Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Odd Computer Problems


  • This topic is locked This topic is locked
29 replies to this topic

#1 tristenkw5

tristenkw5

  • Members
  • 71 posts
  • OFFLINE
  •  
  • Local time:01:38 AM

Posted 08 December 2008 - 12:40 AM

Ok, so I've been through this process several times now, and it's funny how the prep steps are different every time.
I skipped the optional scan, as I'm realatively sure this isn't a malware problem.

Anyway, all in all, my computer has just been acting really weird all of a sudden. I don't think there's a virus involved, as I've
run an AVG scan here and there, and there were no results or the results were taken care of. So by weird I mean a couple of
things; my mouse started clicking 2-3 times for every one button press, 3 out of 4 button presses, though that may be a
problem in the mouse, I havn't tried another mouse out yet. A number of my programs close themselves with alerts and
errors centering around corrupt files almost everytime I open them including: Internet Explorer 8 (beta), Firefrox, Google
Chrome, BitComet, and MSN Messenger. I also noticed that there are around 7 svchost.exe processes running. Don't know
if it's supposed to be like that, but as I have realatively low RAM (like 700 MG), I don't think that's good. My printer is also
acting up, it won't print anything. The progress bar for a print job comes up, but it just sits at 0%, no matter what I'm printing.
And that's if it gets that far. Though again, this could be a problem with the printer of course, just thought to mention it.

I don't know how much of this could be solved through HighjackThis!, but Bleeping Computer has always come through for me
in the past (though the last time it took FOREVER to get help) so I thought to try.

Logfile of random's system information tool 1.04 (written by random/random)
Run by Administrator at 2008-12-07 23:11:49
Microsoft Windows XP Professional Service Pack 2
System drive C: has 2 GB (5%) free of 38 GB
Total RAM: 638 MB (22% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:12:21 PM, on 12/7/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18241)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\Yahoo!\YOP\yop.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Lexmark 3400 Series\lxcymon.exe
C:\Program Files\Lexmark 3400 Series\ezprint.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Zamaan's Software\Pepsi Volume Controller 3.0\pvc3.0.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\PROGRA~1\GoGoData.com\GOGODA~1\ADBUST~1.EXE
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\DNA\btdna.exe
C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\PROGRA~1\Yahoo!\YOP\SSDK02.exe
C:\Program Files\WiFiConnector\NintendoWFCReg.exe
C:\Program Files\Change Mon Ecran\CmeSystray.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\lxcycoms.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\system32\ZuneBusEnum.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Free iPod Video Converter\ipod_video_converter.exe
C:\Program Files\Common Files\Teleca Shared\Generic.exe
C:\Program Files\Sony Ericsson\Mobile2\Mobile Phone Monitor\epmworker.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Administrator\Desktop\RSIT.exe
C:\Documents and Settings\Administrator\Desktop\EMUS\Spyware and virus downloads\hijackthis\Administrator.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:6711
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O1 - Hosts: 66.98.148.65 auto.search.msn.com
O1 - Hosts: 66.98.148.65 auto.search.msn.es
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O2 - BHO: Freecorder Toolbar - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - C:\Program Files\Freecorder\tbFre1.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Freecorder Toolbar - {1392b8d2-5c05-419f-a8f6-b9f15a596612} - C:\Program Files\Freecorder\tbFre1.dll
O3 - Toolbar: Lexmark Toolbar - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [YBrowser] C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
O4 - HKLM\..\Run: [YOP] C:\PROGRA~1\Yahoo!\YOP\yop.exe /autostart
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [WindowsUI] C:\WINDOWS\WINDOWS\WindowsUI.exe
O4 - HKLM\..\Run: [lxcymon.exe] "C:\Program Files\Lexmark 3400 Series\lxcymon.exe"
O4 - HKLM\..\Run: [EzPrint] "C:\Program Files\Lexmark 3400 Series\ezprint.exe"
O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s
O4 - HKLM\..\Run: [LXCYCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCYtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [SearchSettings] C:\Program Files\Search Settings\SearchSettings.exe
O4 - HKLM\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe" /startoptions
O4 - HKLM\..\Run: [Pepsi Volume Controller 3.0] C:\Program Files\Zamaan's Software\Pepsi Volume Controller 3.0\pvc3.0.exe
O4 - HKLM\..\Run: [Zune Launcher] "f:\Zune\ZuneLauncher.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Program Files\LogMeIn\x86\LogMeInSystray.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [GoGoTray.exe] C:\Program Files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RocketDock] "C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe"
O4 - HKCU\..\Run: [WindowsUI] C:\WINDOWS\WINDOWS\WindowsUI.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKCU\..\Run: [Veoh] "C:\Program Files\Veoh Networks\Veoh\VeohClient.exe" /VeohHide
O4 - HKCU\..\Run: [BitTorrent DNA] "C:\Program Files\DNA\btdna.exe"
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')
O4 - Startup: Cme.lnk = C:\Program Files\Change Mon Ecran\Change Mon Ecran.exe
O4 - Startup: MagicDisc.lnk = C:\Program Files\MagicDisc\MagicDisc.exe
O4 - Startup: RocketDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
O4 - Startup: TransBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
O4 - Startup: UberIcon.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Desktop Manager.lnk = F:\Program Files\DesktopMgr.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Run Nintendo Wi-Fi USB Connector Registration Tool.lnk = C:\Program Files\WiFiConnector\NintendoWFCReg.exe
O4 - Global Startup: SBC Self Support Tool.lnk = C:\Program Files\SBC Self Support Tool\bin\matcli.exe
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Add to Change Mon Ecran - c:\windows\CmeIE.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: AT&T Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\common\yiesrvc.dll
O9 - Extra button: (no name) - {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - C:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL (file missing)
O9 - Extra 'Tools' menuitem: GoGoData AdBuster - {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - C:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL (file missing)
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Fiddler2 - {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - "C:\Program Files\Fiddler2\Fiddler.exe" (file missing)
O9 - Extra 'Tools' menuitem: Fiddler2 - {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - "C:\Program Files\Fiddler2\Fiddler.exe" (file missing)
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/u...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewido.net/ewidoOnlineScan.cab
O16 - DPF: {1E3F1348-4370-4BBE-A67A-CC7ED824CA85} (Microsoft Genuine Advantage Self Support Tool) - http://go.microsoft.com/fwlink/?LinkId=82580
O16 - DPF: {20A60F0D-9AFA-4515-A0FD-83BD84642501} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab56986.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper20073151.dll
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (CDownloadCtrl Object) - http://www.fileplanet.com/fpdlmgr/cabs/FPDC_2.3.6.108.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/...b?1121808448843
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v4.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftu...b?1198953485921
O16 - DPF: {88D969C0-F192-11D4-A65F-0040963251E5} (XML DOM Document 4.0) - http://ipgweb.cce.hp.com/rdqcpc/downloads/msxml4.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab
O16 - DPF: {9D8CCE0F-2E2C-41EB-B37F-9852DB989CAC} (WebLauncher Control) - http://www.ace-onlines.com/game/WebLauncher.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://cdn2.zone.msn.com/binFramework/v10/...ro.cab34246.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab56907.cab
O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownlo...GPlugin9USA.cab
O16 - DPF: {CF40ACC5-E1BB-4AFF-AC72-04C2F616BCA7} (get_atlcom Class) - http://www.adobe.com/products/acrobat/nos/gp.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EB6D7E70-AAA9-40D9-BA05-F214089F2275} (Vitalize Class) - http://www.clickteam.com/vitalize3/vitalize.cab
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: lxcy_device - - C:\WINDOWS\system32\lxcycoms.exe
O23 - Service: Sygate Personal Firewall (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O24 - Desktop Component 1: (no name) - http://gamercard.xbox.com/tristenkw5.card

--
End of file - 18699 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\AppleSoftwareUpdate.job
C:\WINDOWS\tasks\GoogleUpdateTaskUser.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-22 62080]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1017A80C-6F09-4548-A84D-EDD6AC9525F0}]
Lexmark Toolbar - C:\Program Files\Lexmark Toolbar\toolband.dll [2006-08-09 184320]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1392b8d2-5c05-419f-a8f6-b9f15a596612}]
Freecorder Toolbar - C:\Program Files\Freecorder\tbFre1.dll [2007-12-17 1502232]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - C:\Program Files\BitComet\tools\BitCometBHO_1.2.8.7.dll [2008-08-11 656696]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll [2008-08-30 455960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
C:\Program Files\Spybot - Search & Destroy\SDHelper.dll [2005-05-31 853672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}]
Yahoo! IE Services Button - C:\PROGRA~1\Yahoo!\common\yiesrvc.dll [2006-10-31 198136]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9030D464-4C02-4ABF-8ECC-5164760863C6}]
Windows Live Sign-in Helper - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2007-09-20 328752]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
Google Toolbar Helper - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2008-11-19 251504]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll [2008-11-22 657904]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}]
Google Dictionary Compression sdch - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll [2008-11-19 522224]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D}]
SidebarAutoLaunch Class - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll [2005-02-03 124032]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2005-08-01 342600]
{1392b8d2-5c05-419f-a8f6-b9f15a596612} - Freecorder Toolbar - C:\Program Files\Freecorder\tbFre1.dll [2007-12-17 1502232]
{1017A80C-6F09-4548-A84D-EDD6AC9525F0} - Lexmark Toolbar - C:\Program Files\Lexmark Toolbar\toolband.dll [2006-08-09 184320]
{2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google Toolbar - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll [2008-11-19 251504]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SoundMan"=C:\WINDOWS\SOUNDMAN.EXE [2004-04-28 66048]
"YBrowser"=C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe [2006-07-21 129536]
"Motive SmartBridge"=C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe [2003-12-10 380928]
"YOP"=C:\PROGRA~1\Yahoo!\YOP\yop.exe [2007-06-26 509224]
"ATICCC"=C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2006-01-02 45056]
"SmcService"=C:\PROGRA~1\Sygate\SPF\smc.exe [2004-10-15 2577632]
"WindowsUI"=C:\WINDOWS\WINDOWS\WindowsUI.exe []
"lxcymon.exe"=C:\Program Files\Lexmark 3400 Series\lxcymon.exe [2007-06-25 291504]
"EzPrint"=C:\Program Files\Lexmark 3400 Series\ezprint.exe [2007-06-25 82608]
"FaxCenterServer"=C:\Program Files\Lexmark Fax Solutions\fm3032.exe [2007-06-25 295600]
"LXCYCATS"=rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCYtime.dll []
"SearchSettings"=C:\Program Files\Search Settings\SearchSettings.exe []
"Sony Ericsson PC Suite"=C:\Program Files\Sony Ericsson\Mobile2\Application Launcher\Application Launcher.exe [2007-04-04 774144]
"Pepsi Volume Controller 3.0"=C:\Program Files\Zamaan's Software\Pepsi Volume Controller 3.0\pvc3.0.exe [2006-04-08 798720]
"Zune Launcher"=f:\Zune\ZuneLauncher.exe [2008-01-11 166304]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe [2008-01-11 39792]
"LogMeIn GUI"=C:\Program Files\LogMeIn\x86\LogMeInSystray.exe []
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]
"AVG8_TRAY"=C:\PROGRA~1\AVG\AVG8\avgtray.exe [2008-11-27 1261336]
"IMJPMIG8.1"=C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE [2005-02-16 208952]
"IMEKRMIG6.1"=C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE [2008-09-21 44032]
"MSPY2002"=C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe [2005-02-16 59392]
"PHIME2002ASync"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2005-02-16 455168]
"PHIME2002A"=C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE [2005-02-16 455168]
"KernelFaultCheck"=C:\WINDOWS\system32\dumprep 0 -k []
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2008-10-01 111936]
"QuickTime Task"=C:\Program Files\QuickTime\qttask.exe [2008-09-06 413696]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-11-20 290088]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Sonic RecordNow!"= []
"GoGoTray.exe"=C:\Program Files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe [2005-01-30 274432]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [2007-06-05 68856]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2005-02-16 15360]
"Aim6"= []
"RocketDock"=C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe [2007-03-18 630784]
"WindowsUI"=C:\WINDOWS\WINDOWS\WindowsUI.exe []
"SUPERAntiSpyware"=C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [2008-11-21 1805552]
"Veoh"=C:\Program Files\Veoh Networks\Veoh\VeohClient.exe [2008-08-28 3660848]
""= []
"BitTorrent DNA"=C:\Program Files\DNA\btdna.exe [2008-11-27 342336]
"Google Update"=C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2008-11-29 133104]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
Desktop Manager.lnk - F:\Program Files\DesktopMgr.exe
Microsoft Office.lnk - C:\Program Files\Microsoft Office\Office10\OSA.EXE
Run Nintendo Wi-Fi USB Connector Registration Tool.lnk - C:\Program Files\WiFiConnector\NintendoWFCReg.exe
SBC Self Support Tool.lnk - C:\Program Files\SBC Self Support Tool\bin\matcli.exe

C:\Documents and Settings\Administrator\Start Menu\Programs\Accessories\Startup
Cme.lnk - C:\Program Files\Change Mon Ecran\Change Mon Ecran.exe
MagicDisc.lnk - C:\Program Files\MagicDisc\MagicDisc.exe
RocketDock.lnk - C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
TransBar.lnk - C:\WINDOWS\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe
UberIcon.lnk - C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLS"="avgrsstx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\!SASWinLogon]
C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [2008-09-01 352256]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2006-05-03 61440]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxsrvc.dll [2005-06-21 348160]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LMIinit]
C:\WINDOWS\system32\LMIinit.dll [2007-11-15 87352]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\WgaLogon]
C:\WINDOWS\system32\WgaLogon.dll [2007-04-10 236928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"=C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [2008-06-13 77824]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"DisableCAD"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=36
"NoDriveAutoRun"=FFFFFFFF

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveAutoRun"=
"NoDriveTypeAutoRun"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\Program Files\BitComet\BitComet.exe"="C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client"
"C:\Program Files\Yahoo!\browser\ybrowser.exe"="C:\Program Files\Yahoo!\browser\ybrowser.exe:*:Enabled:Yahoo! Browser"
"C:\Program Files\LimeWire\LimeWire.exe"="C:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire"
"C:\WINDOWS\WINDOWS\WindowsUI.exe"="C:\WINDOWS\WINDOWS\WindowsUI.exe:*:Enabled:WindowsUI"
"C:\WINDOWS\system32\lxcycoms.exe"="C:\WINDOWS\system32\lxcycoms.exe:*:Enabled:Lexmark Communications System"
"C:\Program Files\Internet Explorer\iexplore.exe"="C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer"
"C:\Program Files\mIRC\mirc.exe"="C:\Program Files\mIRC\mirc.exe:*:Enabled:mIRC"
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe"="C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\Program Files\Windows Media Player\wmplayer.exe"="C:\Program Files\Windows Media Player\wmplayer.exe:*:Enabled:Windows Media Player"
"C:\Program Files\Common Files\AOL\Loader\aolload.exe"="C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"C:\Program Files\BYOND\bin\byond.exe"="C:\Program Files\BYOND\bin\byond.exe:*:Enabled:byond"
"C:\Soldat\Soldat.exe"="C:\Soldat\Soldat.exe:*:Enabled:Soldat"
"C:\Program Files\Trash\Trash.exe"="C:\Program Files\Trash\Trash.exe:*:Enabled:Trash"
"C:\Program Files\Real\RealPlayer\realplay.exe"="C:\Program Files\Real\RealPlayer\realplay.exe:*:Enabled:RealPlayer"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\Program Files\Easy File Sharing Web Server\fsws.exe"="C:\Program Files\Easy File Sharing Web Server\fsws.exe:*:Enabled:Easy File Sharing Web Server"
"C:\Program Files\Easy File Sharing FTP Server\fsfs.exe"="C:\Program Files\Easy File Sharing FTP Server\fsfs.exe:*:Enabled:Easy File Sharing FTP Server "
"C:\Program Files\AVG\AVG8\avgupd.exe"="C:\Program Files\AVG\AVG8\avgupd.exe:*:Enabled:avgupd.exe"
"C:\Program Files\AVG\AVG8\avgemc.exe"="C:\Program Files\AVG\AVG8\avgemc.exe:*:Enabled:avgemc.exe"
"C:\Program Files\Electronic Arts\EADM\Core.exe"="C:\Program Files\Electronic Arts\EADM\Core.exe:*:Enabled:EA Download Manager"
"C:\Ntreev\Grand Chase\main.exe"="C:\Ntreev\Grand Chase\main.exe:*:Enabled:GrandChase"
"C:\Program Files\LittleFighter2\LF2_v1.9c\lf2.exe"="C:\Program Files\LittleFighter2\LF2_v1.9c\lf2.exe:*:Enabled:lf2"
"C:\Program Files\MySpace\IM\MySpaceIM.exe"="C:\Program Files\MySpace\IM\MySpaceIM.exe:*:Enabled:MySpace Instant Messenger"
"C:\Program Files\Veoh Networks\Veoh\VeohClient.exe"="C:\Program Files\Veoh Networks\Veoh\VeohClient.exe:*:Enabled:Veoh Client"
"C:\Program Files\Winamp Remote\bin\OrbTray.exe"="C:\Program Files\Winamp Remote\bin\OrbTray.exe:*:Enabled:Orb"
"C:\Program Files\Winamp Remote\bin\Orb.exe"="C:\Program Files\Winamp Remote\bin\Orb.exe:*:Enabled:Orb Application"
"C:\AeriaGames\12Sky\TwelveSky.exe"="C:\AeriaGames\12Sky\TwelveSky.exe:*:Enabled:TwelveSky"
"C:\Program Files\Xfire\xfire.exe"="C:\Program Files\Xfire\xfire.exe:*:Enabled:Xfire"
"C:\ijji\ENGLISH\u_gunz.exe"="C:\ijji\ENGLISH\u_gunz.exe:*:Enabled:<ijji Downloader>"
"C:\Program Files\WiFiConnector\NintendoWFCReg.exe"="C:\Program Files\WiFiConnector\NintendoWFCReg.exe:*:Enabled:Nintendo Wi-Fi USB Connector"
"C:\Program Files\Yahoo!\Messenger\YServer.exe"="C:\Program Files\Yahoo!\Messenger\YServer.exe:*:Enabled:Yahoo! FT Server"
"C:\Program Files\Gpotato\TalesRunner\trgame.exe"="C:\Program Files\Gpotato\TalesRunner\trgame.exe:*:Enabled:TalesRunner"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\DNA\btdna.exe"="C:\Program Files\DNA\btdna.exe:*:Enabled:DNA"
"C:\Program Files\BitTorrent\bittorrent.exe"="C:\Program Files\BitTorrent\bittorrent.exe:*:Enabled:BitTorrent"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Windows Live\Messenger\msnmsgr.exe"="C:\Program Files\Windows Live\Messenger\msnmsgr.exe:*:Enabled:Windows Live Messenger"
"C:\Program Files\Windows Live\Messenger\livecall.exe"="C:\Program Files\Windows Live\Messenger\livecall.exe:*:Enabled:Windows Live Messenger (Phone)"
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2c5cf505-36e2-11dd-9c4a-00160176741d}]
shell\AutoRun\command - G:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9e4de814-dd88-11dc-9c24-00402b27ca99}]
shell\AutoRun\command - G:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c85a35df-b961-11dc-9c07-00402b27ca99}]
shell\AutoRun\command - G:\wd_windows_tools\setup.exe


======List of files/folders created in the last 1 months======

2008-12-07 23:11:49 ----D---- C:\rsit
2008-12-07 20:22:38 ----D---- C:\Program Files\MagicISO
2008-12-07 19:33:29 ----D---- C:\WINDOWS\LastGood
2008-12-07 15:21:50 ----D---- C:\Program Files\iPod
2008-12-07 15:21:24 ----D---- C:\Documents and Settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-11-29 12:09:02 ----D---- C:\Program Files\Player Update
2008-11-29 12:07:43 ----D---- C:\Documents and Settings\Administrator\Application Data\InstallShield
2008-11-27 00:28:41 ----D---- C:\Documents and Settings\Administrator\Application Data\BitTorrent
2008-11-27 00:20:38 ----D---- C:\Program Files\DNA
2008-11-27 00:20:38 ----D---- C:\Documents and Settings\Administrator\Application Data\DNA
2008-11-27 00:20:37 ----D---- C:\Program Files\BitTorrent
2008-11-12 15:55:05 ----HDC---- C:\WINDOWS\$NtUninstallKB957097$
2008-11-12 15:54:11 ----HDC---- C:\WINDOWS\$NtUninstallKB955069$
2008-11-11 20:32:47 ----D---- C:\Program Files\Bonjour
2008-11-11 20:28:51 ----D---- C:\Program Files\QuickTime

======List of files/folders modified in the last 1 months======

2008-12-07 23:12:21 ----D---- C:\WINDOWS\TEMP
2008-12-07 22:03:16 ----D---- C:\Documents and Settings\Administrator\Application Data\Adobe
2008-12-07 19:33:50 ----RSHDC---- C:\WINDOWS\system32\dllcache
2008-12-07 19:33:29 ----D---- C:\WINDOWS
2008-12-07 19:26:51 ----D---- C:\WINDOWS\system32\CatRoot2
2008-12-07 18:55:37 ----D---- C:\Program Files\LimeWire
2008-12-07 18:55:10 ----D---- C:\Documents and Settings\Administrator\Application Data\LimeWire
2008-12-07 15:22:28 ----D---- C:\Program Files\iTunes
2008-12-07 15:02:18 ----D---- C:\Program Files\Mozilla Firefox
2008-12-07 13:12:28 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-12-04 23:57:27 ----D---- C:\Program Files\lx_cats
2008-11-29 13:40:14 ----SD---- C:\WINDOWS\Tasks
2008-11-29 12:42:16 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2008-11-29 12:09:00 ----HD---- C:\Program Files\InstallShield Installation Information
2008-11-27 00:34:57 ----D---- C:\Program Files\BitComet
2008-11-26 19:03:14 ----D---- C:\WINDOWS\Help
2008-11-21 19:29:00 ----D---- C:\Program Files\SUPERAntiSpyware
2008-11-15 11:17:57 ----D---- C:\Documents and Settings\All Users\Application Data\avg8
2008-11-12 18:23:01 ----D---- C:\Program Files\Change Mon Ecran
2008-11-12 17:27:50 ----D---- C:\WINDOWS\Prefetch
2008-11-12 15:54:58 ----HD---- C:\WINDOWS\$hf_mig$
2008-11-12 15:54:50 ----A---- C:\WINDOWS\imsins.BAK
2008-11-11 20:41:13 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-11-11 20:29:16 ----D---- C:\Program Files\Common Files\Apple
2008-11-09 21:12:41 ----SHD---- C:\WINDOWS\CSC

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 AvgLdx86;AVG AVI Loader Driver x86; C:\WINDOWS\System32\Drivers\avgldx86.sys [2008-08-30 97928]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86; C:\WINDOWS\System32\Drivers\avgmfx86.sys [2008-07-05 26824]
R1 prodrv06;StarForce Protection Environment Driver v6; C:\WINDOWS\System32\drivers\prodrv06.sys [2003-10-10 52128]
R1 SASDIFSV;SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS []
R1 SASKUTIL;SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.sys []
R1 StarOpen;StarOpen; C:\WINDOWS\system32\drivers\StarOpen.sys [2006-07-24 5632]
R1 wpsdrvnt;wpsdrvnt; \??\C:\WINDOWS\system32\drivers\wpsdrvnt.sys []
R2 AvgTdiX;AVG8 Network Redirector; C:\WINDOWS\System32\Drivers\avgtdix.sys [2008-07-05 76040]
R2 wg3n;SyGate for NT, wg3n; C:\WINDOWS\SYSTEM32\Drivers\wg3n.sys [2004-10-15 14568]
R2 wg4n;SyGate for NT, wg4n; C:\WINDOWS\SYSTEM32\Drivers\wg4n.sys [2004-10-15 14568]
R2 wg5n;SyGate for NT, wg5n; C:\WINDOWS\SYSTEM32\Drivers\wg5n.sys [2004-10-15 14568]
R2 wg6n;SyGate for NT, wg6n; C:\WINDOWS\SYSTEM32\Drivers\wg6n.sys [2004-10-15 14568]
R2 zumbus;Zune Bus Enumerator Driver; C:\WINDOWS\system32\DRIVERS\zumbus.sys [2008-01-11 40832]
R3 ALCXSENS;Service for WDM 3D Audio Driver; C:\WINDOWS\system32\drivers\ALCXSENS.SYS [2004-02-24 400384]
R3 ALCXWDM;Service for Realtek AC97 Audio (WDM); C:\WINDOWS\system32\drivers\ALCXWDM.SYS [2004-04-28 616124]
R3 ati2mtag;ati2mtag; C:\WINDOWS\system32\DRIVERS\ati2mtag.sys [2006-05-03 1540608]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\System32\Drivers\GEARAspiWDM.sys [2008-04-17 15464]
R3 ialm;ialm; C:\WINDOWS\system32\DRIVERS\ialmnt5.sys [2005-06-21 807998]
R3 ltmodem5;LT Modem Driver; C:\WINDOWS\system32\DRIVERS\ltmdmnt.sys [2003-03-31 625537]
R3 mcdbus;Driver for MagicISO SCSI Host Controller; C:\WINDOWS\system32\DRIVERS\mcdbus.sys [2008-07-28 116736]
R3 RimVSerPort;RIM Virtual Serial Port v2; C:\WINDOWS\system32\DRIVERS\RimSerial.sys [2006-06-30 26752]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\WINDOWS\System32\Drivers\RootMdm.sys [2005-02-16 5888]
R3 rtl8139;Realtek RTL8139(A/B/C)-based PCI Fast Ethernet Adapter NT Driver; C:\WINDOWS\system32\DRIVERS\RTL8139.SYS [2004-08-03 20992]
R3 SASENUM;SASENUM; \??\C:\Program Files\SUPERAntiSpyware\SASENUM.SYS []
R3 usbehci;Microsoft USB 2.0 Enhanced Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbehci.sys [2005-02-16 26624]
R3 usbhub;Microsoft USB Standard Hub Driver; C:\WINDOWS\system32\DRIVERS\usbhub.sys [2005-02-16 57600]
R3 usbuhci;Microsoft USB Universal Host Controller Miniport Driver; C:\WINDOWS\system32\DRIVERS\usbuhci.sys [2005-02-16 20480]
R3 Wdf01000;Wdf01000; C:\WINDOWS\system32\DRIVERS\Wdf01000.sys [2006-11-02 492000]
R3 WpdUsb;WpdUsb; C:\WINDOWS\system32\DRIVERS\wpdusb.sys [2006-10-18 38528]
R3 WudfRd;Windows Driver Foundation - User-mode Driver Framework Reflector; C:\WINDOWS\system32\DRIVERS\wudfrd.sys [2006-09-28 82944]
S3 Bridge;MAC Bridge; C:\WINDOWS\system32\DRIVERS\bridge.sys [2005-02-16 71552]
S3 BridgeMP;MAC Bridge Miniport; C:\WINDOWS\system32\DRIVERS\bridge.sys [2005-02-16 71552]
S3 catchme;catchme; \??\C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\catchme.sys []
S3 EagleNT;EagleNT; \??\C:\WINDOWS\system32\drivers\EagleNT.sys []
S3 ggflt;SEMC USB Flash Driver Filter; C:\WINDOWS\system32\DRIVERS\ggflt.sys [2008-01-06 13352]
S3 ggsemc;SEMC USB Flash Driver; C:\WINDOWS\system32\DRIVERS\ggsemc.sys [2008-01-06 20520]
S3 hamachi;Hamachi Network Interface; C:\WINDOWS\system32\DRIVERS\hamachi.sys [2006-11-25 15440]
S3 HidUsb;Microsoft HID Class Driver; C:\WINDOWS\system32\DRIVERS\hidusb.sys [2001-08-17 9600]
S3 RimUsb;BlackBerry Device; C:\WINDOWS\System32\Drivers\RimUsb.sys [2006-07-13 22528]
S3 RT25USBAP;Nintendo Wi-Fi USB Connector Service; C:\WINDOWS\system32\DRIVERS\rt25usbap.sys [2006-04-09 162816]
S3 StMp3Rec;Player Recovery Device Control Driver; C:\WINDOWS\System32\Drivers\StMp3Rec.sys [2007-02-23 19840]
S3 USBAAPL;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl.sys [2008-07-10 32000]
S3 usbaudio;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2004-08-03 59264]
S3 usbccgp;Microsoft USB Generic Parent Driver; C:\WINDOWS\system32\DRIVERS\usbccgp.sys [2004-08-03 31616]
S3 usbprint;Microsoft USB PRINTER Class; C:\WINDOWS\system32\DRIVERS\usbprint.sys [2004-08-03 25856]
S3 usbscan;USB Scanner Driver; C:\WINDOWS\system32\DRIVERS\usbscan.sys [2004-08-03 15104]
S3 USBSTOR;USB Mass Storage Driver; C:\WINDOWS\system32\DRIVERS\USBSTOR.SYS [2004-08-03 26496]
S3 w200bus;Sony Ericsson W200 driver (WDM); C:\WINDOWS\system32\DRIVERS\w200bus.sys [2006-11-07 61504]
S3 w200mdfl;Sony Ericsson W200 USB WMC Modem Filter; C:\WINDOWS\system32\DRIVERS\w200mdfl.sys [2006-11-07 9328]
S3 w200mdm;Sony Ericsson W200 USB WMC Modem Driver; C:\WINDOWS\system32\DRIVERS\w200mdm.sys [2006-11-07 97056]
S3 w200mgmt;Sony Ericsson W200 USB WMC Device Management Drivers (WDM); C:\WINDOWS\system32\DRIVERS\w200mgmt.sys [2006-11-07 88560]
S3 w200obex;Sony Ericsson W200 USB WMC OBEX Interface; C:\WINDOWS\system32\DRIVERS\w200obex.sys [2006-11-07 86368]
S3 XTrapD12;XTrapD12; \??\C:\WINDOWS\system32\XTrapD12.sys []
S3 xusb20;Xbox 360 Wireless Receiver for Windows Driver Service; C:\WINDOWS\system32\DRIVERS\xusb20.sys [2006-10-13 50048]
S4 vsdatant;vsdatant; C:\WINDOWS\system32\drivers\vsdatant.sys []
S4 WS2IFSL;Windows Socket 2.0 Non-IFS Service Provider Support Environment; C:\WINDOWS\System32\drivers\ws2ifsl.sys [2005-02-16 12032]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-11-07 132424]
R2 Ati HotKey Poller;Ati HotKey Poller; C:\WINDOWS\system32\Ati2evxx.exe [2006-05-03 413696]
R2 avg8emc;AVG8 E-mail Scanner; C:\PROGRA~1\AVG\AVG8\avgemc.exe [2008-08-30 875288]
R2 avg8wd;AVG8 WatchDog; C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe [2008-08-30 231704]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2008-08-29 238888]
R2 lxcy_device;lxcy_device; C:\WINDOWS\system32\lxcycoms.exe [2007-06-20 537264]
R2 MDM;Machine Debug Manager; C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe [2003-06-20 322120]
R2 Viewpoint Manager Service;Viewpoint Manager Service; C:\Program Files\Viewpoint\Common\ViewpointService.exe [2007-01-04 24652]
R2 WudfSvc;Windows Driver Foundation - User-mode Driver Framework; C:\WINDOWS\system32\svchost.exe [2005-02-16 14336]
R2 ZuneBusEnum;Zune Bus Enumerator; C:\WINDOWS\system32\ZuneBusEnum.exe [2008-01-11 61856]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-11-20 536872]
R3 usnjsvc;Messenger Sharing Folders USN Journal Reader service; C:\Program Files\Windows Live\Messenger\usnsvc.exe [2007-10-18 98328]
S2 ATI Smart;ATI Smart; C:\WINDOWS\system32\ati2sgag.exe [2006-05-03 520192]
S2 SmcService;Sygate Personal Firewall; C:\Program Files\Sygate\SPF\smc.exe [2004-10-15 2577632]
S3 aspnet_state;ASP.NET State Service; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [2007-10-24 33800]
S3 clr_optimization_v2.0.50727_32;.NET Runtime Optimization Service v2.0.50727_X86; C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe [2007-10-24 70144]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2006-12-07 654848]
S3 FontCache3.0.0.0;Windows Presentation Foundation Font Cache 3.0.0.0; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2007-10-09 36864]
S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-11-22 137200]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-03 69632]
S3 idsvc;Windows CardSpace; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe [2007-10-11 864256]
S3 usprserv;User Privilege Service; C:\WINDOWS\System32\svchost.exe [2005-02-16 14336]
S3 WLSetupSvc;Windows Live Setup Service; C:\Program Files\Windows Live\installer\WLSetupSvc.exe [2007-10-25 266240]
S3 WMPNetworkSvc;Windows Media Player Network Sharing Service; C:\Program Files\Windows Media Player\WMPNetwk.exe [2006-10-18 913408]
S3 ZuneNetworkSvc;Zune Network Sharing Service; f:\Zune\ZuneNss.exe [2008-01-11 2138528]
S3 ZuneWlanCfgSvc;Zune Wireless Configuration Service; C:\WINDOWS\system32\ZuneWlanCfgSvc.exe [2008-01-11 245664]
S4 NetTcpPortSharing;Net.Tcp Port Sharing Service; C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe [2007-10-11 122880]

-----------------EOF-----------------










info.txt logfile of random's system information tool 1.04 2008-12-07 23:12:42

======Uninstall list======

-->"C:\Program Files\BZEdit1.6.5\uninstall.exe"
-->C:\PROGRA~1\SBCSEL~1\CustomUninstall.exe SBC
-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
-->C:\WINDOWS\system32\\MSIEXEC.EXE /I {09DA4F91-2A09-4232-AB8C-6BC740096DE3} REMOVE=UpdateMgrFeature
-->C:\WINDOWS\system32\\MSIEXEC.EXE /x {9541FED0-327F-4df0-8B96-EF57EF622F19}
-->MsiExec /X{E2BE1618-AF5F-4F7D-8484-42E080EDF609}
-->MsiExec.exe /X{69495273-FCDC-4A86-BCB7-49B504D3FB0E}
-->rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
ABBYY FineReader 6.0 Sprint-->MsiExec.exe /X{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}
Ad-Aware SE Personal-->C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.EXE C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
Adobe Acrobat and Reader 8.1.2 Security Update 1 (KB403742)-->MsiExec.exe /X{6846389C-BAC0-4374-808E-B120F86AF5D7}
Adobe Anchor Service CS3-->MsiExec.exe /I{90176341-0A8B-4CCC-A78D-F862228A6B95}
Adobe Asset Services CS3-->MsiExec.exe /I{6FF5DD7A-FE28-4439-B8CF-1E9AF4EA0A61}
Adobe Bridge CS3-->MsiExec.exe /I{9C9824D9-9000-4373-A6A5-D0E5D4831394}
Adobe Bridge Start Meeting-->MsiExec.exe /I{08B32819-6EEF-4057-AEDA-5AB681A36A23}
Adobe Camera Raw 4.0-->MsiExec.exe /I{B3BF6689-A81D-40D8-9A86-4AC4ACD9FC1C}
Adobe CMaps-->MsiExec.exe /I{A2B242BD-FF8D-4840-9DAA-9170EABEC59C}
Adobe Color Common Settings-->MsiExec.exe /I{DADD7B8A-BCB0-44F5-967A-ECB6B4F2ECD9}
Adobe Default Language CS3-->MsiExec.exe /I{B9B35331-B7E4-4E5C-BF4C-7BC87856124D}
Adobe Device Central CS3-->MsiExec.exe /I{8D2BA474-F406-4710-9AE4-D4F22D21F0DD}
Adobe ExtendScript Toolkit 2-->MsiExec.exe /I{C2D69781-F392-4118-A5A7-C7E9C38DBFC2}
Adobe Flash Player 10 ActiveX-->C:\WINDOWS\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Fonts All-->MsiExec.exe /I{6ABE0BEE-D572-4FE8-B434-9E72A289431B}
Adobe Help Viewer CS3-->MsiExec.exe /I{04AF207D-9A77-465A-8B76-991F6AB66245}
Adobe Linguistics CS3-->MsiExec.exe /I{54793AA1-5001-42F4-ABB6-C364617C6078}
Adobe PDF Library Files-->MsiExec.exe /I{D2559B88-CC9D-4B48-81BB-F492BAA9C48C}
Adobe Premiere Pro CS3 Functional Content-->MsiExec.exe /I{50F102CA-4BE2-41A9-9810-5BB05EB91B9A}
Adobe Premiere Pro CS3-->C:\Program Files\Common Files\Adobe\Installers\32fdd767b4383606e8168e834af5d90\Setup.exe
Adobe Premiere Pro CS3-->MsiExec.exe /I{58DCEEE5-532E-44F4-B1D7-A146EF9E9FDA}
Adobe Reader 8.1.2-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A81200000003}
Adobe Setup-->MsiExec.exe /I{BB81360F-041C-4CF7-B15E-71380D154244}
Adobe Shockwave Player-->C:\WINDOWS\system32\Adobe\SHOCKW~1\UNWISE.EXE C:\WINDOWS\system32\Adobe\SHOCKW~1\Install.log
Adobe Type Support-->MsiExec.exe /I{8E6808E2-613D-4FCD-81A2-6C8FA8E03312}
Adobe Update Manager CS3-->MsiExec.exe /I{E69AE897-9E0B-485C-8552-7841F48D42D8}
Adobe Version Cue CS3 Client-->MsiExec.exe /I{D0DFF92A-492E-4C40-B862-A74A173C25C5}
Adobe XMP DVA Panels CS3-->MsiExec.exe /I{0224CACC-994D-45F8-B973-D65056EA9C2F}
Adobe XMP Panels CS3-->MsiExec.exe /I{D5A31AB1-345D-47C7-A87B-036A669F6DF1}
AGEIA PhysX v7.01.12-->MsiExec.exe /X{E2BE1618-AF5F-4F7D-8484-42E080EDF609}
AIM 6-->C:\Program Files\AIM6\uninst.exe
AOL Instant Messenger-->C:\Program Files\AIM\uninstll.exe -LOG= C:\Program Files\AIM\install.log -OEM=
Apple Mobile Device Support-->MsiExec.exe /I{EC4455AB-F155-4CC1-A4C5-88F3777F9886}
Apple Software Update-->MsiExec.exe /I{6956856F-B6B3-4BE0-BA0B-8F495BE32033}
Armagetron Advanced 0.2.8.2.1.gcc-->C:\Documents and Settings\Administrator\Desktop\EMUS\Games\Tron\Armagetron Advanced\uninst.exe
AT&T Yahoo! Applications-->C:\PROGRA~1\Yahoo!\common\uninstall.exe
ATI - Software Uninstall Utility-->C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center-->MsiExec.exe /I{EA9FAF16-0E5C-42C4-9742-9AF8D5F6D69B}
ATI Display Driver-->rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
Audiosurf Beta-->"C:\Program Files\Audiosurf\unins000.exe"
AVG Free 8.0-->C:\Program Files\AVG\AVG8\setup.exe /UNINSTALL
BitComet 0.67-->C:\Program Files\BitComet\uninst.exe
BlackBerry Desktop Software 4.2-->MsiExec.exe /I{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}
BlackBerry Desktop Software 4.2-->MsiExec.exe /i{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}
Bonjour-->MsiExec.exe /I{8A25392D-C5D2-4E79-A2BD-C15DDC5B0959}
BroadJump Client Foundation-->C:\WINDOWS\IsUninst.exe -f"C:\Program Files\BroadJump\Client Foundation\Uninst.isu" -c"C:\Program Files\BroadJump\Client Foundation\RmvBJCFD.dll" -b"CFD" -h"CFD" -a
Build Your Own Net Dream (remove only)-->C:\Program Files\BYOND\Uninst.exe
CCleaner (remove only)-->"C:\Documents and Settings\ADMINI~1\Desktop\EMUS\Spyware and virus downloads\CCleaner\uninst.exe"
CDisplay 1.8-->"C:\Program Files\CDisplay\unins000.exe"
Change Mon Ecran V2.0-->C:\Program Files\Change Mon Ecran\Cme-Desinstallation.exe
CleanUp!-->C:\Program Files\CleanUp!\uninstall.exe
Combined Community Codec Pack 2008-01-24-->"C:\Program Files\Combined Community Codec Pack\unins000.exe"
Corona Visualization Plug-in for WMP-->MsiExec.exe /I{6C3CE73B-E7B8-4979-8740-1476C5CBDEBA}
coverimage1024 Wallpaper-->C:\WINDOWS\WEB\Wallpaper\coverimage1024 dir\uninstall.exe
DAEMON Tools-->MsiExec.exe /I{3DED3A72-61A8-4B87-98A5-EF0BC8038AA0}
dBpoweramp Monkeys Audio Codec-->"C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-dBpoweramp Monkeys Audio Codec.dat
dBpowerAMP WMA V9.1 Codec-->"C:\WINDOWS\system32\SpoonUninstall.exe" <uninstall>C:\WINDOWS\system32\SpoonUninstall-dBpowerAMP WMA V9.1 Codec.dat
DeepBurner v1.8.0.224-->"C:\Program Files\Astonsoft\DeepBurner\Uninstall.exe" "C:\Program Files\Astonsoft\DeepBurner\install.log"
Disc2Phone-->MsiExec.exe /I{FFAB5ABB-8AAB-42E2-847F-1743E51E01E9}
Disc2Phone-->MsiExec.exe /X{C01408FC-117C-44B7-8B0C-17794E526A01}
DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Easy File Sharing FTP Server 3.2-->"C:\Program Files\Easy File Sharing FTP Server\unins000.exe"
Easy File Sharing Web Server 4.6-->"C:\Program Files\Easy File Sharing Web Server\unins000.exe"
Fiddler2 (remove only)-->"C:\Program Files\Fiddler2\uninst.exe"
Fighter Factory 1.0.12.2005 (Update Pack 3)-->"C:\Documents and Settings\Administrator\Desktop\EMUS\Games\Mugen\index\Mugen+MT3(KiKi)\work\Tools\Fighter Factory\unins000.exe"
FLV Player-->"C:\WINDOWS\FLV Player\uninstall.exe" "/U:C:\Program Files\FLV Player\Uninstall\uninstall.xml"
FoxyTunes for Firefox-->"C:\Program Files\Mozilla Firefox\firefox.exe" -chrome chrome://foxytunes/content/extras/uninstallExtension.xul
Free Ipod Video Converter V 2.4-->"C:\Program Files\BitComet\Downloads\Ipod Video Converter\unins000.exe"
Free Video to iPod Converter version 2.4-->"C:\Program Files\BitComet\Downloads\Free Video to iPod Converter\unins000.exe"
Freecorder Toolbar 3.0 Application-->"C:\WINDOWS\Freecorder Toolbar\uninstall.exe" "/U:C:\Program Files\Freecorder Toolbar\Uninstall\uninstall.xml"
Freecorder Toolbar-->C:\PROGRA~1\FREECO~2\UNWISE.EXE C:\PROGRA~1\FREECO~2\INSTALL.LOG
GameSpot Download Manager-->"C:\Program Files\GameSpot\uninstall.exe"
getPlus®_ocx-->rundll32.exe advpack.dll,LaunchINFSection C:\WINDOWS\inf\GETPLUSo.INF, DefaultUninstall
GIMP 2.4.6-->"C:\Program Files\GIMP-2.0\setup\unins000.exe"
GoGoData Toolbar 3.0.1-->C:\PROGRA~1\GoGoData.com\GOGODA~1\Setup.exe /remove
Google Toolbar for Internet Explorer-->"C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarManager_11CB06797F2F038A.exe" /uninstall
Google Toolbar for Internet Explorer-->MsiExec.exe /I{18455581-E099-4BA8-BC6B-F34B2F06600C}
GTK+ 2.8.18-1 runtime environment-->"C:\Program Files\Common Files\GTK\2.0\unins000.exe"
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
Hotfix for Windows Media Format 11 SDK (KB929399)-->"C:\WINDOWS\$NtUninstallKB929399$\spuninst\spuninst.exe"
Hotfix for Windows Media Player 11 (KB939683)-->"C:\WINDOWS\$NtUninstallKB939683$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB914440)-->"C:\WINDOWS\$NtUninstallKB914440$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB915865)-->"C:\WINDOWS\$NtUninstallKB915865$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB926239)-->"C:\WINDOWS\$NtUninstallKB926239$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB932716-v2)-->"C:\WINDOWS\$NtUninstallKB932716-v2$\spuninst\spuninst.exe"
Hotfix for Windows XP (KB952287)-->"C:\WINDOWS\$NtUninstallKB952287$\spuninst\spuninst.exe"
hp deskjet 3320 series (Remove only)-->C:\Program Files\hp deskjet 3320 series\hpfiui.exe -c -vdivid=HPF -vpnum=95 -vinstport=USB001 -vproduct=3320 -huninstall
iDump (Backing up your iPod)-->C:\Program Files\iDump\uninstall.exe
IGN Download Manager 2.3.2-->C:\Program Files\IGN\Download Manager\uninst.exe
ijji - Gunz-->C:\ijji\ENGLISH\Gunz\Uninstall.exe
ijji Auto Installer-->"C:\Program Files\InstallShield Installation Information\{1DCC7418-2089-4BDD-B321-3771956160FC}\setup.exe" -runfromtemp -l0x0009 -removeonly
Intel® Extreme Graphics Driver-->RUNDLL32.EXE C:\WINDOWS\system32\ialmrem.dll,UninstallW2KIGfx PCI\VEN_8086&DEV_2562
Internet ScreenSaver Builder-->"C:\Program Files\XemiComputers\Internet ScreenSaver Builder\unins000.exe"
iTunes-->MsiExec.exe /I{318AB667-3230-41B5-A617-CB3BF748D371}
Java™ 6 Update 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160060}
Java™ 6 Update 7-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160070}
Kaspersky Online Scanner-->C:\WINDOWS\system32\Kaspersky Lab\Kaspersky Online Scanner\kavuninstall.exe
Lernout & Hauspie TruVoice American English TTS Engine-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\tv_enua.inf, Uninstall
Lexmark 3400 Series-->C:\Program Files\Lexmark 3400 Series\Install\x86\Uninst.exe
Lexmark Fax Solutions-->C:\Program Files\Lexmark Fax Solutions\Install\x86\Uninst.exe /R:faxunst
Lexmark Toolbar-->regsvr32.exe /s /u "C:\Program Files\Lexmark Toolbar\toolband.dll"
LimeWire 4.18.8-->"C:\Program Files\LimeWire\uninstall.exe"
Little Fighter 2 1.9c-->C:\Program Files\LittleFighter2\LF2_v1.9c\uninst.exe
Magic ISO Maker v5.5 (build 0273)-->C:\PROGRA~1\MagicISO\UNWISE.EXE C:\PROGRA~1\MagicISO\INSTALL.LOG
MagicDisc 2.7.105-->C:\PROGRA~1\MAGICD~1\UNWISE.EXE C:\PROGRA~1\MAGICD~1\INSTALL.LOG
MAGIX Ringtone Maker 2 silver (US)-->F:\MAGIX\Ringtone_Maker_2_silver\instslct.exe
MAME32k (remove only)-->"C:\Documents and Settings\Administrator\Desktop\EMUS\MAME\Online\MAME32k\uninst.exe"
Microsoft .NET Framework 1.1 Hotfix (KB928366)-->"C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\hotfix.exe" "C:\WINDOWS\Microsoft.NET\Framework\v1.1.4322\Updates\M928366\M928366Uninstall.msp"
Microsoft .NET Framework 1.1-->msiexec.exe /X {CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 1.1-->MsiExec.exe /X{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}
Microsoft .NET Framework 2.0 Service Pack 1-->MsiExec.exe /I{B508B3F1-A24A-32C0-B310-85786919EF28}
Microsoft .NET Framework 3.0 Service Pack 1-->MsiExec.exe /I{2BA00471-0328-3743-93BD-FA813353A783}
Microsoft AppLocale-->MsiExec.exe /I{394BE3D9-7F57-4638-A8D1-1D88671913B7}
Microsoft Compression Client Pack 1.0 for Windows XP-->"C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Internationalized Domain Names Mitigation APIs-->"C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.1-->"C:\WINDOWS\$NtUninstallWdf01001$\spuninst\spuninst.exe"
Microsoft Kernel-Mode Driver Framework Feature Pack 1.5-->"C:\WINDOWS\$NtUninstallWdf01005$\spuninst\spuninst.exe"
Microsoft National Language Support Downlevel APIs-->"C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe"
Microsoft Office XP Professional with FrontPage-->MsiExec.exe /I{90280409-6000-11D3-8CFE-0050048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0-->"C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{7299052b-02a4-4627-81f2-1818da5d550d}
Microsoft Windows Application Compatibility Database-->C:\WINDOWS\system32\sdbinst.exe -u "C:\WINDOWS\AppPatch\Custom\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb"
Microsoft Windows Script 5.7-->"C:\WINDOWS\$NtUninstallscripten$\spuninst\spuninst.exe"
mIRC-->"C:\Program Files\mIRC\mirc.exe" -uninstall
MOBILedit! 2.3-->RunDll32 C:\PROGRA~1\MOBILE~1\Setup\Setup.dll,RemoveOnly
MobileMe Control Panel-->MsiExec.exe /I{924EB80F-C2BB-4B9F-8412-88BBA937393F}
MOSWorkshop-->C:\WINDOWS\uninst.exe -f"c:\documents and settings\administrator\desktop\emus\games\mugen\index\mugen+mt3(kiki)\work\tools\mosw1007\DeIsL1.isu" -c"c:\documents and settings\administrator\desktop\emus\games\mugen\index\mugen+mt3(kiki)\work\tools\mosw1007\_ISREG32.DLL"
Mozilla Firefox (2.0.0.18)-->C:\Program Files\Mozilla Firefox\uninstall\helper.exe
MP3 To Ringtone Gold 3.17-->"F:\AnMing\unins000.exe"
MSN Gaming Zone-->C:\PROGRA~1\MSNGAM~1\zsetup.exe /Uninstall
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
MSXML 4.0 SP2 Parser and SDK-->MsiExec.exe /I{716E0306-8318-4364-8B8F-0CC4E9376BAC}
MSXML 6 Service Pack 2 (KB954459)-->MsiExec.exe /I{1A528690-6A2D-4BC5-B143-8C4AE8D19D96}
MySpaceIM-->C:\Program Files\MySpace\IM\Uninstall.exe
Nintendo Wi-Fi USB Connector Registration Tool-->C:\Program Files\WiFiConnector\SoftAPUninst.exe
Norton Security Scan-->MsiExec.exe /I{48B82226-75E3-4E90-92CC-D30F79EA6380}
Pack Vista Inspirat 2 1.0-->C:\WINDOWS\BricoPacks\Vista Inspirat 2\Remove.exe
Panda ActiveScan-->C:\WINDOWS\system32\ASUninst.exe Panda ActiveScan
PC Sleep 2.1-->MsiExec.exe /I{FBAFC5DB-5511-4150-91EC-995E9BB2D099}
Pepsi Volume Controller 3.0-->"C:\Program Files\Zamaan's Software\Pepsi Volume Controller 3.0\unins000.exe"
PhanTim3-->"C:\Program Files\PhanTim3\Uninstall.exe"
Pivot Stickfigure Animator-->MsiExec.exe /I{BEAD39CD-901D-4267-8B8B-EAA83CB4B70D}
Player Update-->C:\Program Files\InstallShield Installation Information\{B326C34D-C120-4199-B1FD-10EFD5614059}\setup.exe -runfromtemp -l0x0009 -removeonly
Project64 1.6-->MsiExec.exe /X{9559F7CA-5E34-4237-A2D9-D856464AD727}
QuickTime-->MsiExec.exe /I{8DC42D05-680B-41B0-8878-6C14D24602DB}
RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Realtek AC'97 Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE
RM Converter 4.12-->"C:\Program Files\RM Converter\unins000.exe"
RPG Maker 2000 - Super Columbine Massacre RPG!-->C:\WINDOWS\gamedelete.exe "C:\Documents and Settings\Administrator\Desktop\EMUS\Games\ColumbineRPG\ColumbineRPG\RPG_RT.ind"
Safari-->MsiExec.exe /I{C9D96682-5A4D-45FA-BA3E-DDCB2B0CB868}
SAMSUNG CDMA Modem Driver Set-->C:\WINDOWS\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
SAMSUNG Mobile Composite Device Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\6\SSBCUninstall.exe
Samsung Mobile phone USB driver Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\5\SSSDUninstall.exe
SAMSUNG Mobile USB Modem 1.0 Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
SAMSUNG Mobile USB Modem Software-->C:\WINDOWS\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
SBC Self Support Tool-->C:\WINDOWS\Motive\SBC\MCCUninst.exe
Screensaver_Game_1024x768-->C:\WINDOWS\system32\Screensaver_Game_1024x768.scr /u
Search Settings-->MsiExec.exe /X{90529245-9C54-45B5-BBB3-B180CA04F248}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /I{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for CAPICOM (KB931906)-->MsiExec.exe /X{0EFDF2F9-836D-4EB7-A32D-038BD3F1FB2A}
Security Update for Windows Media Player (KB911564)-->"C:\WINDOWS\$NtUninstallKB911564$\spuninst\spuninst.exe"
Security Update for Windows Media Player 10 (KB911565)-->"C:\WINDOWS\$NtUninstallKB911565$\spuninst\spuninst.exe"
Security Update for Windows Media Player 10 (KB917734)-->"C:\WINDOWS\$NtUninstallKB917734_WMP10$\spuninst\spuninst.exe"
Security Update for Windows Media Player 10 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP10$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB936782)-->"C:\WINDOWS\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe"
Security Update for Windows Media Player 11 (KB954154)-->"C:\WINDOWS\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe"
Security Update for Windows Media Player 6.4 (KB925398)-->"C:\WINDOWS\$NtUninstallKB925398_WMP64$\spuninst\spuninst.exe"
Security Update for Windows XP (KB890046)-->"C:\WINDOWS\$NtUninstallKB890046$\spuninst\spuninst.exe"
Security Update for Windows XP (KB893756)-->"C:\WINDOWS\$NtUninstallKB893756$\spuninst\spuninst.exe"
Security Update for Windows XP (KB896358)-->"C:\WINDOWS\$NtUninstallKB896358$\spuninst\spuninst.exe"
Security Update for Windows XP (KB896422)-->"C:\WINDOWS\$NtUninstallKB896422$\spuninst\spuninst.exe"
Security Update for Windows XP (KB896423)-->"C:\WINDOWS\$NtUninstallKB896423$\spuninst\spuninst.exe"
Security Update for Windows XP (KB896424)-->"C:\WINDOWS\$NtUninstallKB896424$\spuninst\spuninst.exe"
Security Update for Windows XP (KB896428)-->"C:\WINDOWS\$NtUninstallKB896428$\spuninst\spuninst.exe"
Security Update for Windows XP (KB899587)-->"C:\WINDOWS\$NtUninstallKB899587$\spuninst\spuninst.exe"
Security Update for Windows XP (KB899589)-->"C:\WINDOWS\$NtUninstallKB899589$\spuninst\spuninst.exe"
Security Update for Windows XP (KB899591)-->"C:\WINDOWS\$NtUninstallKB899591$\spuninst\spuninst.exe"
Security Update for Windows XP (KB900725)-->"C:\WINDOWS\$NtUninstallKB900725$\spuninst\spuninst.exe"
Security Update for Windows XP (KB901017)-->"C:\WINDOWS\$NtUninstallKB901017$\spuninst\spuninst.exe"
Security Update for Windows XP (KB901190)-->"C:\WINDOWS\$NtUninstallKB901190$\spuninst\spuninst.exe"
Security Update for Windows XP (KB901214)-->"C:\WINDOWS\$NtUninstallKB901214$\spuninst\spuninst.exe"
Security Update for Windows XP (KB902400)-->"C:\WINDOWS\$NtUninstallKB902400$\spuninst\spuninst.exe"
Security Update for Windows XP (KB904706)-->"C:\WINDOWS\$NtUninstallKB904706$\spuninst\spuninst.exe"
Security Update for Windows XP (KB905414)-->"C:\WINDOWS\$NtUninstallKB905414$\spuninst\spuninst.exe"
Security Update for Windows XP (KB905749)-->"C:\WINDOWS\$NtUninstallKB905749$\spuninst\spuninst.exe"
Security Update for Windows XP (KB905915)-->"C:\WINDOWS\$NtUninstallKB905915$\spuninst\spuninst.exe"
Security Update for Windows XP (KB908519)-->"C:\WINDOWS\$NtUninstallKB908519$\spuninst\spuninst.exe"
Security Update for Windows XP (KB908531)-->"C:\WINDOWS\$NtUninstallKB908531$\spuninst\spuninst.exe"
Security Update for Windows XP (KB911280)-->"C:\WINDOWS\$NtUninstallKB911280$\spuninst\spuninst.exe"
Security Update for Windows XP (KB911562)-->"C:\WINDOWS\$NtUninstallKB911562$\spuninst\spuninst.exe"
Security Update for Windows XP (KB911567)-->"C:\WINDOWS\$NtUninstallKB911567$\spuninst\spuninst.exe"
Security Update for Windows XP (KB911927)-->"C:\WINDOWS\$NtUninstallKB911927$\spuninst\spuninst.exe"
Security Update for Windows XP (KB912812)-->"C:\WINDOWS\$NtUninstallKB912812$\spuninst\spuninst.exe"
Security Update for Windows XP (KB912919)-->"C:\WINDOWS\$NtUninstallKB912919$\spuninst\spuninst.exe"
Security Update for Windows XP (KB913446)-->"C:\WINDOWS\$NtUninstallKB913446$\spuninst\spuninst.exe"
Security Update for Windows XP (KB913580)-->"C:\WINDOWS\$NtUninstallKB913580$\spuninst\spuninst.exe"
Security Update for Windows XP (KB914388)-->"C:\WINDOWS\$NtUninstallKB914388$\spuninst\spuninst.exe"
Security Update for Windows XP (KB914389)-->"C:\WINDOWS\$NtUninstallKB914389$\spuninst\spuninst.exe"
Security Update for Windows XP (KB916281)-->"C:\WINDOWS\$NtUninstallKB916281$\spuninst\spuninst.exe"
Security Update for Windows XP (KB917159)-->"C:\WINDOWS\$NtUninstallKB917159$\spuninst\spuninst.exe"
Security Update for Windows XP (KB917344)-->"C:\WINDOWS\$NtUninstallKB917344$\spuninst\spuninst.exe"
Security Update for Windows XP (KB917422)-->"C:\WINDOWS\$NtUninstallKB917422$\spuninst\spuninst.exe"
Security Update for Windows XP (KB917953)-->"C:\WINDOWS\$NtUninstallKB917953$\spuninst\spuninst.exe"
Security Update for Windows XP (KB918118)-->"C:\WINDOWS\$NtUninstallKB918118$\spuninst\spuninst.exe"
Security Update for Windows XP (KB918439)-->"C:\WINDOWS\$NtUninstallKB918439$\spuninst\spuninst.exe"
Security Update for Windows XP (KB918899)-->"C:\WINDOWS\$NtUninstallKB918899$\spuninst\spuninst.exe"
Security Update for Windows XP (KB919007)-->"C:\WINDOWS\$NtUninstallKB919007$\spuninst\spuninst.exe"
Security Update for Windows XP (KB920213)-->"C:\WINDOWS\$NtUninstallKB920213$\spuninst\spuninst.exe"
Security Update for Windows XP (KB920214)-->"C:\WINDOWS\$NtUninstallKB920214$\spuninst\spuninst.exe"
Security Update for Windows XP (KB920670)-->"C:\WINDOWS\$NtUninstallKB920670$\spuninst\spuninst.exe"
Security Update for Windows XP (KB920683)-->"C:\WINDOWS\$NtUninstallKB920683$\spuninst\spuninst.exe"
Security Update for Windows XP (KB920685)-->"C:\WINDOWS\$NtUninstallKB920685$\spuninst\spuninst.exe"
Security Update for Windows XP (KB921398)-->"C:\WINDOWS\$NtUninstallKB921398$\spuninst\spuninst.exe"
Security Update for Windows XP (KB921503)-->"C:\WINDOWS\$NtUninstallKB921503$\spuninst\spuninst.exe"
Security Update for Windows XP (KB921883)-->"C:\WINDOWS\$NtUninstallKB921883$\spuninst\spuninst.exe"
Security Update for Windows XP (KB922616)-->"C:\WINDOWS\$NtUninstallKB922616$\spuninst\spuninst.exe"
Security Update for Windows XP (KB922760)-->"C:\WINDOWS\$NtUninstallKB922760$\spuninst\spuninst.exe"
Security Update for Windows XP (KB922819)-->"C:\WINDOWS\$NtUninstallKB922819$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923191)-->"C:\WINDOWS\$NtUninstallKB923191$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923414)-->"C:\WINDOWS\$NtUninstallKB923414$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923689)-->"C:\WINDOWS\$NtUninstallKB923689$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923694)-->"C:\WINDOWS\$NtUninstallKB923694$\spuninst\spuninst.exe"
Security Update for Windows XP (KB923980)-->"C:\WINDOWS\$NtUninstallKB923980$\spuninst\spuninst.exe"
Security Update for Windows XP (KB924191)-->"C:\WINDOWS\$NtUninstallKB924191$\spuninst\spuninst.exe"
Security Update for Windows XP (KB924270)-->"C:\WINDOWS\$NtUninstallKB924270$\spuninst\spuninst.exe"
Security Update for Windows XP (KB924496)-->"C:\WINDOWS\$NtUninstallKB924496$\spuninst\spuninst.exe"
Security Update for Windows XP (KB924667)-->"C:\WINDOWS\$NtUninstallKB924667$\spuninst\spuninst.exe"
Security Update for Windows XP (KB925454)-->"C:\WINDOWS\$NtUninstallKB925454$\spuninst\spuninst.exe"
Security Update for Windows XP (KB925486)-->"C:\WINDOWS\$NtUninstallKB925486$\spuninst\spuninst.exe"
Security Update for Windows XP (KB925902)-->"C:\WINDOWS\$NtUninstallKB925902$\spuninst\spuninst.exe"
Security Update for Windows XP (KB926255)-->"C:\WINDOWS\$NtUninstallKB926255$\spuninst\spuninst.exe"
Security Update for Windows XP (KB926436)-->"C:\WINDOWS\$NtUninstallKB926436$\spuninst\spuninst.exe"
Security Update for Windows XP (KB927779)-->"C:\WINDOWS\$NtUninstallKB927779$\spuninst\spuninst.exe"
Security Update for Windows XP (KB927802)-->"C:\WINDOWS\$NtUninstallKB927802$\spuninst\spuninst.exe"
Security Update for Windows XP (KB928090)-->"C:\WINDOWS\$NtUninstallKB928090$\spuninst\spuninst.exe"
Security Update for Windows XP (KB928255)-->"C:\WINDOWS\$NtUninstallKB928255$\spuninst\spuninst.exe"
Security Update for Windows XP (KB928843)-->"C:\WINDOWS\$NtUninstallKB928843$\spuninst\spuninst.exe"
Security Update for Windows XP (KB929123)-->"C:\WINDOWS\$NtUninstallKB929123$\spuninst\spuninst.exe"
Security Update for Windows XP (KB929969)-->"C:\WINDOWS\$NtUninstallKB929969$\spuninst\spuninst.exe"
Security Update for Windows XP (KB930178)-->"C:\WINDOWS\$NtUninstallKB930178$\spuninst\spuninst.exe"
Security Update for Windows XP (KB931261)-->"C:\WINDOWS\$NtUninstallKB931261$\spuninst\spuninst.exe"
Security Update for Windows XP (KB931768)-->"C:\WINDOWS\$NtUninstallKB931768$\spuninst\spuninst.exe"
Security Update for Windows XP (KB931784)-->"C:\WINDOWS\$NtUninstallKB931784$\spuninst\spuninst.exe"
Security Update for Windows XP (KB932168)-->"C:\WINDOWS\$NtUninstallKB932168$\spuninst\spuninst.exe"
Security Update for Windows XP (KB933566)-->"C:\WINDOWS\$NtUninstallKB933566$\spuninst\spuninst.exe"
Security Update for Windows XP (KB933729)-->"C:\WINDOWS\$NtUninstallKB933729$\spuninst\spuninst.exe"
Security Update for Windows XP (KB935839)-->"C:\WINDOWS\$NtUninstallKB935839$\spuninst\spuninst.exe"
Security Update for Windows XP (KB935840)-->"C:\WINDOWS\$NtUninstallKB935840$\spuninst\spuninst.exe"
Security Update for Windows XP (KB936021)-->"C:\WINDOWS\$NtUninstallKB936021$\spuninst\spuninst.exe"
Security Update for Windows XP (KB937143)-->"C:\WINDOWS\$NtUninstallKB937143$\spuninst\spuninst.exe"
Security Update for Windows XP (KB937894)-->"C:\WINDOWS\$NtUninstallKB937894$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938127)-->"C:\WINDOWS\$NtUninstallKB938127$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938464)-->"C:\WINDOWS\$NtUninstallKB938464$\spuninst\spuninst.exe"
Security Update for Windows XP (KB938829)-->"C:\WINDOWS\$NtUninstallKB938829$\spuninst\spuninst.exe"
Security Update for Windows XP (KB939653)-->"C:\WINDOWS\$NtUninstallKB939653$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941202)-->"C:\WINDOWS\$NtUninstallKB941202$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941568)-->"C:\WINDOWS\$NtUninstallKB941568$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941569)-->"C:\WINDOWS\$NtUninstallKB941569$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941644)-->"C:\WINDOWS\$NtUninstallKB941644$\spuninst\spuninst.exe"
Security Update for Windows XP (KB941693)-->"C:\WINDOWS\$NtUninstallKB941693$\spuninst\spuninst.exe"
Security Update for Windows XP (KB942615)-->"C:\WINDOWS\$NtUninstallKB942615$\spuninst\spuninst.exe"
Security Update for Windows XP (KB943055)-->"C:\WINDOWS\$NtUninstallKB943055$\spuninst\spuninst.exe"
Security Update for Windows XP (KB943460)-->"C:\WINDOWS\$NtUninstallKB943460$\spuninst\spuninst.exe"
Security Update for Windows XP (KB943485)-->"C:\WINDOWS\$NtUninstallKB943485$\spuninst\spuninst.exe"
Security Update for Windows XP (KB944338)-->"C:\WINDOWS\$NtUninstallKB944338$\spuninst\spuninst.exe"
Security Update for Windows XP (KB944533)-->"C:\WINDOWS\$NtUninstallKB944533$\spuninst\spuninst.exe"
Security Update for Windows XP (KB944653)-->"C:\WINDOWS\$NtUninstallKB944653$\spuninst\spuninst.exe"
Security Update for Windows XP (KB945553)-->"C:\WINDOWS\$NtUninstallKB945553$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946026)-->"C:\WINDOWS\$NtUninstallKB946026$\spuninst\spuninst.exe"
Security Update for Windows XP (KB946648)-->"C:\WINDOWS\$NtUninstallKB946648$\spuninst\spuninst.exe"
Security Update for Windows XP (KB947864)-->"C:\WINDOWS\$NtUninstallKB947864$\spuninst\spuninst.exe"
Security Update for Windows XP (KB948590)-->"C:\WINDOWS\$NtUninstallKB948590$\spuninst\spuninst.exe"
Security Update for Windows XP (KB948881)-->"C:\WINDOWS\$NtUninstallKB948881$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950749)-->"C:\WINDOWS\$NtUninstallKB950749$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950759)-->"C:\WINDOWS\$NtUninstallKB950759$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950760)-->"C:\WINDOWS\$NtUninstallKB950760$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950762)-->"C:\WINDOWS\$NtUninstallKB950762$\spuninst\spuninst.exe"
Security Update for Windows XP (KB950974)-->"C:\WINDOWS\$NtUninstallKB950974$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951066)-->"C:\WINDOWS\$NtUninstallKB951066$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376)-->"C:\WINDOWS\$NtUninstallKB951376$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951376-v2)-->"C:\WINDOWS\$NtUninstallKB951376-v2$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951698)-->"C:\WINDOWS\$NtUninstallKB951698$\spuninst\spuninst.exe"
Security Update for Windows XP (KB951748)-->"C:\WINDOWS\$NtUninstallKB951748$\spuninst\spuninst.exe"
Security Update for Windows XP (KB952954)-->"C:\WINDOWS\$NtUninstallKB952954$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953838)-->"C:\WINDOWS\$NtUninstallKB953838$\spuninst\spuninst.exe"
Security Update for Windows XP (KB953839)-->"C:\WINDOWS\$NtUninstallKB953839$\spuninst\spuninst.exe"
Security Update for Windows XP (KB954211)-->"C:\WINDOWS\$NtUninstallKB954211$\spuninst\spuninst.exe"
Security Update for Windows XP (KB955069)-->"C:\WINDOWS\$NtUninstallKB955069$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956391)-->"C:\WINDOWS\$NtUninstallKB956391$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956803)-->"C:\WINDOWS\$NtUninstallKB956803$\spuninst\spuninst.exe"
Security Update for Windows XP (KB956841)-->"C:\WINDOWS\$NtUninstallKB956841$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957095)-->"C:\WINDOWS\$NtUninstallKB957095$\spuninst\spuninst.exe"
Security Update for Windows XP (KB957097)-->"C:\WINDOWS\$NtUninstallKB957097$\spuninst\spuninst.exe"
Security Update for Windows XP (KB958644)-->"C:\WINDOWS\$NtUninstallKB958644$\spuninst\spuninst.exe"
Sonic RecordNow!-->MsiExec.exe /I{9541FED0-327F-4DF0-8B96-EF57EF622F19}
Sonic Update Manager-->MsiExec.exe /I{09DA4F91-2A09-4232-AB8C-6BC740096DE3}
Sony Ericsson Device Data-->MsiExec.exe /I{C92E7DF1-624A-4D95-A4C4-18CB491B44A4}
Sony Ericsson PC Suite-->C:\WINDOWS\Installer\{D6BF6477-8369-489F-8DE6-3731F4B88560}\setup.exe /uninstall
Sony Ericsson PC Suite-->MsiExec.exe /I{52D44F93-8FA9-4945-A817-0E98669CCE03}
Spybot - Search & Destroy 1.4-->"C:\Program Files\Spybot - Search & Destroy\unins000.exe"
SpywareBlaster v3.5.1-->"C:\Program Files\SpywareBlaster\unins000.exe"
SUPERAntiSpyware Free Edition-->MsiExec.exe /X{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}
Sygate Personal Firewall-->MsiExec.exe /I{F34D9A5F-484A-4E31-A9D3-908CB265B289}
TalesRunner 1.58720081016-->C:\Program Files\gpotato\TalesRunner\uninst.exe
Twins video to iPod-Zune-PSP-3GP 1.0-->"F:\Twins video to iPod-Zune-PSP-3GP\unins000.exe"
UltimateZip 2.7-->"C:\Program Files\UltimateZip 2.7\unins000.exe"
upapp-->MsiExec.exe /I{4EF69D40-4DC9-485E-95D3-B1C22F218FC8}
Update for Windows XP (KB894391)-->"C:\WINDOWS\$NtUninstallKB894391$\spuninst\spuninst.exe"
Update for Windows XP (KB898461)-->"C:\WINDOWS\$NtUninstallKB898461$\spuninst\spuninst.exe"
Update for Windows XP (KB900485)-->"C:\WINDOWS\$NtUninstallKB900485$\spuninst\spuninst.exe"
Update for Windows XP (KB904942)-->"C:\WINDOWS\$NtUninstallKB904942$\spuninst\spuninst.exe"
Update for Windows XP (KB910437)-->"C:\WINDOWS\$NtUninstallKB910437$\spuninst\spuninst.exe"
Update for Windows XP (KB916595)-->"C:\WINDOWS\$NtUninstallKB916595$\spuninst\spuninst.exe"
Update for Windows XP (KB920872)-->"C:\WINDOWS\$NtUninstallKB920872$\spuninst\spuninst.exe"
Update for Windows XP (KB922582)-->"C:\WINDOWS\$NtUninstallKB922582$\spuninst\spuninst.exe"
Update for Windows XP (KB925720)-->"C:\WINDOWS\$NtUninstallKB925720$\spuninst\spuninst.exe"
Update for Windows XP (KB927891)-->"C:\WINDOWS\$NtUninstallKB927891$\spuninst\spuninst.exe"
Update for Windows XP (KB929338)-->"C:\WINDOWS\$NtUninstallKB929338$\spuninst\spuninst.exe"
Update for Windows XP (KB930916)-->"C:\WINDOWS\$NtUninstallKB930916$\spuninst\spuninst.exe"
Update for Windows XP (KB931836)-->"C:\WINDOWS\$NtUninstallKB931836$\spuninst\spuninst.exe"
Update for Windows XP (KB933360)-->"C:\WINDOWS\$NtUninstallKB933360$\spuninst\spuninst.exe"
Update for Windows XP (KB936357)-->"C:\WINDOWS\$NtUninstallKB936357$\spuninst\spuninst.exe"
Update for Windows XP (KB938828)-->"C:\WINDOWS\$NtUninstallKB938828$\spuninst\spuninst.exe"
Update for Windows XP (KB942763)-->"C:\WINDOWS\$NtUninstallKB942763$\spuninst\spuninst.exe"
Update for Windows XP (KB942840)-->"C:\WINDOWS\$NtUninstallKB942840$\spuninst\spuninst.exe"
Update for Windows XP (KB946627)-->"C:\WINDOWS\$NtUninstallKB946627$\spuninst\spuninst.exe"
Update for Windows XP (KB951072-v2)-->"C:\WINDOWS\$NtUninstallKB951072-v2$\spuninst\spuninst.exe"
Update Service-->C:\Program Files\Sony Ericsson\Update Service\uninst.exe
VeohTV BETA-->C:\Program Files\InstallShield Installation Information\{0405E51E-9582-4207-8F38-AC44201D3808}\setup.exe -runfromtemp -l0x0409
VideoLAN VLC media player 0.8.6-->C:\Program Files\VideoLAN\VLC\uninstall.exe
Viewpoint Media Player-->C:\Program Files\Viewpoint\Viewpoint Experience Technology\mtsAxInstaller.exe /u
Vitalize!-->C:\Program Files\Common Files\Vitalize\Uninstal.exe
Vox Proxy-->MsiExec.exe /I{98A2EDE2-FDA6-11D4-857B-0040F68C9D72}
Winamp Remote-->"C:\Program Files\Winamp Remote\uninstall.exe"
Windows Defender Signatures-->MsiExec.exe /I{A5CC2A09-E9D3-49EC-923D-03874BBD4C2C}
Windows Imaging Component-->"C:\WINDOWS\$NtUninstallWIC$\spuninst\spuninst.exe"
Windows Installer 3.1 (KB893803)-->"C:\WINDOWS\$MSI31Uninstall_KB893803v2$\spuninst\spuninst.exe"
Windows Internet Explorer 8 Beta 2-->"C:\WINDOWS\ie8\spuninst\spuninst.exe"
Windows Live installer-->MsiExec.exe /X{A7E4ECCA-4A8E-4258-8EC8-2DCCF5B11320}
Windows Live Messenger-->MsiExec.exe /X{508CE775-4BA4-4748-82DF-FE28DA9F03B0}
Windows Live OneCare safety scanner-->RunDll32.exe "C:\Program Files\Windows Live Safety Center\wlscCore.dll",UninstallFunction WLSC_SCANNER_PRODUCT
Windows Live Sign-in Assistant-->MsiExec.exe /I{AFA4E5FD-ED70-4D92-99D0-162FD56DC986}
Windows Media Format 11 runtime-->"C:\Program Files\Windows Media Player\wmsetsdk.exe" /UninstallAll
Windows Media Format 11 runtime-->"C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Windows Media Player 11-->"C:\Program Files\Windows Media Player\Setup_wm.exe" /Uninstall
Windows Media Player 11-->"C:\WINDOWS\$NtUninstallwmp11$\spuninst\spuninst.exe"
Windows Media Player 9 Series Captions and Lyrics PowerToy-->RunDll32 advpack.dll,LaunchINFSection C:\WINDOWS\INF\Captionsptoy.inf,Uninstall
Windows Presentation Foundation-->MsiExec.exe /X{BAF78226-3200-4DB4-BE33-4D922A799840}
Windows XP Hotfix - KB873339-->C:\WINDOWS\$NtUninstallKB873339$\spuninst\spuninst.exe
Windows XP Hotfix - KB885250-->C:\WINDOWS\$NtUninstallKB885250$\spuninst\spuninst.exe
Windows XP Hotfix - KB885835-->C:\WINDOWS\$NtUninstallKB885835$\spuninst\spuninst.exe
Windows XP Hotfix - KB885836-->C:\WINDOWS\$NtUninstallKB885836$\spuninst\spuninst.exe
Windows XP Hotfix - KB885884-->C:\WINDOWS\$NtUninstallKB885884$\spuninst\spuninst.exe
Windows XP Hotfix - KB886185-->C:\WINDOWS\$NtUninstallKB886185$\spuninst\spuninst.exe
Windows XP Hotfix - KB887472-->C:\WINDOWS\$NtUninstallKB887472$\spuninst\spuninst.exe
Windows XP Hotfix - KB887742-->C:\WINDOWS\$NtUninstallKB887742$\spuninst\spuninst.exe
Windows XP Hotfix - KB888113-->C:\WINDOWS\$NtUninstallKB888113$\spuninst\spuninst.exe
Windows XP Hotfix - KB888302-->C:\WINDOWS\$NtUninstallKB888302$\spuninst\spuninst.exe
Windows XP Hotfix - KB890859-->"C:\WINDOWS\$NtUninstallKB890859$\spuninst\spuninst.exe"
Windows XP Hotfix - KB891781-->C:\WINDOWS\$NtUninstallKB891781$\spuninst\spuninst.exe
WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
WinZip-->"C:\Program Files\WinZip\WINZIP32.EXE" /uninstall
WM Converter 2.0-->C:\Program Files\WM Converter\Uninstal.exe
WordToys-->C:\WINDOWS\Inf\WtUninst.exe
Xfire (remove only)-->"C:\Program Files\Xfire\uninst.exe"
Zune Language Pack (ES)-->MsiExec.exe /X{EE4ACABF-531E-419A-9225-B8E0FA4955AF}
Zune Language Pack (FR)-->MsiExec.exe /X{0076E1AC-9E7B-4B9F-A62A-4CC9511AD8E3}
Zune-->MsiExec.exe /X{7583239A-D4BE-48CA-A253-396122B3D3E9}
陽射しの中のリアル-->C:\Documents and Settings\Administrator\Desktop\EMUS\Videos\GBA\New Folder (6)\New Folder (7)\New Folder (6)\New Folder\陽射しの中のリアル\_uninst.exe JHHKIOMLICLFICMMJCIGICMMIDIKIDEBIDIL

=====HijackThis Backups=====

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
O4 - HKLM\..\Run: [shdef] C:\WINDOWS\shdef.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/.../search/ie.html
O4 - HKLM\..\RunServices: [Windows Update] C:\WINDOWS\scvhost.exe
O3 - Toolbar: GoGoData AdBuster - {3EB9C349-7473-48AC-A59B-42F31751974B} - C:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL (file missing)
O2 - BHO: Nothing - {8d83b16e-0de1-452b-ac52-96ec0b34aa4b} - C:\WINDOWS\system32\hpF02C.tmp (file missing)
O7 - HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/...//www.yahoo.com
O4 - HKLM\..\Run: [Windows Update] C:\WINDOWS\scvhost.exe
O16 - DPF: {2D2BEE6E-3C9A-4D58-B9EC-458EDB28D0F6} - http://drivecleaner.com/.freeware/installd...leanerstart.cab
O20 - Winlogon Notify: jkkihfc - jkkihfc.dll (file missing)
O2 - BHO: (no name) - {82F3B9DB-4A23-4B2D-92F5-C866A09EC967} - C:\Program Files\MSN Gaming Zone\hokes4444.dll (file missing)
O2 - BHO: (no name) - {6AA3809C-6261-456F-8FCA-43FE39ADC5E9} - C:\WINDOWS\system32\jkkihfc.dll (file missing)
O2 - BHO: (no name) - {6D54537C-FB81-4DCB-94FF-B4A36E1B7F3E} - C:\WINDOWS\system32\ddcca.dll (file missing)
O2 - BHO: (no name) - {79DB6BB1-14F2-4967-A816-9395985EB2D2} - C:\Program Files\MSN Gaming Zone\hokes83122.dll (file missing)
O2 - BHO: (no name) - {1a8523dc-1dd2-11b2-8f50-a0f5b7cb9b7f} - C:\WINDOWS\dchehsda.dll
O2 - BHO: StFlex IE Helper - {847B6838-BFB6-40a1-8888-736928099059} - C:\Program Files\QdrDrive\QdrDrive15.dll (file missing)
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: SearchSettings Class - {E312764E-7706-43F1-8DAB-FCDD2B1E416D} - C:\Program Files\Search Settings\kb125\SearchSettings.dll
O16 - DPF: {2F6265C6-3D7D-44B9-97FE-3993B9248EC1} (Plugin Class) - http://smashmash.tv/InstallSmashMashPlugin.exe
O4 - HKLM\..\Run: [zglovsta] regsvr32 /u "C:\Documents and Settings\All Users\Application Data\zglovsta.dll"
O16 - DPF: {7823A620-9DD9-11CF-A662-00AA00C066D2} (PopupMenu Object) - http://activex.microsoft.com/controls/iexp.../x86/iemenu.cab
O22 - SharedTaskScheduler: USB Ware - {E2CA7CD1-1AD9-F1C4-3D2A-DC1A33E7AF9D} - (no file)
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/...//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/.../search/ie.html

======Hosts File======

127.0.0.1 localhost
66.98.148.65 auto.search.msn.com
66.98.148.65 auto.search.msn.es

======Security center information======

AV: AVG Anti-Virus Free
FW: Sygate Personal Firewall

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\GTK\2.0\bin;C:\Program Files\ATI Technologies\ATI.ACE\;C:\Program Files\Common Files\Teleca Shared;C:\Program Files\QuickTime\QTSystem\
"windir"=%SystemRoot%
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"PROCESSOR_ARCHITECTURE"=x86
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 1 Stepping 3, GenuineIntel
"PROCESSOR_REVISION"=0103
"NUMBER_OF_PROCESSORS"=1
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"LANG"=C
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0_07\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0_07\lib\ext\QTJava.zip

-----------------EOF-----------------

BC AdBot (Login to Remove)

 


#2 KoanYorel

KoanYorel

    Bleepin' Conundrum


  • Staff Emeritus
  • 19,461 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:65 miles due East of the &quot;Logic Free Zone&quot;, in Md, USA
  • Local time:02:38 AM

Posted 16 December 2008 - 05:29 PM

ello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine. If you have not done so, include a description of your problem, along with any steps you may have performed so far.

Upon completing the steps below a staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.


Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results, click no to the Optional_Scan
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet. Information on A/V control HERE

R,
The only easy day was yesterday.

...some do, some don't; some will, some won't (WR)

#3 tristenkw5

tristenkw5
  • Topic Starter

  • Members
  • 71 posts
  • OFFLINE
  •  
  • Local time:01:38 AM

Posted 21 December 2008 - 01:32 PM

My mouse problem was a hardware one, I just replaced the mouse.



DDS (Version 1.1.0) - NTFSx86
Run by Administrator at 12:17:41.09 on Sun 12/21/2008
Internet Explorer: 8.0.6001.18241 BrowserJavaVersion: 1.6.0_07
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.638.302 [GMT -6:00]

============== Running Processes ===============

C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\Program Files\Sygate\SPF\smc.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\Yahoo!\YOP\yop.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Lexmark 3400 Series\lxcymon.exe
C:\Program Files\Lexmark 3400 Series\ezprint.exe
C:\Program Files\Zamaan's Software\Pepsi Volume Controller 3.0\pvc3.0.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\GoGoData.com\GOGODA~1\ADBUST~1.EXE
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\system32\ZuneBusEnum.exe
C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\WiFiConnector\NintendoWFCReg.exe
C:\Program Files\Change Mon Ecran\CmeSystray.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\DNA\btdna.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\PROGRA~1\Yahoo!\YOP\SSDK02.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\lxcycoms.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\Documents and Settings\Administrator\Desktop\dds.com

============== Pseudo HJT Report ===============

uSearch Page = hxxp://www.google.com
uSearch Bar = hxxp://www.google.com/ie
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uStart Page = hxxp://www.yahoo.com/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyServer = http=127.0.0.1:6711
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mSearchAssistant = hxxp://www.google.com/ie
BHO: Adobe PDF Reader Link Helper: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Lexmark Toolbar: {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - c:\program files\lexmark toolbar\toolband.dll
BHO: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\tbFre1.dll
BHO: BitComet Helper: {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll
BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - c:\program files\avg\avg8\avgssie.dll
BHO: N/A: {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: Yahoo! IE Services Button: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\progra~1\yahoo!\common\yiesrvc.dll
BHO: SSVHelper Class: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.0.926.3450\swg.dll
BHO: Google Dictionary Compression sdch: {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - c:\program files\google\google toolbar\component\fastsearch_219B3E1547538286.dll
BHO: SidebarAutoLaunch Class: {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - c:\program files\yahoo!\browser\YSidebarIEBHO.dll
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\tbFre1.dll
TB: Lexmark Toolbar: {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - c:\program files\lexmark toolbar\toolband.dll
TB: &Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar.dll
uRun: [Sonic RecordNow!]
uRun: [GoGoTray.exe] c:\program files\gogodata.com\gogodata toolbar\GoGoTray.exe
uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Aim6]
uRun: [RocketDock] "c:\windows\bricopacks\vista inspirat 2\rocketdock\RocketDock.exe"
uRun: [WindowsUI] c:\windows\windows\WindowsUI.exe
uRun: [SUPERAntiSpyware] c:\program files\superantispyware\SUPERAntiSpyware.exe
uRun: [Veoh] "c:\program files\veoh networks\veoh\VeohClient.exe" /VeohHide
uRun: [<NO NAME>]
uRun: [BitTorrent DNA] "c:\program files\dna\btdna.exe"
uRun: [Google Update] "c:\documents and settings\administrator\local settings\application data\google\update\GoogleUpdate.exe" /c
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [YBrowser] c:\progra~1\yahoo!\browser\ybrwicon.exe
mRun: [Motive SmartBridge] c:\progra~1\sbcsel~1\smartb~1\MotiveSB.exe
mRun: [YOP] c:\progra~1\yahoo!\yop\yop.exe /autostart
mRun: [ATICCC] "c:\program files\ati technologies\ati.ace\cli.exe" runtime -Delay
mRun: [SmcService] c:\progra~1\sygate\spf\smc.exe -startgui
mRun: [WindowsUI] c:\windows\windows\WindowsUI.exe
mRun: [lxcymon.exe] "c:\program files\lexmark 3400 series\lxcymon.exe"
mRun: [EzPrint] "c:\program files\lexmark 3400 series\ezprint.exe"
mRun: [FaxCenterServer] "c:\program files\lexmark fax solutions\fm3032.exe" /s
mRun: [LXCYCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\LXCYtime.dll,_RunDLLEntry@16
mRun: [SearchSettings] c:\program files\search settings\SearchSettings.exe
mRun: [Sony Ericsson PC Suite] "c:\program files\sony ericsson\mobile2\application launcher\Application Launcher.exe" /startoptions
mRun: [Pepsi Volume Controller 3.0] c:\program files\zamaan's software\pepsi volume controller 3.0\pvc3.0.exe
mRun: [Zune Launcher] "f:\zune\ZuneLauncher.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [LogMeIn GUI] "c:\program files\logmein\x86\LogMeInSystray.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_07\bin\jusched.exe"
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [IMJPMIG8.1] c:\windows\ime\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
mRun: [IMEKRMIG6.1] c:\windows\ime\imkr6_1\IMEKRMIG.EXE
mRun: [MSPY2002] c:\windows\system32\ime\pintlgnt\ImScInst.exe /SYNC
mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\bin\AppleSyncNotifier.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
dRun: [MySpaceIM] c:\program files\myspace\im\MySpaceIM.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\cme.lnk - c:\program files\change mon ecran\Change Mon Ecran.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\rocket~1.lnk - c:\windows\bricopacks\vista inspirat 2\rocketdock\RocketDock.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\transbar.lnk - c:\windows\bricopacks\vista inspirat 2\transbar\TransBar.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\ubericon.lnk - c:\windows\bricopacks\vista inspirat 2\ubericon\UberIcon Manager.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\deskto~1.lnk - f:\program files\DesktopMgr.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\runnin~1.lnk - c:\program files\wificonnector\NintendoWFCReg.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\sbcsel~1.lnk - c:\program files\sbc self support tool\bin\matcli.exe
mPolicies-system: DisableCAD = 1 (0x1)
IE: &D&ownload &with BitComet - c:\program files\bitcomet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - c:\program files\bitcomet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - c:\program files\bitcomet\BitComet.exe/AddAllLink.htm
IE: Add to Change Mon Ecran - c:\windows\CmeIE.htm
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\program files\aim\aim.exe
IE: {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - "c:\program files\fiddler2\Fiddler.exe"
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll/206
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
IE: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\progra~1\yahoo!\common\yiesrvc.dll
IE: {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - {3EB9C349-7473-48AC-A59B-42F31751974B} - c:\progra~1\gogodata.com\gogoda~1\TOMAHA~1.DLL
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\program files\aim\aim.exe
IE: {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - c:\program files\fiddler2\Fiddler.exe
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll/206
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: AtiExtEvent - Ati2evxx.dll
Notify: igfxcui - igfxsrvc.dll
Notify: LMIinit - LMIinit.dll
AppInit_DLLs: avgrsstx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - c:\program files\superantispyware\SASSEH.DLL
SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\admini~1\applic~1\mozilla\firefox\profiles\8rimfbzm.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - www.yahoo.com
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=vmn&type=vendio&p=
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\FFAlert.dll
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{463f6ca5-ee3c-4be1-b7e6-7fee11953374}\platform\winnt\components\FoxyTunes.dll
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{b042753d-f57e-4e8e-a01b-7379a6d4cefb}\components\IBitCometExtension.dll
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - component: c:\program files\mozilla firefox\extensions\search@searchsettings.com\components\SearchSettingsFF.dll
FF - component: c:\program files\mozilla firefox\extensions\talkback@mozilla.org\components\qfaservices.dll

============= SERVICES / DRIVERS ===============

R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2008-6-17 97928]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2008-6-17 26824]
R1 SASDIFSV;SASDIFSV;\??\c:\program files\superantispyware\SASDIFSV.SYS [2008-2-29 8944]
R1 SASKUTIL;SASKUTIL;\??\c:\program files\superantispyware\SASKUTIL.sys [2008-2-29 55024]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2008-7-5 875288]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2008-7-5 231704]
R2 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2008-6-17 76040]
R2 lxcy_device;lxcy_device;c:\windows\system32\lxcycoms.exe -service []
R2 Viewpoint Manager Service;Viewpoint Manager Service;"c:\program files\viewpoint\common\ViewpointService.exe" [2008-2-21 24652]
R3 SASENUM;SASENUM;\??\c:\program files\superantispyware\SASENUM.SYS [2006-2-16 4096]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2008-1-6 13352]
S3 w200bus;Sony Ericsson W200 driver (WDM);c:\windows\system32\drivers\w200bus.sys [2008-1-5 61504]
S3 w200mdfl;Sony Ericsson W200 USB WMC Modem Filter;c:\windows\system32\drivers\w200mdfl.sys [2008-1-5 9328]
S3 w200mdm;Sony Ericsson W200 USB WMC Modem Driver;c:\windows\system32\drivers\w200mdm.sys [2008-1-5 97056]
S3 w200mgmt;Sony Ericsson W200 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\w200mgmt.sys [2008-1-5 88560]
S3 w200obex;Sony Ericsson W200 USB WMC OBEX Interface;c:\windows\system32\drivers\w200obex.sys [2008-1-5 86368]
S3 xusb20;Xbox 360 Wireless Receiver for Windows Driver Service;c:\windows\system32\drivers\xusb20.sys [2006-10-13 50048]
S4 vsdatant;vsdatant; []

=============== Created Last 30 ================

2008-12-19 12:23 <DIR> --d----- c:\windows\ie8updates
2008-12-16 23:13 <DIR> --d----- c:\program files\MSECache
2008-12-16 20:04 <DIR> --d----- c:\program files\Steam
2008-12-14 11:44 268 a---h--- C:\sqmdata09.sqm
2008-12-14 11:44 244 a---h--- C:\sqmnoopt09.sqm
2008-12-07 20:22 <DIR> --d----- c:\program files\MagicISO
2008-12-07 15:21 <DIR> --d----- c:\program files\iPod
2008-12-07 15:21 <DIR> --d----- c:\docume~1\alluse~1\applic~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-11-29 12:09 18,560 a------- c:\windows\system32\drivers\vtcdrv.sys
2008-11-29 12:09 19,840 a------- c:\windows\system32\drivers\StMp3Rec.sys
2008-11-29 12:09 <DIR> --d----- c:\program files\Player Update
2008-11-27 00:28 <DIR> --d----- c:\docume~1\admini~1\applic~1\BitTorrent
2008-11-27 00:20 <DIR> --d----- c:\program files\DNA
2008-11-27 00:20 <DIR> --d----- c:\docume~1\admini~1\applic~1\DNA
2008-11-27 00:20 <DIR> --d----- c:\program files\BitTorrent

==================== Find3M ====================

2008-10-24 05:10 453,632 a------- c:\windows\system32\drivers\mrxsmb.sys
2008-10-23 07:01 283,648 a------- c:\windows\system32\gdi32.dll
2008-10-16 14:06 268,648 a------- c:\windows\system32\mucltui.dll
2008-10-16 14:06 208,744 a------- c:\windows\system32\muweb.dll
2008-10-03 04:15 247,326 a------- c:\windows\system32\strmdll.dll
2008-09-30 16:43 1,286,152 a------- c:\windows\system32\msxml4.dll
2008-06-25 16:36 61,456 a------- c:\docume~1\admini~1\applic~1\GDIPFONTCACHEV1.DAT
2008-04-24 15:47 59,782,440 a------- c:\program files\iTunesSetup.exe
2008-01-07 17:40 13,113,779 a------- c:\program files\toneThisPackage.exe
2008-01-06 00:12 37,986,872 a------- c:\program files\Update_Service_Setup-2.7.12.4.exe
2008-01-05 23:56 818,322 a------- c:\program files\iDump_Setup.exe
2008-01-05 18:59 78 a------- c:\program files\config.cfg
2008-01-05 18:55 225,280 a------- c:\program files\iDump.exe
2007-12-05 17:20 54,330,664 a------- c:\program files\iTunes75Setup.exe
2007-11-05 18:08 2,293,712 a------- c:\program files\FLV PlayerFCSetup.exe
2007-11-05 18:06 411,248 a------- c:\program files\FLV PlayerRCSetup.exe
2007-04-14 12:36 0 ----h--- c:\program files\AppUpdate.log
2007-04-14 12:19 24,265,736 a------- c:\program files\dotnetfx.exe
2007-02-25 17:43 412,536 a------- c:\program files\dBpoweramp-Codec-MonkeysAudio.exe
2005-08-29 20:17 32 a----r-- c:\documents and settings\all users\hash.dat
2005-07-22 20:37 280,064 a------- c:\docume~1\admini~1\applic~1\tizhook.bin
2004-09-18 14:28 20,480 a------- c:\windows\inf\WtUninst.exe
2005-07-20 09:34 848 a--sh--- c:\windows\system32\KGyGaAvL.sys

============= FINISH: 12:19:54.59 ===============

Attached Files


Edited by tristenkw5, 21 December 2008 - 01:33 PM.


#4 Billy O'Neal

Billy O'Neal

    Visual C++ STL Maintainer


  • Malware Response Team
  • 12,304 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Redmond, Washington
  • Local time:11:38 PM

Posted 23 December 2008 - 12:12 AM

Hello, tristenkw5
Viewpoint is considered foistware instead of malware because it is installed without users approval, but doesn't spy or do anything "bad". You may like to read this article about the potential of this Viewpoint software here:
http://www.clickz.com/news/article.php/3561546

I suggest you remove the program now. Click on Start > Run... > and then paste the following into the "Open" field: "appwiz.cpl" and press OK. From within Add or Remove Programs uninstall the following if they exist: Viewpoint, Viewpoint Manager, and/or Viewpoint Media Player.

We need to execute an OTMoveIt3 script
  • Please download OTMoveIt3 by OldTimer and save it to your desktop.
  • Double click the Posted Image icon on your desktop.
  • Paste the following code under the Posted Image area. Do not include the word "Code".
    :reg
    [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
    "DisableCAD"=-
    [HKEY_LOCAL_MACHINE\Sofware\Microsoft\Windows\CurrentVersion\Run]
    "Sonic RecordNow!"=-
    "Aim6"=-
    @=""
    :services
    vsdatant
    :commands
    [EmptyTemp]
  • Push the large Posted Image button.
  • OTMI3 may ask to reboot the machine. Please do so if asked.
  • Copy/Paste the contents under the Posted Image line here in your next reply.
  • If you are unable to copy/paste from this window (as will be the case if the machine was rebooted), open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTMoveIt\MovedFiles folder, and open the newest .log file present, and copy/paste the contents of that document back here in your next post.
I would like us to use ESET (NOD32)'s Online Scanner
  • Please go to ESET OnlineScan (NOD32)
  • You will then see the Terms of Use, tick the check-box infront of YES, I accept the Terms of Use
  • Now click Start
  • Should you face a Security Warning that asks if you want to install and run a file called "OnlineScanner.cab", click Yes
  • Click Start
    • Note: (the Onlinescanner will now prepare itself for running on your pc)
  • To do a full-scan, tick: "Remove found threats" and "Scan potentially unwanted applications"
  • Press Scan
  • The Onlinescan will now start and scan your pc (this could take a while)
  • When the scan has finished, it will show a screen with two tabs "overview" and "details" and the option to get information or buy software, just close the window
  • Click Start >> Run... >> type: C:\Program Files\EsetOnlineScanner\log.txt
  • The Scanresults will now open in Notepad
  • Click into the text area, right-click and chose "select all" (or use <Control>+A)
  • Right-click again and chose "Copy" (or <Control>+C)
  • Close/Exit Notepad
  • Navigate to this thread and post your log along with anything else requested from us, by right-clicking and "paste" (or ctrl+v) in the text area of the reply post you just created.
Note: For Vista Users: Eset is compatible but Internet Explorer must be run as Administrator. To do this, right-click on the IE icon in the Start Menu or Quick Launch Bar on the Taskbar and select "Run as Administrator" from the context menu.)

In your next reply, please include the following:
  • OTMoveIt3's Log
  • ESET OnlineScan's Log
  • A new DDS.txt

BillyIII
Twitter - My statements do not establish the official position of Microsoft Corporation, and are my own personal opinion. (But you already knew that, right?)
Posted Image

#5 tristenkw5

tristenkw5
  • Topic Starter

  • Members
  • 71 posts
  • OFFLINE
  •  
  • Local time:01:38 AM

Posted 23 December 2008 - 04:15 PM

Here ya go.

========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system\\DisableCAD deleted successfully.
Registry key HKEY_LOCAL_MACHINE\Sofware\Microsoft\Windows\CurrentVersion\Run not found.
Registry key HKEY_LOCAL_MACHINE\Sofware\Microsoft\Windows\CurrentVersion\Run not found.
Unable to set value : HKEY_LOCAL_MACHINE\Sofware\Microsoft\Windows\CurrentVersion\Run\\@|"" /E!
========== SERVICES/DRIVERS ==========
Service vsdatant stopped successfully.
Service vsdatant deleted successfully.
========== COMMANDS ==========
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\fla47.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\fla4A.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\fla4B.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Perflib_Perfdata_1c4.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Perflib_Perfdata_1d0.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Perflib_Perfdata_64c.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Perflib_Perfdata_8fc.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Perflib_Perfdata_c8.dat scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~DF2E51.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~DF46BC.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~DF6996.tmp scheduled to be deleted on reboot.
File delete failed. C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\~DFF39D.tmp scheduled to be deleted on reboot.
User's Temp folder emptied.
User's Temporary Internet Files folder emptied.
User's Internet Explorer cache folder emptied.
Local Service Temp folder emptied.
File delete failed. C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat scheduled to be deleted on reboot.
Local Service Temporary Internet Files folder emptied.
Windows Temp folder emptied.
Java cache emptied.
FireFox cache emptied.
Temp folders emptied.

OTMoveIt3 by OldTimer - Version 1.0.7.2 log created on 12232008_010110


# version=4
# OnlineScanner.ocx=1.0.0.635
# OnlineScannerDLLA.dll=1, 0, 0, 79
# OnlineScannerDLLW.dll=1, 0, 0, 78
# OnlineScannerUninstaller.exe=1, 0, 0, 49
# vers_standard_module=3712 (20081222)
# vers_arch_module=1.064 (20080214)
# vers_adv_heur_module=1.064 (20070717)
# EOSSerial=25ec531834837546aa59ca68f1866031
# end=finished
# remove_checked=true
# unwanted_checked=true
# utc_time=2008-12-23 01:19:06
# local_time=2008-12-23 07:19:06 (-0600, Central Standard Time)
# country="United States"
# osver=5.1.2600 NT Service Pack 2
# scanned=401894
# found=5
# scan_time=11427
C:\!KillBox\rootkit.dll probably a variant of Win32/Genetik trojan (unable to clean - deleted) 00000000000000000000000000000000
C:\!KillBox\shdef.exe probably a variant of Win32/Genetik trojan (unable to clean - deleted) 00000000000000000000000000000000
C:\Deckard\System Scanner\20080504163239\backup\DOCUME~1\ADMINI~1\LOCALS~1\Temp\removalfile.bat Win32/Adware.Virtumonde application (unable to clean - deleted) 00000000000000000000000000000000
F:\Downloads\LW\platinum in da ghetto lil keke.mp3 a variant of WMA/TrojanDownloader.GetCodec.gen trojan (cleaned) AB4352EC7CBEA96323E6530025CEB4DA
F:\Downloads\LW\ridding with no ceiling slim.mp3 WMA/TrojanDownloader.GetCodec.C trojan (unable to clean - deleted) 00000000000000000000000000000000



DDS (Version 1.1.0) - NTFSx86
Run by Administrator at 15:10:06.09 on Tue 12/23/2008
Internet Explorer: 8.0.6001.18241 BrowserJavaVersion: 1.6.0_07
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.638.166 [GMT -6:00]

AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated)
FW: Sygate Personal Firewall *enabled*

============== Running Processes ===============

C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\Program Files\Sygate\SPF\smc.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\lxcycoms.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\ZuneBusEnum.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\Yahoo!\YOP\yop.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Lexmark 3400 Series\lxcymon.exe
C:\Program Files\Lexmark 3400 Series\ezprint.exe
C:\Program Files\Zamaan's Software\Pepsi Volume Controller 3.0\pvc3.0.exe
F:\Zune\ZuneLauncher.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Yahoo!\YOP\SSDK02.exe
C:\Program Files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\GoGoData.com\GOGODA~1\ADBUST~1.EXE
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\Program Files\DNA\btdna.exe
C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\WiFiConnector\NintendoWFCReg.exe
C:\Program Files\Change Mon Ecran\CmeSystray.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\notepad.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Documents and Settings\Administrator\Desktop\dds.com

============== Pseudo HJT Report ===============

uSearch Page = hxxp://www.google.com
uSearch Bar = hxxp://www.google.com/ie
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uStart Page = hxxp://www.yahoo.com/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyServer = http=127.0.0.1:6711
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mSearchAssistant = hxxp://www.google.com/ie
BHO: Adobe PDF Reader Link Helper: {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Lexmark Toolbar: {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - c:\program files\lexmark toolbar\toolband.dll
BHO: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\tbFre1.dll
BHO: BitComet Helper: {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll
BHO: AVG Safe Search: {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - c:\program files\avg\avg8\avgssie.dll
BHO: N/A: {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: Yahoo! IE Services Button: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\progra~1\yahoo!\common\yiesrvc.dll
BHO: SSVHelper Class: {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030D464-4C02-4ABF-8ECC-5164760863C6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\google toolbar\GoogleToolbar.dll
BHO: Google Toolbar Notifier BHO: {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - c:\program files\google\googletoolbarnotifier\5.0.926.3450\swg.dll
BHO: Google Dictionary Compression sdch: {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - c:\program files\google\google toolbar\component\fastsearch_219B3E1547538286.dll
BHO: SidebarAutoLaunch Class: {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - c:\program files\yahoo!\browser\YSidebarIEBHO.dll
TB: Yahoo! Toolbar: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\tbFre1.dll
TB: Lexmark Toolbar: {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - c:\program files\lexmark toolbar\toolband.dll
TB: &Google Toolbar: {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\google toolbar\GoogleToolbar.dll
uRun: [Sonic RecordNow!]
uRun: [GoGoTray.exe] c:\program files\gogodata.com\gogodata toolbar\GoGoTray.exe
uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Aim6]
uRun: [RocketDock] "c:\windows\bricopacks\vista inspirat 2\rocketdock\RocketDock.exe"
uRun: [WindowsUI] c:\windows\windows\WindowsUI.exe
uRun: [SUPERAntiSpyware] c:\docume~1\admini~1\locals~1\temp\ssupdate.exe software\superantispyware.com\SUPERAntiSpyware
uRun: [Veoh] "c:\program files\veoh networks\veoh\VeohClient.exe" /VeohHide
uRun: [<NO NAME>]
uRun: [BitTorrent DNA] "c:\program files\dna\btdna.exe"
uRun: [Google Update] "c:\documents and settings\administrator\local settings\application data\google\update\GoogleUpdate.exe" /c
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [YBrowser] c:\progra~1\yahoo!\browser\ybrwicon.exe
mRun: [Motive SmartBridge] c:\progra~1\sbcsel~1\smartb~1\MotiveSB.exe
mRun: [YOP] c:\progra~1\yahoo!\yop\yop.exe /autostart
mRun: [ATICCC] "c:\program files\ati technologies\ati.ace\cli.exe" runtime -Delay
mRun: [SmcService] c:\progra~1\sygate\spf\smc.exe -startgui
mRun: [WindowsUI] c:\windows\windows\WindowsUI.exe
mRun: [lxcymon.exe] "c:\program files\lexmark 3400 series\lxcymon.exe"
mRun: [EzPrint] "c:\program files\lexmark 3400 series\ezprint.exe"
mRun: [FaxCenterServer] "c:\program files\lexmark fax solutions\fm3032.exe" /s
mRun: [LXCYCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\LXCYtime.dll,_RunDLLEntry@16
mRun: [SearchSettings] c:\program files\search settings\SearchSettings.exe
mRun: [Sony Ericsson PC Suite] "c:\program files\sony ericsson\mobile2\application launcher\Application Launcher.exe" /startoptions
mRun: [Pepsi Volume Controller 3.0] c:\program files\zamaan's software\pepsi volume controller 3.0\pvc3.0.exe
mRun: [Zune Launcher] "f:\zune\ZuneLauncher.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [LogMeIn GUI] "c:\program files\logmein\x86\LogMeInSystray.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_07\bin\jusched.exe"
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [IMJPMIG8.1] c:\windows\ime\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
mRun: [IMEKRMIG6.1] c:\windows\ime\imkr6_1\IMEKRMIG.EXE
mRun: [MSPY2002] c:\windows\system32\ime\pintlgnt\ImScInst.exe /SYNC
mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\bin\AppleSyncNotifier.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
dRun: [MySpaceIM] c:\program files\myspace\im\MySpaceIM.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\cme.lnk - c:\program files\change mon ecran\Change Mon Ecran.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\rocket~1.lnk - c:\windows\bricopacks\vista inspirat 2\rocketdock\RocketDock.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\transbar.lnk - c:\windows\bricopacks\vista inspirat 2\transbar\TransBar.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\ubericon.lnk - c:\windows\bricopacks\vista inspirat 2\ubericon\UberIcon Manager.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\deskto~1.lnk - f:\program files\DesktopMgr.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\runnin~1.lnk - c:\program files\wificonnector\NintendoWFCReg.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\sbcsel~1.lnk - c:\program files\sbc self support tool\bin\matcli.exe
IE: &D&ownload &with BitComet - c:\program files\bitcomet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - c:\program files\bitcomet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - c:\program files\bitcomet\BitComet.exe/AddAllLink.htm
IE: Add to Change Mon Ecran - c:\windows\CmeIE.htm
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\program files\aim\aim.exe
IE: {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - "c:\program files\fiddler2\Fiddler.exe"
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll/206
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
IE: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\progra~1\yahoo!\common\yiesrvc.dll
IE: {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - {3EB9C349-7473-48AC-A59B-42F31751974B} - c:\progra~1\gogodata.com\gogoda~1\TOMAHA~1.DLL
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\program files\aim\aim.exe
IE: {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - c:\program files\fiddler2\Fiddler.exe
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll/206
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: AtiExtEvent - Ati2evxx.dll
Notify: igfxcui - igfxsrvc.dll
Notify: LMIinit - LMIinit.dll
AppInit_DLLs: avgrsstx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - c:\program files\superantispyware\SASSEH.DLL
SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\admini~1\applic~1\mozilla\firefox\profiles\8rimfbzm.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - www.yahoo.com
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=vmn&type=vendio&p=
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\FFAlert.dll
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{463f6ca5-ee3c-4be1-b7e6-7fee11953374}\platform\winnt\components\FoxyTunes.dll
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{b042753d-f57e-4e8e-a01b-7379a6d4cefb}\components\IBitCometExtension.dll
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - component: c:\program files\mozilla firefox\extensions\search@searchsettings.com\components\SearchSettingsFF.dll
FF - component: c:\program files\mozilla firefox\extensions\talkback@mozilla.org\components\qfaservices.dll

============= SERVICES / DRIVERS ===============

R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2008-6-17 97928]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2008-6-17 26824]
R1 SASKUTIL;SASKUTIL;\??\c:\program files\superantispyware\SASKUTIL.sys [2008-2-29 55024]
R2 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2008-6-17 76040]
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2008-1-6 13352]
S3 SASENUM;SASENUM;\??\c:\program files\superantispyware\SASENUM.SYS [2006-2-16 4096]
S3 w200bus;Sony Ericsson W200 driver (WDM);c:\windows\system32\drivers\w200bus.sys [2008-1-5 61504]
S3 w200mdfl;Sony Ericsson W200 USB WMC Modem Filter;c:\windows\system32\drivers\w200mdfl.sys [2008-1-5 9328]
S3 w200mdm;Sony Ericsson W200 USB WMC Modem Driver;c:\windows\system32\drivers\w200mdm.sys [2008-1-5 97056]
S3 w200mgmt;Sony Ericsson W200 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\w200mgmt.sys [2008-1-5 88560]
S3 w200obex;Sony Ericsson W200 USB WMC OBEX Interface;c:\windows\system32\drivers\w200obex.sys [2008-1-5 86368]
S3 xusb20;Xbox 360 Wireless Receiver for Windows Driver Service;c:\windows\system32\drivers\xusb20.sys [2006-10-13 50048]

=============== Created Last 30 ================

2008-12-23 01:26 <DIR> --d----- c:\program files\EsetOnlineScanner
2008-12-23 01:01 <DIR> --d----- C:\_OTMoveIt
2008-12-19 12:23 <DIR> --d----- c:\windows\ie8updates
2008-12-16 23:13 <DIR> --d----- c:\program files\MSECache
2008-12-16 20:04 <DIR> --d----- c:\program files\Steam
2008-12-14 11:44 268 a---h--- C:\sqmdata09.sqm
2008-12-14 11:44 244 a---h--- C:\sqmnoopt09.sqm
2008-12-07 20:22 <DIR> --d----- c:\program files\MagicISO
2008-12-07 15:21 <DIR> --d----- c:\program files\iPod
2008-12-07 15:21 <DIR> --d----- c:\docume~1\alluse~1\applic~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-11-29 12:09 18,560 a------- c:\windows\system32\drivers\vtcdrv.sys
2008-11-29 12:09 19,840 a------- c:\windows\system32\drivers\StMp3Rec.sys
2008-11-29 12:09 <DIR> --d----- c:\program files\Player Update
2008-11-27 00:28 <DIR> --d----- c:\docume~1\admini~1\applic~1\BitTorrent
2008-11-27 00:20 <DIR> --d----- c:\program files\DNA
2008-11-27 00:20 <DIR> --d----- c:\docume~1\admini~1\applic~1\DNA
2008-11-27 00:20 <DIR> --d----- c:\program files\BitTorrent

==================== Find3M ====================

2008-10-23 07:01 283,648 a------- c:\windows\system32\gdi32.dll
2008-10-16 14:06 268,648 a------- c:\windows\system32\mucltui.dll
2008-10-16 14:06 208,744 a------- c:\windows\system32\muweb.dll
2008-10-03 04:15 247,326 a------- c:\windows\system32\strmdll.dll
2008-09-30 16:43 1,286,152 a------- c:\windows\system32\msxml4.dll
2008-06-25 16:36 61,456 a------- c:\docume~1\admini~1\applic~1\GDIPFONTCACHEV1.DAT
2008-04-24 15:47 59,782,440 a------- c:\program files\iTunesSetup.exe
2008-01-07 17:40 13,113,779 a------- c:\program files\toneThisPackage.exe
2008-01-06 00:12 37,986,872 a------- c:\program files\Update_Service_Setup-2.7.12.4.exe
2008-01-05 23:56 818,322 a------- c:\program files\iDump_Setup.exe
2008-01-05 18:59 78 a------- c:\program files\config.cfg
2008-01-05 18:55 225,280 a------- c:\program files\iDump.exe
2007-12-05 17:20 54,330,664 a------- c:\program files\iTunes75Setup.exe
2007-11-05 18:08 2,293,712 a------- c:\program files\FLV PlayerFCSetup.exe
2007-11-05 18:06 411,248 a------- c:\program files\FLV PlayerRCSetup.exe
2007-04-14 12:36 0 ----h--- c:\program files\AppUpdate.log
2007-04-14 12:19 24,265,736 a------- c:\program files\dotnetfx.exe
2007-02-25 17:43 412,536 a------- c:\program files\dBpoweramp-Codec-MonkeysAudio.exe
2005-08-29 20:17 32 a----r-- c:\documents and settings\all users\hash.dat
2005-07-22 20:37 280,064 a------- c:\docume~1\admini~1\applic~1\tizhook.bin
2004-09-18 14:28 20,480 a------- c:\windows\inf\WtUninst.exe
2005-07-20 09:34 848 a--sh--- c:\windows\system32\KGyGaAvL.sys

============= FINISH: 15:12:45.42 ===============

Attached Files



#6 Billy O'Neal

Billy O'Neal

    Visual C++ STL Maintainer


  • Malware Response Team
  • 12,304 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Redmond, Washington
  • Local time:11:38 PM

Posted 24 December 2008 - 03:02 PM

Hello, tristenkw5

Registry key HKEY_LOCAL_MACHINE\Sofware\Microsoft\Windows\CurrentVersion\Run not found.
Registry key HKEY_LOCAL_MACHINE\Sofware\Microsoft\Windows\CurrentVersion\Run not found.
Unable to set value : HKEY_LOCAL_MACHINE\Sofware\Microsoft\Windows\CurrentVersion\Run\\@|"" /E!


Apparently I can't spell software.... I spelled it sofware :thumbsup:

Please run this fixed gnilleps script ;)

Other than that, those logs look good. How are things running?

We need to execute an OTMoveIt3 script
  • Please download OTMoveIt3 by OldTimer and save it to your desktop.
  • Double click the Posted Image icon on your desktop.
  • Paste the following code under the Posted Image area. Do not include the word "Code".
    :reg
    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "Sonic RecordNow!"=-
    "Aim6"=-
    @=""
  • Push the large Posted Image button.
  • OTMI3 may ask to reboot the machine. Please do so if asked.
  • Copy/Paste the contents under the Posted Image line here in your next reply.
  • If you are unable to copy/paste from this window (as will be the case if the machine was rebooted), open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTMoveIt\MovedFiles folder, and open the newest .log file present, and copy/paste the contents of that document back here in your next post.
In your next reply, please include the following:
  • OTMoveIt3's Log

BillyIII
Twitter - My statements do not establish the official position of Microsoft Corporation, and are my own personal opinion. (But you already knew that, right?)
Posted Image

#7 tristenkw5

tristenkw5
  • Topic Starter

  • Members
  • 71 posts
  • OFFLINE
  •  
  • Local time:01:38 AM

Posted 24 December 2008 - 03:39 PM

My computer hasn't done anything too weird since the scans, but my internet did have another "Runtime Error", even after all the scans. And I don't know if I'll be able to fix it, or if it even needs to be fixed, but I still have 6 or 7 svchost.exe processes running at all times. And they take up a good amount of memory, one in particular takes up over 24,000 k, the rest averaging around 2,000 k.

========== REGISTRY ==========
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Sonic RecordNow! not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\Aim6 not found.
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\@|"" /E : value set successfully!

OTMoveIt3 by OldTimer - Version 1.0.7.2 log created on 12242008_143301

#8 Billy O'Neal

Billy O'Neal

    Visual C++ STL Maintainer


  • Malware Response Team
  • 12,304 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Redmond, Washington
  • Local time:11:38 PM

Posted 25 December 2008 - 01:32 PM

Hello, tristenkw5

I still have 6 or 7 svchost.exe processes running at all times. And they take up a good amount of memory, one in particular takes up over 24,000 k, the rest averaging around 2,000 k.

That is normal. SVCHost provides several essential windows services, including windows update, internet access, and more. These services should NOT be terminated.

but my internet did have another "Runtime Error", even after all the scans.

Do you have the exact contents of the error message?

We need to run a Scan with DDS
  • Please download DDS, and save it to your desktop, from one of the following mirrors:
  • Disable any type of "Script Blockers" or "Script Protection" installed on your system.
  • Double click Posted Image on your desktop.
  • If prompted by any script blocking tools, please allow any actions taken by DDS.
  • Two reports will open. Please reply with the generated reports:
    • DDS.txt <-- Copy and paste into your next post
    • Attach.txt <-- Attach to your next post
In your next reply, please include the following:
  • DDS.txt
  • Attach.txt

BillyIII
Twitter - My statements do not establish the official position of Microsoft Corporation, and are my own personal opinion. (But you already knew that, right?)
Posted Image

#9 Billy O'Neal

Billy O'Neal

    Visual C++ STL Maintainer


  • Malware Response Team
  • 12,304 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Redmond, Washington
  • Local time:11:38 PM

Posted 28 December 2008 - 05:49 PM

Hello, tristenkw5
Are you still here?

BillyIII
Twitter - My statements do not establish the official position of Microsoft Corporation, and are my own personal opinion. (But you already knew that, right?)
Posted Image

#10 tristenkw5

tristenkw5
  • Topic Starter

  • Members
  • 71 posts
  • OFFLINE
  •  
  • Local time:01:38 AM

Posted 28 December 2008 - 11:24 PM

Yes, I'm sorry, been away from my computer. The error that comes up alot of times says "abnormal program termination", or on some sites such as youtube it says something to do with shockwave player. It doesn't close internet explorer, just kinda makes it refresh the page, but the whole program goes unresponsive during it. I'll run the scan in just a second.

#11 tristenkw5

tristenkw5
  • Topic Starter

  • Members
  • 71 posts
  • OFFLINE
  •  
  • Local time:01:38 AM

Posted 28 December 2008 - 11:39 PM

DDS (Version 1.1.0) - NTFSx86
Run by Administrator at 22:25:30.16 on Sun 12/28/2008
Internet Explorer: 8.0.6001.18241 BrowserJavaVersion: 1.6.0_07
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.638.219 [GMT -6:00]

AV: AVG Anti-Virus Free *On-access scanning enabled* (Updated)
FW: Sygate Personal Firewall *enabled*

============== Running Processes ===============

C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
C:\Program Files\Sygate\SPF\smc.exe
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\lxcycoms.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\WgaTray.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Yahoo!\browser\ybrwicon.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\SBCSEL~1\SMARTB~1\MotiveSB.exe
C:\PROGRA~1\Yahoo!\YOP\yop.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Lexmark 3400 Series\lxcymon.exe
C:\Program Files\Lexmark 3400 Series\ezprint.exe
C:\Program Files\Zamaan's Software\Pepsi Volume Controller 3.0\pvc3.0.exe
C:\PROGRA~1\Yahoo!\YOP\SSDK02.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\GoGoData.com\GOGODA~1\ADBUST~1.EXE
C:\WINDOWS\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe
C:\Program Files\DNA\btdna.exe
C:\Documents and Settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe
C:\Program Files\WiFiConnector\NintendoWFCReg.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\MagicDisc\MagicDisc.exe
C:\Program Files\Change Mon Ecran\CmeSystray.exe
C:\WINDOWS\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Live\Messenger\usnsvc.exe
C:\Program Files\Java\jre1.6.0_07\bin\jucheck.exe
C:\Documents and Settings\Administrator\Desktop\dds.com

============== Pseudo HJT Report ===============

uSearch Page = hxxp://www.google.com
uSearch Bar = hxxp://www.google.com/ie
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uStart Page = hxxp://www.yahoo.com/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyServer = http=127.0.0.1:6711
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
mSearchAssistant = hxxp://www.google.com/ie
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Lexmark Toolbar: {1017a80c-6f09-4548-a84d-edd6ac9525f0} - c:\program files\lexmark toolbar\toolband.dll
BHO: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\tbFre1.dll
BHO: BitComet Helper: {39f7e362-828a-4b5a-bcaf-5b79bfdfea60} - c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll
BHO: AVG Safe Search: {3ca2f312-6f6e-4b53-a66e-4e65e497c8c0} - c:\program files\avg\avg8\avgssie.dll
BHO: : {53707962-6f74-2d53-2644-206d7942484f} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: Yahoo! IE Services Button: {5bab4b5b-68bc-4b02-94d6-2fc0de4a7897} - c:\progra~1\yahoo!\common\yiesrvc.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar.dll
BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.0.926.3450\swg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_219B3E1547538286.dll
BHO: SidebarAutoLaunch Class: {f2aa9440-6328-4933-b7c9-a6ccdf9cbf6d} - c:\program files\yahoo!\browser\YSidebarIEBHO.dll
TB: Yahoo! Toolbar: {ef99bd32-c1fb-11d2-892f-0090271d4f88} - c:\program files\yahoo!\companion\installs\cpn\yt.dll
TB: Freecorder Toolbar: {1392b8d2-5c05-419f-a8f6-b9f15a596612} - c:\program files\freecorder\tbFre1.dll
TB: Lexmark Toolbar: {1017a80c-6f09-4548-a84d-edd6ac9525f0} - c:\program files\lexmark toolbar\toolband.dll
TB: &Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar.dll
TB: {4E7BD74F-2B8D-469E-9FA5-A33DE8DBE931} - No File
TB: {E67C74F4-A00A-4F2C-9FEC-FD9DC004A67F} - No File
uRun: [Sonic RecordNow!]
uRun: [GoGoTray.exe] c:\program files\gogodata.com\gogodata toolbar\GoGoTray.exe
uRun: [swg] c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [Aim6]
uRun: [RocketDock] "c:\windows\bricopacks\vista inspirat 2\rocketdock\RocketDock.exe"
uRun: [WindowsUI] c:\windows\windows\WindowsUI.exe
uRun: [SUPERAntiSpyware] c:\docume~1\admini~1\locals~1\temp\ssupdate.exe software\superantispyware.com\SUPERAntiSpyware
uRun: [Veoh] "c:\program files\veoh networks\veoh\VeohClient.exe" /VeohHide
uRun: [<NO NAME>]
uRun: [BitTorrent DNA] "c:\program files\dna\btdna.exe"
uRun: [Google Update] "c:\documents and settings\administrator\local settings\application data\google\update\GoogleUpdate.exe" /c
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [YBrowser] c:\progra~1\yahoo!\browser\ybrwicon.exe
mRun: [Motive SmartBridge] c:\progra~1\sbcsel~1\smartb~1\MotiveSB.exe
mRun: [YOP] c:\progra~1\yahoo!\yop\yop.exe /autostart
mRun: [ATICCC] "c:\program files\ati technologies\ati.ace\cli.exe" runtime -Delay
mRun: [SmcService] c:\progra~1\sygate\spf\smc.exe -startgui
mRun: [WindowsUI] c:\windows\windows\WindowsUI.exe
mRun: [lxcymon.exe] "c:\program files\lexmark 3400 series\lxcymon.exe"
mRun: [EzPrint] "c:\program files\lexmark 3400 series\ezprint.exe"
mRun: [FaxCenterServer] "c:\program files\lexmark fax solutions\fm3032.exe" /s
mRun: [LXCYCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\LXCYtime.dll,_RunDLLEntry@16
mRun: [SearchSettings] c:\program files\search settings\SearchSettings.exe
mRun: [Pepsi Volume Controller 3.0] c:\program files\zamaan's software\pepsi volume controller 3.0\pvc3.0.exe
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 8.0\reader\Reader_sl.exe"
mRun: [LogMeIn GUI] "c:\program files\logmein\x86\LogMeInSystray.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre1.6.0_07\bin\jusched.exe"
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [IMJPMIG8.1] c:\windows\ime\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
mRun: [IMEKRMIG6.1] c:\windows\ime\imkr6_1\IMEKRMIG.EXE
mRun: [MSPY2002] c:\windows\system32\ime\pintlgnt\ImScInst.exe /SYNC
mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
mRun: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\bin\AppleSyncNotifier.exe
mRun: [QuickTime Task] "c:\program files\quicktime\qttask.exe" -atboottime
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
mRun: [@]
dRun: [MySpaceIM] c:\program files\myspace\im\MySpaceIM.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\cme.lnk - c:\program files\change mon ecran\Change Mon Ecran.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\magicd~1.lnk - c:\program files\magicdisc\MagicDisc.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\rocket~1.lnk - c:\windows\bricopacks\vista inspirat 2\rocketdock\RocketDock.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\transbar.lnk - c:\windows\bricopacks\vista inspirat 2\transbar\TransBar.exe
StartupFolder: c:\docume~1\admini~1\startm~1\programs\access~1\startup\ubericon.lnk - c:\windows\bricopacks\vista inspirat 2\ubericon\UberIcon Manager.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\deskto~1.lnk - f:\program files\DesktopMgr.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\runnin~1.lnk - c:\program files\wificonnector\NintendoWFCReg.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\sbcsel~1.lnk - c:\program files\sbc self support tool\bin\matcli.exe
IE: &D&ownload &with BitComet - c:\program files\bitcomet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - c:\program files\bitcomet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - c:\program files\bitcomet\BitComet.exe/AddAllLink.htm
IE: Add to Change Mon Ecran - c:\windows\CmeIE.htm
IE: {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe
IE: {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - c:\program files\aim\aim.exe
IE: {CF819DA3-9882-4944-ADF5-6EF17ECF3C6E} - "c:\program files\fiddler2\Fiddler.exe"
IE: {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://c:\program files\bitcomet\tools\BitCometBHO_1.2.8.7.dll/206
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
IE: {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - c:\progra~1\yahoo!\common\yiesrvc.dll
IE: {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - {3EB9C349-7473-48AC-A59B-42F31751974B} - c:\progra~1\gogodata.com\gogoda~1\TOMAHA~1.DLL
Trusted Zone: netmarble.jp\www
Trusted Zone: nigoro.jp
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: AtiExtEvent - Ati2evxx.dll
Notify: igfxcui - igfxsrvc.dll
Notify: LMIinit - LMIinit.dll
AppInit_DLLs: avgrsstx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\admini~1\applic~1\mozilla\firefox\profiles\8rimfbzm.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - www.yahoo.com
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=vmn&type=vendio&p=
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\FFAlert.dll
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{463f6ca5-ee3c-4be1-b7e6-7fee11953374}\platform\winnt\components\FoxyTunes.dll
FF - component: c:\documents and settings\administrator\application data\mozilla\firefox\profiles\8rimfbzm.default\extensions\{b042753d-f57e-4e8e-a01b-7379a6d4cefb}\components\IBitCometExtension.dll
FF - component: c:\program files\avg\avg8\firefox\components\avgssff.dll
FF - component: c:\program files\mozilla firefox\extensions\search@searchsettings.com\components\SearchSettingsFF.dll
FF - component: c:\program files\mozilla firefox\extensions\talkback@mozilla.org\components\qfaservices.dll

============= SERVICES / DRIVERS ===============

R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2008-6-17 97928]
R1 AvgMfx86;AVG On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2008-6-17 26824]
R1 SASKUTIL;SASKUTIL;\??\c:\program files\superantispyware\SASKUTIL.sys [2008-2-29 55024]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2008-7-5 875288]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2008-7-5 231704]
R2 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2008-6-17 76040]
R2 lxcy_device;lxcy_device;c:\windows\system32\lxcycoms.exe -service []
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\drivers\ggflt.sys [2008-1-6 13352]
S3 SASENUM;SASENUM;\??\c:\program files\superantispyware\SASENUM.SYS [2006-2-16 4096]
S3 w200bus;Sony Ericsson W200 driver (WDM);c:\windows\system32\drivers\w200bus.sys [2008-1-5 61504]
S3 w200mdfl;Sony Ericsson W200 USB WMC Modem Filter;c:\windows\system32\drivers\w200mdfl.sys [2008-1-5 9328]
S3 w200mdm;Sony Ericsson W200 USB WMC Modem Driver;c:\windows\system32\drivers\w200mdm.sys [2008-1-5 97056]
S3 w200mgmt;Sony Ericsson W200 USB WMC Device Management Drivers (WDM);c:\windows\system32\drivers\w200mgmt.sys [2008-1-5 88560]
S3 w200obex;Sony Ericsson W200 USB WMC OBEX Interface;c:\windows\system32\drivers\w200obex.sys [2008-1-5 86368]
S3 xusb20;Xbox 360 Wireless Receiver for Windows Driver Service;c:\windows\system32\drivers\xusb20.sys [2006-10-13 50048]
S4 vsdatant;vsdatant; []

=============== Created Last 30 ================

2008-12-23 01:26 <DIR> --d----- c:\program files\EsetOnlineScanner
2008-12-23 01:01 <DIR> --d----- C:\_OTMoveIt
2008-12-19 12:23 <DIR> --d----- c:\windows\ie8updates
2008-12-16 23:13 <DIR> --d----- c:\program files\MSECache
2008-12-16 20:04 <DIR> --d----- c:\program files\Steam
2008-12-14 11:44 268 a---h--- C:\sqmdata09.sqm
2008-12-14 11:44 244 a---h--- C:\sqmnoopt09.sqm
2008-12-07 20:22 <DIR> --d----- c:\program files\MagicISO
2008-12-07 15:21 <DIR> --d----- c:\program files\iPod
2008-12-07 15:21 <DIR> --d----- c:\docume~1\alluse~1\applic~1\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-11-29 12:09 18,560 a------- c:\windows\system32\drivers\vtcdrv.sys
2008-11-29 12:09 19,840 a------- c:\windows\system32\drivers\StMp3Rec.sys
2008-11-29 12:09 <DIR> --d----- c:\program files\Player Update

==================== Find3M ====================

2008-10-23 07:01 283,648 a------- c:\windows\system32\gdi32.dll
2008-10-16 14:06 268,648 a------- c:\windows\system32\mucltui.dll
2008-10-16 14:06 208,744 a------- c:\windows\system32\muweb.dll
2008-10-03 04:15 247,326 a------- c:\windows\system32\strmdll.dll
2008-09-30 16:43 1,286,152 a------- c:\windows\system32\msxml4.dll
2008-06-25 16:36 61,456 a------- c:\docume~1\admini~1\applic~1\GDIPFONTCACHEV1.DAT
2008-04-24 15:47 59,782,440 a------- c:\program files\iTunesSetup.exe
2008-01-07 17:40 13,113,779 a------- c:\program files\toneThisPackage.exe
2008-01-06 00:12 37,986,872 a------- c:\program files\Update_Service_Setup-2.7.12.4.exe
2008-01-05 23:56 818,322 a------- c:\program files\iDump_Setup.exe
2008-01-05 18:59 78 a------- c:\program files\config.cfg
2008-01-05 18:55 225,280 a------- c:\program files\iDump.exe
2007-12-05 17:20 54,330,664 a------- c:\program files\iTunes75Setup.exe
2007-11-05 18:08 2,293,712 a------- c:\program files\FLV PlayerFCSetup.exe
2007-11-05 18:06 411,248 a------- c:\program files\FLV PlayerRCSetup.exe
2007-04-14 12:36 0 ----h--- c:\program files\AppUpdate.log
2007-04-14 12:19 24,265,736 a------- c:\program files\dotnetfx.exe
2007-02-25 17:43 412,536 a------- c:\program files\dBpoweramp-Codec-MonkeysAudio.exe
2005-08-29 20:17 32 a----r-- c:\documents and settings\all users\hash.dat
2005-07-22 20:37 280,064 a------- c:\docume~1\admini~1\applic~1\tizhook.bin
2004-09-18 14:28 20,480 a------- c:\windows\inf\WtUninst.exe
2005-07-20 09:34 848 a--sh--- c:\windows\system32\KGyGaAvL.sys

============= FINISH: 22:27:57.45 ===============

Attached Files



#12 Billy O'Neal

Billy O'Neal

    Visual C++ STL Maintainer


  • Malware Response Team
  • 12,304 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Redmond, Washington
  • Local time:11:38 PM

Posted 29 December 2008 - 09:55 AM

Hello, tristenkw5
We Need to Run ComboFix

Note to readers of this post other than the starter of this thread:
ComboFix is a VERY POWERFUL tool which should NOT BE USED without guidance of an expert.

If this tool helped you, please consider a donation to it's author: Posted Image

How to run ComboFix:
  • Please download ComboFix from one of the following mirrors, and save it to your desktop.
  • Disable any running Anti-Virus or Anti-Malware programs. This includes Firewalls, Anti-Virus, Spyware Scanners, etc. Any or all of them may interfere with the running of ComboFix.
  • Double click Posted Image on your desktop.
  • Read and accept (Press Yes) to the disclaimer.
  • For Windows XP Systems: Install the Recovery Console:
    • If you are using Windows XP and do not already have the Recovery Console installed, please ensure your internet connection is active (if possible), and press Yes. If for some reason your internet is not working, please press No. If you are not using Windows XP, you will not be prompted.
    • When prompted to accept the EULA, press OK.
    • Accept Microsoft's EULA (Press Yes).
    • When you are told that the RC is installed correctly, please press YES to continue scanning for malware.
  • ComboFix will run. Simply wait for it to finish.
  • When it finishes, ComboFix will produce a log. Please post that log in your next reply here :thumbsup:
In your next reply, please include the following:
  • ComboFix.txt

BillyIII
Twitter - My statements do not establish the official position of Microsoft Corporation, and are my own personal opinion. (But you already knew that, right?)
Posted Image

#13 tristenkw5

tristenkw5
  • Topic Starter

  • Members
  • 71 posts
  • OFFLINE
  •  
  • Local time:01:38 AM

Posted 29 December 2008 - 02:42 PM

ComboFix 08-12-28.04 - Administrator 2008-12-29 13:17:55.3 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.2.1252.1.1033.18.638.281 [GMT -6:00]
Running from: c:\documents and settings\Administrator\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated)
FW: Sygate Personal Firewall *disabled*
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\Administrator\Local Settings\Temporary Internet Files\ijjistarter_verinfo.dat
c:\documents and settings\All Users\Application Data\Rabio
C:\test.txt
c:\windows\AppPatch\Custom\{deb7008b-681e-4a4a-8aae-cc833e8216ce}.sdb
c:\windows\Downloaded Program Files\setup.inf
c:\windows\IE4 Error Log.txt
c:\windows\mainms.vpi
c:\windows\WINDOWS
c:\windows\wintst32.tmp

.
((((((((((((((((((((((((( Files Created from 2008-11-28 to 2008-12-29 )))))))))))))))))))))))))))))))
.

2008-12-23 10:48 . 2008-12-23 11:06 <DIR> d-------- c:\documents and settings\Administrator\Application Data\U3
2008-12-23 01:26 . 2008-12-23 15:00 <DIR> d-------- c:\program files\EsetOnlineScanner
2008-12-23 01:01 . 2008-12-23 01:01 <DIR> d-------- C:\_OTMoveIt
2008-12-19 12:23 . 2008-12-19 12:23 <DIR> d-------- c:\windows\ie8updates
2008-12-16 23:13 . 2008-12-16 23:13 <DIR> d-------- c:\program files\MSECache
2008-12-16 20:04 . 2008-12-23 20:37 <DIR> d-------- c:\program files\Steam
2008-12-14 11:44 . 2008-12-14 11:44 268 --ah----- C:\sqmdata09.sqm
2008-12-14 11:44 . 2008-12-14 11:44 244 --ah----- C:\sqmnoopt09.sqm
2008-12-12 11:18 . 2008-12-12 11:18 87,336 --a------ c:\windows\system32\dns-sd.exe
2008-12-12 11:11 . 2008-12-12 11:11 61,440 --a------ c:\windows\system32\dnssd.dll
2008-12-07 23:11 . 2008-12-07 23:12 <DIR> d-------- C:\rsit
2008-12-07 20:22 . 2008-12-07 20:23 <DIR> d-------- c:\program files\MagicISO
2008-12-07 15:21 . 2008-12-07 15:21 <DIR> d-------- c:\program files\iPod
2008-12-07 15:21 . 2008-12-07 15:22 <DIR> d-------- c:\documents and settings\All Users\Application Data\{3276BE95_AF08_429F_A64F_CA64CB79BCF6}
2008-11-29 12:09 . 2008-11-29 12:09 <DIR> d-------- c:\program files\Player Update
2008-11-29 12:09 . 2007-02-23 13:56 19,840 --a------ c:\windows\system32\drivers\StMp3Rec.sys
2008-11-29 12:09 . 2007-12-13 15:58 18,560 --a------ c:\windows\system32\drivers\vtcdrv.sys
2008-11-29 12:07 . 2008-11-29 12:07 <DIR> d-------- c:\documents and settings\Administrator\Application Data\InstallShield

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-29 19:15 --------- d-----w c:\documents and settings\Administrator\Application Data\DNA
2008-12-29 17:49 --------- d-----w c:\program files\Bonjour
2008-12-29 17:45 --------- d-----w c:\program files\Safari
2008-12-28 18:56 --------- d-----w c:\program files\DNA
2008-12-28 18:55 --------- d-----w c:\program files\lx_cats
2008-12-28 18:23 --------- d-----w c:\documents and settings\Administrator\Application Data\BitTorrent
2008-12-28 06:55 --------- d-----w c:\documents and settings\All Users\Application Data\Sony Ericsson
2008-12-28 06:54 --------- d-----w c:\documents and settings\Administrator\Application Data\Teleca
2008-12-28 06:53 --------- d-----w c:\program files\Common Files\Teleca Shared
2008-12-23 19:54 --------- d-----w c:\documents and settings\Administrator\Application Data\LimeWire
2008-12-23 06:58 --------- d-----w c:\documents and settings\All Users\Application Data\Viewpoint
2008-12-22 16:14 --------- d-----w c:\program files\SUPERAntiSpyware
2008-12-17 01:58 --------- d-----w c:\program files\BitComet
2008-12-16 22:53 --------- d-----w c:\program files\LimeWire
2008-12-07 21:22 --------- d-----w c:\program files\iTunes
2008-12-07 06:49 --------- d-----w c:\program files\BitTorrent
2008-11-29 18:09 --------- d--h--w c:\program files\InstallShield Installation Information
2008-11-15 17:17 --------- d-----w c:\documents and settings\All Users\Application Data\avg8
2008-11-13 00:23 --------- d-----w c:\program files\Change Mon Ecran
2008-11-12 02:30 --------- d-----w c:\program files\QuickTime
2008-11-12 02:29 --------- d-----w c:\program files\Common Files\Apple
2008-10-29 22:31 --------- d-----w c:\program files\Gpotato
2008-10-23 13:01 283,648 ----a-w c:\windows\system32\gdi32.dll
2008-10-16 20:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 20:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 20:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 20:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 20:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 20:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 20:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 20:08 34,328 ----a-w c:\windows\system32\wups.dll
2008-10-16 20:06 268,648 ----a-w c:\windows\system32\mucltui.dll
2008-10-16 20:06 208,744 ----a-w c:\windows\system32\muweb.dll
2008-10-03 10:15 247,326 ----a-w c:\windows\system32\strmdll.dll
2008-09-30 22:43 1,286,152 ----a-w c:\windows\system32\msxml4.dll
2008-06-25 22:36 61,456 ----a-w c:\documents and settings\Administrator\Application Data\GDIPFONTCACHEV1.DAT
2008-04-24 21:47 59,782,440 ----a-w c:\program files\iTunesSetup.exe
2008-01-07 23:40 13,113,779 ----a-w c:\program files\toneThisPackage.exe
2008-01-06 06:12 37,986,872 ----a-w c:\program files\Update_Service_Setup-2.7.12.4.exe
2008-01-06 05:56 818,322 ----a-w c:\program files\iDump_Setup.exe
2008-01-06 00:59 78 ----a-w c:\program files\config.cfg
2008-01-06 00:55 225,280 ----a-w c:\program files\iDump.exe
2007-12-05 23:20 54,330,664 ----a-w c:\program files\iTunes75Setup.exe
2007-11-06 00:08 2,293,712 ----a-w c:\program files\FLV PlayerFCSetup.exe
2007-11-06 00:06 411,248 ----a-w c:\program files\FLV PlayerRCSetup.exe
2007-04-14 18:36 0 ---h--w c:\program files\AppUpdate.log
2007-04-14 18:19 24,265,736 ----a-w c:\program files\dotnetfx.exe
2007-02-25 23:43 412,536 ----a-w c:\program files\dBpoweramp-Codec-MonkeysAudio.exe
2005-08-30 02:17 32 ----a-r c:\documents and settings\All Users\hash.dat
2005-07-23 02:37 280,064 ----a-w c:\documents and settings\Administrator\Application Data\tizhook.bin
2004-09-18 20:28 20,480 ----a-w c:\windows\inf\WtUninst.exe
2008-11-20 13:18 67,696 ----a-w c:\program files\mozilla firefox\components\jar50.dll
2008-11-20 13:18 54,376 ----a-w c:\program files\mozilla firefox\components\jsd3250.dll
2008-11-20 13:18 34,952 ----a-w c:\program files\mozilla firefox\components\myspell.dll
2008-11-20 13:18 46,720 ----a-w c:\program files\mozilla firefox\components\spellchk.dll
2008-11-20 13:18 172,144 ----a-w c:\program files\mozilla firefox\components\xpinstal.dll
2005-07-20 15:34 848 --sha-w c:\windows\system32\KGyGaAvL.sys
.

------- Sigcheck -------

2007-06-13 04:23 975360 9784e0719124e4a23989aef9e7ca02d6 c:\windows\explorer.exe
2007-06-13 05:26 1033216 7712df0cdde3a5ac89843e61cd5b3658 c:\windows\$hf_mig$\KB938828\SP2QFE\explorer.exe
2005-02-16 09:18 1032192 a0732187050030ae399b241436565e64 c:\windows\$NtUninstallKB938828$\explorer.exe
2008-04-13 18:12 1033728 12896823fb95bfb3dc9b46bcaedc9923 c:\windows\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\explorer.exe
2007-06-13 04:23 975360 9784e0719124e4a23989aef9e7ca02d6 c:\windows\system32\dllcache\explorer.exe
.
((((((((((((((((((((((((((((( snapshot_2007-12-03_14.56.23.10 )))))))))))))))))))))))))))))))))))))))))
.
+ 2005-10-12 23:12:25 14,048 ----a-w c:\windows\$hf_mig$\KB901190\spmsg.dll
+ 2005-10-12 23:12:26 213,216 ----a-w c:\windows\$hf_mig$\KB901190\spuninst.exe
+ 2005-10-12 23:12:25 22,752 ----a-w c:\windows\$hf_mig$\KB901190\update\spcustom.dll
+ 2005-10-12 23:12:29 716,000 ----a-w c:\windows\$hf_mig$\KB901190\update\update.exe
+ 2005-10-12 23:12:34 371,424 ----a-w c:\windows\$hf_mig$\KB901190\update\updspapi.dll
+ 2006-03-24 04:47:44 49,152 ----a-w c:\windows\$hf_mig$\KB904942\SP2QFE\wdigest.dll
+ 2005-10-12 23:12:25 14,048 ----a-w c:\windows\$hf_mig$\KB904942\spmsg.dll
+ 2005-10-12 23:12:26 213,216 ----a-w c:\windows\$hf_mig$\KB904942\spuninst.exe
+ 2005-10-12 23:12:25 22,752 ----a-w c:\windows\$hf_mig$\KB904942\update\spcustom.dll
+ 2005-10-12 23:12:29 716,000 ----a-w c:\windows\$hf_mig$\KB904942\update\update.exe
+ 2005-10-12 23:12:34 371,424 ----a-w c:\windows\$hf_mig$\KB904942\update\updspapi.dll
+ 2006-07-14 15:52:22 121,856 ----a-w c:\windows\$hf_mig$\KB915865\SP2QFE\xmllite.dll
+ 2005-10-12 23:12:25 14,048 ----a-w c:\windows\$hf_mig$\KB915865\spmsg.dll
+ 2005-10-12 23:12:26 213,216 ----a-w c:\windows\$hf_mig$\KB915865\spuninst.exe
+ 2005-10-12 23:12:25 22,752 ----a-w c:\windows\$hf_mig$\KB915865\update\spcustom.dll
+ 2005-10-12 23:12:28 716,000 ----a-w c:\windows\$hf_mig$\KB915865\update\update.exe
+ 2005-10-12 23:12:33 371,424 ----a-w c:\windows\$hf_mig$\KB915865\update\updspapi.dll
+ 2008-05-02 10:49:39 62,976 ----a-w c:\windows\$hf_mig$\KB932716-v2\SP3QFE\cdrom.sys
+ 2008-05-02 13:25:20 317,952 ----a-w c:\windows\$hf_mig$\KB932716-v2\SP3QFE\imapi2.dll
+ 2008-05-02 13:25:20 465,920 ----a-w c:\windows\$hf_mig$\KB932716-v2\SP3QFE\imapi2fs.dll
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB932716-v2\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB932716-v2\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB932716-v2\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB932716-v2\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w c:\windows\$hf_mig$\KB932716-v2\update\updspapi.dll
+ 2007-07-06 09:52:38 72,960 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqac.sys
+ 2007-07-06 13:08:11 138,240 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqad.dll
+ 2007-07-06 13:08:11 47,104 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqdscli.dll
+ 2007-07-06 13:08:11 16,896 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqise.dll
+ 2007-07-06 13:08:11 660,992 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqqm.dll
+ 2007-07-06 13:08:11 177,152 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqrt.dll
+ 2007-07-06 13:08:11 95,744 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqsec.dll
+ 2007-07-06 13:08:11 48,640 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqupgrd.dll
+ 2007-07-06 13:08:11 471,552 ----a-w c:\windows\$hf_mig$\KB937894\SP2QFE\mqutil.dll
+ 2005-10-12 23:12:25 14,048 ----a-w c:\windows\$hf_mig$\KB937894\spmsg.dll
+ 2005-10-12 23:12:26 213,216 ----a-w c:\windows\$hf_mig$\KB937894\spuninst.exe
+ 2005-10-12 23:12:25 22,752 ----a-w c:\windows\$hf_mig$\KB937894\update\spcustom.dll
+ 2005-10-12 23:12:29 716,000 ----a-w c:\windows\$hf_mig$\KB937894\update\update.exe
+ 2005-10-12 23:12:34 371,424 ----a-w c:\windows\$hf_mig$\KB937894\update\updspapi.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB938464\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB938464\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB938464\update\spcustom.dll
+ 2007-11-30 11:20:44 755,576 ----a-w c:\windows\$hf_mig$\KB938464\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB938464\update\updspapi.dll
+ 2007-10-29 22:35:13 1,287,680 ----a-w c:\windows\$hf_mig$\KB941568\SP2QFE\quartz.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB941568\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB941568\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB941568\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB941568\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB941568\update\updspapi.dll
+ 2007-10-30 16:53:32 360,832 ----a-w c:\windows\$hf_mig$\KB941644\SP2QFE\tcpip.sys
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB941644\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB941644\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB941644\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB941644\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB941644\update\updspapi.dll
+ 2008-03-19 09:40:27 1,845,888 ----a-w c:\windows\$hf_mig$\KB941693\SP2QFE\win32k.sys
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB941693\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB941693\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB941693\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB941693\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB941693\update\updspapi.dll
+ 2007-10-11 05:57:29 1,024,000 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\browseui.dll
+ 2007-10-11 05:57:29 151,040 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\cdfview.dll
+ 2007-10-11 05:57:30 1,054,208 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\danim.dll
+ 2007-10-11 05:57:30 357,888 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\dxtmsft.dll
+ 2007-10-11 05:57:30 205,824 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\dxtrans.dll
+ 2007-10-11 05:57:30 55,808 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\extmgr.dll
+ 2007-10-10 10:48:23 18,432 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\iedw.exe
+ 2007-10-11 05:57:31 251,904 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\iepeers.dll
+ 2007-10-11 05:57:31 96,256 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\inseng.dll
+ 2007-10-11 05:57:31 16,384 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\jsproxy.dll
+ 2007-10-30 09:55:21 3,065,856 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\mshtml.dll
+ 2007-10-11 05:57:36 449,024 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\mshtmled.dll
+ 2007-10-11 05:57:36 146,432 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\msrating.dll
+ 2007-10-11 05:57:37 532,480 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\mstime.dll
+ 2007-10-11 05:57:37 39,424 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\pngfilt.dll
+ 2007-10-11 05:57:39 1,498,112 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\shdocvw.dll
+ 2007-10-11 05:57:40 474,112 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\shlwapi.dll
+ 2007-10-11 05:57:40 617,984 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\urlmon.dll
+ 2007-10-11 05:57:41 666,112 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\wininet.dll
+ 2007-10-10 10:34:35 350,720 ----a-w c:\windows\$hf_mig$\KB942615\SP2QFE\xpsp3res.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB942615\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB942615\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB942615\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB942615\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB942615\update\updspapi.dll
+ 2007-11-13 11:02:46 60,416 ----a-w c:\windows\$hf_mig$\KB942763\SP2QFE\tzchange.exe
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB942763\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB942763\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB942763\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB942763\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB942763\update\updspapi.dll
+ 2007-11-14 07:18:03 450,560 ----a-w c:\windows\$hf_mig$\KB942840\SP2QFE\jscript.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB942840\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB942840\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB942840\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB942840\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB942840\update\updspapi.dll
+ 2007-12-04 18:29:10 551,936 ----a-w c:\windows\$hf_mig$\KB943055\SP2QFE\oleaut32.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB943055\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB943055\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB943055\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB943055\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB943055\update\updspapi.dll
+ 2007-11-07 09:50:47 727,040 ----a-w c:\windows\$hf_mig$\KB943485\SP2QFE\lsasrv.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB943485\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB943485\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB943485\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB943485\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB943485\update\updspapi.dll
+ 2007-12-18 14:32:13 450,560 ----a-w c:\windows\$hf_mig$\KB944338\SP2QFE\jscript.dll
+ 2007-12-18 14:32:13 417,792 ----a-w c:\windows\$hf_mig$\KB944338\SP2QFE\vbscript.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB944338\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB944338\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB944338\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB944338\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB944338\update\updspapi.dll
+ 2007-12-07 00:44:30 1,024,000 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\browseui.dll
+ 2007-12-07 00:44:30 151,040 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\cdfview.dll
+ 2007-12-07 00:44:32 1,054,208 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\danim.dll
+ 2007-12-07 00:44:33 357,888 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\dxtmsft.dll
+ 2007-12-07 00:44:33 205,824 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\dxtrans.dll
+ 2007-12-07 00:44:33 55,808 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\extmgr.dll
+ 2007-12-06 10:05:52 18,432 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\iedw.exe
+ 2007-12-07 00:44:33 251,904 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\iepeers.dll
+ 2007-12-07 00:44:33 96,256 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\inseng.dll
+ 2007-12-07 00:44:33 16,384 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\jsproxy.dll
+ 2007-12-07 00:44:35 3,066,368 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\mshtml.dll
+ 2007-12-07 00:44:36 449,024 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\mshtmled.dll
+ 2007-12-07 00:44:36 146,432 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\msrating.dll
+ 2007-12-07 00:44:36 532,480 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\mstime.dll
+ 2007-12-07 00:44:36 39,424 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\pngfilt.dll
+ 2007-12-07 00:44:37 1,499,136 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\shdocvw.dll
+ 2007-12-07 00:44:38 474,112 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\shlwapi.dll
+ 2007-12-07 00:44:39 617,984 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\urlmon.dll
+ 2007-12-07 00:44:39 666,112 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\wininet.dll
+ 2007-12-06 09:38:31 350,720 ----a-w c:\windows\$hf_mig$\KB944533\SP2QFE\xpsp3res.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB944533\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB944533\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB944533\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB944533\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB944533\update\updspapi.dll
+ 2007-11-13 08:47:45 20,480 ----a-w c:\windows\$hf_mig$\KB944653\SP2QFE\secdrv.sys
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB944653\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB944653\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB944653\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB944653\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB944653\update\updspapi.dll
+ 2008-02-20 05:19:35 147,968 ----a-w c:\windows\$hf_mig$\KB945553\SP2QFE\dnsapi.dll
+ 2008-02-20 18:49:36 45,568 ----a-w c:\windows\$hf_mig$\KB945553\SP2QFE\dnsrslvr.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB945553\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB945553\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB945553\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB945553\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB945553\update\updspapi.dll
+ 2007-12-18 09:38:59 179,712 ----a-w c:\windows\$hf_mig$\KB946026\SP2QFE\mrxdav.sys
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB946026\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB946026\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB946026\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB946026\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB946026\update\updspapi.dll
+ 2007-03-06 01:22:33 14,048 ----a-w c:\windows\$hf_mig$\KB946627\spmsg.dll
+ 2007-03-06 01:22:39 213,216 ----a-w c:\windows\$hf_mig$\KB946627\spuninst.exe
+ 2007-03-06 01:22:31 22,752 ----a-w c:\windows\$hf_mig$\KB946627\update\spcustom.dll
+ 2007-03-06 01:22:56 716,000 ----a-w c:\windows\$hf_mig$\KB946627\update\update.exe
+ 2007-03-06 01:23:47 371,424 ----a-w c:\windows\$hf_mig$\KB946627\update\updspapi.dll
+ 2008-05-02 13:30:08 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP2QFE\msgsc.dll
+ 2008-05-02 14:01:49 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3GDR\msgsc.dll
+ 2008-05-02 13:42:10 83,968 ----a-w c:\windows\$hf_mig$\KB946648\SP3QFE\msgsc.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB946648\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB946648\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB946648\update\spcustom.dll
+ 2007-11-30 11:20:44 755,576 ----a-w c:\windows\$hf_mig$\KB946648\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB946648\update\updspapi.dll
+ 2008-02-16 09:32:03 1,024,000 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\browseui.dll
+ 2008-02-16 09:32:03 151,040 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\cdfview.dll
+ 2008-02-16 09:32:03 1,054,208 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\danim.dll
+ 2008-02-16 09:32:04 357,888 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\dxtmsft.dll
+ 2008-02-16 09:32:04 205,312 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\dxtrans.dll
+ 2008-02-16 09:32:04 55,808 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\extmgr.dll
+ 2008-02-15 09:07:53 18,432 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\iedw.exe
+ 2008-02-16 09:32:04 251,904 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\iepeers.dll
+ 2008-02-16 09:32:04 96,256 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\inseng.dll
+ 2008-02-16 09:32:04 16,384 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\jsproxy.dll
+ 2008-02-16 09:32:06 3,066,880 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\mshtml.dll
+ 2008-02-16 09:32:06 449,024 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\mshtmled.dll
+ 2008-02-16 09:32:06 146,432 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\msrating.dll
+ 2008-02-16 09:32:07 532,480 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\mstime.dll
+ 2008-02-16 09:32:07 39,424 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\pngfilt.dll
+ 2008-02-16 09:32:08 1,499,136 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\shdocvw.dll
+ 2008-02-16 09:32:08 474,112 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\shlwapi.dll
+ 2008-02-16 09:32:08 618,496 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\urlmon.dll
+ 2008-02-16 09:32:09 666,112 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\wininet.dll
+ 2008-02-15 09:06:21 351,744 ----a-w c:\windows\$hf_mig$\KB947864\SP2QFE\xpsp3res.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB947864\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB947864\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB947864\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB947864\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB947864\update\updspapi.dll
+ 2008-02-20 06:52:43 282,624 ----a-w c:\windows\$hf_mig$\KB948590\SP2QFE\gdi32.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB948590\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB948590\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB948590\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB948590\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB948590\update\updspapi.dll
+ 2007-03-06 01:22:33 14,048 ----a-w c:\windows\$hf_mig$\KB948881\spmsg.dll
+ 2007-03-06 01:22:39 213,216 ----a-w c:\windows\$hf_mig$\KB948881\spuninst.exe
+ 2007-03-06 01:22:31 22,752 ----a-w c:\windows\$hf_mig$\KB948881\update\spcustom.dll
+ 2007-03-06 01:22:56 716,000 ----a-w c:\windows\$hf_mig$\KB948881\update\update.exe
+ 2007-03-06 01:23:47 371,424 ----a-w c:\windows\$hf_mig$\KB948881\update\updspapi.dll
+ 2008-01-23 04:56:21 554,008 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\dao360.dll
+ 2007-12-10 12:41:11 518,944 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexch40.dll
+ 2007-12-10 12:41:11 326,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msexcl40.dll
+ 2007-12-10 12:41:11 1,516,568 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjet40.dll
+ 2007-12-10 12:41:11 355,112 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjetol1.dll
+ 2008-03-27 07:39:13 151,583 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjint40.dll
+ 2007-12-10 12:41:12 60,192 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjter40.dll
+ 2007-12-10 12:41:12 248,608 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msjtes40.dll
+ 2007-12-10 12:41:12 219,936 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msltus40.dll
+ 2007-12-10 12:41:12 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mspbde40.dll
+ 2007-12-10 12:41:13 432,928 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd2x40.dll
+ 2007-12-10 12:41:13 322,336 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrd3x40.dll
+ 2007-12-10 12:41:13 559,904 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msrepl40.dll
+ 2007-12-10 12:41:13 264,992 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mstext40.dll
+ 2007-12-10 12:41:13 838,432 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswdat10.dll
+ 2007-12-10 12:41:14 621,344 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\mswstr10.dll
+ 2007-12-10 12:41:14 355,104 ----a-w c:\windows\$hf_mig$\KB950749\SP2QFE\msxbde40.dll
+ 2007-03-06 01:22:36 14,048 ----a-w c:\windows\$hf_mig$\KB950749\spmsg.dll
+ 2007-03-06 01:22:41 213,216 ----a-w c:\windows\$hf_mig$\KB950749\spuninst.exe
+ 2007-03-06 01:22:34 22,752 ----a-w c:\windows\$hf_mig$\KB950749\update\spcustom.dll
+ 2007-03-06 01:22:59 716,000 ----a-w c:\windows\$hf_mig$\KB950749\update\update.exe
+ 2007-03-06 01:23:51 371,424 ----a-w c:\windows\$hf_mig$\KB950749\update\updspapi.dll
+ 2008-04-21 06:56:54 1,024,000 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\browseui.dll
+ 2008-04-21 06:56:54 151,040 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\cdfview.dll
+ 2008-04-21 06:56:55 1,054,208 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\danim.dll
+ 2008-04-21 06:56:55 357,888 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\dxtmsft.dll
+ 2008-04-21 06:56:55 205,312 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\dxtrans.dll
+ 2008-04-21 06:56:55 55,808 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\extmgr.dll
+ 2008-04-17 10:46:59 18,432 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\iedw.exe
+ 2008-04-21 06:56:56 251,904 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\iepeers.dll
+ 2008-04-21 06:56:56 96,256 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\inseng.dll
+ 2008-04-21 06:56:56 16,384 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\jsproxy.dll
+ 2008-04-21 06:56:57 3,066,880 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\mshtml.dll
+ 2008-04-21 06:56:57 449,024 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\mshtmled.dll
+ 2008-04-21 06:56:57 146,432 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\msrating.dll
+ 2008-04-21 06:56:58 532,480 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\mstime.dll
+ 2008-04-21 06:56:58 39,424 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\pngfilt.dll
+ 2008-04-21 06:56:58 1,499,136 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\shdocvw.dll
+ 2008-04-21 06:56:58 474,112 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\shlwapi.dll
+ 2008-04-21 06:56:58 618,496 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\urlmon.dll
+ 2008-04-21 06:56:59 666,624 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\wininet.dll
+ 2008-04-17 10:37:04 351,744 ----a-w c:\windows\$hf_mig$\KB950759\SP2QFE\xpsp3res.dll
+ 2008-04-21 06:44:29 3,066,880 ----a-w c:\windows\$hf_mig$\KB950759\SP3GDR\mshtml.dll
+ 2008-04-21 06:44:29 666,112 ----a-w c:\windows\$hf_mig$\KB950759\SP3GDR\wininet.dll
+ 2008-04-21 06:24:01 3,067,392 ----a-w c:\windows\$hf_mig$\KB950759\SP3QFE\mshtml.dll
+ 2008-04-21 06:24:02 666,624 ----a-w c:\windows\$hf_mig$\KB950759\SP3QFE\wininet.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB950759\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB950759\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB950759\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB950759\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB950759\update\updspapi.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB950760\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB950760\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB950760\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB950760\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB950760\update\updspapi.dll
+ 2008-05-08 12:14:51 203,008 ----a-w c:\windows\$hf_mig$\KB950762\SP2QFE\rmcast.sys
+ 2008-05-08 14:02:52 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3GDR\rmcast.sys
+ 2008-05-08 13:58:17 203,136 ----a-w c:\windows\$hf_mig$\KB950762\SP3QFE\rmcast.sys
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB950762\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB950762\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB950762\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB950762\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB950762\update\updspapi.dll
+ 2008-07-07 20:06:43 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP2QFE\es.dll
+ 2008-07-07 20:26:58 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3GDR\es.dll
+ 2008-07-07 20:23:18 253,952 ----a-w c:\windows\$hf_mig$\KB950974\SP3QFE\es.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB950974\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB950974\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB950974\update\spcustom.dll
+ 2007-11-30 12:39:18 755,576 ----a-w c:\windows\$hf_mig$\KB950974\update\update.exe
+ 2007-11-30 12:39:19 382,840 ----a-w c:\windows\$hf_mig$\KB950974\update\updspapi.dll
+ 2008-04-11 18:39:39 683,520 ----a-w c:\windows\$hf_mig$\KB951066\SP2QFE\inetcomm.dll
+ 2008-04-11 19:04:26 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3GDR\inetcomm.dll
+ 2008-04-12 05:22:26 691,712 ----a-w c:\windows\$hf_mig$\KB951066\SP3QFE\inetcomm.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB951066\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB951066\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB951066\update\spcustom.dll
+ 2007-12-03 15:25:31 755,576 ----a-w c:\windows\$hf_mig$\KB951066\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB951066\update\updspapi.dll
+ 2008-07-14 11:03:00 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP2QFE\tzchange.exe
+ 2008-07-11 12:42:28 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3GDR\tzchange.exe
+ 2008-07-11 12:51:51 62,976 ----a-w c:\windows\$hf_mig$\KB951072-v2\SP3QFE\tzchange.exe
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB951072-v2\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB951072-v2\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB951072-v2\update\updspapi.dll
+ 2008-06-13 09:52:16 272,128 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP2QFE\bthport.sys
+ 2008-06-13 11:05:51 272,128 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3GDR\bthport.sys
+ 2008-06-13 11:27:43 272,128 ----a-w c:\windows\$hf_mig$\KB951376-v2\SP3QFE\bthport.sys
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB951376-v2\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB951376-v2\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w c:\windows\$hf_mig$\KB951376-v2\update\updspapi.dll
+ 2008-04-14 11:00:16 272,128 ----a-w c:\windows\$hf_mig$\KB951376\SP2QFE\bthport.sys
+ 2008-04-14 12:30:49 272,128 ----a-w c:\windows\$hf_mig$\KB951376\SP3GDR\bthport.sys
+ 2008-04-14 12:36:35 272,128 ----a-w c:\windows\$hf_mig$\KB951376\SP3QFE\bthport.sys
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB951376\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB951376\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB951376\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB951376\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w c:\windows\$hf_mig$\KB951376\update\updspapi.dll
+ 2008-05-07 04:55:40 1,288,192 ----a-w c:\windows\$hf_mig$\KB951698\SP2QFE\quartz.dll
+ 2008-05-07 05:12:40 1,288,192 ----a-w c:\windows\$hf_mig$\KB951698\SP3GDR\quartz.dll
+ 2008-05-07 05:04:15 1,288,192 ----a-w c:\windows\$hf_mig$\KB951698\SP3QFE\quartz.dll
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB951698\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB951698\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB951698\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB951698\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB951698\update\updspapi.dll
+ 2006-08-16 12:08:32 100,352 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\6to4svc.dll
+ 2008-06-20 10:44:08 138,368 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\afd.sys
+ 2008-06-20 17:36:11 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\dnsapi.dll
+ 2008-06-20 17:36:11 245,248 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\mswsock.dll
+ 2008-06-20 10:44:42 360,960 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip.sys
+ 2008-06-20 09:32:39 225,920 ----a-w c:\windows\$hf_mig$\KB951748\SP2QFE\tcpip6.sys
+ 2008-06-20 11:40:08 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\afd.sys
+ 2008-06-20 17:46:57 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\dnsapi.dll
+ 2008-06-20 17:46:57 245,248 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\mswsock.dll
+ 2008-06-20 11:51:12 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip.sys
+ 2008-06-20 11:08:27 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3GDR\tcpip6.sys
+ 2008-06-20 11:48:03 138,496 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\afd.sys
+ 2008-06-20 17:43:05 147,968 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\dnsapi.dll
+ 2008-06-20 17:43:05 245,248 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\mswsock.dll
+ 2008-06-20 11:59:02 361,600 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip.sys
+ 2008-06-20 11:16:44 225,856 ----a-w c:\windows\$hf_mig$\KB951748\SP3QFE\tcpip6.sys
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB951748\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB951748\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB951748\update\spcustom.dll
+ 2007-11-30 12:39:18 755,576 ----a-w c:\windows\$hf_mig$\KB951748\update\update.exe
+ 2007-11-30 12:39:19 382,840 ----a-w c:\windows\$hf_mig$\KB951748\update\updspapi.dll
+ 2008-05-01 15:04:00 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP2QFE\msadce.dll
+ 2008-05-01 14:33:02 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3GDR\msadce.dll
+ 2008-05-01 14:38:05 331,776 ----a-w c:\windows\$hf_mig$\KB952287\SP3QFE\msadce.dll
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB952287\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB952287\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB952287\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB952287\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w c:\windows\$hf_mig$\KB952287\update\updspapi.dll
+ 2008-06-24 16:28:00 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP2QFE\mscms.dll
+ 2008-06-24 16:43:16 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3GDR\mscms.dll
+ 2008-06-24 16:53:10 74,240 ----a-w c:\windows\$hf_mig$\KB952954\SP3QFE\mscms.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB952954\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB952954\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB952954\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB952954\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB952954\update\updspapi.dll
+ 2008-06-23 16:11:40 1,024,000 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\browseui.dll
+ 2008-06-23 16:11:40 151,040 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\cdfview.dll
+ 2008-06-23 16:11:42 1,054,208 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\danim.dll
+ 2008-06-23 16:11:43 357,888 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\dxtmsft.dll
+ 2008-06-23 16:11:43 205,312 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\dxtrans.dll
+ 2008-06-23 16:11:43 55,808 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\extmgr.dll
+ 2008-06-23 09:53:58 18,432 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\iedw.exe
+ 2008-06-23 16:11:52 251,904 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\iepeers.dll
+ 2008-06-23 16:11:52 96,256 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\inseng.dll
+ 2008-06-23 16:11:52 16,384 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\jsproxy.dll
+ 2008-06-23 16:11:58 3,067,392 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\mshtml.dll
+ 2008-06-23 16:12:00 449,024 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\mshtmled.dll
+ 2008-06-23 16:12:02 146,432 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\msrating.dll
+ 2008-06-23 16:12:02 532,480 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\mstime.dll
+ 2008-06-23 16:12:02 39,424 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\pngfilt.dll
+ 2008-06-23 16:12:05 1,499,136 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\shdocvw.dll
+ 2008-06-23 16:12:05 474,112 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\shlwapi.dll
+ 2008-06-23 16:12:06 618,496 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\urlmon.dll
+ 2008-06-23 16:12:08 667,136 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\wininet.dll
+ 2008-07-03 09:14:02 351,744 ----a-w c:\windows\$hf_mig$\KB953838\SP2QFE\xpsp3res.dll
+ 2008-06-23 15:09:27 3,067,392 ----a-w c:\windows\$hf_mig$\KB953838\SP3GDR\mshtml.dll
+ 2008-06-26 08:15:29 1,499,136 ----a-w c:\windows\$hf_mig$\KB953838\SP3GDR\shdocvw.dll
+ 2008-06-26 08:15:30 619,520 ----a-w c:\windows\$hf_mig$\KB953838\SP3GDR\urlmon.dll
+ 2008-06-23 15:09:27 666,112 ----a-w c:\windows\$hf_mig$\KB953838\SP3GDR\wininet.dll
+ 2008-06-25 04:24:48 3,067,904 ----a-w c:\windows\$hf_mig$\KB953838\SP3QFE\mshtml.dll
+ 2008-06-26 08:00:52 1,499,136 ----a-w c:\windows\$hf_mig$\KB953838\SP3QFE\shdocvw.dll
+ 2008-06-26 08:00:52 619,520 ----a-w c:\windows\$hf_mig$\KB953838\SP3QFE\urlmon.dll
+ 2008-06-23 14:54:47 666,624 ----a-w c:\windows\$hf_mig$\KB953838\SP3QFE\wininet.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB953838\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB953838\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB953838\update\spcustom.dll
+ 2007-11-30 12:39:18 755,576 ----a-w c:\windows\$hf_mig$\KB953838\update\update.exe
+ 2007-11-30 12:39:19 382,840 ----a-w c:\windows\$hf_mig$\KB953838\update\updspapi.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB953839\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB953839\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB953839\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB953839\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w c:\windows\$hf_mig$\KB953839\update\updspapi.dll
+ 2008-09-15 12:17:07 1,846,912 ----a-w c:\windows\$hf_mig$\KB954211\SP2QFE\win32k.sys
+ 2008-09-15 12:12:56 1,846,400 ----a-w c:\windows\$hf_mig$\KB954211\SP3GDR\win32k.sys
+ 2008-09-15 12:25:27 1,846,912 ----a-w c:\windows\$hf_mig$\KB954211\SP3QFE\win32k.sys
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB954211\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB954211\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB954211\update\spcustom.dll
+ 2008-07-09 07:38:29 755,576 ----a-w c:\windows\$hf_mig$\KB954211\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB954211\update\updspapi.dll
+ 2008-09-04 16:32:52 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP2QFE\msxml3.dll
+ 2008-09-04 17:15:04 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3GDR\msxml3.dll
+ 2008-09-04 17:12:27 1,106,944 ----a-w c:\windows\$hf_mig$\KB955069\SP3QFE\msxml3.dll
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB955069\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB955069\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB955069\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB955069\update\update.exe
+ 2008-07-09 19:08:38 382,840 ----a-w c:\windows\$hf_mig$\KB955069\update\updspapi.dll
+ 2008-10-22 09:47:25 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP2QFE\tzchange.exe
+ 2008-10-23 10:06:59 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3GDR\tzchange.exe
+ 2008-10-23 10:17:49 62,976 ----a-w c:\windows\$hf_mig$\KB955839\SP3QFE\tzchange.exe
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB955839\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB955839\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB955839\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB955839\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB955839\update\updspapi.dll
+ 2007-11-30 12:39:22 17,272 ----a-w c:\windows\$hf_mig$\KB956391\spmsg.dll
+ 2007-11-30 12:39:22 231,288 ----a-w c:\windows\$hf_mig$\KB956391\spuninst.exe
+ 2007-11-30 12:39:22 26,488 ----a-w c:\windows\$hf_mig$\KB956391\update\spcustom.dll
+ 2007-11-30 12:39:22 755,576 ----a-w c:\windows\$hf_mig$\KB956391\update\update.exe
+ 2007-11-30 12:39:22 382,840 ----a-w c:\windows\$hf_mig$\KB956391\update\updspapi.dll
+ 2008-10-23 12:51:04 284,160 ----a-w c:\windows\$hf_mig$\KB956802\SP2QFE\gdi32.dll
+ 2008-10-23 12:36:14 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3GDR\gdi32.dll
+ 2008-10-23 12:43:42 286,720 ----a-w c:\windows\$hf_mig$\KB956802\SP3QFE\gdi32.dll
+ 2008-07-08 13:02:01 17,272 ----a-w c:\windows\$hf_mig$\KB956802\spmsg.dll
+ 2008-07-08 13:02:02 231,288 ----a-w c:\windows\$hf_mig$\KB956802\spuninst.exe
+ 2008-07-08 13:02:01 26,488 ----a-w c:\windows\$hf_mig$\KB956802\update\spcustom.dll
+ 2008-07-09 07:38:29 755,576 ----a-w c:\windows\$hf_mig$\KB956802\update\update.exe
+ 2008-07-09 07:38:37 382,840 ----a-w c:\windows\$hf_mig$\KB956802\update\updspapi.dll
+ 2008-08-14 09:48:52 138,368 ----a-w c:\windows\$hf_mig$\KB956803\SP2QFE\afd.sys
+ 2008-08-14 10:04:36 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3GDR\afd.sys
+ 2008-08-14 10:34:26 138,496 ----a-w c:\windows\$hf_mig$\KB956803\SP3QFE\afd.sys
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB956803\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB956803\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB956803\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB956803\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w c:\windows\$hf_mig$\KB956803\update\updspapi.dll
+ 2008-08-14 09:55:01 2,142,720 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlmp.exe
+ 2008-08-14 09:18:44 2,062,976 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrnlpa.exe
+ 2008-08-14 09:18:46 2,020,864 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntkrpamp.exe
+ 2008-08-14 09:57:20 2,185,984 ----a-w c:\windows\$hf_mig$\KB956841\SP2QFE\ntoskrnl.exe
+ 2008-08-14 10:09:26 2,145,280 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlmp.exe
+ 2008-08-14 09:33:16 2,066,048 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrnlpa.exe
+ 2008-08-14 09:33:16 2,023,936 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntkrpamp.exe
+ 2008-08-14 10:11:02 2,189,184 ----a-w c:\windows\$hf_mig$\KB956841\SP3GDR\ntoskrnl.exe
+ 2008-08-14 10:39:28 2,145,280 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlmp.exe
+ 2008-08-14 20:39:46 2,066,048 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrnlpa.exe
+ 2008-08-14 10:09:44 2,023,936 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntkrpamp.exe
+ 2008-08-14 21:11:10 2,189,184 ----a-w c:\windows\$hf_mig$\KB956841\SP3QFE\ntoskrnl.exe
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB956841\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB956841\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB956841\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB956841\update\update.exe
+ 2008-07-09 07:38:37 382,840 ----a-w c:\windows\$hf_mig$\KB956841\update\updspapi.dll
+ 2008-08-28 10:35:33 333,056 ----a-w c:\windows\$hf_mig$\KB957095\SP2QFE\srv.sys
+ 2008-09-08 10:41:42 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3GDR\srv.sys
+ 2008-09-08 11:37:19 333,824 ----a-w c:\windows\$hf_mig$\KB957095\SP3QFE\srv.sys
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB957095\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB957095\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB957095\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB957095\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w c:\windows\$hf_mig$\KB957095\update\updspapi.dll
+ 2008-10-24 11:25:29 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP2QFE\mrxsmb.sys
+ 2008-10-24 11:21:09 455,296 ----a-w c:\windows\$hf_mig$\KB957097\SP3GDR\mrxsmb.sys
+ 2008-10-24 11:41:11 455,936 ----a-w c:\windows\$hf_mig$\KB957097\SP3QFE\mrxsmb.sys
+ 2008-07-08 13:02:01 17,272 ----a-w c:\windows\$hf_mig$\KB957097\spmsg.dll
+ 2008-07-08 13:02:02 231,288 ----a-w c:\windows\$hf_mig$\KB957097\spuninst.exe
+ 2008-07-08 13:02:01 26,488 ----a-w c:\windows\$hf_mig$\KB957097\update\spcustom.dll
+ 2008-07-08 13:02:04 755,576 ----a-w c:\windows\$hf_mig$\KB957097\update\update.exe
+ 2008-07-08 13:02:12 382,840 ----a-w c:\windows\$hf_mig$\KB957097\update\updspapi.dll
+ 2008-10-15 16:53:28 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP2QFE\netapi32.dll
+ 2008-10-15 16:34:24 337,408 ----a-w c:\windows\$hf_mig$\KB958644\SP3GDR\netapi32.dll
+ 2008-10-15 16:25:53 339,456 ----a-w c:\windows\$hf_mig$\KB958644\SP3QFE\netapi32.dll
+ 2007-11-30 11:18:51 17,272 ----a-w c:\windows\$hf_mig$\KB958644\spmsg.dll
+ 2007-11-30 11:18:51 231,288 ----a-w c:\windows\$hf_mig$\KB958644\spuninst.exe
+ 2007-11-30 11:18:51 26,488 ----a-w c:\windows\$hf_mig$\KB958644\update\spcustom.dll
+ 2007-11-30 11:18:51 755,576 ----a-w c:\windows\$hf_mig$\KB958644\update\update.exe
+ 2007-11-30 11:18:51 382,840 ----a-w c:\windows\$hf_mig$\KB958644\update\updspapi.dll
+ 2006-05-25 16:29:04 213,216 -c----w c:\windows\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\spuninst.exe
+ 2006-05-25 16:29:04 371,424 -c----w c:\windows\$NtServicePackUninstallIDNMitigationAPIs$\spuninst\updspapi.dll
+ 2006-05-24 18:32:48 213,216 -c----w c:\windows\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\spuninst.exe
+ 2006-05-24 18:32:48 371,424 -c----w c:\windows\$NtServicePackUninstallNLSDownlevelMapping$\spuninst\updspapi.dll
+ 2005-10-12 23:12:26 213,216 -c----w c:\windows\$NtUninstallKB901190$\spuninst\spuninst.exe
+ 2005-10-12 23:12:34 371,424 -c----w c:\windows\$NtUninstallKB901190$\spuninst\updspapi.dll
+ 2005-10-12 23:12:26 213,216 -c----w c:\windows\$NtUninstallKB904942$\spuninst\spuninst.exe
+ 2005-10-12 23:12:34 371,424 -c----w c:\windows\$NtUninstallKB904942$\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 49,152 -c----w c:\windows\$NtUninstallKB904942$\wdigest.dll
+ 2004-09-22 23:45:40 28,672 -c----w c:\windows\$NtUninstallKB914440$\custsat.dll
+ 2005-10-12 23:12:26 213,216 -c----w c:\windows\$NtUninstallKB914440$\spuninst\spuninst.exe
+ 2005-10-12 23:12:33 371,424 -c----w c:\windows\$NtUninstallKB914440$\spuninst\updspapi.dll
+ 2005-10-12 23:12:26 213,216 -c----w c:\windows\$NtUninstallKB915865$\spuninst\spuninst.exe
+ 2005-10-12 23:12:33 371,424 -c----w c:\windows\$NtUninstallKB915865$\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 49,536 -c----w c:\windows\$NtUninstallKB932716-v2$\cdrom.sys
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB932716-v2$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w c:\windows\$NtUninstallKB932716-v2$\spuninst\updspapi.dll
+ 2005-06-28 16:23:26 213,216 -c----w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\spuninst.exe
+ 2005-06-28 16:23:54 371,424 -c----w c:\windows\$NtUninstallKB936782_WMP11$\spuninst\updspapi.dll
+ 2006-10-19 03:47:20 10,834,432 -c----w c:\windows\$NtUninstallKB936782_WMP11$\wmp.dll
+ 2005-02-16 15:18:56 72,960 -c----w c:\windows\$NtUninstallKB937894$\mqac.sys
+ 2005-02-16 15:18:56 138,240 -c----w c:\windows\$NtUninstallKB937894$\mqad.dll
+ 2005-02-16 15:18:56 47,104 -c----w c:\windows\$NtUninstallKB937894$\mqdscli.dll
+ 2005-02-16 15:18:56 16,896 -c----w c:\windows\$NtUninstallKB937894$\mqise.dll
+ 2005-02-16 15:18:56 660,992 -c----w c:\windows\$NtUninstallKB937894$\mqqm.dll
+ 2005-02-16 15:18:56 177,152 -c----w c:\windows\$NtUninstallKB937894$\mqrt.dll
+ 2005-02-16 15:18:56 95,744 -c----w c:\windows\$NtUninstallKB937894$\mqsec.dll
+ 2005-02-16 15:18:56 48,640 -c----w c:\windows\$NtUninstallKB937894$\mqupgrd.dll
+ 2005-02-16 15:18:56 471,552 -c----w c:\windows\$NtUninstallKB937894$\mqutil.dll
+ 2005-10-12 23:12:26 213,216 -c----w c:\windows\$NtUninstallKB937894$\spuninst\spuninst.exe
+ 2005-10-12 23:12:34 371,424 -c----w c:\windows\$NtUninstallKB937894$\spuninst\updspapi.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB938464$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB938464$\spuninst\updspapi.dll
+ 2005-06-28 16:23:26 213,216 -c----w c:\windows\$NtUninstallKB939683$\spuninst\spuninst.exe
+ 2005-06-28 16:23:54 371,424 -c----w c:\windows\$NtUninstallKB939683$\spuninst\updspapi.dll
+ 2006-11-02 00:31:34 315,904 -c----w c:\windows\$NtUninstallKB939683$\unregmp2.exe
+ 2005-08-30 03:54:26 1,287,168 -c----w c:\windows\$NtUninstallKB941568$\quartz.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB941568$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB941568$\spuninst\updspapi.dll
+ 2007-10-27 22:39:36 213,216 -c----w c:\windows\$NtUninstallKB941569$\spuninst\spuninst.exe
+ 2007-10-27 22:39:46 371,424 -c----w c:\windows\$NtUninstallKB941569$\spuninst\updspapi.dll
+ 2006-10-19 03:47:18 222,208 -c----w c:\windows\$NtUninstallKB941569$\wmasf.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB941644$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB941644$\spuninst\updspapi.dll
+ 2006-04-20 11:51:50 359,808 -c----w c:\windows\$NtUninstallKB941644$\tcpip.sys
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB941693$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB941693$\spuninst\updspapi.dll
+ 2007-03-08 13:47:48 1,843,584 -c----w c:\windows\$NtUninstallKB941693$\win32k.sys
+ 2007-08-22 13:12:15 1,020,928 -c----w c:\windows\$NtUninstallKB942615$\browseui.dll
+ 2007-08-22 13:12:15 151,040 -c----w c:\windows\$NtUninstallKB942615$\cdfview.dll
+ 2007-08-22 13:12:16 1,054,208 -c----w c:\windows\$NtUninstallKB942615$\danim.dll
+ 2007-08-22 13:12:16 357,888 -c----w c:\windows\$NtUninstallKB942615$\dxtmsft.dll
+ 2007-08-22 13:12:16 205,312 -c----w c:\windows\$NtUninstallKB942615$\dxtrans.dll
+ 2007-08-22 13:12:16 55,808 -c----w c:\windows\$NtUninstallKB942615$\extmgr.dll
+ 2007-08-21 10:30:45 18,432 -c----w c:\windows\$NtUninstallKB942615$\iedw.exe
+ 2007-08-22 13:12:16 251,392 -c----w c:\windows\$NtUninstallKB942615$\iepeers.dll
+ 2007-08-22 13:12:16 96,256 -c----w c:\windows\$NtUninstallKB942615$\inseng.dll
+ 2007-08-22 13:12:16 16,384 -c----w c:\windows\$NtUninstallKB942615$\jsproxy.dll
+ 2007-08-22 13:12:17 3,498,496 -c----w c:\windows\$NtUninstallKB942615$\mshtml.dll
+ 2007-08-22 13:12:17 449,024 -c----w c:\windows\$NtUninstallKB942615$\mshtmled.dll
+ 2007-08-22 13:12:17 146,432 -c----w c:\windows\$NtUninstallKB942615$\msrating.dll
+ 2007-08-22 13:12:17 532,480 -c----w c:\windows\$NtUninstallKB942615$\mstime.dll
+ 2007-08-22 13:12:17 39,424 -c----w c:\windows\$NtUninstallKB942615$\pngfilt.dll
+ 2007-08-22 13:12:18 1,774,080 -c----w c:\windows\$NtUninstallKB942615$\shdocvw.dll
+ 2007-08-22 13:12:18 498,688 -c----w c:\windows\$NtUninstallKB942615$\shlwapi.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB942615$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB942615$\spuninst\updspapi.dll
+ 2007-08-22 13:12:18 689,152 -c----w c:\windows\$NtUninstallKB942615$\urlmon.dll
+ 2007-08-22 13:12:18 692,736 -c----w c:\windows\$NtUninstallKB942615$\wininet.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB942763$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB942763$\spuninst\updspapi.dll
+ 2007-07-18 12:42:22 60,416 -c----w c:\windows\$NtUninstallKB942763$\tzchange.exe
+ 2006-05-18 05:24:25 450,560 -c----w c:\windows\$NtUninstallKB942840$\jscript.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB942840$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB942840$\spuninst\updspapi.dll
+ 2007-05-17 11:28:05 549,376 -c----w c:\windows\$NtUninstallKB943055$\oleaut32.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB943055$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB943055$\spuninst\updspapi.dll
+ 2006-08-17 12:28:27 721,920 -c----w c:\windows\$NtUninstallKB943485$\lsasrv.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB943485$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB943485$\spuninst\updspapi.dll
+ 2007-11-14 07:26:56 450,560 -c----w c:\windows\$NtUninstallKB944338$\jscript.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB944338$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB944338$\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 417,792 -c----w c:\windows\$NtUninstallKB944338$\vbscript.dll
+ 2007-10-11 06:13:44 1,023,488 -c----w c:\windows\$NtUninstallKB944533$\browseui.dll
+ 2007-10-11 06:13:44 151,040 -c----w c:\windows\$NtUninstallKB944533$\cdfview.dll
+ 2007-10-11 06:13:44 1,054,208 -c----w c:\windows\$NtUninstallKB944533$\danim.dll
+ 2007-10-11 06:13:44 357,888 -c----w c:\windows\$NtUninstallKB944533$\dxtmsft.dll
+ 2007-10-11 06:13:44 205,312 -c----w c:\windows\$NtUninstallKB944533$\dxtrans.dll
+ 2007-10-11 06:13:44 55,808 -c----w c:\windows\$NtUninstallKB944533$\extmgr.dll
+ 2007-10-10 11:16:27 18,432 -c----w c:\windows\$NtUninstallKB944533$\iedw.exe
+ 2007-10-11 06:13:44 251,392 -c----w c:\windows\$NtUninstallKB944533$\iepeers.dll
+ 2007-10-11 06:13:44 96,256 -c----w c:\windows\$NtUninstallKB944533$\inseng.dll
+ 2007-10-11 06:13:44 16,384 -c----w c:\windows\$NtUninstallKB944533$\jsproxy.dll
+ 2007-10-30 10:16:33 3,058,688 -c----w c:\windows\$NtUninstallKB944533$\mshtml.dll
+ 2007-10-11 06:13:45 449,024 -c----w c:\windows\$NtUninstallKB944533$\mshtmled.dll
+ 2007-10-11 06:13:45 146,432 -c----w c:\windows\$NtUninstallKB944533$\msrating.dll
+ 2007-10-11 06:13:45 532,480 -c----w c:\windows\$NtUninstallKB944533$\mstime.dll
+ 2007-10-11 06:13:45 39,424 -c----w c:\windows\$NtUninstallKB944533$\pngfilt.dll
+ 2007-10-11 06:13:45 1,494,528 -c----w c:\windows\$NtUninstallKB944533$\shdocvw.dll
+ 2007-10-11 06:13:45 474,112 -c----w c:\windows\$NtUninstallKB944533$\shlwapi.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB944533$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB944533$\spuninst\updspapi.dll
+ 2007-10-11 06:13:45 615,424 -c----w c:\windows\$NtUninstallKB944533$\urlmon.dll
+ 2007-10-11 06:13:45 659,456 -c----w c:\windows\$NtUninstallKB944533$\wininet.dll
+ 2007-10-29 10:26:53 115,712 -c----w c:\windows\$NtUninstallKB944533$\xpsp3res.dll
+ 2006-07-05 15:04:37 12,464 -c----w c:\windows\$NtUninstallKB944653$\secdrv.sys
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB944653$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB944653$\spuninst\updspapi.dll
+ 2006-06-26 17:37:10 148,480 -c----w c:\windows\$NtUninstallKB945553$\dnsapi.dll
+ 2005-02-16 15:18:56 45,568 -c----w c:\windows\$NtUninstallKB945553$\dnsrslvr.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB945553$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB945553$\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 181,248 -c----w c:\windows\$NtUninstallKB946026$\mrxdav.sys
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB946026$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB946026$\spuninst\updspapi.dll
+ 2007-03-06 01:22:39 213,216 -c----w c:\windows\$NtUninstallKB946627$\spuninst\spuninst.exe
+ 2007-03-06 01:23:47 371,424 -c----w c:\windows\$NtUninstallKB946627$\spuninst\updspapi.dll
+ 2004-08-04 06:06:34 82,944 -c----w c:\windows\$NtUninstallKB946648$\msgsc.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB946648$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB946648$\spuninst\updspapi.dll
+ 2007-12-07 01:07:12 1,023,488 -c----w c:\windows\$NtUninstallKB947864$\browseui.dll
+ 2007-12-07 01:07:12 151,040 -c----w c:\windows\$NtUninstallKB947864$\cdfview.dll
+ 2007-12-07 01:07:12 1,054,208 -c----w c:\windows\$NtUninstallKB947864$\danim.dll
+ 2007-12-07 01:07:12 357,888 -c----w c:\windows\$NtUninstallKB947864$\dxtmsft.dll
+ 2007-12-07 01:07:12 205,312 -c----w c:\windows\$NtUninstallKB947864$\dxtrans.dll
+ 2007-12-07 01:07:12 55,808 -c----w c:\windows\$NtUninstallKB947864$\extmgr.dll
+ 2007-12-06 13:07:07 18,432 -c----w c:\windows\$NtUninstallKB947864$\iedw.exe
+ 2007-12-07 01:07:12 251,392 -c----w c:\windows\$NtUninstallKB947864$\iepeers.dll
+ 2007-12-07 01:07:12 96,256 -c----w c:\windows\$NtUninstallKB947864$\inseng.dll
+ 2007-12-07 01:07:12 16,384 -c----w c:\windows\$NtUninstallKB947864$\jsproxy.dll
+ 2007-12-07 14:37:14 3,059,200 -c----w c:\windows\$NtUninstallKB947864$\mshtml.dll
+ 2007-12-07 01:07:13 449,024 -c----w c:\windows\$NtUninstallKB947864$\mshtmled.dll
+ 2007-12-07 01:07:13 146,432 -c----w c:\windows\$NtUninstallKB947864$\msrating.dll
+ 2007-12-07 01:07:13 532,480 -c----w c:\windows\$NtUninstallKB947864$\mstime.dll
+ 2007-12-07 01:07:13 39,424 -c----w c:\windows\$NtUninstallKB947864$\pngfilt.dll
+ 2007-12-07 01:07:13 1,494,528 -c----w c:\windows\$NtUninstallKB947864$\shdocvw.dll
+ 2007-12-07 01:07:13 474,112 -c----w c:\windows\$NtUninstallKB947864$\shlwapi.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB947864$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB947864$\spuninst\updspapi.dll
+ 2007-12-07 01:07:14 615,424 -c----w c:\windows\$NtUninstallKB947864$\urlmon.dll
+ 2007-12-07 01:07:14 659,456 -c----w c:\windows\$NtUninstallKB947864$\wininet.dll
+ 2007-12-06 09:38:31 350,720 -c----w c:\windows\$NtUninstallKB947864$\xpsp3res.dll
+ 2007-06-19 13:31:19 282,112 -c----w c:\windows\$NtUninstallKB948590$\gdi32.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB948590$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB948590$\spuninst\updspapi.dll
+ 2007-03-06 01:22:39 213,216 -c----w c:\windows\$NtUninstallKB948881$\spuninst\spuninst.exe
+ 2007-03-06 01:23:47 371,424 -c----w c:\windows\$NtUninstallKB948881$\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 561,179 -c----w c:\windows\$NtUninstallKB950749$\dao360.dll
+ 2005-02-16 15:18:56 512,029 -c----w c:\windows\$NtUninstallKB950749$\msexch40.dll
+ 2005-02-16 15:18:56 319,517 -c----w c:\windows\$NtUninstallKB950749$\msexcl40.dll
+ 2005-02-16 15:18:56 1,507,356 -c----w c:\windows\$NtUninstallKB950749$\msjet40.dll
+ 2005-02-16 15:18:56 358,976 -c----w c:\windows\$NtUninstallKB950749$\msjetol1.dll
+ 2005-02-16 15:18:56 358,976 -c----w c:\windows\$NtUninstallKB950749$\msjetoledb40.dll
+ 2005-02-16 15:18:56 151,583 -c----w c:\windows\$NtUninstallKB950749$\msjint40.dll
+ 2005-02-16 15:18:56 53,279 -c----w c:\windows\$NtUninstallKB950749$\msjter40.dll
+ 2005-02-16 15:18:56 241,693 -c----w c:\windows\$NtUninstallKB950749$\msjtes40.dll
+ 2005-02-16 15:18:56 213,023 -c----w c:\windows\$NtUninstallKB950749$\msltus40.dll
+ 2005-02-16 15:18:56 348,189 -c----w c:\windows\$NtUninstallKB950749$\mspbde40.dll
+ 2005-02-16 15:18:56 421,919 -c----w c:\windows\$NtUninstallKB950749$\msrd2x40.dll
+ 2005-02-16 15:18:56 315,423 -c----w c:\windows\$NtUninstallKB950749$\msrd3x40.dll
+ 2005-02-16 15:18:56 552,989 -c----w c:\windows\$NtUninstallKB950749$\msrepl40.dll
+ 2005-02-16 15:18:56 258,077 -c----w c:\windows\$NtUninstallKB950749$\mstext40.dll
+ 2005-02-16 15:18:56 831,519 -c----w c:\windows\$NtUninstallKB950749$\mswdat10.dll
+ 2005-02-16 15:18:56 614,429 -c----w c:\windows\$NtUninstallKB950749$\mswstr10.dll
+ 2005-02-16 15:18:56 348,189 -c----w c:\windows\$NtUninstallKB950749$\msxbde40.dll
+ 2007-03-06 01:22:41 213,216 -c----w c:\windows\$NtUninstallKB950749$\spuninst\spuninst.exe
+ 2007-03-06 01:23:51 371,424 -c----w c:\windows\$NtUninstallKB950749$\spuninst\updspapi.dll
+ 2008-02-16 08:59:34 1,023,488 -c----w c:\windows\$NtUninstallKB950759$\browseui.dll
+ 2008-02-16 08:59:35 151,040 -c----w c:\windows\$NtUninstallKB950759$\cdfview.dll
+ 2008-02-16 08:59:35 1,054,208 -c----w c:\windows\$NtUninstallKB950759$\danim.dll
+ 2008-02-16 08:59:35 357,888 -c----w c:\windows\$NtUninstallKB950759$\dxtmsft.dll
+ 2008-02-16 08:59:35 205,312 -c----w c:\windows\$NtUninstallKB950759$\dxtrans.dll
+ 2008-02-16 08:59:35 55,808 -c----w c:\windows\$NtUninstallKB950759$\extmgr.dll
+ 2008-02-15 09:23:37 18,432 -c----w c:\windows\$NtUninstallKB950759$\iedw.exe
+ 2008-02-16 08:59:35 251,392 -c----w c:\windows\$NtUninstallKB950759$\iepeers.dll
+ 2008-02-16 08:59:35 96,256 -c----w c:\windows\$NtUninstallKB950759$\inseng.dll
+ 2008-02-16 08:59:35 16,384 -c----w c:\windows\$NtUninstallKB950759$\jsproxy.dll
+ 2008-02-16 22:29:38 3,059,712 -c----w c:\windows\$NtUninstallKB950759$\mshtml.dll
+ 2008-02-16 08:59:37 449,024 -c----w c:\windows\$NtUninstallKB950759$\mshtmled.dll
+ 2008-02-16 08:59:37 146,432 -c----w c:\windows\$NtUninstallKB950759$\msrating.dll
+ 2008-02-16 08:59:37 532,480 -c----w c:\windows\$NtUninstallKB950759$\mstime.dll
+ 2008-02-16 08:59:37 39,424 -c----w c:\windows\$NtUninstallKB950759$\pngfilt.dll
+ 2008-02-16 08:59:38 1,494,528 -c----w c:\windows\$NtUninstallKB950759$\shdocvw.dll
+ 2008-02-16 08:59:38 474,112 -c----w c:\windows\$NtUninstallKB950759$\shlwapi.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB950759$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB950759$\spuninst\updspapi.dll
+ 2008-02-16 08:59:38 615,936 -c----w c:\windows\$NtUninstallKB950759$\urlmon.dll
+ 2008-02-16 08:59:39 659,456 -c----w c:\windows\$NtUninstallKB950759$\wininet.dll
+ 2008-02-15 09:06:21 351,744 -c----w c:\windows\$NtUninstallKB950759$\xpsp3res.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB950760$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB950760$\spuninst\updspapi.dll
+ 2006-07-13 08:48:58 202,240 -c----w c:\windows\$NtUninstallKB950762$\rmcast.sys
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB950762$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB950762$\spuninst\updspapi.dll
+ 2005-07-26 04:39:45 243,200 -c----w c:\windows\$NtUninstallKB950974$\es.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB950974$\spuninst\spuninst.exe
+ 2007-11-30 12:39:19 382,840 -c----w c:\windows\$NtUninstallKB950974$\spuninst\updspapi.dll
+ 2007-08-21 06:15:44 683,520 -c----w c:\windows\$NtUninstallKB951066$\inetcomm.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB951066$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB951066$\spuninst\updspapi.dll
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB951072-v2$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB951072-v2$\spuninst\updspapi.dll
+ 2007-11-13 11:31:11 60,416 -c----w c:\windows\$NtUninstallKB951072-v2$\tzchange.exe
+ 2008-04-14 11:01:02 272,128 -c----w c:\windows\$NtUninstallKB951376-v2$\bthport.sys
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB951376-v2$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w c:\windows\$NtUninstallKB951376-v2$\spuninst\updspapi.dll
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB951376$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w c:\windows\$NtUninstallKB951376$\spuninst\updspapi.dll
+ 2007-10-29 22:43:03 1,287,680 -c----w c:\windows\$NtUninstallKB951698$\quartz.dll
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB951698$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB951698$\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 138,496 -c----w c:\windows\$NtUninstallKB951748$\afd.sys
+ 2008-02-20 05:32:43 148,992 -c----w c:\windows\$NtUninstallKB951748$\dnsapi.dll
+ 2005-02-16 15:18:56 245,248 -c----w c:\windows\$NtUninstallKB951748$\mswsock.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB951748$\spuninst\spuninst.exe
+ 2007-11-30 12:39:19 382,840 -c----w c:\windows\$NtUninstallKB951748$\spuninst\updspapi.dll
+ 2007-10-30 17:20:55 360,064 -c----w c:\windows\$NtUninstallKB951748$\tcpip.sys
+ 2006-08-16 09:37:30 225,664 -c----w c:\windows\$NtUninstallKB951748$\tcpip6.sys
+ 2005-02-16 15:18:56 331,776 -c----w c:\windows\$NtUninstallKB952287$\msadce.dll
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB952287$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w c:\windows\$NtUninstallKB952287$\spuninst\updspapi.dll
+ 2005-06-29 01:46:00 74,240 -c----w c:\windows\$NtUninstallKB952954$\mscms.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB952954$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB952954$\spuninst\updspapi.dll
+ 2008-04-21 07:03:56 1,023,488 -c----w c:\windows\$NtUninstallKB953838$\browseui.dll
+ 2008-04-21 07:03:56 151,040 -c----w c:\windows\$NtUninstallKB953838$\cdfview.dll
+ 2008-04-21 07:03:57 1,054,208 -c----w c:\windows\$NtUninstallKB953838$\danim.dll
+ 2008-04-21 07:03:57 357,888 -c----w c:\windows\$NtUninstallKB953838$\dxtmsft.dll
+ 2008-04-21 07:03:57 205,312 -c----w c:\windows\$NtUninstallKB953838$\dxtrans.dll
+ 2008-04-21 07:03:57 55,808 -c----w c:\windows\$NtUninstallKB953838$\extmgr.dll
+ 2008-04-17 10:52:54 18,432 -c----w c:\windows\$NtUninstallKB953838$\iedw.exe
+ 2008-04-21 07:03:58 251,392 -c----w c:\windows\$NtUninstallKB953838$\iepeers.dll
+ 2008-04-21 07:03:58 96,256 -c----w c:\windows\$NtUninstallKB953838$\inseng.dll
+ 2008-04-21 07:03:58 16,384 -c----w c:\windows\$NtUninstallKB953838$\jsproxy.dll
+ 2008-04-21 07:03:59 3,059,712 -c----w c:\windows\$NtUninstallKB953838$\mshtml.dll
+ 2008-04-21 07:03:59 449,024 -c----w c:\windows\$NtUninstallKB953838$\mshtmled.dll
+ 2008-04-21 07:03:59 146,432 -c----w c:\windows\$NtUninstallKB953838$\msrating.dll
+ 2008-04-21 07:03:59 532,480 -c----w c:\windows\$NtUninstallKB953838$\mstime.dll
+ 2008-04-21 07:03:59 39,424 -c----w c:\windows\$NtUninstallKB953838$\pngfilt.dll
+ 2008-04-21 07:04:00 1,494,528 -c----w c:\windows\$NtUninstallKB953838$\shdocvw.dll
+ 2008-04-21 07:04:00 474,112 -c----w c:\windows\$NtUninstallKB953838$\shlwapi.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB953838$\spuninst\spuninst.exe
+ 2007-11-30 12:39:19 382,840 -c----w c:\windows\$NtUninstallKB953838$\spuninst\updspapi.dll
+ 2008-04-21 07:04:00 615,936 -c----w c:\windows\$NtUninstallKB953838$\urlmon.dll
+ 2008-04-21 07:04:00 659,456 -c----w c:\windows\$NtUninstallKB953838$\wininet.dll
+ 2008-04-17 10:37:04 351,744 -c----w c:\windows\$NtUninstallKB953838$\xpsp3res.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB953839$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w c:\windows\$NtUninstallKB953839$\spuninst\updspapi.dll
+ 2007-07-27 15:41:48 231,288 -c----w c:\windows\$NtUninstallKB954154_WM11$\spuninst\spuninst.exe
+ 2007-07-27 15:41:48 382,840 -c----w c:\windows\$NtUninstallKB954154_WM11$\spuninst\updspapi.dll
+ 2006-10-19 03:47:20 295,936 -c----w c:\windows\$NtUninstallKB954154_WM11$\wmpeffects.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB954211$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB954211$\spuninst\updspapi.dll
+ 2008-03-19 09:47:00 1,845,248 -c----w c:\windows\$NtUninstallKB954211$\win32k.sys
+ 2007-06-26 06:08:16 1,104,896 -c----w c:\windows\$NtUninstallKB955069$\msxml3.dll
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB955069$\spuninst\spuninst.exe
+ 2008-07-09 19:08:38 382,840 -c----w c:\windows\$NtUninstallKB955069$\spuninst\updspapi.dll
+ 2007-11-30 12:39:22 231,288 -c----w c:\windows\$NtUninstallKB956391$\spuninst\spuninst.exe
+ 2007-11-30 12:39:22 382,840 -c----w c:\windows\$NtUninstallKB956391$\spuninst\updspapi.dll
+ 2008-06-20 10:44:38 138,368 -c----w c:\windows\$NtUninstallKB956803$\afd.sys
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB956803$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w c:\windows\$NtUninstallKB956803$\spuninst\updspapi.dll
+ 2007-02-28 09:08:48 2,136,064 -c----w c:\windows\$NtUninstallKB956841$\ntkrnlmp.exe
+ 2007-02-28 08:38:55 2,057,600 -c----w c:\windows\$NtUninstallKB956841$\ntkrnlpa.exe
+ 2007-02-28 08:38:57 2,015,744 -c----w c:\windows\$NtUninstallKB956841$\ntkrpamp.exe
+ 2007-02-28 09:10:57 2,180,352 -c----w c:\windows\$NtUninstallKB956841$\ntoskrnl.exe
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB956841$\spuninst\spuninst.exe
+ 2008-07-09 07:38:37 382,840 -c----w c:\windows\$NtUninstallKB956841$\spuninst\updspapi.dll
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB957095$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w c:\windows\$NtUninstallKB957095$\spuninst\updspapi.dll
+ 2006-08-14 10:34:41 332,928 -c----w c:\windows\$NtUninstallKB957095$\srv.sys
+ 2006-05-05 09:41:45 453,120 -c----w c:\windows\$NtUninstallKB957097$\mrxsmb.sys
+ 2008-07-08 13:02:02 231,288 -c----w c:\windows\$NtUninstallKB957097$\spuninst\spuninst.exe
+ 2008-07-08 13:02:12 382,840 -c----w c:\windows\$NtUninstallKB957097$\spuninst\updspapi.dll
+ 2006-08-17 12:28:27 332,288 -c----w c:\windows\$NtUninstallKB958644$\netapi32.dll
+ 2007-11-30 11:18:51 231,288 -c----w c:\windows\$NtUninstallKB958644$\spuninst\spuninst.exe
+ 2007-11-30 11:18:51 382,840 -c----w c:\windows\$NtUninstallKB958644$\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 98,304 -c----w c:\windows\$NtUninstallscripten$\cscript.exe
+ 2005-02-16 15:18:56 45,083 -c----w c:\windows\$NtUninstallscripten$\dispex.dll
+ 2007-12-18 14:40:58 450,560 -c----w c:\windows\$NtUninstallscripten$\jscript.dll
+ 2005-02-16 15:18:56 159,744 -c----w c:\windows\$NtUninstallscripten$\scrobj.dll
+ 2005-02-16 15:18:56 151,552 -c----w c:\windows\$NtUninstallscripten$\scrrun.dll
+ 2005-06-28 15:23:26 213,216 -c----w c:\windows\$NtUninstallscripten$\spuninst\spuninst.exe
+ 2005-06-28 15:23:54 371,424 -c----w c:\windows\$NtUninstallscripten$\spuninst\updspapi.dll
+ 2007-12-18 14:40:58 417,792 -c----w c:\windows\$NtUninstallscripten$\vbscript.dll
+ 2005-02-16 15:18:56 114,688 -c----w c:\windows\$NtUninstallscripten$\wscript.exe
+ 2005-02-16 15:18:56 28,672 -c----w c:\windows\$NtUninstallscripten$\wshcon.dll
+ 2005-02-16 15:18:56 65,536 -c----w c:\windows\$NtUninstallscripten$\wshext.dll
+ 2006-11-02 13:22:52 51,680 -c----w c:\windows\$NtUninstallWdf01005$\spuninst\Kmdfcustom.dll
+ 2006-10-09 03:51:14 221,488 -c----w c:\windows\$NtUninstallWdf01005$\spuninst\spuninst.exe
+ 2006-10-09 03:51:14 379,184 -c----w c:\windows\$NtUninstallWdf01005$\spuninst\updspapi.dll
+ 2006-04-20 06:44:38 479,200 -c----w c:\windows\$NtUninstallWdf01005$\wdf01000.sys
+ 2006-04-20 06:44:38 30,688 -c----w c:\windows\$NtUninstallWdf01005$\wdfldr.sys
+ 2004-09-22 23:45:36 8,192 -c----w c:\windows\$NtUninstallwmp11$\asferror.dll
+ 2004-09-22 23:45:52 344,064 -c----w c:\windows\$NtUninstallwmp11$\mpvis.dll
+ 2004-09-22 23:46:04 819,200 -c----w c:\windows\$NtUninstallwmp11$\setup_wm.exe
+ 2006-05-17 00:11:54 213,216 -c----w c:\windows\$NtUninstallwmp11$\spuninst\spuninst.exe
+ 2006-05-17 00:11:54 371,424 -c----w c:\windows\$NtUninstallwmp11$\spuninst\updspapi.dll
+ 2004-09-22 23:46:10 192,512 -c----w c:\windows\$NtUninstallwmp11$\unregmp2.exe
+ 2004-09-22 23:46:14 189,440 -c----w c:\windows\$NtUninstallwmp11$\wmerror.dll
+ 2004-09-22 23:46:14 122,880 -c----w c:\windows\$NtUninstallwmp11$\wmlaunch.exe
+ 2007-04-30 13:20:24 5,537,792 -c----w c:\windows\$NtUninstallwmp11$\wmp.dll
+ 2004-09-22 23:46:20 135,168 -c----w c:\windows\$NtUninstallwmp11$\wmpasf.dll
+ 2004-09-22 23:46:20 77,824 -c----w c:\windows\$NtUninstallwmp11$\wmpband.dll
+ 2004-09-22 23:46:20 282,624 -c----w c:\windows\$NtUninstallwmp11$\wmpdxm.dll
+ 2004-09-22 23:46:20 28,672 -c----w c:\windows\$NtUninstallwmp11$\wmpenc.exe
+ 2004-09-22 23:46:20 1,589,760 -c----w c:\windows\$NtUninstallwmp11$\wmpencen.dll
+ 2004-09-22 23:46:22 73,728 -c----w c:\windows\$NtUninstallwmp11$\wmplayer.exe
+ 2004-09-22 23:46:22 3,371,008 -c----w c:\windows\$NtUninstallwmp11$\wmploc.dll
+ 2004-09-22 23:46:24 86,016 -c----w c:\windows\$NtUninstallwmp11$\wmpshell.dll
+ 2004-09-22 23:46:24 175,104 -c----w c:\windows\$NtUninstallwmp11$\wmpsrcwp.dll
+ 2008-06-07 19:55:48 73,728 ----a-w c:\windows\48B8222675E34E9092CCD30F79EA6380.TMP\WiseCustomCalla.dll
+ 2008-06-07 19:55:50 73,728 ----a-w c:\windows\48B8222675E34E9092CCD30F79EA6380.TMP\WiseCustomCalla1.dll
+ 2008-06-07 19:55:44 81,920 ----a-w c:\windows\48B8222675E34E9092CCD30F79EA6380.TMP\WiseCustomCalla2.dll
+ 2008-06-07 19:55:47 73,728 ----a-w c:\windows\48B8222675E34E9092CCD30F79EA6380.TMP\WiseCustomCalla3.dll
+ 2003-06-13 22:23:18 81,408 ----a-w c:\windows\AppPatch\AlLayer.dll
+ 2003-06-10 15:43:42 380,928 ----a-w c:\windows\AppPatch\ALRes401.dll
+ 2003-06-10 15:43:42 380,928 ----a-w c:\windows\AppPatch\ALRes404.dll
+ 2003-06-10 15:43:42 380,928 ----a-w c:\windows\AppPatch\ALRes407.dll
+ 2003-06-13 22:23:20 340,992 ----a-w c:\windows\AppPatch\ALRes409.dll
+ 2003-06-11 18:19:58 380,928 ----a-w c:\windows\AppPatch\ALRes40D.dll
+ 2003-06-10 15:43:42 380,928 ----a-w c:\windows\AppPatch\ALRes411.dll
+ 2003-06-10 15:43:42 380,928 ----a-w c:\windows\AppPatch\ALRes412.dll
+ 2003-06-10 15:43:42 380,928 ----a-w c:\windows\AppPatch\ALRes804.dll
+ 2003-06-13 22:23:06 50,176 ----a-w c:\windows\AppPatch\AppLoc.exe
- 2007-11-12 21:46:52 68,608 ----a-w c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2008-01-23 21:56:18 69,120 ----a-w c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
- 2007-11-12 21:47:13 72,192 ----a-w c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2008-01-23 21:56:35 72,192 ----a-w c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
- 2007-11-09 02:43:45 151,552 ----a-w c:\windows\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2008-01-23 22:11:51 151,552 ----a-w c:\windows\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
- 2007-11-12 21:47:14 4,308,992 ----a-w c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2008-01-23 21:55:26 4,444,160 ----a-w c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
- 2007-11-09 02:44:58 3,915,776 ----a-w c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2008-01-23 22:12:16 4,174,336 ----a-w c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
- 2007-11-12 21:47:17 482,304 ----a-w c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2008-01-23 21:56:40 483,840 ----a-w c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
- 2007-11-12 21:47:08 2,902,016 ----a-w c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2008-01-23 21:55:55 3,036,160 ----a-w c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
- 2007-11-12 21:46:40 258,048 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2008-01-23 21:56:48 258,048 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
- 2007-11-12 21:46:40 114,176 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
+ 2008-01-23 21:56:48 113,664 ----a-w c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2007-11-09 02:45:02 344,064 ----a-w c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2008-01-23 22:12:13 346,624 ----a-w c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
- 2007-11-12 21:47:27 260,096 ----a-w c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2008-01-23 21:56:36 261,120 ----a-w c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
- 2007-11-12 21:46:57 5,156,864 ----a-w c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2008-01-23 21:55:48 5,431,296 ----a-w c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
- 2007-11-12 21:46:50 10,752 ----a-w c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
+ 2008-01-23 21:56:11 10,752 ----a-w c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2007-11-12 21:46:39 507,904 ----a-w c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2008-01-23 21:55:50 507,904 ----a-w c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
- 2007-11-12 21:46:44 13,312 ----a-w c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2008-01-23 21:56:16 13,312 ----a-w c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2007-11-12 21:47:10 8,192 ----a-w c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2008-01-23 21:56:26 8,192 ----a-w c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2007-11-12 21:47:11 36,864 ----a-w c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2008-01-23 21:56:28 77,824 ----a-w c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
- 2007-11-12 21:47:12 5,632 ----a-w c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2008-01-23 21:56:29 6,656 ----a-w c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
- 2007-11-12 21:46:46 413,696 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2008-01-23 21:56:50 348,160 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
- 2007-11-12 21:46:47 36,864 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2008-01-23 21:56:52 36,864 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2007-11-12 21:46:48 647,168 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2008-01-23 21:56:59 655,360 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
- 2007-11-12 21:46:50 73,728 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2008-01-23 21:57:01 77,824 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
- 2007-11-12 21:46:45 749,568 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2008-01-23 21:56:31 749,568 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2007-11-09 02:43:44 352,256 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2008-01-23 22:11:52 397,312 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
- 2007-11-12 21:47:31 110,592 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2008-01-23 21:56:27 110,592 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2007-11-12 21:47:30 372,736 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
+ 2008-01-23 21:56:24 372,736 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2007-11-12 21:46:35 28,672 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2008-01-23 21:56:42 28,672 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2007-11-12 21:47:29 667,648 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2008-01-23 21:56:22 671,744 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
- 2007-11-12 21:47:32 5,632 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2008-01-23 21:55:41 5,632 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2007-11-12 21:46:38 12,800 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2008-01-23 21:56:45 12,800 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2007-11-12 21:46:36 32,768 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2008-01-23 21:56:21 32,768 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
- 2007-11-12 21:46:37 7,168 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2008-01-23 21:56:19 7,168 ----a-w c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
- 2007-11-09 02:44:57 593,920 ----a-w c:\windows\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
+ 2008-01-23 22:11:34 602,112 ----a-w c:\windows\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
- 2007-11-09 02:44:57 32,768 ----a-w c:\windows\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
+ 2008-01-23 22:12:17 32,768 ----a-w c:\windows\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
- 2007-11-09 02:45:01 184,320 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
+ 2008-01-23 22:12:05 184,320 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
- 2007-11-09 02:45:01 126,976 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
+ 2008-01-23 22:12:05 131,072 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
- 2007-11-09 02:45:01 376,832 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
+ 2008-01-23 22:12:04 376,832 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
- 2007-11-09 02:45:01 151,552 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
+ 2008-01-23 22:12:04 151,552 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
- 2007-11-09 02:44:59 4,972,544 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
+ 2008-01-23 22:12:01 5,210,112 ----a-w c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
- 2007-11-09 02:45:00 897,024 ----a-w c:\windows\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
+ 2008-01-23 22:11:59 897,024 ----a-w c:\windows\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
- 2007-11-09 02:45:01 528,384 ----a-w c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
+ 2008-01-23 22:12:14 528,384 ----a-w c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
- 2007-11-09 02:43:45 94,208 ----a-w c:\windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
+ 2008-01-23 22:11:52 102,400 ----a-w c:\windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
- 2007-11-12 21:47:22 110,592 ----a-w c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2008-01-23 21:56:32 110,592 ----a-w c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2007-11-12 21:46:52 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2008-01-23 21:56:34 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2007-11-12 21:47:23 413,696 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2008-01-23 21:55:52 425,984 ----a-w c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
- 2007-11-12 21:47:18 716,800 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2008-01-23 21:55:58 741,376 ----a-w c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
- 2007-11-12 21:46:43 888,832 ----a-w c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2008-01-23 21:56:00 933,888 ----a-w c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
- 2007-11-12 21:47:09 5,001,216 ----a-w c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2008-01-23 21:57:04 5,070,848 ----a-w c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
- 2007-11-12 21:46:54 188,416 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2008-01-23 21:56:54 188,416 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2007-11-12 21:46:53 397,312 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2008-01-23 21:56:12 401,408 ----a-w c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
- 2007-11-12 21:46:55 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2008-01-23 21:56:44 81,920 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
- 2007-11-12 21:47:25 577,536 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2008-01-23 21:55:42 630,784 ----a-w c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
- 2007-11-09 02:43:46 126,976 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2008-01-23 22:12:24 126,976 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
- 2007-11-09 02:43:46 401,408 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
+ 2008-01-23 22:12:23 430,080 ----a-w c:\windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
- 2007-11-09 02:43:46 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
+ 2008-01-23 22:11:51 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
- 2007-11-12 21:47:19 372,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2008-01-23 21:56:47 372,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2007-11-12 21:47:26 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2008-01-23 21:56:43 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
- 2007-11-12 21:47:20 299,008 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2008-01-23 21:56:39 299,008 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
- 2007-11-12 21:47:21 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-01-23 21:56:38 131,072 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
- 2007-11-09 02:43:47 884,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
+ 2008-01-23 22:11:50 929,792 ----a-w c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
- 2007-11-12 21:46:51 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2008-01-23 21:55:44 258,048 ----a-w c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2007-11-09 02:43:52 159,744 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
+ 2008-01-23 22:11:35 159,744 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
- 2007-11-09 02:43:53 16,384 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
+ 2008-01-23 22:11:35 32,768 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
- 2007-11-09 02:43:49 5,623,808 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
+ 2008-01-23 22:11:47 5,971,968 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
- 2007-11-12 21:46:56 114,688 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2008-01-23 21:55:45 114,688 ----a-w c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2007-11-09 02:45:03 688,128 ----a-w c:\windows\assembly\GAC_MSIL\System.Speech\3.0.0.0__31bf3856ad364e35\System.Speech.dll
+ 2008-01-23 22:11:33 688,128 ----a-w c:\windows\assembly\GAC_MSIL\System.Speech\3.0.0.0__31bf3856ad364e35\System.Speech.dll
- 2007-11-12 21:47:28 835,584 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2008-01-23 21:56:08 884,736 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
- 2007-11-12 21:46:59 86,016 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2008-01-23 21:56:10 90,112 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
- 2007-11-12 21:47:00 823,296 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
+ 2008-01-23 21:56:05 839,680 ----a-w c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2007-11-12 21:47:02 5,152,768 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2008-01-23 21:56:14 5,013,504 ----a-w c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
- 2007-11-09 02:58:13 1,108,784 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
+ 2008-01-23 22:12:21 1,152,040 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
- 2007-11-09 02:58:14 1,641,272 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
+ 2008-01-23 22:12:20 1,635,376 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
- 2007-11-09 02:58:13 588,592 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
+ 2008-01-23 22:12:21 578,592 ----a-w c:\windows\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
- 2007-11-12 21:47:04 2,027,520 ----a-w c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2008-01-23 21:55:46 2,068,480 ----a-w c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
- 2007-11-12 21:47:24 2,940,928 ----a-w c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2008-01-23 21:56:03 3,076,096 ----a-w c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
- 2007-11-09 02:45:00 163,840 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
+ 2008-01-23 22:11:32 163,840 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
- 2007-11-09 02:45:01 372,736 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
+ 2008-01-23 22:11:32 372,736 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
- 2007-11-09 02:45:00 32,768 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2008-01-23 22:12:12 32,768 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
- 2007-11-09 02:45:00 86,016 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
+ 2008-01-23 22:12:12 86,016 ----a-w c:\windows\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
- 2007-11-09 02:44:57 1,167,360 ----a-w c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
+ 2008-01-23 22:12:10 1,204,224 ----a-w c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
- 2007-11-09 02:45:03 81,920 ----a-w c:\windows\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2008-01-23 22:11:31 81,920 ----a-w c:\windows\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2008-01-23 22:20:41 27,136 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\c6772fd12a581ad3be49e3f2a80b5622\Accessibility.ni.dll
+ 2008-01-23 22:42:09 884,736 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\a1d353edc300e3aff0784202f68a657b\AspNetMMCExt.ni.dll
+ 2008-01-23 22:44:43 503,808 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\bb3c2f59a821abc54f420f3a9e051d6a\ComSvcConfig.ni.exe
+ 2008-01-23 22:45:07 237,568 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\c10ec9b4de2b366236ec83237dc31281\CustomMarshalers.ni.dll
+ 2008-01-23 22:44:39 15,360 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\837fe02bdcf637d5bf1e5ffb935ebb80\dfsvc.ni.exe
+ 2008-01-23 22:45:12 876,544 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\9710a3c0d11dd264c3a6b88977699e9b\Microsoft.Build.Engine.ni.dll
+ 2008-01-23 22:45:14 81,920 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e2858a45971fb30b0c0523dbb52c1d4e\Microsoft.Build.Framework.ni.dll
+ 2008-01-23 22:45:25 1,695,744 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\63d69ffdf3c640d2d104a4b74e8115f8\Microsoft.Build.Tasks.ni.dll
+ 2008-01-23 22:45:27 167,936 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\11cb5418c06e30100616fbf205588489\Microsoft.Build.Utilities.ni.dll
+ 2008-01-23 22:44:52 1,232,896 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\e3dce636e798c53ec2b44d1d4aadb850\Microsoft.Transactions.Bridge.ni.dll
+ 2008-01-23 22:44:55 401,408 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\f3902a808549b40d648206c9303f2788\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2008-01-23 22:45:37 1,740,800 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\923bd55258380eae77353d36a5a1b08f\Microsoft.VisualBasic.ni.dll
+ 2008-01-23 22:20:48 17,920 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualC\cd0730694ba5927a6efd32129783e1b4\Microsoft.VisualC.ni.dll
+ 2008-01-23 22:17:34 11,722,752 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\32e6f703c114f3a971cbe706586e3655\mscorlib.ni.dll
+ 2008-01-23 22:45:46 1,581,056 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\ab2b2664932688ae7c8e0bd9d10448ef\PresentationBuildTasks.ni.dll
+ 2008-01-23 22:22:27 40,960 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\3df824565150953afd560ca20237b881\PresentationCFFRasterizer.ni.dll
+ 2008-01-23 22:22:24 12,570,624 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\011f8e31d197b4ccb6a61c2267a38e5c\PresentationCore.ni.dll
+ 2008-01-23 22:18:36 48,640 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\4ce7fd62d4107fbe996ab305eb21ee6a\PresentationFontCache.ni.exe
+ 2008-01-23 22:27:36 393,216 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\36c6cfd5d4e80d5c548f823b2bbf5457\PresentationFramework.Aero.ni.dll
+ 2008-01-23 22:27:42 552,960 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\3f18bff5107c9a8accae6c248fdf3c2e\PresentationFramework.Luna.ni.dll
+ 2008-01-23 22:24:17 15,036,416 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\60421dda88800b14dc101ed9dca422fe\PresentationFramework.ni.dll
+ 2008-01-23 22:27:44 274,432 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\81d2540bc1c18190d0431d9a61bee65b\PresentationFramework.Royale.ni.dll
+ 2008-01-23 22:27:39 245,760 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\9df61ec7aad39fe0bac82139cd84e5e5\PresentationFramework.Classic.ni.dll
+ 2008-01-23 22:24:28 2,035,712 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\6d2716a55eb8ce6fc4cbf83f3ab329e3\PresentationUI.ni.dll
+ 2008-01-23 22:24:44 2,416,640 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\840c64bba900a6ed333ca39e63a9ca3b\ReachFramework.ni.dll
+ 2008-01-23 22:44:57 139,264 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\feac66e81309d67b48f7a9f4cb98f7c8\ServiceModelReg.ni.exe
+ 2008-01-23 22:45:00 299,008 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\169ba2fe1a4d87ede3ab8dd3d44d867e\SMDiagnostics.ni.dll
+ 2008-01-23 22:45:03 323,584 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\a098c66aa40d958878f3f5344e6ae1a4\SMSvcHost.ni.exe
+ 2008-01-23 22:46:15 262,144 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\sysglobl\6a075eb8e0f13de87d1278aa8562d51e\sysglobl.ni.dll
+ 2008-01-23 22:19:36 163,840 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\c46625ea87db53ccf6194fe17ee05c19\System.Configuration.Install.ni.dll
+ 2008-01-23 22:18:46 1,011,712 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\eee9b48577689e92db5a7b5c5de98d9b\System.Configuration.ni.dll
+ 2008-01-23 22:27:27 1,183,744 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.OracleC#\1abdb47765d0696a2fc0a1095bac0249\System.Data.OracleClient.ni.dll
+ 2008-01-23 22:19:30 2,756,608 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\e59504af41afab5e04681af951d9b302\System.Data.SqlXml.ni.dll
+ 2008-01-23 22:25:27 7,049,216 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\5f669e819da7010c1dca347a25597c42\System.Data.ni.dll
+ 2008-01-23 22:20:47 1,798,144 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\c7dea4895e1fa33d65e448c03de48d26\System.Deployment.ni.dll
+ 2008-01-23 22:27:18 10,969,088 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\c1e16b40e30a05c39be8aee46311841c\System.Design.ni.dll
+ 2008-01-23 22:24:56 1,224,704 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\914668b240550f529e54bb772c6fc881\System.DirectoryServices.ni.dll
+ 2008-01-23 22:27:31 512,000 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\f11bc82c09955cb8438d3885a99c297d\System.DirectoryServices.Protocols.ni.dll
+ 2008-01-23 22:27:21 229,376 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\b974f6c17d17a533adf6e7710c5a62fa\System.Drawing.Design.ni.dll
+ 2008-01-23 22:19:45 1,667,072 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\0e83aac37b2623f1a24c70979f31dd56\System.Drawing.ni.dll
+ 2008-01-23 22:25:35 659,456 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\646131eda5f21f4e6216733d49c22c56\System.EnterpriseServices.ni.dll
+ 2008-01-23 22:25:35 294,912 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\646131eda5f21f4e6216733d49c22c56\System.EnterpriseServices.Wrapper.dll
+ 2008-01-23 22:42:21 241,664 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\492d16599426c7ab35ad2c499a9d4ae6\System.IdentityModel.Selectors.ni.dll
+ 2008-01-23 22:42:18 1,118,208 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\bdd94a4c46e4424787dfed9381196cb3\System.IdentityModel.ni.dll
+ 2008-01-23 22:42:24 417,792 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\e1e6aa5272543f1d9dad98be897b693e\System.IO.Log.ni.dll
+ 2008-01-23 22:47:28 655,360 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Messaging\00e3750e478bac4913ee7a6c3b7cd392\System.Messaging.ni.dll
+ 2008-01-23 22:24:50 1,134,592 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\f94fbbe7d7c6e76d02cd9fb94ee8d910\System.Printing.ni.dll
+ 2008-01-23 22:25:39 815,104 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\0898f6c1de8cb89413d206e3d6a3ce1d\System.Runtime.Remoting.ni.dll
+ 2008-01-23 22:19:38 339,968 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\1f5cf8178029f5b959a9af75cb8cfedb\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2008-01-23 22:42:40 2,445,312 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\e27527e67611d8acc0d8dff6d286af23\System.Runtime.Serialization.ni.dll
+ 2008-01-23 22:19:34 733,184 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\2b5994269cc5b996231c9b21afea9a91\System.Security.ni.dll
+ 2008-01-23 22:44:35 18,071,552 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\350903c091629396c08742c996c1caba\System.ServiceModel.ni.dll
+ 2008-01-23 22:18:40 233,472 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\193ac978af569ad9ee45110b359961b9\System.ServiceProcess.ni.dll
+ 2008-01-23 22:46:13 2,039,808 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\d4147c99010667b5c547fcfc56ed7bd5\System.Speech.ni.dll
+ 2008-01-23 22:25:31 679,936 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\12e0aa1030badf4524f897e3f57b037a\System.Transactions.ni.dll
+ 2008-01-23 22:46:31 2,342,912 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\37d87b3cab1c66ec4430ebb2abeaa570\System.Web.Mobile.ni.dll
+ 2008-01-23 22:27:29 237,568 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\b5b81faf46fc63c20d5339b36edd02fa\System.Web.RegularExpressions.ni.dll
+ 2008-01-23 22:26:40 1,986,560 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\38991368499e2109ea4099a0fe29c5a3\System.Web.Services.ni.dll
+ 2008-01-23 22:26:31 12,509,184 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\67cfb70213562afe2ca9b9066764af3a\System.Web.ni.dll
+ 2008-01-23 22:20:40 13,193,216 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\3d8c79c45aa674e43f075e2e66b8caf5\System.Windows.Forms.ni.dll
+ 2008-01-23 22:46:51 3,084,288 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\9798b3ba448ba7d5f1dd70a8a1fb7562\System.Workflow.Activities.ni.dll
+ 2008-01-23 22:47:13 4,579,328 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\575dad1c0dc9d035acbab10846802ce0\System.Workflow.ComponentModel.ni.dll
+ 2008-01-23 22:47:25 2,088,960 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\9d89b57d703aefe4938b45f8b398d378\System.Workflow.Runtime.ni.dll
+ 2008-01-23 22:19:12 5,771,264 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\c98cb65a79cfccb44ea727ebe4593ede\System.Xml.ni.dll
+ 2008-01-23 22:18:35 8,265,728 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\System\ba0e3a22211ba7343e0116b051f2965a\System.ni.dll
+ 2008-01-23 22:47:36 483,328 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\c2e5aa36c753a605bdefb97ab83e8806\UIAutomationClient.ni.dll
+ 2008-01-23 22:47:42 1,118,208 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\ae395b4b568f0d71fec35e3902a46a99\UIAutomationClientsideProviders.ni.dll
+ 2008-01-23 22:22:25 50,688 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\9e249f5c0ef3e391c5aec1f9da805519\UIAutomationProvider.ni.dll
+ 2008-01-23 22:22:26 196,608 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\46e3ec015dd7b25d5ddc185534458122\UIAutomationTypes.ni.dll
+ 2008-01-23 22:21:07 3,395,584 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\0703021437c2ec71213a6b701771be86\WindowsBase.ni.dll
+ 2008-01-23 22:48:18 270,336 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\b7c202147607f93463ead99e743c78b9\WindowsFormsIntegration.ni.dll
+ 2008-01-23 22:45:05 380,928 ----a-w c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\13f498f606b7cb97c086eea149b8c872\WsatConfig.ni.exe
+ 2006-11-08 07:00:00 2,504 ----a-w c:\windows\Downloaded Program Files\catalog.dat
+ 2008-03-25 00:33:02 1,527,056 ----a-w c:\windows\Downloaded Program Files\CONFLICT.1\FP_AX_CAB_INSTALLER.exe
+ 2007-02-28 19:21:04 131,472 ----a-w c:\windows\Downloaded Program Files\CONFLICT.1\msgrchkr.dll
+ 2008-03-25 00:33:02 1,527,056 ----a-w c:\windows\Downloaded Program Files\FP_AX_CAB_INSTALLER.exe
- 2007-06-21 23:59:42 46,488 ----a-w c:\windows\Downloaded Program Files\ijjiNotify2.exe
+ 2008-06-12 04:01:48 50,608 ----a-w c:\windows\Downloaded Program Files\ijjiNotify2.exe
- 2007-06-21 23:59:46 75,160 ----a-w c:\windows\Downloaded Program Files\ijjiPreNotify2.exe
+ 2008-06-12 04:01:48 79,280 ----a-w c:\windows\Downloaded Program Files\ijjiPreNotify2.exe
- 2007-06-21 23:59:38 83,352 ----a-w c:\windows\Downloaded Program Files\ijjiPreStarter2.exe
+ 2008-06-12 04:01:50 87,472 ----a-w c:\windows\Downloaded Program Files\ijjiPreStarter2.exe
- 2007-09-10 16:55:54 114,688 ----a-w c:\windows\Downloaded Program Files\ijjiSetup1010.dll
+ 2008-06-12 04:01:50 112,048 ----a-w c:\windows\Downloaded Program Files\ijjiSetup1010.dll
- 2007-06-21 23:59:34 943,512 ----a-w c:\windows\Downloaded Program Files\ijjistarter2.exe
+ 2008-06-16 23:15:42 480,688 ----a-w c:\windows\Downloaded Program Files\ijjistarter2.exe
+ 2008-09-05 00:29:02 579,032 ----a-w c:\windows\Downloaded Program Files\PLauncher.exe
+ 2006-11-08 07:00:00 1,957 ----a-w c:\windows\Downloaded Program Files\tinfl.dat
+ 2006-11-08 07:00:00 3,027 ----a-w c:\windows\Downloaded Program Files\tscan1hd.dat
+ 2006-11-11 01:28:17 2,072 ----a-w c:\windows\Downloaded Program Files\vscanmsx.dat
+ 2008-06-13 13:10:50 272,128 ------w c:\windows\Driver Cache\i386\bthport.sys
+ 2008-05-02 09:05:56 62,592 ------w c:\windows\Driver Cache\i386\cdrom.sys
- 2006-05-05 09:41:45 453,120 ------w c:\windows\Driver Cache\i386\mrxsmb.sys
+ 2008-10-24 11:10:42 453,632 ------w c:\windows\Driver Cache\i386\mrxsmb.sys
- 2007-02-28 09:08:48 2,136,064 ------w c:\windows\Driver Cache\i386\ntkrnlmp.exe
+ 2008-08-14 09:58:27 2,136,064 ------w c:\windows\Driver Cache\i386\ntkrnlmp.exe
- 2007-02-28 08:38:55 2,057,600 ------w c:\windows\Driver Cache\i386\ntkrnlpa.exe
+ 2008-08-14 09:22:13 2,057,728 ------w c:\windows\Driver Cache\i386\ntkrnlpa.exe
- 2007-02-28 08:38:57 2,015,744 ------w c:\windows\Driver Cache\i386\ntkrpamp.exe
+ 2008-08-14 09:22:14 2,015,744 ------w c:\windows\Driver Cache\i386\ntkrpamp.exe
- 2007-02-28 09:10:57 2,180,352 ------w c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2008-08-14 10:00:45 2,180,352 ------w c:\windows\Driver Cache\i386\ntoskrnl.exe
+ 2005-10-21 02:02:28 163,328 ----a-w c:\windows\erdnt\Hiv-backup\ERDNT.EXE
+ 2008-05-04 01:18:27 163,328 ----a-w c:\windows\ERUNT\SDFIX\ERDNT.EXE
+ 2008-05-04 19:13:36 13,688,832 ----a-w c:\windows\ERUNT\SDFIX\Users\00000001\NTUSER.DAT
+ 2008-05-04 19:13:36 1,355,776 ----a-w c:\windows\ERUNT\SDFIX\Users\00000002\UsrClass.dat
+ 2008-05-04 01:18:27 163,328 ----a-w c:\windows\ERUNT\SDFIX_First_Run\ERDNT.EXE
+ 2008-05-04 19:13:13 13,688,832 ----a-w c:\windows\ERUNT\SDFIX_First_Run\Users\00000001\NTUSER.DAT
+ 2008-05-04 19:13:13 1,355,776 ----a-w c:\windows\ERUNT\SDFIX_First_Run\Users\00000002\UsrClass.dat
+ 2000-08-31 14:00:00 89,504 ----a-w c:\windows\fdsv.exe
+ 2001-04-11 09:47:26 80,384 ----a-w c:\windows\gamedelete.exe
+ 2000-08-31 14:00:00 80,412 ----a-w c:\windows\grep.exe
+ 2005-02-16 15:18:56 61,440 -c--a-w c:\windows\ie8\admparse.dll
+ 2005-02-16 15:18:56 99,840 -c--a-w c:\windows\ie8\advpack.dll
+ 2005-02-16 15:18:56 35,328 -c--a-w c:\windows\ie8\corpol.dll
+ 2008-06-23 15:38:30 357,888 -c--a-w c:\windows\ie8\dxtmsft.dll
+ 2008-06-23 15:38:30 205,312 -c--a-w c:\windows\ie8\dxtrans.dll
+ 2005-02-16 15:18:56 38,912 -c--a-w c:\windows\ie8\hmmapi.dll
+ 2005-02-16 15:18:56 34,304 -c--a-w c:\windows\ie8\ie4uinit.exe
+ 2005-02-16 15:18:56 139,264 -c--a-w c:\windows\ie8\ieakeng.dll
+ 2005-02-16 15:18:56 216,576 -c--a-w c:\windows\ie8\ieaksie.dll
+ 2005-02-16 15:18:56 221,184 -c--a-w c:\windows\ie8\ieakui.dll
+ 2005-02-16 15:18:56 323,584 -c--a-w c:\windows\ie8\iedkcs32.dll
+ 2005-02-16 15:18:56 81,920 -c--a-w c:\windows\ie8\ieencode.dll
+ 2005-02-16 15:18:56 81,920 -c--a-w c:\windows\ie8\ieencode.dll.000
+ 2008-06-23 15:38:31 251,392 -c--a-w c:\windows\ie8\iepeers.dll
+ 2005-02-16 15:18:56 48,640 -c--a-w c:\windows\ie8\iernonce.dll
+ 2005-02-16 15:18:56 62,976 -c--a-w c:\windows\ie8\iesetup.dll
+ 2005-02-16 15:18:56 832,512 -c--a-w c:\windows\ie8\iexplore.exe
+ 2005-02-16 15:18:56 35,840 -c--a-w c:\windows\ie8\imgutil.dll
+ 2008-06-23 15:38:31 96,256 -c--a-w c:\windows\ie8\inseng.dll
+ 2007-08-01 01:45:24 491,520 -c--a-w c:\windows\ie8\jscript.dll
+ 2008-06-23 15:38:31 16,384 -c--a-w c:\windows\ie8\jsproxy.dll
+ 2005-02-16 15:18:56 22,016 -c--a-w c:\windows\ie8\licmgr10.dll
+ 2005-02-16 15:18:56 29,184 -c--a-w c:\windows\ie8\mshta.exe
+ 2008-06-23 15:38:33 3,059,712 -c--a-w c:\windows\ie8\mshtml.dll
+ 2008-06-23 15:38:33 449,024 -c--a-w c:\windows\ie8\mshtmled.dll
+ 2005-02-16 15:18:56 56,832 -c--a-w c:\windows\ie8\mshtmler.dll
+ 2005-02-16 15:18:56 146,432 -c--a-w c:\windows\ie8\msls31.dll
+ 2008-06-23 15:38:33 146,432 -c--a-w c:\windows\ie8\msrating.dll
+ 2008-06-23 15:38:33 532,480 -c--a-w c:\windows\ie8\mstime.dll
+ 2005-02-16 15:18:56 146,944 -c--a-w c:\windows\ie8\occache.dll
+ 2008-06-23 15:38:33 39,424 -c--a-w c:\windows\ie8\pngfilt.dll
+ 2008-08-22 08:21:04 49,736 -c--a-w c:\windows\ie8\spuninst\iecustom.dll
+ 2008-06-12 16:27:58 231,456 -c--a-w c:\windows\ie8\spuninst\spuninst.exe
+ 2008-06-12 16:28:00 382,496 -c--a-w c:\windows\ie8\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 59,392 -c--a-w c:\windows\ie8\url.dll
+ 2008-06-23 15:38:34 615,936 -c--a-w c:\windows\ie8\urlmon.dll
+ 2007-08-01 01:45:28 413,696 -c--a-w c:\windows\ie8\vbscript.dll
+ 2007-06-26 15:13:22 851,968 -c--a-w c:\windows\ie8\vgx.dll
+ 2005-02-16 15:18:56 437,248 -c--a-w c:\windows\ie8\webcheck.dll
+ 2008-06-23 15:38:34 659,456 -c--a-w c:\windows\ie8\wininet.dll
+ 2008-08-22 08:09:32 5,699,584 -c----w c:\windows\ie8updates\KB960714-IE8\mshtml.dll
+ 2008-07-09 07:38:25 231,288 -c----w c:\windows\ie8updates\KB960714-IE8\spuninst\spuninst.exe
+ 2008-07-09 07:38:37 382,840 -c----w c:\windows\ie8updates\KB960714-IE8\spuninst\updspapi.dll
+ 2005-02-16 15:18:56 175,104 ----a-w c:\windows\ime\chsime\applets\pintlcsa.dll
+ 2005-02-16 15:18:56 53,760 ----a-w c:\windows\ime\chsime\applets\pintlcsd.dll
+ 2005-02-16 15:18:56 97,792 ----a-w c:\windows\ime\CHTIME\Applets\chtmbx.dll
+ 2005-02-16 15:18:56 56,320 ----a-w c:\windows\ime\CHTIME\Applets\chtskdic.dll
+ 2005-02-16 15:18:56 173,568 ----a-w c:\windows\ime\CHTIME\Applets\chtskf.dll
+ 2008-09-22 05:40:32 10,096,640 ----a-w c:\windows\ime\CHTIME\Applets\HWXCHT.DLL
+ 2008-09-22 05:40:48 13,463,552 ----a-w c:\windows\ime\imjp8_1\applets\hwxjpn.dll
+ 2008-09-22 05:28:18 471,102 ----a-w c:\windows\ime\imjp8_1\applets\imskdic.dll
+ 2008-09-22 05:39:27 315,452 ----a-w c:\windows\ime\imjp8_1\applets\imskf.dll
+ 2008-09-22 05:25:57 229,439 ----a-w c:\windows\ime\imjp8_1\applets\multibox.dll
+ 2008-09-22 05:25:41 143,422 ----a-w c:\windows\ime\imjp8_1\applets\softkey.dll
+ 2005-02-16 15:18:56 426,041 ----a-w c:\windows\ime\imjp8_1\applets\voicepad.dll
+ 2005-02-16 15:18:56 86,073 ----a-w c:\windows\ime\imjp8_1\applets\voicesub.dll
+ 2005-02-16 15:18:56 57,399 ----a-w c:\windows\ime\imjp8_1\cplexe.exe
+ 2005-02-16 15:18:56 368,696 ----a-w c:\windows\ime\imjp8_1\imjpcic.dll
+ 2005-02-16 15:18:56 716,856 ----a-w c:\windows\ime\imjp8_1\imjpcus.dll
+ 2008-09-22 05:26:53 57,398 ----a-w c:\windows\ime\imjp8_1\imjpdadm.exe
+ 2005-02-16 15:18:56 81,976 ----a-w c:\windows\ime\imjp8_1\imjpdct.dll
+ 2005-02-16 15:18:56 307,257 ----a-w c:\windows\ime\imjp8_1\imjpdct.exe
+ 2005-02-16 15:18:56 155,705 ----a-w c:\windows\ime\imjp8_1\imjpdsvr.exe
+ 2005-02-16 15:18:56 196,665 ----a-w c:\windows\ime\imjp8_1\imjpinst.exe
+ 2005-02-16 15:18:56 208,952 ----a-w c:\windows\ime\imjp8_1\imjpmig.exe
+ 2005-02-16 15:18:56 233,527 ----a-w c:\windows\ime\imjp8_1\imjprw.exe
+ 2008-09-22 05:38:10 45,109 ----a-w c:\windows\ime\imjp8_1\imjpuex.exe
+ 2005-02-16 15:18:56 262,200 ----a-w c:\windows\ime\imjp8_1\imjputy.exe
+ 2005-02-16 15:18:56 274,489 ----a-w c:\windows\ime\imjp8_1\imjputyc.dll
+ 2008-09-22 05:41:25 10,129,408 ----a-w c:\windows\ime\imkr6_1\applets\hwxkor.dll
+ 2005-02-16 15:18:56 86,016 ----a-w c:\windows\ime\imkr6_1\applets\imekrmbx.dll
+ 2008-09-22 05:37:34 36,864 ----a-w c:\windows\ime\imkr6_1\dicts\hanjadic.dll
+ 2005-02-16 15:18:56 106,496 ----a-w c:\windows\ime\imkr6_1\imekrcic.dll
+ 2008-09-22 05:28:43 44,032 ----a-w c:\windows\ime\imkr6_1\imekrmig.exe
+ 2008-09-22 05:37:25 59,904 ----a-w c:\windows\ime\imkr6_1\imkrinst.exe
+ 2008-09-22 05:40:12 102,463 ----a-w c:\windows\ime\shared\imepadsm.dll
+ 2008-09-22 05:29:43 311,359 ----a-w c:\windows\ime\shared\imepadsv.exe
+ 2005-02-16 15:18:56 102,456 ----a-w c:\windows\ime\shared\imlang.dll
+ 2005-02-16 15:18:56 15,872 ----a-w c:\windows\ime\shared\res\padrs404.dll
+ 2008-09-22 05:35:16 36,927 ----a-w c:\windows\ime\shared\res\padrs411.dll
+ 2008-09-22 05:38:14 14,336 ----a-w c:\windows\ime\shared\res\padrs412.dll
+ 2005-02-16 15:18:56 15,360 ----a-w c:\windows\ime\shared\res\padrs804.dll
- 2004-09-22 23:46:10 192,512 ----a-w c:\windows\inf\unregmp2.exe
+ 2007-06-27 03:10:26 317,440 ----a-w c:\windows\inf\unregmp2.exe
+ 2006-10-27 02:12:56 396,592 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\MOC.EXE
+ 2007-05-08 17:10:18 16,874,376 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\MSO.DLL
+ 2007-03-22 00:56:50 8,425,856 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\OARTCONV.DLL
+ 2006-10-27 21:18:34 1,658,152 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\OGL.DLL
+ 2007-05-10 15:04:28 846,248 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\OICE.EXE
+ 2007-05-10 16:11:42 1,767,256 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\PPCNV.DLL
+ 2007-03-22 01:00:06 72,096 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\PXBCOM.EXE
+ 2007-03-22 00:58:40 4,145,520 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\WRD12CNV.DLL
+ 2007-03-22 00:58:46 24,416 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\WRD12EXE.EXE
+ 2007-05-10 16:25:40 14,677,368 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6021\XL12CNV.EXE
+ 2007-09-15 03:45:58 16,901,168 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\MSO.DLL
+ 2007-08-29 06:19:24 1,654,648 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\OGL.DLL
+ 2007-08-24 11:00:34 1,767,768 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\PPCNV.DLL
+ 2007-08-24 11:00:48 72,096 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\PXBCOM.EXE
+ 2007-10-03 02:00:06 14,708,760 ----a-r c:\windows\Installer\$PatchCache$\Managed\00002109020090400000000000F01FEC\12.0.6215\XL12CNV.EXE
+ 2008-12-17 02:05:08 27,648 ----a-r c:\windows\Installer\{048298C9-A4D3-490B-9FF9-AB023A9238F3}\Icon048298C91.exe
+ 2008-12-29 17:50:05 86,016 ----a-r c:\windows\Installer\{07287123-B8AC-41CE-8346-3D777245C35B}\PrntWzrdIco.exe
+ 2008-12-07 21:23:09 102,400 ----a-r c:\windows\Installer\{318AB667-3230-41B5-A617-CB3BF748D371}\iTunesIco.exe
+ 2008-03-31 03:53:54 65,536 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\DesktopMgr.exe
+ 2008-03-31 03:53:54 26,694 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\NewShortcut12_C6ABA3677F944B9FBB00F060701B0B5A.exe
+ 2008-03-31 03:53:54 26,694 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\NewShortcut3_C6ABA3677F944B9FBB00F060701B0B5A.exe
+ 2008-03-31 03:53:54 26,694 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\NewShortcut4_C6ABA3677F944B9FBB00F060701B0B5A.exe
+ 2008-03-31 03:53:54 26,694 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\NewShortcut5_C6ABA3677F944B9FBB00F060701B0B5A.exe
+ 2008-03-31 03:53:54 26,694 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\NewShortcut6_C6ABA3677F944B9FBB00F060701B0B5A.exe
+ 2008-03-31 03:53:54 26,694 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\NewShortcut60_C6ABA3677F944B9FBB00F060701B0B5A.exe
+ 2008-03-31 03:53:54 26,694 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\NewShortcut600_C6ABA3677F944B9FBB00F060701B0B5A.exe
+ 2008-03-31 03:53:54 6,502 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\RedirectorEXE_770DFD1204C24F4DA163D64FACCB5CBD.exe
+ 2008-03-31 03:53:54 6,502 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\RedirectorEXE1_770DFD1204C24F4DA163D64FACCB5CBD.exe
+ 2008-03-31 03:53:54 6,502 ----a-r c:\windows\Installer\{37E1EB56-C59B-4C5C-B0B3-B5076046EF8A}\RedirectorEXE2_770DFD1204C24F4DA163D64FACCB5CBD.exe
+ 2008-06-07 05:52:09 55,296 ----a-r c:\windows\Installer\{48B82226-75E3-4E90-92CC-D30F79EA6380}\Icon6D246661.exe
+ 2008-03-01 04:09:09 29,926 ----a-r c:\windows\Installer\{508CE775-4BA4-4748-82DF-FE28DA9F03B0}\MsblIco.Exe
+ 2008-01-05 21:52:08 5,430 ----a-r c:\windows\Installer\{52D44F93-8FA9-4945-A817-0E98669CCE03}\NewShortcut3_515FF21B9D144F16ACB5BA3C3F6305EE.exe
+ 2008-12-29 17:45:35 307,200 ----a-r c:\windows\Installer\{582D2A53-F426-4C5E-A2E6-43C1AB36B907}\SafariIco.exe
+ 2008-08-22 19:08:27 27,136 ----a-r c:\windows\Installer\{6956856F-B6B3-4BE0-BA0B-8F495BE32033}\AppleSoftwareUpdateIco.exe
+ 2008-11-12 21:51:51 32,768 ----a-r c:\windows\Installer\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}\icon.exe
+ 2008-12-18 21:23:21 38,240 ----a-r c:\windows\Installer\{90120000-0020-0409-0000-0000000FF1CE}\O12ConvIcon.exe
- 2006-07-12 09:45:44 167,936 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\accicons.exe
+ 2008-12-11 22:30:26 167,936 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\accicons.exe
+ 2008-12-11 22:30:26 2,560 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\cagicon.exe
- 2006-07-12 09:45:45 81,920 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\fpicon.exe
+ 2008-12-11 22:30:26 81,920 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\fpicon.exe
- 2006-07-12 09:45:44 34,304 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\misc.exe
+ 2008-12-11 22:30:25 34,304 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\misc.exe
- 2006-07-12 09:45:45 8,192 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\mspicons.exe
+ 2008-12-11 22:30:27 8,192 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\mspicons.exe
- 2006-07-12 09:45:45 3,584 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\opwicon.exe
+ 2008-12-11 22:30:27 3,584 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\opwicon.exe
- 2006-07-12 09:45:45 114,688 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\outicon.exe
+ 2008-12-11 22:30:27 114,688 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\outicon.exe
- 2006-07-12 09:45:44 16,384 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\PEicons.exe
+ 2008-12-11 22:30:26 16,384 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\PEicons.exe
- 2006-07-12 09:45:44 30,720 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\pptico.exe
+ 2008-12-11 22:30:26 30,720 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\pptico.exe
- 2006-07-12 09:45:45 22,528 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\unbndico.exe
+ 2008-12-11 22:30:27 22,528 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\unbndico.exe
- 2006-07-12 09:45:44 45,056 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\wordicon.exe
+ 2008-12-11 22:30:25 45,056 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\wordicon.exe
- 2006-07-12 09:45:44 90,112 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\xlicons.exe
+ 2008-12-11 22:30:25 90,112 ----a-r c:\windows\Installer\{90280409-6000-11D3-8CFE-0050048383C9}\xlicons.exe
+ 2007-12-28 02:12:43 10,134 ----a-r c:\windows\Installer\{90529245-9C54-45B5-BBB3-B180CA04F248}\ARPPRODUCTICON.exe
+ 2007-12-07 05:02:24 2,238 ----a-r c:\windows\Installer\{98A2EDE2-FDA6-11D4-857B-0040F68C9D72}\ARPPRODUCTICON.exe
+ 2007-12-07 05:02:25 2,238 ----a-r c:\windows\Installer\{98A2EDE2-FDA6-11D4-857B-0040F68C9D72}\New_Shortcut_S35696_98A2EDE2FDA611D4857B0040F68C9D72.exe
+ 2008-02-16 06:08:03 295,606 ----a-r c:\windows\Installer\{AC76BA86-7AD7-1033-7B44-A81200000003}\SC_Reader.exe
+ 2007-12-16 16:32:43 126,976 ----a-r c:\windows\Installer\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}\_SHCT_Sprint.exe.exe
+ 2007-12-16 16:32:43 126,976 ----a-r c:\windows\Installer\{ACF60000-22B9-4CE9-98D6-2CCF359BAC07}\ARPPRODUCTICON.exe
+ 2008-05-11 23:46:24 18,944 ----a-r c:\windows\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF13.exe
+ 2008-05-11 23:46:24 65,024 ----a-r c:\windows\Installer\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}\IconCDDCBBF15.exe
+ 2007-05-21 05:59:48 558,216 ----a-r c:\windows\Installer\{D6BF6477-8369-489F-8DE6-3731F4B88560}\setup.exe
+ 2007-05-21 05:59:49 621,704 ----a-r c:\windows\Installer\{D6BF6477-8369-489F-8DE6-3731F4B88560}\SetupResources.dll
+ 2008-08-06 09:10:19 9,662 ----a-r c:\windows\Installer\{FBAFC5DB-5511-4150-91EC-995E9BB2D099}\_18be6784.exe
+ 2008-08-06 09:10:19 9,662 ----a-r c:\windows\Installer\{FBAFC5DB-5511-4150-91EC-995E9BB2D099}\_294823.exe
+ 2008-08-06 09:10:19 9,662 ----a-r c:\windows\Installer\{FBAFC5DB-5511-4150-91EC-995E9BB2D099}\_4ae13d6c.exe
+ 2008-01-06 02:05:08 4,662 ----a-r c:\windows\Installer\{FFAB5ABB-8AAB-42E2-847F-1743E51E01E9}\ARPPRODUCTICON.exe
+ 2008-01-06 02:05:08 49,152 ----a-r c:\windows\Installer\{FFAB5ABB-8AAB-42E2-847F-1743E51E01E9}\D2P.exe_2CB89690B7E049E0A14AC9D9E2906636.exe
+ 2008-01-06 02:05:08 49,152 ----a-r c:\windows\Installer\{FFAB5ABB-8AAB-42E2-847F-1743E51E01E9}\NewShortcut1_2CB89690B7E049E0A14AC9D9E2906636.exe
+ 2006-04-15 03:50:26 2,678 ----a-w c:\windows\java\Packages\Data\EOK3VLV5.DAT
+ 2006-04-15 03:50:33 2,678 ----a-w c:\windows\java\Packages\Data\KC1Z7F5B.DAT
+ 2006-04-15 03:51:35 2,678 ----a-w c:\windows\java\Packages\Data\KWKVVZHV.DAT
+ 2006-04-15 03:50:29 2,678 ----a-w c:\windows\java\Packages\Data\P3H33ZRN.DAT
+ 2006-04-15 03:50:29 2,678 ----a-w c:\windows\java\Packages\Data\PBTFB5JL.DAT
+ 2005-07-29 17:14:49 2,232 ----a-w c:\windows\java\Packages\Data\QUX3RTBZ.DAT
+ 1998-09-30 16:09:20 1,276,416 ----a-w c:\windows\lhsp\tv\tv_enua.dll
+ 1998-09-24 21:15:44 40,960 ----a-w c:\windows\lhsp\tv\tvenuax.dll
- 2005-09-23 13:28:52 72,704 ----a-w c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2007-10-24 07:47:38 82,944 ----a-w c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
- 2005-09-23 13:28:52 7,680 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp10.dll
+ 2007-10-24 07:47:38 16,896 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp10.dll
- 2005-09-23 13:28:56 7,680 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
+ 2007-10-24 07:47:40 16,896 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
- 2005-09-23 13:28:58 7,680 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
+ 2007-10-24 07:47:42 16,896 ----a-w c:\windows\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
- 2005-09-23 13:28:56 7,680 ----a-w c:\windows\Microsoft.NET\Framework\SharedReg12.dll
+ 2007-10-24 07:47:40 16,896 ----a-w c:\windows\Microsoft.NET\Framework\SharedReg12.dll
- 2005-09-23 13:28:52 86,528 ----a-w c:\windows\Microsoft.NET\Framework\v1.0.3705\mscormmc.dll
+ 2007-10-24 07:47:38 97,280 ----a-w c:\windows\Microsoft.NET\Framework\v1.0.3705\mscormmc.dll
- 2005-09-23 13:28:36 18,944 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll
+ 2007-10-24 07:47:26 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll
- 2005-09-23 13:28:42 136,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll
+ 2007-10-24 07:47:30 145,408 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll
- 2005-09-23 13:28:44 4,608 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll
+ 2007-10-24 07:47:32 13,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll
- 2005-09-23 13:29:04 183,808 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\vbc7ui.dll
+ 2007-10-24 07:47:48 193,016 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\vbc7ui.dll
- 2005-09-23 13:28:28 208,896 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\Vsavb7rtUI.dll
+ 2007-10-24 07:47:20 218,112 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\Vsavb7rtUI.dll
- 2005-09-23 13:28:56 10,752 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
+ 2007-10-24 07:47:40 10,752 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
- 2005-09-23 13:28:58 138,240 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll
+ 2007-10-24 07:47:42 147,968 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll
- 2005-09-23 13:28:36 87,552 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\alink.dll
+ 2007-10-24 07:47:26 99,320 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\alink.dll
- 2007-04-13 09:21:18 58,712 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
+ 2007-10-24 07:47:42 59,392 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
- 2005-09-23 13:28:32 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2007-10-24 07:47:22 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
- 2007-04-13 09:20:52 10,752 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll
+ 2007-10-24 07:47:22 22,024 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll
- 2007-04-13 09:20:52 8,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll
+ 2007-10-24 07:47:22 17,928 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll
- 2007-04-13 09:20:52 23,552 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll
+ 2007-10-24 07:47:22 33,288 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll
- 2007-04-13 09:20:50 75,264 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll
+ 2007-10-24 07:47:22 84,480 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll
- 2005-09-23 13:28:32 13,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
+ 2007-10-24 07:47:22 24,576 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
- 2007-04-13 09:20:52 32,608 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
+ 2007-10-24 07:47:22 32,776 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
- 2005-09-23 13:28:32 106,496 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2007-10-24 07:47:22 106,496 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
- 2007-04-13 09:20:52 33,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
+ 2007-10-24 07:47:22 33,800 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
- 2007-04-13 09:20:52 32,600 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2007-10-24 07:47:22 33,280 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
- 2007-04-13 09:20:52 507,904 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll
+ 2007-10-24 07:47:22 507,904 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll
- 2005-09-23 13:28:56 106,496 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
+ 2007-10-24 07:47:40 106,496 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2007-04-13 09:21:16 88,576 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll
+ 2007-10-24 07:47:40 101,896 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll
- 2005-09-23 13:28:42 76,984 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\csc.exe
+ 2007-10-24 07:47:30 80,376 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\csc.exe
- 2005-09-23 13:28:42 1,144,832 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cscomp.dll
+ 2007-10-24 07:47:30 1,162,744 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cscomp.dll
- 2005-09-23 13:28:42 13,312 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
+ 2007-10-24 07:47:30 13,312 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
- 2005-09-23 13:28:58 17,920 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
+ 2007-10-24 07:47:42 27,136 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
- 2005-09-23 13:28:56 68,608 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll
+ 2007-10-24 07:47:40 69,120 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll
- 2005-09-23 13:28:44 31,936 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
+ 2007-10-24 07:47:30 35,320 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
- 2005-09-23 13:28:38 52,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\dfdll.dll
+ 2007-10-24 07:47:28 66,552 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\dfdll.dll
- 2007-04-13 09:20:58 5,120 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
+ 2007-10-24 07:47:28 5,120 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
- 2005-09-23 13:29:12 547,840 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
+ 2007-10-24 07:47:54 572,936 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
- 2005-09-23 13:28:56 788,992 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll
+ 2007-10-24 07:47:40 798,224 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll
- 2005-09-23 13:28:50 9,216 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\fusion.dll
+ 2007-10-24 07:47:36 18,936 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\fusion.dll
- 2007-04-13 09:21:16 9,728 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2007-10-24 07:47:40 9,728 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
- 2005-09-23 13:28:56 8,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
+ 2007-10-24 07:47:40 8,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
- 2005-09-23 13:28:56 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEHost.dll
+ 2007-10-24 07:47:40 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IEHost.dll
- 2005-09-23 13:28:56 5,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll
+ 2007-10-24 07:47:40 6,656 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll
- 2007-04-13 09:21:16 228,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
+ 2007-10-24 07:47:40 230,904 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
- 2007-04-13 09:21:16 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2007-10-24 07:47:40 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
- 2005-09-23 13:28:56 55,296 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll
+ 2007-10-24 07:47:40 65,032 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll
- 2005-09-23 13:28:56 72,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
+ 2007-10-24 07:47:40 72,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
- 2005-09-23 13:28:48 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2007-10-24 07:47:34 40,960 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
- 2007-04-13 09:21:10 413,696 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll

#14 tristenkw5

tristenkw5
  • Topic Starter

  • Members
  • 71 posts
  • OFFLINE
  •  
  • Local time:01:38 AM

Posted 29 December 2008 - 02:44 PM

+ 2007-10-24 07:47:36 348,160 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll
- 2005-09-23 13:28:48 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
+ 2007-10-24 07:47:36 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
- 2007-04-13 09:21:10 647,168 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll
+ 2007-10-24 07:47:36 655,360 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll
- 2005-09-23 13:28:48 73,728 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll
+ 2007-10-24 07:47:36 77,824 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll
- 2007-04-13 09:21:08 749,568 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll
+ 2007-10-24 07:47:34 749,568 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll
- 2005-09-23 13:29:10 110,592 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2007-10-24 07:47:52 110,592 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll
- 2005-09-23 13:29:10 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll
+ 2007-10-24 07:47:52 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll
- 2005-09-23 13:29:08 667,648 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.dll
+ 2007-10-24 07:47:50 671,744 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.dll
- 2005-09-23 13:28:30 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
+ 2007-10-24 07:47:20 28,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
- 2005-09-23 13:29:10 5,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
+ 2007-10-24 07:47:52 5,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
- 2005-09-23 13:28:30 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
+ 2007-10-24 07:47:20 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
- 2005-09-23 13:28:30 12,800 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2007-10-24 07:47:20 12,800 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2005-09-23 13:28:30 7,168 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
+ 2007-10-24 07:47:20 7,168 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
- 2007-04-13 09:20:52 87,040 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll
+ 2007-10-24 07:47:22 97,792 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll
- 2005-09-23 13:28:48 69,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
+ 2007-10-24 07:47:36 69,632 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- 2007-04-13 09:21:18 802,304 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2007-10-24 07:47:40 822,280 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
- 2005-09-23 13:28:56 73,216 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll
+ 2007-10-24 07:47:40 83,456 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll
- 2005-09-23 13:28:56 288,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll
+ 2007-10-24 07:47:40 308,224 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll
- 2007-04-13 09:21:16 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
+ 2007-10-24 07:47:40 47,104 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
- 2007-04-13 09:21:16 326,656 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2007-10-24 07:47:40 348,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
- 2005-09-23 13:28:56 81,408 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorld.dll
+ 2007-10-24 07:47:40 94,208 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorld.dll
- 2007-04-13 09:21:16 4,308,992 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2007-10-24 07:47:40 4,444,160 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
- 2007-04-13 09:21:16 102,912 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll
+ 2007-10-24 07:47:40 114,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll
- 2005-09-23 13:29:00 330,752 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
+ 2007-10-24 07:47:44 340,992 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
- 2005-09-23 13:28:56 67,072 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
+ 2007-10-24 07:47:40 77,312 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
- 2005-09-23 13:28:50 9,216 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll
+ 2007-10-24 07:47:36 18,944 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll
- 2007-04-13 09:21:18 227,328 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll
+ 2007-10-24 07:47:40 242,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll
- 2007-04-13 09:21:18 68,952 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
+ 2007-10-24 07:47:40 70,144 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
- 2005-09-23 13:28:56 10,240 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscortim.dll
+ 2007-10-24 07:47:40 19,456 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscortim.dll
- 2007-04-13 09:21:12 5,634,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2007-10-24 07:47:36 5,814,784 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
- 2005-09-23 13:29:00 22,528 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll
+ 2007-10-24 07:47:44 31,744 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll
- 2007-04-13 09:21:16 99,152 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ngen.exe
+ 2007-10-24 07:47:40 101,880 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ngen.exe
- 2007-04-13 09:21:18 15,360 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\normalization.dll
+ 2007-10-24 07:47:40 24,584 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\normalization.dll
- 2005-09-23 13:28:56 78,336 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll
+ 2007-10-24 07:47:40 89,096 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll
- 2007-04-13 09:21:12 136,192 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\peverify.dll
+ 2007-10-24 07:47:36 144,896 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\peverify.dll
- 2005-09-23 13:28:56 53,248 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2007-10-24 07:47:40 53,248 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
- 2005-09-23 13:28:56 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
+ 2007-10-24 07:47:40 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- 2005-09-23 13:29:02 59,072 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
+ 2007-10-24 07:47:46 61,952 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
- 2005-09-23 13:28:58 7,680 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
+ 2007-10-24 07:47:42 16,896 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
- 2005-09-23 13:28:56 107,520 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\shfusion.dll
+ 2007-10-24 07:47:40 119,296 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\shfusion.dll
- 2005-09-23 13:29:00 85,504 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
+ 2007-10-24 07:47:44 95,232 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
- 2007-04-13 09:21:18 382,464 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2007-10-24 07:47:40 392,696 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
- 2007-04-13 09:21:18 110,592 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll
+ 2007-10-24 07:47:40 110,592 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll
- 2007-04-13 09:21:18 413,696 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.configuration.dll
+ 2007-10-24 07:47:42 425,984 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.configuration.dll
- 2005-09-23 13:28:56 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
+ 2007-10-24 07:47:40 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
- 2007-04-13 09:21:16 2,902,016 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.dll
+ 2007-10-24 07:47:40 3,036,160 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.dll
- 2007-04-13 09:21:18 482,304 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.OracleClient.dll
+ 2007-10-24 07:47:40 483,840 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.OracleClient.dll
- 2007-04-13 09:21:18 716,800 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.SqlXml.dll
+ 2007-10-24 07:47:40 741,376 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.SqlXml.dll
- 2007-04-13 09:20:58 888,832 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll
+ 2007-10-24 07:47:28 933,888 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll
- 2007-04-13 09:21:16 5,001,216 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2007-10-24 07:47:40 5,070,848 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
- 2005-09-23 13:28:56 397,312 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll
+ 2007-10-24 07:47:40 401,408 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll
- 2007-04-13 09:21:18 188,416 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll
+ 2007-10-24 07:47:40 188,416 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll
- 2007-04-13 09:21:16 2,940,928 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
+ 2007-10-24 07:47:40 3,076,096 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
- 2005-09-23 13:28:56 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
+ 2007-10-24 07:47:40 81,920 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
- 2007-04-13 09:21:16 577,536 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
+ 2007-10-24 07:47:40 630,784 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
- 2007-04-13 09:21:16 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll
+ 2007-10-24 07:47:40 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll
- 2007-04-13 09:21:18 47,616 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll
+ 2007-10-24 07:47:40 57,392 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll
- 2007-04-13 09:21:18 114,176 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Wrapper.dll
+ 2007-10-24 07:47:40 113,664 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Wrapper.dll
- 2007-04-13 09:21:16 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Management.dll
+ 2007-10-24 07:47:40 372,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Management.dll
- 2005-09-23 13:28:56 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll
+ 2007-10-24 07:47:40 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll
- 2007-04-13 09:21:16 299,008 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll
+ 2007-10-24 07:47:40 299,008 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll
- 2005-09-23 13:28:56 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
+ 2007-10-24 07:47:40 131,072 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
- 2005-09-23 13:28:56 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
+ 2007-10-24 07:47:40 258,048 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
- 2005-09-23 13:28:56 114,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll
+ 2007-10-24 07:47:40 114,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll
- 2007-04-13 09:21:18 260,096 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Transactions.dll
+ 2007-10-24 07:47:40 261,120 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Transactions.dll
- 2007-04-13 09:21:16 5,156,864 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2007-10-24 07:47:40 5,431,296 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
- 2005-09-23 13:28:56 835,584 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll
+ 2007-10-24 07:47:40 884,736 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll
- 2005-09-23 13:28:56 86,016 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll
+ 2007-10-24 07:47:40 90,112 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll
- 2005-09-23 13:28:56 823,296 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll
+ 2007-10-24 07:47:40 839,680 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll
- 2007-04-13 09:21:16 5,152,768 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2007-10-24 07:47:40 5,013,504 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
- 2007-04-13 09:21:16 2,027,520 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.XML.dll
+ 2007-10-24 07:47:40 2,068,480 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\System.XML.dll
- 2005-09-23 13:28:56 71,680 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL
+ 2007-10-24 07:47:40 81,400 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL
- 2007-04-13 09:21:28 1,166,672 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\vbc.exe
+ 2007-10-24 07:47:48 1,172,472 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\vbc.exe
- 2007-04-13 09:20:50 1,330,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\VsaVb7rt.dll
+ 2007-10-24 07:47:20 1,344,000 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\VsaVb7rt.dll
- 2007-04-13 09:20:52 406,016 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2007-10-24 07:47:22 434,688 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
- 2005-09-23 13:28:56 28,160 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
+ 2007-10-24 07:47:40 37,896 ----a-w c:\windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
- 2006-10-30 09:34:02 159,744 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
+ 2007-10-11 15:55:14 159,744 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
- 2006-10-30 09:33:58 741,376 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
+ 2007-10-11 15:55:10 864,256 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
- 2006-10-30 09:34:00 352,256 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll
+ 2007-10-11 15:55:12 397,312 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll
- 2006-10-30 09:34:00 151,552 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll
+ 2007-10-11 15:55:12 151,552 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll
+ 2007-10-11 15:55:14 2,560 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelEvents.dll
- 2006-10-30 09:34:02 61,440 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
+ 2007-10-11 15:55:14 61,440 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
- 2006-10-30 09:34:02 11,264 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll
+ 2007-10-11 15:55:14 11,264 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll
- 2006-10-30 09:34:00 94,208 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMDiagnostics.dll
+ 2007-10-11 15:55:14 102,400 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMDiagnostics.dll
- 2006-10-30 09:34:02 122,880 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
+ 2007-10-11 15:55:14 122,880 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
- 2006-10-30 09:34:02 884,736 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
+ 2007-10-11 15:55:14 929,792 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
- 2006-10-30 09:34:02 5,623,808 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll
+ 2007-10-11 15:55:14 5,971,968 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll
- 2006-10-30 09:34:00 159,744 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll
+ 2007-10-11 15:55:14 159,744 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll
- 2006-10-30 09:34:00 16,384 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
+ 2007-10-11 15:55:14 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
- 2006-10-30 09:34:02 143,360 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
+ 2007-10-11 15:55:14 143,360 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
- 2006-07-26 03:32:00 14,648 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
+ 2007-10-06 09:18:12 16,936 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
- 2006-10-21 03:29:46 72,992 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll
+ 2007-10-09 19:03:00 76,312 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll
- 2006-10-21 03:21:24 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationCFFRasterizer.dll
+ 2007-10-09 18:58:12 32,768 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationCFFRasterizer.dll
- 2006-10-21 03:21:24 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
+ 2007-10-09 18:58:12 36,864 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
- 2006-10-21 03:29:52 106,272 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2007-10-09 19:03:08 121,368 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
- 2006-10-21 03:21:26 897,024 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationUI.dll
+ 2007-10-09 18:58:14 897,024 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationUI.dll
- 2006-10-21 03:21:26 14,848 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe
+ 2007-10-09 18:58:20 14,848 ----a-w c:\windows\Microsoft.NET\Framework\v3.0\WPF\XamlViewer\XamlViewer_v0300.exe
+ 2008-08-21 04:23:39 2,063 ----a-w c:\windows\mozver.dat
+ 2008-09-22 05:27:01 19,456 ----a-w c:\windows\msagent\intl\agt0404.dll
+ 2008-09-22 05:39:11 19,456 ----a-w c:\windows\msagent\intl\agt0411.dll
+ 2008-09-22 05:27:34 19,456 ----a-w c:\windows\msagent\intl\agt0412.dll
+ 2008-09-22 05:32:50 19,456 ----a-w c:\windows\msagent\intl\agt0804.dll
+ 2006-06-03 11:40:49 33,792 ------w c:\windows\network diagnostic\custsat.dll
+ 2006-10-10 12:44:50 557,568 ------w c:\windows\network diagnostic\xpnetdiag.exe
- 2007-06-17 06:11:58 51,200 ----a-w c:\windows\nircmd.exe
+ 2000-08-31 14:00:00 28,672 ----a-w c:\windows\nircmd.exe
+ 2005-07-21 03:10:57 2,722 ----a-w c:\windows\pchealth\helpctr\PackageStore\SkuStore.bin
+ 2000-08-31 14:00:00 98,816 ----a-w c:\windows\sed.exe
+ 2005-07-19 20:45:36 1,642 ----a-w c:\windows\SoftwareDistribution.old\EventCache\{FC8CAB3C-8C73-4EED-B5A8-F0A7ED634D39}.bin
+ 2000-08-31 14:00:00 161,792 ----a-w c:\windows\SWREG.exe
+ 2000-08-31 14:00:00 136,704 ----a-w c:\windows\SWSC.exe
+ 2000-08-31 14:00:00 212,480 ----a-w c:\windows\SWXCACLS.exe
+ 2005-02-16 15:18:56 2,000 ----a-w c:\windows\system\KEYBOARD.DRV
+ 2005-02-16 15:18:56 73,376 ----a-w c:\windows\system\MCIAVI.DRV
+ 2005-02-16 15:18:56 25,264 ----a-w c:\windows\system\MCISEQ.DRV
+ 2005-02-16 15:18:56 28,160 ----a-w c:\windows\system\MCIWAVE.DRV
+ 2005-02-16 15:18:56 2,032 ----a-w c:\windows\system\MOUSE.DRV
+ 2005-02-16 15:18:56 1,744 ----a-w c:\windows\system\SOUND.DRV
+ 2005-02-16 15:18:56 3,360 ----a-w c:\windows\system\SYSTEM.DRV
+ 2005-02-16 15:18:56 4,048 ----a-w c:\windows\system\TIMER.DRV
+ 2005-02-16 15:18:56 2,176 ----a-w c:\windows\system\VGA.DRV
+ 2005-02-16 15:18:56 13,600 ----a-w c:\windows\system\WFWNET.DRV
+ 2005-02-16 15:18:56 146,432 ----a-w c:\windows\system\WINSPOOL.DRV
+ 2005-07-13 21:13:00 65,536 ----a-w c:\windows\system32\a1.dll
- 2005-02-16 15:18:56 61,440 ----a-w c:\windows\system32\admparse.dll
+ 2008-08-22 08:06:30 72,704 ----a-w c:\windows\system32\admparse.dll
+ 2008-03-20 00:23:20 114,688 ----a-w c:\windows\system32\Adobe\Director\np32dsw.dll
+ 2008-03-20 00:36:22 202,168 ----a-w c:\windows\system32\Adobe\Director\SwDir.dll
+ 2008-03-20 00:24:02 487,424 ----a-w c:\windows\system32\Adobe\Shockwave 11\Control.dll
+ 2008-03-19 23:46:26 1,798,144 ----a-w c:\windows\system32\Adobe\Shockwave 11\dirapi.dll
+ 2008-03-20 00:24:04 9,216 ----a-w c:\windows\system32\Adobe\Shockwave 11\DynaPlayer.dll
+ 2008-03-19 23:36:14 754,688 ----a-w c:\windows\system32\Adobe\Shockwave 11\gi.dll
+ 2008-03-19 23:36:16 1,145,896 ----a-w c:\windows\system32\Adobe\Shockwave 11\gt.exe
+ 2008-03-19 23:36:14 52,288 ----a-w c:\windows\system32\Adobe\Shockwave 11\gtapi.dll
+ 2008-03-19 23:42:42 892,928 ----a-w c:\windows\system32\Adobe\Shockwave 11\iml32.dll
+ 2008-03-20 00:22:34 249,856 ----a-w c:\windows\system32\Adobe\Shockwave 11\Plugin.dll
+ 2008-03-20 00:25:36 442,368 ----a-w c:\windows\system32\Adobe\Shockwave 11\Proj.dll
+ 2008-03-20 00:36:06 439,736 ----a-w c:\windows\system32\Adobe\Shockwave 11\SwHelper_1100429.exe
+ 2008-03-20 00:26:20 110,592 ----a-w c:\windows\system32\Adobe\Shockwave 11\SwInit.exe
+ 2008-03-20 00:22:22 94,208 ----a-w c:\windows\system32\Adobe\Shockwave 11\SwMenu.dll
+ 2008-03-19 23:36:14 50,808 ----a-w c:\windows\system32\Adobe\Shockwave 11\SYMCCHECKER.DLL
+ 1999-06-25 15:55:30 149,504 ----a-w c:\windows\system32\Adobe\Shockwave 11\UNWISE.EXE
- 2005-02-16 15:18:56 99,840 ----a-w c:\windows\system32\advpack.dll
+ 2008-08-22 08:06:16 128,512 ----a-w c:\windows\system32\advpack.dll
+ 2005-10-22 02:20:26 278,528 ----a-w c:\windows\system32\ammpp.dll
+ 2001-12-12 20:08:58 95,744 ----a-w c:\windows\system32\aplwCo.dll
+ 2001-12-12 20:09:10 98,816 ----a-w c:\windows\system32\apx20ocx.dll
- 2004-09-22 23:45:36 8,192 ----a-w c:\windows\system32\asferror.dll
+ 2006-10-19 03:47:08 7,168 ----a-w c:\windows\system32\asferror.dll
+ 1999-08-09 20:39:20 14,832 ----a-w c:\windows\system32\asfsipc.dll
+ 2003-07-18 05:49:42 193,536 ----a-w c:\windows\system32\atomid.exe
+ 2008-07-05 19:55:43 10,520 ----a-w c:\windows\system32\avgrsstx.dll
- 2007-08-22 13:12:15 1,020,928 ----a-w c:\windows\system32\browseui.dll
+ 2008-06-23 15:38:28 1,023,488 ----a-w c:\windows\system32\browseui.dll
+ 2008-09-22 05:24:40 218,112 ----a-w c:\windows\system32\c_g18030.dll
+ 2008-09-22 05:23:11 6,656 ----a-w c:\windows\system32\c_is2022.dll
+ 2005-04-04 15:52:16 589,824 ----a-r c:\windows\system32\CDDBControl.dll
+ 2005-03-10 18:06:58 110,592 ----a-r c:\windows\system32\CddbLangDE.dll
+ 2005-03-10 18:06:58 110,592 ----a-r c:\windows\system32\CddbLangES.dll
+ 2005-03-10 18:06:58 110,592 ----a-r c:\windows\system32\CddbLangFR.dll
+ 2005-03-10 18:06:58 110,592 ----a-r c:\windows\system32\CddbLangIT.dll
+ 2005-03-10 18:06:58 86,016 ----a-r c:\windows\system32\CddbLangJA.dll
+ 2005-03-10 18:06:58 81,920 ----a-r c:\windows\system32\CddbLangKO.dll
+ 2005-03-10 18:06:58 110,592 ----a-r c:\windows\system32\CddbLangNL.dll
+ 2005-03-10 18:06:58 110,592 ----a-r c:\windows\system32\CddbLangPT_BR.dll
+ 2005-03-10 18:06:58 106,496 ----a-r c:\windows\system32\CddbLangSV.dll
+ 2005-03-10 18:06:58 102,400 ----a-r c:\windows\system32\CddbLangTH.dll
+ 2005-03-10 18:06:58 77,824 ----a-r c:\windows\system32\CddbLangZH.dll
+ 2005-03-10 18:06:58 77,824 ----a-r c:\windows\system32\CddbLangZT.dll
+ 2005-04-04 15:52:16 765,952 ----a-r c:\windows\system32\CDDBUI.dll
- 2007-08-22 13:12:15 151,040 ----a-w c:\windows\system32\cdfview.dll
+ 2008-06-23 15:38:29 151,040 ----a-w c:\windows\system32\cdfview.dll
+ 2008-09-22 05:38:34 1,677,824 ----a-w c:\windows\system32\chsbrkr.dll
+ 2008-09-22 05:34:15 838,144 ----a-w c:\windows\system32\chtbrkr.dll
+ 1998-07-13 06:00:00 20,992 ----a-w c:\windows\system32\CMCT2FR.DLL
- 2007-11-09 04:05:46 108,144 ----a-w c:\windows\system32\CmdLineExt.dll
+ 2008-06-17 16:28:39 107,888 ----a-w c:\windows\system32\CmdLineExt.dll
+ 2000-03-01 03:02:24 57,344 ----a-w c:\windows\system32\CMDRedirect.dll
+ 2003-04-23 20:03:04 159,744 ----a-w c:\windows\system32\CNewMenu6.dll
+ 2005-02-16 15:18:56 10,544 ----a-w c:\windows\system32\comm.drv
- 2005-02-16 15:18:56 35,328 ----a-w c:\windows\system32\corpol.dll
+ 2008-08-22 08:07:08 18,944 ----a-w c:\windows\system32\corpol.dll
- 2005-02-16 15:18:56 98,304 ----a-w c:\windows\system32\cscript.exe
+ 2007-08-01 01:45:06 114,688 ----a-w c:\windows\system32\cscript.exe
- 2007-08-22 13:12:16 1,054,208 ----a-w c:\windows\system32\danim.dll
+ 2008-06-23 15:38:30 1,054,208 ----a-w c:\windows\system32\danim.dll
+ 2005-02-16 15:18:56 1,788 ----a-w c:\windows\system32\Dcache.bin
+ 2008-05-11 23:10:40 410,976 ----a-w c:\windows\system32\deploytk.dll
- 2005-09-23 13:28:38 83,456 ----a-w c:\windows\system32\dfshim.dll
+ 2007-10-24 07:47:28 96,760 ----a-w c:\windows\system32\dfshim.dll
- 2005-02-16 15:18:56 45,083 ----a-w c:\windows\system32\dispex.dll
+ 2007-08-01 01:45:24 32,768 ----a-w c:\windows\system32\dispex.dll
- 2007-05-31 06:44:54 740,442 ----a-w c:\windows\system32\DivX.dll
+ 2008-05-30 23:22:46 683,520 ----a-w c:\windows\system32\DivX.dll
- 2007-05-31 06:44:55 823,296 ----a-w c:\windows\system32\divx_xx07.dll
+ 2008-05-30 23:22:48 823,296 ----a-w c:\windows\system32\divx_xx07.dll
+ 2008-05-30 23:22:46 815,104 ----a-w c:\windows\system32\divx_xx0a.dll
- 2007-05-31 06:44:54 823,296 ----a-w c:\windows\system32\divx_xx0c.dll
+ 2008-05-30 23:22:48 823,296 ----a-w c:\windows\system32\divx_xx0c.dll
- 2007-05-31 06:44:54 802,816 ----a-w c:\windows\system32\divx_xx11.dll
+ 2008-05-30 23:22:48 802,816 ----a-w c:\windows\system32\divx_xx11.dll
+ 2008-05-22 22:19:12 161,096 ----a-w c:\windows\system32\DivXCodecVersionChecker.exe
- 2007-05-31 06:45:07 524,288 ----a-w c:\windows\system32\DivXsm.exe
+ 2008-05-22 22:22:22 524,288 ----a-w c:\windows\system32\DivXsm.exe
- 2007-04-23 00:01:47 12,288 ----a-w c:\windows\system32\DivXWMPExtType.dll
+ 2008-05-22 22:18:54 12,288 ----a-w c:\windows\system32\DivXWMPExtType.dll
- 2005-02-16 15:18:56 61,440 -c--a-w c:\windows\system32\dllcache\admparse.dll
+ 2008-08-22 08:06:30 72,704 -c--a-w c:\windows\system32\dllcache\admparse.dll
- 2005-02-16 15:18:56 99,840 -c--a-w c:\windows\system32\dllcache\advpack.dll
+ 2008-08-22 08:06:16 128,512 -c--a-w c:\windows\system32\dllcache\advpack.dll
- 2005-02-16 15:18:56 138,496 -c--a-w c:\windows\system32\dllcache\afd.sys
+ 2008-08-14 09:51:43 138,368 -c--a-w c:\windows\system32\dllcache\afd.sys
- 2005-02-16 15:18:56 19,456 -c--a-w c:\windows\system32\dllcache\agt0404.dll
+ 2008-09-22 05:27:01 19,456 -c--a-w c:\windows\system32\dllcache\agt0404.dll
- 2005-02-16 15:18:56 19,456 -c--a-w c:\windows\system32\dllcache\agt0411.dll
+ 2008-09-22 05:39:11 19,456 -c--a-w c:\windows\system32\dllcache\agt0411.dll
- 2005-02-16 15:18:56 19,456 -c--a-w c:\windows\system32\dllcache\agt0412.dll
+ 2008-09-22 05:27:34 19,456 -c--a-w c:\windows\system32\dllcache\agt0412.dll
- 2005-02-16 15:18:56 19,456 -c--a-w c:\windows\system32\dllcache\agt0804.dll
+ 2008-09-22 05:32:50 19,456 -c--a-w c:\windows\system32\dllcache\agt0804.dll
- 2004-09-22 23:45:36 8,192 ----a-w c:\windows\system32\dllcache\asferror.dll
+ 2006-10-19 03:47:08 7,168 -c--a-w c:\windows\system32\dllcache\asferror.dll
- 2007-08-22 13:12:15 1,020,928 -c--a-w c:\windows\system32\dllcache\browseui.dll
+ 2008-06-23 15:38:28 1,023,488 -c--a-w c:\windows\system32\dllcache\browseui.dll
+ 2008-06-13 13:10:50 272,128 -c----w c:\windows\system32\dllcache\bthport.sys
- 2005-02-16 15:18:56 218,112 -c--a-w c:\windows\system32\dllcache\c_g18030.dll
+ 2008-09-22 05:24:40 218,112 -c--a-w c:\windows\system32\dllcache\c_g18030.dll
- 2005-02-16 15:18:56 6,656 -c--a-w c:\windows\system32\dllcache\c_is2022.dll
+ 2008-09-22 05:23:11 6,656 -c--a-w c:\windows\system32\dllcache\c_is2022.dll
- 2007-08-22 13:12:15 151,040 -c--a-w c:\windows\system32\dllcache\cdfview.dll
+ 2008-06-23 15:38:29 151,040 -c--a-w c:\windows\system32\dllcache\cdfview.dll
- 2007-07-31 00:19:20 92,504 -c--a-w c:\windows\system32\dllcache\cdm.dll
+ 2008-10-16 20:09:44 92,696 -c--a-w c:\windows\system32\dllcache\cdm.dll
+ 2008-05-02 09:05:56 62,592 -c----w c:\windows\system32\dllcache\cdrom.sys
- 2005-02-16 15:18:56 1,677,824 -c--a-w c:\windows\system32\dllcache\chsbrkr.dll
+ 2008-09-22 05:38:34 1,677,824 -c--a-w c:\windows\system32\dllcache\chsbrkr.dll
- 2005-02-16 15:18:56 838,144 -c--a-w c:\windows\system32\dllcache\chtbrkr.dll
+ 2008-09-22 05:34:15 838,144 -c--a-w c:\windows\system32\dllcache\chtbrkr.dll
- 2005-02-16 15:18:56 35,328 -c--a-w c:\windows\system32\dllcache\corpol.dll
+ 2008-08-22 08:07:08 18,944 -c--a-w c:\windows\system32\dllcache\corpol.dll
- 2005-02-16 15:18:56 98,304 -c--a-w c:\windows\system32\dllcache\cscript.exe
+ 2007-08-01 01:45:06 114,688 -c--a-w c:\windows\system32\dllcache\cscript.exe
- 2004-09-22 23:45:40 28,672 -c--a-w c:\windows\system32\dllcache\custsat.dll
+ 2006-06-03 11:40:49 33,792 -c--a-w c:\windows\system32\dllcache\custsat.dll
- 2007-08-22 13:12:16 1,054,208 -c--a-w c:\windows\system32\dllcache\danim.dll
+ 2008-06-23 15:38:30 1,054,208 -c--a-w c:\windows\system32\dllcache\danim.dll
- 2005-02-16 15:18:56 561,179 -c--a-w c:\windows\system32\dllcache\dao360.dll
+ 2008-03-25 04:50:25 554,008 -c--a-w c:\windows\system32\dllcache\dao360.dll
- 2005-02-16 15:18:56 45,083 -c--a-w c:\windows\system32\dllcache\dispex.dll
+ 2007-08-01 01:45:24 32,768 -c--a-w c:\windows\system32\dllcache\dispex.dll
- 2006-06-26 17:37:10 148,480 -c--a-w c:\windows\system32\dllcache\dnsapi.dll
+ 2008-06-20 17:41:10 148,992 -c--a-w c:\windows\system32\dllcache\dnsapi.dll
- 2005-02-16 15:18:56 45,568 -c--a-w c:\windows\system32\dllcache\dnsrslvr.dll
+ 2008-02-20 05:32:43 45,568 -c--a-w c:\windows\system32\dllcache\dnsrslvr.dll
- 2007-08-22 13:12:16 357,888 -c--a-w c:\windows\system32\dllcache\dxtmsft.dll
+ 2008-08-22 08:05:16 346,624 -c--a-w c:\windows\system32\dllcache\dxtmsft.dll
- 2007-08-22 13:12:16 205,312 -c--a-w c:\windows\system32\dllcache\dxtrans.dll
+ 2008-08-22 08:05:10 217,088 -c--a-w c:\windows\system32\dllcache\dxtrans.dll
- 2005-07-26 04:39:45 243,200 -c--a-w c:\windows\system32\dllcache\es.dll
+ 2008-07-07 20:32:22 253,952 -c--a-w c:\windows\system32\dllcache\es.dll
- 2007-08-22 13:12:16 55,808 -c--a-w c:\windows\system32\dllcache\extmgr.dll
+ 2008-06-23 15:38:30 55,808 -c--a-w c:\windows\system32\dllcache\extmgr.dll
- 2005-02-16 15:18:56 7,168 -c--a-w c:\windows\system32\dllcache\f3ahvoas.dll
+ 2008-09-22 05:28:14 7,168 -c--a-w c:\windows\system32\dllcache\f3ahvoas.dll
- 2007-06-19 13:31:19 282,112 -c--a-w c:\windows\system32\dllcache\gdi32.dll
+ 2008-10-23 13:01:36 283,648 -c--a-w c:\windows\system32\dllcache\gdi32.dll
- 2005-02-16 15:18:56 36,864 -c--a-w c:\windows\system32\dllcache\hanjadic.dll
+ 2008-09-22 05:37:34 36,864 -c--a-w c:\windows\system32\dllcache\hanjadic.dll
- 2005-02-16 15:18:56 38,912 -c--a-w c:\windows\system32\dllcache\hmmapi.dll
+ 2008-08-22 08:00:28 68,608 -c--a-w c:\windows\system32\dllcache\hmmapi.dll
- 2005-02-16 15:18:56 10,096,640 -c--a-w c:\windows\system32\dllcache\hwxcht.dll
+ 2008-09-22 05:40:32 10,096,640 -c--a-w c:\windows\system32\dllcache\hwxcht.dll
- 2005-02-16 15:18:56 13,463,552 -c--a-w c:\windows\system32\dllcache\hwxjpn.dll
+ 2008-09-22 05:40:48 13,463,552 -c--a-w c:\windows\system32\dllcache\hwxjpn.dll
- 2005-02-16 15:18:56 10,129,408 -c--a-w c:\windows\system32\dllcache\hwxkor.dll
+ 2008-09-22 05:41:25 10,129,408 -c--a-w c:\windows\system32\dllcache\hwxkor.dll
- 2005-02-16 15:18:56 34,304 -c--a-w c:\windows\system32\dllcache\ie4uinit.exe
+ 2008-08-22 08:06:24 162,304 -c--a-w c:\windows\system32\dllcache\ie4uinit.exe
- 2005-02-16 15:18:56 139,264 -c--a-w c:\windows\system32\dllcache\ieakeng.dll
+ 2008-08-22 08:06:36 124,928 -c--a-w c:\windows\system32\dllcache\ieakeng.dll
- 2005-02-16 15:18:56 216,576 -c--a-w c:\windows\system32\dllcache\ieaksie.dll
+ 2008-08-22 08:06:40 228,864 -c--a-w c:\windows\system32\dllcache\ieaksie.dll
- 2005-02-16 15:18:56 221,184 -c--a-w c:\windows\system32\dllcache\ieakui.dll
+ 2008-08-22 08:06:24 163,840 -c--a-w c:\windows\system32\dllcache\ieakui.dll
- 2005-02-16 15:18:56 323,584 -c--a-w c:\windows\system32\dllcache\iedkcs32.dll
+ 2008-08-22 08:06:44 385,024 -c--a-w c:\windows\system32\dllcache\iedkcs32.dll
- 2007-08-21 10:30:45 18,432 -c--a-w c:\windows\system32\dllcache\iedw.exe
+ 2008-06-23 09:49:29 18,432 -c--a-w c:\windows\system32\dllcache\iedw.exe
- 2007-08-22 13:12:16 251,392 -c--a-w c:\windows\system32\dllcache\iepeers.dll
+ 2008-08-22 08:05:24 186,880 -c--a-w c:\windows\system32\dllcache\iepeers.dll
- 2005-02-16 15:18:56 48,640 -c--a-w c:\windows\system32\dllcache\iernonce.dll
+ 2008-08-22 08:06:20 55,808 -c--a-w c:\windows\system32\dllcache\iernonce.dll
- 2005-02-16 15:18:56 62,976 -c--a-w c:\windows\system32\dllcache\iesetup.dll
+ 2008-08-22 08:06:24 71,680 -c--a-w c:\windows\system32\dllcache\iesetup.dll
- 2005-02-16 15:18:56 832,512 -c--a-w c:\windows\system32\dllcache\iexplore.exe
+ 2008-08-22 08:16:40 637,984 -c--a-w c:\windows\system32\dllcache\iexplore.exe
+ 2008-05-02 13:30:45 317,952 -c----w c:\windows\system32\dllcache\imapi2.dll
+ 2008-05-02 13:30:45 464,384 -c----w c:\windows\system32\dllcache\imapi2fs.dll
- 2005-02-16 15:18:56 44,032 -c--a-w c:\windows\system32\dllcache\imekrmig.exe
+ 2008-09-22 05:28:43 44,032 -c--a-w c:\windows\system32\dllcache\imekrmig.exe
- 2005-02-16 15:18:56 102,463 -c--a-w c:\windows\system32\dllcache\imepadsm.dll
+ 2008-09-22 05:40:12 102,463 -c--a-w c:\windows\system32\dllcache\imepadsm.dll
- 2005-02-16 15:18:56 311,359 -c--a-w c:\windows\system32\dllcache\imepadsv.exe
+ 2008-09-22 05:29:43 311,359 -c--a-w c:\windows\system32\dllcache\imepadsv.exe
- 2005-02-16 15:18:56 35,840 -c--a-w c:\windows\system32\dllcache\imgutil.dll
+ 2008-08-22 08:05:14 35,840 -c--a-w c:\windows\system32\dllcache\imgutil.dll
- 2005-02-16 15:18:56 57,398 -c--a-w c:\windows\system32\dllcache\imjpdadm.exe
+ 2008-09-22 05:26:53 57,398 -c--a-w c:\windows\system32\dllcache\imjpdadm.exe
- 2005-02-16 15:18:56 45,109 -c--a-w c:\windows\system32\dllcache\imjpuex.exe
+ 2008-09-22 05:38:10 45,109 -c--a-w c:\windows\system32\dllcache\imjpuex.exe
- 2005-02-16 15:18:56 59,904 -c--a-w c:\windows\system32\dllcache\imkrinst.exe
+ 2008-09-22 05:37:25 59,904 -c--a-w c:\windows\system32\dllcache\imkrinst.exe
- 2005-02-16 15:18:56 471,102 -c--a-w c:\windows\system32\dllcache\imskdic.dll
+ 2008-09-22 05:28:18 471,102 -c--a-w c:\windows\system32\dllcache\imskdic.dll
- 2005-02-16 15:18:56 315,452 -c--a-w c:\windows\system32\dllcache\imskf.dll
+ 2008-09-22 05:39:27 315,452 -c--a-w c:\windows\system32\dllcache\imskf.dll
- 2007-08-21 06:15:44 683,520 -c--a-w c:\windows\system32\dllcache\inetcomm.dll
+ 2008-04-11 18:50:43 683,520 -c--a-w c:\windows\system32\dllcache\inetcomm.dll
- 2007-08-22 13:12:16 96,256 -c--a-w c:\windows\system32\dllcache\inseng.dll
+ 2008-08-22 08:06:16 94,720 -c--a-w c:\windows\system32\dllcache\inseng.dll
- 2006-05-18 05:24:25 450,560 -c--a-w c:\windows\system32\dllcache\jscript.dll
+ 2008-08-22 08:06:30 552,960 -c--a-w c:\windows\system32\dllcache\jscript.dll
- 2007-08-22 13:12:16 16,384 -c--a-w c:\windows\system32\dllcache\jsproxy.dll
+ 2008-08-22 08:06:58 28,672 -c--a-w c:\windows\system32\dllcache\jsproxy.dll
- 2005-02-16 15:18:56 6,144 -c--a-w c:\windows\system32\dllcache\kbd101.dll
+ 2008-09-22 05:29:39 6,144 -c--a-w c:\windows\system32\dllcache\kbd101.dll
- 2005-02-16 15:18:56 6,144 -c--a-w c:\windows\system32\dllcache\kbd101a.dll
+ 2008-09-22 05:24:24 6,144 -c--a-w c:\windows\system32\dllcache\kbd101a.dll
+ 2001-08-17 19:55:56 6,144 -c--a-w c:\windows\system32\dllcache\kbd101b.dll
+ 2001-08-17 19:55:56 6,144 -c--a-w c:\windows\system32\dllcache\kbd101c.dll
+ 2001-08-17 19:55:56 5,632 -c--a-w c:\windows\system32\dllcache\kbd103.dll
+ 2001-08-17 19:55:56 6,144 -c--a-w c:\windows\system32\dllcache\kbd106.dll
- 2005-02-16 15:18:56 6,144 -c--a-w c:\windows\system32\dllcache\kbd106n.dll
+ 2008-09-22 05:24:40 6,144 -c--a-w c:\windows\system32\dllcache\kbd106n.dll
- 2005-02-16 15:18:56 6,144 -c--a-w c:\windows\system32\dllcache\kbdax2.dll
+ 2008-09-22 05:24:12 6,144 -c--a-w c:\windows\system32\dllcache\kbdax2.dll
- 2005-02-16 15:18:56 7,168 -c--a-w c:\windows\system32\dllcache\kbdibm02.dll
+ 2008-09-22 05:34:55 7,168 -c--a-w c:\windows\system32\dllcache\kbdibm02.dll
+ 2001-08-18 03:36:18 8,704 -c--a-w c:\windows\system32\dllcache\kbdjpn.dll
+ 2001-08-18 03:36:18 8,192 -c--a-w c:\windows\system32\dllcache\kbdkor.dll
- 2005-02-16 15:18:56 6,656 -c--a-w c:\windows\system32\dllcache\kbdlk41a.dll
+ 2008-09-22 05:36:00 6,656 -c--a-w c:\windows\system32\dllcache\kbdlk41a.dll
- 2005-02-16 15:18:56 6,144 -c--a-w c:\windows\system32\dllcache\kbdlk41j.dll
+ 2008-09-22 05:39:35 6,144 -c--a-w c:\windows\system32\dllcache\kbdlk41j.dll
- 2005-02-16 15:18:56 7,168 -c--a-w c:\windows\system32\dllcache\kbdnec95.dll
+ 2008-09-22 05:27:14 7,168 -c--a-w c:\windows\system32\dllcache\kbdnec95.dll
- 2005-02-16 15:18:56 9,216 -c--a-w c:\windows\system32\dllcache\kbdnecat.dll
+ 2008-09-22 05:40:24 9,216 -c--a-w c:\windows\system32\dllcache\kbdnecat.dll
- 2005-02-16 15:18:56 7,680 -c--a-w c:\windows\system32\dllcache\kbdnecnt.dll
+ 2008-09-22 05:37:09 7,680 -c--a-w c:\windows\system32\dllcache\kbdnecnt.dll
+ 2005-02-16 15:18:56 2,000 -c--a-w c:\windows\system32\dllcache\keyboard.drv
- 2005-02-16 15:18:56 70,656 -c--a-w c:\windows\system32\dllcache\korwbrkr.dll
+ 2008-09-22 05:25:20 70,656 -c--a-w c:\windows\system32\dllcache\korwbrkr.dll
- 2005-02-16 15:18:56 22,016 -c--a-w c:\windows\system32\dllcache\licmgr10.dll
+ 2008-08-22 08:08:00 43,008 -c--a-w c:\windows\system32\dllcache\licmgr10.dll
- 2006-10-19 02:03:58 100,864 -c--a-w c:\windows\system32\dllcache\logagent.exe
+ 2008-06-18 07:09:22 100,864 -c--a-w c:\windows\system32\dllcache\logagent.exe
- 2006-08-17 12:28:27 721,920 -c--a-w c:\windows\system32\dllcache\lsasrv.dll
+ 2007-11-07 09:26:56 721,920 -c--a-w c:\windows\system32\dllcache\lsasrv.dll
+ 2005-02-16 15:18:56 2,560 -c--a-w c:\windows\system32\dllcache\lz32.dll
+ 2005-02-16 15:18:56 73,376 -c--a-w c:\windows\system32\dllcache\mciavi.drv
+ 2005-02-16 15:18:56 25,264 -c--a-w c:\windows\system32\dllcache\mciseq.drv
+ 2005-02-16 15:18:56 28,160 -c--a-w c:\windows\system32\dllcache\mciwave.drv
+ 2005-02-16 15:18:56 2,032 -c--a-w c:\windows\system32\dllcache\mouse.drv
- 2004-09-22 23:45:52 344,064 ----a-w c:\windows\system32\dllcache\mpvis.dll
+ 2006-10-19 03:47:14 243,712 -c--a-w c:\windows\system32\dllcache\mpvis.dll
- 2005-02-16 15:18:56 72,960 -c--a-w c:\windows\system32\dllcache\mqac.sys
+ 2007-07-06 10:05:47 72,960 -c--a-w c:\windows\system32\dllcache\mqac.sys
- 2005-02-16 15:18:56 138,240 -c--a-w c:\windows\system32\dllcache\mqad.dll
+ 2007-07-06 12:46:59 138,240 -c--a-w c:\windows\system32\dllcache\mqad.dll
- 2005-02-16 15:18:56 47,104 -c--a-w c:\windows\system32\dllcache\mqdscli.dll
+ 2007-07-06 12:46:59 47,104 -c--a-w c:\windows\system32\dllcache\mqdscli.dll
- 2005-02-16 15:18:56 16,896 -c--a-w c:\windows\system32\dllcache\mqise.dll
+ 2007-07-06 12:46:59 16,896 -c--a-w c:\windows\system32\dllcache\mqise.dll
- 2005-02-16 15:18:56 660,992 -c--a-w c:\windows\system32\dllcache\mqqm.dll
+ 2007-07-06 12:46:59 660,992 -c--a-w c:\windows\system32\dllcache\mqqm.dll
- 2005-02-16 15:18:56 177,152 -c--a-w c:\windows\system32\dllcache\mqrt.dll
+ 2007-07-06 12:46:59 177,152 -c--a-w c:\windows\system32\dllcache\mqrt.dll
- 2005-02-16 15:18:56 95,744 -c--a-w c:\windows\system32\dllcache\mqsec.dll
+ 2007-07-06 12:46:59 95,744 -c--a-w c:\windows\system32\dllcache\mqsec.dll
- 2005-02-16 15:18:56 48,640 -c--a-w c:\windows\system32\dllcache\mqupgrd.dll
+ 2007-07-06 12:46:59 48,640 -c--a-w c:\windows\system32\dllcache\mqupgrd.dll
- 2005-02-16 15:18:56 471,552 -c--a-w c:\windows\system32\dllcache\mqutil.dll
+ 2007-07-06 12:46:59 471,552 -c--a-w c:\windows\system32\dllcache\mqutil.dll
- 2005-02-16 15:18:56 181,248 -c--a-w c:\windows\system32\dllcache\mrxdav.sys
+ 2007-12-18 09:51:35 179,584 -c--a-w c:\windows\system32\dllcache\mrxdav.sys
- 2006-05-05 09:41:45 453,120 -c----w c:\windows\system32\dllcache\mrxsmb.sys
+ 2008-10-24 11:10:42 453,632 -c----w c:\windows\system32\dllcache\mrxsmb.sys
- 2005-02-16 15:18:56 331,776 -c--a-w c:\windows\system32\dllcache\msadce.dll
+ 2008-05-01 14:30:33 331,776 -c--a-w c:\windows\system32\dllcache\msadce.dll
- 2005-06-29 01:46:00 74,240 -c--a-w c:\windows\system32\dllcache\mscms.dll
+ 2008-06-24 16:23:05 74,240 -c--a-w c:\windows\system32\dllcache\mscms.dll
- 2005-02-16 15:18:56 512,029 -c--a-w c:\windows\system32\dllcache\msexch40.dll
+ 2008-03-25 04:50:28 518,944 -c--a-w c:\windows\system32\dllcache\msexch40.dll
- 2005-02-16 15:18:56 319,517 -c--a-w c:\windows\system32\dllcache\msexcl40.dll
+ 2008-03-25 04:50:30 326,432 -c--a-w c:\windows\system32\dllcache\msexcl40.dll
- 2005-02-16 15:18:56 29,184 -c--a-w c:\windows\system32\dllcache\mshta.exe
+ 2008-08-22 08:04:54 45,568 -c--a-w c:\windows\system32\dllcache\mshta.exe
- 2007-08-22 13:12:17 3,498,496 -c--a-w c:\windows\system32\dllcache\mshtml.dll
+ 2008-12-14 13:59:44 5,699,584 -c--a-w c:\windows\system32\dllcache\mshtml.dll
- 2007-08-22 13:12:17 449,024 -c--a-w c:\windows\system32\dllcache\mshtmled.dll
+ 2008-08-22 08:05:08 70,656 -c--a-w c:\windows\system32\dllcache\mshtmled.dll
- 2005-02-16 15:18:56 56,832 -c--a-w c:\windows\system32\dllcache\mshtmler.dll
+ 2008-08-22 08:05:00 48,128 -c--a-w c:\windows\system32\dllcache\mshtmler.dll
- 2005-02-16 15:18:56 98,304 -c--a-w c:\windows\system32\dllcache\msir3jp.dll
+ 2008-09-22 05:27:54 98,304 -c--a-w c:\windows\system32\dllcache\msir3jp.dll
- 2005-02-16 15:18:56 1,507,356 -c--a-w c:\windows\system32\dllcache\msjet40.dll
+ 2008-03-25 04:50:34 1,516,568 -c--a-w c:\windows\system32\dllcache\msjet40.dll
- 2005-02-16 15:18:56 358,976 -c--a-w c:\windows\system32\dllcache\msjetol1.dll
+ 2008-03-25 04:50:40 355,112 -c--a-w c:\windows\system32\dllcache\msjetol1.dll
- 2005-02-16 15:18:56 151,583 -c--a-w c:\windows\system32\dllcache\msjint40.dll
+ 2008-03-27 08:12:54 151,583 -c--a-w c:\windows\system32\dllcache\msjint40.dll
- 2005-02-16 15:18:56 53,279 -c--a-w c:\windows\system32\dllcache\msjter40.dll
+ 2008-03-25 04:50:42 60,192 -c--a-w c:\windows\system32\dllcache\msjter40.dll
- 2005-02-16 15:18:56 241,693 -c--a-w c:\windows\system32\dllcache\msjtes40.dll
+ 2008-03-25 04:50:42 248,608 -c--a-w c:\windows\system32\dllcache\msjtes40.dll
- 2005-02-16 15:18:56 146,432 -c--a-w c:\windows\system32\dllcache\msls31.dll
+ 2008-08-22 07:57:56 156,160 -c--a-w c:\windows\system32\dllcache\msls31.dll
- 2005-02-16 15:18:56 213,023 -c--a-w c:\windows\system32\dllcache\msltus40.dll
+ 2008-03-25 04:50:44 219,936 -c--a-w c:\windows\system32\dllcache\msltus40.dll
- 2005-02-16 15:18:56 348,189 -c--a-w c:\windows\system32\dllcache\mspbde40.dll
+ 2008-03-25 04:50:45 355,104 -c--a-w c:\windows\system32\dllcache\mspbde40.dll
- 2007-08-22 13:12:17 146,432 -c--a-w c:\windows\system32\dllcache\msrating.dll
+ 2008-08-22 08:07:50 193,536 -c--a-w c:\windows\system32\dllcache\msrating.dll
- 2005-02-16 15:18:56 421,919 -c--a-w c:\windows\system32\dllcache\msrd2x40.dll
+ 2008-03-25 04:50:47 432,928 -c--a-w c:\windows\system32\dllcache\msrd2x40.dll
- 2005-02-16 15:18:56 315,423 -c--a-w c:\windows\system32\dllcache\msrd3x40.dll
+ 2008-03-25 04:50:49 322,336 -c--a-w c:\windows\system32\dllcache\msrd3x40.dll
- 2005-02-16 15:18:56 552,989 -c--a-w c:\windows\system32\dllcache\msrepl40.dll
+ 2008-03-25 04:50:52 559,904 -c--a-w c:\windows\system32\dllcache\msrepl40.dll
- 2005-02-16 15:18:56 258,077 -c--a-w c:\windows\system32\dllcache\mstext40.dll
+ 2008-03-25 04:50:55 264,992 -c--a-w c:\windows\system32\dllcache\mstext40.dll
- 2007-08-22 13:12:17 532,480 -c--a-w c:\windows\system32\dllcache\mstime.dll
+ 2008-08-22 08:05:34 630,272 -c--a-w c:\windows\system32\dllcache\mstime.dll
- 2005-02-16 15:18:56 831,519 -c--a-w c:\windows\system32\dllcache\mswdat10.dll
+ 2008-03-25 04:50:57 838,432 -c--a-w c:\windows\system32\dllcache\mswdat10.dll
- 2005-02-16 15:18:56 245,248 -c--a-w c:\windows\system32\dllcache\mswsock.dll
+ 2008-06-20 17:41:10 245,248 -c--a-w c:\windows\system32\dllcache\mswsock.dll
- 2005-02-16 15:18:56 614,429 -c--a-w c:\windows\system32\dllcache\mswstr10.dll
+ 2008-03-25 04:50:58 621,344 -c--a-w c:\windows\system32\dllcache\mswstr10.dll
- 2005-02-16 15:18:56 348,189 -c--a-w c:\windows\system32\dllcache\msxbde40.dll
+ 2008-03-25 04:50:58 355,104 -c--a-w c:\windows\system32\dllcache\msxbde40.dll
- 2007-06-26 06:08:16 1,104,896 -c--a-w c:\windows\system32\dllcache\msxml3.dll
+ 2008-09-04 16:42:02 1,106,944 -c--a-w c:\windows\system32\dllcache\msxml3.dll
- 2005-02-16 15:18:56 229,439 -c--a-w c:\windows\system32\dllcache\multibox.dll
+ 2008-09-22 05:25:57 229,439 -c--a-w c:\windows\system32\dllcache\multibox.dll
- 2006-08-17 12:28:27 332,288 -c--a-w c:\windows\system32\dllcache\netapi32.dll
+ 2008-10-15 16:57:55 332,800 -c--a-w c:\windows\system32\dllcache\netapi32.dll
- 2007-02-28 09:08:48 2,136,064 -c----w c:\windows\system32\dllcache\ntkrnlmp.exe
+ 2008-08-14 09:58:27 2,136,064 -c----w c:\windows\system32\dllcache\ntkrnlmp.exe
- 2007-02-28 08:38:55 2,057,600 -c----w c:\windows\system32\dllcache\ntkrnlpa.exe
+ 2008-08-14 09:22:13 2,057,728 -c----w c:\windows\system32\dllcache\ntkrnlpa.exe
- 2007-02-28 08:38:57 2,015,744 -c----w c:\windows\system32\dllcache\ntkrpamp.exe
+ 2008-08-14 09:22:14 2,015,744 -c----w c:\windows\system32\dllcache\ntkrpamp.exe
- 2007-02-28 09:10:57 2,180,352 -c----w c:\windows\system32\dllcache\ntoskrnl.exe
+ 2008-08-14 10:00:45 2,180,352 -c----w c:\windows\system32\dllcache\ntoskrnl.exe
+ 2005-02-16 15:18:56 2,944 -c--a-w c:\windows\system32\dllcache\null.sys
- 2005-02-16 15:18:56 146,944 -c--a-w c:\windows\system32\dllcache\occache.dll
+ 2008-08-22 08:07:50 116,224 -c--a-w c:\windows\system32\dllcache\occache.dll
- 2007-05-17 11:28:05 549,376 -c--a-w c:\windows\system32\dllcache\oleaut32.dll
+ 2007-12-04 18:38:13 550,912 -c--a-w c:\windows\system32\dllcache\oleaut32.dll
- 2005-02-16 15:18:56 36,927 -c--a-w c:\windows\system32\dllcache\padrs411.dll
+ 2008-09-22 05:35:16 36,927 -c--a-w c:\windows\system32\dllcache\padrs411.dll
- 2005-02-16 15:18:56 14,336 -c--a-w c:\windows\system32\dllcache\padrs412.dll
+ 2008-09-22 05:38:14 14,336 -c--a-w c:\windows\system32\dllcache\padrs412.dll
- 2007-08-22 13:12:17 39,424 -c--a-w c:\windows\system32\dllcache\pngfilt.dll
+ 2008-08-22 08:05:14 45,056 -c--a-w c:\windows\system32\dllcache\pngfilt.dll
- 2005-08-30 03:54:26 1,287,168 -c--a-w c:\windows\system32\dllcache\quartz.dll
+ 2008-05-07 05:18:48 1,287,680 -c--a-w c:\windows\system32\dllcache\quartz.dll
- 2006-07-13 08:48:58 202,240 -c--a-w c:\windows\system32\dllcache\rmcast.sys
+ 2008-05-08 12:28:49 202,752 -c--a-w c:\windows\system32\dllcache\rmcast.sys
- 2005-02-16 15:18:56 159,744 -c--a-w c:\windows\system32\dllcache\scrobj.dll
+ 2007-08-01 01:45:28 163,840 -c--a-w c:\windows\system32\dllcache\scrobj.dll
- 2005-02-16 15:18:56 151,552 -c--a-w c:\windows\system32\dllcache\scrrun.dll
+ 2007-08-01 01:45:28 155,648 -c--a-w c:\windows\system32\dllcache\scrrun.dll
- 2004-09-22 23:46:04 819,200 ----a-w c:\windows\system32\dllcache\setup_wm.exe
+ 2006-10-19 02:04:54 1,669,120 -c--a-w c:\windows\system32\dllcache\setup_wm.exe
- 2007-08-22 13:12:18 1,774,080 -c--a-w c:\windows\system32\dllcache\shdocvw.dll
+ 2008-06-23 15:38:34 1,494,528 -c--a-w c:\windows\system32\dllcache\shdocvw.dll
- 2007-08-22 13:12:18 498,688 -c--a-w c:\windows\system32\dllcache\shlwapi.dll
+ 2008-06-23 15:38:34 474,112 -c--a-w c:\windows\system32\dllcache\shlwapi.dll
- 2005-02-16 15:18:56 143,422 -c--a-w c:\windows\system32\dllcache\softkey.dll
+ 2008-09-22 05:25:41 143,422 -c--a-w c:\windows\system32\dllcache\softkey.dll
+ 2005-02-16 15:18:56 1,744 -c--a-w c:\windows\system32\dllcache\sound.drv
+ 2008-06-12 16:27:56 134,144 -c----w c:\windows\system32\dllcache\sqmapi.dll
- 2006-08-14 10:34:41 332,928 -c--a-w c:\windows\system32\dllcache\srv.sys
+ 2008-08-28 10:04:17 333,056 -c--a-w c:\windows\system32\dllcache\srv.sys
- 2006-08-21 15:52:08 246,814 -c--a-w c:\windows\system32\dllcache\strmdll.dll
+ 2008-10-03 10:15:47 247,326 -c--a-w c:\windows\system32\dllcache\strmdll.dll
+ 2005-02-16 15:18:56 3,360 -c--a-w c:\windows\system32\dllcache\system.drv
- 2006-04-20 11:51:50 359,808 -c--a-w c:\windows\system32\dllcache\tcpip.sys
+ 2008-06-20 10:45:13 360,320 -c--a-w c:\windows\system32\dllcache\tcpip.sys
- 2006-08-16 09:37:30 225,664 -c--a-w c:\windows\system32\dllcache\tcpip6.sys
+ 2008-06-20 09:52:06 225,920 -c--a-w c:\windows\system32\dllcache\tcpip6.sys
+ 2005-02-16 15:18:56 4,048 -c--a-w c:\windows\system32\dllcache\timer.drv
- 2004-09-22 23:46:10 192,512 ----a-w c:\windows\system32\dllcache\unregmp2.exe
+ 2007-06-27 03:10:26 317,440 -c--a-w c:\windows\system32\dllcache\unregmp2.exe
- 2005-02-16 15:18:56 59,392 -c--a-w c:\windows\system32\dllcache\url.dll
+ 2008-08-22 08:07:58 105,984 -c--a-w c:\windows\system32\dllcache\url.dll
- 2007-08-22 13:12:18 689,152 -c--a-w c:\windows\system32\dllcache\urlmon.dll
+ 2008-08-22 08:08:22 1,206,784 -c--a-w c:\windows\system32\dllcache\urlmon.dll
+ 2004-08-04 05:08:48 31,616 -c--a-w c:\windows\system32\dllcache\usbccgp.sys
- 2004-08-04 04:08:48 26,496 -c--a-w c:\windows\system32\dllcache\usbstor.sys
+ 2004-08-04 05:08:48 26,496 -c--a-w c:\windows\system32\dllcache\usbstor.sys
- 2005-02-16 15:18:56 417,792 -c--a-w c:\windows\system32\dllcache\vbscript.dll
+ 2008-08-22 08:06:36 434,176 -c--a-w c:\windows\system32\dllcache\vbscript.dll
+ 2005-02-16 15:18:56 2,176 -c--a-w c:\windows\system32\dllcache\vga.drv
- 2007-06-26 15:13:22 851,968 -c--a-w c:\windows\system32\dllcache\vgx.dll
+ 2008-08-22 08:07:20 755,200 -c--a-w c:\windows\system32\dllcache\VGX.dll
- 2005-02-16 15:18:56 49,152 -c--a-w c:\windows\system32\dllcache\wdigest.dll
+ 2006-03-24 04:37:50 49,152 -c--a-w c:\windows\system32\dllcache\wdigest.dll
+ 2004-08-04 05:56:58 23,552 -c--a-w c:\windows\system32\dllcache\wdmaud.drv
- 2005-02-16 15:18:56 437,248 -c--a-w c:\windows\system32\dllcache\webcheck.dll
+ 2008-08-22 08:08:08 236,544 -c--a-w c:\windows\system32\dllcache\webcheck.dll
+ 2005-02-16 15:18:56 13,600 -c--a-w c:\windows\system32\dllcache\wfwnet.drv
+ 2007-04-10 20:00:46 236,928 -c----w c:\windows\system32\dllcache\WgaLogon.dll
+ 2007-04-10 20:01:18 336,768 -c----w c:\windows\system32\dllcache\WgaTray.exe
+ 2001-08-18 04:36:34 87,040 -c--a-w c:\windows\system32\dllcache\wiafbdrv.dll
- 2007-03-08 13:47:48 1,843,584 -c--a-w c:\windows\system32\dllcache\win32k.sys
+ 2008-09-15 11:57:41 1,846,016 -c--a-w c:\windows\system32\dllcache\win32k.sys
- 2007-08-22 13:12:18 692,736 -c--a-w c:\windows\system32\dllcache\wininet.dll
+ 2008-08-22 08:08:06 878,592 -c--a-w c:\windows\system32\dllcache\wininet.dll
+ 2005-02-16 15:18:56 2,864 -c--a-w c:\windows\system32\dllcache\winsock.dll
+ 2005-02-16 15:18:56 146,432 -c--a-w c:\windows\system32\dllcache\winspool.drv
+ 2005-02-16 15:18:56 2,112 -c--a-w c:\windows\system32\dllcache\winspool.exe
- 2006-10-19 03:47:18 222,208 -c--a-w c:\windows\system32\dllcache\wmasf.dll
+ 2007-10-27 23:40:30 222,720 -c--a-w c:\windows\system32\dllcache\wmasf.dll
- 2004-09-22 23:46:14 189,440 ----a-w c:\windows\system32\dllcache\wmerror.dll
+ 2006-10-19 03:47:20 227,328 -c--a-w c:\windows\system32\dllcache\wmerror.dll
- 2006-10-19 03:47:20 937,984 -c--a-w c:\windows\system32\dllcache\WMNetMgr.dll
+ 2008-06-18 11:03:08 938,496 -c--a-w c:\windows\system32\dllcache\WMNetmgr.dll
- 2007-04-30 13:20:24 5,537,792 ----a-w c:\windows\system32\dllcache\wmp.dll
+ 2007-06-12 04:51:12 10,834,944 -c--a-w c:\windows\system32\dllcache\wmp.dll
- 2004-09-22 23:46:20 135,168 ----a-w c:\windows\system32\dllcache\wmpasf.dll
+ 2006-10-19 03:47:20 242,688 -c--a-w c:\windows\system32\dllcache\wmpasf.dll
- 2004-09-22 23:46:20 77,824 ----a-w c:\windows\system32\dllcache\wmpband.dll
+ 2006-10-19 03:47:20 96,256 -c--a-w c:\windows\system32\dllcache\wmpband.dll
- 2004-09-22 23:46:20 282,624 ----a-w c:\windows\system32\dllcache\wmpdxm.dll
+ 2006-10-19 03:47:20 314,880 -c--a-w c:\windows\system32\dllcache\wmpdxm.dll
- 2004-09-22 23:46:22 73,728 ----a-w c:\windows\system32\dllcache\wmplayer.exe
+ 2006-10-19 03:46:20 64,000 -c--a-w c:\windows\system32\dllcache\wmplayer.exe
- 2004-09-22 23:46:22 3,371,008 ----a-w c:\windows\system32\dllcache\wmploc.dll
+ 2006-10-19 03:47:20 8,231,936 -c--a-w c:\windows\system32\dllcache\wmploc.dll
- 2004-09-22 23:46:24 86,016 ----a-w c:\windows\system32\dllcache\wmpshell.dll
+ 2006-10-19 03:47:20 99,840 -c--a-w c:\windows\system32\dllcache\wmpshell.dll
- 2006-10-19 03:47:22 2,450,944 -c--a-w c:\windows\system32\dllcache\wmvcore.dll
+ 2008-06-18 11:03:14 2,458,112 -c--a-w c:\windows\system32\dllcache\WMVCore.dll
+ 2005-02-16 15:18:56 2,736 -c--a-w c:\windows\system32\dllcache\wowdeb.exe
- 2005-02-16 15:18:56 114,688 -c--a-w c:\windows\system32\dllcache\wscript.exe
+ 2007-08-01 01:45:22 135,168 -c--a-w c:\windows\system32\dllcache\wscript.exe
- 2005-02-16 15:18:56 65,536 -c--a-w c:\windows\system32\dllcache\wshext.dll
+ 2007-08-01 01:45:30 69,632 -c--a-w c:\windows\system32\dllcache\wshext.dll
- 2007-07-31 00:19:36 549,720 -c--a-w c:\windows\system32\dllcache\wuapi.dll
+ 2008-10-16 20:12:20 561,688 -c--a-w c:\windows\system32\dllcache\wuapi.dll
- 2007-07-31 00:19:16 68,440 -c--a-w c:\windows\system32\dllcache\wuauclt.exe
+ 2008-10-16 20:09:44 51,224 -c--a-w c:\windows\system32\dllcache\wuauclt.exe
- 2007-07-31 00:19:42 1,712,984 -c--a-w c:\windows\system32\dllcache\wuaueng.dll
+ 2008-10-16 20:13:40 1,809,944 -c--a-w c:\windows\system32\dllcache\wuaueng.dll
- 2007-07-31 00:19:32 325,976 -c--a-w c:\windows\system32\dllcache\wucltui.dll
+ 2008-10-16 20:12:22 323,608 -c--a-w c:\windows\system32\dllcache\wucltui.dll
- 2007-07-31 00:18:40 33,624 -c--a-w c:\windows\system32\dllcache\wups.dll
+ 2008-10-16 20:08:58 34,328 -c--a-w c:\windows\system32\dllcache\wups.dll
- 2007-07-31 00:19:28 203,096 -c--a-w c:\windows\system32\dllcache\wuweb.dll
+ 2008-10-16 20:13:40 202,776 -c--a-w c:\windows\system32\dllcache\wuweb.dll
- 2006-06-26 17:37:10 148,480 ----a-w c:\windows\system32\dnsapi.dll
+ 2008-06-20 17:41:10 148,992 ----a-w c:\windows\system32\dnsapi.dll
- 2005-02-16 15:18:56 45,568 ----a-w c:\windows\system32\dnsrslvr.dll
+ 2008-02-20 05:32:43 45,568 ----a-w c:\windows\system32\dnsrslvr.dll
- 2007-04-23 00:02:34 73,728 ----a-w c:\windows\system32\dpl100.dll
+ 2008-05-22 22:19:46 81,920 ----a-w c:\windows\system32\dpl100.dll
- 2007-04-23 00:02:31 294,912 ----a-w c:\windows\system32\dpu10.dll
+ 2008-05-30 23:22:54 294,912 ----a-w c:\windows\system32\dpu10.dll
- 2007-04-23 00:02:31 294,912 ----a-w c:\windows\system32\dpu11.dll
+ 2008-05-30 23:22:54 294,912 ----a-w c:\windows\system32\dpu11.dll
- 2007-04-23 00:02:33 53,248 ----a-w c:\windows\system32\dpuGUI10.dll
+ 2008-05-30 23:22:58 53,248 ----a-w c:\windows\system32\dpuGUI10.dll
- 2007-04-23 00:02:31 593,920 ----a-w c:\windows\system32\dpuGUI11.dll
+ 2008-05-30 23:22:54 593,920 ----a-w c:\windows\system32\dpuGUI11.dll
- 2007-04-23 00:02:31 344,064 ----a-w c:\windows\system32\dpus11.dll
+ 2008-05-30 23:22:54 344,064 ----a-w c:\windows\system32\dpus11.dll
- 2007-04-23 00:02:31 57,344 ----a-w c:\windows\system32\dpv11.dll
+ 2008-05-30 23:22:54 57,344 ----a-w c:\windows\system32\dpv11.dll
- 2005-02-16 15:18:56 138,496 ----a-w c:\windows\system32\drivers\afd.sys
+ 2008-08-14 09:51:43 138,368 ----a-w c:\windows\system32\drivers\afd.sys
+ 2008-08-31 04:38:51 97,928 ----a-w c:\windows\system32\drivers\avgldx86.sys
- 2007-07-04 10:16:35 19,904 ----a-w c:\windows\system32\drivers\avgmfx86.sys
+ 2008-07-05 19:55:38 26,824 ----a-w c:\windows\system32\drivers\avgmfx86.sys
+ 2008-07-05 19:57:07 76,040 ----a-w c:\windows\system32\drivers\avgtdix.sys
+ 2008-06-13 13:10:50 272,128 ------w c:\windows\system32\drivers\bthport.sys
+ 2007-04-23 00:15:25 2,432 ------w c:\windows\system32\drivers\cdr4_xp.sys
+ 2007-04-23 00:15:25 2,560 ------w c:\windows\system32\drivers\cdralw2k.sys
- 2005-02-16 15:18:56 49,536 ----a-w c:\windows\system32\drivers\cdrom.sys
+ 2008-05-02 09:05:56 62,592 ----a-w c:\windows\system32\drivers\cdrom.sys
+ 2004-08-04 04:07:58 2,944 ----a-w c:\windows\system32\drivers\drmkaud.sys
- 2006-09-19 21:44:04 15,664 ----a-w c:\windows\system32\drivers\GEARAspiWDM.sys
+ 2008-04-17 19:12:54 15,464 ----a-w c:\windows\system32\drivers\GEARAspiWDM.sys
+ 2008-01-06 06:13:57 13,352 ----a-w c:\windows\system32\drivers\ggflt.sys
+ 2008-01-06 06:13:57 20,520 ----a-w c:\windows\system32\drivers\ggsemc.sys
+ 2007-08-03 20:04:52 10,144 ----a-w c:\windows\system32\drivers\lmimirr.sys
+ 2007-08-03 20:09:34 46,112 ----a-w c:\windows\system32\drivers\LMIRfsDriver.sys
+ 2008-07-28 23:19:28 116,736 ----a-w c:\windows\system32\drivers\mcdbus.sys
- 2005-02-16 15:18:56 72,960 ----a-w c:\windows\system32\drivers\mqac.sys
+ 2007-07-06 10:05:47 72,960 ----a-w c:\windows\system32\drivers\mqac.sys
- 2005-02-16 15:18:56 181,248 ----a-w c:\windows\system32\drivers\mrxdav.sys
+ 2007-12-18 09:51:35 179,584 ----a-w c:\windows\system32\drivers\mrxdav.sys
- 2006-05-05 09:41:45 453,120 ----a-w c:\windows\system32\drivers\mrxsmb.sys
+ 2008-10-24 11:10:42 453,632 ----a-w c:\windows\system32\drivers\mrxsmb.sys
+ 1999-05-05 14:22:00 9,360 ----a-w c:\windows\system32\drivers\ntmap.sys
+ 2005-02-16 15:18:56 2,944 ----a-w c:\windows\system32\drivers\null.sys
- 2007-04-23 00:15:25 36,624 ------w c:\windows\system32\drivers\pxhelp20.sys
+ 2007-10-20 00:56:10 43,528 ------w c:\windows\system32\drivers\pxhelp20.sys
+ 2006-06-30 21:10:56 26,752 ----a-r c:\windows\system32\drivers\RimSerial.sys
+ 2006-07-13 15:17:24 22,528 ----a-w c:\windows\system32\drivers\RimUsb.sys
- 2006-07-13 08:48:58 202,240 ----a-w c:\windows\system32\drivers\rmcast.sys
+ 2008-05-08 12:28:49 202,752 ----a-w c:\windows\system32\drivers\rmcast.sys
- 2006-07-05 15:04:37 12,464 ----a-w c:\windows\system32\drivers\secdrv.sys
+ 2007-11-13 10:25:53 20,480 ----a-w c:\windows\system32\drivers\secdrv.sys
- 2006-08-14 10:34:41 332,928 ----a-w c:\windows\system32\drivers\srv.sys
+ 2008-08-28 10:04:17 333,056 ----a-w c:\windows\system32\drivers\srv.sys
+ 2006-07-24 21:05:00 5,632 ----a-w c:\windows\system32\drivers\StarOpen.sys
- 2006-04-20 11:51:50 359,808 ----a-w c:\windows\system32\drivers\tcpip.sys
+ 2008-06-20 10:45:13 360,320 ----a-w c:\windows\system32\drivers\tcpip.sys
- 2006-08-16 09:37:30 225,664 ----a-w c:\windows\system32\drivers\tcpip6.sys
+ 2008-06-20 09:52:06 225,920 ----a-w c:\windows\system32\drivers\tcpip6.sys
+ 2008-01-11 23:39:36 672,256 ----a-w c:\windows\system32\drivers\UMDF\ZuneDriver.dll
+ 2003-06-06 13:29:16 15,884 ----a-w c:\windows\system32\drivers\UMP3.sys
+ 2008-07-10 14:35:22 32,000 ----a-w c:\windows\system32\drivers\usbaapl.sys
+ 2004-08-04 05:08:48 31,616 ----a-w c:\windows\system32\drivers\usbccgp.sys
- 2004-08-04 04:08:48 26,496 ----a-w c:\windows\system32\drivers\USBSTOR.SYS
+ 2004-08-04 05:08:48 26,496 ----a-w c:\windows\system32\drivers\USBSTOR.SYS
+ 2006-11-07 16:42:16 61,504 ----a-r c:\windows\system32\drivers\w200bus.sys
+ 2006-11-07 16:42:20 6,208 ----a-r c:\windows\system32\drivers\w200cm.sys
+ 2006-11-07 16:42:20 6,208 ----a-r c:\windows\system32\drivers\w200cmnt.sys
+ 2006-11-07 16:42:22 9,328 ----a-r c:\windows\system32\drivers\w200mdfl.sys
+ 2006-11-07 16:42:24 97,056 ----a-r c:\windows\system32\drivers\w200mdm.sys
+ 2006-11-07 16:42:28 88,560 ----a-r c:\windows\system32\drivers\w200mgmt.sys
+ 2006-11-07 16:42:30 86,368 ----a-r c:\windows\system32\drivers\w200obex.sys
+ 2006-11-07 16:42:40 5,840 ----a-r c:\windows\system32\drivers\w200wh.sys
+ 2006-11-07 16:42:40 5,840 ----a-r c:\windows\system32\drivers\w200whnt.sys
- 2006-04-20 06:44:38 479,200 ------w c:\windows\system32\drivers\wdf01000.sys
+ 2006-11-02 13:22:54 492,000 ------w c:\windows\system32\drivers\wdf01000.sys
- 2006-04-20 06:44:38 30,688 ------w c:\windows\system32\drivers\wdfldr.sys
+ 2006-11-02 13:22:52 32,224 ------w c:\windows\system32\drivers\wdfldr.sys
+ 2008-01-11 23:39:34 40,832 ----a-w c:\windows\system32\drivers\zumbus.sys
+ 2008-04-17 19:12:54 107,368 -c--a-w c:\windows\system32\DRVSTORE\GEARAspiWD_D213663B6381F01E45A131159A9DEFE018321CB3\x86\GEARAspi.dll
+ 2008-04-17 19:12:54 15,464 -c--a-w c:\windows\system32\DRVSTORE\GEARAspiWD_D213663B6381F01E45A131159A9DEFE018321CB3\x86\GEARAspiWDM.sys
+ 2008-01-06 06:13:57 13,352 -c--a-w c:\windows\system32\DRVSTORE\ggsemc_497772CB59ABFA18EBB2C2F66CF6FD28CB14E824\x86\ggflt.sys
+ 2008-01-06 06:13:57 20,520 -c--a-w c:\windows\system32\DRVSTORE\ggsemc_497772CB59ABFA18EBB2C2F66CF6FD28CB14E824\x86\ggsemc.sys
+ 2008-01-06 06:13:58 1,419,232 -c--a-w c:\windows\system32\DRVSTORE\ggsemc_497772CB59ABFA18EBB2C2F66CF6FD28CB14E824\x86\wdfcoinstaller01005.dll
+ 2008-01-06 06:14:35 28,672 -c--a-w c:\windows\system32\DRVSTORE\semis06_DA67AFFFF2AEF16AC891730C125C417DD219A214\semis06.sys
+ 2008-10-01 19:01:28 32,000 -c--a-w c:\windows\system32\DRVSTORE\usbaapl_246F92BBD6449C86FC3F3F28C40D59AC1F69C558\usbaapl.sys
+ 2008-01-06 06:14:12 83,080 -c--a-w c:\windows\system32\DRVSTORE\zebrbus_1C4A133A26B3D5C4BD6A719D6F0F4DF5AC8E1924\i386\zebrbus.sys
+ 2008-01-06 06:14:12 12,424 -c--a-w c:\windows\system32\DRVSTORE\zebrbus_1C4A133A26B3D5C4BD6A719D6F0F4DF5AC8E1924\i386\zebrwhnt.sys
+ 2008-05-02 21:56:03 83,200 -c--a-w c:\windows\system32\DRVSTORE\zebrbus_36ECD4F36FFD1C8D7775CBB1D3C4EDC32416D158\i386\zebrbus.sys
+ 2008-05-02 21:56:03 12,160 -c--a-w c:\windows\system32\DRVSTORE\zebrbus_36ECD4F36FFD1C8D7775CBB1D3C4EDC32416D158\i386\zebrwhnt.sys
+ 2008-01-06 06:14:12 62,984 -c--a-w c:\windows\system32\DRVSTORE\zebrceb_499B4636F74DB11394EC83E72361A55307545B99\i386\zebrceb.sys
+ 2008-01-06 06:14:12 12,424 -c--a-w c:\windows\system32\DRVSTORE\zebrceb_499B4636F74DB11394EC83E72361A55307545B99\i386\zebrwhnt.sys
+ 2008-05-02 21:56:03 63,360 -c--a-w c:\windows\system32\DRVSTORE\zebrceb_5D3759B0FA9680671ED8714BBB53A24D3DD6D83E\i386\zebrceb.sys
+ 2008-05-02 21:56:03 12,160 -c--a-w c:\windows\system32\DRVSTORE\zebrceb_5D3759B0FA9680671ED8714BBB53A24D3DD6D83E\i386\zebrwhnt.sys
+ 2008-05-02 21:56:03 12,160 -c--a-w c:\windows\system32\DRVSTORE\zebrfse2_0A2847C94D1EE4DD06CE7DF36614D531DE0478E2\i386\zebrcmnt.sys
+ 2008-05-02 21:56:03 109,568 -c--a-w c:\windows\system32\DRVSTORE\zebrfse2_0A2847C94D1EE4DD06CE7DF36614D531DE0478E2\i386\zebrmdm.sys
+ 2008-01-06 06:14:12 12,424 -c--a-w c:\windows\system32\DRVSTORE\zebrfse2_764151E527AD74029A8EBA6B55A2ADA21686739D\i386\zebrcmnt.sys
+ 2008-01-06 06:14:12 108,296 -c--a-w c:\windows\system32\DRVSTORE\zebrfse2_764151E527AD74029A8EBA6B55A2ADA21686739D\i386\zebrmdm.sys
+ 2008-05-02 21:56:03 12,160 -c--a-w c:\windows\system32\DRVSTORE\zebrmdm2_0A2847C94D1EE4DD06CE7DF36614D531DE0478E2\i386\zebrcmnt.sys
+ 2008-05-02 21:56:03 14,848 -c--a-w c:\windows\system32\DRVSTORE\zebrmdm2_0A2847C94D1EE4DD06CE7DF36614D531DE0478E2\i386\zebrmdfl.sys
+ 2008-05-02 21:56:03 109,568 -c--a-w c:\windows\system32\DRVSTORE\zebrmdm2_0A2847C94D1EE4DD06CE7DF36614D531DE0478E2\i386\zebrmdm.sys
+ 2008-01-06 06:14:12 12,424 -c--a-w c:\windows\system32\DRVSTORE\zebrmdm2_764151E527AD74029A8EBA6B55A2ADA21686739D\i386\zebrcmnt.sys
+ 2008-01-06 06:14:12 15,112 -c--a-w c:\windows\system32\DRVSTORE\zebrmdm2_764151E527AD74029A8EBA6B55A2ADA21686739D\i386\zebrmdfl.sys
+ 2008-01-06 06:14:12 108,296 -c--a-w c:\windows\system32\DRVSTORE\zebrmdm2_764151E527AD74029A8EBA6B55A2ADA21686739D\i386\zebrmdm.sys
+ 2008-05-02 21:56:03 12,160 -c--a-w c:\windows\system32\DRVSTORE\zebrmsc2_42356B4F0BD79AC6F18744A1833E5FF4F32976BD\i386\zebrcmnt.sys
+ 2008-05-02 21:56:03 109,568 -c--a-w c:\windows\system32\DRVSTORE\zebrmsc2_42356B4F0BD79AC6F18744A1833E5FF4F32976BD\i386\zebrmdmc.sys
+ 2008-01-06 06:14:12 12,424 -c--a-w c:\windows\system32\DRVSTORE\zebrmsc2_7126899FD4104052EDAC8430049E4EE0CA33D161\i386\zebrcmnt.sys
+ 2008-01-06 06:14:12 108,424 -c--a-w c:\windows\system32\DRVSTORE\zebrmsc2_7126899FD4104052EDAC8430049E4EE0CA33D161\i386\zebrmdmc.sys
+ 2008-01-06 06:14:12 12,424 -c--a-w c:\windows\system32\DRVSTORE\zebrobx2_0083977F2BBDEB3C7BDAAD1B92226A78759AB692\i386\zebrcmnt.sys
+ 2008-01-06 06:14:12 98,440 -c--a-w c:\windows\system32\DRVSTORE\zebrobx2_0083977F2BBDEB3C7BDAAD1B92226A78759AB692\i386\zebrobex.sys
+ 2008-05-02 21:56:03 12,160 -c--a-w c:\windows\system32\DRVSTORE\zebrobx2_5EC96C36227E872B2B260D203965ADA2987E0B39\i386\zebrcmnt.sys
+ 2008-05-02 21:56:03 99,712 -c--a-w c:\windows\system32\DRVSTORE\zebrobx2_5EC96C36227E872B2B260D203965ADA2987E0B39\i386\zebrobex.sys
+ 2008-01-06 06:14:12 12,424 -c--a-w c:\windows\system32\DRVSTORE\zebrscep_3B373F3218453046835400D66AAB74A6A62F917D\i386\zebrcmnt.sys
+ 2008-01-06 06:14:12 90,888 -c--a-w c:\windows\system32\DRVSTORE\zebrscep_3B373F3218453046835400D66AAB74A6A62F917D\i386\zebrsce.sys
+ 2008-05-02 21:56:03 12,160 -c--a-w c:\windows\system32\DRVSTORE\zebrscep_43CE4CE9917F4AB857191C8AF519514326FED3EB\i386\zebrcmnt.sys
+ 2008-05-02 21:56:03 91,264 -c--a-w c:\windows\system32\DRVSTORE\zebrscep_43CE4CE9917F4AB857191C8AF519514326FED3EB\i386\zebrsce.sys
+ 2008-05-02 21:56:03 12,160 -c--a-w c:\windows\system32\DRVSTORE\zebrser2_0A2847C94D1EE4DD06CE7DF36614D531DE0478E2\i386\zebrcmnt.sys
+ 2008-05-02 21:56:03 109,568 -c--a-w c:\windows\system32\DRVSTORE\zebrser2_0A2847C94D1EE4DD06CE7DF36614D531DE0478E2\i386\zebrmdm.sys
+ 2008-01-06 06:14:12 12,424 -c--a-w c:\windows\system32\DRVSTORE\zebrser2_764151E527AD74029A8EBA6B55A2ADA21686739D\i386\zebrcmnt.sys
+ 2008-01-06 06:14:12 108,296 -c--a-w c:\windows\system32\DRVSTORE\zebrser2_764151E527AD74029A8EBA6B55A2ADA21686739D\i386\zebrmdm.sys
- 2007-04-23 00:02:34 196,608 ----a-w c:\windows\system32\dtu100.dll
+ 2008-05-22 22:19:46 196,608 ----a-w c:\windows\system32\dtu100.dll
- 2007-08-22 13:12:16 357,888 ----a-w c:\windows\system32\dxtmsft.dll
+ 2008-08-22 08:05:16 346,624 ----a-w c:\windows\system32\dxtmsft.dll
- 2007-08-22 13:12:16 205,312 ----a-w c:\windows\system32\dxtrans.dll
+ 2008-08-22 08:05:10 217,088 ----a-w c:\windows\system32\dxtrans.dll
- 2006-10-21 03:29:46 69,408 ----a-w c:\windows\system32\dxva2.dll
+ 2007-10-09 19:03:00 73,752 ----a-w c:\windows\system32\dxva2.dll
- 2005-07-26 04:39:45 243,200 ----a-w c:\windows\system32\es.dll
+ 2008-07-07 20:32:22 253,952 ----a-w c:\windows\system32\es.dll
- 2006-10-21 03:30:00 478,496 ----a-w c:\windows\system32\evr.dll
+ 2007-10-09 19:03:12 493,080 ----a-w c:\windows\system32\evr.dll
- 2007-08-22 13:12:16 55,808 ----a-w c:\windows\system32\extmgr.dll
+ 2008-06-23 15:38:30 55,808 ----a-w c:\windows\system32\extmgr.dll
+ 2008-09-22 05:28:14 7,168 ----a-w c:\windows\system32\f3ahvoas.dll
+ 2005-02-22 01:58:38 5,220,352 ----a-w c:\windows\system32\ffmpeg.exe
- 2007-11-09 03:09:35 149,992 ----a-w c:\windows\system32\FNTCACHE.DAT
+ 2008-12-28 18:52:45 1,532,928 ----a-w c:\windows\system32\FNTCACHE.DAT
- 2006-10-04 00:47:52 109,360 ----a-w c:\windows\system32\GEARAspi.dll
+ 2008-04-17 19:12:54 107,368 ----a-w c:\windows\system32\GEARAspi.dll
+ 1998-10-15 22:28:16 85,504 ----a-w c:\windows\system32\HtmlWH.dll
- 2006-10-30 09:33:58 556,296 ----a-w c:\windows\system32\icardagt.exe
+ 2007-10-11 15:55:10 579,584 ----a-w c:\windows\system32\icardagt.exe
+ 2008-08-22 08:05:20 61,952 ------w c:\windows\system32\icardie.dll
- 2006-10-30 09:33:58 9,480 ----a-w c:\windows\system32\icardres.dll
+ 2007-10-11 15:55:10 11,776 ----a-w c:\windows\system32\icardres.dll
+ 2008-06-12 16:27:42 26,112 ----a-w c:\windows\system32\idndl.dll
- 2005-02-16 15:18:56 34,304 ----a-w c:\windows\system32\ie4uinit.exe
+ 2008-08-22 08:06:24 162,304 ----a-w c:\windows\system32\ie4uinit.exe
- 2005-02-16 15:18:56 139,264 ----a-w c:\windows\system32\ieakeng.dll
+ 2008-08-22 08:06:36 124,928 ----a-w c:\windows\system32\ieakeng.dll
- 2005-02-16 15:18:56 216,576 ----a-w c:\windows\system32\ieaksie.dll
+ 2008-08-22 08:06:40 228,864 ----a-w c:\windows\system32\ieaksie.dll
- 2005-02-16 15:18:56 221,184 ----a-w c:\windows\system32\ieakui.dll
+ 2008-08-22 08:06:24 163,840 ----a-w c:\windows\system32\ieakui.dll
+ 2008-07-30 03:58:08 3,670,112 ------w c:\windows\system32\ieapfltr.dat
+ 2008-08-22 07:42:22 443,392 ------w c:\windows\system32\ieapfltr.dll
- 2005-02-16 15:18:56 323,584 ----a-w c:\windows\system32\iedkcs32.dll
+ 2008-08-22 08:06:44 385,024 ----a-w c:\windows\system32\iedkcs32.dll
+ 2008-08-22 08:10:34 11,985,408 ------w c:\windows\system32\ieframe.dll
- 2007-08-22 13:12:16 251,392 ----a-w c:\windows\system32\iepeers.dll
+ 2008-08-22 08:05:24 186,880 ----a-w c:\windows\system32\iepeers.dll
- 2005-02-16 15:18:56 48,640 ----a-w c:\windows\system32\iernonce.dll
+ 2008-08-22 08:06:20 55,808 ----a-w c:\windows\system32\iernonce.dll
+ 2008-08-22 08:06:02 1,778,688 ------w c:\windows\system32\iertutil.dll
- 2005-02-16 15:18:56 62,976 ----a-w c:\windows\system32\iesetup.dll
+ 2008-08-22 08:06:24 71,680 ----a-w c:\windows\system32\iesetup.dll
+ 2008-08-22 08:06:24 36,864 ----a-w c:\windows\system32\ieudinit.exe
+ 2008-08-22 07:58:12 181,760 ------w c:\windows\system32\ieui.dll
- 2007-06-21 23:59:50 58,776 ----a-w c:\windows\system32\ijjiPlugin2.dll
+ 2008-06-12 04:01:48 58,800 ----a-w c:\windows\system32\ijjiPlugin2.dll
- 2007-09-27 17:08:06 692,224 ----a-w c:\windows\system32\ijjiSetup.exe
+ 2008-06-18 00:28:42 710,064 ----a-w c:\windows\system32\ijjiSetup.exe
+ 2008-05-02 13:30:45 317,952 ------w c:\windows\system32\imapi2.dll
+ 2008-05-02 13:30:45 464,384 ------w c:\windows\system32\imapi2fs.dll
+ 2005-02-16 15:18:56 198,656 ----a-w c:\windows\system32\IME\CINTLGNT\cintime.dll
+ 2005-02-16 15:18:56 480,256 ----a-w c:\windows\system32\IME\CINTLGNT\cintsetp.exe
+ 2005-02-16 15:18:56 59,392 ----a-w c:\windows\system32\IME\PINTLGNT\imscinst.exe
+ 2005-02-16 15:18:56 70,144 ----a-w c:\windows\system32\IME\PINTLGNT\pintlphr.exe
+ 2005-02-16 15:18:56 67,584 ----a-w c:\windows\system32\IME\PINTLGNT\pmigrate.dll
+ 2005-02-16 15:18:56 44,032 ----a-w c:\windows\system32\IME\TINTLGNT\tintlphr.exe
+ 2005-02-16 15:18:56 455,168 ----a-w c:\windows\system32\IME\TINTLGNT\tintsetp.exe
+ 2005-02-16 15:18:56 10,240 ----a-w c:\windows\system32\IME\TINTLGNT\tmigrate.dll
+ 2006-04-28 09:16:06 339,968 ----a-w c:\windows\system32\IMGMAN32.DLL
- 2005-02-16 15:18:56 35,840 ----a-w c:\windows\system32\imgutil.dll
+ 2008-08-22 08:05:14 35,840 ----a-w c:\windows\system32\imgutil.dll
+ 2006-04-28 09:16:06 98,345 ----a-w c:\windows\system32\IMHOST32.DLL
+ 2005-02-16 15:18:56 811,064 ----a-w c:\windows\system32\imjp81k.dll
- 2007-08-21 06:15:44 683,520 ----a-w c:\windows\system32\inetcomm.dll
+ 2008-04-11 18:50:43 683,520 ----a-w c:\windows\system32\inetcomm.dll
+ 1999-01-28 19:44:20 49,152 ----a-w c:\windows\system32\INETWH32.dll
- 2006-10-30 09:33:58 83,968 ----a-w c:\windows\system32\infocardapi.dll
+ 2007-10-11 15:55:10 88,576 ----a-w c:\windows\system32\infocardapi.dll
- 2007-08-22 13:12:16 96,256 ----a-w c:\windows\system32\inseng.dll
+ 2008-08-22 08:06:16 94,720 ----a-w c:\windows\system32\inseng.dll
- 2007-09-25 04:30:28 135,168 ----a-w c:\windows\system32\java.exe
+ 2008-06-10 06:21:01 135,168 ----a-w c:\windows\system32\java.exe
- 2007-09-25 04:30:30 135,168 ----a-w c:\windows\system32\javaw.exe
+ 2008-06-10 06:21:04 135,168 ----a-w c:\windows\system32\javaw.exe
- 2007-09-25 05:31:42 139,264 ----a-w c:\windows\system32\javaws.exe
+ 2008-06-10 07:32:34 139,264 ----a-w c:\windows\system32\javaws.exe
- 2006-05-18 05:24:25 450,560 ----a-w c:\windows\system32\jscript.dll
+ 2008-08-22 08:06:30 552,960 ----a-w c:\windows\system32\jscript.dll
- 2007-08-22 13:12:16 16,384 ----a-w c:\windows\system32\jsproxy.dll
+ 2008-08-22 08:06:58 28,672 ----a-w c:\windows\system32\jsproxy.dll
+ 2008-09-22 05:29:39 6,144 ----a-w c:\windows\system32\kbd101.dll
+ 2008-09-22 05:24:24 6,144 ----a-w c:\windows\system32\kbd101a.dll
+ 2001-08-17 19:55:56 6,144 ----a-w c:\windows\system32\kbd101b.dll
+ 2001-08-17 19:55:56 6,144 ----a-w c:\windows\system32\kbd101c.dll
+ 2001-08-17 19:55:56 5,632 ----a-w c:\windows\system32\kbd103.dll
+ 2001-08-17 19:55:56 6,144 ----a-w c:\windows\system32\kbd106.dll
+ 2008-09-22 05:24:40 6,144 ----a-w c:\windows\system32\kbd106n.dll
+ 2008-09-22 05:24:12 6,144 ----a-w c:\windows\system32\kbdax2.dll
+ 2008-09-22 05:34:55 7,168 ----a-w c:\windows\system32\kbdibm02.dll
+ 2001-08-18 03:36:18 8,704 ----a-w c:\windows\system32\kbdjpn.dll
+ 2001-08-18 03:36:18 8,192 ----a-w c:\windows\system32\kbdkor.dll
+ 2008-09-22 05:36:00 6,656 ----a-w c:\windows\system32\kbdlk41a.dll
+ 2008-09-22 05:39:35 6,144 ----a-w c:\windows\system32\kbdlk41j.dll
+ 2008-09-22 05:27:14 7,168 ----a-w c:\windows\system32\kbdnec95.dll
+ 2008-09-22 05:40:24 9,216 ----a-w c:\windows\system32\kbdnecAT.dll
+ 2008-09-22 05:37:09 7,680 ----a-w c:\windows\system32\kbdnecNT.dll
+ 2005-02-16 15:18:56 2,000 ----a-w c:\windows\system32\keyboard.drv
+ 2008-09-22 05:25:20 70,656 ----a-w c:\windows\system32\korwbrkr.dll
+ 2005-02-16 15:18:56 221,600 ----a-w c:\windows\system32\lanman.drv
- 2007-04-23 00:15:18 1,044,480 ----a-w c:\windows\system32\libdivx.dll
+ 2008-05-22 22:20:42 1,044,480 ----a-w c:\windows\system32\libdivx.dll
- 2005-02-16 15:18:56 22,016 ----a-w c:\windows\system32\licmgr10.dll
+ 2008-08-22 08:08:00 43,008 ----a-w c:\windows\system32\licmgr10.dll
+ 2007-11-15 23:46:22 87,352 ----a-w c:\windows\system32\LMIinit.dll
+ 2007-11-15 23:46:22 23,736 ----a-w c:\windows\system32\lmimirr.dll
+ 2007-11-15 23:46:24 10,040 ----a-w c:\windows\system32\lmimirr2.dll
+ 2007-11-15 23:46:26 21,496 ----a-w c:\windows\system32\LMIport.dll
+ 2007-11-15 23:46:40 83,288 ----a-w c:\windows\system32\LMIRfsClientNP.dll
+ 2007-07-27 20:49:02 196,683 ----a-w c:\windows\system32\lnod32apiA.dll
+ 2007-07-27 20:49:02 225,355 ----a-w c:\windows\system32\lnod32apiW.dll
+ 2005-12-06 01:25:22 139,264 ----a-w c:\windows\system32\lnod32umc.dll
+ 2005-12-05 18:37:10 106,496 ----a-w c:\windows\system32\lnod32upd.dll
- 2006-10-19 02:03:58 100,864 ----a-w c:\windows\system32\logagent.exe
+ 2008-06-18 07:09:22 100,864 ----a-w c:\windows\system32\logagent.exe
- 2006-08-17 12:28:27 721,920 ----a-w c:\windows\system32\lsasrv.dll
+ 2007-11-07 09:26:56 721,920 ----a-w c:\windows\system32\lsasrv.dll
+ 2006-08-14 21:07:04 65,536 ----a-w c:\windows\system32\lxcycaps.dll
+ 2006-09-06 10:17:44 77,824 ----a-w c:\windows\system32\lxcycfg.dll
+ 2007-06-20 10:28:54 381,616 ----a-w c:\windows\system32\lxcycfg.exe
+ 2006-01-25 22:11:04 61,440 ----a-w c:\windows\system32\lxcycnv4.dll
+ 2007-02-22 22:31:59 344,064 ----a-w c:\windows\system32\lxcycoin.dll
+ 2007-04-04 15:28:42 684,032 ----a-w c:\windows\system32\lxcycomc.dll
+ 2007-04-04 15:34:13 421,888 ----a-w c:\windows\system32\lxcycomm.dll
+ 2007-06-20 10:28:55 537,264 ----a-w c:\windows\system32\lxcycoms.exe
+ 2007-05-17 11:24:43 77,824 ----a-w c:\windows\system32\lxcycu.dll
+ 2007-05-17 11:24:56 86,016 ----a-w c:\windows\system32\lxcycub.dll
+ 2007-05-17 11:27:11 36,864 ----a-w c:\windows\system32\lxcycur.dll
+ 2006-08-08 19:58:04 692,224 ----a-w c:\windows\system32\lxcydrs.dll
+ 2006-05-09 21:15:27 983,107 ----a-w c:\windows\system32\lxcygf.dll
+ 2007-04-04 15:18:18 696,320 ----a-w c:\windows\system32\lxcyhbn3.dll
+ 2007-04-04 15:19:01 323,584 ----a-w c:\windows\system32\lxcyhcp.dll
+ 2007-04-04 15:31:38 397,312 ----a-w c:\windows\system32\lxcyiesc.dll
+ 2007-06-20 10:28:57 385,712 ----a-w c:\windows\system32\lxcyih.exe
+ 2007-04-04 15:22:25 413,696 ----a-w c:\windows\system32\lxcyinpa.dll
+ 2007-05-17 11:24:38 176,128 ----a-w c:\windows\system32\lxcyins.dll
+ 2007-05-17 11:25:06 200,704 ----a-w c:\windows\system32\lxcyinsb.dll
+ 2007-05-17 11:27:20 106,496 ----a-w c:\windows\system32\lxcyinsr.dll
+ 2007-04-04 15:31:57 274,432 ----a-w c:\windows\system32\lxcyinst.dll
+ 2007-05-17 11:26:33 147,456 ----a-w c:\windows\system32\lxcyjswr.dll
+ 2007-04-04 15:32:49 585,728 ----a-w c:\windows\system32\lxcylmpm.dll
+ 2007-04-04 15:40:29 643,072 ----a-w c:\windows\system32\lxcypmui.dll
+ 2007-04-04 15:29:29 94,208 ----a-w c:\windows\system32\lxcypplc.dll
+ 2007-04-04 15:28:11 163,840 ----a-w c:\windows\system32\lxcyprox.dll
+ 2007-04-04 15:39:21 1,224,704 ----a-w c:\windows\system32\lxcyserv.dll
+ 2007-04-04 15:21:51 995,328 ----a-w c:\windows\system32\lxcyusb1.dll
+ 2007-05-17 11:23:04 462,848 ----a-w c:\windows\system32\lxcyutil.dll
+ 2006-03-23 08:33:20 40,960 ----a-w c:\windows\system32\lxcyvs.dll
+ 2006-11-22 14:08:00 12,288 ----a-w c:\windows\system32\LXPMONRC.DLL
+ 2006-11-22 13:50:52 32,768 ----a-w c:\windows\system32\LXPMONUI.DLL
+ 2006-11-22 13:51:26 45,056 ----a-w c:\windows\system32\LXPRMON.DLL
+ 2005-02-16 15:18:56 2,560 ----a-w c:\windows\system32\lz32.dll
- 2007-08-07 22:20:44 182,248 ----a-w c:\windows\system32\Macromed\Director\SwDir.dll
+ 2008-01-07 17:26:46 181,672 ----a-w c:\windows\system32\Macromed\Director\SwDir.dll
+ 2008-10-05 03:16:26 235,936 ----a-r c:\windows\system32\Macromed\Flash\FlashUtil10a.exe
- 2007-06-11 19:34:00 2,115,816 ----a-w c:\windows\system32\Macromed\Flash\NPSWF32.dll
+ 2008-03-25 01:21:00 2,889,088 ----a-w c:\windows\system32\Macromed\Flash\NPSWF32.dll
- 2007-06-11 19:34:00 190,696 ----a-w c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe
+ 2008-03-25 01:21:00 218,496 ----a-w c:\windows\system32\Macromed\Flash\NPSWF32_FlashUtil.exe
- 2007-06-27 06:56:15 48,238 ----a-w c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
+ 2008-11-07 13:02:35 88,590 ----a-w c:\windows\system32\Macromed\Flash\uninstall_activeX.exe
- 2007-08-07 18:35:56 585,728 ----a-w c:\windows\system32\Macromed\Shockwave 10\Control.dll
+ 2008-03-15 04:29:22 581,632 ----a-w c:\windows\system32\Macromed\Shockwave 10\Control.dll
- 2007-08-07 18:19:40 1,490,944 ----a-w c:\windows\system32\Macromed\Shockwave 10\dirapi.dll
+ 2008-01-04 00:01:46 1,490,944 ----a-w c:\windows\system32\Macromed\Shockwave 10\dirapi.dll
+ 2008-03-15 04:12:30 1,490,944 ----a-w c:\windows\system32\Macromed\Shockwave 10\dirapiX.dll
- 2007-08-07 18:36:32 24,576 ----a-w c:\windows\system32\Macromed\Shockwave 10\DynaPlayer.dll
+ 2008-03-15 04:29:58 24,576 ----a-w c:\windows\system32\Macromed\Shockwave 10\DynaPlayer.dll
- 2007-08-07 21:52:32 1,113,600 ----a-w c:\windows\system32\Macromed\Shockwave 10\gi.dll
+ 2008-01-04 00:39:06 1,113,600 ----a-w c:\windows\system32\Macromed\Shockwave 10\gi.dll
- 2007-08-07 18:08:48 52,288 ----a-w c:\windows\system32\Macromed\Shockwave 10\gtapi.dll
+ 2008-01-03 23:46:46 52,288 ----a-w c:\windows\system32\Macromed\Shockwave 10\gtapi.dll
+ 2008-03-15 04:10:06 606,208 ----a-w c:\windows\system32\Macromed\Shockwave 10\iml32X.dll
- 2007-08-07 18:35:22 339,968 ----a-w c:\windows\system32\Macromed\Shockwave 10\Plugin.dll
+ 2008-03-15 04:28:48 339,968 ----a-w c:\windows\system32\Macromed\Shockwave 10\Plugin.dll
- 2007-08-07 18:35:32 483,328 ----a-w c:\windows\system32\Macromed\Shockwave 10\PluginPing.dll
+ 2008-03-15 04:28:56 475,136 ----a-w c:\windows\system32\Macromed\Shockwave 10\PluginPing.dll
- 2007-08-07 18:28:38 180,224 ----a-w c:\windows\system32\Macromed\Shockwave 10\Proj.dll
+ 2008-03-15 04:21:52 180,224 ----a-w c:\windows\system32\Macromed\Shockwave 10\Proj.dll
+ 2008-01-07 17:26:28 390,568 ----a-w c:\windows\system32\Macromed\Shockwave 10\SwHelper_1030024.exe
- 2007-08-07 18:37:56 77,824 ----a-w c:\windows\system32\Macromed\Shockwave 10\SwInit.exe
+ 2008-03-15 04:31:28 77,824 ----a-w c:\windows\system32\Macromed\Shockwave 10\SwInit.exe
- 2007-08-07 18:35:18 86,016 ----a-w c:\windows\system32\Macromed\Shockwave 10\SwMenu.dll
+ 2008-01-04 00:18:50 86,016 ----a-w c:\windows\system32\Macromed\Shockwave 10\SwMenu.dll
+ 2008-03-15 16:38:08 86,016 ----a-w c:\windows\system32\Macromed\Shockwave 10\SwMenuX.dll
- 2007-08-07 18:37:58 98,304 ----a-w c:\windows\system32\Macromed\Shockwave 10\SwOnce.dll
+ 2008-03-15 04:31:28 98,304 ----a-w c:\windows\system32\Macromed\Shockwave 10\SwOnce.dll
- 2007-08-07 18:08:46 50,808 ----a-w c:\windows\system32\Macromed\Shockwave 10\SYMCCHECKER.DLL
+ 2008-01-03 23:46:44 50,808 ----a-w c:\windows\system32\Macromed\Shockwave 10\SYMCCHECKER.DLL
- 1999-06-25 15:55:30 149,504 ----a-w c:\windows\system32\Macromed\Shockwave 10\UNWISE.EXE
+ 1999-06-25 16:55:30 149,504 ----a-w c:\windows\system32\Macromed\Shockwave 10\UNWISE.EXE
+ 2005-02-16 15:18:56 73,376 ----a-w c:\windows\system32\mciavi.drv
+ 2005-02-16 15:18:56 25,264 ----a-w c:\windows\system32\mciseq.drv
+ 2005-02-16 15:18:56 28,160 ----a-w c:\windows\system32\mciwave.drv
+ 2007-02-05 23:07:08 2,912,256 ----a-w c:\windows\system32\MediaInfo.dll
+ 2005-05-15 02:09:30 2,179,072 ----a-w c:\windows\system32\mfc71d.dll
+ 2006-02-06 17:38:44 475,136 ----a-w c:\windows\system32\mgxoschk.dll
- 2006-10-21 03:30:06 1,980,704 ----a-w c:\windows\system32\milcore.dll
+ 2007-10-09 19:03:14 1,986,072 ----a-w c:\windows\system32\milcore.dll
+ 2005-02-16 15:18:56 2,032 ----a-w c:\windows\system32\mouse.drv
- 2000-06-02 12:48:46 427,520 ----a-w c:\windows\system32\MPG4C32.DLL
+ 2001-05-11 19:18:14 420,240 ----a-w c:\windows\system32\MPG4C32.DLL
- 2005-02-16 15:18:56 138,240 ----a-w c:\windows\system32\mqad.dll
+ 2007-07-06 12:46:59 138,240 ----a-w c:\windows\system32\mqad.dll
- 2005-02-16 15:18:56 47,104 ----a-w c:\windows\system32\mqdscli.dll
+ 2007-07-06 12:46:59 47,104 ----a-w c:\windows\system32\mqdscli.dll
- 2005-02-16 15:18:56 16,896 ----a-w c:\windows\system32\mqise.dll
+ 2007-07-06 12:46:59 16,896 ----a-w c:\windows\system32\mqise.dll
- 2005-02-16 15:18:56 660,992 ----a-w c:\windows\system32\mqqm.dll
+ 2007-07-06 12:46:59 660,992 ----a-w c:\windows\system32\mqqm.dll
- 2005-02-16 15:18:56 177,152 ----a-w c:\windows\system32\mqrt.dll
+ 2007-07-06 12:46:59 177,152 ----a-w c:\windows\system32\mqrt.dll
- 2005-02-16 15:18:56 95,744 ----a-w c:\windows\system32\mqsec.dll
+ 2007-07-06 12:46:59 95,744 ----a-w c:\windows\system32\mqsec.dll
- 2005-02-16 15:18:56 48,640 ----a-w c:\windows\system32\mqupgrd.dll
+ 2007-07-06 12:46:59 48,640 ----a-w c:\windows\system32\mqupgrd.dll
- 2005-02-16 15:18:56 471,552 ----a-w c:\windows\system32\mqutil.dll
+ 2007-07-06 12:46:59 471,552 ----a-w c:\windows\system32\mqutil.dll
- 2007-11-02 07:12:57 18,238,072 ----a-w c:\windows\system32\MRT.exe
+ 2008-12-09 23:24:37 17,593,280 ----a-w c:\windows\system32\MRT.exe
+ 2005-02-16 15:18:56 20,480 ----a-w c:\windows\system32\msacm32.drv
- 2005-06-29 01:46:00 74,240 ----a-w c:\windows\system32\mscms.dll
+ 2008-06-24 16:23:05 74,240 ----a-w c:\windows\system32\mscms.dll
- 2007-04-13 09:21:14 271,360 ----a-w c:\windows\system32\mscoree.dll
+ 2007-10-24 07:47:38 282,112 ----a-w c:\windows\system32\mscoree.dll
- 2005-09-23 13:28:52 150,016 ----a-w c:\windows\system32\mscorier.dll
+ 2007-10-24 07:47:38 158,720 ----a-w c:\windows\system32\mscorier.dll
- 2005-09-23 13:28:52 74,240 ----a-w c:\windows\system32\mscories.dll
+ 2007-10-24 07:47:38 84,480 ----a-w c:\windows\system32\mscories.dll
+ 2008-08-05 22:55:38 265,720 ----a-w c:\windows\system32\msdbg2.dll
- 2005-02-16 15:18:56 512,029 ----a-w c:\windows\system32\msexch40.dll
+ 2008-03-25 04:50:28 518,944 ----a-w c:\windows\system32\msexch40.dll
- 2005-02-16 15:18:56 319,517 ----a-w c:\windows\system32\msexcl40.dll
+ 2008-03-25 04:50:30 326,432 ----a-w c:\windows\system32\msexcl40.dll
+ 2008-08-22 08:05:48 580,608 ------w c:\windows\system32\msfeeds.dll
+ 2008-08-22 08:05:22 53,760 ------w c:\windows\system32\msfeedsbs.dll
+ 2008-08-22 08:05:22 13,312 ------w c:\windows\system32\msfeedssync.exe
+ 2005-02-16 15:18:56 188,416 ----a-w c:\windows\system32\msh261.drv
+ 2005-02-16 15:18:56 294,912 ----a-w c:\windows\system32\msh263.drv
- 2005-02-16 15:18:56 29,184 ----a-w c:\windows\system32\mshta.exe
+ 2008-08-22 08:04:54 45,568 ----a-w c:\windows\system32\mshta.exe
- 2007-08-22 13:12:17 3,498,496 ----a-w c:\windows\system32\mshtml.dll
+ 2008-12-14 13:59:44 5,699,584 ----a-w c:\windows\system32\mshtml.dll
- 2007-08-22 13:12:17 449,024 ----a-w c:\windows\system32\mshtmled.dll
+ 2008-08-22 08:05:08 70,656 ----a-w c:\windows\system32\mshtmled.dll
- 2005-02-16 15:18:56 56,832 ----a-w c:\windows\system32\mshtmler.dll
+ 2008-08-22 08:05:00 48,128 ----a-w c:\windows\system32\mshtmler.dll
+ 2008-09-22 05:27:54 98,304 ----a-w c:\windows\system32\msir3jp.dll
- 2005-02-16 15:18:56 1,507,356 ----a-w c:\windows\system32\msjet40.dll
+ 2008-03-25 04:50:34 1,516,568 ----a-w c:\windows\system32\msjet40.dll
- 2005-02-16 15:18:56 358,976 ----a-w c:\windows\system32\msjetoledb40.dll
+ 2008-03-25 04:50:40 355,112 ----a-w c:\windows\system32\msjetoledb40.dll
- 2005-02-16 15:18:56 151,583 ----a-w c:\windows\system32\msjint40.dll
+ 2008-03-27 08:12:54 151,583 ----a-w c:\windows\system32\msjint40.dll
- 2005-02-16 15:18:56 53,279 ----a-w c:\windows\system32\msjter40.dll
+ 2008-03-25 04:50:42 60,192 ----a-w c:\windows\system32\msjter40.dll
- 2005-02-16 15:18:56 241,693 ----a-w c:\windows\system32\msjtes40.dll
+ 2008-03-25 04:50:42 248,608 ----a-w c:\windows\system32\msjtes40.dll
- 2005-02-16 15:18:56 146,432 ----a-w c:\windows\system32\msls31.dll
+ 2008-08-22 07:57:56 156,160 ----a-w c:\windows\system32\msls31.dll
- 2005-02-16 15:18:56 213,023 ----a-w c:\windows\system32\msltus40.dll
+ 2008-03-25 04:50:44 219,936 ----a-w c:\windows\system32\msltus40.dll
- 2005-02-16 15:18:56 348,189 ----a-w c:\windows\system32\mspbde40.dll
+ 2008-03-25 04:50:45 355,104 ----a-w c:\windows\system32\mspbde40.dll
- 2007-08-22 13:12:17 146,432 ----a-w c:\windows\system32\msrating.dll
+ 2008-08-22 08:07:50 193,536 ----a-w c:\windows\system32\msrating.dll
- 2005-02-16 15:18:56 421,919 ----a-w c:\windows\system32\msrd2x40.dll
+ 2008-03-25 04:50:47 432,928 ----a-w c:\windows\system32\msrd2x40.dll
- 2005-02-16 15:18:56 315,423 ----a-w c:\windows\system32\msrd3x40.dll
+ 2008-03-25 04:50:49 322,336 ----a-w c:\windows\system32\msrd3x40.dll
- 2005-02-16 15:18:56 552,989 ----a-w c:\windows\system32\msrepl40.dll
+ 2008-03-25 04:50:52 559,904 ----a-w c:\windows\system32\msrepl40.dll
- 2005-02-16 15:18:56 258,077 ----a-w c:\windows\system32\mstext40.dll
+ 2008-03-25 04:50:55 264,992 ----a-w c:\windows\system32\mstext40.dll
- 2007-08-22 13:12:17 532,480 ----a-w c:\windows\system32\mstime.dll
+ 2008-08-22 08:05:34 630,272 ----a-w c:\windows\system32\mstime.dll
+ 2006-07-12 00:06:32 544,768 ----a-w c:\windows\system32\msvcr71d.dll
- 2005-02-16 15:18:56 831,519 ----a-w c:\windows\system32\mswdat10.dll
+ 2008-03-25 04:50:57 838,432 ----a-w c:\windows\system32\mswdat10.dll
- 2005-02-16 15:18:56 245,248 ----a-w c:\windows\system32\mswsock.dll
+ 2008-06-20 17:41:10 245,248 ----a-w c:\windows\system32\mswsock.dll
- 2005-02-16 15:18:56 614,429 ----a-w c:\windows\system32\mswstr10.dll
+ 2008-03-25 04:50:58 621,344 ----a-w c:\windows\system32\mswstr10.dll
- 2005-02-16 15:18:56 348,189 ----a-w c:\windows\system32\msxbde40.dll
+ 2008-03-25 04:50:58 355,104 ----a-w c:\windows\system32\msxbde40.dll
- 2007-06-26 06:08:16 1,104,896 ----a-w c:\windows\system32\msxml3.dll
+ 2008-09-04 16:42:02 1,106,944 ----a-w c:\windows\system32\msxml3.dll
- 2007-05-15 20:43:10 1,320,800 ----a-w c:\windows\system32\msxml6.dll
+ 2008-08-30 02:06:44 1,350,664 ----a-w c:\windows\system32\msxml6.dll
- 2006-12-22 19:02:36 6,144 ----a-w c:\windows\system32\mui\0409\mscorees.dll
+ 2007-10-24 07:47:44 15,360 ----a-w c:\windows\system32\mui\0409\mscorees.dll
- 2006-08-17 12:28:27 332,288 ----a-w c:\windows\system32\netapi32.dll
+ 2008-10-15 16:57:55 332,800 ----a-w c:\windows\system32\netapi32.dll
+ 2005-02-16 15:18:56 2,656 ----a-w c:\windows\system32\netware.drv
+ 2008-06-12 16:27:44 24,576 ----a-w c:\windows\system32\nlsdl.dll
+ 2008-06-12 16:27:42 23,552 ----a-w c:\windows\system32\normaliz.dll
- 2007-02-28 08:38:55 2,057,600 ----a-w c:\windows\system32\ntkrnlpa.exe
+ 2008-08-14 09:22:13 2,057,728 ----a-w c:\windows\system32\ntkrnlpa.exe
- 2007-02-28 09:10:57 2,180,352 ----a-w c:\windows\system32\ntoskrnl.exe
+ 2008-08-14 10:00:45 2,180,352 ----a-w c:\windows\system32\ntoskrnl.exe
- 2005-02-16 15:18:56 146,944 ----a-w c:\windows\system32\occache.dll
+ 2008-08-22 08:07:50 116,224 ----a-w c:\windows\system32\occache.dll
- 2007-05-17 11:28:05 549,376 ----a-w c:\windows\system32\oleaut32.dll
+ 2007-12-04 18:38:13 550,912 ----a-w c:\windows\system32\oleaut32.dll
+ 2008-02-11 15:39:26 253,952 ----a-w c:\windows\system32\OnlineScannerDLLA.dll
+ 2008-02-11 15:39:18 237,568 ----a-w c:\windows\system32\OnlineScannerDLLW.dll
+ 2008-02-08 19:53:46 110,592 ----a-w c:\windows\system32\OnlineScannerLang.dll
+ 2008-02-05 14:48:04 77,824 ----a-w c:\windows\system32\OnlineScannerUninstaller.exe
- 2007-12-02 18:06:08 70,328 ----a-w c:\windows\system32\perfc009.dat
+ 2008-11-29 18:42:16 71,832 ----a-w c:\windows\system32\perfc009.dat
- 2007-12-02 18:06:08 436,690 ----a-w c:\windows\system32\perfh009.dat
+ 2008-11-29 18:42:17 442,592 ----a-w c:\windows\system32\perfh009.dat
- 2007-08-22 13:12:17 39,424 ----a-w c:\windows\system32\pngfilt.dll
+ 2008-08-22 08:05:14 45,056 ----a-w c:\windows\system32\pngfilt.dll
- 2006-10-21 03:29:52 104,224 ----a-w c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
+ 2007-10-09 19:03:04 106,520 ----a-w c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
- 2006-10-21 03:29:58 344,352 ----a-w c:\windows\system32\PresentationHost.exe
+ 2007-10-09 19:03:08 350,744 ----a-w c:\windows\system32\PresentationHost.exe
- 2006-10-21 03:29:46 20,768 ----a-w c:\windows\system32\PresentationHostProxy.dll
+ 2007-10-09 19:03:02 33,304 ----a-w c:\windows\system32\PresentationHostProxy.dll
- 2006-10-21 03:30:02 769,312 ----a-w c:\windows\system32\PresentationNative_v0300.dll
+ 2007-10-09 19:03:12 779,800 ----a-w c:\windows\system32\PresentationNative_v0300.dll
+ 2008-08-22 08:05:00 48,640 ------w c:\windows\system32\PrivacIE.dll
+ 2008-04-23 19:02:12 157,152 ----a-w c:\windows\system32\PubPlugin.dll
- 2007-04-23 00:15:24 527,096 ----a-w c:\windows\system32\px.dll
+ 2007-10-20 00:56:10 551,672 ------w c:\windows\system32\px.dll
- 2007-04-23 00:15:24 129,784 ----a-w c:\windows\system32\pxafs.dll
+ 2007-10-20 00:56:10 129,784 ------w c:\windows\system32\pxafs.dll
- 2007-04-23 00:15:24 64,760 ----a-w c:\windows\system32\pxcpya64.exe
+ 2007-10-20 00:56:10 66,296 ------w c:\windows\system32\pxcpya64.exe
- 2007-04-23 00:15:24 116,472 ----a-w c:\windows\system32\pxcpyi64.exe
+ 2007-10-20 00:56:10 120,056 ------w c:\windows\system32\pxcpyi64.exe
- 2007-04-23 00:15:25 502,520 ----a-w c:\windows\system32\pxdrv.dll
+ 2007-10-20 00:56:10 518,904 ------w c:\windows\system32\pxdrv.dll
- 2007-04-23 00:15:25 72,440 ----a-w c:\windows\system32\pxhpinst.exe
+ 2007-10-20 00:56:12 72,440 ------w c:\windows\system32\pxhpinst.exe
- 2007-04-23 00:15:24 64,760 ----a-w c:\windows\system32\pxinsa64.exe
+ 2007-10-20 00:56:10 64,760 ------w c:\windows\system32\pxinsa64.exe
- 2007-04-23 00:15:24 118,520 ----a-w c:\windows\system32\pxinsi64.exe
+ 2007-10-20 00:56:10 118,520 ------w c:\windows\system32\pxinsi64.exe
- 2007-04-23 00:15:25 183,032 ----a-w c:\windows\system32\pxmas.dll
+ 2007-10-20 00:56:12 187,128 ------w c:\windows\system32\pxmas.dll
- 2007-04-23 00:15:25 1,329,912 ----a-w c:\windows\system32\pxsfs.dll
+ 2007-10-20 00:56:10 1,628,920 ------w c:\windows\system32\pxsfs.dll
- 2007-04-23 00:15:25 379,640 ----a-w c:\windows\system32\pxwave.dll
+ 2007-10-20 00:56:12 379,640 ------w c:\windows\system32\pxwave.dll
- 2007-04-23 00:15:29 3,596,288 ----a-w c:\windows\system32\qt-dx331.dll
+ 2008-05-22 22:22:18 3,596,288 ----a-w c:\windows\system32\qt-dx331.dll
- 2005-08-30 03:54:26 1,287,168 ----a-w c:\windows\system32\quartz.dll
+ 2008-05-07 05:18:48 1,287,680 ----a-w c:\windows\system32\quartz.dll
+ 2004-08-04 05:56:58 23,552 ----a-w c:\windows\system32\ReinstallBackups\0000\DriverFiles\i386\wdmaud.drv
+ 2007-10-18 19:09:24 1,419,232 ----a-w c:\windows\system32\ReinstallBackups\0003\DriverFiles\WdfCoInstaller01005.dll
+ 2007-11-16 03:38:16 40,832 ----a-w c:\windows\system32\ReinstallBackups\0003\DriverFiles\zumbus.sys
+ 2007-12-01 00:16:18 1,419,232 ----a-w c:\windows\system32\ReinstallBackups\0004\DriverFiles\WdfCoInstaller01005.dll
+ 2008-01-11 23:39:34 40,832 ----a-w c:\windows\system32\ReinstallBackups\0004\DriverFiles\zumbus.sys
+ 2007-12-01 00:16:18 1,419,232 ----a-w c:\windows\system32\ReinstallBackups\0005\DriverFiles\WdfCoInstaller01005.dll
+ 2008-01-11 23:39:34 40,832 ----a-w c:\windows\system32\ReinstallBackups\0005\DriverFiles\zumbus.sys
+ 2006-06-30 21:10:56 26,752 ----a-r c:\windows\system32\ReinstallBackups\0006\DriverFiles\RimSerial.sys
+ 2002-09-21 05:33:28 1,089,536 ----a-w c:\windows\system32\ROBOEX32.DLL
+ 2005-08-30 22:57:18 58,320 ----a-w c:\windows\system32\Samsung_USB_Drivers\1\ss_bus.sys
+ 2005-08-30 22:58:50 6,144 ----a-w c:\windows\system32\Samsung_USB_Drivers\1\ss_cmnt.sys
+ 2005-08-30 22:58:56 8,304 ----a-w c:\windows\system32\Samsung_USB_Drivers\1\ss_mdfl.sys
+ 2005-08-30 22:59:00 94,000 ----a-w c:\windows\system32\Samsung_USB_Drivers\1\ss_mdm.sys
+ 2005-08-26 23:07:28 81,920 ----a-w c:\windows\system32\Samsung_USB_Drivers\1\SS_Uninstall.exe
+ 2005-08-30 22:57:14 5,808 ----a-w c:\windows\system32\Samsung_USB_Drivers\1\ss_whnt.sys
+ 2005-08-30 06:47:38 58,320 ----a-w c:\windows\system32\Samsung_USB_Drivers\2\ssm_bus.sys
+ 2005-08-30 06:49:28 6,176 ----a-w c:\windows\system32\Samsung_USB_Drivers\2\ssm_cmnt.sys
+ 2005-08-30 06:49:34 8,336 ----a-w c:\windows\system32\Samsung_USB_Drivers\2\ssm_mdfl.sys
+ 2005-08-30 06:49:38 94,000 ----a-w c:\windows\system32\Samsung_USB_Drivers\2\ssm_mdm.sys
+ 2005-08-30 06:46:16 81,920 ----a-w c:\windows\system32\Samsung_USB_Drivers\2\SSM_Uninstall.exe
+ 2005-08-30 06:47:34 5,840 ----a-w c:\windows\system32\Samsung_USB_Drivers\2\ssm_whnt.sys
+ 2005-12-22 17:24:50 80,272 ----a-w c:\windows\system32\Samsung_USB_Drivers\3\sscdbus.sys
+ 2005-12-22 17:24:52 11,877 ----a-w c:\windows\system32\Samsung_USB_Drivers\3\sscdcmnt.sys
+ 2005-12-22 17:24:52 10,864 ----a-w c:\windows\system32\Samsung_USB_Drivers\3\sscdmdfl.sys
+ 2005-12-22 17:24:52 137,884 ----a-w c:\windows\system32\Samsung_USB_Drivers\3\sscdmdm.sys
+ 2005-12-22 17:24:52 108,003 ----a-w c:\windows\system32\Samsung_USB_Drivers\3\sscdserd.sys
+ 2005-12-22 17:24:52 65,536 ----a-w c:\windows\system32\Samsung_USB_Drivers\3\SSCDUninstall.exe
+ 2005-12-22 17:24:54 11,188 ----a-w c:\windows\system32\Samsung_USB_Drivers\3\sscdwhnt.sys
+ 2006-07-21 17:12:56 66,672 ----a-w c:\windows\system32\Samsung_USB_Drivers\5\sssdbus.sys
+ 2006-07-21 17:15:26 6,208 ----a-w c:\windows\system32\Samsung_USB_Drivers\5\sssdcmnt.sys
+ 2006-07-21 17:13:48 9,232 ----a-w c:\windows\system32\Samsung_USB_Drivers\5\sssdmdfl.sys
+ 2006-07-21 17:13:52 100,304 ----a-w c:\windows\system32\Samsung_USB_Drivers\5\sssdmdm.sys
+ 2006-07-21 17:14:40 91,744 ----a-w c:\windows\system32\Samsung_USB_Drivers\5\sssdmgmt.sys
+ 2006-07-21 17:15:28 89,584 ----a-w c:\windows\system32\Samsung_USB_Drivers\5\sssdobex.sys
+ 2006-07-21 17:15:56 53,760 ----a-w c:\windows\system32\Samsung_USB_Drivers\5\SSSDUninstall.exe
+ 2006-07-21 17:12:52 5,872 ----a-w c:\windows\system32\Samsung_USB_Drivers\5\sssdwhnt.sys
+ 2007-01-07 23:10:28 66,880 ----a-w c:\windows\system32\Samsung_USB_Drivers\6\ssbcbus.sys
+ 2007-01-07 23:11:16 6,272 ----a-w c:\windows\system32\Samsung_USB_Drivers\6\ssbccmnt.sys
+ 2007-01-07 23:11:18 9,360 ----a-w c:\windows\system32\Samsung_USB_Drivers\6\ssbcmdfl.sys
+ 2007-01-07 23:11:22 100,864 ----a-w c:\windows\system32\Samsung_USB_Drivers\6\ssbcmdm.sys
+ 2007-01-07 23:11:48 55,296 ----a-w c:\windows\system32\Samsung_USB_Drivers\6\SSBCUninstall.exe
+ 2007-01-07 23:10:24 5,936 ----a-w c:\windows\system32\Samsung_USB_Drivers\6\ssbcwhnt.sys
- 2005-02-16 15:18:56 159,744 ----a-w c:\windows\system32\scrobj.dll
+ 2007-08-01 01:45:28 163,840 ----a-w c:\windows\system32\scrobj.dll
- 2005-02-16 15:18:56 151,552 ----a-w c:\windows\system32\scrrun.dll
+ 2007-08-01 01:45:28 155,648 ----a-w c:\windows\system32\scrrun.dll
- 2007-08-22 13:12:18 1,774,080 ----a-w c:\windows\system32\shdocvw.dll
+ 2008-06-23 15:38:34 1,494,528 ----a-w c:\windows\system32\shdocvw.dll
- 2007-08-22 13:12:18 498,688 ----a-w c:\windows\system32\shlwapi.dll
+ 2008-06-23 15:38:34 474,112 ----a-w c:\windows\system32\shlwapi.dll
- 2007-01-19 17:53:04 51,056 ----a-w c:\windows\system32\sirenacm.dll
+ 2007-10-18 17:31:46 51,224 ----a-w c:\windows\system32\sirenacm.dll
- 2007-05-14 20:24:30 394,240 ----a-w c:\windows\system32\Smab.dll
+ 2008-02-07 21:15:06 408,576 ----a-w c:\windows\system32\Smab.dll
+ 2008-07-19 03:10:20 36,552 ----a-w c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.2.6001.784\wups.dll
+ 2008-10-16 20:08:58 34,328 ----a-w c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups.dll\7.2.6001.788\wups.dll
+ 2008-07-19 03:10:40 45,768 ----a-w c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.2.6001.784\wups2.dll
+ 2008-10-16 20:09:44 43,544 ----a-w c:\windows\system32\SoftwareDistribution\Setup\ServiceStartup\wups2.dll\7.2.6001.788\wups2.dll
+ 2005-02-16 15:18:56 1,744 ----a-w c:\windows\system32\sound.drv
- 2006-10-16 22:10:58 14,640 ----a-w c:\windows\system32\spmsg.dll
+ 2008-06-12 16:27:58 16,928 ------w c:\windows\system32\spmsg.dll
+ 2007-11-15 23:46:26 15,160 ----a-w c:\windows\system32\spool\drivers\w32x86\3\LMIprinter.dll
+ 2007-11-15 23:46:30 16,696 ----a-w c:\windows\system32\spool\drivers\w32x86\3\LMIprinterdat.dll
+ 2007-11-15 23:46:30 16,696 ----a-w c:\windows\system32\spool\drivers\w32x86\3\LMIprinterui.dll
+ 2007-04-23 02:23:09 106,496 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyasnc.dll
+ 2006-09-06 10:17:44 77,824 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcycfg.dll
+ 2007-04-23 02:11:30 385,024 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcycomx.dll
+ 2007-05-17 11:24:43 77,824 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcycu.dll
+ 2007-05-17 11:24:56 86,016 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcycub.dll
+ 2007-05-17 11:27:11 36,864 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcycur.dll
+ 2007-03-16 10:37:59 162,304 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcydr5c.dll
+ 2006-02-13 13:04:20 143,360 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcydrec.dll
+ 2005-11-21 07:37:42 434,176 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyedf.dll
+ 2006-04-28 21:59:38 110,592 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyflib.dll
+ 2006-05-09 21:15:27 983,107 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcygf.dll
+ 2006-04-28 21:59:40 561,152 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyhpec.dll
+ 2006-04-28 21:59:42 593,920 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyhpeh.dll
+ 2006-04-28 21:59:44 159,744 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyhpep.dll
+ 2007-05-17 11:24:38 176,128 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyins.dll
+ 2007-05-17 11:25:06 200,704 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyinsb.dll
+ 2007-05-17 11:27:20 106,496 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyinsr.dll
+ 2007-05-17 11:23:19 184,320 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyjsw.dll
+ 2007-05-17 11:25:17 479,232 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyjswb.dll
+ 2007-05-17 11:26:33 147,456 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyjswr.dll
+ 2007-06-20 10:29:01 393,904 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyjswx.exe
+ 2007-05-17 11:24:29 1,228,800 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcylpa.dll
+ 2007-05-17 11:25:37 3,461,120 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcylpab.dll
+ 2007-05-17 11:26:42 225,280 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcylpar.dll
+ 2007-04-23 02:11:43 348,160 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyppx.dll
+ 2007-05-17 11:24:17 831,488 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyprp.dll
+ 2007-05-17 11:26:06 3,489,792 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyprpb.dll
+ 2007-05-17 11:27:01 143,360 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyprpr.dll
+ 2007-05-17 11:23:28 471,040 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcypsw.dll
+ 2007-05-17 11:26:17 937,984 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcypswb.dll
+ 2007-05-17 11:26:51 110,592 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcypswr.dll
+ 2007-06-20 10:29:00 193,200 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcypswx.exe
+ 2006-11-21 17:27:56 319,488 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyretv.dll
+ 2007-06-20 10:28:51 86,704 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyserv.exe
+ 2006-08-28 10:26:30 253,952 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcysk0.dll
+ 2006-05-09 21:15:28 204,800 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcysk1.dll
+ 2006-05-09 21:15:29 245,760 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcysk2.dll
+ 2006-11-21 17:27:06 106,496 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcytime.dll
+ 2007-06-20 10:28:53 82,608 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcytime.exe
+ 2006-09-22 10:24:36 188,416 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcytsfw.dll
+ 2007-03-16 10:39:18 115,712 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyui5c.dll
+ 2006-11-21 17:27:48 344,064 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyuldr.dll
+ 2007-05-17 11:24:48 65,536 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyupd.dll
+ 2007-05-17 11:26:27 126,976 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyupdb.dll
+ 2007-05-17 11:27:30 90,112 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyupdr.dll
+ 2007-06-20 10:28:52 82,608 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyupld.exe
+ 2007-05-17 11:23:04 462,848 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyutil.dll
+ 2007-06-20 10:28:52 82,608 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcyview.exe
+ 2006-05-09 21:15:02 343,086 ----a-w c:\windows\system32\spool\drivers\w32x86\3\lxcywavs.exe
+ 2007-04-23 02:23:09 106,496 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyasnc.dll
+ 2006-09-06 10:17:44 77,824 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcycfg.dll
+ 2007-04-23 02:11:30 385,024 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcycomx.dll
+ 2007-05-17 11:24:43 77,824 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcycu.dll
+ 2007-05-17 11:24:56 86,016 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcycub.dll
+ 2007-05-17 11:27:11 36,864 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcycur.dll
+ 2007-03-16 10:37:59 162,304 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcydr5c.dll
+ 2006-02-13 13:04:20 143,360 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcydrec.dll
+ 2005-11-21 07:37:42 434,176 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyedf.dll
+ 2006-04-28 21:59:38 110,592 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyflib.dll
+ 2006-05-09 21:15:27 983,107 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcygf.dll
+ 2006-04-28 21:59:40 561,152 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyhpec.dll
+ 2006-04-28 21:59:42 593,920 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyhpeh.dll
+ 2006-04-28 21:59:44 159,744 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyhpep.dll
+ 2007-05-17 11:24:38 176,128 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyins.dll
+ 2007-05-17 11:25:06 200,704 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyinsb.dll
+ 2007-05-17 11:27:20 106,496 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyinsr.dll
+ 2007-05-17 11:23:19 184,320 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyjsw.dll
+ 2007-05-17 11:25:17 479,232 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyjswb.dll
+ 2007-05-17 11:26:33 147,456 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyjswr.dll
+ 2007-06-20 10:29:01 393,904 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyjswx.exe
+ 2007-05-17 11:24:29 1,228,800 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcylpa.dll
+ 2007-05-17 11:25:37 3,461,120 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcylpab.dll
+ 2007-05-17 11:26:42 225,280 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcylpar.dll
+ 2007-04-23 02:11:43 348,160 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyppx.dll
+ 2007-05-17 11:24:17 831,488 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyprp.dll
+ 2007-05-17 11:26:06 3,489,792 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyprpb.dll
+ 2007-05-17 11:27:01 143,360 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyprpr.dll
+ 2007-05-17 11:23:28 471,040 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcypsw.dll
+ 2007-05-17 11:26:17 937,984 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcypswb.dll
+ 2007-05-17 11:26:51 110,592 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcypswr.dll
+ 2007-06-20 10:29:00 193,200 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcypswx.exe
+ 2006-11-21 17:27:56 319,488 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyretv.dll
+ 2007-06-20 10:28:51 86,704 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyserv.exe
+ 2006-08-28 10:26:30 253,952 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcysk0.dll
+ 2006-05-09 21:15:28 204,800 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcysk1.dll
+ 2006-05-09 21:15:29 245,760 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcysk2.dll
+ 2006-11-21 17:27:06 106,496 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcytime.dll
+ 2007-06-20 10:28:53 82,608 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcytime.exe
+ 2006-09-22 10:24:36 188,416 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcytsfw.dll
+ 2007-03-16 10:39:18 115,712 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyui5c.dll
+ 2006-11-21 17:27:48 344,064 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyuldr.dll
+ 2007-05-17 11:24:48 65,536 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyupd.dll
+ 2007-05-17 11:26:27 126,976 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyupdb.dll
+ 2007-05-17 11:27:30 90,112 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyupdr.dll
+ 2007-06-20 10:28:52 82,608 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyupld.exe
+ 2007-05-17 11:23:04 462,848 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyutil.dll
+ 2007-06-20 10:28:52 82,608 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcyview.exe
+ 2006-05-09 21:15:02 343,086 ----a-w c:\windows\system32\spool\drivers\w32x86\lexmark_3400_series24a9\lxcywavs.exe
+ 2007-11-15 23:46:26 15,160 ----a-w c:\windows\system32\spool\drivers\w32x86\LMIprinter.dll
+ 2007-11-15 23:46:30 16,696 ----a-w c:\windows\system32\spool\drivers\w32x86\LMIprinterdat.dll
+ 2007-11-15 23:46:30 16,696 ----a-w c:\windows\system32\spool\drivers\w32x86\LMIprinterui.dll
+ 2004-08-04 06:56:48 264,704 ----a-w c:\windows\system32\spool\drivers\w32x86\unidrv.dll
+ 2004-08-04 06:56:48 197,120 ----a-w c:\windows\system32\spool\drivers\w32x86\unidrvui.dll
+ 2004-08-04 06:56:36 619,520 ----a-w c:\windows\system32\spool\drivers\w32x86\unires.dll
+ 2007-11-15 23:46:32 28,472 ----a-w c:\windows\system32\spool\prtprocs\w32x86\LMIproc.dll
+ 2007-03-16 10:38:25 117,760 ----a-w c:\windows\system32\spool\prtprocs\w32x86\lxcypp5c.dll
- 2006-10-16 22:10:58 23,856 ----a-w c:\windows\system32\spupdsvc.exe
+ 2008-06-12 16:27:58 26,144 ----a-w c:\windows\system32\spupdsvc.exe
- 2007-04-23 00:15:18 200,704 ----a-w c:\windows\system32\ssldivx.dll
+ 2008-05-22 22:20:42 200,704 ----a-w c:\windows\system32\ssldivx.dll
- 2003-01-26 20:41:24 40,960 ----a-w c:\windows\system32\SSubTmr6.dll
+ 2004-04-26 02:39:52 53,248 ----a-w c:\windows\system32\SSubTmr6.dll
+ 2005-02-16 15:18:56 3,360 ----a-w c:\windows\system32\system.drv
+ 2005-02-16 15:18:56 4,048 ----a-w c:\windows\system32\timer.drv
+ 2007-10-09 18:58:20 16,896 ----a-w c:\windows\system32\tswpfwrp.exe
- 2007-07-18 12:42:22 60,416 ----a-w c:\windows\system32\tzchange.exe
+ 2008-10-22 09:47:07 62,976 ----a-w c:\windows\system32\tzchange.exe
- 2006-10-21 03:29:54 159,008 ----a-w c:\windows\system32\UIAutomationCore.dll
+ 2007-10-09 19:03:08 161,304 ----a-w c:\windows\system32\UIAutomationCore.dll
+ 2008-02-01 08:21:04 245,408 ----a-w c:\windows\system32\unicows.dll
+ 2005-02-16 15:18:56 76,288 ----a-w c:\windows\system32\uniime.dll
- 2005-02-16 15:18:56 59,392 ----a-w c:\windows\system32\url.dll
+ 2008-08-22 08:07:58 105,984 ----a-w c:\windows\system32\url.dll
- 2007-08-22 13:12:18 689,152 ----a-w c:\windows\system32\urlmon.dll
+ 2008-08-22 08:08:22 1,206,784 ----a-w c:\windows\system32\urlmon.dll
- 2005-02-16 15:18:56 417,792 ----a-w c:\windows\system32\vbscript.dll
+ 2008-08-22 08:06:36 434,176 ----a-w c:\windows\system32\vbscript.dll
+ 2005-02-16 15:18:56 2,176 ----a-w c:\windows\system32\vga.drv
- 2007-04-23 00:15:23 39,672 ----a-w c:\windows\system32\VXBLOCK.dll
+ 2007-10-20 00:56:10 88,824 ------w c:\windows\system32\VXBLOCK.dll
+ 2007-12-01 00:16:18 1,419,232 ----a-w c:\windows\system32\WdfCoInstaller01005.dll
- 2005-02-16 15:18:56 49,152 ----a-w c:\windows\system32\wdigest.dll
+ 2006-03-24 04:37:50 49,152 ----a-w c:\windows\system32\wdigest.dll
+ 2004-08-04 05:56:58 23,552 ----a-w c:\windows\system32\wdmaud.drv
- 2005-02-16 15:18:56 437,248 ----a-w c:\windows\system32\webcheck.dll
+ 2008-08-22 08:08:08 236,544 ----a-w c:\windows\system32\webcheck.dll
+ 2005-02-16 15:18:56 13,600 ----a-w c:\windows\system32\wfwnet.drv
+ 2007-04-10 20:00:46 236,928 ------w c:\windows\system32\WgaLogon.dll
+ 2007-04-10 20:01:18 336,768 ------w c:\windows\system32\WgaTray.exe
+ 2001-08-18 04:36:34 87,040 ----a-w c:\windows\system32\wiafbdrv.dll
- 2007-03-08 13:47:48 1,843,584 ----a-w c:\windows\system32\win32k.sys
+ 2008-09-15 11:57:41 1,846,016 ----a-w c:\windows\system32\win32k.sys
+ 2008-08-22 08:08:22 208,384 ------w c:\windows\system32\WinFXDocObj.exe
- 2007-08-22 13:12:18 692,736 ----a-w c:\windows\system32\wininet.dll
+ 2008-08-22 08:08:06 878,592 ----a-w c:\windows\system32\wininet.dll
+ 2005-02-16 15:18:56 2,864 ----a-w c:\windows\system32\winsock.dll
+ 2005-02-16 15:18:56 146,432 ----a-w c:\windows\system32\winspool.drv
+ 2005-02-16 15:18:56 2,112 ----a-w c:\windows\system32\winspool.exe
- 2006-10-19 03:47:18 222,208 ----a-w c:\windows\system32\wmasf.dll
+ 2007-10-27 23:40:30 222,720 ----a-w c:\windows\system32\wmasf.dll
+ 1999-08-09 20:40:56 163,600 ----a-w c:\windows\system32\wmaudsdk.dll
- 2004-09-22 23:46:14 189,440 ----a-w c:\windows\system32\wmerror.dll
+ 2006-10-19 03:47:20 227,328 ----a-w c:\windows\system32\wmerror.dll
- 2006-10-19 03:47:20 937,984 ----a-w c:\windows\system32\WMNetMgr.dll
+ 2008-06-18 11:03:08 938,496 ----a-w c:\windows\system32\WMNetmgr.dll
- 2007-04-30 13:20:24 5,537,792 ----a-w c:\windows\system32\wmp.dll
+ 2007-06-12 04:51:12 10,834,944 ----a-w c:\windows\system32\wmp.dll
- 2004-09-22 23:46:20 135,168 ----a-w c:\windows\system32\wmpasf.dll
+ 2006-10-19 03:47:20 242,688 ----a-w c:\windows\system32\wmpasf.dll
- 2004-09-22 23:46:20 282,624 ----a-w c:\windows\system32\wmpdxm.dll
+ 2006-10-19 03:47:20 314,880 ----a-w c:\windows\system32\wmpdxm.dll
+ 2008-06-24 23:12:58 295,936 ------w c:\windows\system32\wmpeffects.dll
- 2004-09-22 23:46:20 1,589,760 ----a-w c:\windows\system32\wmpencen.dll
+ 2006-10-19 03:47:20 1,661,440 ----a-w c:\windows\system32\wmpencen.dll
- 2004-09-22 23:46:22 3,371,008 ----a-w c:\windows\system32\wmploc.dll
+ 2006-10-19 03:47:20 8,231,936 ----a-w c:\windows\system32\wmploc.dll
+ 2006-10-19 03:47:20 613,376 ------w c:\windows\system32\wmpmde.dll
+ 2006-10-19 03:47:20 130,048 ------w c:\windows\system32\wmpps.dll
- 2004-09-22 23:46:24 86,016 ----a-w c:\windows\system32\wmpshell.dll
+ 2006-10-19 03:47:20 99,840 ----a-w c:\windows\system32\wmpshell.dll
- 2004-09-22 23:46:24 175,104 ----a-w c:\windows\system32\wmpsrcwp.dll
+ 2006-10-19 03:47:20 204,288 ----a-w c:\windows\system32\wmpsrcwp.dll
+ 2001-05-16 23:54:44 309,616 ----a-w c:\windows\system32\wmv8dmod.dll
- 2006-10-19 03:47:22 2,450,944 ----a-w c:\windows\system32\wmvcore.dll
+ 2008-06-18 11:03:14 2,458,112 ----a-w c:\windows\system32\WMVCore.dll
+ 2005-02-16 15:18:56 2,736 ----a-w c:\windows\system32\wowdeb.exe
- 2006-10-19 02:47:22 38,400 ----a-w c:\windows\system32\wpdshextres.dll
+ 2006-10-19 03:47:22 38,400 ----a-w c:\windows\system32\wpdshextres.dll
+ 2004-08-05 02:46:12 520,192 ----a-w c:\windows\system32\wscma2u.exe
- 2005-02-16 15:18:56 114,688 ----a-w c:\windows\system32\wscript.exe
+ 2007-08-01 01:45:22 135,168 ----a-w c:\windows\system32\wscript.exe
- 2005-02-16 15:18:56 28,672 ----a-w c:\windows\system32\wshcon.dll
+ 2007-08-01 01:45:30 36,864 ----a-w c:\windows\system32\wshcon.dll
- 2005-02-16 15:18:56 65,536 ----a-w c:\windows\system32\wshext.dll
+ 2007-08-01 01:45:30 69,632 ----a-w c:\windows\system32\wshext.dll
+ 2008-09-18 00:41:22 42,320 ----a-w c:\windows\system32\xfcodec.dll
+ 2008-06-12 16:28:02 121,856 ----a-w c:\windows\system32\xmllite.dll
- 2007-10-29 10:26:53 115,712 ----a-w c:\windows\system32\xpsp3res.dll
+ 2008-07-03 09:14:02 351,744 ----a-w c:\windows\system32\xpsp3res.dll
- 2006-10-21 03:29:54 304,928 ----a-w c:\windows\system32\XPSViewer\XPSViewer.exe
+ 2007-10-09 19:03:08 308,760 ----a-w c:\windows\system32\XPSViewer\XPSViewer.exe
+ 2008-01-11 23:39:38 70,656 ----a-w c:\windows\system32\ZuneIpTransport.dll
+ 2008-01-11 23:39:38 145,408 ----a-w c:\windows\system32\ZuneMTPZ.dll
+ 2008-01-11 23:39:40 35,840 ----a-w c:\windows\system32\ZuneUsbCOnnection.dll
+ 2008-01-11 23:39:40 62,464 ----a-w c:\windows\system32\ZuneUsbTransport.dll
+ 2000-08-31 14:00:00 49,152 ----a-w c:\windows\VFIND.exe
+ 2008-01-23 21:56:26 8,192 ----a-w c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2008-09-30 22:42:08 1,286,152 ----a-w c:\windows\WinSxS\x86_Microsoft.MSXML2_6bd6b9abf345378f_4.20.9870.0_x-ww_a32d74cf\msxml4.dll
+ 2008-09-30 22:45:12 91,656 ----a-w c:\windows\WinSxS\x86_Microsoft.MSXML2R_6bd6b9abf345378f_4.1.1.0_x-ww_2a41bceb\msxml4r.dll
+ 2006-12-02 04:56:00 96,256 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.ATL_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_cbb27474\ATL80.dll
+ 2007-10-24 07:47:56 479,232 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\msvcm80.dll
+ 2007-10-24 07:47:56 558,080 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\msvcp80.dll
+ 2007-10-24 07:47:56 635,904 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.1433_x-ww_5cf844d2\msvcr80.dll
+ 2006-06-05 21:47:40 1,093,632 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_39049d00\mfc80.dll
+ 2006-06-05 21:47:48 1,080,320 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_39049d00\mfc80u.dll
+ 2006-06-05 21:47:50 69,632 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_39049d00\mfcm80.dll
+ 2006-06-05 21:47:50 57,856 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_39049d00\mfcm80u.dll
+ 2006-12-02 06:25:52 1,101,824 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfc80.dll
+ 2006-12-02 06:25:56 1,093,120 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfc80u.dll
+ 2006-12-02 06:25:58 69,632 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfcm80.dll
+ 2006-12-02 06:26:00 57,856 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_3bf8fa05\mfcm80u.dll
+ 2006-06-05 21:28:32 40,960 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80CHS.dll
+ 2006-06-05 21:28:32 45,056 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80CHT.dll
+ 2006-06-05 21:28:32 65,536 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80DEU.dll
+ 2006-06-05 21:28:34 57,344 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80ENU.dll
+ 2006-06-05 21:28:32 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80ESP.dll
+ 2006-06-05 21:28:32 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80FRA.dll
+ 2006-06-05 21:28:32 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80ITA.dll
+ 2006-06-05 21:28:32 49,152 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80JPN.dll
+ 2006-06-05 21:28:34 49,152 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.163_x-ww_8e53b5fe\mfc80KOR.dll
+ 2006-12-02 06:08:00 40,960 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80CHS.dll
+ 2006-12-02 06:08:00 45,056 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80CHT.dll
+ 2006-12-02 06:08:00 65,536 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80DEU.dll
+ 2006-12-02 06:08:00 57,344 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ENU.dll
+ 2006-12-02 06:08:00 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ESP.dll
+ 2006-12-02 06:08:00 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80FRA.dll
+ 2006-12-02 06:08:00 61,440 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80ITA.dll
+ 2006-12-02 06:08:00 49,152 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80JPN.dll
+ 2006-12-02 06:08:00 49,152 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.MFCLOC_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_91481303\mfc80KOR.dll
+ 2006-12-02 06:46:44 65,536 ----a-w c:\windows\WinSxS\x86_Microsoft.VC80.OpenMP_1fc8b3b9a1e18e3b_8.0.50727.762_x-ww_6c18549a\vcomp.dll
+ 2008-04-15 17:54:19 1,724,416 ----a-w c:\windows\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.2600.3352_x-ww_81af8e88\GdiPlus.dll
- 2007-11-12 21:46:40 258,048 ----a-w c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2008-01-23 21:56:48 258,048 ----a-w c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
- 2007-11-12 21:46:40 114,176 ----a-w c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2008-01-23 21:56:48 113,664 ----a-w c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
+ 2000-08-31 14:00:00 68,096 ----a-w c:\windows\zip.exe
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{1392b8d2-5c05-419f-a8f6-b9f15a596612}]
2007-12-17 22:24 1502232 --a------ c:\program files\Freecorder\tbFre1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{1392b8d2-5c05-419f-a8f6-b9f15a596612}"= "c:\program files\Freecorder\tbFre1.dll" [2007-12-17 1502232]

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{1392B8D2-5C05-419F-A8F6-B9F15A596612}"= "c:\program files\Freecorder\tbFre1.dll" [2007-12-17 1502232]

[HKEY_CLASSES_ROOT\clsid\{1392b8d2-5c05-419f-a8f6-b9f15a596612}]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GoGoTray.exe"="c:\program files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe" [2005-01-30 274432]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2007-06-05 68856]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2005-02-16 15360]
"RocketDock"="c:\windows\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe" [2007-03-18 630784]
"Veoh"="c:\program files\Veoh Networks\Veoh\VeohClient.exe" [2008-08-28 3660848]
"BitTorrent DNA"="c:\program files\DNA\btdna.exe" [2008-12-19 342848]
"Google Update"="c:\documents and settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" [2008-11-29 133104]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"YBrowser"="c:\progra~1\Yahoo!\browser\ybrwicon.exe" [2006-07-21 129536]
"Motive SmartBridge"="c:\progra~1\SBCSEL~1\SMARTB~1\MotiveSB.exe" [2003-12-10 380928]
"YOP"="c:\progra~1\Yahoo!\YOP\yop.exe" [2007-06-26 509224]
"ATICCC"="c:\program files\ATI Technologies\ATI.ACE\cli.exe" [2006-01-02 45056]
"SmcService"="c:\progra~1\Sygate\SPF\smc.exe" [2004-10-15 2577632]
"lxcymon.exe"="c:\program files\Lexmark 3400 Series\lxcymon.exe" [2007-06-25 291504]
"EzPrint"="c:\program files\Lexmark 3400 Series\ezprint.exe" [2007-06-25 82608]
"FaxCenterServer"="c:\program files\Lexmark Fax Solutions\fm3032.exe" [2007-06-25 295600]
"LXCYCATS"="c:\windows\System32\spool\DRIVERS\W32X86\3\LXCYtime.dll" [2006-11-21 106496]
"Pepsi Volume Controller 3.0"="c:\program files\Zamaan's Software\Pepsi Volume Controller 3.0\pvc3.0.exe" [2006-04-08 798720]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-11 39792]
"SunJavaUpdateSched"="c:\program files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2008-11-27 1261336]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2005-02-16 208952]
"IMEKRMIG6.1"="c:\windows\ime\imkr6_1\IMEKRMIG.EXE" [2008-09-21 44032]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2005-02-16 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2005-02-16 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2005-02-16 455168]
"AppleSyncNotifier"="c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe" [2008-10-01 111936]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2008-09-06 413696]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2008-11-20 290088]
"SoundMan"="SOUNDMAN.EXE" [2004-04-28 c:\windows\soundman.exe]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"MySpaceIM"="c:\program files\MySpace\IM\MySpaceIM.exe" [2008-02-01 8699904]

c:\documents and settings\Administrator\Start Menu\Programs\Accessories\Startup\
Cme.lnk - c:\program files\Change Mon Ecran\Change Mon Ecran.exe [2007-11-19 563712]
MagicDisc.lnk - c:\program files\MagicDisc\MagicDisc.exe [2006-12-07 575488]
RocketDock.lnk - c:\windows\BricoPacks\Vista Inspirat 2\RocketDock\RocketDock.exe [2007-03-18 630784]
TransBar.lnk - c:\windows\BricoPacks\Vista Inspirat 2\TransBar\TransBar.exe [2005-06-01 65536]
UberIcon.lnk - c:\windows\BricoPacks\Vista Inspirat 2\UberIcon\UberIcon Manager.exe [2006-05-21 180224]

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-06-13 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LMIinit]
2007-11-15 17:46 87352 c:\windows\system32\LMIinit.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"vidc.I420"= i420vfw.dll
"vidc.ffds"= c:\progra~1\COMBIN~1\Filters\FFDShow\ff_vfw.dll
"VIDC.XFR1"= xfcodec.dll

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
SecurityProviders msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, zwebauth.dll

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"c:\\Program Files\\Yahoo!\\browser\\ybrowser.exe"=
"c:\\Program Files\\LimeWire\\LimeWire.exe"=
"c:\\WINDOWS\\system32\\lxcycoms.exe"=
"c:\\Program Files\\mIRC\\mirc.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
"c:\\Program Files\\Windows Media Player\\wmplayer.exe"=
"c:\\Program Files\\Common Files\\AOL\\Loader\\aolload.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"c:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=
"c:\\Program Files\\BYOND\\bin\\byond.exe"=
"c:\\Program Files\\Real\\RealPlayer\\realplay.exe"=
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\Easy File Sharing Web Server\\fsws.exe"=
"c:\\Program Files\\Easy File Sharing FTP Server\\fsfs.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"c:\\Program Files\\LittleFighter2\\LF2_v1.9c\\lf2.exe"=
"c:\\Program Files\\MySpace\\IM\\MySpaceIM.exe"=
"c:\\Program Files\\Veoh Networks\\Veoh\\VeohClient.exe"=
"c:\\Program Files\\Winamp Remote\\bin\\OrbTray.exe"=
"c:\\Program Files\\Winamp Remote\\bin\\Orb.exe"=
"c:\\Program Files\\Xfire\\xfire.exe"=
"c:\\ijji\\ENGLISH\\u_gunz.exe"=
"c:\\Program Files\\WiFiConnector\\NintendoWFCReg.exe"=
"c:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"=
"c:\\Program Files\\Gpotato\\TalesRunner\\trgame.exe"=
"c:\\Program Files\\DNA\\btdna.exe"=
"c:\\Program Files\\BitTorrent\\bittorrent.exe"=
"c:\\Program Files\\iTunes\\iTunes.exe"=
"c:\\Program Files\\Bonjour\\mDNSResponder.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"17374:TCP"= 17374:TCP:BitComet 17374 TCP
"17374:UDP"= 17374:UDP:BitComet 17374 UDP

R1 AvgLdx86;AVG AVI Loader Driver x86;c:\windows\system32\Drivers\avgldx86.sys [2008-06-17 97928]
R1 SASKUTIL;SASKUTIL;\??\c:\program files\SUPERAntiSpyware\SASKUTIL.sys [2008-02-29 55024]
R2 avg8emc;AVG8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [2008-07-05 875288]
R2 avg8wd;AVG8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [2008-07-05 231704]
R2 AvgTdiX;AVG8 Network Redirector;c:\windows\system32\Drivers\avgtdix.sys [2008-06-17 76040]
R2 lxcy_device;lxcy_device;c:\windows\system32\lxcycoms.exe -service []
S3 ggflt;SEMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys [2008-01-06 13352]
S3 SASENUM;SASENUM;\??\c:\program files\SUPERAntiSpyware\SASENUM.SYS [2006-02-16 4096]
S3 w200bus;Sony Ericsson W200 driver (WDM);c:\windows\system32\DRIVERS\w200bus.sys [2008-01-05 61504]
S3 w200mdfl;Sony Ericsson W200 USB WMC Modem Filter;c:\windows\system32\DRIVERS\w200mdfl.sys [2008-01-05 9328]
S3 w200mdm;Sony Ericsson W200 USB WMC Modem Driver;c:\windows\system32\DRIVERS\w200mdm.sys [2008-01-05 97056]
S3 w200mgmt;Sony Ericsson W200 USB WMC Device Management Drivers (WDM);c:\windows\system32\DRIVERS\w200mgmt.sys [2008-01-05 88560]
S3 w200obex;Sony Ericsson W200 USB WMC OBEX Interface;c:\windows\system32\DRIVERS\w200obex.sys [2008-01-05 86368]
S3 xusb20;Xbox 360 Wireless Receiver for Windows Driver Service;c:\windows\system32\DRIVERS\xusb20.sys [2006-10-13 50048]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\H]
\Shell\AutoRun\command - H:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{2c5cf505-36e2-11dd-9c4a-00160176741d}]
\Shell\AutoRun\command - G:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{9e4de814-dd88-11dc-9c24-00402b27ca99}]
\Shell\AutoRun\command - G:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{a19cab5d-0fe3-11dd-9c30-00160176741d}]
\Shell\AutoRun\command - H:\LaunchU3.exe -a

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{c85a35df-b961-11dc-9c07-00402b27ca99}]
\Shell\AutoRun\command - g:\wd_windows_tools\setup.exe
.
Contents of the 'Scheduled Tasks' folder

2008-12-29 c:\windows\Tasks\AppleSoftwareUpdate.job
- c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 11:34]

2008-12-29 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-299502267-606747145-725345543-500.job
- c:\documents and settings\Administrator\Local Settings\Application Data\Google\Update\GoogleUpdate.exe [2008-11-29 13:39]
.
- - - - ORPHANS REMOVED - - - -

HKCU-Run-WindowsUI - c:\windows\WINDOWS\WindowsUI.exe
HKCU-Run-Sonic RecordNow! - (no file)
HKCU-Run-Aim6 - (no file)
HKLM-Run-WindowsUI - c:\windows\WINDOWS\WindowsUI.exe
HKLM-Run-SearchSettings - c:\program files\Search Settings\SearchSettings.exe
HKLM-Run-LogMeIn GUI - c:\program files\LogMeIn\x86\LogMeInSystray.exe
HKLM-Run-@ - (no file)


.
------- Supplementary Scan -------
.
uSearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8
uStart Page = hxxp://www.yahoo.com/
uInternet Connection Wizard,ShellNext = iexplore
uInternet Settings,ProxyServer = http=127.0.0.1:6711
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: &D&ownload &with BitComet - c:\program files\BitComet\BitComet.exe/AddLink.htm
IE: &D&ownload all video with BitComet - c:\program files\BitComet\BitComet.exe/AddVideo.htm
IE: &D&ownload all with BitComet - c:\program files\BitComet\BitComet.exe/AddAllLink.htm
IE: Add to Change Mon Ecran - c:\windows\CmeIE.htm
Trusted Zone: www.netmarble.jp
Trusted Zone: *.nigoro.jp

O16 -: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab
c:\windows\Downloaded Program Files\Microsoft XML Parser for Java.osd

c:\windows\Downloaded Program Files\ewidoOnlineScan.dll - O16 -: {193C772A-87BE-4B19-A7BB-445B226FE9A1}
hxxp://downloads.ewido.net/ewidoOnlineScan.cab

c:\windows\system32\mfc42.dll - c:\windows\system32\msvcrt.dll
c:\windows\system32\olepro32.dll
c:\windows\Downloaded Program Files\WebLauncher.ocx
O16 -: {9D8CCE0F-2E2C-41EB-B37F-9852DB989CAC}
hxxp://www.ace-onlines.com/game/WebLauncher.cab
c:\windows\Downloaded Program Files\WebLauncher.inf
FF - ProfilePath - c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\8rimfbzm.default\
FF - prefs.js: browser.search.selectedEngine - Yahoo
FF - prefs.js: browser.startup.homepage - www.yahoo.com
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=vmn&type=vendio&p=
FF - component: c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\8rimfbzm.default\extensions\{1392b8d2-5c05-419f-a8f6-b9f15a596612}\components\FFAlert.dll
FF - component: c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\8rimfbzm.default\extensions\{463F6CA5-EE3C-4be1-B7E6-7FEE11953374}\platform\WINNT\components\FoxyTunes.dll
FF - component: c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\8rimfbzm.default\extensions\{B042753D-F57E-4e8e-A01B-7379A6D4CEFB}\components\IBitCometExtension.dll
FF - component: c:\program files\AVG\AVG8\Firefox\components\avgssff.dll
FF - component: c:\program files\Mozilla Firefox\extensions\search@searchsettings.com\components\SearchSettingsFF.dll
FF - component: c:\program files\Mozilla Firefox\extensions\talkback@mozilla.org\components\qfaservices.dll
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-12-29 13:21:43
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

HKLM\Software\Microsoft\Windows\CurrentVersion\Run
LXCYCATS = rundll32 c:\windows\System32\spool\DRIVERS\W32X86\3\LXCYtime.dll,_RunDLLEntry@16???????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????????

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************

[HKEY_LOCAL_MACHINE\system\ControlSet004\Services\vsdatant]
"ImagePath"=""
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(612)
c:\windows\system32\avgrsstx.dll
c:\windows\system32\Ati2evxx.dll
c:\windows\system32\LMIinit.dll

- - - - - - - > 'lsass.exe'(732)
c:\windows\system32\avgrsstx.dll
.
Completion time: 2008-12-29 13:25:01
ComboFix-quarantined-files.txt 2008-12-29 19:23:43
ComboFix2.txt 2007-12-03 20:57:46

Pre-Run: 2,914,082,816 bytes free
Post-Run: 3,481,014,272 bytes free

WindowsXP-KB310994-SP2-Pro-BootDisk-ENU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect

3103 --- E O F --- 2008-12-19 18:24:13

#15 Billy O'Neal

Billy O'Neal

    Visual C++ STL Maintainer


  • Malware Response Team
  • 12,304 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Redmond, Washington
  • Local time:11:38 PM

Posted 29 December 2008 - 07:55 PM

Hello, tristenkw5
Please let me know how things are running after CFScript :thumbsup:

We need to re-run ComboFix with some additonal directives.
  • Please disable any running anti-virus programs.

    If you are unsure how to do this, see this topic: http://www.bleepingcomputer.com/forums/t/114351/how-to-temporarily-disable-your-anti-virus-firewall-and-anti-malware-programs/

  • Close any open browsers.
  • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.
  • Open notepad and copy/paste the text in the quotebox below into it:
    FCOPY::
    c:\windows\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\explorer.exe | c:\windows\explorer.exe
    c:\windows\SoftwareDistribution\Download\dd9ab5193501484cf5e6884fa1d22f9e\explorer.exe | c:\windows\system32\dllcache\explorer.exe
  • Save this as CFScript.txt, in the same location as ComboFix.exe
  • Posted Image
    Refering to the picture above, drag CFScript into ComboFix.exe
  • When finished, it shall produce a log for you at "C:\ComboFix.txt". Please copy and paste that report here.
Note: Do not mouseclick combofix's window whilst it's running. That may cause it to stall.

In your next reply, please include the following:
  • ComboFix.txt

BillyIII
Twitter - My statements do not establish the official position of Microsoft Corporation, and are my own personal opinion. (But you already knew that, right?)
Posted Image




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users