:30 . 2004-08-04 06:00 8,704 --a------ C:\WINDOWS\system32\dllcache\modern.fon
2008-08-04 00:11 . 2008-08-04 00:11 <DIR> d-------- C:\Program Files\LimeWire
2008-08-03 08:24 . 2008-08-03 08:24 <DIR> d-------- C:\WINDOWS\system32\kBin02
2008-08-03 08:24 . 2008-08-03 08:24 <DIR> d-------- C:\Temp\epr1
2008-08-03 08:24 . 2008-08-03 08:24 <DIR> d-------- C:\Temp
2008-08-02 01:44 . 2001-07-15 01:26 381,685 --a------ C:\7DSMercedesCClassWhite.iff
2008-07-30 11:54 . 2008-07-30 11:54 <DIR> d-------- C:\Program Files\AskSBar
2008-07-30 10:49 . 2008-08-02 01:04 <DIR> d-------- C:\Program Files\MonopolyHereNowEdition_at
2008-07-30 09:50 . 2008-08-02 01:05 <DIR> d-------- C:\Program Files\MysteryCaseFilesHuntsville_at
2008-07-30 02:08 . 2008-07-30 02:08 11,116 --a------ C:\WINDOWS\system32\ealregsnapshot1.reg
2008-07-29 19:06 . 2008-08-02 01:05 <DIR> d-------- C:\Program Files\School of Sword_at
2008-07-29 00:17 . 2008-07-29 00:17 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\HipSoft
2008-07-29 00:08 . 2008-08-02 01:01 <DIR> d-------- C:\Program Files\FamilyRestaurant_at
2008-07-29 00:08 . 2008-08-02 00:59 <DIR> d-------- C:\Program Files\BuildALot2_at
2008-07-28 16:46 . 2008-07-28 16:46 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Fitn17
2008-07-28 16:45 . 2008-08-02 01:02 <DIR> d-------- C:\Program Files\FitnessFrenzy_at
2008-07-28 15:46 . 2008-08-02 01:03 <DIR> d-------- C:\Program Files\LEGOBuilderBots_at
2008-07-28 14:32 . 2008-07-28 14:32 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Fugazo
2008-07-28 14:31 . 2008-08-02 01:01 <DIR> d-------- C:\Program Files\CookingAcademy_at
2008-07-28 13:39 . 2008-07-28 13:39 4,096 --a------ C:\WINDOWS\d3dx.dat
2008-07-28 13:38 . 2008-08-02 01:05 <DIR> d-------- C:\Program Files\Saints & Sinners Bowling
2008-07-28 13:38 . 2008-07-28 13:38 <DIR> d-------- C:\Program Files\ReflexiveArcade

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-06 20:18 --------- d-----w C:\Program Files\DAEMON Tools Lite
2008-08-06 20:17 --------- d-----w C:\Program Files\ContextEnhancer
2008-08-06 16:04 --------- d-----w C:\Program Files\McAfee.com
2008-08-06 16:04 --------- d-----w C:\Documents and Settings\All Users\Application Data\McAfee
2008-08-06 15:58 --------- d-----w C:\Documents and Settings\All Users\Application Data\SiteAdvisor
2008-08-04 04:15 --------- d-----w C:\Program Files\Dl_cats
2008-08-03 11:42 --------- d-----w C:\Program Files\Apple Software Update
2008-08-02 05:07 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-02 05:06 --------- d-----w C:\Program Files\Street Challenge LLC
2008-08-02 05:03 --------- d-----w C:\Program Files\GameSpy Arcade
2008-08-02 04:58 --------- d-----w C:\Program Files\EA GAMES
2008-07-30 05:53 --------- d-----w C:\Program Files\Trillian
2008-07-30 01:25 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-07-23 03:48 --------- d-----w C:\Documents and Settings\DEBORAH DEBORD\Application Data\Comcast
2008-07-22 16:15 22,328 -c--a-w C:\WINDOWS\system32\drivers\PnkBstrK.sys
2008-06-30 07:42 --------- d-----w C:\Documents and Settings\DEBORAH DEBORD\Application Data\Xfire
2008-06-30 03:44 --------- d-----w C:\Program Files\Xfire
2008-06-23 18:23 --------- d-----w C:\Program Files\9Dragons
2008-06-23 02:17 --------- d-----w C:\Program Files\SmartFTP Client
2008-06-23 02:14 --------- d-----w C:\Program Files\SmartFTP Client 3.0 Setup Files
2008-06-21 09:12 --------- d-----w C:\Documents and Settings\All Users\Application Data\Comcast
2008-06-20 10:45 360,320 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys
2008-06-20 10:44 138,368 ----a-w C:\WINDOWS\system32\drivers\afd.sys
2008-06-20 09:52 225,920 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys
2008-06-19 05:06 --------- d--h--r C:\Documents and Settings\DEBORAH DEBORD\Application Data\SecuROM
2008-06-19 01:46 6,172 ----a-w C:\Program Files\install.log
2008-06-13 13:10 272,128 ----a-w C:\WINDOWS\system32\drivers\bthport.sys
2007-12-31 20:25 92,064 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmmdm.sys
2007-12-31 20:25 9,232 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmmdfl.sys
2007-12-31 20:25 79,328 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmserd.sys
2007-12-31 20:25 66,656 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmbus.sys
2007-12-31 20:25 6,208 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmcmnt.sys
2007-12-31 20:25 5,936 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmwhnt.sys
2007-12-31 20:25 4,048 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmcr.sys
2007-12-31 20:25 25,600 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\usbsermptxp.sys
2007-12-31 20:25 22,768 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\usbsermpt.sys
2007-11-21 05:46 88 --sh--r C:\WINDOWS\system32\3B367D6EAE.sys
2007-11-21 05:46 3,558 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
.

((((((((((((((((((((((((((((( snapshot@2007-12-02_ 2.27.19.07 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-02-26 11:48:44 297,984 ----a-w C:\WINDOWS\$hf_mig$\KB932823-v3\SP2QFE\msctf.dll
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB932823-v3\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB932823-v3\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB932823-v3\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB932823-v3\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB932823-v3\update\updspapi.dll
+ 2007-10-29 22:35:13 1,287,680 -c--a-w C:\WINDOWS\$hf_mig$\KB941568\SP2QFE\quartz.dll
+ 2007-03-06 01:22:36 14,048 -c--a-w C:\WINDOWS\$hf_mig$\KB941568\spmsg.dll
+ 2007-03-06 01:22:41 213,216 -c--a-w C:\WINDOWS\$hf_mig$\KB941568\spuninst.exe
+ 2007-03-06 01:22:34 22,752 -c--a-w C:\WINDOWS\$hf_mig$\KB941568\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 -c--a-w C:\WINDOWS\$hf_mig$\KB941568\update\update.exe
+ 2007-03-06 01:23:51 371,424 -c--a-w C:\WINDOWS\$hf_mig$\KB941568\update\updspapi.dll
+ 2007-10-30 16:53:32 360,832 ----a-w C:\WINDOWS\$hf_mig$\KB941644\SP2QFE\tcpip.sys
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB941644\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB941644\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB941644\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB941644\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB941644\update\updspapi.dll
+ 2008-03-19 09:40:27 1,845,888 ----a-w C:\WINDOWS\$hf_mig$\KB941693\SP2QFE\win32k.sys
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB941693\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB941693\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB941693\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB941693\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB941693\update\updspapi.dll
+ 2007-10-10 23:47:27 124,928 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\advpack.dll
+ 2007-10-10 23:47:27 214,528 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\dxtrans.dll
+ 2007-10-10 23:47:27 132,608 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\extmgr.dll
+ 2007-10-10 23:47:27 63,488 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\icardie.dll
+ 2007-10-10 08:16:47 70,656 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\ie4uinit.exe
+ 2007-10-10 23:47:27 153,088 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\ieakeng.dll
+ 2007-10-10 23:47:27 230,400 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\ieaksie.dll
+ 2007-10-10 05:47:20 161,792 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:28:12 2,455,488 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\ieapfltr.dat
+ 2007-10-10 23:47:27 383,488 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\ieapfltr.dll
+ 2007-10-10 23:47:27 388,096 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\iedkcs32.dll
+ 2007-10-10 23:47:27 6,067,200 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\ieframe.dll
+ 2007-10-10 23:47:27 44,544 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\iernonce.dll
+ 2007-10-10 23:47:27 267,776 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\iertutil.dll
+ 2007-10-10 08:16:47 13,824 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\ieudinit.exe
+ 2007-10-10 08:16:56 625,664 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\iexplore.exe
+ 2007-10-10 23:47:28 27,648 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\jsproxy.dll
+ 2007-10-10 23:47:28 459,264 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\msfeeds.dll
+ 2007-10-10 23:47:28 52,224 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\msfeedsbs.dll
+ 2007-10-30 23:48:49 3,593,216 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\mshtml.dll
+ 2007-10-10 23:47:28 478,208 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\mshtmled.dll
+ 2007-10-10 23:47:28 193,024 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\msrating.dll
+ 2007-10-10 23:47:28 671,232 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\mstime.dll
+ 2007-10-10 23:47:28 102,912 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\occache.dll
+ 2007-10-10 23:47:28 105,984 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\url.dll
+ 2007-10-10 23:47:29 1,162,240 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\urlmon.dll
+ 2007-10-10 23:47:29 233,472 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\webcheck.dll
+ 2007-10-10 23:47:29 825,344 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:22:36 14,048 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\spmsg.dll
+ 2007-03-06 01:22:41 213,216 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\spuninst.exe
+ 2007-03-06 01:22:34 22,752 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\update\update.exe
+ 2007-03-06 01:23:51 371,424 -c--a-w C:\WINDOWS\$hf_mig$\KB942615-IE7\update\updspapi.dll
+ 2007-11-13 11:02:46 60,416 -c--a-w C:\WINDOWS\$hf_mig$\KB942763\SP2QFE\tzchange.exe
+ 2007-03-06 01:22:36 14,048 -c--a-w C:\WINDOWS\$hf_mig$\KB942763\spmsg.dll
+ 2007-03-06 01:22:41 213,216 -c--a-w C:\WINDOWS\$hf_mig$\KB942763\spuninst.exe
+ 2007-03-06 01:22:34 22,752 -c--a-w C:\WINDOWS\$hf_mig$\KB942763\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 -c--a-w C:\WINDOWS\$hf_mig$\KB942763\update\update.exe
+ 2007-03-06 01:23:51 371,424 -c--a-w C:\WINDOWS\$hf_mig$\KB942763\update\updspapi.dll
+ 2007-12-04 18:29:10 551,936 ----a-w C:\WINDOWS\$hf_mig$\KB943055\SP2QFE\oleaut32.dll
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB943055\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB943055\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB943055\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB943055\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB943055\update\updspapi.dll
+ 2007-11-07 09:50:47 727,040 ----a-w C:\WINDOWS\$hf_mig$\KB943485\SP2QFE\lsasrv.dll
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB943485\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB943485\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB943485\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB943485\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB943485\update\updspapi.dll
+ 2007-12-07 02:01:07 124,928 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\advpack.dll
+ 2007-12-19 22:57:52 347,136 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\dxtmsft.dll
+ 2007-12-07 02:01:07 214,528 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\dxtrans.dll
+ 2007-12-07 02:01:07 133,120 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\extmgr.dll
+ 2007-12-07 02:01:07 63,488 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\icardie.dll
+ 2007-12-06 08:34:28 70,656 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\ie4uinit.exe
+ 2007-12-07 02:01:08 153,088 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\ieakeng.dll
+ 2007-12-07 02:01:08 230,400 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\ieaksie.dll
+ 2007-12-06 05:00:02 161,792 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:28:12 2,455,488 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\ieapfltr.dat
+ 2007-12-07 02:01:08 383,488 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\ieapfltr.dll
+ 2007-12-07 02:01:08 388,096 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\iedkcs32.dll
+ 2007-12-07 02:01:10 6,067,200 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\ieframe.dll
+ 2007-12-07 02:01:10 44,544 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\iernonce.dll
+ 2007-12-07 02:01:11 267,776 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\iertutil.dll
+ 2007-12-06 08:34:29 13,824 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\ieudinit.exe
+ 2007-12-06 08:34:45 625,664 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\iexplore.exe
+ 2007-12-07 02:01:11 27,648 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\jsproxy.dll
+ 2007-12-07 02:01:11 459,264 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\msfeeds.dll
+ 2007-12-07 02:01:11 52,224 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\msfeedsbs.dll
+ 2007-12-07 02:01:12 3,593,216 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\mshtml.dll
+ 2007-12-07 02:01:12 478,208 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\mshtmled.dll
+ 2007-12-07 02:01:13 193,024 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\msrating.dll
+ 2007-12-07 02:01:13 671,232 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\mstime.dll
+ 2007-12-07 02:01:13 102,912 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\occache.dll
+ 2008-01-11 05:57:26 44,544 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\pngfilt.dll
+ 2007-12-07 02:01:13 105,984 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\url.dll
+ 2007-12-07 02:01:13 1,162,752 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\urlmon.dll
+ 2007-12-07 02:01:13 233,472 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\webcheck.dll
+ 2007-12-07 02:01:13 825,344 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB944533-IE7\update\updspapi.dll
+ 2007-11-13 08:47:45 20,480 -c--a-w C:\WINDOWS\$hf_mig$\KB944653\SP2QFE\secdrv.sys
+ 2007-03-06 01:22:36 14,048 -c--a-w C:\WINDOWS\$hf_mig$\KB944653\spmsg.dll
+ 2007-03-06 01:22:41 213,216 -c--a-w C:\WINDOWS\$hf_mig$\KB944653\spuninst.exe
+ 2007-03-06 01:22:34 22,752 -c--a-w C:\WINDOWS\$hf_mig$\KB944653\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 -c--a-w C:\WINDOWS\$hf_mig$\KB944653\update\update.exe
+ 2007-03-06 01:23:51 371,424 -c--a-w C:\WINDOWS\$hf_mig$\KB944653\update\updspapi.dll
+ 2008-02-20 05:19:35 147,968 ----a-w C:\WINDOWS\$hf_mig$\KB945553\SP2QFE\dnsapi.dll
+ 2008-02-20 18:49:36 45,568 ----a-w C:\WINDOWS\$hf_mig$\KB945553\SP2QFE\dnsrslvr.dll
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB945553\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB945553\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB945553\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB945553\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB945553\update\updspapi.dll
+ 2007-12-18 09:38:59 179,712 ----a-w C:\WINDOWS\$hf_mig$\KB946026\SP2QFE\mrxdav.sys
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB946026\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB946026\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB946026\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB946026\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB946026\update\updspapi.dll
+ 2008-03-01 13:03:00 124,928 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\advpack.dll
+ 2008-03-01 13:03:00 347,136 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\dxtmsft.dll
+ 2008-03-01 13:03:00 214,528 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\dxtrans.dll
+ 2008-03-01 13:03:00 132,608 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\extmgr.dll
+ 2008-03-01 13:03:00 63,488 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\icardie.dll
+ 2008-02-22 09:39:56 70,656 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ie4uinit.exe
+ 2008-03-01 13:03:00 153,088 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ieakeng.dll
+ 2008-03-01 13:03:00 230,400 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ieaksie.dll
+ 2008-02-15 05:44:25 161,792 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ieapfltr.dat
+ 2008-03-01 13:03:00 383,488 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ieapfltr.dll
+ 2008-03-01 13:03:00 388,608 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\iedkcs32.dll
+ 2008-03-01 13:03:01 6,067,712 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ieframe.dll
+ 2008-03-01 13:03:01 44,544 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\iernonce.dll
+ 2008-03-01 13:03:01 267,776 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\iertutil.dll
+ 2008-02-22 09:39:56 13,824 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\ieudinit.exe
+ 2008-02-22 09:40:22 625,664 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\iexplore.exe
+ 2008-03-01 13:03:01 27,648 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\jsproxy.dll
+ 2008-03-01 13:03:01 459,264 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\msfeeds.dll
+ 2008-03-01 13:03:01 52,224 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\msfeedsbs.dll
+ 2008-03-01 13:03:01 3,593,216 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\mshtml.dll
+ 2008-03-01 13:03:01 478,208 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\mshtmled.dll
+ 2008-03-01 13:03:01 193,024 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\msrating.dll
+ 2008-03-01 13:03:01 671,232 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\mstime.dll
+ 2008-03-01 13:03:01 102,912 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\occache.dll
+ 2008-03-01 13:03:01 44,544 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\pngfilt.dll
+ 2008-03-01 13:03:02 105,984 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\url.dll
+ 2008-03-01 13:03:02 1,162,752 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\urlmon.dll
+ 2008-03-01 13:03:02 233,472 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\webcheck.dll
+ 2008-03-01 13:03:02 827,392 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:22:33 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\spmsg.dll
+ 2007-03-06 01:22:39 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\spuninst.exe
+ 2007-03-06 01:22:31 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\update\spcustom.dll
+ 2007-03-06 01:22:56 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB947864-IE7\update\updspapi.dll
+ 2008-02-20 06:52:43 282,624 ----a-w C:\WINDOWS\$hf_mig$\KB948590\SP2QFE\gdi32.dll
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB948590\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB948590\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB948590\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB948590\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB948590\update\updspapi.dll
+ 2007-03-06 01:22:33 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB948881\spmsg.dll
+ 2007-03-06 01:22:39 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB948881\spuninst.exe
+ 2007-03-06 01:22:31 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB948881\update\spcustom.dll
+ 2007-03-06 01:22:56 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB948881\update\update.exe
+ 2007-03-06 01:23:47 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB948881\update\updspapi.dll
+ 2008-01-23 04:56:21 554,008 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\dao360.dll
+ 2007-12-10 12:41:11 518,944 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msexch40.dll
+ 2007-12-10 12:41:11 326,432 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msexcl40.dll
+ 2007-12-10 12:41:11 1,516,568 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msjet40.dll
+ 2007-12-10 12:41:11 355,112 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msjetol1.dll
+ 2008-03-27 07:39:13 151,583 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msjint40.dll
+ 2007-12-10 12:41:12 60,192 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msjter40.dll
+ 2007-12-10 12:41:12 248,608 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msjtes40.dll
+ 2007-12-10 12:41:12 219,936 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msltus40.dll
+ 2007-12-10 12:41:12 355,104 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\mspbde40.dll
+ 2007-12-10 12:41:13 432,928 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msrd2x40.dll
+ 2007-12-10 12:41:13 322,336 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msrd3x40.dll
+ 2007-12-10 12:41:13 559,904 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msrepl40.dll
+ 2007-12-10 12:41:13 264,992 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\mstext40.dll
+ 2007-12-10 12:41:13 838,432 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\mswdat10.dll
+ 2007-12-10 12:41:14 621,344 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\mswstr10.dll
+ 2007-12-10 12:41:14 355,104 ----a-w C:\WINDOWS\$hf_mig$\KB950749\SP2QFE\msxbde40.dll
+ 2007-03-06 01:22:36 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB950749\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB950749\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB950749\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB950749\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB950749\update\updspapi.dll
+ 2008-04-23 03:35:35 124,928 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\advpack.dll
+ 2008-04-23 03:35:35 347,136 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\dxtmsft.dll
+ 2008-04-23 03:35:35 214,528 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\dxtrans.dll
+ 2008-04-23 03:35:35 132,608 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\extmgr.dll
+ 2008-04-23 03:35:35 63,488 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\icardie.dll
+ 2008-04-22 08:02:19 70,656 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\ie4uinit.exe
+ 2008-04-23 03:35:35 153,088 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\ieakeng.dll
+ 2008-04-23 03:35:35 230,400 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\ieaksie.dll
+ 2008-04-20 05:07:38 161,792 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\ieakui.dll
+ 2007-04-17 09:32:38 2,455,488 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\ieapfltr.dat
+ 2008-04-23 03:35:35 383,488 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\ieapfltr.dll
+ 2008-04-23 03:35:35 388,608 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\iedkcs32.dll
+ 2008-04-23 03:35:36 6,068,224 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\ieframe.dll
+ 2008-04-23 03:35:36 44,544 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\iernonce.dll
+ 2008-04-23 03:35:36 267,776 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\iertutil.dll
+ 2008-04-22 08:02:19 13,824 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\ieudinit.exe
+ 2008-04-22 08:02:46 625,664 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\iexplore.exe
+ 2008-04-23 03:35:36 27,648 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\jsproxy.dll
+ 2008-04-23 03:35:36 459,264 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\msfeeds.dll
+ 2008-04-23 03:35:36 52,224 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\msfeedsbs.dll
+ 2008-04-23 03:35:36 3,593,728 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\mshtml.dll
+ 2008-04-23 03:35:36 478,208 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\mshtmled.dll
+ 2008-04-23 03:35:36 193,024 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\msrating.dll
+ 2008-04-23 03:35:36 671,232 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\mstime.dll
+ 2008-04-23 03:35:36 102,912 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\occache.dll
+ 2008-04-23 03:35:36 44,544 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\pngfilt.dll
+ 2008-04-23 03:35:36 105,984 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\url.dll
+ 2008-04-23 03:35:36 1,162,752 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\urlmon.dll
+ 2008-04-23 03:35:36 233,472 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\webcheck.dll
+ 2008-04-23 03:35:36 827,392 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\SP2QFE\wininet.dll
+ 2007-03-06 01:22:33 14,048 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\spmsg.dll
+ 2007-03-06 01:22:39 213,216 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\spuninst.exe
+ 2007-03-06 01:22:31 22,752 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\update\spcustom.dll
+ 2007-03-06 01:22:56 716,000 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w C:\WINDOWS\$hf_mig$\KB950759-IE7\update\updspapi.dll
+ 2007-11-30 12:39:22 17,272 ----a-w C:\WINDOWS\$hf_mig$\KB950760\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w C:\WINDOWS\$hf_mig$\KB950760\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w C:\WINDOWS\$hf_mig$\KB950760\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w C:\WINDOWS\$hf_mig$\KB950760\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w C:\WINDOWS\$hf_mig$\KB950760\update\updspapi.dll
+ 2008-05-08 12:14:51 203,008 ----a-w C:\WINDOWS\$hf_mig$\KB950762\SP2QFE\rmcast.sys
+ 2008-05-08 14:02:52 203,136 ----a-w C:\WINDOWS\$hf_mig$\KB950762\SP3GDR\rmcast.sys
+ 2008-05-08 13:58:17 203,136 ----a-w C:\WINDOWS\$hf_mig$\KB950762\SP3QFE\rmcast.sys
+ 2007-11-30 12:39:22 17,272 ----a-w C:\WINDOWS\$hf_mig$\KB950762\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w C:\WINDOWS\$hf_mig$\KB950762\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w C:\WINDOWS\$hf_mig$\KB950762\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w C:\WINDOWS\$hf_mig$\KB950762\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w C:\WINDOWS\$hf_mig$\KB950762\update\updspapi.dll
+ 2008-06-13 09:52:16 272,128 ----a-w C:\WINDOWS\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
+ 2008-06-13 11:05:51 272,128 ----a-w C:\WINDOWS\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys
+ 2008-06-13 11:27:43 272,128 ----a-w C:\WINDOWS\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
+ 2007-11-30 11:18:51 17,272 ----a-w C:\WINDOWS\$hf_mig$\KB951376-v2\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w C:\WINDOWS\$hf_mig$\KB951376-v2\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w C:\WINDOWS\$hf_mig$\KB951376-v2\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w C:\WINDOWS\$hf_mig$\KB951376-v2\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w C:\WINDOWS\$hf_mig$\KB951376-v2\update\updspapi.dll
+ 2008-04-14 11:00:16 272,128 ----a-w C:\WINDOWS\$hf_mig$\KB951376\SP2QFE\bthport.sys
+ 2008-04-14 12:30:49 272,128 ----a-w C:\WINDOWS\$hf_mig$\KB951376\SP3GDR\bthport.sys
+ 2008-04-14 12:36:35 272,128 ----a-w C:\WINDOWS\$hf_mig$\KB951376\SP3QFE\bthport.sys
+ 2007-11-30 11:18:51 17,272 ----a-w C:\WINDOWS\$hf_mig$\KB951376\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w C:\WINDOWS\$hf_mig$\KB951376\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w C:\WINDOWS\$hf_mig$\KB951376\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w C:\WINDOWS\$hf_mig$\KB951376\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w C:\WINDOWS\$hf_mig$\KB951376\update\updspapi.dll
+ 2008-05-07 04:55:40 1,288,192 ----a-w C:\WINDOWS\$hf_mig$\KB951698\SP2QFE\quartz.dll
+ 2008-05-07 05:12:40 1,288,192 ----a-w C:\WINDOWS\$hf_mig$\KB951698\SP3GDR\quartz.dll
+ 2008-05-07 05:04:15 1,288,192 ----a-w C:\WINDOWS\$hf_mig$\KB951698\SP3QFE\quartz.dll
+ 2007-11-30 11:18:51 17,272 ----a-w C:\WINDOWS\$hf_mig$\KB951698\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w C:\WINDOWS\$hf_mig$\KB951698\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w C:\WINDOWS\$hf_mig$\KB951698\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w C:\WINDOWS\$hf_mig$\KB951698\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w C:\WINDOWS\$hf_mig$\KB951698\update\updspapi.dll
+ 2004-08-04 10:00:00 294,400 -c----w C:\WINDOWS\$NtUninstallKB932823-v3$\msctf.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB932823-v3$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB932823-v3$\spuninst\updspapi.dll
+ 2005-08-30 03:54:26 1,287,168 -c----w C:\WINDOWS\$NtUninstallKB941568$\quartz.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB941568$\spuninst\updspapi.dll
+ 2007-10-27 21:39:36 213,216 -c----w C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe
+ 2007-10-27 21:39:46 371,424 -c----w C:\WINDOWS\$NtUninstallKB941569$\spuninst\updspapi.dll
+ 2006-10-19 02:47:18 222,208 -c----w C:\WINDOWS\$NtUninstallKB941569$\wmasf.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB941644$\spuninst\updspapi.dll
+ 2006-04-20 11:51:50 359,808 -c----w C:\WINDOWS\$NtUninstallKB941644$\tcpip.sys
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB941693$\spuninst\updspapi.dll
+ 2007-03-08 13:47:48 1,843,584 -c----w C:\WINDOWS\$NtUninstallKB941693$\win32k.sys
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB942763$\spuninst\updspapi.dll
+ 2007-07-18 12:42:22 60,416 -c----w C:\WINDOWS\$NtUninstallKB942763$\tzchange.exe
+ 2007-05-17 11:28:05 549,376 -c----w C:\WINDOWS\$NtUninstallKB943055$\oleaut32.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB943055$\spuninst\updspapi.dll
+ 2006-08-17 12:28:27 721,920 -c----w C:\WINDOWS\$NtUninstallKB943485$\lsasrv.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB943485$\spuninst\updspapi.dll
+ 2004-08-04 10:00:00 27,440 -c----w C:\WINDOWS\$NtUninstallKB944653$\secdrv.sys
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB944653$\spuninst\updspapi.dll
+ 2006-06-26 17:37:10 148,480 -c----w C:\WINDOWS\$NtUninstallKB945553$\dnsapi.dll
+ 2004-08-04 10:00:00 45,568 -c----w C:\WINDOWS\$NtUninstallKB945553$\dnsrslvr.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB945553$\spuninst\updspapi.dll
+ 2004-08-04 10:00:00 181,248 -c----w C:\WINDOWS\$NtUninstallKB946026$\mrxdav.sys
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB946026$\spuninst\updspapi.dll
+ 2007-06-19 13:31:19 282,112 -c----w C:\WINDOWS\$NtUninstallKB948590$\gdi32.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB948590$\spuninst\updspapi.dll
+ 2007-03-06 01:22:39 213,216 -c----w C:\WINDOWS\$NtUninstallKB948881$\spuninst\spuninst.exe
+ 2007-03-06 01:23:47 371,424 -c----w C:\WINDOWS\$NtUninstallKB948881$\spuninst\updspapi.dll
+ 2004-08-04 10:00:00 561,179 -c----w C:\WINDOWS\$NtUninstallKB950749$\dao360.dll
+ 2004-08-04 10:00:00 512,029 -c----w C:\WINDOWS\$NtUninstallKB950749$\msexch40.dll
+ 2004-08-04 10:00:00 319,517 -c----w C:\WINDOWS\$NtUninstallKB950749$\msexcl40.dll
+ 2004-08-04 10:00:00 1,507,356 -c----w C:\WINDOWS\$NtUninstallKB950749$\msjet40.dll
+ 2004-08-04 10:00:00 358,976 -c----w C:\WINDOWS\$NtUninstallKB950749$\msjetoledb40.dll
+ 2004-08-04 10:00:00 151,583 -c----w C:\WINDOWS\$NtUninstallKB950749$\msjint40.dll
+ 2004-08-04 10:00:00 53,279 -c----w C:\WINDOWS\$NtUninstallKB950749$\msjter40.dll
+ 2004-08-04 10:00:00 241,693 -c----w C:\WINDOWS\$NtUninstallKB950749$\msjtes40.dll
+ 2004-08-04 10:00:00 213,023 -c----w C:\WINDOWS\$NtUninstallKB950749$\msltus40.dll
+ 2004-08-04 10:00:00 348,189 -c----w C:\WINDOWS\$NtUninstallKB950749$\mspbde40.dll
+ 2004-08-04 10:00:00 421,919 -c----w C:\WINDOWS\$NtUninstallKB950749$\msrd2x40.dll
+ 2004-08-04 10:00:00 315,423 -c----w C:\WINDOWS\$NtUninstallKB950749$\msrd3x40.dll
+ 2004-08-04 10:00:00 552,989 -c----w C:\WINDOWS\$NtUninstallKB950749$\msrepl40.dll
+ 2004-08-04 10:00:00 258,077 -c----w C:\WINDOWS\$NtUninstallKB950749$\mstext40.dll
+ 2004-08-04 10:00:00 831,519 -c----w C:\WINDOWS\$NtUninstallKB950749$\mswdat10.dll
+ 2004-08-04 10:00:00 614,429 -c----w C:\WINDOWS\$NtUninstallKB950749$\mswstr10.dll
+ 2004-08-04 10:00:00 348,189 -c----w C:\WINDOWS\$NtUninstallKB950749$\msxbde40.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\$NtUninstallKB950749$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\$NtUninstallKB950749$\spuninst\updspapi.dll
+ 2007-11-30 12:39:22 231,288 -c----w C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w C:\WINDOWS\$NtUninstallKB950760$\spuninst\updspapi.dll
+ 2006-07-13 08:48:58 202,240 -c----w C:\WINDOWS\$NtUninstallKB950762$\rmcast.sys
+ 2007-11-30 12:39:22 231,288 -c----w C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w C:\WINDOWS\$NtUninstallKB950762$\spuninst\updspapi.dll
+ 2008-04-14 11:01:02 272,128 -c----w C:\WINDOWS\$NtUninstallKB951376-v2$\bthport.sys
+ 2007-11-30 11:18:51 231,288 -c----w C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\updspapi.dll
+ 2007-11-30 11:18:51 231,288 -c----w C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w C:\WINDOWS\$NtUninstallKB951376$\spuninst\updspapi.dll
+ 2007-10-29 22:43:03 1,287,680 -c----w C:\WINDOWS\$NtUninstallKB951698$\quartz.dll
+ 2007-11-30 11:18:51 231,288 -c----w C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w C:\WINDOWS\$NtUninstallKB951698$\spuninst\updspapi.dll
+ 2008-03-31 03:41:40 98,678 ----a-w C:\WINDOWS\.jagex_cache_32\loginapplet\cache-1965029828.dat
- 2007-08-19 04:57:25 53,248 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2008-06-23 05:20:58 53,248 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.AudioVideoPlayback\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.AudioVideoPlayback.dll
- 2007-08-19 04:57:25 12,800 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
+ 2008-06-23 05:20:58 12,800 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Diagnostics\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Diagnostics.dll
- 2007-08-19 04:57:26 473,600 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2008-06-23 05:20:58 473,600 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3D\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3D.dll
+ 2008-05-22 10:07:17 2,676,224 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-05-22 10:07:18 2,846,720 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2903.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-05-22 10:07:19 563,712 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2904.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2007-08-19 04:57:26 567,296 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-06-23 05:20:59 567,296 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2905.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-05-22 10:07:20 576,000 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2906.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-05-22 10:07:20 577,024 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2907.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-05-22 10:07:21 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2908.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-05-22 10:07:21 577,536 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2909.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-05-22 10:07:24 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2910.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
+ 2008-03-27 01:08:14 578,560 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.Direct3DX\1.0.2911.0__31bf3856ad364e35\Microsoft.DirectX.Direct3DX.dll
- 2007-08-19 04:57:26 145,920 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
+ 2008-06-23 05:20:59 145,920 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectDraw\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectDraw.dll
- 2007-08-19 04:57:26 159,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
+ 2008-06-23 05:21:00 159,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectInput\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectInput.dll
- 2007-08-19 04:57:27 364,544 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
+ 2008-06-23 05:21:00 364,544 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectPlay\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectPlay.dll
- 2007-08-19 04:57:27 178,176 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
+ 2008-06-23 05:21:00 178,176 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX.DirectSound\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.DirectSound.dll
- 2007-08-19 04:57:25 223,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
+ 2008-06-23 05:20:57 223,232 ----a-w C:\WINDOWS\assembly\GAC\Microsoft.DirectX\1.0.2902.0__31bf3856ad364e35\Microsoft.DirectX.dll
- 2007-11-04 07:05:36 68,608 ----a-w C:\WINDOWS\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2008-02-13 17:13:46 69,120 ----a-w C:\WINDOWS\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2007-11-04 07:06:04 72,192 ----a-w C:\WINDOWS\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2008-02-13 17:13:55 72,192 ----a-w C:\WINDOWS\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2007-11-02 22:11:26 151,552 ----a-w C:\WINDOWS\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2008-02-13 17:16:40 151,552 ----a-w C:\WINDOWS\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
- 2007-11-04 07:06:06 4,308,992 ----a-w C:\WINDOWS\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2008-02-13 17:13:30 4,444,160 ----a-w C:\WINDOWS\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
- 2007-11-02 22:12:09 3,915,776 ----a-w C:\WINDOWS\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2008-02-13 17:16:47 4,174,336 ----a-w C:\WINDOWS\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
- 2007-11-04 07:06:14 482,304 ----a-w C:\WINDOWS\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-02-13 17:13:59 483,840 ----a-w C:\WINDOWS\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2007-11-04 07:05:59 2,902,016 ----a-w C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2008-02-13 17:13:40 3,036,160 ----a-w C:\WINDOWS\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2007-11-02 22:12:11 344,064 ----a-w C:\WINDOWS\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2008-02-13 17:16:46 346,624 ----a-w C:\WINDOWS\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2007-11-04 07:06:24 260,096 ----a-w C:\WINDOWS\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2008-02-13 17:13:56 261,120 ----a-w C:\WINDOWS\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2007-11-04 07:05:41 5,156,864 ----a-w C:\WINDOWS\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2008-02-13 17:13:38 5,431,296 ----a-w C:\WINDOWS\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2007-11-04 07:05:34 10,752 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2008-02-13 17:13:44 10,752 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2007-11-04 07:05:15 507,904 ----a-w C:\WINDOWS\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2008-02-13 17:13:39 507,904 ----a-w C:\WINDOWS\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
- 2007-11-04 07:05:28 13,312 ----a-w C:\WINDOWS\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2008-02-13 17:13:45 13,312 ----a-w C:\WINDOWS\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2007-11-04 07:06:02 36,864 ----a-w C:\WINDOWS\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2008-02-13 17:13:51 77,824 ----a-w C:\WINDOWS\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2007-11-04 07:06:03 5,632 ----a-w C:\WINDOWS\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2008-02-13 17:13:53 6,656 ----a-w C:\WINDOWS\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2007-11-04 07:05:30 413,696 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2008-02-13 17:14:03 348,160 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2007-11-04 07:05:31 36,864 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2008-02-13 17:14:04 36,864 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2007-11-04 07:05:32 647,168 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2008-02-13 17:14:05 655,360 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
- 2007-11-04 07:05:33 73,728 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2008-02-13 17:14:05 77,824 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2007-11-04 07:05:29 749,568 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2008-02-13 17:13:53 749,568 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2007-11-02 22:11:26 352,256 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2008-02-13 17:16:40 397,312 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
- 2007-11-04 07:06:28 110,592 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2008-02-13 17:13:50 110,592 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2007-11-04 07:06:27 372,736 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
+ 2008-02-13 17:13:48 372,736 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2007-11-04 07:05:09 28,672 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2008-02-13 17:13:59 28,672 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2007-11-04 07:06:26 667,648 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2008-02-13 17:13:48 671,744 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2007-11-04 07:06:28 5,632 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2008-02-13 17:13:35 5,632 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2007-11-04 07:05:13 12,800 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2008-02-13 17:14:01 12,800 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2007-11-04 07:05:11 32,768 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2008-02-13 17:13:47 32,768 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
- 2007-11-04 07:05:12 7,168 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2008-02-13 17:13:47 7,168 ----a-w C:\WINDOWS\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2007-11-02 22:12:09 593,920 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
+ 2008-02-13 17:16:37 602,112 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
- 2007-11-02 22:12:09 32,768 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
+ 2008-02-13 17:16:48 32,768 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
- 2007-11-02 22:12:10 184,320 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
+ 2008-02-13 17:16:44 184,320 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
- 2007-11-02 22:12:10 126,976 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
+ 2008-02-13 17:16:44 131,072 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
- 2007-11-02 22:12:10 376,832 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
+ 2008-02-13 17:16:44 376,832 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
- 2007-11-02 22:12:10 151,552 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
+ 2008-02-13 17:16:44 151,552 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
- 2007-11-02 22:12:10 4,972,544 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
+ 2008-02-13 17:16:43 5,210,112 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
- 2007-11-02 22:12:10 897,024 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
+ 2008-02-13 17:16:42 897,024 ----a-w C:\WINDOWS\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
- 2007-11-02 22:12:10 528,384 ----a-w C:\WINDOWS\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
+ 2008-02-13 17:16:46 528,384 ----a-w C:\WINDOWS\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
- 2007-11-02 22:11:27 94,208 ----a-w C:\WINDOWS\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
+ 2008-02-13 17:16:40 102,400 ----a-w C:\WINDOWS\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
- 2007-11-04 07:06:19 110,592 ----a-w C:\WINDOWS\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2008-02-13 17:13:54 110,592 ----a-w C:\WINDOWS\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2007-11-04 07:05:36 81,920 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2008-02-13 17:13:55 81,920 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2007-11-04 07:06:19 413,696 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2008-02-13 17:13:39 425,984 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2007-11-04 07:06:15 716,800 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2008-02-13 17:13:40 741,376 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2007-11-04 07:05:25 888,832 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2008-02-13 17:13:41 933,888 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2007-11-04 07:06:00 5,001,216 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2008-02-13 17:14:06 5,070,848 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2007-11-04 07:05:38 188,416 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2008-02-13 17:14:04 188,416 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2007-11-04 07:05:37 397,312 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2008-02-13 17:13:44 401,408 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2007-11-04 07:05:39 81,920 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2008-02-13 17:14:01 81,920 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
- 2007-11-04 07:06:21 577,536 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2008-02-13 17:13:36 630,784 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2007-11-02 22:11:27 126,976 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2008-02-13 17:16:51 126,976 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
- 2007-11-02 22:11:27 401,408 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
+ 2008-02-13 17:16:50 430,080 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
- 2007-11-02 22:11:27 131,072 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
+ 2008-02-13 17:16:40 131,072 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
- 2007-11-04 07:06:16 372,736 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2008-02-13 17:14:02 372,736 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2007-11-04 07:06:22 258,048 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2008-02-13 17:14:00 258,048 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2007-11-04 07:06:17 299,008 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2008-02-13 17:13:58 299,008 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2007-11-04 07:06:18 131,072 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-02-13 17:13:57 131,072 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2007-11-02 22:11:27 884,736 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
+ 2008-02-13 17:16:40 929,792 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
- 2007-11-04 07:05:35 258,048 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2008-02-13 17:13:37 258,048 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2007-11-02 22:11:30 159,744 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
+ 2008-02-13 17:16:37 159,744 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
- 2007-11-02 22:11:30 16,384 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
+ 2008-02-13 17:16:37 32,768 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
- 2007-11-02 22:11:28 5,623,808 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
+ 2008-02-13 17:16:38 5,971,968 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
- 2007-11-04 07:05:40 114,688 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2008-02-13 17:13:37 114,688 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2007-11-02 22:12:11 688,128 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Speech\3.0.0.0__31bf3856ad364e35\System.Speech.dll
+ 2008-02-13 17:16:36 688,128 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Speech\3.0.0.0__31bf3856ad364e35\System.Speech.dll
- 2007-11-04 07:06:25 835,584 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2008-02-13 17:13:43 884,736 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2007-11-04 07:05:43 86,016 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2008-02-13 17:13:43 90,112 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2007-11-04 07:05:44 823,296 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2008-02-13 17:13:42 839,680 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2007-11-04 07:05:46 5,152,768 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2008-02-13 17:13:45 5,013,504 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2007-11-12 04:52:38 1,108,784 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
+ 2008-02-13 17:16:49 1,152,040 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
- 2007-11-12 04:52:38 1,641,272 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
+ 2008-02-13 17:16:49 1,635,376 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
- 2007-11-12 04:52:38 588,592 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
+ 2008-02-13 17:16:49 578,592 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
- 2007-11-04 07:05:49 2,027,520 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2008-02-13 17:13:38 2,068,480 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2007-11-04 07:06:20 2,940,928 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2008-02-13 17:13:42 3,076,096 ----a-w C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
- 2007-11-02 22:12:10 163,840 ----a-w C:\WINDOWS\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
+ 2008-02-13 17:16:36 163,840 ----a-w C:\WINDOWS\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
- 2007-11-02 22:12:10 372,736 ----a-w C:\WINDOWS\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
+ 2008-02-13 17:16:36 372,736 ----a-w C:\WINDOWS\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
- 2007-11-02 22:12:10 32,768 ----a-w C:\WINDOWS\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2008-02-13 17:16:46 32,768 ----a-w C:\WINDOWS\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
- 2007-11-02 22:12:10 86,016 ----a-w C:\WINDOWS\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
+ 2008-02-13 17:16:46 86,016 ----a-w C:\WINDOWS\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
- 2007-11-02 22:12:09 1,167,360 ----a-w C:\WINDOWS\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
+ 2008-02-13 17:16:45 1,204,224 ----a-w C:\WINDOWS\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
- 2007-11-02 22:12:11 81,920 ----a-w C:\WINDOWS\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2008-02-13 17:16:36 81,920 ----a-w C:\WINDOWS\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2008-02-13 17:19:49 27,136 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Accessibility\c6772fd12a581ad3be49e3f2a80b5622\Accessibility.ni.dll
+ 2008-02-13 17:24:40 884,736 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\a1d353edc300e3aff0784202f68a657b\AspNetMMCExt.ni.dll
+ 2008-02-13 17:31:10 503,808 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\bb3c2f59a821abc54f420f3a9e051d6a\ComSvcConfig.ni.exe
+ 2008-02-13 17:31:20 237,568 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\c10ec9b4de2b366236ec83237dc31281\CustomMarshalers.ni.dll
+ 2008-02-13 17:31:08 15,360 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\dfsvc\837fe02bdcf637d5bf1e5ffb935ebb80\dfsvc.ni.exe
+ 2008-02-13 17:31:21 876,544 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\9710a3c0d11dd264c3a6b88977699e9b\Microsoft.Build.Engine.ni.dll
+ 2008-02-13 17:31:22 81,920 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e2858a45971fb30b0c0523dbb52c1d4e\Microsoft.Build.Framework.ni.dll
+ 2008-02-13 17:31:25 1,695,744 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\63d69ffdf3c640d2d104a4b74e8115f8\Microsoft.Build.Tasks.ni.dll
+ 2008-02-13 17:31:26 167,936 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\11cb5418c06e30100616fbf205588489\Microsoft.Build.Utilities.ni.dll
+ 2008-02-13 17:31:14 1,232,896 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\e3dce636e798c53ec2b44d1d4aadb850\Microsoft.Transactions.Bridge.ni.dll
+ 2008-02-13 17:31:15 401,408 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\f3902a808549b40d648206c9303f2788\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2008-02-13 17:31:29 1,740,800 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\923bd55258380eae77353d36a5a1b08f\Microsoft.VisualBasic.ni.dll
+ 2008-02-13 17:19:52 17,920 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\cd0730694ba5927a6efd32129783e1b4\Microsoft.VisualC.ni.dll
+ 2008-02-13 17:18:28 11,722,752 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\mscorlib.ni.dll
+ 2008-02-13 17:31:32 1,581,056 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\ab2b2664932688ae7c8e0bd9d10448ef\PresentationBuildTasks.ni.dll
+ 2008-02-13 17:20:34 40,960 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\3df824565150953afd560ca20237b881\PresentationCFFRasterizer.ni.dll
+ 2008-02-13 17:20:32 12,570,624 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCore\011f8e31d197b4ccb6a61c2267a38e5c\PresentationCore.ni.dll
+ 2008-02-13 17:18:54 48,640 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\4ce7fd62d4107fbe996ab305eb21ee6a\PresentationFontCache.ni.exe
+ 2008-02-13 17:23:11 393,216 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\36c6cfd5d4e80d5c548f823b2bbf5457\PresentationFramework.Aero.ni.dll
+ 2008-02-13 17:23:15 552,960 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\3f18bff5107c9a8accae6c248fdf3c2e\PresentationFramework.Luna.ni.dll
+ 2008-02-13 17:21:24 15,036,416 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\60421dda88800b14dc101ed9dca422fe\PresentationFramework.ni.dll
+ 2008-02-13 17:23:18 274,432 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\81d2540bc1c18190d0431d9a61bee65b\PresentationFramework.Royale.ni.dll
+ 2008-02-13 17:23:14 245,760 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\9df61ec7aad39fe0bac82139cd84e5e5\PresentationFramework.Classic.ni.dll
+ 2008-02-13 17:21:30 2,035,712 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationUI\6d2716a55eb8ce6fc4cbf83f3ab329e3\PresentationUI.ni.dll
+ 2008-02-13 17:21:36 2,416,640 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ReachFramework\840c64bba900a6ed333ca39e63a9ca3b\ReachFramework.ni.dll
+ 2008-02-13 17:31:16 139,264 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\feac66e81309d67b48f7a9f4cb98f7c8\ServiceModelReg.ni.exe
+ 2008-02-13 17:31:17 299,008 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\169ba2fe1a4d87ede3ab8dd3d44d867e\SMDiagnostics.ni.dll
+ 2008-02-13 17:31:18 323,584 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\SMSvcHost\a098c66aa40d958878f3f5344e6ae1a4\SMSvcHost.ni.exe
+ 2008-02-13 17:31:44 262,144 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\sysglobl\6a075eb8e0f13de87d1278aa8562d51e\sysglobl.ni.dll
+ 2008-02-13 17:19:21 163,840 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\c46625ea87db53ccf6194fe17ee05c19\System.Configuration.Install.ni.dll
+ 2008-02-13 17:19:00 1,011,712 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\eee9b48577689e92db5a7b5c5de98d9b\System.Configuration.ni.dll
+ 2008-02-13 17:22:57 1,183,744 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\1abdb47765d0696a2fc0a1095bac0249\System.Data.OracleClient.ni.dll
+ 2008-02-13 17:19:18 2,756,608 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\e59504af41afab5e04681af951d9b302\System.Data.SqlXml.ni.dll
+ 2008-02-13 17:21:58 7,049,216 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Data\5f669e819da7010c1dca347a25597c42\System.Data.ni.dll
+ 2008-02-13 17:19:51 1,798,144 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Deployment\c7dea4895e1fa33d65e448c03de48d26\System.Deployment.ni.dll
+ 2008-02-13 17:22:51 10,969,088 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Design\c1e16b40e30a05c39be8aee46311841c\System.Design.ni.dll
+ 2008-02-13 17:21:43 1,224,704 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\914668b240550f529e54bb772c6fc881\System.DirectoryServices.ni.dll
+ 2008-02-13 17:22:59 512,000 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\f11bc82c09955cb8438d3885a99c297d\System.DirectoryServices.Protocols.ni.dll
+ 2008-02-13 17:22:52 229,376 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\b974f6c17d17a533adf6e7710c5a62fa\System.Drawing.Design.ni.dll
+ 2008-02-13 17:19:25 1,667,072 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\0e83aac37b2623f1a24c70979f31dd56\System.Drawing.ni.dll
+ 2008-02-13 17:22:02 659,456 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\646131eda5f21f4e6216733d49c22c56\System.EnterpriseServices.ni.dll
+ 2008-02-13 17:22:02 294,912 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\646131eda5f21f4e6216733d49c22c56\System.EnterpriseServices.Wrapper.dll
+ 2008-02-13 17:24:47 241,664 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\492d16599426c7ab35ad2c499a9d4ae6\System.IdentityModel.Selectors.ni.dll
+ 2008-02-13 17:24:46 1,118,208 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\bdd94a4c46e4424787dfed9381196cb3\System.IdentityModel.ni.dll
+ 2008-02-13 17:24:49 417,792 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.IO.Log\e1e6aa5272543f1d9dad98be897b693e\System.IO.Log.ni.dll
+ 2008-02-13 17:32:13 655,360 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Messaging\00e3750e478bac4913ee7a6c3b7cd392\System.Messaging.ni.dll
+ 2008-02-13 17:21:40 1,134,592 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Printing\f94fbbe7d7c6e76d02cd9fb94ee8d910\System.Printing.ni.dll
+ 2008-02-13 17:22:05 815,104 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\0898f6c1de8cb89413d206e3d6a3ce1d\System.Runtime.Remoting.ni.dll
+ 2008-02-13 17:19:22 339,968 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\1f5cf8178029f5b959a9af75cb8cfedb\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2008-02-13 17:24:56 2,445,312 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\e27527e67611d8acc0d8dff6d286af23\System.Runtime.Serialization.ni.dll
+ 2008-02-13 17:19:19 733,184 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Security\2b5994269cc5b996231c9b21afea9a91\System.Security.ni.dll
+ 2008-02-13 17:31:07 18,071,552 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\350903c091629396c08742c996c1caba\System.ServiceModel.ni.dll
+ 2008-02-13 17:18:56 233,472 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\193ac978af569ad9ee45110b359961b9\System.ServiceProcess.ni.dll
+ 2008-02-13 17:31:44 2,039,808 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Speech\d4147c99010667b5c547fcfc56ed7bd5\System.Speech.ni.dll
+ 2008-02-13 17:22:00 679,936 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Transactions\12e0aa1030badf4524f897e3f57b037a\System.Transactions.ni.dll
+ 2008-02-13 17:31:49 2,342,912 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\37d87b3cab1c66ec4430ebb2abeaa570\System.Web.Mobile.ni.dll
+ 2008-02-13 17:22:57 237,568 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\b5b81faf46fc63c20d5339b36edd02fa\System.Web.RegularExpressions.ni.dll
+ 2008-02-13 17:22:34 1,986,560 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Services\38991368499e2109ea4099a0fe29c5a3\System.Web.Services.ni.dll
+ 2008-02-13 17:22:30 12,509,184 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web\67cfb70213562afe2ca9b9066764af3a\System.Web.ni.dll
+ 2008-02-13 17:19:48 13,193,216 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\3d8c79c45aa674e43f075e2e66b8caf5\System.Windows.Forms.ni.dll
+ 2008-02-13 17:31:59 3,084,288 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\9798b3ba448ba7d5f1dd70a8a1fb7562\System.Workflow.Activities.ni.dll
+ 2008-02-13 17:32:08 4,579,328 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\575dad1c0dc9d035acbab10846802ce0\System.Workflow.ComponentModel.ni.dll
+ 2008-02-13 17:32:12 2,088,960 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\9d89b57d703aefe4938b45f8b398d378\System.Workflow.Runtime.ni.dll
+ 2008-02-13 17:19:10 5,771,264 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\c98cb65a79cfccb44ea727ebe4593ede\System.Xml.ni.dll
+ 2008-02-13 17:18:52 8,265,728 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\ba0e3a22211ba7343e0116b051f2965a\System.ni.dll
+ 2008-02-13 17:32:17 483,328 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\c2e5aa36c753a605bdefb97ab83e8806\UIAutomationClient.ni.dll
+ 2008-02-13 17:32:19 1,118,208 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\ae395b4b568f0d71fec35e3902a46a99\UIAutomationClientsideProviders.ni.dll
+ 2008-02-13 17:20:33 50,688 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\9e249f5c0ef3e391c5aec1f9da805519\UIAutomationProvider.ni.dll
+ 2008-02-13 17:20:34 196,608 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\46e3ec015dd7b25d5ddc185534458122\UIAutomationTypes.ni.dll
+ 2008-02-13 17:20:02 3,395,584 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsBase\0703021437c2ec71213a6b701771be86\WindowsBase.ni.dll
+ 2008-02-13 17:32:23 270,336 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\b7c202147607f93463ead99e743c78b9\WindowsFormsIntegration.ni.dll
+ 2008-02-13 17:31:19 380,928 ----a-w C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WsatConfig\13f498f606b7cb97c086eea149b8c872\WsatConfig.ni.exe
+ 2008-06-13 13:10:50 272,128 ------w C:\WINDOWS\Driver Cache\i386\bthport.sys
+ 2005-10-21 00:02:28 163,328 ----a-w C:\WINDOWS\erdnt\Hiv-backup\ERDNT.EXE
- 2007-03-13 15:57:10 163,328 ----a-w C:\WINDOWS\erdnt\subs\ERDNT.EXE
+ 2005-10-21 00:02:28 163,328 ----a-w C:\WINDOWS\erdnt\subs\ERDNT.EXE
+ 2000-08-31 12:00:00 89,504 ----a-w C:\WINDOWS\fdsv.exe
+ 2000-08-31 12:00:00 80,412 ----a-w C:\WINDOWS\grep.exe
+ 2007-08-20 10:04:34 124,928 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\advpack.dll
+ 2007-08-20 10:04:34 214,528 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\dxtrans.dll
+ 2007-08-20 10:04:34 132,608 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\extmgr.dll
+ 2007-08-20 10:04:34 63,488 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\icardie.dll
+ 2007-08-17 10:20:54 63,488 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\ie4uinit.exe
+ 2007-08-20 10:04:34 153,088 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\ieakeng.dll
+ 2007-08-20 10:04:35 230,400 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\ieaksie.dll
+ 2007-08-17 07:34:25 161,792 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\ieakui.dll
+ 2007-08-20 10:04:35 383,488 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\ieapfltr.dll
+ 2007-08-20 10:04:35 384,512 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\iedkcs32.dll
+ 2007-08-20 10:04:37 6,058,496 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\ieframe.dll
+ 2007-08-20 10:04:38 44,544 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\iernonce.dll
+ 2007-08-20 10:04:38 267,776 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\iertutil.dll
+ 2007-08-17 10:20:54 13,824 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\ieudinit.exe
+ 2007-08-17 10:21:21 625,152 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\iexplore.exe
+ 2007-08-20 10:04:39 27,648 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\jsproxy.dll
+ 2007-08-20 10:04:39 459,264 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\msfeeds.dll
+ 2007-08-20 10:04:39 52,224 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\msfeedsbs.dll
+ 2007-08-20 10:04:41 3,584,512 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\mshtml.dll
+ 2007-08-20 10:04:41 477,696 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\mshtmled.dll
+ 2007-08-20 10:04:41 193,024 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\msrating.dll
+ 2007-08-20 10:04:42 671,232 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\mstime.dll
+ 2007-08-20 10:04:42 102,400 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\occache.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\spuninst\updspapi.dll
+ 2007-08-20 10:04:42 105,984 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\url.dll
+ 2007-08-20 10:04:42 1,152,000 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\urlmon.dll
+ 2007-08-20 10:04:42 232,960 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\webcheck.dll
+ 2007-08-20 10:04:43 824,832 -c----w C:\WINDOWS\ie7updates\KB942615-IE7\wininet.dll
+ 2007-10-10 23:55:51 124,928 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\advpack.dll
+ 2006-10-17 16:58:06 346,624 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\dxtmsft.dll
+ 2007-10-10 23:55:51 214,528 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\dxtrans.dll
+ 2007-10-10 23:55:51 132,608 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\extmgr.dll
+ 2007-10-10 23:55:51 63,488 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\icardie.dll
+ 2007-10-10 10:59:40 70,656 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\ie4uinit.exe
+ 2007-10-10 23:55:51 153,088 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\ieakeng.dll
+ 2007-10-10 23:55:51 230,400 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\ieaksie.dll
+ 2007-10-10 05:46:55 161,792 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\ieakui.dll
+ 2007-10-10 23:55:52 383,488 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\ieapfltr.dll
+ 2007-10-10 23:55:52 384,512 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\iedkcs32.dll
+ 2007-10-10 23:55:54 6,065,664 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\ieframe.dll
+ 2007-10-10 23:55:55 44,544 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\iernonce.dll
+ 2007-10-10 23:55:55 267,776 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\iertutil.dll
+ 2007-10-10 10:59:40 13,824 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\ieudinit.exe
+ 2007-10-10 10:59:52 625,152 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\iexplore.exe
+ 2007-10-10 23:55:56 27,648 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\jsproxy.dll
+ 2007-10-10 23:55:56 459,264 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\msfeeds.dll
+ 2007-10-10 23:55:56 52,224 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\msfeedsbs.dll
+ 2007-10-30 23:42:28 3,590,656 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\mshtml.dll
+ 2007-10-10 23:55:58 478,208 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\mshtmled.dll
+ 2007-10-10 23:55:58 193,024 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\msrating.dll
+ 2007-10-10 23:55:59 671,232 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\mstime.dll
+ 2007-10-10 23:55:59 102,400 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\occache.dll
+ 2006-10-17 16:58:08 44,544 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\pngfilt.dll
+ 2007-03-06 01:22:41 213,216 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\spuninst\updspapi.dll
+ 2007-10-10 23:55:59 105,984 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\url.dll
+ 2007-10-10 23:56:00 1,159,680 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\urlmon.dll
+ 2007-10-10 23:56:00 232,960 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\webcheck.dll
+ 2007-10-10 23:56:00 824,832 -c----w C:\WINDOWS\ie7updates\KB944533-IE7\wininet.dll
+ 2007-12-07 02:21:45 124,928 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\advpack.dll
+ 2007-12-19 23:01:06 347,136 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\dxtmsft.dll
+ 2007-12-07 02:21:45 214,528 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\dxtrans.dll
+ 2007-12-07 02:21:45 133,120 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\extmgr.dll
+ 2007-12-07 02:21:45 63,488 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\icardie.dll
+ 2007-12-06 11:00:57 70,656 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\ie4uinit.exe
+ 2007-12-07 02:21:45 153,088 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\ieakeng.dll
+ 2007-12-07 02:21:45 230,400 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\ieaksie.dll
+ 2007-12-06 04:59:51 161,792 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\ieakui.dll
+ 2007-12-07 02:21:45 383,488 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\ieapfltr.dll
+ 2007-12-07 02:21:45 384,512 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\iedkcs32.dll
+ 2007-12-07 02:21:46 6,066,176 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\ieframe.dll
+ 2007-12-07 02:21:46 44,544 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\iernonce.dll
+ 2007-12-07 02:21:46 267,776 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\iertutil.dll
+ 2007-12-06 11:00:58 13,824 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\ieudinit.exe
+ 2007-12-06 11:01:25 625,664 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\iexplore.exe
+ 2007-12-07 02:21:47 27,648 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\jsproxy.dll
+ 2007-12-07 02:21:47 459,264 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\msfeeds.dll
+ 2007-12-07 02:21:47 52,224 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\msfeedsbs.dll
+ 2007-12-08 05:21:48 3,592,192 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\mshtml.dll
+ 2007-12-07 02:21:47 478,208 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\mshtmled.dll
+ 2007-12-07 02:21:48 193,024 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\msrating.dll
+ 2007-12-07 02:21:48 671,232 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\mstime.dll
+ 2007-12-07 02:21:48 102,912 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\occache.dll
+ 2008-01-11 05:53:32 44,544 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\pngfilt.dll
+ 2007-03-06 01:22:39 213,216 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\spuninst\updspapi.dll
+ 2007-12-07 02:21:48 105,984 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\url.dll
+ 2007-12-07 02:21:48 1,159,680 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\urlmon.dll
+ 2007-12-07 02:21:48 233,472 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\webcheck.dll
+ 2007-12-07 02:21:48 824,832 -c----w C:\WINDOWS\ie7updates\KB947864-IE7\wininet.dll
+ 2008-03-01 13:06:20 124,928 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\advpack.dll
+ 2008-03-01 13:06:21 347,136 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\dxtmsft.dll
+ 2008-03-01 13:06:21 214,528 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\dxtrans.dll
+ 2008-03-01 13:06:21 133,120 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\extmgr.dll
+ 2008-03-01 13:06:21 63,488 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\icardie.dll
+ 2008-02-29 08:55:23 70,656 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\ie4uinit.exe
+ 2008-03-01 13:06:21 153,088 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\ieakeng.dll
+ 2008-03-01 13:06:21 230,400 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\ieaksie.dll
+ 2008-02-15 05:44:25 161,792 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\ieakui.dll
+ 2008-03-01 13:06:22 383,488 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\ieapfltr.dll
+ 2008-03-01 13:06:22 384,512 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\iedkcs32.dll
+ 2008-03-01 13:06:24 6,066,176 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\ieframe.dll
+ 2008-03-01 13:06:24 44,544 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\iernonce.dll
+ 2008-03-01 13:06:25 267,776 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\iertutil.dll
+ 2008-02-22 10:00:51 13,824 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\ieudinit.exe
+ 2008-02-29 08:55:46 625,664 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\iexplore.exe
+ 2008-03-01 13:06:25 27,648 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\jsproxy.dll
+ 2008-03-01 13:06:26 459,264 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\msfeeds.dll
+ 2008-03-01 13:06:26 52,224 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\msfeedsbs.dll
+ 2008-03-01 22:36:30 3,591,680 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\mshtml.dll
+ 2008-03-01 13:06:28 478,208 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\mshtmled.dll
+ 2008-03-01 13:06:28 193,024 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\msrating.dll
+ 2008-03-01 13:06:29 671,232 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\mstime.dll
+ 2008-03-01 13:06:29 102,912 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\occache.dll
+ 2008-03-01 13:06:29 44,544 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\pngfilt.dll
+ 2007-03-06 01:22:39 213,216 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\spuninst\updspapi.dll
+ 2008-03-01 13:06:29 105,984 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\url.dll
+ 2008-03-01 13:06:30 1,159,680 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\urlmon.dll
+ 2008-03-01 13:06:30 233,472 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\webcheck.dll
+ 2008-03-01 13:06:31 826,368 -c----w C:\WINDOWS\ie7updates\KB950759-IE7\wininet.dll
+ 2007-04-20 13:11:56 992,808 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\3B94178DD1A78454C9FB30B297E19580\2.5.2\bcont.exe
+ 2007-04-19 18:21:40 202,280 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\3B94178DD1A78454C9FB30B297E19580\2.5.2\sprtsvc.exe
+ 2007-03-22 23:07:56 91,488 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\ADDRPARS.DLL
+ 2007-03-22 23:07:54 80,224 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\DLGSETP.DLL
+ 2007-04-19 17:53:52 137,568 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\ENVELOPE.DLL
+ 2007-05-31 17:41:06 10,352,472 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\EXCEL.EXE
+ 2007-04-19 18:09:30 167,256 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\IETAG.DLL
+ 2007-04-19 17:53:52 127,328 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\IMPMAIL.DLL
+ 2007-04-19 17:54:04 183,136 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\MIMEDIR.DLL
+ 2007-06-18 21:16:32 12,259,160 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\MSO.DLL
+ 2007-05-31 17:43:46 7,613,280 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\OUTLLIB.DLL
+ 2007-04-19 17:53:44 106,336 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\OUTLMIME.DLL
+ 2007-05-31 17:42:14 200,032 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\OUTLOOK.EXE
+ 2007-04-19 17:53:56 149,856 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\OUTLPH.DLL
+ 2007-04-19 17:53:24 69,984 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\OUTLRPC.DLL
+ 2007-03-22 23:07:10 41,824 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\RECALL.DLL
+ 2007-03-22 23:07:54 78,168 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\RM.DLL
+ 2007-03-22 23:22:02 103,264 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\TRANSMGR.DLL
+ 2007-05-09 21:19:48 2,585,936 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\VBE6.DLL
+ 2007-05-31 17:37:40 12,310,368 ----a-r C:\WINDOWS\Installer\$PatchCache$\Managed\9040311900063D11C8EF10054038389C\11.0.8173\WINWORD.EXE
+ 2008-08-02 14:55:51 27,136 ----a-r C:\WINDOWS\Installer\{02DFF6B1-1654-411C-8D7B-FD6052EF016F}\AppleSoftwareUpdateIco.exe
+ 2008-02-18 21:27:53 25,214 ----a-r C:\WINDOWS\Installer\{2E1A6A90-62A6-4862-9962-81DBFD001033}\ARPPRODUCTICON.exe
+ 2008-06-23 02:16:42 22,486 ----a-r C:\WINDOWS\Installer\{6F23C1A3-9F62-470C-BD12-B83F04E67865}\Icon_SFTPBackup.exe
+ 2008-06-23 02:16:42 157,733 ----a-r C:\WINDOWS\Installer\{6F23C1A3-9F62-470C-BD12-B83F04E67865}\Icon_SmartFTP.exe
+ 2008-02-02 14:08:55 32,768 ----a-r C:\WINDOWS\Installer\{716E0306-8318-4364-8B8F-0CC4E9376BAC}\icon.exe
+ 2008-03-31 17:24:13 102,400 ----a-r C:\WINDOWS\Installer\{80FD852F-5AAC-4129-B931-06AAFFA43138}\iTunesIco.exe
+ 2008-05-14 07:01:44 2,560 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\cagicon.exe
- 2007-10-12 07:06:35 34,304 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\misc.exe
+ 2008-05-14 07:01:44 34,304 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\misc.exe
- 2007-10-12 07:06:35 8,192 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\mspicons.exe
+ 2008-05-14 07:01:44 8,192 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\mspicons.exe
- 2007-10-12 07:06:35 3,584 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\opwicon.exe
+ 2008-05-14 07:01:44 3,584 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\opwicon.exe
- 2007-10-12 07:06:35 16,384 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\PEicons.exe
+ 2008-05-14 07:01:44 16,384 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\PEicons.exe
- 2007-10-12 07:06:35 12,800 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\pubs.exe
+ 2008-05-14 07:01:44 12,800 ----a-r C:\WINDOWS\Installer\{90190409-6000-11D3-8CFE-0050048383C9}\pubs.exe
- 2007-10-13 07:02:14 167,936 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\accicons.exe
+ 2008-05-14 07:02:21 167,936 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\accicons.exe
+ 2008-05-14 07:02:21 2,560 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\cagicon.exe
- 2007-10-13 07:02:14 81,920 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\fpicon.exe
+ 2008-05-14 07:02:21 81,920 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\fpicon.exe
- 2007-10-13 07:02:13 34,304 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\misc.exe
+ 2008-05-14 07:02:20 34,304 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\misc.exe
- 2007-10-13 07:02:14 8,192 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\mspicons.exe
+ 2008-05-14 07:02:21 8,192 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\mspicons.exe
- 2007-10-13 07:02:14 3,584 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\opwicon.exe
+ 2008-05-14 07:02:21 3,584 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\opwicon.exe
- 2007-10-13 07:02:14 114,688 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\outicon.exe
+ 2008-05-14 07:02:21 114,688 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\outicon.exe
- 2007-10-13 07:02:14 16,384 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\PEicons.exe
+ 2008-05-14 07:02:20 16,384 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\PEicons.exe
- 2007-10-13 07:02:14 30,720 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\pptico.exe
+ 2008-05-14 07:02:20 30,720 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\pptico.exe
- 2007-10-13 07:02:14 22,528 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\unbndico.exe
+ 2008-05-14 07:02:21 22,528 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\unbndico.exe
- 2007-10-13 07:02:13 45,056 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\wordicon.exe
+ 2008-05-14 07:02:20 45,056 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\wordicon.exe
- 2007-10-13 07:02:13 90,112 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\xlicons.exe
+ 2008-05-14 07:02:20 90,112 ----a-r C:\WINDOWS\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\xlicons.exe
- 2007-11-13 23:48:10 12,288 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\cagicon.exe
+ 2008-07-09 07:02:33 12,288 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\cagicon.exe
- 2007-11-13 23:48:10 135,168 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\misc.exe
+ 2008-07-09 07:02:33 135,168 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\misc.exe
- 2007-11-13 23:48:10 11,264 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\mspicons.exe
+ 2008-07-09 07:02:33 11,264 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\mspicons.exe
- 2007-11-13 23:48:10 27,136 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\oisicon.exe
+ 2008-07-09 07:02:33 27,136 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\oisicon.exe
- 2007-11-13 23:48:10 4,096 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\opwicon.exe
+ 2008-07-09 07:02:33 4,096 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\opwicon.exe
- 2007-11-13 23:48:10 794,624 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\outicon.exe
+ 2008-07-09 07:02:33 794,624 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\outicon.exe
- 2007-11-13 23:48:10 23,040 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\unbndico.exe
+ 2008-07-09 07:02:33 23,040 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\unbndico.exe
- 2007-11-13 23:48:09 286,720 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\wordicon.exe
+ 2008-07-09 07:02:33 286,720 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\wordicon.exe
- 2007-11-13 23:48:09 409,600 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\xlicons.exe
+ 2008-07-09 07:02:33 409,600 ----a-r C:\WINDOWS\Installer\{91130409-6000-11D3-8CFE-0150048383C9}\xlicons.exe
+ 2006-08-05 01:41:26 2,238 -c--a-r C:\WINDOWS\Installer\{A683A2C0-821C-486F-858C-FA634DB5E864}\ARPPRODUCTICON.exe
+ 2008-04-29 00:35:32 295,606 ----a-r C:\WINDOWS\Installer\{AC76BA86-7AD7-1033-7B44-A81200000003}\SC_Reader.exe
- 2005-03-18 21:23:10 53,248 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.AudioVideoPlayback.dll
+ 2005-03-18 22:23:10 53,248 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.AudioVideoPlayback.dll
- 2005-03-18 21:23:10 12,800 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Diagnostics.dll
+ 2005-03-18 22:23:10 12,800 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Diagnostics.dll
- 2005-03-18 21:23:14 473,600 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Direct3D.dll
+ 2005-03-18 22:23:14 473,600 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Direct3D.dll
+ 2004-09-29 17:38:58 2,676,224 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.Direct3DX.dll
- 2005-03-18 21:23:10 145,920 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectDraw.dll
+ 2005-03-18 22:23:10 145,920 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectDraw.dll
- 2005-03-18 21:23:10 159,232 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectInput.dll
+ 2005-03-18 22:23:10 159,232 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectInput.dll
- 2005-03-18 21:23:14 364,544 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectPlay.dll
+ 2005-03-18 22:23:14 364,544 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectPlay.dll
- 2005-03-18 21:23:12 178,176 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectSound.dll
+ 2005-03-18 22:23:12 178,176 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.DirectSound.dll
- 2005-03-18 21:23:14 223,232 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.dll
+ 2005-03-18 22:23:14 223,232 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2902.0\Microsoft.DirectX.dll
+ 2004-12-01 20:53:06 2,846,720 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2903.0\Microsoft.DirectX.Direct3DX.dll
+ 2005-02-06 00:32:54 563,712 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2904.0\Microsoft.DirectX.Direct3DX.dll
- 2005-03-18 21:23:14 567,296 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2905.0\Microsoft.DirectX.Direct3DX.dll
+ 2005-03-18 22:23:14 567,296 -c--a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2905.0\Microsoft.DirectX.Direct3DX.dll
+ 2005-05-26 20:15:56 576,000 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2906.0\Microsoft.DirectX.Direct3DX.dll
+ 2005-07-22 22:21:34 577,024 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2907.0\Microsoft.DirectX.Direct3DX.dll
+ 2005-09-28 19:11:52 577,536 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2908.0\Microsoft.DirectX.Direct3DX.dll
+ 2005-12-05 22:20:50 577,536 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2909.0\Microsoft.DirectX.Direct3DX.dll
+ 2006-02-03 12:40:48 578,560 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2910.0\Microsoft.DirectX.Direct3DX.dll
+ 2006-03-31 15:27:50 578,560 ----a-w C:\WINDOWS\Microsoft.NET\DirectX for Managed Code\1.0.2911.0\Microsoft.DirectX.Direct3DX.dll
- 2005-09-23 11:28:52 72,704 ----a-w C:\WINDOWS\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2007-10-24 06:47:38 82,944 ----a-w C:\WINDOWS\Microsoft.NET\Framework\NETFXSBS10.exe
- 2005-09-23 11:28:52 7,680 ----a-w C:\WINDOWS\Microsoft.NET\Framework\sbscmp10.dll
+ 2007-10-24 06:47:38 16,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\sbscmp10.dll
- 2005-09-23 11:28:56 7,680 ----a-w C:\WINDOWS\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
+ 2007-10-24 06:47:40 16,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
- 2005-09-23 11:28:58 7,680 ----a-w C:\WINDOWS\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
+ 2007-10-24 06:47:42 16,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
- 2005-09-23 11:28:56 7,680 ----a-w C:\WINDOWS\Microsoft.NET\Framework\SharedReg12.dll
+ 2007-10-24 06:47:40 16,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\SharedReg12.dll
- 2005-09-23 11:28:52 86,528 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\mscormmc.dll
+ 2007-10-24 06:47:38 97,280 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v1.0.3705\mscormmc.dll
- 2005-09-23 11:28:36 18,944 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll
+ 2007-10-24 06:47:26 28,672 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll
- 2005-09-23 11:28:42 136,192 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll
+ 2007-10-24 06:47:30 145,408 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll
- 2005-09-23 11:28:44 4,608 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll
+ 2007-10-24 06:47:32 13,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll
- 2005-09-23 11:29:04 183,808 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\vbc7ui.dll
+ 2007-10-24 06:47:48 193,016 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\vbc7ui.dll
- 2005-09-23 11:28:28 208,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\Vsavb7rtUI.dll
+ 2007-10-24 06:47:20 218,112 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\1033\Vsavb7rtUI.dll
- 2005-09-23 11:28:56 10,752 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
+ 2007-10-24 06:47:40 10,752 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
- 2005-09-23 11:28:58 138,240 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll
+ 2007-10-24 06:47:42 147,968 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll
- 2005-09-23 11:28:36 87,552 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\alink.dll
+ 2007-10-24 06:47:26 99,320 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\alink.dll
- 2007-04-13 08:21:18 58,712 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
+ 2007-10-24 06:47:42 59,392 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
- 2005-09-23 11:28:32 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2007-10-24 06:47:22 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
- 2007-04-13 08:20:52 10,752 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll
+ 2007-10-24 06:47:22 22,024 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll
- 2007-04-13 08:20:52 8,192 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll
+ 2007-10-24 06:47:22 17,928 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll
- 2007-04-13 08:20:52 23,552 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll
+ 2007-10-24 06:47:22 33,288 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll
- 2007-04-13 08:20:50 75,264 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll
+ 2007-10-24 06:47:22 84,480 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll
- 2005-09-23 11:28:32 13,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
+ 2007-10-24 06:47:22 24,576 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
- 2007-04-13 08:20:52 32,608 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
+ 2007-10-24 06:47:22 32,776 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
- 2005-09-23 11:28:32 106,496 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2007-10-24 06:47:22 106,496 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
- 2007-04-13 08:20:52 33,632 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
+ 2007-10-24 06:47:22 33,800 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
- 2007-04-13 08:20:52 32,600 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2007-10-24 06:47:22 33,280 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
- 2007-04-13 08:20:52 507,904 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll
+ 2007-10-24 06:47:22 507,904 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll
- 2005-09-23 11:28:56 106,496 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
+ 2007-10-24 06:47:40 106,496 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2007-04-13 08:21:16 88,576 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll
+ 2007-10-24 06:47:40 101,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll
- 2005-09-23 11:28:42 76,984 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\csc.exe
+ 2007-10-24 06:47:30 80,376 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\csc.exe
- 2005-09-23 11:28:42 1,144,832 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cscomp.dll
+ 2007-10-24 06:47:30 1,162,744 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cscomp.dll
- 2005-09-23 11:28:42 13,312 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
+ 2007-10-24 06:47:30 13,312 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
- 2005-09-23 11:28:58 17,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Culture.dll
+ 2007-10-24 06:47:42 27,136 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Culture.dll
- 2005-09-23 11:28:56 68,608 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll
+ 2007-10-24 06:47:40 69,120 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll
- 2005-09-23 11:28:44 31,936 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
+ 2007-10-24 06:47:30 35,320 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
- 2005-09-23 11:28:38 52,736 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\dfdll.dll
+ 2007-10-24 06:47:28 66,552 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\dfdll.dll
- 2007-04-13 08:20:58 5,120 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
+ 2007-10-24 06:47:28 5,120 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
- 2005-09-23 11:29:12 547,840 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
+ 2007-10-24 06:47:54 572,936 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
- 2005-09-23 11:28:56 788,992 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll
+ 2007-10-24 06:47:40 798,224 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll
- 2005-09-23 11:28:50 9,216 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\fusion.dll
+ 2007-10-24 06:47:36 18,936 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\fusion.dll
- 2007-04-13 08:21:16 9,728 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2007-10-24 06:47:40 9,728 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
- 2005-09-23 11:28:56 8,192 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
+ 2007-10-24 06:47:40 8,192 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
- 2005-09-23 11:28:56 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEHost.dll
+ 2007-10-24 06:47:40 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IEHost.dll
- 2005-09-23 11:28:56 5,632 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll
+ 2007-10-24 06:47:40 6,656 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll
- 2007-04-13 08:21:16 228,688 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
+ 2007-10-24 06:47:40 230,904 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
- 2007-04-13 08:21:16 28,672 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2007-10-24 06:47:40 28,672 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
- 2005-09-23 11:28:56 55,296 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll
+ 2007-10-24 06:47:40 65,032 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll
- 2005-09-23 11:28:56 72,192 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
+ 2007-10-24 06:47:40 72,192 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
- 2005-09-23 11:28:48 40,960 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2007-10-24 06:47:34 40,960 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\jsc.exe
- 2007-04-13 08:21:10 413,696 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll
+ 2007-10-24 06:47:36 348,160 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll
- 2005-09-23 11:28:48 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
+ 2007-10-24 06:47:36 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
- 2007-04-13 08:21:10 647,168 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll
+ 2007-10-24 06:47:36 655,360 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll
- 2005-09-23 11:28:48 73,728 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll
+ 2007-10-24 06:47:36 77,824 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll
- 2007-04-13 08:21:08 749,568 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll
+ 2007-10-24 06:47:34 749,568 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll
- 2005-09-23 11:29:10 110,592 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2007-10-24 06:47:52 110,592 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll
- 2005-09-23 11:29:10 372,736 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll
+ 2007-10-24 06:47:52 372,736 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll
- 2005-09-23 11:29:08 667,648 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.dll
+ 2007-10-24 06:47:50 671,744 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.dll
- 2005-09-23 11:28:30 28,672 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
+ 2007-10-24 06:47:20 28,672 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
- 2005-09-23 11:29:10 5,632 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
+ 2007-10-24 06:47:52 5,632 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
- 2005-09-23 11:28:30 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
+ 2007-10-24 06:47:20 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
- 2005-09-23 11:28:30 12,800 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2007-10-24 06:47:20 12,800 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2005-09-23 11:28:30 7,168 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
+ 2007-10-24 06:47:20 7,168 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
- 2007-04-13 08:20:52 87,040 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll
+ 2007-10-24 06:47:22 97,792 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll
- 2005-09-23 11:28:48 69,632 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
+ 2007-10-24 06:47:36 69,632 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- 2007-04-13 08:21:18 802,304 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2007-10-24 06:47:40 822,280 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
- 2005-09-23 11:28:56 73,216 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll
+ 2007-10-24 06:47:40 83,456 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll
- 2005-09-23 11:28:56 288,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll
+ 2007-10-24 06:47:40 308,224 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll
- 2007-04-13 08:21:16 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
+ 2007-10-24 06:47:40 47,104 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
- 2007-04-13 08:21:16 326,656 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2007-10-24 06:47:40 348,672 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
- 2005-09-23 11:28:56 81,408 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorld.dll
+ 2007-10-24 06:47:40 94,208 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorld.dll
- 2007-04-13 08:21:16 4,308,992 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2007-10-24 06:47:40 4,444,160 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
- 2007-04-13 08:21:16 102,912 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll
+ 2007-10-24 06:47:40 114,688 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll
- 2005-09-23 11:29:00 330,752 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
+ 2007-10-24 06:47:44 340,992 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
- 2005-09-23 11:28:56 67,072 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
+ 2007-10-24 06:47:40 77,312 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
- 2005-09-23 11:28:50 9,216 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll
+ 2007-10-24 06:47:36 18,944 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll
- 2007-04-13 08:21:18 227,328 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll
+ 2007-10-24 06:47:40 242,688 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll
- 2007-04-13 08:21:18 68,952 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
+ 2007-10-24 06:47:40 70,144 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
- 2005-09-23 11:28:56 10,240 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscortim.dll
+ 2007-10-24 06:47:40 19,456 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscortim.dll
- 2007-04-13 08:21:12 5,634,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2007-10-24 06:47:36 5,814,784 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
- 2005-09-23 11:29:00 22,528 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll
+ 2007-10-24 06:47:44 31,744 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll
- 2007-04-13 08:21:16 99,152 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ngen.exe
+ 2007-10-24 06:47:40 101,880 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ngen.exe
- 2007-04-13 08:21:18 15,360 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\normalization.dll
+ 2007-10-24 06:47:40 24,584 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\normalization.dll
- 2005-09-23 11:28:56 78,336 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll
+ 2007-10-24 06:47:40 89,096 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll
- 2007-04-13 08:21:12 136,192 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\peverify.dll
+ 2007-10-24 06:47:36 144,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\peverify.dll
- 2005-09-23 11:28:56 53,248 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2007-10-24 06:47:40 53,248 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
- 2005-09-23 11:28:56 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
+ 2007-10-24 06:47:40 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- 2005-09-23 11:29:02 59,072 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
+ 2007-10-24 06:47:46 61,952 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
- 2005-09-23 11:28:58 7,680 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
+ 2007-10-24 06:47:42 16,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
- 2005-09-23 11:28:56 107,520 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\shfusion.dll
+ 2007-10-24 06:47:40 119,296 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\shfusion.dll
- 2005-09-23 11:29:00 85,504 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
+ 2007-10-24 06:47:44 95,232 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
- 2007-04-13 08:21:18 382,464 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2007-10-24 06:47:40 392,696 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\SOS.dll
- 2007-04-13 08:21:18 110,592 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll
+ 2007-10-24 06:47:40 110,592 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll
- 2007-04-13 08:21:18 413,696 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.configuration.dll
+ 2007-10-24 06:47:42 425,984 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.configuration.dll
- 2005-09-23 11:28:56 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
+ 2007-10-24 06:47:40 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
- 2007-04-13 08:21:16 2,902,016 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Data.dll
+ 2007-10-24 06:47:40 3,036,160 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Data.dll
- 2007-04-13 08:21:18 482,304 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Data.OracleClient.dll
+ 2007-10-24 06:47:40 483,840 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Data.OracleClient.dll
- 2007-04-13 08:21:18 716,800 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Data.SqlXml.dll
+ 2007-10-24 06:47:40 741,376 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Data.SqlXml.dll
- 2007-04-13 08:20:58 888,832 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll
+ 2007-10-24 06:47:28 933,888 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll
- 2007-04-13 08:21:16 5,001,216 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2007-10-24 06:47:40 5,070,848 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
- 2005-09-23 11:28:56 397,312 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll
+ 2007-10-24 06:47:40 401,408 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll
- 2007-04-13 08:21:18 188,416 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll
+ 2007-10-24 06:47:40 188,416 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll
- 2007-04-13 08:21:16 2,940,928 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.dll
+ 2007-10-24 06:47:40 3,076,096 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.dll
- 2005-09-23 11:28:56 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
+ 2007-10-24 06:47:40 81,920 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
- 2007-04-13 08:21:16 577,536 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
+ 2007-10-24 06:47:40 630,784 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
- 2007-04-13 08:21:16 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll
+ 2007-10-24 06:47:40 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll
- 2007-04-13 08:21:18 47,616 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll
+ 2007-10-24 06:47:40 57,392 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll
- 2007-04-13 08:21:18 114,176 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Wrapper.dll
+ 2007-10-24 06:47:40 113,664 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Wrapper.dll
- 2007-04-13 08:21:16 372,736 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Management.dll
+ 2007-10-24 06:47:40 372,736 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Management.dll
- 2005-09-23 11:28:56 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll
+ 2007-10-24 06:47:40 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll
- 2007-04-13 08:21:16 299,008 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll
+ 2007-10-24 06:47:40 299,008 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll
- 2005-09-23 11:28:56 131,072 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
+ 2007-10-24 06:47:40 131,072 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
- 2005-09-23 11:28:56 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
+ 2007-10-24 06:47:40 258,048 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
- 2005-09-23 11:28:56 114,688 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll
+ 2007-10-24 06:47:40 114,688 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll
- 2007-04-13 08:21:18 260,096 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Transactions.dll
+ 2007-10-24 06:47:40 261,120 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Transactions.dll
- 2007-04-13 08:21:16 5,156,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2007-10-24 06:47:40 5,431,296 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
- 2005-09-23 11:28:56 835,584 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll
+ 2007-10-24 06:47:40 884,736 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll
- 2005-09-23 11:28:56 86,016 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll
+ 2007-10-24 06:47:40 90,112 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll
- 2005-09-23 11:28:56 823,296 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll
+ 2007-10-24 06:47:40 839,680 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll
- 2007-04-13 08:21:16 5,152,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2007-10-24 06:47:40 5,013,504 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
- 2007-04-13 08:21:16 2,027,520 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.XML.dll
+ 2007-10-24 06:47:40 2,068,480 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\System.XML.dll
- 2005-09-23 11:28:56 71,680 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL
+ 2007-10-24 06:47:40 81,400 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL
- 2007-04-13 08:21:28 1,166,672 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe
+ 2007-10-24 06:47:48 1,172,472 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\vbc.exe
- 2007-04-13 08:20:50 1,330,688 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\VsaVb7rt.dll
+ 2007-10-24 06:47:20 1,344,000 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\VsaVb7rt.dll
- 2007-04-13 08:20:52 406,016 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2007-10-24 06:47:22 434,688 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\webengine.dll
- 2005-09-23 11:28:56 28,160 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
+ 2007-10-24 06:47:40 37,896 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
- 2006-10-30 07:34:02 159,744 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
+ 2007-10-11 14:55:14 159,744 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
- 2006-10-30 07:33:58 741,376 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
+ 2007-10-11 14:55:10 864,256 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
- 2006-10-30 07:34:00 352,256 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll
+ 2007-10-11 14:55:12 397,312 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll
- 2006-10-30 07:34:00 151,552 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll
+ 2007-10-11 14:55:12 151,552 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll
+ 2007-10-11 14:55:14 2,560 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelEvents.dll
- 2006-10-30 07:34:02 61,440 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
+ 2007-10-11 14:55:14 61,440 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
- 2006-10-30 07:34:02 11,264 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll
+ 2007-10-11 14:55:14 11,264 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll
- 2006-10-30 07:34:00 94,208 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMDiagnostics.dll
+ 2007-10-11 14:55:14 102,400 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMDiagnostics.dll
- 2006-10-30 07:34:02 122,880 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
+ 2007-10-11 14:55:14 122,880 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
- 2006-10-30 07:34:02 884,736 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
+ 2007-10-11 14:55:14 929,792 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
- 2006-10-30 07:34:02 5,623,808 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll
+ 2007-10-11 14:55:14 5,971,968 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll
- 2006-10-30 07:34:00 159,744 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll
+ 2007-10-11 14:55:14 159,744 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll
- 2006-10-30 07:34:00 16,384 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
+ 2007-10-11 14:55:14 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
- 2006-10-30 07:34:02 143,360 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
+ 2007-10-11 14:55:14 143,360 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
- 2006-07-26 01:32:00 14,648 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
+ 2007-10-06 08:18:12 16,936 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
- 2006-10-21 01:29:46 72,992 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll
+ 2007-10-09 18:03:00 76,312 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll
- 2006-10-21 01:21:24 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationCFFRasterizer.dll
+ 2007-10-09 17:58:12 32,768 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationCFFRasterizer.dll
- 2006-10-21 01:21:24 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
+ 2007-10-09 17:58:12 36,864 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
- 2006-10-21 01:29:52 106,272 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2007-10-09 18:03:08 121,368 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
- 2006-10-21 01:21:26 897,024 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationUI.dll
+ 2007-10-09 17:58:14 897,024 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationUI.dll
- 2006-10-21 01:21:26 14,848 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe
+ 2007-10-09 17:58:20 14,848 ----a-w C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe
+ 2006-10-08 09:29:30 2,301 -c--a-w C:\WINDOWS\mozver.dat



And Part 2

+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt0401.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\msagent\intl\agt040d.dll
- 2007-06-17 05:11:58 51,200 ----a-w C:\WINDOWS\NirCmd.exe
+ 2000-08-31 12:00:00 28,672 -c--a-w C:\WINDOWS\NirCmd.exe
+ 2000-08-31 12:00:00 98,816 ----a-w C:\WINDOWS\sed.exe
+ 2000-08-31 12:00:00 161,792 ----a-w C:\WINDOWS\swreg.exe
+ 2000-08-31 12:00:00 136,704 ----a-w C:\WINDOWS\swsc.exe
+ 2000-08-31 12:00:00 212,480 ----a-w C:\WINDOWS\swxcacls.exe
+ 2004-08-04 10:00:00 2,000 -c--a-w C:\WINDOWS\system\KEYBOARD.DRV
+ 2004-08-04 10:00:00 73,376 -c--a-w C:\WINDOWS\system\MCIAVI.DRV
+ 2004-08-04 10:00:00 25,264 -c--a-w C:\WINDOWS\system\MCISEQ.DRV
+ 2004-08-04 10:00:00 28,160 -c--a-w C:\WINDOWS\system\MCIWAVE.DRV
+ 2004-08-04 10:00:00 2,032 -c--a-w C:\WINDOWS\system\MOUSE.DRV
+ 2004-08-04 10:00:00 1,744 -c--a-w C:\WINDOWS\system\SOUND.DRV
+ 2004-08-04 10:00:00 3,360 -c--a-w C:\WINDOWS\system\SYSTEM.DRV
+ 2004-08-04 10:00:00 4,048 -c--a-w C:\WINDOWS\system\TIMER.DRV
+ 2004-08-04 10:00:00 2,176 -c--a-w C:\WINDOWS\system\VGA.DRV
+ 2004-08-04 10:00:00 13,600 -c--a-w C:\WINDOWS\system\WFWNET.DRV
+ 2004-08-04 10:00:00 146,432 -c--a-w C:\WINDOWS\system\WINSPOOL.DRV
- 2007-08-20 10:04:34 124,928 ----a-w C:\WINDOWS\system32\advpack.dll
+ 2008-04-23 04:16:28 124,928 ----a-w C:\WINDOWS\system32\advpack.dll
+ 2008-02-26 02:29:25 46,080 ----a-w C:\WINDOWS\system32\amdpcom32.dll
- 2006-02-10 01:22:42 258,048 ----a-w C:\WINDOWS\system32\ati2cqag.dll
+ 2008-02-26 02:16:49 520,192 ----a-w C:\WINDOWS\system32\ati2cqag.dll
- 2006-02-10 01:58:04 256,512 ----a-w C:\WINDOWS\system32\ati2dvag.dll
+ 2008-02-26 03:10:53 299,520 ----a-w C:\WINDOWS\system32\ati2dvag.dll
- 2006-02-10 01:53:00 40,960 ----a-w C:\WINDOWS\system32\ati2edxx.dll
+ 2008-02-26 03:01:44 43,520 ----a-w C:\WINDOWS\system32\ati2edxx.dll
- 2006-02-10 01:52:50 61,440 ----a-w C:\WINDOWS\system32\ati2evxx.dll
+ 2008-02-26 03:01:31 126,976 ----a-w C:\WINDOWS\system32\ati2evxx.dll
- 2006-02-10 01:51:48 405,504 ----a-w C:\WINDOWS\system32\ati2evxx.exe
+ 2008-02-26 03:00:02 520,192 ----a-w C:\WINDOWS\system32\ati2evxx.exe
- 2006-02-10 01:53:04 26,112 ----a-w C:\WINDOWS\system32\Ati2mdxx.exe
+ 2008-02-26 03:01:53 26,112 ----a-w C:\WINDOWS\system32\Ati2mdxx.exe
- 2006-02-10 02:05:00 520,192 ----a-w C:\WINDOWS\system32\ati2sgag.exe
+ 2008-02-26 01:05:00 593,920 ----a-w C:\WINDOWS\system32\ati2sgag.exe
- 2006-02-10 01:44:42 2,636,096 ----a-w C:\WINDOWS\system32\ati3duag.dll
+ 2008-02-26 02:49:29 3,176,480 ----a-w C:\WINDOWS\system32\ati3duag.dll
- 2006-02-10 01:51:26 53,248 ----a-w C:\WINDOWS\system32\ATIDDC.DLL
+ 2008-02-26 02:58:43 53,248 ----a-w C:\WINDOWS\system32\ATIDDC.DLL
+ 2008-02-26 03:12:07 372,736 ----a-w C:\WINDOWS\system32\ATIDEMGX.dll
- 2006-01-13 17:48:10 114,630 ----a-w C:\WINDOWS\system32\atiicdxx.dat
+ 2008-02-14 17:35:13 166,450 ----a-w C:\WINDOWS\system32\atiicdxx.dat
- 2006-02-10 02:03:44 307,200 ----a-w C:\WINDOWS\system32\atiiiexx.dll
+ 2008-02-26 03:10:59 307,200 ----a-w C:\WINDOWS\system32\atiiiexx.dll
- 2006-02-10 01:27:48 151,552 ----a-w C:\WINDOWS\system32\atikvmag.dll
+ 2008-02-26 02:25:32 393,216 ----a-w C:\WINDOWS\system32\atikvmag.dll
+ 2008-02-26 02:59:23 9,797,632 ----a-w C:\WINDOWS\system32\atioglx2.dll
- 2006-02-10 01:27:00 5,124,096 ----a-w C:\WINDOWS\system32\atioglxx.dll
+ 2008-02-26 02:21:36 5,439,488 ----a-w C:\WINDOWS\system32\atioglxx.dll
+ 2008-02-26 02:19:20 167,936 ----a-w C:\WINDOWS\system32\atiok3x2.dll
- 2006-02-10 01:53:20 114,688 ----a-w C:\WINDOWS\system32\atipdlxx.dll
+ 2008-02-26 03:02:15 172,032 ----a-w C:\WINDOWS\system32\atipdlxx.dll
- 2006-02-10 01:27:14 17,408 ----a-w C:\WINDOWS\system32\atitvo32.dll
+ 2008-02-26 02:23:24 17,408 ----a-w C:\WINDOWS\system32\atitvo32.dll
+ 2008-02-26 02:41:28 3,107,788 ----a-w C:\WINDOWS\system32\ativva5x.dat
+ 2008-02-26 02:41:28 887,724 ----a-w C:\WINDOWS\system32\ativva6x.dat
+ 2008-02-26 02:41:28 3,107,788 ----a-w C:\WINDOWS\system32\ativvaxx.dat
- 2006-02-10 01:39:24 860,352 ----a-w C:\WINDOWS\system32\ativvaxx.dll
+ 2008-02-26 02:41:47 1,755,264 ----a-w C:\WINDOWS\system32\ativvaxx.dll
+ 2004-08-04 10:00:00 10,752 ----a-w C:\WINDOWS\system32\c_iscii.dll
- 2007-11-01 00:31:23 107,888 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
+ 2008-04-01 20:28:36 107,888 ----a-w C:\WINDOWS\system32\CmdLineExt.dll
+ 2004-08-04 10:00:00 10,544 ----a-w C:\WINDOWS\system32\comm.drv
- 2006-08-08 22:36:27 16,384 ----a-w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
+ 2008-08-04 18:29:17 32,768 -c--a-w C:\WINDOWS\system32\config\systemprofile\Cookies\index.dat
- 2006-08-08 22:36:27 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2008-08-04 18:29:17 32,768 -c--a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
- 2006-08-08 22:36:27 32,768 ----a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2008-08-04 18:29:17 32,768 -c--a-w C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2007-03-12 20:42:30 1,123,696 ----a-w C:\WINDOWS\system32\D3DCompiler_33.dll
+ 2007-05-16 20:45:16 1,124,720 ----a-w C:\WINDOWS\system32\D3DCompiler_34.dll
+ 2007-07-19 22:14:42 1,358,192 ----a-w C:\WINDOWS\system32\D3DCompiler_35.dll
+ 2007-10-12 19:14:00 1,374,232 ----a-w C:\WINDOWS\system32\D3DCompiler_36.dll
+ 2008-03-05 19:56:58 1,420,824 ----a-w C:\WINDOWS\system32\D3DCompiler_37.dll
+ 2007-03-15 20:57:58 443,752 ----a-w C:\WINDOWS\system32\d3dx10_33.dll
+ 2007-05-16 20:45:16 443,752 ----a-w C:\WINDOWS\system32\d3dx10_34.dll
+ 2007-07-19 22:14:42 444,776 ----a-w C:\WINDOWS\system32\d3dx10_35.dll
+ 2007-10-02 13:56:34 444,776 ----a-w C:\WINDOWS\system32\d3dx10_36.dll
+ 2008-02-06 03:07:36 462,864 ----a-w C:\WINDOWS\system32\d3dx10_37.dll
- 2005-02-05 23:45:26 2,222,800 ----a-w C:\WINDOWS\system32\d3dx9_24.dll
+ 2005-02-06 00:45:26 2,222,800 ----a-w C:\WINDOWS\system32\d3dx9_24.dll
- 2005-03-18 21:19:58 2,337,488 ----a-w C:\WINDOWS\system32\d3dx9_25.dll
+ 2005-03-18 22:19:58 2,337,488 ----a-w C:\WINDOWS\system32\d3dx9_25.dll
+ 2005-05-26 20:34:52 2,297,552 ----a-w C:\WINDOWS\system32\d3dx9_26.dll
+ 2005-07-23 00:59:04 2,319,568 ----a-w C:\WINDOWS\system32\d3dx9_27.dll
+ 2006-02-03 13:43:16 2,332,368 ----a-w C:\WINDOWS\system32\d3dx9_29.dll
+ 2006-09-28 20:05:20 2,414,360 ----a-w C:\WINDOWS\system32\d3dx9_31.dll
+ 2006-11-29 17:06:18 3,426,072 ----a-w C:\WINDOWS\system32\d3dx9_32.dll
+ 2007-03-12 20:42:30 3,495,784 ----a-w C:\WINDOWS\system32\d3dx9_33.dll
+ 2007-05-16 20:45:16 3,497,832 ----a-w C:\WINDOWS\system32\d3dx9_34.dll
+ 2007-07-19 22:14:42 3,727,720 ----a-w C:\WINDOWS\system32\d3dx9_35.dll
+ 2007-10-12 19:14:00 3,734,536 ----a-w C:\WINDOWS\system32\d3dx9_36.dll
+ 2008-03-05 19:56:58 3,786,760 ----a-w C:\WINDOWS\system32\D3DX9_37.dll
+ 2004-08-04 10:00:00 1,788 ----a-w C:\WINDOWS\system32\Dcache.bin
- 2005-09-23 11:28:38 83,456 ----a-w C:\WINDOWS\system32\dfshim.dll
+ 2007-10-24 06:47:28 96,760 ----a-w C:\WINDOWS\system32\dfshim.dll
+ 2007-09-28 22:05:40 739,840 ----a-w C:\WINDOWS\system32\divx.dll
- 2005-08-26 18:43:48 65,536 ----a-w C:\WINDOWS\system32\dlcfcfg.dll
+ 2005-08-26 19:43:48 65,536 ----a-w C:\WINDOWS\system32\dlcfcfg.dll
- 2005-10-28 11:43:08 368,640 ----a-w C:\WINDOWS\system32\dlcfcfg.exe
+ 2005-10-28 12:43:08 368,640 ----a-w C:\WINDOWS\system32\dlcfcfg.exe
- 2005-10-28 11:41:24 704,512 ----a-w C:\WINDOWS\system32\dlcfcomc.dll
+ 2005-10-28 12:41:24 704,512 ----a-w C:\WINDOWS\system32\dlcfcomc.dll
- 2005-10-28 11:43:16 413,696 ----a-w C:\WINDOWS\system32\dlcfcomm.dll
+ 2005-10-28 12:43:16 413,696 ----a-w C:\WINDOWS\system32\dlcfcomm.dll
- 2005-10-28 11:41:52 491,520 ----a-w C:\WINDOWS\system32\dlcfcoms.exe
+ 2005-10-28 12:41:52 491,520 ----a-w C:\WINDOWS\system32\dlcfcoms.exe
- 2005-11-23 09:53:46 73,728 ----a-w C:\WINDOWS\system32\dlcfcu.dll
+ 2005-11-23 10:53:46 73,728 ----a-w C:\WINDOWS\system32\dlcfcu.dll
- 2005-11-23 09:53:52 86,016 ----a-w C:\WINDOWS\system32\dlcfcub.dll
+ 2005-11-23 10:53:52 86,016 ----a-w C:\WINDOWS\system32\dlcfcub.dll
- 2005-11-23 09:54:36 36,864 ----a-w C:\WINDOWS\system32\dlcfcur.dll
+ 2005-11-23 10:54:36 36,864 ----a-w C:\WINDOWS\system32\dlcfcur.dll
- 2005-08-24 14:45:34 983,092 ----a-w C:\WINDOWS\system32\dlcfgf.dll
+ 2005-08-24 15:45:34 983,092 ----a-w C:\WINDOWS\system32\dlcfgf.dll
- 2005-10-28 11:35:48 774,144 ----a-w C:\WINDOWS\system32\dlcfhbn3.dll
+ 2005-10-28 12:35:48 774,144 ----a-w C:\WINDOWS\system32\dlcfhbn3.dll
- 2005-10-28 11:42:14 372,736 ----a-w C:\WINDOWS\system32\dlcfih.exe
+ 2005-10-28 12:42:14 372,736 ----a-w C:\WINDOWS\system32\dlcfih.exe
- 2005-11-23 09:53:44 155,648 ----a-w C:\WINDOWS\system32\dlcfins.dll
+ 2005-11-23 10:53:44 155,648 ----a-w C:\WINDOWS\system32\dlcfins.dll
- 2005-11-23 09:53:50 221,184 ----a-w C:\WINDOWS\system32\dlcfinsb.dll
+ 2005-11-23 10:53:50 221,184 ----a-w C:\WINDOWS\system32\dlcfinsb.dll
- 2005-11-23 09:54:36 106,496 ----a-w C:\WINDOWS\system32\dlcfinsr.dll
+ 2005-11-23 10:54:36 106,496 ----a-w C:\WINDOWS\system32\dlcfinsr.dll
- 2005-11-23 09:54:22 131,072 ----a-w C:\WINDOWS\system32\dlcfjswr.dll
+ 2005-11-23 10:54:22 131,072 ----a-w C:\WINDOWS\system32\dlcfjswr.dll
- 2005-10-28 11:43:34 483,328 ----a-w C:\WINDOWS\system32\dlcflmpm.dll
+ 2005-10-28 12:43:34 483,328 ----a-w C:\WINDOWS\system32\dlcflmpm.dll
- 2005-10-28 11:46:42 638,976 ----a-w C:\WINDOWS\system32\dlcfpmui.dll
+ 2005-10-28 12:46:42 638,976 ----a-w C:\WINDOWS\system32\dlcfpmui.dll
- 2005-10-28 11:42:00 114,688 ----a-w C:\WINDOWS\system32\dlcfpplc.dll
+ 2005-10-28 12:42:00 114,688 ----a-w C:\WINDOWS\system32\dlcfpplc.dll
- 2005-10-28 11:40:58 155,648 ----a-w C:\WINDOWS\system32\dlcfprox.dll
+ 2005-10-28 12:40:58 155,648 ----a-w C:\WINDOWS\system32\dlcfprox.dll
- 2005-10-28 11:46:00 1,183,744 ----a-w C:\WINDOWS\system32\dlcfserv.dll
+ 2005-10-28 12:46:00 1,183,744 ----a-w C:\WINDOWS\system32\dlcfserv.dll
- 2005-10-28 11:37:48 1,134,592 ----a-w C:\WINDOWS\system32\dlcfusb1.dll
+ 2005-10-28 12:37:48 1,134,592 ----a-w C:\WINDOWS\system32\dlcfusb1.dll
- 2005-11-23 09:53:26 430,080 ----a-w C:\WINDOWS\system32\dlcfutil.dll
+ 2005-11-23 10:53:26 430,080 ----a-w C:\WINDOWS\system32\dlcfutil.dll
- 2005-07-28 17:47:14 40,960 ----a-w C:\WINDOWS\system32\dlcfvs.dll
+ 2005-07-28 18:47:14 40,960 ----a-w C:\WINDOWS\system32\dlcfvs.dll
+ 2004-08-04 10:00:00 450,048 ----a-w C:\WINDOWS\system32\dllcache\aclayers.dll
+ 2004-08-04 10:00:00 137,728 ----a-w C:\WINDOWS\system32\dllcache\aclua.dll
+ 2004-08-04 10:00:00 116,224 ----a-w C:\WINDOWS\system32\dllcache\acxtrnal.dll
- 2007-08-20 10:04:34 124,928 ------w C:\WINDOWS\system32\dllcache\advpack.dll
+ 2008-04-23 04:16:28 124,928 ------w C:\WINDOWS\system32\dllcache\advpack.dll
+ 2008-06-20 10:44:38 138,368 ------w C:\WINDOWS\system32\dllcache\afd.sys
+ 2004-08-04 10:00:00 24,064 ----a-w C:\WINDOWS\system32\dllcache\agentanm.dll
+ 2004-08-04 10:00:00 214,016 ----a-w C:\WINDOWS\system32\dllcache\agentctl.dll
+ 2004-08-04 10:00:00 49,152 ----a-w C:\WINDOWS\system32\dllcache\agentmpx.dll
+ 2004-08-04 10:00:00 44,032 ----a-w C:\WINDOWS\system32\dllcache\agentsr.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt0401.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt0405.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt0406.dll
+ 2004-08-04 10:00:00 21,504 ----a-w C:\WINDOWS\system32\dllcache\agt0407.dll
+ 2004-08-04 10:00:00 22,016 ----a-w C:\WINDOWS\system32\dllcache\agt0408.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt0409.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt040b.dll
+ 2004-08-04 10:00:00 21,504 ----a-w C:\WINDOWS\system32\dllcache\agt040c.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt040d.dll
+ 2004-08-04 10:00:00 19,968 ----a-w C:\WINDOWS\system32\dllcache\agt040e.dll
+ 2004-08-04 10:00:00 20,992 ----a-w C:\WINDOWS\system32\dllcache\agt0410.dll
+ 2004-08-04 10:00:00 20,992 ----a-w C:\WINDOWS\system32\dllcache\agt0413.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt0414.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt0415.dll
+ 2004-08-04 10:00:00 20,480 ----a-w C:\WINDOWS\system32\dllcache\agt0416.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt0419.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt041d.dll
+ 2004-08-04 10:00:00 19,456 ----a-w C:\WINDOWS\system32\dllcache\agt041f.dll
+ 2004-08-04 10:00:00 20,992 ----a-w C:\WINDOWS\system32\dllcache\agt0816.dll
+ 2004-08-04 10:00:00 20,480 ----a-w C:\WINDOWS\system32\dllcache\agt0c0a.dll
+ 2004-08-04 10:00:00 24,064 ----a-w C:\WINDOWS\system32\dllcache\agtintl.dll
+ 2004-08-04 10:00:00 36,992 ----a-w C:\WINDOWS\system32\dllcache\amdk6.sys
+ 2004-08-04 10:00:00 37,376 ----a-w C:\WINDOWS\system32\dllcache\amdk7.sys
+ 2004-08-04 10:00:00 60,800 ----a-w C:\WINDOWS\system32\dllcache\arp1394.sys
- 2006-02-10 01:57:46 1,502,208 ----a-w C:\WINDOWS\system32\dllcache\ati2mtag.sys
+ 2008-02-26 05:51:43 2,863,616 ----a-w C:\WINDOWS\system32\dllcache\ati2mtag.sys
+ 2004-08-04 10:00:00 31,360 ----a-w C:\WINDOWS\system32\dllcache\atmepvc.sys
+ 2004-08-04 10:00:00 55,936 ----a-w C:\WINDOWS\system32\dllcache\atmlane.sys
+ 2004-08-04 10:00:00 352,256 ----a-w C:\WINDOWS\system32\dllcache\atmuni.sys
+ 2004-08-04 10:00:00 69,584 ----a-w C:\WINDOWS\system32\dllcache\avicap.dll
+ 2004-08-04 10:00:00 109,456 ----a-w C:\WINDOWS\system32\dllcache\avifile.dll
+ 2004-08-04 10:00:00 82,501 ----a-w C:\WINDOWS\system32\dllcache\bckg.dll
+ 2004-08-04 10:00:00 42,577 ----a-w C:\WINDOWS\system32\dllcache\bckgzm.exe
+ 2004-08-04 10:00:00 71,552 ----a-w C:\WINDOWS\system32\dllcache\bridge.sys
+ 2008-06-13 13:10:50 272,128 ------w C:\WINDOWS\system32\dllcache\bthport.sys
+ 2004-08-04 10:00:00 10,752 ----a-w C:\WINDOWS\system32\dllcache\c_iscii.dll
+ 2004-08-04 10:00:00 385,024 ----a-w C:\WINDOWS\system32\dllcache\callcont.dll
+ 2004-08-04 10:00:00 12,288 ----a-w C:\WINDOWS\system32\dllcache\cb32.exe
+ 2004-08-04 10:00:00 40,515 ----a-w C:\WINDOWS\system32\dllcache\chkr.dll
+ 2004-08-04 10:00:00 42,575 ----a-w C:\WINDOWS\system32\dllcache\chkrzm.exe
+ 2004-08-04 10:00:00 262,528 ----a-w C:\WINDOWS\system32\dllcache\cinemst2.sys
+ 2004-08-04 10:00:00 49,664 ----a-w C:\WINDOWS\system32\dllcache\classpnp.sys
+ 2004-08-04 10:00:00 217,160 ----a-w C:\WINDOWS\system32\dllcache\cmnclim.dll
+ 2004-08-04 10:00:00 1,039,955 ----a-w C:\WINDOWS\system32\dllcache\cmnresm.dll
+ 2004-08-04 10:00:00 32,816 ----a-w C:\WINDOWS\system32\dllcache\commdlg.dll
+ 2004-08-04 10:00:00 9,728 ----a-w C:\WINDOWS\system32\dllcache\comrepl.exe
+ 2004-08-04 10:00:00 5,120 ----a-w C:\WINDOWS\system32\dllcache\comrereg.exe
+ 2004-08-04 10:00:00 45,056 ----a-w C:\WINDOWS\system32\dllcache\confmrsl.dll
+ 2004-08-04 10:00:00 11,776 ----a-w C:\WINDOWS\system32\dllcache\cpqdap01.sys
+ 2004-08-04 10:00:00 36,480 ----a-w C:\WINDOWS\system32\dllcache\crusoe.sys
- 2006-11-08 02:03:36 33,792 ----a-w C:\WINDOWS\system32\dllcache\custsat.dll
+ 2004-09-15 17:28:08 28,672 ----a-w C:\WINDOWS\system32\dllcache\custsat.dll
+ 2008-03-25 04:50:25 554,008 ----a-w C:\WINDOWS\system32\dllcache\dao360.dll
+ 2004-08-04 10:00:00 40,960 ----a-w C:\WINDOWS\system32\dllcache\dcap32.dll
+ 2004-08-04 10:00:00 539,136 ----a-w C:\WINDOWS\system32\dllcache\dialer.exe
+ 2004-08-04 10:00:00 14,208 ----a-w C:\WINDOWS\system32\dllcache\diskdump.sys
- 2006-06-26 17:37:10 148,480 ------w C:\WINDOWS\system32\dllcache\dnsapi.dll
+ 2008-06-20 17:41:10 148,992 ----a-w C:\WINDOWS\system32\dllcache\dnsapi.dll
+ 2008-02-20 05:32:43 45,568 ------w C:\WINDOWS\system32\dllcache\dnsrslvr.dll
+ 2004-08-04 04:07:58 2,944 -c--a-w C:\WINDOWS\system32\dllcache\drmkaud.sys
+ 2004-08-04 10:00:00 120,320 ----a-w C:\WINDOWS\system32\dllcache\dsprov.dll
- 2006-10-17 16:58:06 346,624 ----a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
+ 2008-04-23 04:16:28 347,136 ----a-w C:\WINDOWS\system32\dllcache\dxtmsft.dll
- 2007-08-20 10:04:34 214,528 ----a-w C:\WINDOWS\system32\dllcache\dxtrans.dll
+ 2008-04-23 04:16:28 214,528 ----a-w C:\WINDOWS\system32\dllcache\dxtrans.dll
- 2005-06-13 16:58:04 162,816 ----a-w C:\WINDOWS\system32\dllcache\e100b325.sys
+ 2004-10-15 02:30:46 155,648 ----a-w C:\WINDOWS\system32\dllcache\e100b325.sys
+ 2004-08-04 10:00:00 22,016 ----a-w C:\WINDOWS\system32\dllcache\evntrprv.dll
- 2007-08-20 10:04:34 132,608 ----a-w C:\WINDOWS\system32\dllcache\extmgr.dll
+ 2008-04-23 04:16:28 133,120 ----a-w C:\WINDOWS\system32\dllcache\extmgr.dll
+ 2003-03-24 21:52:04 618,605 ----a-w C:\WINDOWS\system32\dllcache\fp4autl.dll
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\dllcache\fsconins.dll
+ 2004-08-04 10:00:00 12,160 ----a-w C:\WINDOWS\system32\dllcache\fsvga.sys
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\dllcache\ftlx041e.dll
+ 2004-08-04 10:00:00 53,248 ----a-w C:\WINDOWS\system32\dllcache\fwdprov.dll
- 2007-06-19 13:31:19 282,112 ------w C:\WINDOWS\system32\dllcache\gdi32.dll
+ 2008-02-20 06:51:05 282,624 ------w C:\WINDOWS\system32\dllcache\gdi32.dll
+ 2005-04-28 19:16:29 133,120 ----a-w C:\WINDOWS\system32\dllcache\guitrn.dll
+ 2004-08-04 10:00:00 108,544 ----a-w C:\WINDOWS\system32\dllcache\guitrn_a.dll
+ 2004-08-04 10:00:00 57,344 ----a-w C:\WINDOWS\system32\dllcache\h323cc.dll
+ 2005-05-26 23:22:01 10,752 ----a-w C:\WINDOWS\system32\dllcache\hh.exe
+ 2004-08-04 10:00:00 87,552 ----a-w C:\WINDOWS\system32\dllcache\hhctrlui.dll
+ 2004-08-04 10:00:00 362,496 ----a-w C:\WINDOWS\system32\dllcache\home_ss.dll
+ 2004-08-04 10:00:00 57,409 ----a-w C:\WINDOWS\system32\dllcache\hrtz.dll
+ 2004-08-04 10:00:00 42,573 ----a-w C:\WINDOWS\system32\dllcache\hrtzzm.exe
+ 2004-08-04 10:00:00 13,312 ----a-w C:\WINDOWS\system32\dllcache\htrn_jis.dll
- 2007-08-20 10:04:34 63,488 ------w C:\WINDOWS\system32\dllcache\icardie.dll
+ 2008-04-23 04:16:28 63,488 ------w C:\WINDOWS\system32\dllcache\icardie.dll
- 2007-08-17 10:20:54 63,488 ------w C:\WINDOWS\system32\dllcache\ie4uinit.exe
+ 2008-04-22 07:39:58 70,656 ------w C:\WINDOWS\system32\dllcache\ie4uinit.exe
- 2007-08-20 10:04:34 153,088 ------w C:\WINDOWS\system32\dllcache\ieakeng.dll
+ 2008-04-23 04:16:28 153,088 ------w C:\WINDOWS\system32\dllcache\ieakeng.dll
- 2007-08-20 10:04:35 230,400 ------w C:\WINDOWS\system32\dllcache\ieaksie.dll
+ 2008-04-23 04:16:28 230,400 ------w C:\WINDOWS\system32\dllcache\ieaksie.dll
- 2007-08-17 07:34:25 161,792 ------w C:\WINDOWS\system32\dllcache\ieakui.dll
+ 2008-04-20 05:07:51 161,792 ------w C:\WINDOWS\system32\dllcache\ieakui.dll
- 2007-08-20 10:04:35 383,488 ------w C:\WINDOWS\system32\dllcache\ieapfltr.dll
+ 2008-04-23 04:16:28 383,488 ------w C:\WINDOWS\system32\dllcache\ieapfltr.dll
- 2007-08-20 10:04:35 384,512 ------w C:\WINDOWS\system32\dllcache\iedkcs32.dll
+ 2008-04-23 04:16:28 384,512 ------w C:\WINDOWS\system32\dllcache\iedkcs32.dll
- 2007-08-20 10:04:37 6,058,496 ------w C:\WINDOWS\system32\dllcache\ieframe.dll
+ 2008-04-23 04:16:28 6,066,176 ------w C:\WINDOWS\system32\dllcache\ieframe.dll
- 2007-08-20 10:04:38 44,544 ------w C:\WINDOWS\system32\dllcache\iernonce.dll
+ 2008-04-23 04:16:28 44,544 ------w C:\WINDOWS\system32\dllcache\iernonce.dll
- 2007-08-20 10:04:38 267,776 ------w C:\WINDOWS\system32\dllcache\iertutil.dll
+ 2008-04-23 04:16:28 267,776 ------w C:\WINDOWS\system32\dllcache\iertutil.dll
- 2007-08-17 10:20:54 13,824 ------w C:\WINDOWS\system32\dllcache\ieudinit.exe
+ 2008-04-22 07:39:58 13,824 ------w C:\WINDOWS\system32\dllcache\ieudinit.exe
- 2007-08-17 10:21:21 625,152 ------w C:\WINDOWS\system32\dllcache\iexplore.exe
+ 2008-04-22 07:40:18 625,664 ------w C:\WINDOWS\system32\dllcache\iexplore.exe
- 2007-08-20 10:04:39 27,648 ----a-w C:\WINDOWS\system32\dllcache\jsproxy.dll
+ 2008-04-23 04:16:28 27,648 ----a-w C:\WINDOWS\system32\dllcache\jsproxy.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbda1.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbda2.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbda3.dll
+ 2004-08-04 10:00:00 5,120 ----a-w C:\WINDOWS\system32\dllcache\kbdarme.dll
+ 2004-08-04 10:00:00 5,120 ----a-w C:\WINDOWS\system32\dllcache\kbdarmw.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbddiv1.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbddiv2.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdfa.dll
+ 2004-08-04 10:00:00 5,120 ----a-w C:\WINDOWS\system32\dllcache\kbdgeo.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdheb.dll
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\dllcache\kbdinbe1.dll
+ 2004-08-04 10:00:00 6,656 ----a-w C:\WINDOWS\system32\dllcache\kbdinben.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdindev.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdinguj.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdinhin.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdinkan.dll
+ 2004-08-04 10:00:00 6,656 ----a-w C:\WINDOWS\system32\dllcache\kbdinmal.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdinmar.dll
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\dllcache\kbdinpun.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdintam.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdintel.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdsyr1.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdsyr2.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdth0.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdth1.dll
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\dllcache\kbdth2.dll
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\dllcache\kbdth3.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdurdu.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdusa.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\kbdvntc.dll
+ 2004-08-04 10:00:00 2,000 ----a-w C:\WINDOWS\system32\dllcache\keyboard.drv
+ 2004-08-04 10:00:00 24,576 ----a-w C:\WINDOWS\system32\dllcache\krnlprov.dll
+ 2005-04-28 19:16:29 19,968 ----a-w C:\WINDOWS\system32\dllcache\log.dll
- 2006-08-17 12:28:27 721,920 ------w C:\WINDOWS\system32\dllcache\lsasrv.dll
+ 2007-11-07 09:26:56 721,920 ------w C:\WINDOWS\system32\dllcache\lsasrv.dll
+ 2004-08-04 10:00:00 9,936 ----a-w C:\WINDOWS\system32\dllcache\lzexpand.dll
+ 2004-08-04 10:00:00 7,680 ----a-w C:\WINDOWS\system32\dllcache\mcd.sys
+ 2004-08-04 10:00:00 73,376 ----a-w C:\WINDOWS\system32\dllcache\mciavi.drv
+ 2004-08-04 10:00:00 25,264 ----a-w C:\WINDOWS\system32\dllcache\mciseq.drv
+ 2004-08-04 10:00:00 28,160 ----a-w C:\WINDOWS\system32\dllcache\mciwave.drv
+ 2004-08-04 10:00:00 362,496 ----a-w C:\WINDOWS\system32\dllcache\metal_ss.dll
+ 2004-08-04 10:00:00 63,744 ----a-w C:\WINDOWS\system32\dllcache\mf.sys
+ 2005-04-28 19:16:29 274,432 ----a-w C:\WINDOWS\system32\dllcache\migism.dll
+ 2004-08-04 10:00:00 192,512 ----a-w C:\WINDOWS\system32\dllcache\migism_a.dll
+ 2005-04-28 00:12:58 103,424 ----a-w C:\WINDOWS\system32\dllcache\migload.exe
+ 2004-08-04 10:00:00 236,032 ----a-w C:\WINDOWS\system32\dllcache\migwiz_a.exe
+ 2004-08-04 10:00:00 68,768 ----a-w C:\WINDOWS\system32\dllcache\mmsystem.dll
+ 2004-08-04 10:00:00 16,384 ----a-w C:\WINDOWS\system32\dllcache\mofcomp.exe
+ 2004-08-04 10:00:00 2,032 ----a-w C:\WINDOWS\system32\dllcache\mouse.drv
+ 2004-08-04 10:00:00 3,555,328 ----a-w C:\WINDOWS\system32\dllcache\moviemk.exe
+ 2007-12-18 09:51:35 179,584 ------w C:\WINDOWS\system32\dllcache\mrxdav.sys
+ 2004-08-04 10:00:00 331,776 ----a-w C:\WINDOWS\system32\dllcache\msadce.dll
+ 2004-08-04 10:00:00 20,480 ----a-w C:\WINDOWS\system32\dllcache\msadcer.dll
+ 2004-08-04 10:00:00 61,440 ----a-w C:\WINDOWS\system32\dllcache\msadcf.dll
+ 2004-08-04 10:00:00 16,384 ----a-w C:\WINDOWS\system32\dllcache\msadcfr.dll
+ 2006-03-23 05:44:21 143,360 ----a-w C:\WINDOWS\system32\dllcache\msadco.dll
+ 2004-08-04 10:00:00 16,384 ----a-w C:\WINDOWS\system32\dllcache\msadcor.dll
+ 2004-08-04 10:00:00 53,248 ----a-w C:\WINDOWS\system32\dllcache\msadcs.dll
+ 2004-08-04 10:00:00 155,648 ----a-w C:\WINDOWS\system32\dllcache\msadds.dll
+ 2004-08-04 10:00:00 24,576 ----a-w C:\WINDOWS\system32\dllcache\msaddsr.dll
+ 2004-08-04 10:00:00 24,576 ----a-w C:\WINDOWS\system32\dllcache\msader15.dll
+ 2004-08-04 10:00:00 57,344 ----a-w C:\WINDOWS\system32\dllcache\msador15.dll
+ 2004-08-04 10:00:00 57,344 ----a-w C:\WINDOWS\system32\dllcache\msadrh15.dll
+ 2004-08-04 10:00:00 220,160 ----a-w C:\WINDOWS\system32\dllcache\mscandui.dll
+ 2008-02-26 11:59:50 294,912 ------w C:\WINDOWS\system32\dllcache\msctf.dll
+ 2004-08-04 10:00:00 4,096 ----a-w C:\WINDOWS\system32\dllcache\msdadc.dll
+ 2004-08-04 10:00:00 4,096 ----a-w C:\WINDOWS\system32\dllcache\msdaenum.dll
+ 2004-08-04 10:00:00 4,096 ----a-w C:\WINDOWS\system32\dllcache\msdaer.dll
+ 2004-08-04 10:00:00 233,472 ----a-w C:\WINDOWS\system32\dllcache\msdaora.dll
+ 2004-08-04 10:00:00 16,384 ----a-w C:\WINDOWS\system32\dllcache\msdaorar.dll
+ 2004-08-04 10:00:00 77,824 ----a-w C:\WINDOWS\system32\dllcache\msdaosp.dll
+ 2004-08-04 10:00:00 16,384 ----a-w C:\WINDOWS\system32\dllcache\msdaprsr.dll
+ 2004-08-04 10:00:00 200,704 ----a-w C:\WINDOWS\system32\dllcache\msdaprst.dll
+ 2004-08-04 10:00:00 204,800 ----a-w C:\WINDOWS\system32\dllcache\msdaps.dll
+ 2004-08-04 10:00:00 118,784 ----a-w C:\WINDOWS\system32\dllcache\msdarem.dll
+ 2004-08-04 10:00:00 16,384 ----a-w C:\WINDOWS\system32\dllcache\msdaremr.dll
+ 2004-08-04 10:00:00 4,096 ----a-w C:\WINDOWS\system32\dllcache\msdasc.dll
+ 2004-08-04 10:00:00 315,392 ----a-w C:\WINDOWS\system32\dllcache\msdasql.dll
+ 2004-08-04 10:00:00 94,208 ----a-w C:\WINDOWS\system32\dllcache\msdatl3.dll
+ 2004-08-04 10:00:00 20,480 ----a-w C:\WINDOWS\system32\dllcache\msdatt.dll
+ 2004-08-04 10:00:00 4,096 ----a-w C:\WINDOWS\system32\dllcache\msdaurl.dll
+ 2004-08-04 10:00:00 36,864 ----a-w C:\WINDOWS\system32\dllcache\msdfmap.dll
+ 2008-03-25 04:50:28 518,944 ------w C:\WINDOWS\system32\dllcache\msexch40.dll
+ 2008-03-25 04:50:30 326,432 ------w C:\WINDOWS\system32\dllcache\msexcl40.dll
- 2007-08-20 10:04:39 459,264 ------w C:\WINDOWS\system32\dllcache\msfeeds.dll
+ 2008-04-23 04:16:28 459,264 ------w C:\WINDOWS\system32\dllcache\msfeeds.dll
- 2007-08-20 10:04:39 52,224 ------w C:\WINDOWS\system32\dllcache\msfeedsbs.dll
+ 2008-04-23 04:16:28 52,224 ------w C:\WINDOWS\system32\dllcache\msfeedsbs.dll
+ 2004-08-04 10:00:00 3,166,208 ----a-w C:\WINDOWS\system32\dllcache\msgr3en.dll
- 2007-08-20 10:04:41 3,584,512 ----a-w C:\WINDOWS\system32\dllcache\mshtml.dll
+ 2008-04-24 02:16:30 3,591,680 ----a-w C:\WINDOWS\system32\dllcache\mshtml.dll
- 2007-08-20 10:04:41 477,696 ----a-w C:\WINDOWS\system32\dllcache\mshtmled.dll
+ 2008-04-23 04:16:28 478,208 ----a-w C:\WINDOWS\system32\dllcache\mshtmled.dll
+ 2008-03-25 04:50:34 1,516,568 ------w C:\WINDOWS\system32\dllcache\msjet40.dll
+ 2008-03-25 04:50:40 355,112 ------w C:\WINDOWS\system32\dllcache\msjetol1.dll
+ 2008-03-27 08:12:54 151,583 ------w C:\WINDOWS\system32\dllcache\msjint40.dll
+ 2008-03-25 04:50:42 60,192 ------w C:\WINDOWS\system32\dllcache\msjter40.dll
+ 2008-03-25 04:50:42 248,608 ------w C:\WINDOWS\system32\dllcache\msjtes40.dll
+ 2008-03-25 04:50:44 219,936 ------w C:\WINDOWS\system32\dllcache\msltus40.dll
+ 2004-08-04 10:00:00 39,936 ----a-w C:\WINDOWS\system32\dllcache\mslwvtts.dll
+ 2004-08-04 10:00:00 122,368 ----a-w C:\WINDOWS\system32\dllcache\msobcomm.dll
+ 2004-08-04 10:00:00 16,384 ----a-w C:\WINDOWS\system32\dllcache\msobdl.dll
+ 2004-08-04 10:00:00 561,664 ----a-w C:\WINDOWS\system32\dllcache\msobmain.dll
+ 2004-08-04 10:00:00 30,720 ----a-w C:\WINDOWS\system32\dllcache\msobshel.dll
+ 2004-08-04 10:00:00 18,944 ----a-w C:\WINDOWS\system32\dllcache\msobweb.dll
+ 2004-08-04 10:00:00 28,160 ----a-w C:\WINDOWS\system32\dllcache\msoobe.exe
+ 2008-03-25 04:50:45 355,104 ------w C:\WINDOWS\system32\dllcache\mspbde40.dll
- 2007-08-20 10:04:41 193,024 ----a-w C:\WINDOWS\system32\dllcache\msrating.dll
+ 2008-04-23 04:16:28 193,024 ----a-w C:\WINDOWS\system32\dllcache\msrating.dll
+ 2008-03-25 04:50:47 432,928 ------w C:\WINDOWS\system32\dllcache\msrd2x40.dll
+ 2008-03-25 04:50:49 322,336 ------w C:\WINDOWS\system32\dllcache\msrd3x40.dll
+ 2008-03-25 04:50:52 559,904 ------w C:\WINDOWS\system32\dllcache\msrepl40.dll
+ 2004-08-04 10:00:00 235,520 ----a-w C:\WINDOWS\system32\dllcache\mssoap1.dll
+ 2004-08-04 10:00:00 23,552 ----a-w C:\WINDOWS\system32\dllcache\mssoapr.dll
+ 2004-08-04 10:00:00 274,432 ----a-w C:\WINDOWS\system32\dllcache\mst120.dll
+ 2004-08-04 10:00:00 57,344 ----a-w C:\WINDOWS\system32\dllcache\mst123.dll
+ 2008-03-25 04:50:55 264,992 ------w C:\WINDOWS\system32\dllcache\mstext40.dll
- 2007-08-20 10:04:42 671,232 ----a-w C:\WINDOWS\system32\dllcache\mstime.dll
+ 2008-04-23 04:16:28 671,232 ----a-w C:\WINDOWS\system32\dllcache\mstime.dll
+ 2004-08-04 10:00:00 126,912 ----a-w C:\WINDOWS\system32\dllcache\msvideo.dll
+ 2008-03-25 04:50:57 838,432 ------w C:\WINDOWS\system32\dllcache\mswdat10.dll
+ 2008-06-20 17:41:10 245,248 ------w C:\WINDOWS\system32\dllcache\mswsock.dll
+ 2008-03-25 04:50:58 621,344 ------w C:\WINDOWS\system32\dllcache\mswstr10.dll
+ 2004-08-04 10:00:00 24,576 ----a-w C:\WINDOWS\system32\dllcache\msxactps.dll
+ 2008-03-25 04:50:58 355,104 ------w C:\WINDOWS\system32\dllcache\msxbde40.dll
+ 2004-08-04 10:00:00 221,184 ----a-w C:\WINDOWS\system32\dllcache\nac.dll
+ 2004-08-04 10:00:00 57,344 ----a-w C:\WINDOWS\system32\dllcache\ndisnpp.dll
+ 2004-08-04 10:00:00 61,824 ----a-w C:\WINDOWS\system32\dllcache\nic1394.sys
+ 2004-08-04 10:00:00 12,032 ----a-w C:\WINDOWS\system32\dllcache\nikedrv.sys
+ 2004-08-04 10:00:00 229,376 ----a-w C:\WINDOWS\system32\dllcache\nmas.dll
+ 2004-08-04 10:00:00 28,672 ----a-w C:\WINDOWS\system32\dllcache\nmasnt.dll
+ 2004-08-04 10:00:00 81,920 ----a-w C:\WINDOWS\system32\dllcache\nmchat.dll
+ 2004-08-04 10:00:00 77,824 ----a-w C:\WINDOWS\system32\dllcache\nmcom.dll
+ 2004-08-04 10:00:00 151,552 ----a-w C:\WINDOWS\system32\dllcache\nmft.dll
+ 2004-08-04 10:00:00 40,320 ----a-w C:\WINDOWS\system32\dllcache\nmnt.sys
+ 2004-08-04 10:00:00 172,032 ----a-w C:\WINDOWS\system32\dllcache\nmoldwb.dll
+ 2004-08-04 10:00:00 69,120 ----a-w C:\WINDOWS\system32\dllcache\notepad.exe
+ 2004-08-04 10:00:00 226,816 ----a-w C:\WINDOWS\system32\dllcache\npdrmv2.dll
+ 2005-11-29 20:27:06 364,544 ----a-w C:\WINDOWS\system32\dllcache\npdsplay.dll
+ 2004-08-04 10:00:00 15,360 ----a-w C:\WINDOWS\system32\dllcache\nppagent.exe
+ 2004-08-04 10:00:00 10,240 ----a-w C:\WINDOWS\system32\dllcache\npwmsdrm.dll
+ 2004-08-04 10:00:00 88,448 ----a-w C:\WINDOWS\system32\dllcache\nwlnkipx.sys
+ 2004-08-04 10:00:00 63,232 ----a-w C:\WINDOWS\system32\dllcache\nwlnknb.sys
+ 2004-08-04 10:00:00 55,936 ----a-w C:\WINDOWS\system32\dllcache\nwlnkspx.sys
+ 2004-08-04 10:00:00 405,504 ----a-w C:\WINDOWS\system32\dllcache\obrb041b.dll
+ 2004-08-04 10:00:00 408,576 ----a-w C:\WINDOWS\system32\dllcache\obrb0424.dll
- 2007-08-20 10:04:42 102,400 ------w C:\WINDOWS\system32\dllcache\occache.dll
+ 2008-04-23 04:16:28 102,912 ------w C:\WINDOWS\system32\dllcache\occache.dll
- 2007-05-17 11:28:05 549,376 ------w C:\WINDOWS\system32\dllcache\oleaut32.dll
+ 2007-12-04 18:38:13 550,912 ------w C:\WINDOWS\system32\dllcache\oleaut32.dll
+ 2004-08-04 10:00:00 82,944 ----a-w C:\WINDOWS\system32\dllcache\olecli.dll
+ 2004-08-04 10:00:00 24,064 ----a-w C:\WINDOWS\system32\dllcache\olesvr.dll
+ 2004-08-04 10:00:00 51,200 ----a-w C:\WINDOWS\system32\dllcache\oobebaln.exe
+ 2004-08-04 10:00:00 3,456 ----a-w C:\WINDOWS\system32\dllcache\oprghdlr.sys
+ 2004-08-04 10:00:00 42,496 ----a-w C:\WINDOWS\system32\dllcache\p3.sys
+ 2004-08-04 10:00:00 281,088 ----a-w C:\WINDOWS\system32\dllcache\pinball.exe
- 2006-10-17 16:58:08 44,544 ----a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
+ 2008-04-23 04:16:28 44,544 ----a-w C:\WINDOWS\system32\dllcache\pngfilt.dll
+ 2004-08-04 10:00:00 35,328 ----a-w C:\WINDOWS\system32\dllcache\processr.sys
+ 2008-05-07 05:18:48 1,287,680 ------w C:\WINDOWS\system32\dllcache\quartz.dll
+ 2004-08-04 10:00:00 34,432 ----a-w C:\WINDOWS\system32\dllcache\rawwan.sys
+ 2004-08-04 10:00:00 12,032 ----a-w C:\WINDOWS\system32\dllcache\rio8drv.sys
+ 2004-08-04 10:00:00 12,032 ----a-w C:\WINDOWS\system32\dllcache\riodrv.sys
- 2006-07-13 08:48:58 202,240 ------w C:\WINDOWS\system32\dllcache\rmcast.sys
+ 2008-05-08 12:28:49 202,752 ----a-w C:\WINDOWS\system32\dllcache\rmcast.sys
+ 2004-08-04 10:00:00 30,080 ----a-w C:\WINDOWS\system32\dllcache\rndismp.sys
+ 2004-08-04 10:00:00 5,888 ----a-w C:\WINDOWS\system32\dllcache\rootmdm.sys
+ 2004-08-04 10:00:00 61,440 ----a-w C:\WINDOWS\system32\dllcache\rrcm.dll
+ 2004-08-04 10:00:00 48,706 ----a-w C:\WINDOWS\system32\dllcache\rvse.dll
+ 2004-08-04 10:00:00 42,574 ----a-w C:\WINDOWS\system32\dllcache\rvsezm.exe
+ 2004-08-04 10:00:00 36,864 ----a-w C:\WINDOWS\system32\dllcache\scrcons.exe
+ 2005-04-28 19:16:29 215,552 ----a-w C:\WINDOWS\system32\dllcache\script.dll
+ 2004-08-04 10:00:00 188,416 ----a-w C:\WINDOWS\system32\dllcache\script_a.dll
+ 2004-08-04 10:00:00 96,256 ----a-w C:\WINDOWS\system32\dllcache\scsiport.sys
+ 2004-08-04 10:00:00 67,584 ----a-w C:\WINDOWS\system32\dllcache\sdbus.sys
+ 2004-08-04 10:00:00 11,136 ----a-w C:\WINDOWS\system32\dllcache\sffdisk.sys
+ 2004-08-04 10:00:00 10,240 ----a-w C:\WINDOWS\system32\dllcache\sffp_sd.sys
+ 2004-08-04 10:00:00 5,120 ----a-w C:\WINDOWS\system32\dllcache\shell.dll
+ 2004-08-04 10:00:00 66,113 ----a-w C:\WINDOWS\system32\dllcache\shvl.dll
+ 2004-08-04 10:00:00 42,573 ----a-w C:\WINDOWS\system32\dllcache\shvlzm.exe
+ 2004-08-04 10:00:00 14,592 ----a-w C:\WINDOWS\system32\dllcache\smclib.sys
+ 2004-08-04 10:00:00 40,960 ----a-w C:\WINDOWS\system32\dllcache\smtpcons.dll
+ 2004-08-04 10:00:00 130,048 ----a-w C:\WINDOWS\system32\dllcache\softkbd.dll
+ 2004-08-04 10:00:00 25,472 ----a-w C:\WINDOWS\system32\dllcache\sonydcam.sys
+ 2004-08-04 10:00:00 1,744 ----a-w C:\WINDOWS\system32\dllcache\sound.drv
+ 2004-08-04 10:00:00 77,824 ----a-w C:\WINDOWS\system32\dllcache\spcommon.dll
+ 2004-08-04 10:00:00 61,440 ----a-w C:\WINDOWS\system32\dllcache\spcplui.dll
+ 2004-08-04 10:00:00 193,024 ----a-w C:\WINDOWS\system32\dllcache\spra041b.dll
+ 2004-08-04 10:00:00 192,512 ----a-w C:\WINDOWS\system32\dllcache\spra0424.dll
+ 2004-08-04 10:00:00 757,248 ----a-w C:\WINDOWS\system32\dllcache\sprb041b.dll
+ 2004-08-04 10:00:00 732,160 ----a-w C:\WINDOWS\system32\dllcache\sprb0424.dll
+ 2004-08-04 10:00:00 774,144 ----a-w C:\WINDOWS\system32\dllcache\spttseng.dll
+ 2004-08-04 10:00:00 151,552 ----a-w C:\WINDOWS\system32\dllcache\sqldb20.dll
+ 2004-08-04 10:00:00 462,848 ----a-w C:\WINDOWS\system32\dllcache\sqlqp20.dll
+ 2004-08-04 10:00:00 110,592 ----a-w C:\WINDOWS\system32\dllcache\sqlse20.dll
+ 2004-08-04 10:00:00 217,088 ----a-w C:\WINDOWS\system32\dllcache\sqlxmlx.dll
+ 2004-08-04 10:00:00 47,104 ----a-w C:\WINDOWS\system32\dllcache\srdiag.exe
+ 2004-08-04 10:00:00 86,528 ----a-w C:\WINDOWS\system32\dllcache\stdprov.dll
+ 2005-04-28 19:16:29 193,024 ----a-w C:\WINDOWS\system32\dllcache\sysmod.dll
+ 2004-08-04 10:00:00 155,648 ----a-w C:\WINDOWS\system32\dllcache\sysmod_a.dll
+ 2004-08-04 10:00:00 3,360 ----a-w C:\WINDOWS\system32\dllcache\system.drv
+ 2004-08-04 10:00:00 14,976 ----a-w C:\WINDOWS\system32\dllcache\tape.sys
+ 2004-08-04 10:00:00 19,200 ----a-w C:\WINDOWS\system32\dllcache\tapi.dll
+ 2004-08-04 10:00:00 15,360 ----a-w C:\WINDOWS\system32\dllcache\taskman.exe
- 2006-04-20 11:51:50 359,808 ------w C:\WINDOWS\system32\dllcache\tcpip.sys
+ 2008-06-20 10:45:13 360,320 ----a-w C:\WINDOWS\system32\dllcache\tcpip.sys
- 2006-08-16 09:37:30 225,664 ------w C:\WINDOWS\system32\dllcache\tcpip6.sys
+ 2008-06-20 09:52:06 225,920 ----a-w C:\WINDOWS\system32\dllcache\tcpip6.sys
+ 2004-08-04 10:00:00 185,344 ----a-w C:\WINDOWS\system32\dllcache\thawbrkr.dll
+ 2004-08-04 10:00:00 4,048 ----a-w C:\WINDOWS\system32\dllcache\timer.drv
+ 2004-08-04 10:00:00 61,952 ----a-w C:\WINDOWS\system32\dllcache\tmplprov.dll
+ 2004-08-04 10:00:00 51,712 ----a-w C:\WINDOWS\system32\dllcache\tosdvd.sys
+ 2004-08-04 10:00:00 3,374,640 ----a-w C:\WINDOWS\system32\dllcache\tourP.exe
+ 2004-08-04 10:00:00 59,904 ----a-w C:\WINDOWS\system32\dllcache\trnsprov.dll
+ 2004-08-04 10:00:00 21,376 ----a-w C:\WINDOWS\system32\dllcache\tsbvcap.sys
+ 2004-08-04 10:00:00 12,416 ----a-w C:\WINDOWS\system32\dllcache\tunmp.sys
+ 2004-08-04 10:00:00 94,784 ----a-w C:\WINDOWS\system32\dllcache\twain.dll
+ 2004-08-04 10:00:00 49,680 ----a-w C:\WINDOWS\system32\dllcache\twunk_16.exe
+ 2004-08-04 10:00:00 25,600 ----a-w C:\WINDOWS\system32\dllcache\twunk_32.exe
+ 2004-08-04 10:00:00 32,339 ----a-w C:\WINDOWS\system32\dllcache\uniansi.dll
+ 2004-08-04 10:00:00 16,896 ----a-w C:\WINDOWS\system32\dllcache\unsecapp.exe
+ 2004-08-04 10:00:00 116,224 ----a-w C:\WINDOWS\system32\dllcache\updprov.dll
+ 2004-08-04 10:00:00 150,528 ----a-w C:\WINDOWS\system32\dllcache\uploadm.exe
- 2007-08-20 10:04:42 105,984 ------w C:\WINDOWS\system32\dllcache\url.dll
+ 2008-04-23 04:16:28 105,984 ------w C:\WINDOWS\system32\dllcache\url.dll
- 2007-08-20 10:04:42 1,152,000 ----a-w C:\WINDOWS\system32\dllcache\urlmon.dll
+ 2008-04-23 04:16:29 1,159,680 ----a-w C:\WINDOWS\system32\dllcache\urlmon.dll
+ 2004-08-04 10:00:00 12,672 ----a-w C:\WINDOWS\system32\dllcache\usb8023.sys
+ 2004-08-04 10:00:00 23,808 ----a-w C:\WINDOWS\system32\dllcache\usbcamd.sys
+ 2004-08-04 10:00:00 23,936 ----a-w C:\WINDOWS\system32\dllcache\usbcamd2.sys
+ 2004-08-04 10:00:00 16,000 ----a-w C:\WINDOWS\system32\dllcache\usbintel.sys
+ 2004-08-04 10:00:00 58,112 ----a-w C:\WINDOWS\system32\dllcache\vdmindvd.sys
+ 2004-08-04 10:00:00 9,008 ----a-w C:\WINDOWS\system32\dllcache\ver.dll
+ 2004-08-04 10:00:00 2,176 ----a-w C:\WINDOWS\system32\dllcache\vga.drv
+ 2004-08-04 10:00:00 131,584 ----a-w C:\WINDOWS\system32\dllcache\viewprov.dll
+ 2004-08-04 10:00:00 18,944 ----a-w C:\WINDOWS\system32\dllcache\vmmreg32.dll
+ 2004-08-04 10:00:00 12,288 ----a-w C:\WINDOWS\system32\dllcache\wb32.exe
+ 2004-08-04 10:00:00 12,288 ----a-w C:\WINDOWS\system32\dllcache\wbemads.dll
+ 2004-08-04 10:00:00 43,008 ----a-w C:\WINDOWS\system32\dllcache\wbemperf.dll
+ 2004-08-04 10:00:00 116,224 ----a-w C:\WINDOWS\system32\dllcache\wbemtest.exe
+ 2004-08-04 10:00:00 197,120 ----a-w C:\WINDOWS\system32\dllcache\wbemupgd.dll
- 2007-08-20 10:04:42 232,960 ------w C:\WINDOWS\system32\dllcache\webcheck.dll
+ 2008-04-23 04:16:29 233,472 ------w C:\WINDOWS\system32\dllcache\webcheck.dll
+ 2004-08-04 10:00:00 13,600 ----a-w C:\WINDOWS\system32\dllcache\wfwnet.drv
- 2007-03-08 13:47:48 1,843,584 ------w C:\WINDOWS\system32\dllcache\win32k.sys
+ 2008-03-19 09:47:00 1,845,248 ------w C:\WINDOWS\system32\dllcache\win32k.sys
+ 2004-08-04 10:00:00 256,192 ----a-w C:\WINDOWS\system32\dllcache\winhelp.exe
- 2007-08-20 10:04:43 824,832 ----a-w C:\WINDOWS\system32\dllcache\wininet.dll
+ 2008-04-23 04:16:29 826,368 ----a-w C:\WINDOWS\system32\dllcache\wininet.dll
+ 2004-08-04 10:00:00 13,312 ----a-w C:\WINDOWS\system32\dllcache\winmgmt.exe
+ 2004-08-04 10:00:00 146,432 ----a-w C:\WINDOWS\system32\dllcache\winspool.drv
+ 2004-08-04 10:00:00 25,088 ----a-w C:\WINDOWS\system32\dllcache\wisc10.dll
- 2006-10-19 02:47:18 222,208 ----a-w C:\WINDOWS\system32\dllcache\WMASF.dll
+ 2007-10-27 22:40:30 222,720 -c--a-w C:\WINDOWS\system32\dllcache\wmasf.dll
+ 2004-08-04 10:00:00 6,656 ----a-w C:\WINDOWS\system32\dllcache\wmiapres.dll
+ 2004-08-04 10:00:00 89,088 ----a-w C:\WINDOWS\system32\dllcache\wmiaprpl.dll
+ 2004-08-04 10:00:00 60,928 ----a-w C:\WINDOWS\system32\dllcache\wmicookr.dll
+ 2004-08-04 10:00:00 140,800 ----a-w C:\WINDOWS\system32\dllcache\wmidcprv.dll
+ 2004-08-04 10:00:00 61,440 ----a-w C:\WINDOWS\system32\dllcache\wmimsg.dll
+ 2004-08-04 10:00:00 132,096 ----a-w C:\WINDOWS\system32\dllcache\wmipdskq.dll
+ 2004-08-04 10:00:00 75,264 ----a-w C:\WINDOWS\system32\dllcache\wmipicmp.dll
+ 2004-08-04 10:00:00 62,464 ----a-w C:\WINDOWS\system32\dllcache\wmipiprt.dll
+ 2004-08-04 10:00:00 62,976 ----a-w C:\WINDOWS\system32\dllcache\wmipjobj.dll
+ 2004-08-04 10:00:00 144,896 ----a-w C:\WINDOWS\system32\dllcache\wmiprov.dll
+ 2004-08-04 10:00:00 41,472 ----a-w C:\WINDOWS\system32\dllcache\wmipsess.dll
+ 2004-08-04 10:00:00 52,224 ----a-w C:\WINDOWS\system32\dllcache\wmitimep.dll
+ 2004-08-04 10:00:00 167,936 ----a-w C:\WINDOWS\system32\dllcache\wmm2ae.dll
+ 2004-08-04 10:00:00 4,096 ----a-w C:\WINDOWS\system32\dllcache\wmm2eres.dll
+ 2004-08-04 10:00:00 7,680 ----a-w C:\WINDOWS\system32\dllcache\wmm2ext.dll
+ 2004-08-04 10:00:00 402,432 ----a-w C:\WINDOWS\system32\dllcache\wmm2filt.dll
+ 2004-08-04 10:00:00 502,272 ----a-w C:\WINDOWS\system32\dllcache\wmm2fxa.dll
+ 2004-08-04 10:00:00 325,632 ----a-w C:\WINDOWS\system32\dllcache\wmm2fxb.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\dllcache\wmm2res2.dll
+ 2004-08-04 10:00:00 221,184 ----a-w C:\WINDOWS\system32\dllcache\wmpns.dll
+ 2004-08-04 10:00:00 36,937 ----a-w C:\WINDOWS\system32\dllcache\zclientm.exe
+ 2004-08-04 10:00:00 41,029 ----a-w C:\WINDOWS\system32\dllcache\zcorem.dll
+ 2004-08-04 10:00:00 4,677 ----a-w C:\WINDOWS\system32\dllcache\zeeverm.dll
+ 2004-08-04 10:00:00 29,760 ----a-w C:\WINDOWS\system32\dllcache\znetm.dll
+ 2004-08-04 10:00:00 113,222 ----a-w C:\WINDOWS\system32\dllcache\zoneclim.dll
+ 2004-08-04 10:00:00 13,894 ----a-w C:\WINDOWS\system32\dllcache\zonelibm.dll
- 2006-06-26 17:37:10 148,480 ----a-w C:\WINDOWS\system32\dnsapi.dll
+ 2008-06-20 17:41:10 148,992 ----a-w C:\WINDOWS\system32\dnsapi.dll
- 2004-08-04 10:00:00 45,568 ----a-w C:\WINDOWS\system32\dnsrslvr.dll
+ 2008-02-20 05:32:43 45,568 ----a-w C:\WINDOWS\system32\dnsrslvr.dll
+ 2007-09-28 22:05:50 81,920 ----a-w C:\WINDOWS\system32\dpl100.dll
- 2006-02-10 01:26:38 40,960 ----a-w C:\WINDOWS\system32\drivers\ati2erec.dll
+ 2008-02-26 02:22:38 49,152 ----a-w C:\WINDOWS\system32\drivers\ati2erec.dll
- 2006-02-10 01:57:46 1,502,208 ----a-w C:\WINDOWS\system32\drivers\ati2mtag.sys
+ 2008-02-26 05:51:43 2,863,616 ----a-w C:\WINDOWS\system32\drivers\ati2mtag.sys
+ 2008-08-06 18:36:06 26,824 ----a-w C:\WINDOWS\system32\drivers\avgmfx86.sys
+ 2007-01-30 05:03:34 2,432 ----a-w C:\WINDOWS\system32\drivers\cdr4_xp.sys
+ 2007-01-30 05:03:34 2,560 ----a-w C:\WINDOWS\system32\drivers\cdralw2k.sys
+ 2004-08-04 04:07:58 2,944 ----a-w C:\WINDOWS\system32\drivers\drmkaud.sys
- 2005-06-13 16:58:04 162,816 ----a-w C:\WINDOWS\system32\drivers\e100b325.sys
+ 2004-10-15 02:30:46 155,648 ----a-w C:\WINDOWS\system32\drivers\e100b325.sys
- 2006-09-19 20:44:04 15,664 ----a-w C:\WINDOWS\system32\drivers\GEARAspiWDM.sys
+ 2006-09-19 18:44:04 15,664 ----a-w C:\WINDOWS\system32\drivers\GEARAspiWDM.sys
- 2007-09-24 13:05:58 11,304 ----a-w C:\WINDOWS\system32\drivers\imagedrv.sys
+ 2007-04-24 19:27:12 11,568 ----a-w C:\WINDOWS\system32\drivers\imagedrv.sys
- 2007-09-24 13:05:58 132,904 ----a-w C:\WINDOWS\system32\drivers\imagesrv.sys
+ 2007-04-24 19:27:14 133,168 ----a-w C:\WINDOWS\system32\drivers\imagesrv.sys
- 2004-08-04 10:00:00 181,248 ----a-w C:\WINDOWS\system32\drivers\mrxdav.sys
+ 2007-12-18 09:51:35 179,584 ----a-w C:\WINDOWS\system32\drivers\mrxdav.sys
+ 2004-08-04 10:00:00 2,944 ----a-w C:\WINDOWS\system32\drivers\null.sys
- 2006-07-13 08:48:58 202,240 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys
+ 2008-05-08 12:28:49 202,752 ----a-w C:\WINDOWS\system32\drivers\rmcast.sys
- 2004-08-04 10:00:00 27,440 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
+ 2007-11-13 10:25:53 20,480 ----a-w C:\WINDOWS\system32\drivers\secdrv.sys
+ 2008-03-27 02:36:09 717,296 ----a-w C:\WINDOWS\system32\drivers\sptd.sys
+ 2008-02-18 15:16:24 30,464 ----a-w C:\WINDOWS\system32\drivers\usbaapl.sys
+ 2007-12-31 20:25:07 25,600 ----a-w C:\WINDOWS\system32\drivers\usbsermptxp.sys
+ 2008-02-18 15:16:24 30,464 -c--a-w C:\WINDOWS\system32\DRVSTORE\usbaapl_4351B7DAFF62FD33510D77DFAE3CF8CC82517571\usbaapl.sys
- 2006-10-17 16:58:06 346,624 ----a-w C:\WINDOWS\system32\dxtmsft.dll
+ 2008-04-23 04:16:28 347,136 ----a-w C:\WINDOWS\system32\dxtmsft.dll
- 2007-08-20 10:04:34 214,528 ----a-w C:\WINDOWS\system32\dxtrans.dll
+ 2008-04-23 04:16:28 214,528 ----a-w C:\WINDOWS\system32\dxtrans.dll
- 2006-10-21 01:29:46 69,408 ----a-w C:\WINDOWS\system32\dxva2.dll
+ 2007-10-09 18:03:00 73,752 ----a-w C:\WINDOWS\system32\dxva2.dll
- 2005-06-16 11:48:24 36,864 ----a-w C:\WINDOWS\system32\e100bmsg.dll
+ 2004-11-16 20:16:28 36,864 ----a-w C:\WINDOWS\system32\e100bmsg.dll
- 2006-10-21 01:30:00 478,496 ----a-w C:\WINDOWS\system32\evr.dll
+ 2007-10-09 18:03:12 493,080 ----a-w C:\WINDOWS\system32\evr.dll
- 2007-08-20 10:04:34 132,608 ----a-w C:\WINDOWS\system32\extmgr.dll
+ 2008-04-23 04:16:28 133,120 ----a-w C:\WINDOWS\system32\extmgr.dll
- 2007-06-03 18:31:28 10,752 ----a-w C:\WINDOWS\system32\ff_vfw.dll
+ 2007-07-29 21:51:44 7,680 ----a-w C:\WINDOWS\system32\ff_vfw.dll
- 2007-11-21 22:16:22 300,440 ----a-w C:\WINDOWS\system32\FNTCACHE.DAT
+ 2008-08-06 17:32:10 353,768 ----a-w C:\WINDOWS\system32\FNTCACHE.DAT
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\ftlx041e.dll
- 2007-06-19 13:31:19 282,112 ----a-w C:\WINDOWS\system32\gdi32.dll
+ 2008-02-20 06:51:05 282,624 ----a-w C:\WINDOWS\system32\gdi32.dll
+ 2008-02-06 14:32:42 85,432 ----a-w C:\WINDOWS\system32\GDIPFONTCACHEV1.DAT
- 2006-09-19 20:43:58 109,360 ----a-w C:\WINDOWS\system32\GEARAspi.dll
+ 2006-10-03 23:47:52 109,360 ----a-w C:\WINDOWS\system32\GEARAspi.dll
+ 2007-12-13 21:59:04 81,920 ----a-w C:\WINDOWS\system32\GkSui20.EXE
- 2006-10-30 07:33:58 556,296 ----a-w C:\WINDOWS\system32\icardagt.exe
+ 2007-10-11 14:55:10 579,584 ----a-w C:\WINDOWS\system32\icardagt.exe
- 2007-08-20 10:04:34 63,488 ----a-w C:\WINDOWS\system32\icardie.dll
+ 2008-04-23 04:16:28 63,488 ----a-w C:\WINDOWS\system32\icardie.dll
- 2006-10-30 07:33:58 9,480 ----a-w C:\WINDOWS\system32\icardres.dll
+ 2007-10-11 14:55:10 11,776 ----a-w C:\WINDOWS\system32\icardres.dll
- 2007-08-17 10:20:54 63,488 ----a-w C:\WINDOWS\system32\ie4uinit.exe
+ 2008-04-22 07:39:58 70,656 ----a-w C:\WINDOWS\system32\ie4uinit.exe
- 2007-08-20 10:04:34 153,088 ----a-w C:\WINDOWS\system32\ieakeng.dll
+ 2008-04-23 04:16:28 153,088 ----a-w C:\WINDOWS\system32\ieakeng.dll
- 2007-08-20 10:04:35 230,400 ----a-w C:\WINDOWS\system32\ieaksie.dll
+ 2008-04-23 04:16:28 230,400 ----a-w C:\WINDOWS\system32\ieaksie.dll
- 2007-08-17 07:34:25 161,792 ----a-w C:\WINDOWS\system32\ieakui.dll
+ 2008-04-20 05:07:51 161,792 ----a-w C:\WINDOWS\system32\ieakui.dll
- 2007-08-20 10:04:35 383,488 ----a-w C:\WINDOWS\system32\ieapfltr.dll
+ 2008-04-23 04:16:28 383,488 ----a-w C:\WINDOWS\system32\ieapfltr.dll
- 2007-08-20 10:04:35 384,512 ----a-w C:\WINDOWS\system32\iedkcs32.dll
+ 2008-04-23 04:16:28 384,512 ----a-w C:\WINDOWS\system32\iedkcs32.dll
- 2007-08-20 10:04:37 6,058,496 ----a-w C:\WINDOWS\system32\ieframe.dll
+ 2008-04-23 04:16:28 6,066,176 ----a-w C:\WINDOWS\system32\ieframe.dll
- 2007-08-20 10:04:38 44,544 ----a-w C:\WINDOWS\system32\iernonce.dll
+ 2008-04-23 04:16:28 44,544 ----a-w C:\WINDOWS\system32\iernonce.dll
- 2007-08-20 10:04:38 267,776 ----a-w C:\WINDOWS\system32\iertutil.dll
+ 2008-04-23 04:16:28 267,776 ----a-w C:\WINDOWS\system32\iertutil.dll
- 2007-08-17 10:20:54 13,824 ----a-w C:\WINDOWS\system32\ieudinit.exe
+ 2008-04-22 07:39:58 13,824 ----a-w C:\WINDOWS\system32\ieudinit.exe
- 2006-03-17 16:45:52 1,757,184 ----a-w C:\WINDOWS\system32\imagX7.dll
+ 2004-07-26 22:16:10 1,568,768 ----a-w C:\WINDOWS\system32\imagX7.dll
- 2006-03-17 16:45:54 497,296 ----a-w C:\WINDOWS\system32\imagXpr7.dll
+ 2004-07-26 22:16:10 476,320 ----a-w C:\WINDOWS\system32\imagXpr7.dll
- 2006-03-17 16:45:54 258,048 ----a-w C:\WINDOWS\system32\imagXR7.dll
+ 2004-07-26 22:16:10 262,144 ----a-w C:\WINDOWS\system32\imagXR7.dll
- 2006-03-17 16:45:54 802,816 ----a-w C:\WINDOWS\system32\imagXRA7.dll
+ 2004-07-26 22:16:10 471,040 ----a-w C:\WINDOWS\system32\imagXRA7.dll
- 2006-10-30 07:33:58 83,968 ----a-w C:\WINDOWS\system32\infocardapi.dll
+ 2007-10-11 14:55:10 88,576 ----a-w C:\WINDOWS\system32\infocardapi.dll
- 2007-08-20 10:04:39 27,648 ----a-w C:\WINDOWS\system32\jsproxy.dll
+ 2008-04-23 04:16:28 27,648 ----a-w C:\WINDOWS\system32\jsproxy.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbda1.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbda2.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbda3.dll
+ 2004-08-04 10:00:00 5,120 ----a-w C:\WINDOWS\system32\kbdarme.dll
+ 2004-08-04 10:00:00 5,120 ----a-w C:\WINDOWS\system32\kbdarmw.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbddiv1.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbddiv2.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdfa.dll
+ 2004-08-04 10:00:00 5,120 ----a-w C:\WINDOWS\system32\kbdgeo.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdheb.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdindev.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdinguj.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdinhin.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdinkan.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdinmar.dll
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdinpun.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdintam.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdintel.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdsyr1.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdsyr2.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdth0.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdth1.dll
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdth2.dll
+ 2004-08-04 10:00:00 6,144 ----a-w C:\WINDOWS\system32\kbdth3.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdurdu.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdusa.dll
+ 2004-08-04 10:00:00 5,632 ----a-w C:\WINDOWS\system32\kbdvntc.dll
+ 2004-08-04 10:00:00 2,000 ----a-w C:\WINDOWS\system32\keyboard.drv
+ 2004-08-04 10:00:00 221,600 ----a-w C:\WINDOWS\system32\lanman.drv
- 2007-04-24 15:32:06 1,485,696 ----a-w C:\WINDOWS\system32\LegitCheckControl.dll
+ 2007-10-11 19:12:48 1,468,968 ----a-w C:\WINDOWS\system32\LegitCheckControl.dll
- 2006-08-17 12:28:27 721,920 ----a-w C:\WINDOWS\system32\lsasrv.dll
+ 2007-11-07 09:26:56 721,920 ----a-w C:\WINDOWS\system32\lsasrv.dll
+ 2004-08-04 10:00:00 2,560 ----a-w C:\WINDOWS\system32\lz32.dll
+ 2008-03-25 02:32:44 218,496 ----a-r C:\WINDOWS\system32\Macromed\Flash\FlashUtil9f.exe
- 2007-09-23 14:08:08 48,749 ----a-w C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
+ 2008-04-15 05:47:21 74,137 ----a-w C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
+ 2004-08-04 10:00:00 73,376 ----a-w C:\WINDOWS\system32\mciavi.drv
+ 2004-08-04 10:00:00 25,264 ----a-w C:\WINDOWS\system32\mciseq.drv
+ 2004-08-04 10:00:00 28,160 ----a-w C:\WINDOWS\system32\mciwave.drv
- 2006-10-21 01:30:06 1,980,704 ----a-w C:\WINDOWS\system32\milcore.dll
+ 2007-10-09 18:03:14 1,986,072 ----a-w C:\WINDOWS\system32\milcore.dll
+ 2004-08-04 10:00:00 2,032 ----a-w C:\WINDOWS\system32\mouse.drv
- 2007-11-02 07:12:57 18,238,072 ----a-w C:\WINDOWS\system32\MRT.exe
+ 2008-05-29 23:35:11 17,486,968 ----a-w C:\WINDOWS\system32\MRT.exe
+ 2004-08-04 10:00:00 20,480 ----a-w C:\WINDOWS\system32\msacm32.drv
- 2007-04-13 08:21:14 271,360 ----a-w C:\WINDOWS\system32\mscoree.dll
+ 2007-10-24 06:47:38 282,112 ----a-w C:\WINDOWS\system32\mscoree.dll
- 2005-09-23 11:28:52 150,016 ----a-w C:\WINDOWS\system32\mscorier.dll
+ 2007-10-24 06:47:38 158,720 ----a-w C:\WINDOWS\system32\mscorier.dll
- 2005-09-23 11:28:52 74,240 ----a-w C:\WINDOWS\system32\mscories.dll
+ 2007-10-24 06:47:38 84,480 ----a-w C:\WINDOWS\system32\mscories.dll
- 2004-08-04 10:00:00 294,400 ----a-w C:\WINDOWS\system32\MSCTF.dll
+ 2008-02-26 11:59:50 294,912 ----a-w C:\WINDOWS\system32\msctf.dll
- 2004-08-04 10:00:00 512,029 ----a-w C:\WINDOWS\system32\msexch40.dll
+ 2008-03-25 04:50:28 518,944 ----a-w C:\WINDOWS\system32\msexch40.dll
- 2004-08-04 10:00:00 319,517 ----a-w C:\WINDOWS\system32\msexcl40.dll
+ 2008-03-25 04:50:30 326,432 ----a-w C:\WINDOWS\system32\msexcl40.dll
- 2007-08-20 10:04:39 459,264 ----a-w C:\WINDOWS\system32\msfeeds.dll
+ 2008-04-23 04:16:28 459,264 ----a-w C:\WINDOWS\system32\msfeeds.dll
- 2007-08-20 10:04:39 52,224 ----a-w C:\WINDOWS\system32\msfeedsbs.dll
+ 2008-04-23 04:16:28 52,224 ----a-w C:\WINDOWS\system32\msfeedsbs.dll
+ 2004-08-04 10:00:00 188,416 ----a-w C:\WINDOWS\system32\msh261.drv
+ 2004-08-04 10:00:00 294,912 ----a-w C:\WINDOWS\system32\msh263.drv
- 2007-08-20 10:04:41 3,584,512 ----a-w C:\WINDOWS\system32\mshtml.dll
+ 2008-04-24 02:16:30 3,591,680 ----a-w C:\WINDOWS\system32\mshtml.dll
- 2007-08-20 10:04:41 477,696 ----a-w C:\WINDOWS\system32\mshtmled.dll
+ 2008-04-23 04:16:28 478,208 ----a-w C:\WINDOWS\system32\mshtmled.dll
- 2004-08-04 10:00:00 1,507,356 ----a-w C:\WINDOWS\system32\msjet40.dll
+ 2008-03-25 04:50:34 1,516,568 ----a-w C:\WINDOWS\system32\msjet40.dll
- 2004-08-04 10:00:00 358,976 ----a-w C:\WINDOWS\system32\msjetoledb40.dll
+ 2008-03-25 04:50:40 355,112 ----a-w C:\WINDOWS\system32\msjetoledb40.dll
- 2004-08-04 10:00:00 151,583 ----a-w C:\WINDOWS\system32\msjint40.dll
+ 2008-03-27 08:12:54 151,583 ----a-w C:\WINDOWS\system32\msjint40.dll
- 2004-08-04 10:00:00 53,279 ----a-w C:\WINDOWS\system32\msjter40.dll
+ 2008-03-25 04:50:42 60,192 ----a-w C:\WINDOWS\system32\msjter40.dll
- 2004-08-04 10:00:00 241,693 ----a-w C:\WINDOWS\system32\msjtes40.dll
+ 2008-03-25 04:50:42 248,608 ----a-w C:\WINDOWS\system32\msjtes40.dll
- 2004-08-04 10:00:00 213,023 ----a-w C:\WINDOWS\system32\msltus40.dll
+ 2008-03-25 04:50:44 219,936 ----a-w C:\WINDOWS\system32\msltus40.dll
- 2004-08-04 10:00:00 348,189 ----a-w C:\WINDOWS\system32\mspbde40.dll
+ 2008-03-25 04:50:45 355,104 ----a-w C:\WINDOWS\system32\mspbde40.dll
- 2007-08-20 10:04:41 193,024 ----a-w C:\WINDOWS\system32\msrating.dll
+ 2008-04-23 04:16:28 193,024 ----a-w C:\WINDOWS\system32\msrating.dll
- 2004-08-04 10:00:00 421,919 ----a-w C:\WINDOWS\system32\msrd2x40.dll
+ 2008-03-25 04:50:47 432,928 ----a-w C:\WINDOWS\system32\msrd2x40.dll
- 2004-08-04 10:00:00 315,423 ----a-w C:\WINDOWS\system32\msrd3x40.dll
+ 2008-03-25 04:50:49 322,336 ----a-w C:\WINDOWS\system32\msrd3x40.dll
- 2004-08-04 10:00:00 552,989 ----a-w C:\WINDOWS\system32\msrepl40.dll
+ 2008-03-25 04:50:52 559,904 ----a-w C:\WINDOWS\system32\msrepl40.dll
- 2000-05-24 03:45:58 118,784 ----a-w C:\WINDOWS\system32\MSSTDFMT.DLL
+ 2007-12-27 03:33:14 118,784 ----a-w C:\WINDOWS\system32\MSSTDFMT.DLL
- 2004-08-04 10:00:00 258,077 ----a-w C:\WINDOWS\system32\mstext40.dll
+ 2008-03-25 04:50:55 264,992 ----a-w C:\WINDOWS\system32\mstext40.dll
- 2007-08-20 10:04:42 671,232 ----a-w C:\WINDOWS\system32\mstime.dll
+ 2008-04-23 04:16:28 671,232 ----a-w C:\WINDOWS\system32\mstime.dll
- 2004-08-04 10:00:00 1,392,671 ----a-w C:\WINDOWS\system32\msvbvm60.dll
+ 2007-12-27 03:33:14 1,386,496 ----a-w C:\WINDOWS\system32\msvbvm60.dll
- 2004-08-04 10:00:00 831,519 ----a-w C:\WINDOWS\system32\mswdat10.dll
+ 2008-03-25 04:50:57 838,432 ----a-w C:\WINDOWS\system32\mswdat10.dll
- 2004-08-04 10:00:00 245,248 ----a-w C:\WINDOWS\system32\mswsock.dll
+ 2008-06-20 17:41:10 245,248 ----a-w C:\WINDOWS\system32\mswsock.dll
- 2004-08-04 10:00:00 614,429 ----a-w C:\WINDOWS\system32\mswstr10.dll
+ 2008-03-25 04:50:58 621,344 ----a-w C:\WINDOWS\system32\mswstr10.dll
- 2004-08-04 10:00:00 348,189 ----a-w C:\WINDOWS\system32\msxbde40.dll
+ 2008-03-25 04:50:58 355,104 ----a-w C:\WINDOWS\system32\msxbde40.dll
- 2006-12-22 17:02:36 6,144 ----a-w C:\WINDOWS\system32\mui\0409\mscorees.dll
+ 2007-10-24 06:47:44 15,360 ----a-w C:\WINDOWS\system32\mui\0409\mscorees.dll
- 2007-09-20 13:55:18 95,600 ----a-w C:\WINDOWS\system32\NeroCo.dll
+ 2007-04-24 19:23:08 95,864 ----a-w C:\WINDOWS\system32\NeroCo.dll
- 2007-08-20 10:04:42 102,400 ----a-w C:\WINDOWS\system32\occache.dll
+ 2008-04-23 04:16:28 102,912 ----a-w C:\WINDOWS\system32\occache.dll
- 2006-02-10 01:53:10 77,824 ----a-w C:\WINDOWS\system32\Oemdspif.dll
+ 2008-02-26 03:02:02 126,976 ----a-w C:\WINDOWS\system32\Oemdspif.dll
- 2007-05-17 11:28:05 549,376 ----a-w C:\WINDOWS\system32\oleaut32.dll
+ 2007-12-04 18:38:13 550,912 ----a-w C:\WINDOWS\system32\oleaut32.dll
- 2007-11-12 04:53:21 71,640 ----a-w C:\WINDOWS\system32\perfc009.dat
+ 2008-04-09 15:04:31 72,824 ----a-w C:\WINDOWS\system32\perfc009.dat
- 2007-11-12 04:53:21 440,606 ----a-w C:\WINDOWS\system32\perfh009.dat
+ 2008-04-09 15:04:31 445,870 ----a-w C:\WINDOWS\system32\perfh009.dat
- 2006-10-17 16:58:08 44,544 ----a-w C:\WINDOWS\system32\pngfilt.dll
+ 2008-04-23 04:16:28 44,544 ----a-w C:\WINDOWS\system32\pngfilt.dll
- 2007-09-01 16:48:09 66,872 ----a-w C:\WINDOWS\system32\PnkBstrA.exe
+ 2008-02-29 13:34:35 66,872 ----a-w C:\WINDOWS\system32\PnkBstrA.exe
- 2007-09-30 05:09:56 103,736 ----a-w C:\WINDOWS\system32\PnkBstrB.exe
+ 2008-07-22 16:08:59 107,832 ----a-w C:\WINDOWS\system32\PnkBstrB.exe
- 2006-10-21 01:29:52 104,224 ----a-w C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
+ 2007-10-09 18:03:04 106,520 ----a-w C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
- 2006-10-21 01:29:58 344,352 ----a-w C:\WINDOWS\system32\PresentationHost.exe
+ 2007-10-09 18:03:08 350,744 ----a-w C:\WINDOWS\system32\PresentationHost.exe
- 2006-10-21 01:29:46 20,768 ----a-w C:\WINDOWS\system32\PresentationHostProxy.dll
+ 2007-10-09 18:03:02 33,304 ----a-w C:\WINDOWS\system32\PresentationHostProxy.dll
- 2006-10-21 01:30:02 769,312 ----a-w C:\WINDOWS\system32\PresentationNative_v0300.dll
+ 2007-10-09 18:03:12 779,800 ----a-w C:\WINDOWS\system32\PresentationNative_v0300.dll
- 2005-06-15 17:27:42 126,976 ----a-w C:\WINDOWS\system32\Prounstl.exe
+ 2004-11-17 04:52:20 126,976 ----a-w C:\WINDOWS\system32\Prounstl.exe
+ 2007-09-28 22:07:52 3,596,288 ----a-w C:\WINDOWS\system32\qt-dx331.dll
- 2005-08-30 03:54:26 1,287,168 ----a-w C:\WINDOWS\system32\quartz.dll
+ 2008-05-07 05:18:48 1,287,680 ----a-w C:\WINDOWS\system32\quartz.dll
+ 2004-08-04 10:00:00 23,552 -c--a-w C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\i386\wdmaud.drv
+ 2008-08-04 04:12:45 184,144 ----a-w C:\WINDOWS\system32\Restore\rstrlog.dat
+ 2004-08-04 10:00:00 1,744 ----a-w C:\WINDOWS\system32\sound.drv
- 2006-10-09 02:51:14 14,640 ----a-w C:\WINDOWS\system32\spmsg.dll
+ 2007-11-30 12:39:22 17,272 ----a-w C:\WINDOWS\system32\spmsg.dll
- 2005-08-26 18:43:48 65,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcfg.dll
+ 2005-08-26 19:43:48 65,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcfg.dll
- 2005-10-28 20:38:24 372,736 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcomx.dll
+ 2005-10-28 21:38:24 372,736 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcomx.dll
- 2005-11-23 09:53:46 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcu.dll
+ 2005-11-23 10:53:46 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcu.dll
- 2005-11-23 09:53:52 86,016 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcub.dll
+ 2005-11-23 10:53:52 86,016 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcub.dll
- 2005-11-23 09:54:36 36,864 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcur.dll
+ 2005-11-23 10:54:36 36,864 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfcur.dll
- 2005-11-23 15:37:40 116,736 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfDR5C.DLL
+ 2005-11-23 16:37:40 116,736 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfDR5C.DLL
- 2005-07-11 13:36:30 118,784 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfdrec.dll
+ 2005-07-11 14:36:30 118,784 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfdrec.dll
- 2005-09-29 14:02:18 114,688 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfflib.dll
+ 2005-09-29 15:02:18 114,688 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfflib.dll
- 2005-08-24 14:45:34 983,092 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfgf.dll
+ 2005-08-24 15:45:34 983,092 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfgf.dll
- 2005-09-29 14:02:16 479,232 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfhpec.dll
+ 2005-09-29 15:02:16 479,232 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfhpec.dll
- 2005-09-29 14:02:16 589,824 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfhpeh.dll
+ 2005-09-29 15:02:16 589,824 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfhpeh.dll
- 2005-09-29 14:02:18 147,456 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfhpep.dll
+ 2005-09-29 15:02:18 147,456 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfhpep.dll
- 2005-11-23 09:53:44 155,648 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfins.dll
+ 2005-11-23 10:53:44 155,648 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfins.dll
- 2005-11-23 09:53:50 221,184 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfinsb.dll
+ 2005-11-23 10:53:50 221,184 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfinsb.dll
- 2005-11-23 09:54:36 106,496 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfinsr.dll
+ 2005-11-23 10:54:36 106,496 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfinsr.dll
- 2005-11-23 09:53:28 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfjsw.dll
+ 2005-11-23 10:53:28 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfjsw.dll
- 2005-11-23 09:53:54 462,848 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfjswb.dll
+ 2005-11-23 10:53:54 462,848 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfjswb.dll
- 2005-11-23 09:54:22 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfjswr.dll
+ 2005-11-23 10:54:22 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfjswr.dll
- 2005-10-28 20:37:50 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfjswx.exe
+ 2005-10-28 21:37:50 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfjswx.exe
- 2005-11-23 09:53:38 1,089,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcflpa.dll
+ 2005-11-23 10:53:38 1,089,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcflpa.dll
- 2005-11-23 09:54:02 5,644,288 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcflpab.dll
+ 2005-11-23 10:54:02 5,644,288 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcflpab.dll
- 2005-11-23 09:54:26 212,992 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcflpar.dll
+ 2005-11-23 10:54:26 212,992 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcflpar.dll
- 2005-11-23 15:37:40 4,096 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpcfg.DLL
+ 2005-11-23 16:37:40 4,096 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpcfg.DLL
- 2005-10-28 20:37:46 319,488 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfppx.dll
+ 2005-10-28 21:37:46 319,488 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfppx.dll
- 2005-11-23 09:53:38 745,472 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfprp.dll
+ 2005-11-23 10:53:38 745,472 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfprp.dll
- 2005-11-23 09:54:10 3,379,200 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfprpb.dll
+ 2005-11-23 10:54:10 3,379,200 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfprpb.dll
- 2005-11-23 09:54:34 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfprpr.dll
+ 2005-11-23 10:54:34 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfprpr.dll
- 2005-11-23 09:53:34 376,832 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpsw.dll
+ 2005-11-23 10:53:34 376,832 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpsw.dll
- 2005-11-23 09:54:14 708,608 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpswb.dll
+ 2005-11-23 10:54:14 708,608 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpswb.dll
- 2005-11-23 09:54:30 94,208 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpswr.dll
+ 2005-11-23 10:54:30 94,208 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpswr.dll
- 2005-10-28 20:38:12 176,128 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpswx.exe
+ 2005-10-28 21:38:12 176,128 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfpswx.exe
- 2005-09-08 17:55:12 282,624 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfretv.dll
+ 2005-09-08 18:55:12 282,624 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfretv.dll
- 2005-09-08 17:55:34 57,344 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfserv.exe
+ 2005-09-08 18:55:34 57,344 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfserv.exe
- 2005-11-23 09:44:28 229,376 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfsk0.dll
+ 2005-11-23 10:44:28 229,376 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfsk0.dll
- 2005-08-24 14:45:34 204,800 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfsk1.dll
+ 2005-08-24 15:45:34 204,800 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfsk1.dll
- 2005-08-24 14:45:36 245,760 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfsk2.dll
+ 2005-08-24 15:45:36 245,760 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfsk2.dll
- 2005-11-23 15:38:10 287,232 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfstrn.DLL
+ 2005-11-23 16:38:10 287,232 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfstrn.DLL
- 2005-09-08 17:55:18 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcftime.dll
+ 2005-09-08 18:55:18 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcftime.dll
- 2005-09-08 17:55:40 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcftime.exe
+ 2005-09-08 18:55:40 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcftime.exe
- 2005-08-08 17:58:34 180,224 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcftsfw.dll
+ 2005-08-08 18:58:34 180,224 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcftsfw.dll
- 2005-11-23 15:37:52 57,856 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfUI5C.DLL
+ 2005-11-23 16:37:52 57,856 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfUI5C.DLL
- 2005-09-08 17:55:26 303,104 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfuldr.dll
+ 2005-09-08 18:55:26 303,104 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfuldr.dll
- 2005-11-02 16:28:36 192,512 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfunst.exe
+ 2005-11-02 17:28:36 192,512 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfunst.exe
- 2005-11-23 09:53:50 65,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfupd.dll
+ 2005-11-23 10:53:50 65,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfupd.dll
- 2005-11-23 09:54:18 122,880 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfupdb.dll
+ 2005-11-23 10:54:18 122,880 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfupdb.dll
- 2005-11-23 09:54:36 90,112 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfupdr.dll
+ 2005-11-23 10:54:36 90,112 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfupdr.dll
- 2005-09-08 17:55:42 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfupld.exe
+ 2005-09-08 18:55:42 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfupld.exe
- 2005-11-23 09:53:26 430,080 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfutil.dll
+ 2005-11-23 10:53:26 430,080 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfutil.dll
- 2005-09-08 17:55:38 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfview.exe
+ 2005-09-08 18:55:38 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\dlcfview.exe
+ 2001-08-18 03:36:16 352,256 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\HPV700AL.DLL
+ 2001-08-18 03:34:28 176,640 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\HPVDB720.DLL
+ 2001-08-18 03:36:16 2,565,120 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\HPVIMG50.DLL
+ 2001-08-18 03:36:16 183,808 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\HPVSCP50.DLL
+ 2001-08-18 03:36:16 80,384 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\HPVUD50.DLL
+ 2001-08-18 03:36:16 32,768 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\HPVUI50.DLL
- 2005-04-27 13:06:34 430,080 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\lexedf.dll
+ 2005-04-27 14:06:34 430,080 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\lexedf.dll
- 2005-07-11 19:39:34 24,576 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\lexgo.exe
+ 2005-07-11 20:39:34 24,576 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\3\lexgo.exe
- 2005-08-26 18:43:48 65,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcfg.dll
+ 2005-08-26 19:43:48 65,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcfg.dll
- 2005-10-28 20:38:24 372,736 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcomx.dll
+ 2005-10-28 21:38:24 372,736 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcomx.dll
- 2005-11-23 09:53:46 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcu.dll
+ 2005-11-23 10:53:46 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcu.dll
- 2005-11-23 09:53:52 86,016 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcub.dll
+ 2005-11-23 10:53:52 86,016 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcub.dll
- 2005-11-23 09:54:36 36,864 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcur.dll
+ 2005-11-23 10:54:36 36,864 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfcur.dll
- 2005-11-23 15:37:40 116,736 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfdr5c.dll
+ 2005-11-23 16:37:40 116,736 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfdr5c.dll
- 2005-07-11 13:36:30 118,784 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfdrec.dll
+ 2005-07-11 14:36:30 118,784 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfdrec.dll
- 2005-09-29 14:02:18 114,688 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfflib.dll
+ 2005-09-29 15:02:18 114,688 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfflib.dll
- 2005-08-24 14:45:34 983,092 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfgf.dll
+ 2005-08-24 15:45:34 983,092 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfgf.dll
- 2005-09-29 14:02:16 479,232 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfhpec.dll
+ 2005-09-29 15:02:16 479,232 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfhpec.dll
- 2005-09-29 14:02:16 589,824 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfhpeh.dll
+ 2005-09-29 15:02:16 589,824 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfhpeh.dll
- 2005-09-29 14:02:18 147,456 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfhpep.dll
+ 2005-09-29 15:02:18 147,456 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfhpep.dll
- 2005-11-23 09:53:44 155,648 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfins.dll
+ 2005-11-23 10:53:44 155,648 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfins.dll
- 2005-11-23 09:53:50 221,184 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfinsb.dll
+ 2005-11-23 10:53:50 221,184 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfinsb.dll
- 2005-11-23 09:54:36 106,496 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfinsr.dll
+ 2005-11-23 10:54:36 106,496 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfinsr.dll
- 2005-11-23 09:53:28 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfjsw.dll
+ 2005-11-23 10:53:28 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfjsw.dll
- 2005-11-23 09:53:54 462,848 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfjswb.dll
+ 2005-11-23 10:53:54 462,848 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfjswb.dll
- 2005-11-23 09:54:22 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfjswr.dll
+ 2005-11-23 10:54:22 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfjswr.dll
- 2005-10-28 20:37:50 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfjswx.exe
+ 2005-10-28 21:37:50 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfjswx.exe
- 2005-11-23 09:53:38 1,089,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcflpa.dll
+ 2005-11-23 10:53:38 1,089,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcflpa.dll
- 2005-11-23 09:54:02 5,644,288 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcflpab.dll
+ 2005-11-23 10:54:02 5,644,288 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcflpab.dll
- 2005-11-23 09:54:26 212,992 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcflpar.dll
+ 2005-11-23 10:54:26 212,992 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcflpar.dll
- 2005-11-23 15:37:40 4,096 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpcfg.DLL
+ 2005-11-23 16:37:40 4,096 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpcfg.DLL
- 2005-10-28 20:37:46 319,488 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfppx.dll
+ 2005-10-28 21:37:46 319,488 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfppx.dll
- 2005-11-23 09:53:38 745,472 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfprp.dll
+ 2005-11-23 10:53:38 745,472 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfprp.dll
- 2005-11-23 09:54:10 3,379,200 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfprpb.dll
+ 2005-11-23 10:54:10 3,379,200 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfprpb.dll
- 2005-11-23 09:54:34 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfprpr.dll
+ 2005-11-23 10:54:34 131,072 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfprpr.dll
- 2005-11-23 09:53:34 376,832 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpsw.dll
+ 2005-11-23 10:53:34 376,832 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpsw.dll
- 2005-11-23 09:54:14 708,608 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpswb.dll
+ 2005-11-23 10:54:14 708,608 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpswb.dll
- 2005-11-23 09:54:30 94,208 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpswr.dll
+ 2005-11-23 10:54:30 94,208 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpswr.dll
- 2005-10-28 20:38:12 176,128 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpswx.exe
+ 2005-10-28 21:38:12 176,128 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfpswx.exe
- 2005-09-08 17:55:12 282,624 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfretv.dll
+ 2005-09-08 18:55:12 282,624 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfretv.dll
- 2005-09-08 17:55:34 57,344 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfserv.exe
+ 2005-09-08 18:55:34 57,344 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfserv.exe
- 2005-11-23 09:44:28 229,376 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfsk0.dll
+ 2005-11-23 10:44:28 229,376 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfsk0.dll
- 2005-08-24 14:45:34 204,800 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfsk1.dll
+ 2005-08-24 15:45:34 204,800 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfsk1.dll
- 2005-08-24 14:45:36 245,760 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfsk2.dll
+ 2005-08-24 15:45:36 245,760 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfsk2.dll
- 2005-11-23 15:38:10 287,232 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfstrn.DLL
+ 2005-11-23 16:38:10 287,232 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfstrn.DLL
- 2005-09-08 17:55:18 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcftime.dll
+ 2005-09-08 18:55:18 73,728 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcftime.dll
- 2005-09-08 17:55:40 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcftime.exe
+ 2005-09-08 18:55:40 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcftime.exe
- 2005-08-08 17:58:34 180,224 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcftsfw.dll
+ 2005-08-08 18:58:34 180,224 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcftsfw.dll
- 2005-11-23 15:37:52 57,856 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfui5c.dll
+ 2005-11-23 16:37:52 57,856 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfui5c.dll
- 2005-09-08 17:55:26 303,104 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfuldr.dll
+ 2005-09-08 18:55:26 303,104 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfuldr.dll
- 2005-11-02 16:28:36 192,512 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfunst.exe
+ 2005-11-02 17:28:36 192,512 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfunst.exe
- 2005-11-23 09:53:50 65,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfupd.dll
+ 2005-11-23 10:53:50 65,536 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfupd.dll
- 2005-11-23 09:54:18 122,880 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfupdb.dll
+ 2005-11-23 10:54:18 122,880 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfupdb.dll
- 2005-11-23 09:54:36 90,112 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfupdr.dll
+ 2005-11-23 10:54:36 90,112 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfupdr.dll
- 2005-09-08 17:55:42 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfupld.exe
+ 2005-09-08 18:55:42 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfupld.exe
- 2005-11-23 09:53:26 430,080 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfutil.dll
+ 2005-11-23 10:53:26 430,080 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfutil.dll
- 2005-09-08 17:55:38 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfview.exe
+ 2005-09-08 18:55:38 53,248 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\dlcfview.exe
- 2005-04-27 13:06:34 430,080 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\lexedf.dll
+ 2005-04-27 14:06:34 430,080 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\lexedf.dll
- 2005-07-11 19:39:34 24,576 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\lexgo.exe
+ 2005-07-11 20:39:34 24,576 ----a-w C:\WINDOWS\system32\spool\drivers\w32x86\dell_color_printer_72339\lexgo.exe
- 2005-11-23 15:37:44 73,728 ----a-w C:\WINDOWS\system32\spool\prtprocs\w32x86\dlcfPP5C.DLL
+ 2005-11-23 16:37:44 73,728 ----a-w C:\WINDOWS\system32\spool\prtprocs\w32x86\dlcfPP5C.DLL
+ 2004-08-04 10:00:00 3,360 ----a-w C:\WINDOWS\system32\system.drv
+ 2004-08-04 10:00:00 185,344 ----a-w C:\WINDOWS\system32\Thawbrkr.dll
+ 2004-08-04 10:00:00 4,048 ----a-w C:\WINDOWS\system32\timer.drv
+ 2007-10-09 17:58:20 16,896 ----a-w C:\WINDOWS\system32\tswpfwrp.exe
- 2006-03-17 19:49:46 368,640 ----a-w C:\WINDOWS\system32\TwnLib4.dll
+ 2004-07-09 14:43:56 364,544 ----a-w C:\WINDOWS\system32\TwnLib4.dll
- 2007-07-18 12:42:22 60,416 ----a-w C:\WINDOWS\system32\tzchange.exe
+ 2007-11-13 11:31:11 60,416 ----a-w C:\WINDOWS\system32\tzchange.exe
- 2006-10-21 01:29:54 159,008 ----a-w C:\WINDOWS\system32\UIAutomationCore.dll
+ 2007-10-09 18:03:08 161,304 ----a-w C:\WINDOWS\system32\UIAutomationCore.dll
+ 2004-12-07 07:11:34 258,352 ----a-w C:\WINDOWS\system32\unicows.dll
- 2003-03-25 10:49:02 152,064 ----a-w C:\WINDOWS\system32\unrar.dll
+ 2007-09-04 22:56:10 164,352 ----a-w C:\WINDOWS\system32\unrar.dll
- 2007-08-20 10:04:42 105,984 ----a-w C:\WINDOWS\system32\url.dll
+ 2008-04-23 04:16:28 105,984 ----a-w C:\WINDOWS\system32\url.dll
- 2007-08-20 10:04:42 1,152,000 ----a-w C:\WINDOWS\system32\urlmon.dll
+ 2008-04-23 04:16:29 1,159,680 ----a-w C:\WINDOWS\system32\urlmon.dll
+ 2005-04-27 23:15:45 2,560 -c--a-w C:\WINDOWS\system32\usmt\iconlib.dll
+ 2004-08-04 10:00:00 2,176 ----a-w C:\WINDOWS\system32\vga.drv
+ 2004-08-04 10:00:00 23,552 ----a-w C:\WINDOWS\system32\wdmaud.drv
- 2007-08-20 10:04:42 232,960 ----a-w C:\WINDOWS\system32\webcheck.dll
+ 2008-04-23 04:16:29 233,472 ----a-w C:\WINDOWS\system32\webcheck.dll
+ 2004-08-04 10:00:00 13,600 ----a-w C:\WINDOWS\system32\wfwnet.drv
- 2007-03-08 13:47:48 1,843,584 ----a-w C:\WINDOWS\system32\win32k.sys
+ 2008-03-19 09:47:00 1,845,248 ----a-w C:\WINDOWS\system32\win32k.sys
- 2007-08-20 10:04:43 824,832 ----a-w C:\WINDOWS\system32\wininet.dll
+ 2008-04-23 04:16:29 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
+ 2004-08-04 10:00:00 2,864 ----a-w C:\WINDOWS\system32\winsock.dll
+ 2004-08-04 10:00:00 146,432 ----a-w C:\WINDOWS\system32\winspool.drv
+ 2004-08-04 10:00:00 2,112 ----a-w C:\WINDOWS\system32\winspool.exe
- 2006-10-19 02:47:18 222,208 ----a-w C:\WINDOWS\system32\wmasf.dll
+ 2007-10-27 22:40:30 222,720 ----a-w C:\WINDOWS\system32\wmasf.dll
+ 2004-08-04 10:00:00 2,736 ----a-w C:\WINDOWS\system32\wowdeb.exe
+ 2006-02-03 13:41:26 14,032 ----a-w C:\WINDOWS\system32\x3daudio1_0.dll
+ 2007-03-05 16:42:18 15,128 ----a-w C:\WINDOWS\system32\x3daudio1_1.dll
+ 2007-10-22 07:37:16 17,928 ----a-w C:\WINDOWS\system32\X3DAudio1_2.dll
+ 2008-03-05 20:00:06 25,608 ----a-w C:\WINDOWS\system32\X3DAudio1_3.dll
+ 2006-02-03 13:42:06 230,096 ----a-w C:\WINDOWS\system32\xactengine2_0.dll
+ 2006-03-31 16:39:48 229,584 ----a-w C:\WINDOWS\system32\xactengine2_1.dll
+ 2007-10-22 07:39:54 267,272 ----a-w C:\WINDOWS\system32\xactengine2_10.dll
+ 2006-05-31 11:24:16 230,168 ----a-w C:\WINDOWS\system32\xactengine2_2.dll
+ 2006-07-28 13:30:32 236,824 ----a-w C:\WINDOWS\system32\xactengine2_3.dll
+ 2006-09-28 20:05:56 237,848 ----a-w C:\WINDOWS\system32\xactengine2_4.dll
+ 2006-12-08 16:02:00 251,672 ----a-w C:\WINDOWS\system32\xactengine2_5.dll
+ 2007-01-24 19:27:30 255,848 ----a-w C:\WINDOWS\system32\xactengine2_6.dll
+ 2007-04-04 22:55:00 261,480 ----a-w C:\WINDOWS\system32\xactengine2_7.dll
+ 2007-06-21 00:46:04 266,088 ----a-w C:\WINDOWS\system32\xactengine2_8.dll
+ 2007-07-20 04:57:12 267,112 ----a-w C:\WINDOWS\system32\xactengine2_9.dll
+ 2008-03-05 20:03:20 238,088 ----a-w C:\WINDOWS\system32\xactengine3_0.dll
+ 2008-03-05 20:03:54 479,752 ----a-w C:\WINDOWS\system32\XAudio2_0.dll
+ 2008-06-11 23:55:04 41,296 ----a-w C:\WINDOWS\system32\xfcodec.dll
+ 2006-03-31 16:39:24 62,672 ----a-w C:\WINDOWS\system32\xinput1_1.dll
+ 2006-07-28 13:30:14 62,744 ----a-w C:\WINDOWS\system32\xinput1_2.dll
+ 2007-04-04 22:53:42 81,768 ----a-w C:\WINDOWS\system32\xinput1_3.dll
+ 2005-12-05 23:07:30 61,136 ----a-w C:\WINDOWS\system32\xinput9_1_0.dll
- 2006-10-21 01:29:54 304,928 ----a-w C:\WINDOWS\system32\XPSViewer\XPSViewer.exe
+ 2007-10-09 18:03:08 308,760 ----a-w C:\WINDOWS\system32\XPSViewer\XPSViewer.exe
- 2004-10-30 20:39:52 761,856 ----a-w C:\WINDOWS\system32\xvidcore.dll
+ 2007-07-25 19:24:30 1,559,040 ----a-w C:\WINDOWS\system32\xvidcore.dll
+ 2007-03-10 17:51:50 282,624 ----a-w C:\WINDOWS\system32\xvidvfw.dll
+ 2004-01-25 22:18:44 217,088 ----a-w C:\WINDOWS\system32\yv12vfw.dll
- 2007-03-21 01:22:04 972,336 ----a-w C:\WINDOWS\UNNeroBackItUp.exe
+ 2007-04-24 19:22:50 972,336 ----a-w C:\WINDOWS\UNNeroBackItUp.exe
- 2007-10-23 19:20:08 972,072 ----a-w C:\WINDOWS\UNNeroMediaHome.exe
+ 2007-04-24 19:27:22 972,336 ----a-w C:\WINDOWS\UNNeroMediaHome.exe
- 2007-02-28 20:41:02 972,336 ----a-w C:\WINDOWS\UNNeroShowTime.exe
+ 2007-04-11 17:27:46 972,336 ----a-w C:\WINDOWS\UNNeroShowTime.exe
- 2007-03-22 01:02:12 972,336 ----a-w C:\WINDOWS\UNNeroVision.exe
+ 2007-04-24 19:46:40 972,336 ----a-w C:\WINDOWS\UNNeroVision.exe
- 2007-10-22 13:51:32 972,072 ----a-w C:\WINDOWS\UNRecode.exe
+ 2007-04-24 19:30:50 972,336 ----a-w C:\WINDOWS\UNRecode.exe
+ 2000-08-31 12:00:00 49,152 ----a-w C:\WINDOWS\VFind.exe
+ 2008-02-13 17:13:49 8,192 ----a-w C:\WINDOWS\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2007-10-24 06:47:56 479,232 ----a-w C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\msvcm80.dll
+ 2007-10-24 06:47:56 558,080 ----a-w C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\msvcp80.dll
+ 2007-10-24 06:47:56 635,904 ----a-w C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\msvcr80.dll
- 2007-11-04 07:05:18 258,048 ----a-w C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2008-02-13 17:14:02 258,048 ----a-w C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
- 2007-11-04 07:05:18 114,176 ----a-w C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2008-02-13 17:14:02 113,664 ----a-w C:\WINDOWS\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2000-08-31 12:00:00 68,096 ----a-w C:\WINDOWS\zip.exe
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 06:00 15360]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-03-14 07:55 486856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2006-02-09 22:05 344064]
"DLCFCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll" [2005-09-08 14:55 73728]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-01-31 23:13 385024]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-08-06 14:35 1232152]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"MySpaceIM"="C:\Program Files\MySpace\IM\MySpaceIM.exe" [2007-12-18 21:47 8720384]

C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\Startup\
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-03-16 19:16:50 113664]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.YV12"= yv12vfw.dll
"VIDC.XFR1"= xfcodec.dll

[HKLM\~\startupfolder\C:^Documents and Settings^DEBORAH DEBORD^Start Menu^Programs^Startup^GameSpot Download Manager.lnk]
path=C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\Startup\GameSpot Download Manager.lnk
backup=C:\WINDOWS\pss\GameSpot Download Manager.lnkStartup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2008-01-11 22:16 39792 C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
--a------ 2007-04-24 15:25 149040 C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTSVolFE]
--------- 2005-02-23 16:57 57344 C:\Program Files\Creative\Mixer\CTSVolFE.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ddoctorv2]
--a------ 2008-04-24 13:25 202560 C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSupport]
--a------ 2007-03-15 11:09 460784 C:\Program Files\DellSupport\DSAgnt.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MySpaceIM]
--a------ 2007-12-18 21:47 8720384 C:\Program Files\MySpace\IM\MySpaceIM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2007-03-15 22:02 153136 C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PhotoShow Deluxe Media Manager]
--a------ 2005-05-09 19:16 192512 C:\PROGRA~1\Comcast\COMCAS~1\data\Xtras\mssysmgr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2008-01-31 23:13 385024 C:\Program Files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
--a------ 2007-08-31 17:46 1460560 C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2007-09-25 01:11 132496 C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SigmatelSysTrayApp]
--a------ 2005-03-22 18:20 339968 C:\WINDOWS\stsystra.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"Viewpoint Manager Service"=2 (0x2)
"usnjsvc"=3 (0x3)
"PnkBstrA"=2 (0x2)
"ose"=3 (0x3)
"MDM"=2 (0x2)
"idsvc"=3 (0x3)
"FreezeScreenSaver"=2 (0x2)
"DSBrokerService"=3 (0x3)
"dlcf_device"=3 (0x3)
"SiteAdvisor Service"=2 (0x2)
"sprtsvc_ddoctorv2"=2 (0x2)
"NMIndexingService"=3 (0x3)
"NBService"=3 (0x3)
"iPod Service"=3 (0x3)
"IDriverT"=3 (0x3)
"Apple Mobile Device"=2 (0x2)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\StubInstaller.exe"=
"C:\\Program Files\\Xfire\\xfire.exe"=
"C:\\WINDOWS\\system32\\mmc.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Electronic Arts\\Battlefield 2142\\BF2142.exe"=
"C:\\Program Files\\Trillian\\trillian.exe"=
"C:\\Program Files\\SmartFTP Client\\SmartFTP.exe"=
"C:\\Program Files\\MySpace\\IM\\MySpaceIM.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"=

R1 AvgLdx86;AVG Free AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-08-06 14:36]
R2 avg8emc;AVG Free8 E-mail Scanner;C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-08-06 14:35]
R2 avg8wd;AVG Free8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-08-06 14:35]
R2 AvgTdiX;AVG Free8 Network Redirector;C:\WINDOWS\system32\Drivers\avgtdix.sys [2008-08-06 14:36]
S4 FreezeScreenSaver;FreezeScreenSaver;C:\WINDOWS\system32\FreezeScreenSaver.exe [2005-09-29 15:55]
S4 Viewpoint Manager Service;Viewpoint Manager Service;C:\Program Files\Viewpoint\Common\ViewpointService.exe [2007-01-04 17:38]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\H]
\Shell\AutoRun\command - H:\LaunchU3.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\Z]
\Shell\AutoRun\command - Z:\Setup.exe
.
Contents of the 'Scheduled Tasks' folder

2008-08-06 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-04-11 17:57]
.
- - - - ORPHANS REMOVED - - - -

BHO-{54228b51-c6e7-9dec-bbe4-e8613c152c17} - C:\WINDOWS\system32\nsn110D.dll
BHO-{640692F9-1882-41C5-ACFF-48F94CAA248D} - C:\WINDOWS\system32\mlljk.dll
BHO-{BC730A29-A729-452E-AD8C-ADAA17E20C10} - C:\WINDOWS\system32\mllji.dll
HKLM-Run-a074caae - C:\WINDOWS\system32\rxpiabtp.dll
HKLM-Run-BMa347f932 - C:\WINDOWS\system32\noxthdqk.dll
Notify-vtustss - vtustss.dll


.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\DEBORAH DEBORD\Application Data\Mozilla\Firefox\Profiles\w2s4ewpm.default\
FireFox -: prefs.js - SEARCH.DEFAULTURL - hxxp://www.google.com/search?lr=&ie=UTF-8&oe=UTF-8&q=
FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://en-us.start.mozilla.com/firefox?client=firefox-a&rls=org.mozilla:en-US:official


**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-06 17:58:17
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...


**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\Program Files\AVG\AVG8\avgrsx.exe
C:\Program Files\AVG\AVG8\avgrsx.exe
.
**************************************************************************
.
Completion time: 2008-08-06 18:13:25 - machine was rebooted
ComboFix-quarantined-files.txt 2008-08-06 22:12:18
ComboFix2.txt 2007-12-02 07:44:50

Pre-Run: 4,249,743,360 bytes free
Post-Run: 4,642,201,600 bytes free

WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect
C:\CMDCONS\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons

2472 --- E O F --- 2008-07-09 07:02:37

#12 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:10:16 PM

Posted 06 August 2008 - 05:45 PM

Hi,

Much better already :thumbsup:

I see you have Viewpoint installed...
Viewpoint Manager is considered as foistware instead of malware since it is installed without users approval but doesn't spy or do anything "bad". This will change from what we know in 2006 read this article: http://www.clickz.com/news/article.php/3561546
I suggest you remove the program now. Go to Start > Settings > Control Panel > Add/Remove Programs and remove the following programs if present.
  • Viewpoint
  • Viewpoint Manager
  • Viewpoint Media Player
Also uninstall FreezeScreenSaver and Ask Toolbar via software add & remove programs.
Reboot afterwards.
Then,

* Open notepad - don't use any other texteditor than notepad or the script will fail.
Copy/paste the text in the quotebox below into notepad:

File::
C:\WINDOWS\system32\FreezeScreenSaver.exe
C:\WINDOWS\system32\fivtubxo.exe
C:\WINDOWS\system32\weevvspx.exe
C:\WINDOWS\system32\lcxuurip.exe
Folder::
C:\WINDOWS\system32\kBin02
C:\Temp\epr1
C:\Program Files\AskSBar
C:\Program Files\ContextEnhancer
Driver::
FreezeScreenSaver
Registry::
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"Viewpoint Manager Service"=-
"FreezeScreenSaver"=-


Save this as txtfile CFScript

Then drag the CFScript into ComboFix.exe as you see in the screenshot below.

Posted Image

This will start ComboFix again. After reboot, (in case it asks to reboot), post the contents of Combofix.txt in your next reply.
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#13 April Bryant

April Bryant
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:16 PM

Posted 06 August 2008 - 08:38 PM

OK... the only thing problem was that Freezescreensaver thingie wasn't in the Add/Remove Programs.

But here ya go.

ComboFix 08-08-05.09 - DEBORAH DEBORD 2008-08-06 21:16:47.4 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.583 [GMT -4:00]
Running from: C:\Documents and Settings\DEBORAH DEBORD\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\DEBORAH DEBORD\Desktop\CFScript.txt
* Created a new restore point

FILE ::
C:\WINDOWS\system32\fivtubxo.exe
C:\WINDOWS\system32\FreezeScreenSaver.exe
C:\WINDOWS\system32\lcxuurip.exe
C:\WINDOWS\system32\weevvspx.exe
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Program Files\AskSBar
C:\Temp\epr1
C:\WINDOWS\system32\fivtubxo.exe
C:\WINDOWS\system32\FreezeScreenSaver.exe
C:\WINDOWS\system32\kBin02
C:\WINDOWS\system32\lcxuurip.exe
C:\WINDOWS\system32\weevvspx.exe

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_FREEZESCREENSAVER
-------\Service_FreezeScreenSaver


((((((((((((((((((((((((( Files Created from 2008-07-07 to 2008-08-07 )))))))))))))))))))))))))))))))
.

2008-08-06 14:38 . 2008-08-06 17:12 <DIR> d--h----- C:\$AVG8.VAULT$
2008-08-06 14:36 . 2008-08-06 14:37 <DIR> d-------- C:\WINDOWS\system32\drivers\Avg
2008-08-06 14:36 . 2008-08-06 17:35 <DIR> d-------- C:\Documents and Settings\DEBORAH DEBORD\Application Data\AVGTOOLBAR
2008-08-06 14:36 . 2008-08-06 14:36 96,520 --a------ C:\WINDOWS\system32\drivers\avgldx86.sys
2008-08-06 14:36 . 2008-08-06 14:36 76,040 --a------ C:\WINDOWS\system32\drivers\avgtdix.sys
2008-08-06 14:36 . 2008-08-06 14:36 10,520 --a------ C:\WINDOWS\system32\avgrsstx.dll
2008-08-06 14:35 . 2008-08-06 14:35 <DIR> d-------- C:\Program Files\AVG
2008-08-06 13:55 . 2008-08-06 14:35 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\avg8
2008-08-06 13:55 . 2008-08-06 13:55 <DIR> d-------- C:\Documents and Settings\Administrator\Application Data\AVGTOOLBAR
2008-08-06 13:29 . 2008-08-06 13:37 <DIR> d-------- C:\HostsXpert
2008-08-04 12:43 . 2008-08-04 12:43 <DIR> d-------- C:\Deckard
2008-08-04 00:30 . 2004-08-04 06:00 8,704 --a------ C:\WINDOWS\system32\dllcache\modern.fon
2008-08-04 00:11 . 2008-08-04 00:11 <DIR> d-------- C:\Program Files\LimeWire
2008-08-03 08:24 . 2008-08-06 21:17 <DIR> d-------- C:\Temp
2008-08-02 01:44 . 2001-07-15 01:26 381,685 --a------ C:\7DSMercedesCClassWhite.iff
2008-07-30 10:49 . 2008-08-02 01:04 <DIR> d-------- C:\Program Files\MonopolyHereNowEdition_at
2008-07-30 09:50 . 2008-08-02 01:05 <DIR> d-------- C:\Program Files\MysteryCaseFilesHuntsville_at
2008-07-30 02:08 . 2008-07-30 02:08 11,116 --a------ C:\WINDOWS\system32\ealregsnapshot1.reg
2008-07-29 19:06 . 2008-08-02 01:05 <DIR> d-------- C:\Program Files\School of Sword_at
2008-07-29 00:17 . 2008-07-29 00:17 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\HipSoft
2008-07-29 00:08 . 2008-08-02 01:01 <DIR> d-------- C:\Program Files\FamilyRestaurant_at
2008-07-29 00:08 . 2008-08-02 00:59 <DIR> d-------- C:\Program Files\BuildALot2_at
2008-07-28 16:46 . 2008-07-28 16:46 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Fitn17
2008-07-28 16:45 . 2008-08-02 01:02 <DIR> d-------- C:\Program Files\FitnessFrenzy_at
2008-07-28 15:46 . 2008-08-02 01:03 <DIR> d-------- C:\Program Files\LEGOBuilderBots_at
2008-07-28 14:32 . 2008-07-28 14:32 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Fugazo
2008-07-28 14:31 . 2008-08-02 01:01 <DIR> d-------- C:\Program Files\CookingAcademy_at
2008-07-28 13:39 . 2008-07-28 13:39 4,096 --a------ C:\WINDOWS\d3dx.dat
2008-07-28 13:38 . 2008-08-02 01:05 <DIR> d-------- C:\Program Files\Saints & Sinners Bowling
2008-07-28 13:38 . 2008-07-28 13:38 <DIR> d-------- C:\Program Files\ReflexiveArcade

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-08-06 20:18 --------- d-----w C:\Program Files\DAEMON Tools Lite
2008-08-06 16:04 --------- d-----w C:\Program Files\McAfee.com
2008-08-06 16:04 --------- d-----w C:\Documents and Settings\All Users\Application Data\McAfee
2008-08-06 15:58 --------- d-----w C:\Documents and Settings\All Users\Application Data\SiteAdvisor
2008-08-04 04:15 --------- d-----w C:\Program Files\Dl_cats
2008-08-03 11:42 --------- d-----w C:\Program Files\Apple Software Update
2008-08-02 05:07 --------- d--h--w C:\Program Files\InstallShield Installation Information
2008-08-02 05:06 --------- d-----w C:\Program Files\Street Challenge LLC
2008-08-02 05:03 --------- d-----w C:\Program Files\GameSpy Arcade
2008-08-02 04:58 --------- d-----w C:\Program Files\EA GAMES
2008-07-30 05:53 --------- d-----w C:\Program Files\Trillian
2008-07-30 01:25 --------- d---a-w C:\Documents and Settings\All Users\Application Data\TEMP
2008-07-23 03:48 --------- d-----w C:\Documents and Settings\DEBORAH DEBORD\Application Data\Comcast
2008-07-22 16:15 22,328 -c--a-w C:\WINDOWS\system32\drivers\PnkBstrK.sys
2008-06-30 07:42 --------- d-----w C:\Documents and Settings\DEBORAH DEBORD\Application Data\Xfire
2008-06-30 03:44 --------- d-----w C:\Program Files\Xfire
2008-06-23 18:23 --------- d-----w C:\Program Files\9Dragons
2008-06-23 02:17 --------- d-----w C:\Program Files\SmartFTP Client
2008-06-23 02:14 --------- d-----w C:\Program Files\SmartFTP Client 3.0 Setup Files
2008-06-21 09:12 --------- d-----w C:\Documents and Settings\All Users\Application Data\Comcast
2008-06-20 10:45 360,320 ----a-w C:\WINDOWS\system32\drivers\tcpip.sys
2008-06-20 10:44 138,368 ----a-w C:\WINDOWS\system32\drivers\afd.sys
2008-06-20 09:52 225,920 ----a-w C:\WINDOWS\system32\drivers\tcpip6.sys
2008-06-19 05:06 --------- d--h--r C:\Documents and Settings\DEBORAH DEBORD\Application Data\SecuROM
2008-06-19 01:46 6,172 ----a-w C:\Program Files\install.log
2008-06-13 13:10 272,128 ----a-w C:\WINDOWS\system32\drivers\bthport.sys
2007-12-31 20:25 92,064 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmmdm.sys
2007-12-31 20:25 9,232 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmmdfl.sys
2007-12-31 20:25 79,328 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmserd.sys
2007-12-31 20:25 66,656 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmbus.sys
2007-12-31 20:25 6,208 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmcmnt.sys
2007-12-31 20:25 5,936 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmwhnt.sys
2007-12-31 20:25 4,048 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\mqdmcr.sys
2007-12-31 20:25 25,600 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\usbsermptxp.sys
2007-12-31 20:25 22,768 -c--a-w C:\Documents and Settings\DEBORAH DEBORD\usbsermpt.sys
2007-11-21 05:46 88 --sh--r C:\WINDOWS\system32\3B367D6EAE.sys
2007-11-21 05:46 3,558 --sha-w C:\WINDOWS\system32\KGyGaAvL.sys
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 06:00 15360]
"DAEMON Tools Lite"="C:\Program Files\DAEMON Tools Lite\daemon.exe" [2008-03-14 07:55 486856]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ATIPTA"="C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe" [2006-02-09 22:05 344064]
"DLCFCATS"="C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCFtime.dll" [2005-09-08 14:55 73728]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2008-01-31 23:13 385024]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-08-06 14:35 1232152]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"MySpaceIM"="C:\Program Files\MySpace\IM\MySpaceIM.exe" [2007-12-18 21:47 8720384]

C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\Startup\
Adobe Gamma.lnk - C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe [2005-03-16 19:16:50 113664]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"VIDC.YV12"= yv12vfw.dll
"VIDC.XFR1"= xfcodec.dll

[HKLM\~\startupfolder\C:^Documents and Settings^DEBORAH DEBORD^Start Menu^Programs^Startup^GameSpot Download Manager.lnk]
path=C:\Documents and Settings\DEBORAH DEBORD\Start Menu\Programs\Startup\GameSpot Download Manager.lnk
backup=C:\WINDOWS\pss\GameSpot Download Manager.lnkStartup
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBKeyScan

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2008-01-11 22:16 39792 C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}]
--a------ 2007-04-24 15:25 149040 C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTSVolFE]
--------- 2005-02-23 16:57 57344 C:\Program Files\Creative\Mixer\CTSVolFE.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ddoctorv2]
--a------ 2008-04-24 13:25 202560 C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSupport]
--a------ 2007-03-15 11:09 460784 C:\Program Files\DellSupport\DSAgnt.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MySpaceIM]
--a------ 2007-12-18 21:47 8720384 C:\Program Files\MySpace\IM\MySpaceIM.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
--a------ 2007-03-15 22:02 153136 C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PhotoShow Deluxe Media Manager]
--a------ 2005-05-09 19:16 192512 C:\PROGRA~1\Comcast\COMCAS~1\data\Xtras\mssysmgr.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2008-01-31 23:13 385024 C:\Program Files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SpybotSD TeaTimer]
--a------ 2007-08-31 17:46 1460560 C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2007-09-25 01:11 132496 C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SigmatelSysTrayApp]
--a------ 2005-03-22 18:20 339968 C:\WINDOWS\stsystra.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"usnjsvc"=3 (0x3)
"PnkBstrA"=2 (0x2)
"ose"=3 (0x3)
"MDM"=2 (0x2)
"idsvc"=3 (0x3)
"DSBrokerService"=3 (0x3)
"dlcf_device"=3 (0x3)
"SiteAdvisor Service"=2 (0x2)
"sprtsvc_ddoctorv2"=2 (0x2)
"NMIndexingService"=3 (0x3)
"NBService"=3 (0x3)
"iPod Service"=3 (0x3)
"IDriverT"=3 (0x3)
"Apple Mobile Device"=2 (0x2)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\StubInstaller.exe"=
"C:\\Program Files\\Xfire\\xfire.exe"=
"C:\\WINDOWS\\system32\\mmc.exe"=
"C:\\Program Files\\LimeWire\\LimeWire.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Electronic Arts\\Battlefield 2142\\BF2142.exe"=
"C:\\Program Files\\Trillian\\trillian.exe"=
"C:\\Program Files\\SmartFTP Client\\SmartFTP.exe"=
"C:\\Program Files\\MySpace\\IM\\MySpaceIM.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"=

R1 AvgLdx86;AVG Free AVI Loader Driver x86;C:\WINDOWS\system32\Drivers\avgldx86.sys [2008-08-06 14:36]
R2 avg8emc;AVG Free8 E-mail Scanner;C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-08-06 14:35]
R2 avg8wd;AVG Free8 WatchDog;C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-08-06 14:35]
R2 AvgTdiX;AVG Free8 Network Redirector;C:\WINDOWS\system32\Drivers\avgtdix.sys [2008-08-06 14:36]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\H]
\Shell\AutoRun\command - H:\LaunchU3.exe

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\Z]
\Shell\AutoRun\command - Z:\Setup.exe
.
Contents of the 'Scheduled Tasks' folder

2008-08-06 C:\WINDOWS\Tasks\AppleSoftwareUpdate.job
- C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2008-04-11 17:57]
.
**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-08-06 21:24:55
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...


**************************************************************************
.
------------------------ Other Running Processes ------------------------
.
C:\WINDOWS\system32\ati2evxx.exe
C:\WINDOWS\system32\ati2evxx.exe
C:\Program Files\AVG\AVG8\avgrsx.exe
.
**************************************************************************
.
Completion time: 2008-08-06 21:35:54 - machine was rebooted
ComboFix-quarantined-files.txt 2008-08-07 01:34:49
ComboFix2.txt 2008-08-06 22:13:26
ComboFix3.txt 2007-12-02 07:44:50

Pre-Run: 4,614,078,464 bytes free
Post-Run: 4,615,852,032 bytes free

212 --- E O F --- 2008-07-09 07:02:37

#14 miekiemoes

miekiemoes

    Malware Killer Dog


  • Malware Response Team
  • 19,420 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:Belgium
  • Local time:10:16 PM

Posted 07 August 2008 - 12:06 AM

Hi,

This looks OK again.

* Go to start > run and copy and paste next command in the field:

ComboFix /u

Make sure there's a space between Combofix and /
Then hit enter.

This will uninstall Combofix, delete its related folders and files, reset your clock settings, hide file extensions, hide the system/hidden files and resets System Restore again.

Let me know in your next reply how things are now.
AntispywareScanners---Antivirus Scanners---Firewalls---Online Scanners---Prevention---Help! My computer is slow---My Blog---Follow me on Twitter.
My help is ALWAYS FREE, but if you want to donate to help me continue my fight against malware -- click here!
Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#15 April Bryant

April Bryant
  • Topic Starter

  • Members
  • 11 posts
  • OFFLINE
  •  
  • Local time:05:16 PM

Posted 07 August 2008 - 12:51 PM

YAY!!!!! :thumbsup: :)

YOU are THE BOMB!!!!

Your help was greatly appreciated!!

I know you guys are busy here, but I have been pumping you guys up on several drag racing websites. If you ever want to attend one of our races, just let me know, we will fix you right up.


Thank you again!!!

April Bryant
Marketing/PR Rep/Webmaster
Kenny Seeger Motorsports
www.kennyseegermotorsports.com




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users