Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Virus. No safe mode, IE redirections, etc.


  • This topic is locked This topic is locked
15 replies to this topic

#1 Jeffso

Jeffso

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:42 PM

Posted 30 June 2009 - 12:40 AM

I believe I got this virus when I visited The Pirate Bay and accidentally clicked on some ad or another.
It seems to act like "Virus Remover Professional", with the screens that are displayed in your uninstall guide, but using Malwarebyte's Antimalware does not remove it, or at least not completely.
If I run MBAM, then Spybot, then AVG, etc. It seems to go away, but I cannot start in safemode, the computer just restarts itself after I select safemode.
For awhile after I got this virus, I could start in safemode, but not anymore.
Anytime I just visit The Pirate Bay website the virus comes back full blown.

Here is my Hijack this log.


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:13:56:A, on 6/30/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16850)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\svchost.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://encarta.msn.com/teleport/activate/d...sp?pid=51957HP1
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [Ad-Watch] C:\Program Files\Lavasoft\Ad-Aware\AAWTray.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files\Alcohol Soft\Alcohol 120\axcmd.exe" /automount
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.systemrequirementslab.com/srl_b...sreqlab_srl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1240528006718
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Lavasoft Ad-Aware Service - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\AAWService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

--
End of file - 5355 bytes


This log is after running MBAM, etc.
There are a couple processes that are running when I have the full virus going that are not on my log.
One is ld10.exe or sometimes ld11.exe or some variant of that.
I don't remember what the other was right now and I don't want to infect myself again yet.
One file that seems to be causing the most trouble is in windows/system32/drivers called str.sys
Sometimes it was there sometimes not.
Spybot found it but couldn't delete it
I managed to wipe it and now when I restart, a command prompt sometimes appears that is looking for that file,and an error message comes up that says I have no Alcohol device installed (which I do,Alcohol 120%) and need to set my drives to more than 1.


Here is an MBAM log from a few days ago.


Malwarebytes' Anti-Malware 1.38
Database version: 2337
Windows 5.1.2600 Service Pack 3

6/27/2009 12:25:53 AM
mbam-log-2009-06-27 (00-25-53).txt

Scan type: Quick Scan
Objects scanned: 111156
Time elapsed: 8 minute(s), 58 second(s)

Memory Processes Infected: 1
Memory Modules Infected: 2
Registry Keys Infected: 9
Registry Values Infected: 6
Registry Data Items Infected: 2
Folders Infected: 3
Files Infected: 26

Memory Processes Infected:
C:\WINDOWS\system32\drivers\smss.exe (Trojan.FakeAlert) -> Unloaded process successfully.

Memory Modules Infected:
C:\WINDOWS\system32\__c00BA9D1.dat (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\gsf83iujid.dll (Trojan.Ertfor) -> Delete on reboot.

Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{d76ab2a1-00f3-42bd-f434-00bbc39c8953} (Trojan.Zlob.H) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\__c00ba9d1 (Trojan.Vundo) -> Delete on reboot.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43bf8cd1-c5d5-2230-7bb2-98f22c2b7dc6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\explorer.exe (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{d76ab2a1-00f3-42bd-f434-00bbc39c8953} (Trojan.Ertfor) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{d76ab2a1-00f3-42bd-f434-00bbc39c8953} (Trojan.Ertfor) -> Delete on reboot.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{d76ab2a1-00f3-42bd-f434-00bbc39c8953} (Trojan.Zlob.H) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\18722814 (Rogue.Multiple.H) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\a00f1302ec9.exe (Trojan.Clopack) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network\UID (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\idstrf (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\WINID (Malware.Trace) -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.FakeAlert) -> Data: c:\windows\system32\drivers\smss.exe -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Userinit (Trojan.FakeAlert) -> Data: c:\windows\system32\sdra64.exe -> Delete on reboot.

Folders Infected:
C:\Documents and Settings\All Users\Application Data\18722814 (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\Program Files\Microsoft Common (Trojan.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\lowsec (Stolen.data) -> Delete on reboot.

Files Infected:
C:\WINDOWS\system32\gsf83iujid.dll (Trojan.Zlob.H) -> Delete on reboot.
c:\documents and settings\all users\application data\18722814\18722814 (Rogue.Multiple.H) -> Quarantined and deleted successfully.
c:\documents and settings\all users\application data\18722814\18722814.exe (Rogue.Multiple.H) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\__c00BA9D1.dat (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\drivers\smss.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\temp\_A00F1302EC9.exe (Trojan.Clopack) -> Quarantined and deleted successfully.
c:\hlyfg.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\orimq.exe (Trojan.Clopack) -> Quarantined and deleted successfully.
c:\tychjooc.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\rdl5F.tmp (Trojan.Crypt) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\rdl70.tmp (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\rdl8.tmp (Rogue.Installer) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\rdl82.tmp (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\rdl9.tmp (Trojan.Crypt) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\rdlB.tmp (Trojan.Dropper) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\temporary internet files\Content.IE5\1C1PVVFG\nwtueiizna[1].htm (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\temporary internet files\Content.IE5\2VHV1I81\dakxxly[1].txt (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\temporary internet files\Content.IE5\2VHV1I81\djdjjnxlcp[1].htm (Trojan.Clopack) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\temporary internet files\Content.IE5\4GJEDBZK\kdqrefsfx[1].htm (Trojan.Downloader) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\temporary internet files\Content.IE5\4GJEDBZK\molivjw[1].htm (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\temp\temporary internet files\Content.IE5\KT722CBD\djjthyycqd[1].htm (Trojan.FakeAlert) -> Quarantined and deleted successfully.
c:\program files\microsoft common\svchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\lowsec\local.ds (Stolen.data) -> Delete on reboot.
c:\WINDOWS\system32\lowsec\user.ds (Stolen.data) -> Delete on reboot.
C:\WINDOWS\system32\sdra64.exe (Trojan.FakeAlert) -> Delete on reboot.
C:\WINDOWS\system32\drivers\str.sys (Rootkit.Agent) -> Quarantined and deleted successfully.



This is not always the same, sometimes there are 9 total infections found, sometimes 40, etc. The infections seem to vary from scan to scan as well.

I am stuck. Any help is appreciated. Thanks.

BC AdBot (Login to Remove)

 


m

#2 Jeffso

Jeffso
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:42 PM

Posted 03 July 2009 - 09:51 AM

I should probably say that I am running XP and that I have never had a problem with TPB before. Also the error message about Alcohol is in very bad English and I remember having that same error before, years ago. I got rid of that, but this one won't go away. I haven't gone back on to TPB yet, for fear of getting things worse, but I will if it brings back the full infection to find out more info. Right now everything seems ok except for no safemode and the Alcohol error. If anyone has any ideas just let me know. Thanks.

#3 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,681 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:02:42 AM

Posted 03 July 2009 - 08:04 PM

Hello and welcome to Bleeping Computer

We apologize for the delay in responding to your request for help. Here at Bleeping Computer we get overwhelmed at times, and we are trying our best to keep up. Please note that your topic was not intentionally overlooked. Our mission is to help everyone in need, but sometimes it takes just a little longer to get to every request for help. No one is ignored here.

If you have since resolved the original problem you were having, we would appreciate you letting us know. If not please perform the following steps below so we can have a look at the current condition of your machine.

If you have not done so, include a clear description of the problems you're having, along with any steps you may have performed so far.

Upon completing the steps below another staff member will review and take the steps necessary with you to get your machine back in working order clean and free of malware.

If you have already posted a DDS log, please do so again, as your situation may have changed.
Use the 'Add Reply' and add the new log to this thread.


Thanks and again sorry for the delay.

We need to see some information about what is happening in your machine. Please perform the following scan:
  • Download DDS by sUBs from one of the following links. Save it to your desktop.
  • Double click on the DDS icon, allow it to run.
  • A small box will open, with an explaination about the tool. No input is needed, the scan is running.
  • Notepad will open with the results.
  • Follow the instructions that pop up for posting the results.
  • Close the program window, and delete the program from your desktop.
Please note: You may have to disable any script protection running if the scan fails to run. After downloading the tool, disconnect from the internet and disable all antivirus protection. Run the scan, enable your A/V and reconnect to the internet.

Information on A/V control HERE

regards _temp_
If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!


Follow BleepingComputer on: Facebook | Twitter | Google+

#4 Jeffso

Jeffso
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:42 PM

Posted 04 July 2009 - 07:06 AM

DDS (Ver_09-06-26.01) - NTFSx86
Run by Compaq_Owner at 7:00:09.17 on Sat 07/04/2009
Internet Explorer: 7.0.5730.11
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.511.215 [GMT -5:00]

AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}

============== Running Processes ===============

C:\WINDOWS\system32\svchost -k DcomLaunch
svchost.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
svchost.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Compaq_Owner\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://www.google.com/
uRun: [updateMgr] "c:\program files\adobe\acrobat 7.0\reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
uRun: [AlcoholAutomount] "c:\program files\alcohol soft\alcohol 120\axcmd.exe" /automount
mRun: [Recguard] c:\windows\sminst\RECGUARD.EXE
mRun: [nwiz] nwiz.exe /install
mRun: [NvMediaCenter] RUNDLL32.EXE c:\windows\system32\NvMcTray.dll,NvTaskbarInit
mRun: [NvCplDaemon] RUNDLL32.EXE c:\windows\system32\NvCpl.dll,NvStartup
mRun: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe -startup
mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
mRun: [hpsysdrv] c:\windows\system\hpsysdrv.exe
mRun: [AlcxMonitor] ALCXMNTR.EXE
mRun: [AlcWzrd] ALCWZRD.EXE
mRun: [AGRSMMSG] AGRSMMSG.exe
mRun: [AVG8_TRAY] c:\progra~1\avg\avg8\avgtray.exe
mRun: [Ad-Watch] c:\program files\lavasoft\ad-aware\AAWTray.exe
uPolicies-explorer: NoRecentDocsNetHood = 01000000
uPolicies-explorer: NoSMMyDocs = 01000000
uPolicies-explorer: NoSMMyPictures = 01000000
uPolicies-explorer: NoNetworkConnections = 01000000
uPolicies-explorer: NoStrCmpLogical = 01000000
uPolicies-system: EnableProfileQuota = 1 (0x1)
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC} - c:\program files\java\jre1.6.0_07\bin\ssv.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\progra~1\spybot~1\SDHelper.dll
DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} - hxxp://www.systemrequirementslab.com/srl_bin/sysreqlab_srl.cab
DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1240528006718
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/products/plugin/autodl/jinstall-142-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - c:\program files\avg\avg8\avgpp.dll
Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
Notify: avgrsstarter - avgrsstx.dll
Notify: igfxcui - igfxsrvc.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL

============= SERVICES / DRIVERS ===============

R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [2009-5-7 64160]
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [2009-4-26 325896]
R1 AvgMfx86;AVG Free On-access Scanner Minifilter Driver x86;c:\windows\system32\drivers\avgmfx86.sys [2009-4-26 27784]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [2009-4-26 108552]
R1 mapledxp;mapledxp;c:\windows\system32\drivers\mapledxp.sys [2009-5-3 24720]
R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\SASDIFSV.SYS [2008-8-19 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2008-8-19 55024]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\avg\avg8\avgemc.exe [2009-4-26 908568]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\avg\avg8\avgwdsvc.exe [2009-4-26 298776]
R2 ithsgt;ithsgt;c:\windows\system32\drivers\ithsgt.sys [2008-12-30 162432]
R2 lilsgt;lilsgt;c:\windows\system32\drivers\lilsgt.sys [2008-12-30 12032]
S2 uuzvwhj;uuzvwhj;\??\c:\windows\system32\drivers\dbysgtllbyqtwoo.sys --> c:\windows\system32\drivers\dbysgtllbyqtwoo.sys [?]
S3 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\lavasoft\ad-aware\AAWService.exe [2009-3-9 1003344]
S3 SASENUM;SASENUM;c:\program files\superantispyware\SASENUM.SYS [2008-8-19 7408]

=============== Created Last 30 ================

2009-06-28 19:54 <DIR> --d----- c:\documents and settings\compaq_owner\.housecall6.6
2009-06-28 14:57 1,149,888 a------- c:\windows\system32\drivers\AGRSM.sys
2009-06-28 14:57 142,592 a------- c:\windows\system32\drivers\aec.sys
2009-06-28 14:48 0 a------- C:\xcrashdump.dat
2009-06-28 14:47 <DIR> --d----- c:\program files\sys
2009-06-28 14:47 <DIR> --d----- c:\docume~1\alluse~1\applic~1\12526094
2009-06-27 00:07 2 a------- C:\-724601830
2009-06-24 03:47 127 a------- c:\windows\system32\MRT.INI
2009-06-19 03:19 <DIR> --d----- c:\program files\driver
2009-06-11 01:13 <DIR> --d-h--- C:\$AVG8.VAULT$
2009-06-11 01:05 68,608 a------- c:\windows\system32\drivers\hwhospyxusipfvou.sys

==================== Find3M ====================

2009-06-17 11:27 38,160 a------- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-17 11:27 19,096 a------- c:\windows\system32\drivers\mbam.sys
2009-06-02 00:05 15,688 a------- c:\windows\system32\lsdelete.exe
2009-05-13 01:58 21,457 a------- c:\windows\unins001.dat
2009-05-13 01:58 673,546 a------- c:\windows\unins001.exe
2009-05-07 10:32 345,600 a------- c:\windows\system32\localspl.dll
2009-05-07 00:42 64,160 a------- c:\windows\system32\drivers\Lbd.sys
2009-05-02 09:36 11,952 a------- c:\windows\system32\avgrsstx.dll
2009-04-28 23:56 827,392 a------- c:\windows\system32\wininet.dll
2009-04-28 23:55 78,336 a------- c:\windows\system32\ieencode.dll
2009-04-17 07:26 1,847,168 a------- c:\windows\system32\win32k.sys
2009-04-15 09:51 585,216 a------- c:\windows\system32\rpcrt4.dll
2009-02-09 13:29 174 a------- c:\docume~1\compaq~1\applic~1\wklnhst.dat

============= FINISH: 7:00:21.65 ===============

Attached Files



#5 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,681 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:02:42 AM

Posted 05 July 2009 - 10:27 AM

Hi Jeffso and welcome to BleepingComputer again! :thumbup2:

I will be helping you today. :)

Please be advised, that I am still in training.
For your own protection, I may not offer you any advice without it being checked by more experienced helpers first. This can unfortunately lead to slight delays in the responses. However we are trying to help you as quickly as possible.

In the upper right hand corner of the topic you will see a button called Options. If you click on this in the drop-down menu you can choose Track this topic. By doing this and then choosing Immediate E-Mail notification and then clicking on Proceed you will be advised when we respond to your topic and facilitate the cleaning of your machine.

After 5 days if a topic is not replied to we assume it has been abandoned and it is closed.

Please refrain from running tools or applying updates other than those we suggest while we are cleaning up your computer. The reason for this is so we know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.

So let's get started! :)

Please download ComboFix from one of these locations:

Link 1
Link 2
Link 3

* IMPORTANT !!! Save ComboFix.exe to your Desktop
  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools
  • Double click on ComboFix.exe & follow the prompts.
  • As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
  • Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.
**Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

Posted Image


Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:

Posted Image


Click on Yes, to continue scanning for malware.

When finished, it will produce a log for you. Please include the C:\ComboFix.txt in your next reply.

This tool is not a toy and not for everyday use.
ComboFix SHOULD NOT be used unless requested by a forum helper


If you need help, see this link:
http://www.bleepingcomputer.com/combofix/how-to-use-combofix


regards _temp_
If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!


Follow BleepingComputer on: Facebook | Twitter | Google+

#6 Jeffso

Jeffso
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:42 PM

Posted 06 July 2009 - 01:17 AM

ComboFix 09-07-05.01 - Compaq_Owner 07/06/2009 0:56.6 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.511.183 [GMT -5:00]
Running from: c:\documents and settings\Compaq_Owner\Desktop\ComboFix.exe
AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\program files\driver
c:\program files\sys
c:\recycler\S-1-5-21-2639562816-2766841320-741137243-2571
c:\windows\Installer\130a3ab.msi
c:\windows\Installer\4217e.msi
C:\xcrashdump.dat

c:\windows\system32\proquota.exe was missing
Restored copy from - c:\windows\ServicePackFiles\i386\proquota.exe

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_DRIVER
-------\Legacy_DRIVERDRV
-------\Legacy_SYS
-------\Legacy_SYSDRV
-------\Legacy_{79007602-0CDB-4405-9DBF-1257BB3226ED}
-------\Legacy_{79007602-0CDB-4405-9DBF-1257BB3226EE}


((((((((((((((((((((((((( Files Created from 2009-06-06 to 2009-07-06 )))))))))))))))))))))))))))))))
.

2009-07-06 06:03 . 2008-04-14 00:12 50176 -c--a-w- c:\windows\system32\dllcache\proquota.exe
2009-07-06 06:03 . 2008-04-14 00:12 50176 ----a-w- c:\windows\system32\proquota.exe
2009-06-29 00:54 . 2009-06-29 18:34 -------- d-----w- c:\documents and settings\Compaq_Owner\.housecall6.6
2009-06-28 19:57 . 2008-04-13 16:39 142592 ----a-w- c:\windows\system32\drivers\aec.sys
2009-06-28 19:57 . 2006-01-25 21:24 1149888 ----a-w- c:\windows\system32\drivers\AGRSM.sys
2009-06-28 19:47 . 2009-06-28 22:36 -------- d-----w- c:\documents and settings\All Users\Application Data\12526094
2009-06-26 10:03 . 2009-06-26 10:52 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-06-19 08:27 . 2009-06-19 08:27 3561743 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-06-11 06:13 . 2009-06-29 00:01 -------- d--h--w- C:\$AVG8.VAULT$
2009-06-11 06:05 . 2009-06-11 06:05 68608 ----a-w- c:\windows\system32\drivers\hwhospyxusipfvou.sys

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-05 06:53 . 2009-06-19 11:59 314712 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\threatwork.exe
2009-07-05 06:53 . 2009-06-19 11:59 25440 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\savapibridge.dll
2009-07-05 06:53 . 2009-06-19 11:59 169312 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lavamessage.dll
2009-07-05 06:53 . 2009-06-19 11:59 348496 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lavalicense.dll
2009-07-05 06:53 . 2009-06-19 11:59 298336 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\UpdateManager.dll
2009-07-05 06:53 . 2009-06-02 05:04 84832 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\ShellExt.dll
2009-07-05 06:53 . 2009-06-19 11:59 1630560 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Resources.dll
2009-07-05 06:53 . 2009-06-02 05:04 246128 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\RPAPI.dll
2009-07-05 06:53 . 2009-06-19 11:59 85352 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers\32\AAWDriverTool.exe
2009-07-05 06:53 . 2009-06-02 05:04 40288 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\PrivacyClean.dll
2009-07-05 06:53 . 2009-06-19 11:59 664424 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\CEAPI.dll
2009-07-05 06:53 . 2009-06-19 11:59 563064 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe
2009-07-05 06:52 . 2009-06-19 11:59 566632 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe
2009-07-05 06:52 . 2009-06-19 11:59 2352968 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-Aware.exe
2009-07-05 06:52 . 2009-06-19 11:59 629072 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWWSC.exe
2009-07-05 06:52 . 2009-06-19 11:59 520024 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWTray.exe
2009-07-05 06:52 . 2009-06-19 11:59 1029456 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWService.exe
2009-07-05 06:15 . 2009-03-19 04:03 117760 ----a-w- c:\documents and settings\Compaq_Owner\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2009-06-28 22:00 . 2003-09-10 00:19 -------- d-----w- c:\program files\burst
2009-06-27 04:47 . 2007-09-14 12:47 -------- d-----w- c:\program files\Temp
2009-06-21 06:07 . 2003-09-10 01:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-06-21 06:05 . 2003-09-10 01:14 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-06-19 15:13 . 2004-10-21 11:20 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-19 14:29 . 2009-05-31 16:54 -------- d-----w- c:\program files\Black Isle
2009-06-19 10:26 . 2008-08-23 12:58 -------- d-----w- c:\program files\SUPERAntiSpyware
2009-06-19 08:28 . 2009-04-17 04:04 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-17 16:27 . 2009-04-17 04:04 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-17 16:27 . 2009-04-17 04:04 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-06-02 05:05 . 2009-06-02 05:05 15688 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lsdelete.exe
2009-06-02 05:05 . 2009-05-07 07:29 15688 ----a-w- c:\windows\system32\lsdelete.exe
2009-05-30 07:42 . 2009-05-30 07:42 -------- d-----w- c:\program files\SystemRequirementsLab
2009-05-17 10:08 . 2009-05-17 10:07 -------- d-----w- c:\program files\DVDZip 4.0
2009-05-13 06:58 . 2009-05-04 04:02 21457 ----a-w- c:\windows\unins001.dat
2009-05-13 06:58 . 2009-05-04 04:02 673546 ----a-w- c:\windows\unins001.exe
2009-05-07 15:32 . 2003-01-01 07:03 345600 ----a-w- c:\windows\system32\localspl.dll
2009-05-07 11:41 . 2007-11-16 05:22 -------- d-----w- c:\program files\Eraser
2009-05-07 11:26 . 2007-09-11 19:31 -------- d-----w- c:\documents and settings\Compaq_Owner\Application Data\XnView
2009-05-07 05:42 . 2009-05-07 05:42 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-05-07 05:42 . 2009-05-07 05:42 64160 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers\32\lbd.sys
2009-05-02 14:36 . 2009-04-26 23:17 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-05-02 14:36 . 2009-04-26 23:17 325896 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-05-02 14:36 . 2009-04-26 23:17 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-05-02 14:36 . 2009-04-26 23:17 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-04-29 04:56 . 2003-01-01 07:05 827392 ----a-w- c:\windows\system32\wininet.dll
2009-04-29 04:55 . 2003-01-01 07:03 78336 ----a-w- c:\windows\system32\ieencode.dll
2009-04-27 08:54 . 2003-09-10 05:37 33184 ----a-w- c:\documents and settings\Compaq_Owner\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-17 12:26 . 2003-01-01 07:05 1847168 ----a-w- c:\windows\system32\win32k.sys
2009-04-17 03:18 . 2009-04-17 02:53 6144 ----a-w- c:\documents and settings\Kickaxe\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10001.dll
2009-04-17 03:18 . 2009-04-17 02:53 22528 ----a-w- c:\documents and settings\Kickaxe\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10000.dll
2009-04-17 02:47 . 2009-04-17 02:47 33184 ----a-w- c:\documents and settings\Kickaxe\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-16 23:00 . 2008-08-23 13:25 6144 ----a-w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10001.dll
2009-04-16 23:00 . 2008-08-23 13:25 22528 ----a-w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10000.dll
2009-04-15 14:51 . 2003-01-01 07:04 585216 ----a-w- c:\windows\system32\rpcrt4.dll
.

((((((((((((((((((((((((((((( SnapShot@2009-04-24_10.23.06 )))))))))))))))))))))))))))))))))))))))))
.
+ 2008-07-29 13:05 . 2008-07-29 13:05 62976 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90rus.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 46080 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90kor.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 46592 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90jpn.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 64512 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90ita.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 66048 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90fra.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 65024 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esp.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 65024 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90esn.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 56832 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90enu.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 66560 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90deu.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 39936 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90cht.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 38912 c:\windows\WinSxS\x86_Microsoft.VC90.MFCLOC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_b0db7d03\mfc90chs.dll
+ 2008-07-29 11:07 . 2008-07-29 11:07 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90u.dll
+ 2008-07-29 11:07 . 2008-07-29 11:07 59904 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfcm90.dll
+ 2008-07-29 11:07 . 2008-07-29 11:07 80896 c:\windows\WinSxS\x86_Microsoft.VC90.DebugMFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_c94a3a24\mfcm90ud.dll
+ 2008-07-29 11:07 . 2008-07-29 11:07 80896 c:\windows\WinSxS\x86_Microsoft.VC90.DebugMFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_c94a3a24\mfcm90d.dll
+ 2009-05-17 10:07 . 1999-09-10 17:06 45056 c:\windows\system32\WNASPI32.DLL
+ 2008-07-30 02:10 . 2008-07-30 02:10 26112 c:\windows\system32\TsWpfWrp.exe
- 2007-09-11 12:45 . 2008-07-09 07:38 26488 c:\windows\system32\spupdsvc.exe
+ 2007-09-11 12:45 . 2007-11-30 11:18 26488 c:\windows\system32\spupdsvc.exe
+ 2009-04-26 23:46 . 2008-07-06 12:06 89088 c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
- 2007-10-26 13:05 . 2007-11-30 12:39 17272 c:\windows\system32\spmsg.dll
+ 2007-10-26 13:05 . 2008-07-09 07:38 17272 c:\windows\system32\spmsg.dll
+ 2008-07-30 00:59 . 2008-07-30 00:59 43544 c:\windows\system32\PresentationHostProxy.dll
+ 2003-01-01 07:04 . 2009-04-29 04:56 44544 c:\windows\system32\pngfilt.dll
- 2003-01-01 07:04 . 2009-02-20 18:09 44544 c:\windows\system32\pngfilt.dll
+ 2004-10-21 09:42 . 2009-04-26 23:51 75668 c:\windows\system32\perfc009.dat
+ 2008-07-25 16:17 . 2008-07-25 16:17 15360 c:\windows\system32\mui\0409\mscorees.dll
- 2006-11-08 02:03 . 2009-02-20 18:09 52224 c:\windows\system32\msfeedsbs.dll
+ 2006-11-08 02:03 . 2009-04-29 04:55 52224 c:\windows\system32\msfeedsbs.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 83968 c:\windows\system32\mscories.dll
+ 2009-05-04 04:02 . 2003-09-22 22:10 61440 c:\windows\system32\marblaxp.dll
+ 2009-05-04 04:02 . 2003-09-22 22:10 31624 c:\windows\system32\mapledxp.dll
+ 2009-05-04 04:02 . 2003-09-22 22:09 49152 c:\windows\system32\mapleapi.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 27648 c:\windows\system32\jsproxy.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 27648 c:\windows\system32\jsproxy.dll
+ 2008-07-30 00:24 . 2008-07-30 00:24 97800 c:\windows\system32\infocardapi.dll
+ 2006-11-07 08:26 . 2009-04-28 09:05 13824 c:\windows\system32\ieudinit.exe
- 2006-11-07 08:26 . 2009-02-20 10:20 13824 c:\windows\system32\ieudinit.exe
- 2003-01-01 07:03 . 2009-02-20 18:09 44544 c:\windows\system32\iernonce.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 44544 c:\windows\system32\iernonce.dll
+ 2003-01-01 07:03 . 2009-04-28 09:05 70656 c:\windows\system32\ie4uinit.exe
- 2003-01-01 07:03 . 2009-02-20 10:20 70656 c:\windows\system32\ie4uinit.exe
+ 2008-07-30 00:24 . 2008-07-30 00:24 11264 c:\windows\system32\icardres.dll
- 2006-10-17 16:58 . 2009-02-20 18:09 63488 c:\windows\system32\icardie.dll
+ 2006-10-17 16:58 . 2009-04-29 04:55 63488 c:\windows\system32\icardie.dll
+ 2008-07-30 02:10 . 2008-07-30 02:10 73720 c:\windows\system32\dxva2.dll
+ 2009-05-07 05:42 . 2009-05-07 05:42 64160 c:\windows\system32\DRVSTORE\lbd_4C6E0193F967021F4DECA024CA3950BECD8BF864\Lbd.sys
+ 2009-05-04 04:02 . 2003-09-22 22:10 53248 c:\windows\system32\drivers\maplevmd000.exe
+ 2009-05-04 04:02 . 2004-04-05 15:44 24720 c:\windows\system32\drivers\mapledxp.sys
+ 2009-05-17 10:07 . 1999-09-10 17:06 25244 c:\windows\system32\drivers\ASPI32.SYS
+ 2003-01-01 07:04 . 2009-04-29 04:56 44544 c:\windows\system32\dllcache\pngfilt.dll
- 2003-01-01 07:04 . 2009-02-20 18:09 44544 c:\windows\system32\dllcache\pngfilt.dll
- 2007-06-27 14:34 . 2009-02-20 18:09 52224 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2007-06-27 14:34 . 2009-04-29 04:55 52224 c:\windows\system32\dllcache\msfeedsbs.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 27648 c:\windows\system32\dllcache\jsproxy.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 27648 c:\windows\system32\dllcache\jsproxy.dll
- 2007-06-27 08:27 . 2009-02-20 10:20 13824 c:\windows\system32\dllcache\ieudinit.exe
+ 2007-06-27 08:27 . 2009-04-28 09:05 13824 c:\windows\system32\dllcache\ieudinit.exe
- 2003-01-01 07:03 . 2009-02-20 18:09 44544 c:\windows\system32\dllcache\iernonce.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 44544 c:\windows\system32\dllcache\iernonce.dll
+ 2009-02-20 18:09 . 2009-04-29 04:55 78336 c:\windows\system32\dllcache\ieencode.dll
- 2009-02-20 18:09 . 2009-02-20 18:09 78336 c:\windows\system32\dllcache\ieencode.dll
- 2003-01-01 07:03 . 2009-02-20 10:20 70656 c:\windows\system32\dllcache\ie4uinit.exe
+ 2003-01-01 07:03 . 2009-04-28 09:05 70656 c:\windows\system32\dllcache\ie4uinit.exe
+ 2007-08-20 10:04 . 2009-04-29 04:55 63488 c:\windows\system32\dllcache\icardie.dll
- 2007-08-20 10:04 . 2009-02-20 18:09 63488 c:\windows\system32\dllcache\icardie.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 89088 c:\windows\system32\dllcache\filterpipelineprintproc.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 96760 c:\windows\system32\dfshim.dll
- 2004-10-21 10:01 . 2008-08-23 15:07 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
+ 2004-10-21 10:01 . 2009-06-28 21:06 32768 c:\windows\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat
- 2004-10-21 10:01 . 2008-08-23 15:07 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2004-10-21 10:01 . 2009-06-28 21:06 32768 c:\windows\system32\config\systemprofile\Local Settings\History\History.IE5\index.dat
+ 2004-10-21 10:01 . 2009-06-28 21:06 32768 c:\windows\system32\config\systemprofile\Cookies\index.dat
+ 2008-07-30 04:40 . 2008-07-30 04:40 70648 c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
+ 2008-07-30 04:40 . 2008-07-30 04:40 91136 c:\windows\Microsoft.NET\Framework\v3.5\MSBuild.exe
+ 2008-07-30 04:40 . 2008-07-30 04:40 41984 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.VisualC.STLCLR.dll
+ 2008-07-30 04:40 . 2008-07-30 04:40 40960 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.Data.Entity.Build.Tasks.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 89080 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.2052.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 92664 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1042.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 95224 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1041.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 89592 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1028.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 84480 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.2052.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 94720 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1042.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 97792 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1041.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 84992 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1028.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 97280 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\DeleteTemp.exe
+ 2008-07-30 04:40 . 2008-07-30 04:40 95224 c:\windows\Microsoft.NET\Framework\v3.5\EdmGen.exe
+ 2008-07-30 04:40 . 2008-07-30 04:40 78856 c:\windows\Microsoft.NET\Framework\v3.5\DataSvcUtil.exe
+ 2008-07-30 04:40 . 2008-07-30 04:40 41984 c:\windows\Microsoft.NET\Framework\v3.5\AddInUtil.exe
+ 2008-07-30 04:40 . 2008-07-30 04:40 41992 c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess32.exe
+ 2008-07-30 04:40 . 2008-07-30 04:40 41992 c:\windows\Microsoft.NET\Framework\v3.5\AddInProcess.exe
+ 2008-07-30 02:10 . 2008-07-30 02:10 46104 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
+ 2008-07-30 00:59 . 2008-07-30 00:59 32768 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationCFFRasterizer.dll
+ 2008-07-30 02:10 . 2008-07-30 02:10 71160 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PenIMC.dll
+ 2008-07-30 00:32 . 2008-07-30 00:32 17448 c:\windows\Microsoft.NET\Framework\v3.0\Windows Workflow Foundation\PerformanceCounterInstaller.exe
+ 2008-07-30 00:16 . 2008-07-30 00:16 32768 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.WasHosting.dll
+ 2008-07-30 00:16 . 2008-07-30 00:16 73728 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.Install.dll
+ 2008-07-30 00:16 . 2008-07-30 00:16 20504 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceMonikerSupport.dll
+ 2008-07-30 00:16 . 2008-07-30 00:16 11280 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelEvents.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 37896 c:\windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 81400 c:\windows\Microsoft.NET\Framework\v2.0.50727\TLBREF.DLL
+ 2008-07-25 16:17 . 2008-07-25 16:17 77824 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.RegularExpressions.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 57392 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Thunk.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 81920 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 81920 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.Design.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 81920 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 81920 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Configuration.Install.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 95232 c:\windows\Microsoft.NET\Framework\v2.0.50727\ShFusRes.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 16896 c:\windows\Microsoft.NET\Framework\v2.0.50727\sbscmp20_mscorlib.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 61952 c:\windows\Microsoft.NET\Framework\v2.0.50727\regtlibv12.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
- 2005-09-23 12:28 . 2005-09-23 12:28 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegSvcs.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
- 2005-09-23 12:28 . 2005-09-23 12:28 53248 c:\windows\Microsoft.NET\Framework\v2.0.50727\RegAsm.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 88584 c:\windows\Microsoft.NET\Framework\v2.0.50727\PerfCounter.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 24584 c:\windows\Microsoft.NET\Framework\v2.0.50727\normalization.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 31744 c:\windows\Microsoft.NET\Framework\v2.0.50727\MUI\0409\mscorsecr.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 19456 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscortim.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 18944 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsn.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 77312 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 94208 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorld.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 46592 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorie.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 83456 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbc.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
- 2005-09-23 12:28 . 2005-09-23 12:28 69632 c:\windows\Microsoft.NET\Framework\v2.0.50727\MSBuild.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 97792 c:\windows\Microsoft.NET\Framework\v2.0.50727\MmcAspExt.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 12800 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 12800 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 32768 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Vsa.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Vsa.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 77824 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Utilities.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Framework.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 40960 c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 40960 c:\windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 72192 c:\windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 72192 c:\windows\Microsoft.NET\Framework\v2.0.50727\ISymWrapper.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 65032 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtilLib.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
- 2007-04-13 08:21 . 2007-04-13 08:21 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\InstallUtil.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 77824 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEHost.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 18936 c:\windows\Microsoft.NET\Framework\v2.0.50727\fusion.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 62968 c:\windows\Microsoft.NET\Framework\v2.0.50727\dfdll.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 35320 c:\windows\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 69120 c:\windows\Microsoft.NET\Framework\v2.0.50727\CustomMarshalers.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 27136 c:\windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 13312 c:\windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 13312 c:\windows\Microsoft.NET\Framework\v2.0.50727\cscompmgd.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 80376 c:\windows\Microsoft.NET\Framework\v2.0.50727\csc.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 89608 c:\windows\Microsoft.NET\Framework\v2.0.50727\CORPerfMonExt.dll
+ 2008-11-25 09:59 . 2008-11-25 09:59 31560 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_wp.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 34312 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 33288 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regiis.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 24576 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regbrowsers.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 84480 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_rc.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 33800 c:\windows\Microsoft.NET\Framework\v2.0.50727\Aspnet_perf.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 17416 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_isapi.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 22024 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_filter.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
- 2005-09-23 12:28 . 2005-09-23 12:28 36864 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_compiler.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 58880 c:\windows\Microsoft.NET\Framework\v2.0.50727\AppLaunch.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 98808 c:\windows\Microsoft.NET\Framework\v2.0.50727\alink.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 10752 c:\windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 10752 c:\windows\Microsoft.NET\Framework\v2.0.50727\Accessibility.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 13824 c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\CvtResUI.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 28672 c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\alinkui.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 96768 c:\windows\Microsoft.NET\Framework\v1.0.3705\mscormmc.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 16896 c:\windows\Microsoft.NET\Framework\SharedReg12.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 16896 c:\windows\Microsoft.NET\Framework\sbscmp20_perfcounter.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 16896 c:\windows\Microsoft.NET\Framework\sbscmp20_mscorwks.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 16896 c:\windows\Microsoft.NET\Framework\sbscmp10.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 82944 c:\windows\Microsoft.NET\Framework\NETFXSBS10.exe
+ 2007-10-26 15:48 . 2007-10-26 15:48 93184 c:\windows\Installer\7ce3d.msi
+ 2008-07-30 02:07 . 2008-07-30 02:07 23040 c:\windows\Installer\1636c4.msp
+ 2009-04-26 23:45 . 2009-04-26 23:45 88576 c:\windows\Installer\12123e.msi
+ 2009-06-24 08:45 . 2009-02-20 18:09 44544 c:\windows\ie7updates\KB969897-IE7\pngfilt.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 52224 c:\windows\ie7updates\KB969897-IE7\msfeedsbs.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 27648 c:\windows\ie7updates\KB969897-IE7\jsproxy.dll
+ 2009-06-24 08:45 . 2009-02-20 10:20 13824 c:\windows\ie7updates\KB969897-IE7\ieudinit.exe
+ 2009-06-24 08:45 . 2009-02-20 18:09 44544 c:\windows\ie7updates\KB969897-IE7\iernonce.dll
+ 2009-06-24 08:46 . 2009-02-20 18:09 78336 c:\windows\ie7updates\KB969897-IE7\ieencode.dll
+ 2009-06-24 08:46 . 2009-02-20 10:20 70656 c:\windows\ie7updates\KB969897-IE7\ie4uinit.exe
+ 2009-06-24 08:46 . 2009-02-20 18:09 63488 c:\windows\ie7updates\KB969897-IE7\icardie.dll
+ 2003-01-01 07:56 . 2004-08-04 12:00 66048 c:\windows\I386\WINNT32.MSI
+ 2009-04-26 23:46 . 2008-07-06 12:06 89088 c:\windows\Driver Cache\i386\filterpipelineprintproc.dll
+ 2009-04-26 23:55 . 2009-04-26 23:55 60928 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationProvider\a715aa442ef87ae99b3ade185599249d\UIAutomationProvider.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 37888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Pres#\423f794d1f4ed6e120fbb02e436491cb\System.Windows.Presentation.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 36864 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\19ca1747c1ea18a3b639b302bca8df93\System.Web.DynamicData.Design.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 94208 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ComponentMod#\532438e2acfcadc469a4d468c51f8451\System.ComponentModel.DataAnnotations.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 82944 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn.Contra#\597b20e1b053d6a510cfe033c07a63e6\System.AddIn.Contract.ni.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 47104 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\2d7408a0232f2e2efd0d7adf5dfa733a\PresentationFontCache.ni.exe
+ 2009-04-26 23:53 . 2009-04-26 23:53 39424 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCFFRast#\c8fd2d9233f8ea3031fb16f697635231\PresentationCFFRasterizer.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 55296 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Vsa\790cf1edb17ee41b59be62ecbd59613b\Microsoft.Vsa.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 65024 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\e9aba2eab90d647356f65e66053da02b\Microsoft.Build.Framework.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 74752 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Fra#\28343d470d992f169ca0e7cdb3cc3117\Microsoft.Build.Framework.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 14336 c:\windows\assembly\NativeImages_v2.0.50727_32\dfsvc\f4e38208e88cb4cc314a1d6543b9fcc6\dfsvc.ni.exe
+ 2009-04-26 23:57 . 2009-04-26 23:57 25600 c:\windows\assembly\NativeImages_v2.0.50727_32\Accessibility\11eb4f6606ba01e5128805759121ea6c\Accessibility.ni.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 94208 c:\windows\assembly\GAC_MSIL\WindowsFormsIntegration\3.0.0.0__31bf3856ad364e35\WindowsFormsIntegration.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 98304 c:\windows\assembly\GAC_MSIL\UIAutomationTypes\3.0.0.0__31bf3856ad364e35\UIAutomationTypes.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 40960 c:\windows\assembly\GAC_MSIL\UIAutomationProvider\3.0.0.0__31bf3856ad364e35\UIAutomationProvider.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 12288 c:\windows\assembly\GAC_MSIL\System.Windows.Presentation\3.5.0.0__b77a5c561934e089\System.Windows.Presentation.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 61440 c:\windows\assembly\GAC_MSIL\System.Web.Routing\3.5.0.0__31bf3856ad364e35\System.Web.Routing.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 77824 c:\windows\assembly\GAC_MSIL\System.Web.RegularExpressions\2.0.0.0__b03f5f7f11d50a3a\System.Web.RegularExpressions.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 32768 c:\windows\assembly\GAC_MSIL\System.Web.DynamicData.Design\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.Design.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 77824 c:\windows\assembly\GAC_MSIL\System.Web.Abstractions\3.5.0.0__31bf3856ad364e35\System.Web.Abstractions.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 32768 c:\windows\assembly\GAC_MSIL\System.ServiceModel.WasHosting\3.0.0.0__b77a5c561934e089\System.ServiceModel.WasHosting.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 73728 c:\windows\assembly\GAC_MSIL\System.ServiceModel.Install\3.0.0.0__b77a5c561934e089\System.ServiceModel.Install.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 81920 c:\windows\assembly\GAC_MSIL\System.Drawing.Design\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.Design.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 53248 c:\windows\assembly\GAC_MSIL\System.Data.DataSetExtensions\3.5.0.0__b77a5c561934e089\System.Data.DataSetExtensions.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 81920 c:\windows\assembly\GAC_MSIL\System.Configuration.Install\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.Install.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 57344 c:\windows\assembly\GAC_MSIL\System.ComponentModel.DataAnnotations\3.5.0.0__31bf3856ad364e35\System.ComponentModel.DataAnnotations.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 45056 c:\windows\assembly\GAC_MSIL\System.AddIn.Contract\2.0.0.0__b03f5f7f11d50a3a\System.AddIn.Contract.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 46104 c:\windows\assembly\GAC_MSIL\PresentationFontCache\3.0.0.0__31bf3856ad364e35\PresentationFontCache.exe
+ 2009-04-26 23:46 . 2009-04-26 23:46 32768 c:\windows\assembly\GAC_MSIL\PresentationCFFRasterizer\3.0.0.0__31bf3856ad364e35\PresentationCFFRasterizer.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 32768 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 12800 c:\windows\assembly\GAC_MSIL\Microsoft.Vsa.Vb.CodeDOMProcessor\8.0.0.0__b03f5f7f11d50a3a\Microsoft.Vsa.Vb.CodeDOMProcessor.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 41984 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC.STLCLR\1.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.STLCLR.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 28672 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Vsa\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Vsa.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 77824 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 94208 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Utilities.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Utilities.v3.5.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 36864 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Framework\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Framework.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 77824 c:\windows\assembly\GAC_MSIL\IEHost\2.0.0.0__b03f5f7f11d50a3a\IEHost.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 13312 c:\windows\assembly\GAC_MSIL\cscompmgd\8.0.0.0__b03f5f7f11d50a3a\cscompmgd.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 10752 c:\windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 72192 c:\windows\assembly\GAC_32\ISymWrapper\2.0.0.0__b03f5f7f11d50a3a\ISymWrapper.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 69120 c:\windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 8192 c:\windows\WinSxS\MSIL_IEExecRemote_b03f5f7f11d50a3a_2.0.0.0_x-ww_6e57c34e\IEExecRemote.dll
+ 2009-05-17 10:07 . 1999-09-10 17:06 4672 c:\windows\system\WOWPOST.EXE
+ 2009-05-17 10:07 . 1999-09-10 17:06 5600 c:\windows\system\WINASPI.DLL
+ 2008-07-30 04:40 . 2008-07-30 04:40 5632 c:\windows\Microsoft.NET\Framework\v3.5\Sentinel.v3.5Client.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 7168 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 7168 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft_VsaVb.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 5632 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
- 2005-09-23 12:29 . 2005-09-23 12:29 5632 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualC.Dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 6656 c:\windows\Microsoft.NET\Framework\v2.0.50727\IIEHost.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 8192 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 8192 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExecRemote.dll
- 2007-04-13 08:21 . 2007-04-13 08:21 9728 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 9728 c:\windows\Microsoft.NET\Framework\v2.0.50727\IEExec.exe
+ 2008-07-25 16:16 . 2008-07-25 16:16 5120 c:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
- 2007-04-13 08:20 . 2007-04-13 08:20 5120 c:\windows\Microsoft.NET\Framework\v2.0.50727\dfsvc.exe
+ 2009-04-26 23:48 . 2009-04-26 23:48 5632 c:\windows\assembly\GAC_MSIL\Sentinel.v3.5Client\3.5.0.0__b03f5f7f11d50a3a\Sentinel.v3.5Client.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 7168 c:\windows\assembly\GAC_MSIL\Microsoft_VsaVb\8.0.0.0__b03f5f7f11d50a3a\Microsoft_VsaVb.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
- 2008-08-23 15:14 . 2008-08-23 15:14 5632 c:\windows\assembly\GAC_MSIL\Microsoft.VisualC\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualC.Dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 6656 c:\windows\assembly\GAC_MSIL\IIEHost\2.0.0.0__b03f5f7f11d50a3a\IIEHost.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 8192 c:\windows\assembly\GAC_MSIL\IEExecRemote\2.0.0.0__b03f5f7f11d50a3a\IEExecRemote.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 113664 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.Wrapper.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 258048 c:\windows\WinSxS\x86_System.EnterpriseServices_b03f5f7f11d50a3a_2.0.0.0_x-ww_7d5f3790\System.EnterpriseServices.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 875520 c:\windows\WinSxS\x86_Microsoft.VC90.DebugCRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_f863c71f\msvcp90d.dll
+ 2008-07-29 08:54 . 2008-07-29 08:54 312832 c:\windows\WinSxS\x86_Microsoft.VC90.DebugCRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_f863c71f\msvcm90d.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcr90.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 572928 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcp90.dll
+ 2008-07-29 08:54 . 2008-07-29 08:54 225280 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_6f74963e\msvcm90.dll
+ 2007-11-07 07:19 . 2007-11-07 07:19 655872 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcr90.dll
+ 2007-11-07 07:19 . 2007-11-07 07:19 568832 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcp90.dll
+ 2007-11-07 02:23 . 2007-11-07 02:23 224768 c:\windows\WinSxS\x86_Microsoft.VC90.CRT_1fc8b3b9a1e18e3b_9.0.21022.8_x-ww_d08d0375\msvcm90.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 161784 c:\windows\WinSxS\x86_Microsoft.VC90.ATL_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_d01483b2\atl90.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 635904 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcr80.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 558080 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcp80.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 479232 c:\windows\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.3053_x-ww_b80fa8ca\msvcm80.dll
+ 2008-07-30 02:26 . 2008-07-30 02:26 301568 c:\windows\system32\XPSViewer\XPSViewer.exe
+ 2009-04-26 23:46 . 2008-07-06 12:06 575488 c:\windows\system32\xpsshhdr.dll
- 2003-01-01 07:05 . 2009-02-20 18:09 233472 c:\windows\system32\webcheck.dll
+ 2003-01-01 07:05 . 2009-04-29 04:56 233472 c:\windows\system32\webcheck.dll
+ 2003-01-01 07:05 . 2009-04-29 04:56 105984 c:\windows\system32\url.dll
- 2003-01-01 07:05 . 2009-02-20 18:09 105984 c:\windows\system32\url.dll
+ 2008-07-30 00:59 . 2008-07-30 00:59 161296 c:\windows\system32\UIAutomationCore.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 765440 c:\windows\system32\spool\XPSEP\i386\mxdwdrv.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 765440 c:\windows\system32\spool\XPSEP\i386\i386\mxdwdrv.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 748032 c:\windows\system32\spool\XPSEP\amd64\mxdwdrv.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 748032 c:\windows\system32\spool\XPSEP\amd64\amd64\mxdwdrv.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 147456 c:\windows\system32\spool\prtprocs\x64\filterpipelineprintproc.dll
+ 2009-04-26 23:46 . 2008-07-06 10:50 597504 c:\windows\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
+ 2009-04-26 23:46 . 2008-03-13 04:52 761344 c:\windows\system32\spool\drivers\w32x86\3\unires.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 744960 c:\windows\system32\spool\drivers\w32x86\3\unidrvui.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 373248 c:\windows\system32\spool\drivers\w32x86\3\unidrv.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 198656 c:\windows\system32\spool\drivers\w32x86\3\mxdwdui.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 765440 c:\windows\system32\spool\drivers\w32x86\3\mxdwdrv.dll
+ 2006-08-24 21:15 . 2006-08-24 21:15 150808 c:\windows\system32\rgb9rast_2.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 117760 c:\windows\system32\prntvpt.dll
+ 2008-07-30 00:59 . 2008-07-30 00:59 781344 c:\windows\system32\PresentationNative_v0300.dll
+ 2008-07-30 01:35 . 2008-07-30 01:35 326160 c:\windows\system32\PresentationHost.exe
+ 2008-07-30 00:59 . 2008-07-30 00:59 105016 c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
+ 2004-10-21 09:42 . 2009-04-26 23:51 451528 c:\windows\system32\perfh009.dat
+ 2003-01-01 07:04 . 2009-04-29 04:56 102912 c:\windows\system32\occache.dll
- 2003-01-01 07:04 . 2009-02-20 18:09 102912 c:\windows\system32\occache.dll
+ 2009-04-25 04:54 . 2008-10-16 19:06 268648 c:\windows\system32\mucltui.dll
- 2003-01-01 07:04 . 2009-02-20 18:09 671232 c:\windows\system32\mstime.dll
+ 2003-01-01 07:04 . 2009-04-29 04:56 671232 c:\windows\system32\mstime.dll
+ 2003-01-01 07:04 . 2009-04-29 04:56 193024 c:\windows\system32\msrating.dll
- 2003-01-01 07:04 . 2009-02-20 18:09 193024 c:\windows\system32\msrating.dll
+ 2003-01-01 07:03 . 2009-04-29 04:56 477696 c:\windows\system32\mshtmled.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 477696 c:\windows\system32\mshtmled.dll
+ 2006-11-08 02:03 . 2009-04-29 04:55 459264 c:\windows\system32\msfeeds.dll
- 2006-11-08 02:03 . 2009-02-20 18:09 459264 c:\windows\system32\msfeeds.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 158720 c:\windows\system32\mscorier.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 282112 c:\windows\system32\mscoree.dll
- 2006-10-17 16:57 . 2009-02-20 18:09 268288 c:\windows\system32\iertutil.dll
+ 2006-10-17 16:57 . 2009-04-29 04:55 268288 c:\windows\system32\iertutil.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 385024 c:\windows\system32\iedkcs32.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 385024 c:\windows\system32\iedkcs32.dll
- 2006-10-17 16:27 . 2009-02-20 18:09 383488 c:\windows\system32\ieapfltr.dll
+ 2006-10-17 16:27 . 2009-04-29 04:55 383488 c:\windows\system32\ieapfltr.dll
+ 2003-01-01 07:03 . 2009-04-25 05:26 161792 c:\windows\system32\ieakui.dll
- 2003-01-01 07:03 . 2009-02-20 05:14 161792 c:\windows\system32\ieakui.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 230400 c:\windows\system32\ieaksie.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 230400 c:\windows\system32\ieaksie.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 153088 c:\windows\system32\ieakeng.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 153088 c:\windows\system32\ieakeng.dll
+ 2008-07-30 00:24 . 2008-07-30 00:24 622080 c:\windows\system32\icardagt.exe
+ 2004-10-21 02:49 . 2009-06-24 09:05 157160 c:\windows\system32\FNTCACHE.DAT
- 2003-01-01 07:03 . 2009-02-20 18:09 133120 c:\windows\system32\extmgr.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 133120 c:\windows\system32\extmgr.dll
+ 2008-07-30 02:10 . 2008-07-30 02:10 493048 c:\windows\system32\evr.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 214528 c:\windows\system32\dxtrans.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 214528 c:\windows\system32\dxtrans.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 347136 c:\windows\system32\dxtmsft.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 347136 c:\windows\system32\dxtmsft.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 575488 c:\windows\system32\dllcache\xpsshhdr.dll
+ 2003-01-01 07:05 . 2009-04-29 04:56 827392 c:\windows\system32\dllcache\wininet.dll
- 2003-01-01 07:05 . 2009-02-20 18:09 233472 c:\windows\system32\dllcache\webcheck.dll
+ 2003-01-01 07:05 . 2009-04-29 04:56 233472 c:\windows\system32\dllcache\webcheck.dll
- 2003-01-01 07:05 . 2009-02-20 18:09 105984 c:\windows\system32\dllcache\url.dll
+ 2003-01-01 07:05 . 2009-04-29 04:56 105984 c:\windows\system32\dllcache\url.dll
+ 2009-04-15 14:51 . 2009-04-15 14:51 585216 c:\windows\system32\dllcache\rpcrt4.dll
+ 2009-04-26 23:46 . 2008-07-06 10:50 597504 c:\windows\system32\dllcache\printfilterpipelinesvc.exe
- 2003-01-01 07:04 . 2009-02-20 18:09 102912 c:\windows\system32\dllcache\occache.dll
+ 2003-01-01 07:04 . 2009-04-29 04:56 102912 c:\windows\system32\dllcache\occache.dll
+ 2003-01-01 07:04 . 2009-04-29 04:56 671232 c:\windows\system32\dllcache\mstime.dll
- 2003-01-01 07:04 . 2009-02-20 18:09 671232 c:\windows\system32\dllcache\mstime.dll
+ 2003-01-01 07:04 . 2009-04-29 04:56 193024 c:\windows\system32\dllcache\msrating.dll
- 2003-01-01 07:04 . 2009-02-20 18:09 193024 c:\windows\system32\dllcache\msrating.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 477696 c:\windows\system32\dllcache\mshtmled.dll
+ 2003-01-01 07:03 . 2009-04-29 04:56 477696 c:\windows\system32\dllcache\mshtmled.dll
- 2007-06-27 14:34 . 2009-02-20 18:09 459264 c:\windows\system32\dllcache\msfeeds.dll
+ 2007-06-27 14:34 . 2009-04-29 04:55 459264 c:\windows\system32\dllcache\msfeeds.dll
+ 2009-05-07 15:32 . 2009-05-07 15:32 345600 c:\windows\system32\dllcache\localspl.dll
+ 2003-01-01 07:03 . 2009-04-25 05:27 636088 c:\windows\system32\dllcache\iexplore.exe
+ 2007-06-27 14:34 . 2009-04-29 04:55 268288 c:\windows\system32\dllcache\iertutil.dll
- 2007-06-27 14:34 . 2009-02-20 18:09 268288 c:\windows\system32\dllcache\iertutil.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 385024 c:\windows\system32\dllcache\iedkcs32.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 385024 c:\windows\system32\dllcache\iedkcs32.dll
+ 2007-06-27 14:34 . 2009-04-29 04:55 383488 c:\windows\system32\dllcache\ieapfltr.dll
- 2007-06-27 14:34 . 2009-02-20 18:09 383488 c:\windows\system32\dllcache\ieapfltr.dll
- 2003-01-01 07:03 . 2009-02-20 05:14 161792 c:\windows\system32\dllcache\ieakui.dll
+ 2003-01-01 07:03 . 2009-04-25 05:26 161792 c:\windows\system32\dllcache\ieakui.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 230400 c:\windows\system32\dllcache\ieaksie.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 230400 c:\windows\system32\dllcache\ieaksie.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 153088 c:\windows\system32\dllcache\ieakeng.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 153088 c:\windows\system32\dllcache\ieakeng.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 133120 c:\windows\system32\dllcache\extmgr.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 133120 c:\windows\system32\dllcache\extmgr.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 214528 c:\windows\system32\dllcache\dxtrans.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 214528 c:\windows\system32\dllcache\dxtrans.dll
+ 2003-01-01 07:03 . 2009-04-29 04:55 347136 c:\windows\system32\dllcache\dxtmsft.dll
- 2003-01-01 07:03 . 2009-02-20 18:09 347136 c:\windows\system32\dllcache\dxtmsft.dll
- 2003-01-01 07:46 . 2009-02-20 18:09 124928 c:\windows\system32\dllcache\advpack.dll
+ 2003-01-01 07:46 . 2009-04-29 04:55 124928 c:\windows\system32\dllcache\advpack.dll
- 2003-01-01 07:46 . 2009-02-20 18:09 124928 c:\windows\system32\advpack.dll
+ 2003-01-01 07:46 . 2009-04-29 04:55 124928 c:\windows\system32\advpack.dll
+ 2008-08-23 05:01 . 2004-07-17 16:41 366080 c:\windows\ServicePackFiles\i386\digreqex.msi
+ 2008-08-23 05:01 . 2004-07-17 16:41 863232 c:\windows\ServicePackFiles\i386\digopt.msi
+ 2008-07-30 04:40 . 2008-07-30 04:40 196104 c:\windows\Microsoft.NET\Framework\v3.5\WFServicesReg.exe
+ 2008-07-30 04:40 . 2008-07-30 04:40 802816 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft.Build.Tasks.v3.5.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 984056 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapUI.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 107512 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 111096 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.3082.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 110072 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.2070.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 106488 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1055.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 105976 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1053.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 107000 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1049.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 107512 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1046.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 109048 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1045.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 106488 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1044.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 108536 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1043.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 110072 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1040.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 111096 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1038.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 101368 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1037.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 112120 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1036.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 106488 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1035.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 113656 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1032.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 111608 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1031.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 108536 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1030.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 108536 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1029.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 102904 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\WapRes.1025.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 689152 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vsscenario.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 413184 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vsbasereqs.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 632320 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vs70uimgr.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 652800 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vs_setup.msi
+ 2008-07-29 23:47 . 2008-07-29 23:47 110080 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 131584 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.3082.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 131072 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.2070.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 121344 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1055.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 121344 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1053.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 123904 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1049.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 122880 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1046.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 128512 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1045.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 121856 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1044.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 129024 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1043.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 128512 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1040.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 132096 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1038.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 111104 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1037.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 133120 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1036.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 122368 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1035.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 137728 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1032.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 130048 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1031.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 126464 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1030.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 125440 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1029.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 113152 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setupres.1025.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 269304 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\setup.exe
+ 2008-07-29 23:47 . 2008-07-29 23:47 177152 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\HtmlLite.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 276984 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\dlmgr.dll
+ 2008-07-30 04:15 . 2008-07-30 04:15 225490 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\baseline.dat
+ 2008-07-30 04:40 . 2008-07-30 04:40 233976 c:\windows\Microsoft.NET\Framework\v3.5\1033\vbc7ui.dll
+ 2008-07-30 04:40 . 2008-07-30 04:40 168448 c:\windows\Microsoft.NET\Framework\v3.5\1033\cscompui.dll
+ 2008-07-30 01:35 . 2008-07-30 01:35 864256 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationUI.dll
+ 2008-07-30 00:59 . 2008-07-30 00:59 132120 c:\windows\Microsoft.NET\Framework\v3.0\WPF\PresentationHostDLL.dll
+ 2008-07-30 02:10 . 2008-07-30 02:10 806928 c:\windows\Microsoft.NET\Framework\v3.0\WPF\NaturalLanguage6.dll
+ 2008-07-30 00:16 . 2008-07-30 00:16 152576 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\WsatConfig.exe
+ 2008-07-30 00:16 . 2008-07-30 00:16 966656 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
+ 2008-07-30 00:16 . 2008-07-30 00:16 132096 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
+ 2008-07-30 00:16 . 2008-07-30 00:16 110592 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMdiagnostics.dll
+ 2008-07-30 00:16 . 2008-07-30 00:16 156688 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ServiceModelReg.exe
+ 2008-07-30 00:16 . 2008-07-30 00:16 163840 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.Dtc.dll
+ 2008-07-30 00:16 . 2008-07-30 00:16 397312 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\Microsoft.Transactions.Bridge.dll
+ 2008-07-30 00:24 . 2008-07-30 00:24 881664 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
+ 2008-07-30 00:16 . 2008-07-30 00:16 168968 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\ComSvcConfig.exe
+ 2008-11-25 09:59 . 2008-11-25 09:59 436040 c:\windows\Microsoft.NET\Framework\v2.0.50727\webengine.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 839680 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Services.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 835584 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 835584 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.Mobile.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 261632 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Transactions.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 114688 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 114688 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.ServiceProcess.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 258048 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 258048 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Security.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 131072 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 131072 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 303104 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Remoting.dll
- 2005-09-23 12:28 . 2005-09-23 12:28 258048 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 258048 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Messaging.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 372736 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Management.dll
- 2007-04-13 08:21 . 2007-04-13 08:21 372736 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Management.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 113664 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.Wrapper.dll
- 2007-04-13 08:21 . 2007-04-13 08:21 258048 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 258048 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.EnterpriseServices.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 626688 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Drawing.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 188416 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll
- 2007-04-13 08:21 . 2007-04-13 08:21 188416 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.Protocols.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 401408 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.DirectoryServices.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 970752 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Deployment.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 745472 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.SqlXml.dll
+ 2008-11-25 09:59 . 2008-11-25 09:59 486400 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.OracleClient.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 425984 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.configuration.dll
- 2007-04-13 08:21 . 2007-04-13 08:21 110592 c:\windows\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 110592 c:\windows\Microsoft.NET\Framework\v2.0.50727\sysglobl.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 392184 c:\windows\Microsoft.NET\Framework\v2.0.50727\SOS.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 118784 c:\windows\Microsoft.NET\Framework\v2.0.50727\shfusion.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 143360 c:\windows\Microsoft.NET\Framework\v2.0.50727\peverify.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 100856 c:\windows\Microsoft.NET\Framework\v2.0.50727\ngen.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 230912 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorsvc.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 345600 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 114176 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorpe.dll
+ 2008-11-25 09:59 . 2008-11-25 09:59 364872 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 308224 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordbi.dll
+ 2008-11-25 09:59 . 2008-11-25 09:59 990032 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 659456 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 372736 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll
- 2005-09-23 12:29 . 2005-09-23 12:29 372736 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 110592 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll
- 2005-09-23 12:29 . 2005-09-23 12:29 110592 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.VisualBasic.Compatibility.Data.dll
- 2007-04-13 08:21 . 2007-04-13 08:21 749568 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 749568 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.JScript.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 655360 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Tasks.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 348160 c:\windows\Microsoft.NET\Framework\v2.0.50727\Microsoft.Build.Engine.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 230904 c:\windows\Microsoft.NET\Framework\v2.0.50727\ilasm.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 798224 c:\windows\Microsoft.NET\Framework\v2.0.50727\EventLogMessages.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 575496 c:\windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2005-09-23 12:28 . 2005-09-23 12:28 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\CasPol.exe
- 2007-04-13 08:20 . 2007-04-13 08:20 507904 c:\windows\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 507904 c:\windows\Microsoft.NET\Framework\v2.0.50727\AspNetMMCExt.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
- 2005-09-23 12:28 . 2005-09-23 12:28 106496 c:\windows\Microsoft.NET\Framework\v2.0.50727\aspnet_regsql.exe
+ 2008-07-25 16:17 . 2008-07-25 16:17 147968 c:\windows\Microsoft.NET\Framework\v2.0.50727\AdoNetDiag.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 218112 c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\Vsavb7rtUI.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 193016 c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\vbc7ui.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 145408 c:\windows\Microsoft.NET\Framework\v2.0.50727\1033\cscompui.dll
- 2004-10-21 10:04 . 2001-05-24 21:00 306688 c:\windows\IsUninst.exe
+ 2004-10-21 10:04 . 1998-10-29 21:45 306688 c:\windows\IsUninst.exe
+ 2007-10-12 13:21 . 2007-10-12 13:21 305152 c:\windows\Installer\d362d6a.msi
+ 2007-10-03 12:17 . 2007-10-03 12:17 282624 c:\windows\Installer\a7aa2.msi
+ 2007-09-19 21:51 . 2007-09-19 21:51 958464 c:\windows\Installer\8b6139.msi
+ 2007-09-11 15:54 . 2007-09-11 15:54 431104 c:\windows\Installer\73e36.msi
+ 2008-06-28 08:50 . 2008-06-28 08:50 289792 c:\windows\Installer\5feab8.msi
+ 2008-08-03 22:51 . 2008-08-03 22:51 289792 c:\windows\Installer\5b9e9.msi
+ 2007-10-26 12:11 . 2007-10-26 12:11 331264 c:\windows\Installer\48939fa.msi
+ 2009-04-25 04:56 . 2009-04-25 04:56 470528 c:\windows\Installer\322b1.msi
+ 2008-11-12 07:08 . 2008-11-12 07:08 432640 c:\windows\Installer\2aa1c91.msi
+ 2009-05-07 05:40 . 2009-05-07 05:40 236032 c:\windows\Installer\27cf2b.msi
+ 2004-10-21 10:04 . 2004-10-21 10:04 264704 c:\windows\Installer\1e435.msi
+ 2008-12-13 14:58 . 2008-12-13 14:58 754688 c:\windows\Installer\17627f.msp
+ 2009-04-26 23:48 . 2009-04-26 23:48 648192 c:\windows\Installer\176259.msi
+ 2004-10-21 10:27 . 2004-10-21 10:27 621056 c:\windows\Installer\168602.msi
+ 2008-07-30 02:23 . 2008-07-30 02:23 250880 c:\windows\Installer\1636cd.msp
+ 2008-07-30 02:28 . 2008-07-30 02:28 278016 c:\windows\Installer\1636cb.msp
+ 2008-07-30 00:40 . 2008-07-30 00:40 291840 c:\windows\Installer\1636c9.msp
+ 2009-04-26 23:47 . 2009-04-26 23:47 137728 c:\windows\Installer\1636c3.msi
+ 2008-07-29 22:35 . 2008-07-29 22:35 553472 c:\windows\Installer\121243.msp
+ 2008-07-29 22:33 . 2008-07-29 22:33 506368 c:\windows\Installer\121241.msp
+ 2008-07-29 22:37 . 2008-07-29 22:37 911360 c:\windows\Installer\121240.msp
+ 2009-06-24 08:45 . 2009-03-03 00:18 826368 c:\windows\ie7updates\KB969897-IE7\wininet.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 233472 c:\windows\ie7updates\KB969897-IE7\webcheck.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 105984 c:\windows\ie7updates\KB969897-IE7\url.dll
+ 2009-06-24 08:46 . 2008-07-09 07:38 382840 c:\windows\ie7updates\KB969897-IE7\spuninst\updspapi.dll
+ 2009-06-24 08:46 . 2008-07-09 07:38 231288 c:\windows\ie7updates\KB969897-IE7\spuninst\spuninst.exe
+ 2009-06-24 08:45 . 2009-02-20 18:09 102912 c:\windows\ie7updates\KB969897-IE7\occache.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 671232 c:\windows\ie7updates\KB969897-IE7\mstime.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 193024 c:\windows\ie7updates\KB969897-IE7\msrating.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 477696 c:\windows\ie7updates\KB969897-IE7\mshtmled.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 459264 c:\windows\ie7updates\KB969897-IE7\msfeeds.dll
+ 2009-06-24 08:46 . 2009-02-28 04:54 636072 c:\windows\ie7updates\KB969897-IE7\iexplore.exe
+ 2009-06-24 08:45 . 2009-02-20 18:09 268288 c:\windows\ie7updates\KB969897-IE7\iertutil.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 385024 c:\windows\ie7updates\KB969897-IE7\iedkcs32.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 383488 c:\windows\ie7updates\KB969897-IE7\ieapfltr.dll
+ 2009-06-24 08:46 . 2009-02-20 05:14 161792 c:\windows\ie7updates\KB969897-IE7\ieakui.dll
+ 2009-06-24 08:46 . 2009-02-20 18:09 230400 c:\windows\ie7updates\KB969897-IE7\ieaksie.dll
+ 2009-06-24 08:46 . 2009-02-20 18:09 153088 c:\windows\ie7updates\KB969897-IE7\ieakeng.dll
+ 2009-06-24 08:46 . 2009-02-20 18:09 133120 c:\windows\ie7updates\KB969897-IE7\extmgr.dll
+ 2009-06-24 08:46 . 2009-02-20 18:09 214528 c:\windows\ie7updates\KB969897-IE7\dxtrans.dll
+ 2009-06-24 08:46 . 2009-02-20 18:09 347136 c:\windows\ie7updates\KB969897-IE7\dxtmsft.dll
+ 2009-06-24 08:46 . 2009-02-20 18:09 124928 c:\windows\ie7updates\KB969897-IE7\advpack.dll
+ 2009-04-26 23:46 . 2008-03-13 04:52 761344 c:\windows\Driver Cache\i386\unires.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 744960 c:\windows\Driver Cache\i386\unidrvui.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 373248 c:\windows\Driver Cache\i386\unidrv.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 198656 c:\windows\Driver Cache\i386\mxdwdui.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 765440 c:\windows\Driver Cache\i386\mxdwdrv.dll
+ 2008-12-08 21:11 . 2008-12-08 21:11 267568 c:\windows\Downloaded Program Files\sysreqlab_srl.dll
+ 2007-10-12 13:20 . 2007-10-12 13:20 320064 c:\windows\Downloaded Installations\Image Resizer Powertoy for Windows XP.msi
+ 2009-04-26 23:57 . 2009-04-26 23:57 321536 c:\windows\assembly\NativeImages_v2.0.50727_32\WsatConfig\2ef5bc3a2edd7570bb23886a4f32294a\WsatConfig.ni.exe
+ 2009-04-26 23:55 . 2009-04-26 23:55 240128 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsFormsIntegra#\6a818099f0386e2356ae94f886a2196f\WindowsFormsIntegration.ni.dll
+ 2009-04-26 23:55 . 2009-04-26 23:55 187904 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationTypes\a6d9503962d47c722231c1478f180695\UIAutomationTypes.ni.dll
+ 2009-04-26 23:55 . 2009-04-26 23:55 447488 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClient\5c028c3d8db6c0f0277673ea4a2d89fb\UIAutomationClient.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 400896 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml.Linq\c338a470b14851ce5987bb0f0869c310\System.Xml.Linq.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 129536 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Routing\bb77ea11f46ab438b2b7ed7c180011a1\System.Web.Routing.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 202240 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.RegularE#\6ee255220d90dcbe80c990e443051cc5\System.Web.RegularExpressions.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 859648 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\58f62044fa702ea6f936071aa5520baa\System.Web.Extensions.Design.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 328704 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity\79c29ac85dd57dd485ab60118ac292ff\System.Web.Entity.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 301056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Entity.D#\d3d65e34fa60f0b6c72ca0d12ec89933\System.Web.Entity.Design.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 547328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.DynamicD#\b7891f5659db299dbd1b3c72db7edb9f\System.Web.DynamicData.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Abstract#\00ec08741a765c707bd9169346064a81\System.Web.Abstractions.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 627200 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Transactions\5a555c9ae6984c40157cf940bb519f7c\System.Transactions.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\ea3366939280c1715f1c620e33ee3c8a\System.ServiceProcess.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 676352 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Security\1c8df2da33222c048d683017f2095f04\System.Security.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 311296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\bfd6e16d8c3589cd2bd3f8d46f0a5402\System.Runtime.Serialization.Formatters.Soap.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 621056 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Net\519d9c618341b136f9b963ffb7495308\System.Net.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 998400 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management\8642fdfbf02a6cb6f01169fe6fdb5d11\System.Management.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 330752 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Management.I#\1d3fbbd23ce1e8637ef4f40a8d23cd32\System.Management.Instrumentation.ni.dll
+ 2009-04-26 23:56 . 2009-04-26 23:56 381440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IO.Log\7c367a96b10d626ec8cbf8149272d845\System.IO.Log.ni.dll
+ 2009-04-26 23:56 . 2009-04-26 23:56 212992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityMode#\68e71147704ef0d34d9a4bece7767fc5\System.IdentityModel.Selectors.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 280064 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\4267bd908175603006c6c90bb5d900c7\System.EnterpriseServices.Wrapper.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 627712 c:\windows\assembly\NativeImages_v2.0.50727_32\System.EnterpriseSe#\4267bd908175603006c6c90bb5d900c7\System.EnterpriseServices.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 208384 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing.Desi#\18bbe2b6717e7f1d1dd672526e9889ee\System.Drawing.Design.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 455680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\c434a07332ce490711c27fd0edb7562f\System.DirectoryServices.Protocols.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 881152 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\8b3bb7a2c2f3ffe94c866283f1cd5957\System.DirectoryServices.AccountManagement.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 939008 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\a4b887f476fa4b8746a93a9fc2208560\System.Data.Services.Client.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 354816 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Service#\1cf3acad6553d6c59df576794f4e8bd6\System.Data.Services.Design.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 756736 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity.#\392de34573f9f8ec885714f2f3e7f07f\System.Data.Entity.Design.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 135680 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.DataSet#\1db495ff00bbd14df4af6680c4de0653\System.Data.DataSetExtensions.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 971264 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\b82c00e2d24305ad6cb08556e3779b75\System.Configuration.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 141312 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Configuratio#\de514e484e49b04b016949d57ffac03e\System.Configuration.Install.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 633856 c:\windows\assembly\NativeImages_v2.0.50727_32\System.AddIn\ce984d754e3c0b6be4504b785cc43574\System.AddIn.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 366080 c:\windows\assembly\NativeImages_v2.0.50727_32\SMSvcHost\045dd501b7257b1cc26083538ae69045\SMSvcHost.ni.exe
+ 2009-04-26 23:57 . 2009-04-26 23:57 256000 c:\windows\assembly\NativeImages_v2.0.50727_32\SMDiagnostics\9790551187e294b4ed3aaa1c221891c7\SMDiagnostics.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 320512 c:\windows\assembly\NativeImages_v2.0.50727_32\ServiceModelReg\10a0c9707876fc1f65e64b811a28b020\ServiceModelReg.ni.exe
+ 2009-04-26 23:54 . 2009-04-26 23:54 224768 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\f475294d8c7dc2dd4febeef27bc0417e\PresentationFramework.Classic.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 539648 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\8003abaf6bcf70f7eb620d06837e897b\PresentationFramework.Luna.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 368128 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\59a67874d8d8475faa5be1d993083d12\PresentationFramework.Aero.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 258048 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\2c980c9a5051d723c6ec2a78a3d0e2b3\PresentationFramework.Royale.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 133632 c:\windows\assembly\NativeImages_v2.0.50727_32\MSBuild\6d38e317128608bc4516ea46ab94590e\MSBuild.ni.exe
+ 2009-04-26 23:57 . 2009-04-26 23:57 386560 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\1820d6a012fc0e16c3e1d29d973cd2d0\Microsoft.Transactions.Bridge.Dtc.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 144384 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\55b9eff9e23359faed4351386c062238\Microsoft.Build.Utilities.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 175104 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Uti#\4217124db1ea5de5f1a1f3eea75e8d32\Microsoft.Build.Utilities.v3.5.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 839680 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\96825c34d7e1f7df1923ff2123bed8da\Microsoft.Build.Engine.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 222720 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Con#\9b321ebf67587237f576df6104a32588\Microsoft.Build.Conversion.v3.5.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 220672 c:\windows\assembly\NativeImages_v2.0.50727_32\CustomMarshalers\9bea05938bee3555c5aa8763d89a68f9\CustomMarshalers.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 410112 c:\windows\assembly\NativeImages_v2.0.50727_32\ComSvcConfig\12629e2f3e315459bee67cbbaac85cb2\ComSvcConfig.ni.exe
+ 2009-04-26 23:57 . 2009-04-26 23:57 842240 c:\windows\assembly\NativeImages_v2.0.50727_32\AspNetMMCExt\b5b2feadc3943e3976daebc0bcd2b5e2\AspNetMMCExt.ni.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 385024 c:\windows\assembly\GAC_MSIL\UIAutomationClientsideProviders\3.0.0.0__31bf3856ad364e35\UIAutomationClientsideProviders.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 167936 c:\windows\assembly\GAC_MSIL\UIAutomationClient\3.0.0.0__31bf3856ad364e35\UIAutomationClient.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 139264 c:\windows\assembly\GAC_MSIL\System.Xml.Linq\3.5.0.0__b77a5c561934e089\System.Xml.Linq.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 507904 c:\windows\assembly\GAC_MSIL\System.WorkflowServices\3.5.0.0__31bf3856ad364e35\System.WorkflowServices.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 540672 c:\windows\assembly\GAC_MSIL\System.Workflow.Runtime\3.0.0.0__31bf3856ad364e35\System.Workflow.Runtime.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 839680 c:\windows\assembly\GAC_MSIL\System.Web.Services\2.0.0.0__b03f5f7f11d50a3a\System.Web.Services.dll
- 2008-08-23 15:14 . 2008-08-23 15:14 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 835584 c:\windows\assembly\GAC_MSIL\System.Web.Mobile\2.0.0.0__b03f5f7f11d50a3a\System.Web.Mobile.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 335872 c:\windows\assembly\GAC_MSIL\System.Web.Extensions.Design\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.Design.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 139264 c:\windows\assembly\GAC_MSIL\System.Web.Entity\3.5.0.0__b77a5c561934e089\System.Web.Entity.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 131072 c:\windows\assembly\GAC_MSIL\System.Web.Entity.Design\3.5.0.0__b77a5c561934e089\System.Web.Entity.Design.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 229376 c:\windows\assembly\GAC_MSIL\System.Web.DynamicData\3.5.0.0__31bf3856ad364e35\System.Web.DynamicData.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 688128 c:\windows\assembly\GAC_MSIL\System.Speech\3.0.0.0__31bf3856ad364e35\System.Speech.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 114688 c:\windows\assembly\GAC_MSIL\System.ServiceProcess\2.0.0.0__b03f5f7f11d50a3a\System.ServiceProcess.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 569344 c:\windows\assembly\GAC_MSIL\System.ServiceModel.Web\3.5.0.0__31bf3856ad364e35\System.ServiceModel.Web.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 258048 c:\windows\assembly\GAC_MSIL\System.Security\2.0.0.0__b03f5f7f11d50a3a\System.Security.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 966656 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
- 2008-08-23 15:14 . 2008-08-23 15:14 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 131072 c:\windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 303104 c:\windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 233472 c:\windows\assembly\GAC_MSIL\System.Net\3.5.0.0__b03f5f7f11d50a3a\System.Net.dll
- 2008-08-23 15:14 . 2008-08-23 15:14 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 258048 c:\windows\assembly\GAC_MSIL\System.Messaging\2.0.0.0__b03f5f7f11d50a3a\System.Messaging.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 372736 c:\windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 143360 c:\windows\assembly\GAC_MSIL\System.Management.Instrumentation\3.5.0.0__b77a5c561934e089\System.Management.Instrumentation.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 131072 c:\windows\assembly\GAC_MSIL\System.IO.Log\3.0.0.0__b03f5f7f11d50a3a\System.IO.Log.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 430080 c:\windows\assembly\GAC_MSIL\System.IdentityModel\3.0.0.0__b77a5c561934e089\System.IdentityModel.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 126976 c:\windows\assembly\GAC_MSIL\System.IdentityModel.Selectors\3.0.0.0__b77a5c561934e089\System.IdentityModel.Selectors.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 626688 c:\windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 401408 c:\windows\assembly\GAC_MSIL\System.DirectoryServices\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 188416 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.Protocols\2.0.0.0__b03f5f7f11d50a3a\System.DirectoryServices.Protocols.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 286720 c:\windows\assembly\GAC_MSIL\System.DirectoryServices.AccountManagement\3.5.0.0__b77a5c561934e089\System.DirectoryServices.AccountManagement.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 970752 c:\windows\assembly\GAC_MSIL\System.Deployment\2.0.0.0__b03f5f7f11d50a3a\System.Deployment.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 745472 c:\windows\assembly\GAC_MSIL\System.Data.SqlXml\2.0.0.0__b77a5c561934e089\System.Data.SqlXml.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 442368 c:\windows\assembly\GAC_MSIL\System.Data.Services\3.5.0.0__b77a5c561934e089\System.Data.Services.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 114688 c:\windows\assembly\GAC_MSIL\System.Data.Services.Design\3.5.0.0__b77a5c561934e089\System.Data.Services.Design.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 294912 c:\windows\assembly\GAC_MSIL\System.Data.Services.Client\3.5.0.0__b77a5c561934e089\System.Data.Services.Client.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 684032 c:\windows\assembly\GAC_MSIL\System.Data.Linq\3.5.0.0__b77a5c561934e089\System.Data.Linq.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 229376 c:\windows\assembly\GAC_MSIL\System.Data.Entity.Design\3.5.0.0__b77a5c561934e089\System.Data.Entity.Design.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 667648 c:\windows\assembly\GAC_MSIL\System.Core\3.5.0.0__b77a5c561934e089\System.Core.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 425984 c:\windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.configuration.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 163840 c:\windows\assembly\GAC_MSIL\System.AddIn\3.5.0.0__b77a5c561934e089\System.AddIn.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
- 2008-08-23 15:14 . 2008-08-23 15:14 110592 c:\windows\assembly\GAC_MSIL\sysglobl\2.0.0.0__b03f5f7f11d50a3a\sysglobl.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 110592 c:\windows\assembly\GAC_MSIL\SMDiagnostics\3.0.0.0__b77a5c561934e089\SMdiagnostics.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 528384 c:\windows\assembly\GAC_MSIL\ReachFramework\3.0.0.0__31bf3856ad364e35\ReachFramework.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 864256 c:\windows\assembly\GAC_MSIL\PresentationUI\3.0.0.0__31bf3856ad364e35\PresentationUI.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 163840 c:\windows\assembly\GAC_MSIL\PresentationFramework.Royale\3.0.0.0__31bf3856ad364e35\PresentationFramework.Royale.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 397312 c:\windows\assembly\GAC_MSIL\PresentationFramework.Luna\3.0.0.0__31bf3856ad364e35\PresentationFramework.Luna.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 139264 c:\windows\assembly\GAC_MSIL\PresentationFramework.Classic\3.0.0.0__31bf3856ad364e35\PresentationFramework.Classic.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 196608 c:\windows\assembly\GAC_MSIL\PresentationFramework.Aero\3.0.0.0__31bf3856ad364e35\PresentationFramework.Aero.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 598016 c:\windows\assembly\GAC_MSIL\PresentationBuildTasks\3.0.0.0__31bf3856ad364e35\PresentationBuildTasks.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 659456 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
- 2008-08-23 15:14 . 2008-08-23 15:14 372736 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
- 2008-08-23 15:14 . 2008-08-23 15:14 110592 c:\windows\assembly\GAC_MSIL\Microsoft.VisualBasic.Compatibility.Data\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.Compatibility.Data.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 397312 c:\windows\assembly\GAC_MSIL\Microsoft.Transactions.Bridge\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 749568 c:\windows\assembly\GAC_MSIL\Microsoft.JScript\8.0.0.0__b03f5f7f11d50a3a\Microsoft.JScript.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 655360 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 802816 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Tasks.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Tasks.v3.5.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 733184 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 348160 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Engine\2.0.0.0__b03f5f7f11d50a3a\Microsoft.Build.Engine.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 106496 c:\windows\assembly\GAC_MSIL\Microsoft.Build.Conversion.v3.5\3.5.0.0__b03f5f7f11d50a3a\Microsoft.Build.Conversion.v3.5.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 507904 c:\windows\assembly\GAC_MSIL\AspNetMMCExt\2.0.0.0__b03f5f7f11d50a3a\AspNetMMCExt.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 261632 c:\windows\assembly\GAC_32\System.Transactions\2.0.0.0__b77a5c561934e089\System.Transactions.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 368640 c:\windows\assembly\GAC_32\System.Printing\3.0.0.0__31bf3856ad364e35\System.Printing.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 113664 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.Wrapper.dll
- 2008-08-23 15:13 . 2008-08-23 15:13 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 258048 c:\windows\assembly\GAC_32\System.EnterpriseServices\2.0.0.0__b03f5f7f11d50a3a\System.EnterpriseServices.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 486400 c:\windows\assembly\GAC_32\System.Data.OracleClient\2.0.0.0__b77a5c561934e089\System.Data.OracleClient.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 163840 c:\windows\assembly\GAC_32\Microsoft.Transactions.Bridge.Dtc\3.0.0.0__b03f5f7f11d50a3a\Microsoft.Transactions.Bridge.Dtc.dll
+ 2009-04-30 13:01 . 2007-11-30 11:18 382840 c:\windows\$NtUninstallKB961118$\spuninst\updspapi.dll
+ 2009-04-30 13:01 . 2007-11-30 11:18 231288 c:\windows\$NtUninstallKB961118$\spuninst\spuninst.exe
+ 2008-07-29 13:05 . 2008-07-29 13:05 3783672 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90u.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 3768312 c:\windows\WinSxS\x86_Microsoft.VC90.MFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_405b0943\mfc90.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 5982720 c:\windows\WinSxS\x86_Microsoft.VC90.DebugMFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_c94a3a24\mfc90ud.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 5937144 c:\windows\WinSxS\x86_Microsoft.VC90.DebugMFC_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_c94a3a24\mfc90d.dll
+ 2008-07-29 13:05 . 2008-07-29 13:05 1180672 c:\windows\WinSxS\x86_Microsoft.VC90.DebugCRT_1fc8b3b9a1e18e3b_9.0.30729.1_x-ww_f863c71f\msvcr90d.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 1676288 c:\windows\system32\xpssvcs.dll
+ 2003-01-01 07:05 . 2004-08-04 12:00 1326080 c:\windows\system32\webfldrs.msi
+ 2003-01-01 07:05 . 2009-04-29 04:56 1159680 c:\windows\system32\urlmon.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 1676288 c:\windows\system32\spool\XPSEP\i386\xpssvcs.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 1676288 c:\windows\system32\spool\XPSEP\i386\i386\xpssvcs.dll
+ 2009-04-26 23:46 . 2008-07-06 22:36 2936832 c:\windows\system32\spool\XPSEP\amd64\xpssvcs.dll
+ 2009-04-26 23:46 . 2008-07-06 22:36 2936832 c:\windows\system32\spool\XPSEP\amd64\amd64\xpssvcs.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 1676288 c:\windows\system32\spool\drivers\w32x86\3\XpsSvcs.dll
+ 2003-01-01 07:03 . 2009-04-29 04:56 3596288 c:\windows\system32\mshtml.dll
+ 2006-11-08 02:03 . 2009-04-29 04:55 6066176 c:\windows\system32\ieframe.dll
- 2006-11-08 02:03 . 2009-02-20 18:09 6066176 c:\windows\system32\ieframe.dll
+ 2009-04-26 23:46 . 2008-07-06 12:06 1676288 c:\windows\system32\dllcache\xpssvcs.dll
+ 2008-10-15 03:50 . 2009-04-17 12:26 1847168 c:\windows\system32\dllcache\win32k.sys
+ 2003-01-01 07:05 . 2009-04-29 04:56 1159680 c:\windows\system32\dllcache\urlmon.dll
+ 2003-01-01 07:03 . 2009-04-29 04:56 3596288 c:\windows\system32\dllcache\mshtml.dll
- 2007-06-27 14:34 . 2009-02-20 18:09 6066176 c:\windows\system32\dllcache\ieframe.dll
+ 2007-06-27 14:34 . 2009-04-29 04:55 6066176 c:\windows\system32\dllcache\ieframe.dll
+ 2003-01-01 08:13 . 2004-10-21 10:26 9207808 c:\windows\system32\config\systemprofile\Local Settings\Application Data\{7148F0A6-6813-11D6-A77B-00B0D0142030}\Java 2 Runtime Environment, SE v1.4.2_03.msi
+ 2008-08-23 05:02 . 2004-08-04 12:00 1326080 c:\windows\ServicePackFiles\i386\webfldrs.msi
+ 2008-08-23 05:01 . 2004-07-17 16:41 5080576 c:\windows\ServicePackFiles\i386\msnmsgs.msi
+ 2008-07-30 04:40 . 2008-07-30 04:40 1720824 c:\windows\Microsoft.NET\Framework\v3.5\vbc.exe
+ 2008-07-29 23:47 . 2008-07-29 23:47 1054208 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\vs_setup.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 1364992 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\SITSetup.dll
+ 2008-07-29 23:47 . 2008-07-29 23:47 1064448 c:\windows\Microsoft.NET\Framework\v3.5\Microsoft .NET Framework 3.5 SP1\gencomp.dll
+ 2008-07-30 04:40 . 2008-07-30 04:40 1548280 c:\windows\Microsoft.NET\Framework\v3.5\csc.exe
+ 2008-12-06 00:35 . 2008-12-06 00:35 1736528 c:\windows\Microsoft.NET\Framework\v3.0\WPF\wpfgfx_v0300.dll
+ 2008-07-30 02:10 . 2008-07-30 02:10 2637840 c:\windows\Microsoft.NET\Framework\v3.0\WPF\NlsLexicons0009.dll
+ 2008-07-30 02:10 . 2008-07-30 02:10 4883464 c:\windows\Microsoft.NET\Framework\v3.0\WPF\NlsData0009.dll
+ 2008-12-06 01:12 . 2008-12-06 01:12 5931008 c:\windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.ServiceModel.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 1344000 c:\windows\Microsoft.NET\Framework\v2.0.50727\VsaVb7rt.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 1172472 c:\windows\Microsoft.NET\Framework\v2.0.50727\vbc.exe
+ 2008-11-25 09:59 . 2008-11-25 09:59 2048000 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.XML.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 5025792 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Windows.Forms.dll
+ 2008-11-25 09:59 . 2008-11-25 09:59 5242880 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Web.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 3149824 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 5062656 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Design.dll
+ 2008-07-25 16:17 . 2008-07-25 16:17 2933248 c:\windows\Microsoft.NET\Framework\v2.0.50727\System.Data.dll
+ 2008-11-25 09:59 . 2008-11-25 09:59 5813576 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
+ 2008-11-25 09:59 . 2008-11-25 09:59 4546560 c:\windows\Microsoft.NET\Framework\v2.0.50727\mscorlib.dll
+ 2008-07-25 16:16 . 2008-07-25 16:16 1163768 c:\windows\Microsoft.NET\Framework\v2.0.50727\cscomp.dll
+ 2004-10-21 11:30 . 2004-10-21 11:30 4806656 c:\windows\Installer\b9fa2.msi
+ 2007-10-12 14:29 . 2007-10-12 14:29 2025472 c:\windows\Installer\65e23.msi
+ 2007-10-26 12:10 . 2007-10-26 12:10 8364544 c:\windows\Installer\48939f0.msi
+ 2008-12-19 18:12 . 2008-12-19 18:12 1144832 c:\windows\Installer\3e6b0.msi
+ 2004-10-21 11:58 . 2004-10-21 11:58 1346048 c:\windows\Installer\28fb36.msi
+ 2004-10-21 11:56 . 2004-10-21 11:56 5116928 c:\windows\Installer\28fb2e.msi
+ 2009-05-07 05:40 . 2009-05-07 05:40 1802240 c:\windows\Installer\27cf31.msi
+ 2007-09-14 13:04 . 2007-09-14 13:04 1180160 c:\windows\Installer\26609e.msi
+ 2004-10-21 15:16 . 2004-10-21 15:16 1288704 c:\windows\Installer\25593.msi
+ 2008-08-23 12:58 . 2008-08-23 12:58 1038848 c:\windows\Installer\1e4065.msi
+ 2007-10-22 05:38 . 2007-10-22 05:38 3200000 c:\windows\Installer\18c19f5.msi
+ 2008-12-13 14:57 . 2008-12-13 14:57 8397824 c:\windows\Installer\176268.msp
+ 2008-07-12 11:19 . 2008-07-12 11:19 1087488 c:\windows\Installer\16a0fbd.msi
+ 2008-07-12 11:19 . 2008-07-12 11:19 6050304 c:\windows\Installer\16a0fb8.msi
+ 2008-07-12 11:11 . 2008-07-12 11:11 1646592 c:\windows\Installer\16a0f99.msi
+ 2008-07-12 11:10 . 2008-07-12 11:10 5941248 c:\windows\Installer\16a0f95.msi
+ 2004-10-21 10:28 . 2004-10-21 10:28 1620992 c:\windows\Installer\168607.msi
+ 2008-07-30 00:26 . 2008-07-30 00:26 1043456 c:\windows\Installer\1636cc.msp
+ 2008-07-30 01:37 . 2008-07-30 01:37 2679808 c:\windows\Installer\1636ca.msp
+ 2008-07-30 02:15 . 2008-07-30 02:15 3697664 c:\windows\Installer\1636c8.msp
+ 2008-07-30 00:34 . 2008-07-30 00:34 1448448 c:\windows\Installer\1636c7.msp
+ 2008-07-30 01:22 . 2008-07-30 01:22 4137984 c:\windows\Installer\1636c6.msp
+ 2008-07-30 00:18 . 2008-07-30 00:18 3376640 c:\windows\Installer\1636c5.msp
+ 2008-07-29 22:45 . 2008-07-29 22:45 2543616 c:\windows\Installer\121247.msp
+ 2008-07-29 22:29 . 2008-07-29 22:29 2926080 c:\windows\Installer\121246.msp
+ 2008-07-29 22:41 . 2008-07-29 22:41 6487040 c:\windows\Installer\121245.msp
+ 2008-07-29 22:39 . 2008-07-29 22:39 3403264 c:\windows\Installer\121244.msp
+ 2008-07-29 22:43 . 2008-07-29 22:43 1013248 c:\windows\Installer\121242.msp
+ 2008-07-29 22:31 . 2008-07-29 22:31 6083072 c:\windows\Installer\12123f.msp
+ 2009-06-24 08:45 . 2009-02-20 18:09 1160192 c:\windows\ie7updates\KB969897-IE7\urlmon.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 3595264 c:\windows\ie7updates\KB969897-IE7\mshtml.dll
+ 2009-06-24 08:45 . 2009-02-20 18:09 6066176 c:\windows\ie7updates\KB969897-IE7\ieframe.dll
+ 2009-06-24 08:45 . 2008-07-09 14:25 2455488 c:\windows\ie7updates\KB969897-IE7\ieapfltr.dat
+ 2007-10-12 14:29 . 2007-10-12 14:29 3084100 c:\windows\Downloaded Installations\{DE1E3671-B7CE-4570-9F7D-991C30E6D121}\SodaBush Windowpaper XP v1.01.msi
+ 2009-04-26 23:53 . 2009-04-26 23:53 3313664 c:\windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\14cd5f4b61d35f9b76327d6be9853755\WindowsBase.ni.dll
+ 2009-04-26 23:55 . 2009-04-26 23:55 1049600 c:\windows\assembly\NativeImages_v2.0.50727_32\UIAutomationClients#\f3c7957351aec85f526a3350c9718b1e\UIAutomationClientsideProviders.ni.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 7868416 c:\windows\assembly\NativeImages_v2.0.50727_32\System\80978a322d7dd39f0a71be1251ae395a\System.ni.dll
+ 2009-04-26 23:55 . 2009-04-26 23:55 5450752 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Xml\773a9786013451d3baaeff003dc4230f\System.Xml.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 1356288 c:\windows\assembly\NativeImages_v2.0.50727_32\System.WorkflowServ#\ac1750e78d79520dcf19195772eff1b6\System.WorkflowServices.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 1908224 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Run#\d265da36954fcb4cb7ad5adc693ea0f2\System.Workflow.Runtime.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 4514304 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Com#\693a8fbe6f7ad6e4e429052da4317e59\System.Workflow.ComponentModel.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 2992640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Workflow.Act#\cc99fbbac0b6e4e9ca62093e49b0c16b\System.Workflow.Activities.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 1840640 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Services\b57bb002a655920cbfa2bee29d1e22b7\System.Web.Services.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 2209280 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Mobile\81197e32ec931f439b3114e9031b65d6\System.Web.Mobile.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 2403328 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web.Extensio#\7f64c9d25471b72e1e957bdfe67947c8\System.Web.Extensions.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 1917440 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Speech\63cf639b6e0a3c25c1643c85016e7422\System.Speech.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 1706496 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel#\340cad17fe57947eacbc8fa2cea780da\System.ServiceModel.Web.ni.dll
+ 2009-04-26 23:56 . 2009-04-26 23:56 2338304 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Seri#\034c91b133dee73d452652c52767b5ea\System.Runtime.Serialization.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 1035264 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Printing\646ab52eef343380aa002c220dc31e13\System.Printing.ni.dll
+ 2009-04-26 23:56 . 2009-04-26 23:56 1056768 c:\windows\assembly\NativeImages_v2.0.50727_32\System.IdentityModel\c2de8479e54852f56996f79bc93acb13\System.IdentityModel.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 1587200 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3da96ee075bab9202626ae44c18d226c\System.Drawing.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 1116672 c:\windows\assembly\NativeImages_v2.0.50727_32\System.DirectorySer#\543aced762f6b0c3f8e037955941afc6\System.DirectoryServices.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 1801216 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\a6b58624486714fa71e5e35186850ff0\System.Deployment.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 6616576 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data\c70731047b0022638b3f9fb158948a03\System.Data.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 2510336 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.SqlXml\826b09ab0d0e36f4d631b4cd335df511\System.Data.SqlXml.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 1328128 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Services\956a513dcbd44d5a6801840ef2b0b47b\System.Data.Services.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 2516480 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Linq\0bbec79460b1137df5313f9baf7b246f\System.Data.Linq.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 9924096 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Data.Entity\6479f975b105808a8d9e7a7fdc762551\System.Data.Entity.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 2295296 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Core\47d87251e93256c635eb73403b8db33e\System.Core.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 2128896 c:\windows\assembly\NativeImages_v2.0.50727_32\ReachFramework\4bfb3048bf200a6a8592d1b4ba861a7f\ReachFramework.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 1657856 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationUI\6bafb1a2a73794ddb9761cb321c9e7e2\PresentationUI.ni.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 1451008 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationBuildTa#\e634bc4c4a00635a0a254febab0e2e2c\PresentationBuildTasks.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 1712128 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.VisualBas#\1c86afc399d0fdd8e069266ffbe748d1\Microsoft.VisualBasic.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 1093120 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Transacti#\6b2f62f5e981913fce1d223f645d9ddf\Microsoft.Transactions.Bridge.ni.dll
+ 2009-04-26 23:58 . 2009-04-26 23:58 2332160 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.JScript\b261961046545831aa60963e84905968\Microsoft.JScript.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 1620992 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\bd241492d96db39f20e758c13c845033\Microsoft.Build.Tasks.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 1966080 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Tas#\a47100d8f4574bed2d49d83d0ab8964e\Microsoft.Build.Tasks.v3.5.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 1888768 c:\windows\assembly\NativeImages_v2.0.50727_32\Microsoft.Build.Eng#\6cfe582681724965fb817e8ece5f0909\Microsoft.Build.Engine.ni.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 1245184 c:\windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 3149824 c:\windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 2048000 c:\windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.XML.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 1630208 c:\windows\assembly\GAC_MSIL\System.Workflow.ComponentModel\3.0.0.0__31bf3856ad364e35\System.Workflow.ComponentModel.dll
+ 2009-04-26 23:47 . 2009-04-26 23:47 1138688 c:\windows\assembly\GAC_MSIL\System.Workflow.Activities\3.0.0.0__31bf3856ad364e35\System.Workflow.Activities.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 5025792 c:\windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 1277952 c:\windows\assembly\GAC_MSIL\System.Web.Extensions\3.5.0.0__31bf3856ad364e35\System.Web.Extensions.dll
+ 2009-04-26 23:52 . 2009-04-26 23:52 5931008 c:\windows\assembly\GAC_MSIL\System.ServiceModel\3.0.0.0__b77a5c561934e089\System.ServiceModel.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 5062656 c:\windows\assembly\GAC_MSIL\System.Design\2.0.0.0__b03f5f7f11d50a3a\System.Design.dll
+ 2009-04-26 23:48 . 2009-04-26 23:48 2879488 c:\windows\assembly\GAC_MSIL\System.Data.Entity\3.5.0.0__b77a5c561934e089\System.Data.Entity.dll
+ 2009-04-26 23:52 . 2009-04-26 23:52 5283840 c:\windows\assembly\GAC_MSIL\PresentationFramework\3.0.0.0__31bf3856ad364e35\PresentationFramework.dll
+ 2009-04-26 23:50 . 2009-04-26 23:50 5242880 c:\windows\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 2933248 c:\windows\assembly\GAC_32\System.Data\2.0.0.0__b77a5c561934e089\System.Data.dll
+ 2009-04-26 23:46 . 2009-04-26 23:46 4210688 c:\windows\assembly\GAC_32\PresentationCore\3.0.0.0__31bf3856ad364e35\PresentationCore.dll
+ 2009-04-26 23:51 . 2009-04-26 23:51 4546560 c:\windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
+ 2009-04-17 03:00 . 2009-06-01 16:51 23635392 c:\windows\system32\MRT.exe
+ 2008-12-13 15:21 . 2008-12-13 15:21 10473472 c:\windows\Installer\176273.msp
+ 2004-10-21 11:35 . 2004-10-21 11:35 18887168 c:\windows\Downloaded Installations\{9836E876-FDBF-45FB-8D3B-9E1D9F7116CA}\iTunes.msi
+ 2009-04-26 23:55 . 2009-04-26 23:55 12430848 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\63406259e94d5c0ff5b79401dfe113ce\System.Windows.Forms.ni.dll
+ 2009-04-26 23:59 . 2009-04-26 23:59 11796992 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Web\3963ce03d445a8619abbf388d590134b\System.Web.ni.dll
+ 2009-04-26 23:57 . 2009-04-26 23:57 17317888 c:\windows\assembly\NativeImages_v2.0.50727_32\System.ServiceModel\4146033013edebd7e0cb604e504ebfee\System.ServiceModel.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 10683392 c:\windows\assembly\NativeImages_v2.0.50727_32\System.Design\8ee220bc3cce4f7bbd7818946519ed7f\System.Design.ni.dll
+ 2009-04-26 23:54 . 2009-04-26 23:54 14327808 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\96e710f47c601cba3f2348a8d11ddede\PresentationFramework.ni.dll
+ 2009-04-26 23:53 . 2009-04-26 23:53 12216320 c:\windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\956375d487cbef36165b3250030e3574\PresentationCore.ni.dll
+ 2009-04-26 23:52 . 2009-04-26 23:52 11486720 c:\windows\assembly\NativeImages_v2.0.50727_32\mscorlib\6d667f19d687361886990f3ca0f49816\mscorlib.ni.dll
.
-- Snapshot reset to current date --
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"updateMgr"="c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 313472]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\axcmd.exe" [2004-05-06 220672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Recguard"="c:\windows\SMINST\RECGUARD.EXE" [2004-04-15 233472]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-22 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-22 7700480]
"LSBWatcher"="c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe" [2004-10-15 253952]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-04-18 196608]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2004-08-21 155648]
"hpsysdrv"="c:\windows\system\hpsysdrv.exe" [1998-05-07 52736]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-05-02 1947928]
"Ad-Watch"="c:\program files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-07-05 520024]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2006-10-22 1622016]
"AlcxMonitor"="ALCXMNTR.EXE" - c:\windows\ALCXMNTR.EXE [2004-09-08 57344]
"AlcWzrd"="ALCWZRD.EXE" - c:\windows\ALCWZRD.EXE [2004-07-29 2551808]
"AGRSMMSG"="AGRSMMSG.exe" - c:\windows\AGRSMMSG.exe [2004-06-30 88363]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoRecentDocsNetHood"= 01000000
"NoSMMyDocs"= 01000000
"NoSMMyPictures"= 01000000
"NoNetworkConnections"= 01000000
"NoStrCmpLogical"= 01000000

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-03-24 03:31 356352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-05-02 14:36 11952 ----a-w- c:\windows\system32\avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"midi"=mapledxp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"MDM"=2 (0x2)
"aawservice"=3 (0x3)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"RegistryCleanerPro"=c:\program files\iXi Tools\Registry Cleaner Pro\RegistryCleanerPro.exe -t
"Uniblue RegistryBooster 2"=c:\program files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\burst\\core-new1.1.3\\btdownloadheadless.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Firaxis Games\\Sid Meier's Civilization 4\\Civilization4.exe"=
"c:\\Program Files\\Firaxis Games\\Sid Meier's Civilization 4\\Warlords\\Civ4Warlords.exe"=
"c:\\Program Files\\Firaxis Games\\Sid Meier's Civilization 4\\Warlords\\Civ4Warlords_PitBoss.exe"=
"c:\\Program Files\\Microsoft Games\\Dungeon Siege 2\\DungeonSiege2.exe"=
"c:\\Program Files\\Windows Media Player\\wmplayer.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
"c:\\Program Files\\The KMPlayer\\KMPlayer.exe"=

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"8085:TCP"= 8085:TCP:*:Disabled:sys

R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [5/7/2009 12:42 AM 64160]
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [4/26/2009 6:17 PM 325896]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [4/26/2009 6:17 PM 108552]
R1 mapledxp;mapledxp;c:\windows\system32\drivers\mapledxp.sys [5/3/2009 11:02 PM 24720]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [8/19/2008 11:34 PM 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [8/19/2008 11:34 PM 55024]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [4/26/2009 6:17 PM 908568]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [4/26/2009 6:17 PM 298776]
S2 uuzvwhj;uuzvwhj;\??\c:\windows\system32\drivers\dbysgtllbyqtwoo.sys --> c:\windows\system32\drivers\dbysgtllbyqtwoo.sys [?]
S3 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [3/9/2009 2:06 PM 1029456]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [8/19/2008 11:34 PM 7408]
.
- - - - ORPHANS REMOVED - - - -

SafeBoot-aawservice


.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.google.com/
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-07-06 01:06
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(760)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL

- - - - - - - > 'explorer.exe'(952)
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\AVG\AVG8\avgrsx.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\program files\AVG\AVG8\avgcsrvx.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2009-07-06 1:11 - machine was rebooted
ComboFix-quarantined-files.txt 2009-07-06 06:11
ComboFix2.txt 2009-04-26 23:07
ComboFix3.txt 2009-04-26 22:57
ComboFix4.txt 2009-04-25 23:37
ComboFix5.txt 2009-07-06 05:55

Pre-Run: 27,796,885,504 bytes free
Post-Run: 27,650,252,800 bytes free

Current=2 Default=2 Failed=1 LastKnownGood=4 Sets=,1,2,3,4
1044 --- E O F --- 2009-04-30 13:02


Thanks.

#7 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,681 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:02:42 AM

Posted 06 July 2009 - 06:10 AM

Heya Jeffso,


Your log(s) show that you are using so called peer-to-peer or file-sharing programmes (in your case burst!). These programmes allow to share files between users as the name(s) suggest. In today's world the cyber crime has come to an enormous dimension and any means is used to infect personal computers to make use of their stored data or machine power for further propagation of the malware files. A popular means is the use of file-sharing tools as a tremendous amount of prospective victims can be reached through it.

It is therefore possible to be infected by downloading manipulated files via peer-to-peer tools and thus suggested to be used with intense care. Some further readings on this subject, along the included links, are as follows: "File-Sharing, otherwise known as Peer To Peer" and "Risks of File-Sharing Technology."

If you do not want to uninstall it, we would like to ask you, not to use it as long as we're cleaning up your PC.

That being said, please proceed with the following:
1. Close any open browsers.

2. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

3. Open notepad and copy/paste the text in the quotebox below into it:

File::
c:\windows\system32\drivers\hwhospyxusipfvou.sys
c:\windows\system32\drivers\dbysgtllbyqtwoo.sys

Folder::
c:\documents and settings\All Users\Application Data\12526094

Registry::
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List]
"8085:TCP"=-

Driver::
uuzvwhj

DirLook::
C:\program files\temp


Save this as CFScript.txt, in the same location as ComboFix.exe


Posted Image

Refering to the picture above, drag CFScript into ComboFix.exe

When finished, it shall produce a log for you at C:\ComboFix.txt which I will require in your next reply.

please also post any remaining problems you have with your PC,
regards _temp_
If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!


Follow BleepingComputer on: Facebook | Twitter | Google+

#8 Jeffso

Jeffso
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:42 PM

Posted 06 July 2009 - 05:14 PM

I have safemode back now, but I am still getting the "Alcohol" error I mentioned earlier when I reboot. By the way it is written in very poor English. I haven't had any other real problems that I am aware of since I ran MBAM, AVG, etc. awhile ago. It is just that everytime I went back to the TPB website everything came back. I have never had any problems there before, and would like to go back and test it, but I don't want to start all over again. I will test it when you think my computer is clean, and if it comes back that is my own fault, but I don't want to chance it yet. It seems to act like "Virus Remover Professional" when I am infected, but as of right now it seems to just be that error on reboot. Here is the new log. Thanks.
----------------------




ComboFix 09-07-06.01 - Compaq_Owner 07/06/2009 16:05.7 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.511.209 [GMT -5:00]
Running from: c:\documents and settings\Compaq_Owner\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Compaq_Owner\Desktop\CFScript.txt
AV: AVG Anti-Virus Free *On-access scanning disabled* (Updated) {17DDD097-36FF-435F-9E1B-52D74245D6BF}

FILE ::
"c:\windows\system32\drivers\dbysgtllbyqtwoo.sys"
"c:\windows\system32\drivers\hwhospyxusipfvou.sys"
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

c:\documents and settings\All Users\Application Data\12526094
c:\documents and settings\All Users\Application Data\12526094\12526094
c:\windows\system32\drivers\hwhospyxusipfvou.sys

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_UUZVWHJ
-------\Service_uuzvwhj


((((((((((((((((((((((((( Files Created from 2009-06-06 to 2009-07-06 )))))))))))))))))))))))))))))))
.

2009-07-06 06:03 . 2008-04-14 00:12 50176 -c--a-w- c:\windows\system32\dllcache\proquota.exe
2009-07-06 06:03 . 2008-04-14 00:12 50176 ----a-w- c:\windows\system32\proquota.exe
2009-06-29 00:54 . 2009-06-29 18:34 -------- d-----w- c:\documents and settings\Compaq_Owner\.housecall6.6
2009-06-28 19:57 . 2008-04-13 16:39 142592 ----a-w- c:\windows\system32\drivers\aec.sys
2009-06-28 19:57 . 2006-01-25 21:24 1149888 ----a-w- c:\windows\system32\drivers\AGRSM.sys
2009-06-26 10:03 . 2009-06-26 10:52 -------- d---a-w- c:\documents and settings\All Users\Application Data\TEMP
2009-06-19 08:27 . 2009-06-19 08:27 3561743 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe
2009-06-11 06:13 . 2009-06-29 00:01 -------- d--h--w- C:\$AVG8.VAULT$

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-07-06 06:33 . 2009-03-19 04:03 117760 ----a-w- c:\documents and settings\Compaq_Owner\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL
2009-07-05 06:53 . 2009-06-19 11:59 314712 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\threatwork.exe
2009-07-05 06:53 . 2009-06-19 11:59 25440 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\savapibridge.dll
2009-07-05 06:53 . 2009-06-19 11:59 169312 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lavamessage.dll
2009-07-05 06:53 . 2009-06-19 11:59 348496 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lavalicense.dll
2009-07-05 06:53 . 2009-06-19 11:59 298336 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\UpdateManager.dll
2009-07-05 06:53 . 2009-06-02 05:04 84832 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\ShellExt.dll
2009-07-05 06:53 . 2009-06-19 11:59 1630560 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Resources.dll
2009-07-05 06:53 . 2009-06-02 05:04 246128 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\RPAPI.dll
2009-07-05 06:53 . 2009-06-19 11:59 85352 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers\32\AAWDriverTool.exe
2009-07-05 06:53 . 2009-06-02 05:04 40288 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\PrivacyClean.dll
2009-07-05 06:53 . 2009-06-19 11:59 664424 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\CEAPI.dll
2009-07-05 06:53 . 2009-06-19 11:59 563064 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareCommand.exe
2009-07-05 06:52 . 2009-06-19 11:59 566632 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-AwareAdmin.exe
2009-07-05 06:52 . 2009-06-19 11:59 2352968 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Ad-Aware.exe
2009-07-05 06:52 . 2009-06-19 11:59 629072 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWWSC.exe
2009-07-05 06:52 . 2009-06-19 11:59 520024 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWTray.exe
2009-07-05 06:52 . 2009-06-19 11:59 1029456 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\AAWService.exe
2009-06-28 22:00 . 2003-09-10 00:19 -------- d-----w- c:\program files\burst
2009-06-27 04:47 . 2007-09-14 12:47 -------- d-----w- c:\program files\Temp
2009-06-21 06:07 . 2003-09-10 01:14 -------- d-----w- c:\documents and settings\All Users\Application Data\Spybot - Search & Destroy
2009-06-21 06:05 . 2003-09-10 01:14 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-06-19 15:13 . 2004-10-21 11:20 -------- d--h--w- c:\program files\InstallShield Installation Information
2009-06-19 14:29 . 2009-05-31 16:54 -------- d-----w- c:\program files\Black Isle
2009-06-19 10:26 . 2008-08-23 12:58 -------- d-----w- c:\program files\SUPERAntiSpyware
2009-06-19 08:28 . 2009-04-17 04:04 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2009-06-17 16:27 . 2009-04-17 04:04 38160 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys
2009-06-17 16:27 . 2009-04-17 04:04 19096 ----a-w- c:\windows\system32\drivers\mbam.sys
2009-06-02 05:05 . 2009-06-02 05:05 15688 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\lsdelete.exe
2009-06-02 05:05 . 2009-05-07 07:29 15688 ----a-w- c:\windows\system32\lsdelete.exe
2009-05-30 07:42 . 2009-05-30 07:42 -------- d-----w- c:\program files\SystemRequirementsLab
2009-05-17 10:08 . 2009-05-17 10:07 -------- d-----w- c:\program files\DVDZip 4.0
2009-05-13 06:58 . 2009-05-04 04:02 21457 ----a-w- c:\windows\unins001.dat
2009-05-13 06:58 . 2009-05-04 04:02 673546 ----a-w- c:\windows\unins001.exe
2009-05-07 15:32 . 2003-01-01 07:03 345600 ----a-w- c:\windows\system32\localspl.dll
2009-05-07 05:42 . 2009-05-07 05:42 64160 ----a-w- c:\windows\system32\drivers\Lbd.sys
2009-05-07 05:42 . 2009-05-07 05:42 64160 ----a-w- c:\documents and settings\All Users\Application Data\Lavasoft\Ad-Aware\Update\Drivers\32\lbd.sys
2009-05-02 14:36 . 2009-04-26 23:17 11952 ----a-w- c:\windows\system32\avgrsstx.dll
2009-05-02 14:36 . 2009-04-26 23:17 325896 ----a-w- c:\windows\system32\drivers\avgldx86.sys
2009-05-02 14:36 . 2009-04-26 23:17 27784 ----a-w- c:\windows\system32\drivers\avgmfx86.sys
2009-05-02 14:36 . 2009-04-26 23:17 108552 ----a-w- c:\windows\system32\drivers\avgtdix.sys
2009-04-29 04:56 . 2003-01-01 07:05 827392 ----a-w- c:\windows\system32\wininet.dll
2009-04-29 04:55 . 2003-01-01 07:03 78336 ----a-w- c:\windows\system32\ieencode.dll
2009-04-27 08:54 . 2003-09-10 05:37 33184 ----a-w- c:\documents and settings\Compaq_Owner\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-17 12:26 . 2003-01-01 07:05 1847168 ----a-w- c:\windows\system32\win32k.sys
2009-04-17 03:18 . 2009-04-17 02:53 6144 ----a-w- c:\documents and settings\Kickaxe\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10001.dll
2009-04-17 03:18 . 2009-04-17 02:53 22528 ----a-w- c:\documents and settings\Kickaxe\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10000.dll
2009-04-17 02:47 . 2009-04-17 02:47 33184 ----a-w- c:\documents and settings\Kickaxe\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
2009-04-16 23:00 . 2008-08-23 13:25 6144 ----a-w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10001.dll
2009-04-16 23:00 . 2008-08-23 13:25 22528 ----a-w- c:\documents and settings\Administrator\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10000.dll
2009-04-15 14:51 . 2003-01-01 07:04 585216 ----a-w- c:\windows\system32\rpcrt4.dll
.

(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\program files\temp ----

2009-06-27 05:53 . 2009-06-27 05:53 7680 --sha-w- c:\program files\temp\Sims 2 Family Fun stuff\Thumbs.db
2007-11-16 05:21 . 2002-01-07 11:30 18351 ------w- c:\program files\temp\Eraser57Setup\COPYING.txt
2007-11-16 05:21 . 2003-08-05 20:23 4600 ----a-w- c:\program files\temp\Eraser57Setup\History.txt
2007-11-16 05:21 . 2003-07-25 16:33 6159 ----a-w- c:\program files\temp\Eraser57Setup\README.txt
2007-11-16 05:21 . 2003-08-05 20:25 194 ----a-w- c:\program files\temp\Eraser57Setup\EraserSetup.asc
2007-11-16 05:21 . 2003-08-05 20:24 2833921 ----a-w- c:\program files\temp\Eraser57Setup\EraserSetup.exe
2007-11-07 21:41 . 2007-11-07 21:41 21647798 ----a-w- c:\program files\temp\Sims2EP1\sims2ep1_patch.exe
2007-11-07 21:40 . 2007-11-07 21:40 28556079 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\sims2sp1_patch.exe
2007-11-07 21:36 . 2007-11-07 21:36 27998089 ----a-w- c:\program files\temp\ccd-s2ob\sims2ep3_patch.exe
2007-11-07 21:36 . 2007-11-07 21:36 19072283 ----a-w- c:\program files\temp\The.Sims.2.Nightlife.CloneCD-MiRROR\sims2ep2_patch.exe
2007-11-07 21:35 . 2007-11-07 21:35 49426923 ----a-w- c:\program files\temp\The Sims 2 Seasons\sims2ep5_patch_cd.exe
2007-11-07 21:34 . 2007-11-07 21:34 20723289 ----a-w- c:\program files\temp\rld-s2pe\sims2ep4_patch_cd.exe
2007-11-07 21:27 . 2007-11-07 21:27 24853272 ----a-w- c:\program files\temp\Sims 2\thesims2_update.exe
2007-11-07 21:24 . 2007-11-07 21:24 16706608 ----a-w- c:\program files\temp\The_Sims_2_Bon_Voyage-FLT\sims2ep6_patch.exe
2007-11-07 16:55 . 2007-04-01 04:17 473 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Serial's.txt
2007-11-07 16:55 . 2006-03-17 08:18 103066 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\cs_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 109626 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\da_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 108242 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\de_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 406 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\common_filelist.txt
2007-11-07 16:55 . 2006-03-17 08:18 194381826 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 158 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\autorun.inf
2007-11-07 16:55 . 2006-03-17 06:45 630784 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRunGUI.dll
2007-11-07 16:55 . 2006-03-17 08:17 2048 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\00000001.TMP
2007-11-07 16:55 . 2006-03-17 08:17 317440 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\00000002.TMP
2007-11-07 16:55 . 2006-03-17 08:17 700416 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun.exe
2007-11-07 16:55 . 2006-03-17 08:18 107236 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\sv_compressed.zip
2007-11-07 16:55 . 2006-03-17 04:42 128 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\TSData\Control\control0.dat
2007-11-07 16:55 . 2006-03-17 04:42 128 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\TSData\Control\control1.dat
2007-11-07 16:55 . 2006-03-17 04:42 128 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\TSData\Control\control2.dat
2007-11-07 16:55 . 2006-03-17 04:42 128 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\TSData\Control\control3.dat
2007-11-07 16:55 . 2006-03-17 04:42 128 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\TSData\Control\control4.dat
2007-11-07 16:55 . 2006-03-17 08:18 116598 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\pt-br_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 109858 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\pt-pt_compressed.zip
2007-11-07 16:55 . 2006-03-17 04:49 10134 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Sims2SP1.ico
2007-11-07 16:55 . 2006-03-17 06:46 278528 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Sims2SP1_Uninst.exe
2007-11-07 16:55 . 2006-03-17 08:18 109778 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\nl_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 100596 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\no_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 110862 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\pl_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 105268 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\hu_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 98648 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\it_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 98648 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\en-uk_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 109650 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\es_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 112064 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\fi_compressed.zip
2007-11-07 16:55 . 2006-03-17 08:18 97308 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\fr-fr_compressed.zip
2007-11-07 16:55 . 2006-03-17 04:49 10134 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\eauninstall.ico
2007-11-07 16:55 . 2006-03-17 04:50 18777053 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\TSBin\TS2UPD.exe
2007-11-07 16:55 . 2006-03-17 06:40 16768828 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\TSBin\Sims2SP1.exe
2007-11-07 16:55 . 2006-03-17 04:44 352256 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\TSBin\ijl15.dll
2007-11-07 16:55 . 2006-03-17 04:49 73728 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\The Sims 2 Family Fun Stuff_uninst.exe
2007-11-07 16:55 . 2006-03-17 04:49 323584 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\The Sims 2 Family Fun Stuff_code.exe
2007-11-07 16:55 . 2006-03-17 04:49 52520 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\pt-pt\Leiame.txt
2007-11-07 16:55 . 2006-03-17 04:49 48515 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\sv\readme.txt
2007-11-07 16:55 . 2006-03-17 04:50 6406 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\OpenSSL_License.txt
2007-11-07 16:55 . 2006-03-17 04:50 7124 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\OpenSSL_License_FR.TXT
2007-11-07 16:55 . 2006-03-17 04:49 48178 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\no\Lesmeg.txt
2007-11-07 16:55 . 2006-03-17 04:49 51689 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\pl\Przeczytaj.txt
2007-11-07 16:55 . 2006-03-17 04:49 52237 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\pt-br\Leiame.txt
2007-11-07 16:55 . 2006-03-17 04:49 3700 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\Localization.ini
2007-11-07 16:55 . 2006-03-17 04:49 52651 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\it\Leggimi.txt
2007-11-07 16:55 . 2006-03-17 04:49 53952 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\nl\Leesmij.txt
2007-11-07 16:55 . 2006-03-17 04:49 51140 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\fi\Lueminut.txt
2007-11-07 16:55 . 2006-03-17 04:49 54170 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\fr-fr\Lisezmoi.txt
2007-11-07 16:55 . 2006-03-17 04:49 48391 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\hu\olvassel.txt
2007-11-07 16:55 . 2006-03-17 04:49 55852 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\es\leeme.txt
2007-11-07 16:55 . 2006-03-17 04:49 792279 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\EReg.bin
2007-11-07 16:55 . 2006-03-17 04:49 618496 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\EReg.exe
2007-11-07 16:55 . 2006-03-17 04:49 7966 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-it.xml
2007-11-07 16:55 . 2006-03-17 04:49 8380 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-ja.xml
2007-11-07 16:55 . 2006-03-17 04:49 8062 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-ko.xml
2007-11-07 16:55 . 2006-03-17 04:49 7887 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-nl.xml
2007-11-07 16:55 . 2006-03-17 04:49 7606 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-no.xml
2007-11-07 16:55 . 2006-03-17 04:49 7835 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-pl.xml
2007-11-07 16:55 . 2006-03-17 04:49 7814 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-pt_BR.xml
2007-11-07 16:55 . 2006-03-17 04:49 7742 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-pt_PT.xml
2007-11-07 16:55 . 2006-03-17 04:49 7737 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-sv.xml
2007-11-07 16:55 . 2006-03-17 04:49 12269 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-th.xml
2007-11-07 16:55 . 2006-03-17 04:49 7043 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-zh_CN.xml
2007-11-07 16:55 . 2006-03-17 04:49 7407 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-zh_TW.xml
2007-11-07 16:55 . 2006-03-17 04:49 7679 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-da.xml
2007-11-07 16:55 . 2006-03-17 04:49 8014 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-de.xml
2007-11-07 16:55 . 2006-03-17 04:49 7568 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-en_UK.xml
2007-11-07 16:55 . 2006-03-17 04:49 7620 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-en_US.xml
2007-11-07 16:55 . 2006-03-17 04:49 7571 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-es.xml
2007-11-07 16:55 . 2006-03-17 04:49 7563 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-fi.xml
2007-11-07 16:55 . 2006-03-17 04:49 7883 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-fr_FR.xml
2007-11-07 16:55 . 2006-03-17 04:49 7790 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-hu.xml
2007-11-07 16:55 . 2006-03-17 04:49 924 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\EasyReqs.xml
2007-11-07 16:55 . 2006-03-17 04:49 7922 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\ereg-dict-cs.xml
2007-11-07 16:55 . 2006-03-17 04:49 47115 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\en-uk\readme.txt
2007-11-07 16:55 . 2006-03-17 04:49 561152 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\EasyInfo.exe
2007-11-07 16:55 . 2006-03-17 04:49 49570 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\da\readme.txt
2007-11-07 16:55 . 2006-03-17 04:49 53006 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\de\readme.txt
2007-11-07 16:55 . 2006-03-17 04:49 853 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\config.xml
2007-11-07 16:55 . 2006-03-17 04:49 49461 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\Support\cs\ctimne.txt
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\pt-pt_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\sv_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\no_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\pl_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\pt-br_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\nl_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\it_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\fi_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\fr-fr_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\hu_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\en-uk_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\es_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\da_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\de_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 08:19 1185 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\autorun.cfg
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\cs_AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 04:49 221816 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\AutoRun\AutoRun.bmp
2007-11-07 16:55 . 2006-03-17 08:17 356352 ----a-w- c:\program files\temp\Sims 2 Family Fun stuff\eauninstall.exe
2007-11-06 08:02 . 2007-11-06 09:47 25 ----a-w- c:\program files\temp\Sims 2 - H&M - Fashion\CD-Key.txt
2007-11-06 08:02 . 2007-11-06 09:47 433819648 ----a-w- c:\program files\temp\Sims 2 - H&M - Fashion\Sims 2 - H&M - Fashion.iso
2007-11-06 07:16 . 2007-09-05 03:33 816304128 ----a-w- c:\program files\temp\The_Sims_2_Bon_Voyage-FLT\flt-tsbv\flt-tsbv.iso
2007-11-06 01:04 . 2006-08-27 05:24 74 ----a-w- c:\program files\temp\The_Sims_2_Glamour_Life_Stuff_Addon-Razor1911\rzr-s2gl\rzr-s2gl.cue
2007-11-06 01:03 . 2006-08-27 05:24 353724336 ----a-w- c:\program files\temp\The_Sims_2_Glamour_Life_Stuff_Addon-Razor1911\rzr-s2gl\rzr-s2gl.bin
2007-11-06 01:01 . 2006-11-08 15:11 74 ----a-w- c:\program files\temp\The.Sims.2.Happy.Holiday.Stuff-RECHARGED[www.moviex.info]\rc-sims\Sims2HHS.cue
2007-11-06 01:00 . 2006-11-08 15:11 166836768 ----a-w- c:\program files\temp\The.Sims.2.Happy.Holiday.Stuff-RECHARGED[www.moviex.info]\rc-sims\Sims2HHS.bin
2007-11-06 00:50 . 2007-11-06 06:15 3561 ----a-w- c:\program files\temp\The_Sims_2_Bon_Voyage-FLT\flt-tsbv.nfo
2007-11-06 00:50 . 2007-11-06 06:15 368 ----a-w- c:\program files\temp\The_Sims_2_Bon_Voyage-FLT\flt-tsbv.sfv
2007-11-06 00:41 . 2007-11-06 05:37 504320 ----a-w- c:\program files\temp\Sims2EP1\daemon347.exe
2007-11-06 00:41 . 2007-11-06 05:38 592 ----a-w- c:\program files\temp\Sims2EP1\install+key.txt
2007-11-06 00:41 . 2007-11-06 06:59 23755200 ----a-w- c:\program files\temp\Sims2EP1\Sims2EP1_1.mir
2007-11-06 00:41 . 2007-11-06 05:38 601733120 ----a-w- c:\program files\temp\Sims2EP1\Sims2EP1_CD1.iso
2007-11-06 00:41 . 2007-11-06 05:38 236105728 ----a-w- c:\program files\temp\Sims2EP1\Sims2EP1_CD2.iso
2007-11-06 00:28 . 2006-08-27 06:00 15502705 ----a-w- c:\program files\temp\The_Sims_2_Glamour_Life_Stuff_Addon_Crackfix-Razor1911\Sims2SP2.exe
2007-11-05 10:54 . 2007-11-05 18:26 3343 ----a-w- c:\program files\temp\The_Sims_2_Glamour_Life_Stuff_Addon-Razor1911\rzr-s2gl.nfo
2007-11-05 10:54 . 2007-11-05 18:26 506 ----a-w- c:\program files\temp\The_Sims_2_Glamour_Life_Stuff_Addon-Razor1911\rzr-s2gl.sfv
2007-11-05 10:54 . 2007-11-05 13:22 29 ----a-w- c:\program files\temp\The_Sims_2_Glamour_Life_Stuff_Addon_Crackfix-Razor1911\rzr-sglc.sfv
2007-11-05 10:54 . 2007-11-05 13:22 24 ----a-w- c:\program files\temp\The_Sims_2_Glamour_Life_Stuff_Addon_Crackfix-Razor1911\serial.nfo
2007-11-05 10:54 . 2007-11-05 14:36 24576 ----a-w- c:\program files\temp\The Sims 2 - Celebration Stuff - Expansion Pack\The Sims 2 - Celebration Stuff - Expansion Pack\How to Install this game.doc
2007-11-05 10:54 . 2007-11-05 14:36 321159168 ----a-w- c:\program files\temp\The Sims 2 - Celebration Stuff - Expansion Pack\The Sims 2 - Celebration Stuff - Expansion Pack\rld-ts2c.iso
2007-11-05 10:54 . 2007-11-05 14:23 242 ----a-w- c:\program files\temp\The.Sims.2.Happy.Holiday.Stuff-RECHARGED[www.moviex.info]\rc-sims.sfv
2007-11-05 10:54 . 2007-11-05 14:23 9979 ----a-w- c:\program files\temp\The.Sims.2.Happy.Holiday.Stuff-RECHARGED[www.moviex.info]\rc-sims.nfo
2007-11-05 10:36 . 2006-03-01 21:43 2834 ----a-w- c:\program files\temp\ccd-s2ob\Sims2EP3_1.mds
2007-11-05 10:35 . 2006-03-01 21:43 727007904 ----a-w- c:\program files\temp\ccd-s2ob\Sims2EP3_1.mdf
2007-11-05 10:20 . 2006-10-17 19:10 74 ----a-w- c:\program files\temp\rld-s2pe\rld-s2pe.cue
2007-11-05 10:19 . 2006-10-17 19:10 839297088 ----a-w- c:\program files\temp\rld-s2pe\rld-s2pe.bin
2007-11-05 02:01 . 2007-11-05 10:34 464 ----a-w- c:\program files\temp\ccd-s2ob\Crack\Crack info.nfo
2007-11-05 02:01 . 2007-11-05 10:34 15515648 ----a-w- c:\program files\temp\ccd-s2ob\Crack\Sims2EP3.exe
2007-11-05 01:54 . 2007-11-05 03:53 4632 ----a-w- c:\program files\temp\rld-s2pe\reloaded.nfo
2007-11-02 07:44 . 2007-11-02 05:37 10114 ----a-w- c:\program files\temp\The Sims 2 Seasons\Sims2_EP5_1.mds
2007-11-02 07:43 . 2007-11-02 05:37 748093440 ----a-w- c:\program files\temp\The Sims 2 Seasons\Sims2_EP5_1.mdf
2007-11-02 07:43 . 2007-11-02 05:37 170496 ----a-w- c:\program files\temp\The Sims 2 Seasons\sd4hide.exe
2007-11-02 07:43 . 2007-11-02 05:37 830 ----a-w- c:\program files\temp\The Sims 2 Seasons\info.txt
2007-11-02 07:43 . 2007-11-02 05:37 110080 ----a-w- c:\program files\temp\The Sims 2 Seasons\keygen.exe
2007-11-02 07:34 . 2007-11-02 13:59 54 ----a-w- c:\program files\temp\The.Sims.2.Nightlife.CloneCD-MiRROR\cd-key.txt
2007-11-02 07:34 . 2007-11-02 13:59 12025 ----a-w- c:\program files\temp\The.Sims.2.Nightlife.CloneCD-MiRROR\mir-sims2nl.nfo
2007-11-02 07:34 . 2007-11-02 13:59 75 ----a-w- c:\program files\temp\The.Sims.2.Nightlife.CloneCD-MiRROR\CD2\MIR-SIMS2NL2.cue
2007-11-02 07:34 . 2007-11-02 13:59 783258336 ----a-w- c:\program files\temp\The.Sims.2.Nightlife.CloneCD-MiRROR\CD1\MIR-SIMS2NL.mdf
2007-11-02 07:34 . 2007-11-02 13:59 2822 ----a-w- c:\program files\temp\The.Sims.2.Nightlife.CloneCD-MiRROR\CD1\MIR-SIMS2NL.mds
2007-11-02 07:34 . 2007-11-02 13:59 555612960 ----a-w- c:\program files\temp\The.Sims.2.Nightlife.CloneCD-MiRROR\CD2\MIR-SIMS2NL2.bin
2007-10-24 21:20 . 2006-10-21 00:36 1503 ----a-w- c:\program files\temp\Sims 2\Serials, cheats & crack\Serials & crack.txt
2007-10-24 21:20 . 2004-09-14 00:38 4116 ----a-w- c:\program files\temp\Sims 2\Serials, cheats & crack\cheats 1.nfo
2007-10-24 21:20 . 2004-09-14 00:38 5073 ----a-w- c:\program files\temp\Sims 2\Serials, cheats & crack\cheats 2.nfo
2007-10-24 02:26 . 2007-10-24 16:38 681750528 ----a-w- c:\program files\temp\Sims 2\(PC GAME) The Sims 2 CD1.iso
2007-10-24 02:26 . 2007-10-24 16:38 681705472 ----a-w- c:\program files\temp\Sims 2\(PC GAME) The Sims 2 CD2.iso
2007-10-24 02:26 . 2007-10-24 16:38 681705472 ----a-w- c:\program files\temp\Sims 2\(PC GAME) The Sims 2 CD3.iso
2007-10-24 02:26 . 2007-10-24 16:38 502726656 ----a-w- c:\program files\temp\Sims 2\(PC GAME) The Sims 2 CD4.iso
2007-10-12 14:28 . 2007-10-12 14:28 2201781 ----a-w- c:\program files\temp\FolderBackgrounds.exe
2007-10-12 13:21 . 2007-10-12 13:21 150192 ----a-w- c:\program files\temp\TweakUiPowertoySetup.exe
2007-10-07 05:34 . 2007-10-07 05:56 12800 ----a-w- c:\program files\temp\Lemmings\VSMEM.DLL
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL0.PAL
2007-10-07 05:34 . 2007-10-07 05:56 127309 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL0B.SPR
2007-10-07 05:34 . 2007-10-07 05:56 904 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL0O.SPR
2007-10-07 05:34 . 2007-10-07 05:56 129205 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL0OB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 37072 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL0OS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 34671 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL0S.SPR
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL1.PAL
2007-10-07 05:34 . 2007-10-07 05:56 153485 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL1B.SPR
2007-10-07 05:34 . 2007-10-07 05:56 792 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL1O.SPR
2007-10-07 05:34 . 2007-10-07 05:56 107112 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL1OB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 32411 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL1OS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 42421 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL1S.SPR
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL2.PAL
2007-10-07 05:34 . 2007-10-07 05:56 130314 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL2B.SPR
2007-10-07 05:34 . 2007-10-07 05:56 800 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL2O.SPR
2007-10-07 05:34 . 2007-10-07 05:56 138652 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL2OB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 39087 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL2OS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 35114 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL2S.SPR
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL3.PAL
2007-10-07 05:34 . 2007-10-07 05:56 139863 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL3B.SPR
2007-10-07 05:34 . 2007-10-07 05:56 960 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL3O.SPR
2007-10-07 05:34 . 2007-10-07 05:56 143928 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL3OB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 42380 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL3OS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 37336 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL3S.SPR
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL4.PAL
2007-10-07 05:34 . 2007-10-07 05:56 132586 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL4B.SPR
2007-10-07 05:34 . 2007-10-07 05:56 944 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL4O.SPR
2007-10-07 05:34 . 2007-10-07 05:56 120237 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL4OB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 35600 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL4OS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 37463 ----a-w- c:\program files\temp\Lemmings\STYLES\LEVEL4S.SPR
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\ROCK.DAT
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\ROCK.PAL
2007-10-07 05:34 . 2007-10-07 05:56 120054 ----a-w- c:\program files\temp\Lemmings\STYLES\ROCKB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 87216 ----a-w- c:\program files\temp\Lemmings\STYLES\ROCKOB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 25233 ----a-w- c:\program files\temp\Lemmings\STYLES\ROCKOS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 32917 ----a-w- c:\program files\temp\Lemmings\STYLES\ROCKS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\SNOW.DAT
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\SNOW.PAL
2007-10-07 05:34 . 2007-10-07 05:56 183925 ----a-w- c:\program files\temp\Lemmings\STYLES\SNOWB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 118356 ----a-w- c:\program files\temp\Lemmings\STYLES\SNOWOB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 33492 ----a-w- c:\program files\temp\Lemmings\STYLES\SNOWOS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 48639 ----a-w- c:\program files\temp\Lemmings\STYLES\SNOWS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 30148 ----a-w- c:\program files\temp\Lemmings\USERS\LEMMINGS.DB
2007-10-07 05:34 . 2007-10-07 05:56 47220 ----a-w- c:\program files\temp\Lemmings\STYLES\BRICKOS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 24350 ----a-w- c:\program files\temp\Lemmings\STYLES\BRICKS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\BUBBLE.PAL
2007-10-07 05:34 . 2007-10-07 05:56 111793 ----a-w- c:\program files\temp\Lemmings\STYLES\BUBBLEB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 103513 ----a-w- c:\program files\temp\Lemmings\STYLES\BUBBLEOB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 29841 ----a-w- c:\program files\temp\Lemmings\STYLES\BUBBLEOS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\BUBBLES.DAT
2007-10-07 05:34 . 2007-10-07 05:56 31327 ----a-w- c:\program files\temp\Lemmings\STYLES\BUBBLES.SPR
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\GROUND0O.DAT
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\GROUND1O.DAT
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\GROUND2O.DAT
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\GROUND3O.DAT
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\GROUND4O.DAT
2007-10-07 05:34 . 2007-10-07 05:56 62976 ----a-w- c:\program files\temp\Lemmings\PROCESS.DLL
2007-10-07 05:34 . 2007-10-07 05:56 11776 ----a-w- c:\program files\temp\Lemmings\READDIB.DLL
2007-10-07 05:34 . 2007-10-07 05:56 29184 ----a-w- c:\program files\temp\Lemmings\RENDER.DLL
2007-10-07 05:34 . 2007-10-07 05:56 8391 ----a-w- c:\program files\temp\Lemmings\MUSIC\LEMMIN1P.MID
2007-10-07 05:34 . 2007-10-07 05:56 22995 ----a-w- c:\program files\temp\Lemmings\MUSIC\LEMMIN2P.MID
2007-10-07 05:34 . 2007-10-07 05:56 8851 ----a-w- c:\program files\temp\Lemmings\MUSIC\LEMMIN3P.MID
2007-10-07 05:34 . 2007-10-07 05:56 9445 ----a-w- c:\program files\temp\Lemmings\MUSIC\MOUNTAIP.MID
2007-10-07 05:34 . 2007-10-07 05:56 5319 ----a-w- c:\program files\temp\Lemmings\MUSIC\TENLEMSP.MID
2007-10-07 05:34 . 2007-10-07 05:56 17951 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM1P.MID
2007-10-07 05:34 . 2007-10-07 05:56 9387 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM2P.MID
2007-10-07 05:34 . 2007-10-07 05:56 9077 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM3P.MID
2007-10-07 05:34 . 2007-10-07 05:56 13632 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM4P.MID
2007-10-07 05:34 . 2007-10-07 05:56 15695 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM5P.MID
2007-10-07 05:34 . 2007-10-07 05:56 11586 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM6P.MID
2007-10-07 05:34 . 2007-10-07 05:56 15232 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM7P.MID
2007-10-07 05:34 . 2007-10-07 05:56 14863 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM8P.MID
2007-10-07 05:34 . 2007-10-07 05:56 9104 ----a-w- c:\program files\temp\Lemmings\MUSIC\TIM9P.MID
2007-10-07 05:34 . 2007-10-07 05:56 1280 ----a-w- c:\program files\temp\Lemmings\SOUND\BANG.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4704 ----a-w- c:\program files\temp\Lemmings\SOUND\CHAIN.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4138 ----a-w- c:\program files\temp\Lemmings\SOUND\CHANGEOP.WAV
2007-10-07 05:34 . 2007-10-07 05:56 1194 ----a-w- c:\program files\temp\Lemmings\SOUND\CHINK.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4002 ----a-w- c:\program files\temp\Lemmings\SOUND\DIE.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4110 ----a-w- c:\program files\temp\Lemmings\SOUND\DOOR.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4340 ----a-w- c:\program files\temp\Lemmings\SOUND\ELECTRIC.WAV
2007-10-07 05:34 . 2007-10-07 05:56 1196 ----a-w- c:\program files\temp\Lemmings\SOUND\EXPLODE.WAV
2007-10-07 05:34 . 2007-10-07 05:56 5026 ----a-w- c:\program files\temp\Lemmings\SOUND\FIRE.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4306 ----a-w- c:\program files\temp\Lemmings\SOUND\GLUG.WAV
2007-10-07 05:34 . 2007-10-07 05:56 6390 ----a-w- c:\program files\temp\Lemmings\SOUND\LETSGO.WAV
2007-10-07 05:34 . 2007-10-07 05:56 558 ----a-w- c:\program files\temp\Lemmings\SOUND\MANTRAP.WAV
2007-10-07 05:34 . 2007-10-07 05:56 1780 ----a-w- c:\program files\temp\Lemmings\SOUND\MOUSEPRE.WAV
2007-10-07 05:34 . 2007-10-07 05:56 5412 ----a-w- c:\program files\temp\Lemmings\SOUND\OHNO.WAV
2007-10-07 05:34 . 2007-10-07 05:56 3126 ----a-w- c:\program files\temp\Lemmings\SOUND\OING.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4814 ----a-w- c:\program files\temp\Lemmings\SOUND\SCRAPE.WAV
2007-10-07 05:34 . 2007-10-07 05:56 1138 ----a-w- c:\program files\temp\Lemmings\SOUND\SLICER.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4038 ----a-w- c:\program files\temp\Lemmings\SOUND\SPLASH.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4374 ----a-w- c:\program files\temp\Lemmings\SOUND\SPLAT.WAV
2007-10-07 05:34 . 2007-10-07 05:56 6090 ----a-w- c:\program files\temp\Lemmings\SOUND\TENTON.WAV
2007-10-07 05:34 . 2007-10-07 05:56 1612 ----a-w- c:\program files\temp\Lemmings\SOUND\THUD.WAV
2007-10-07 05:34 . 2007-10-07 05:56 1332 ----a-w- c:\program files\temp\Lemmings\SOUND\THUNK.WAV
2007-10-07 05:34 . 2007-10-07 05:56 642 ----a-w- c:\program files\temp\Lemmings\SOUND\TING.WAV
2007-10-07 05:34 . 2007-10-07 05:56 4592 ----a-w- c:\program files\temp\Lemmings\SOUND\YIPPEE.WAV
2007-10-07 05:34 . 2007-10-07 05:56 1056 ----a-w- c:\program files\temp\Lemmings\STYLES\BRICK.DAT
2007-10-07 05:34 . 2007-10-07 05:56 262 ----a-w- c:\program files\temp\Lemmings\STYLES\BRICK.PAL
2007-10-07 05:34 . 2007-10-07 05:56 89318 ----a-w- c:\program files\temp\Lemmings\STYLES\BRICKB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 169152 ----a-w- c:\program files\temp\Lemmings\STYLES\BRICKOB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 244336 ----a-w- c:\program files\temp\Lemmings\MANUALS\DEUTSCH.PDF
2007-10-07 05:34 . 2007-10-07 05:56 244699 ----a-w- c:\program files\temp\Lemmings\MANUALS\ENGLISH.PDF
2007-10-07 05:34 . 2007-10-07 05:56 140358 ----a-w- c:\program files\temp\Lemmings\MANUALS\ESPAGNOL.PDF
2007-10-07 05:34 . 2007-10-07 05:56 256556 ----a-w- c:\program files\temp\Lemmings\MANUALS\FRANCAIS.PDF
2007-10-07 05:34 . 2007-10-07 05:56 144235 ----a-w- c:\program files\temp\Lemmings\MANUALS\ITALIANO.PDF
2007-10-07 05:34 . 2007-10-07 05:56 6016816 ----a-w- c:\program files\temp\Lemmings\MANUALS\ACROBAT\FRANCAIS.EXE
2007-10-07 05:34 . 2007-10-07 05:56 7695 ----a-w- c:\program files\temp\Lemmings\MUSIC\CANCANP.MID
2007-10-07 05:34 . 2007-10-07 05:56 16896 ----a-w- c:\program files\temp\Lemmings\LOADLVL.DLL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0066.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0067.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0070.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0071.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0072.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0073.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0074.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0075.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0076.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0077.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0080.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0081.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0082.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0083.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0084.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0085.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0086.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0087.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0090.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0091.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0092.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0093.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0094.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0095.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0096.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0097.LVL
2007-10-07 05:34 . 2007-10-07 05:56 5994880 ----a-w- c:\program files\temp\Lemmings\MANUALS\ACROBAT\DEUTSCH.EXE
2007-10-07 05:34 . 2007-10-07 05:56 5455526 ----a-w- c:\program files\temp\Lemmings\MANUALS\ACROBAT\ENGLISH.EXE
2007-10-07 05:34 . 2007-10-07 05:56 5963952 ----a-w- c:\program files\temp\Lemmings\MANUALS\ACROBAT\ESPAGNOL.EXE
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0042.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0043.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0044.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0045.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0046.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0047.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0050.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0051.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0052.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0053.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0054.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0055.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0056.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0057.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0060.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0061.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0062.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0063.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0064.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0065.LVL
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0076.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0077.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0080.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0081.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0082.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0083.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0084.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0085.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0086.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0087.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0090.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0091.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0092.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0093.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0094.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0095.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0096.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0097.BMP
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0000.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0001.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0002.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0003.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0004.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0005.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0006.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0007.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0010.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0011.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0012.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0013.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0014.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0015.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0016.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0017.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0020.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0021.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0022.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0023.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0024.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0025.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0026.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0027.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0030.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0031.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0032.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0033.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0034.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0035.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0036.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0037.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0040.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LVL0041.LVL
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0024.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0025.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0026.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0027.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0030.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0031.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0032.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0033.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0034.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0035.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0036.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0037.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0040.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0041.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0042.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0043.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0044.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0045.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0046.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0047.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0050.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0051.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0052.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0053.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0054.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0055.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0056.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0057.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0060.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0061.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0062.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0063.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0064.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0065.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0066.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0067.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0070.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0071.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0072.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0073.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0074.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0075.BMP
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1107.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1110.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1111.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1112.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1113.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1114.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1115.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1116.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1117.LVL
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0000.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0001.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0002.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0003.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0004.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0005.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0006.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0007.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0010.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0011.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0012.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0013.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0014.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0015.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0016.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0017.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0020.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0021.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0022.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\ORIG\LS0023.BMP
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1105.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1106.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1097.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1100.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1101.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1102.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1103.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1104.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1095.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1096.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1094.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1053.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1054.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1055.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1056.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1057.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1060.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1061.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1062.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1063.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1064.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1065.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1066.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1067.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1070.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1071.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1072.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1073.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1074.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1075.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1076.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1077.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1080.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1081.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1082.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1083.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1084.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1085.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1086.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1087.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1090.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1091.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1092.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1093.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1030.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1031.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1032.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1033.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1034.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1035.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1036.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1037.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1040.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1041.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1042.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1043.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1044.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1045.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1046.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1047.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1050.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1051.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1052.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1010.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1011.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1012.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1013.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1014.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1015.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1016.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1017.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1020.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1021.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1022.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1023.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1024.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1025.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1026.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1027.LVL
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1063.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1064.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1065.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1066.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1067.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1070.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1071.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1072.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1073.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1074.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1075.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1076.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1077.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1080.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1081.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1082.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1083.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1084.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1085.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1086.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1087.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1090.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1091.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1092.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1093.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1094.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1095.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1096.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1097.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1100.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1101.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1102.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1103.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1104.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1105.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1106.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1107.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1110.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1111.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1112.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1113.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1114.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1115.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1116.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1117.BMP
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1000.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1001.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1002.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1003.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1004.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1005.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1006.LVL
2007-10-07 05:34 . 2007-10-07 05:56 2048 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LVL1007.LVL
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1051.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1052.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1053.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1054.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1055.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1056.BMP
2007-10-07 05:34 . 2007-10-07 05:56 9078 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1057.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1060.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1061.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1062.BMP
2007-10-07 05:34 . 2007-10-07 05:56 59312 ----a-w- c:\program files\temp\Lemmings\LEMMINGS.HLP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1000.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1001.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1002.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1003.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1004.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1005.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1006.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1007.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1010.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1011.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1012.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1013.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1014.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1015.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1016.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1017.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1020.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1021.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1022.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1023.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1024.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1025.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1026.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1027.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1030.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1031.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1032.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1033.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1034.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1035.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1036.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1037.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1040.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1041.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1042.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1043.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1044.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1045.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1046.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1047.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4118 ----a-w- c:\program files\temp\Lemmings\LEVEL\OHNO\LS1050.BMP
2007-10-07 05:34 . 2007-10-07 05:56 766 ----a-w- c:\program files\temp\Lemmings\LEMMING.ICO
2007-10-07 05:34 . 2007-10-07 05:56 133120 ----a-w- c:\program files\temp\Lemmings\LEMMINGS.EXE
2007-10-07 05:34 . 2007-10-07 05:56 8628 ----a-w- c:\program files\temp\Lemmings\LEMMINGS.GID
2007-10-07 05:34 . 2007-10-07 05:56 19558 ----a-w- c:\program files\temp\Lemmings\GFX\LEMMING.BMP
2007-10-07 05:34 . 2007-10-07 05:56 27857 ----a-w- c:\program files\temp\Lemmings\GFX\LEMMSMA.SPR
2007-10-07 05:34 . 2007-10-07 05:56 28008 ----a-w- c:\program files\temp\Lemmings\GFX\LOGO.BMP
2007-10-07 05:34 . 2007-10-07 05:56 328758 ----a-w- c:\program files\temp\Lemmings\GFX\NOBOXLM.BMP
2007-10-07 05:34 . 2007-10-07 05:56 746038 ----a-w- c:\program files\temp\Lemmings\GFX\NOBOXLM2.BMP
2007-10-07 05:34 . 2007-10-07 05:56 1231 ----a-w- c:\program files\temp\Lemmings\GFX\RR.SPR
2007-10-07 05:34 . 2007-10-07 05:56 27122 ----a-w- c:\program files\temp\Lemmings\GFX\SLAPL.SPR
2007-10-07 05:34 . 2007-10-07 05:56 27099 ----a-w- c:\program files\temp\Lemmings\GFX\SLAPR.SPR
2007-10-07 05:34 . 2007-10-07 05:56 10198 ----a-w- c:\program files\temp\Lemmings\GFX\VSFX.BMP
2007-10-07 05:34 . 2007-10-07 05:56 10502 ----a-w- c:\program files\temp\Lemmings\GFX\VSFXBIG.SPR
2007-10-07 05:34 . 2007-10-07 05:56 2898 ----a-w- c:\program files\temp\Lemmings\GFX\VSFXSMA.SPR
2007-10-07 05:34 . 2007-10-07 05:56 107030 ----a-w- c:\program files\temp\Lemmings\GFX\WLEMLOGO.BMP
2007-10-07 05:34 . 2007-10-07 05:56 60278 ----a-w- c:\program files\temp\Lemmings\GFX\ICONS.BMP
2007-10-07 05:34 . 2007-10-07 05:56 4212 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_PAWS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 520 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_PLUS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 77621 ----a-w- c:\program files\temp\Lemmings\GFX\LEMMBIG.SPR
2007-10-07 05:34 . 2007-10-07 05:56 10810 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_FLOT.SPR
2007-10-07 05:34 . 2007-10-07 05:56 326 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_MINS.SPR
2007-10-07 05:34 . 2007-10-07 05:56 5990 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_NUKE.SPR
2007-10-07 05:34 . 2007-10-07 05:56 7463 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_BASH.SPR
2007-10-07 05:34 . 2007-10-07 05:56 6902 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_BILD.SPR
2007-10-07 05:34 . 2007-10-07 05:56 14360 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_BLOK.SPR
2007-10-07 05:34 . 2007-10-07 05:56 6425 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_BOMB.SPR
2007-10-07 05:34 . 2007-10-07 05:56 4029 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_CLIM.SPR
2007-10-07 05:34 . 2007-10-07 05:56 5859 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_DIG.SPR
2007-10-07 05:34 . 2007-10-07 05:56 11624 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_FF.SPR
2007-10-07 05:34 . 2007-10-07 05:56 162867 ----a-w- c:\program files\temp\Lemmings\GFX\ES.SPR
2007-10-07 05:34 . 2007-10-07 05:56 1030 ----a-w- c:\program files\temp\Lemmings\GFX\FE.PAL
2007-10-07 05:34 . 2007-10-07 05:56 112254 ----a-w- c:\program files\temp\Lemmings\GFX\FE.SPR
2007-10-07 05:34 . 2007-10-07 05:56 39686 ----a-w- c:\program files\temp\Lemmings\GFX\FEFONT.SPR
2007-10-07 05:34 . 2007-10-07 05:56 6880 ----a-w- c:\program files\temp\Lemmings\GFX\ICO_AXE.SPR
2007-10-07 05:34 . 2007-10-07 05:56 8256 ----a-w- c:\program files\temp\Lemmings\GFX\BLINK.SPR
2007-10-07 05:34 . 2007-10-07 05:56 8256 ----a-w- c:\program files\temp\Lemmings\GFX\BLINK2.SPR
2007-10-07 05:34 . 2007-10-07 05:56 8392 ----a-w- c:\program files\temp\Lemmings\GFX\BLINK3.SPR
2007-10-07 05:34 . 2007-10-07 05:56 1334 ----a-w- c:\program files\temp\Lemmings\GFX\DBCOLL.BMP
2007-10-07 05:34 . 2007-10-07 05:56 22070 ----a-w- c:\program files\temp\Lemmings\GFX\DIALOG.BMP
2007-10-07 05:34 . 2007-10-07 05:56 48 ----a-w- c:\program files\temp\Lemmings\AUTORUN.INF
2007-10-07 05:34 . 2007-10-07 05:56 10752 ----a-w- c:\program files\temp\Lemmings\FILEHAND.DLL
2007-10-07 05:34 . 2007-10-07 05:56 10240 ----a-w- c:\program files\temp\Lemmings\GAMEOVER.DLL
2007-10-03 13:44 . 2003-05-22 23:38 576512 ----a-w- c:\program files\temp\avifixed.exe
2007-10-01 14:32 . 2007-02-19 21:28 117974 ----a-r- c:\program files\temp\Gspot\GSpot27.dat
2007-10-01 14:32 . 2007-01-17 04:37 3615 ----a-r- c:\program files\temp\Gspot\license.txt
2007-10-01 14:32 . 2007-02-23 02:08 925696 ----a-w- c:\program files\temp\Gspot\GSpot.exe
2007-10-01 14:32 . 2007-01-17 04:37 10684 ----a-r- c:\program files\temp\Gspot\ExportFormat.txt
2007-09-28 18:40 . 2006-03-14 05:52 18321 ----a-w- c:\program files\temp\VirtualDub\copying
2007-09-28 18:40 . 2006-03-14 05:47 192 ----a-w- c:\program files\temp\VirtualDub\aviproxy\proxyoff.reg
2007-09-28 18:40 . 2006-03-14 05:47 192 ----a-w- c:\program files\temp\VirtualDub\aviproxy\proxyon.reg
2007-09-28 18:40 . 2006-03-14 05:47 1076 ----a-w- c:\program files\temp\VirtualDub\aviproxy\readme.txt
2007-09-28 18:40 . 2006-03-14 05:47 88 ----a-w- c:\program files\temp\VirtualDub\plugins\readme.txt
2007-09-28 18:40 . 2007-09-22 19:59 33792 ----a-w- c:\program files\temp\VirtualDub\auxsetup.exe
2007-09-28 18:40 . 2007-09-22 19:58 31232 ----a-w- c:\program files\temp\VirtualDub\vdremote.dll
2007-09-28 18:40 . 2007-09-22 19:58 25088 ----a-w- c:\program files\temp\VirtualDub\vdsvrlnk.dll
2007-09-28 18:40 . 2007-09-22 19:58 29696 ----a-w- c:\program files\temp\VirtualDub\vdicmdrv.dll
2007-09-28 18:40 . 2007-09-22 19:59 8704 ----a-w- c:\program files\temp\VirtualDub\vdub.exe
2007-09-28 18:40 . 2007-09-22 20:06 235533 ----a-w- c:\program files\temp\VirtualDub\VirtualDub.chm
2007-09-28 18:40 . 2007-09-22 20:01 199415 ----a-w- c:\program files\temp\VirtualDub\VirtualDub.vdi
2007-09-28 18:40 . 2007-09-22 20:01 944640 ----a-w- c:\program files\temp\VirtualDub\VirtualDub.exe
2007-09-23 11:35 . 2003-04-23 02:02 135168 ----a-w- c:\program files\temp\AVIPreview.exe
2007-09-20 08:54 . 2007-09-20 23:05 2526347264 ----a-w- c:\program files\temp\DS2.iso
2007-09-19 21:47 . 2004-05-18 05:29 455 ----a-w- c:\program files\temp\Alcohol_120_Percent_v1.9.2_build_1705_by_Revenge\file_id.diz
2007-09-19 21:47 . 2004-05-18 05:25 164 ----a-w- c:\program files\temp\Alcohol_120_Percent_v1.9.2_build_1705_by_Revenge\Register.reg
2007-09-19 21:47 . 2004-05-18 05:29 12157 ----a-w- c:\program files\temp\Alcohol_120_Percent_v1.9.2_build_1705_by_Revenge\REVENGE.nfo
2007-09-19 21:47 . 2004-05-18 05:23 1372160 ----a-w- c:\program files\temp\Alcohol_120_Percent_v1.9.2_build_1705_by_Revenge\Alcohol.ExE
2007-09-19 21:46 . 2004-12-12 06:07 3649386 ----a-w- c:\program files\temp\Alcohol120_trial_1_9_2_1705.exe
2007-09-14 12:48 . 2006-07-26 02:26 484051008 ----a-w- c:\program files\temp\rld-civw\rld-civw.bin
2007-09-14 12:48 . 2006-07-26 02:26 74 ----a-w- c:\program files\temp\rld-civw\rld-civw.cue
2007-09-14 12:44 . 2005-12-06 05:06 1446178816 ----a-w- c:\program files\temp\rld-civ4\rld-civ4.iso
2007-09-12 15:43 . 2007-09-12 23:30 696 ----a-w- c:\program files\temp\rld-civ4.sfv
2007-09-12 15:43 . 2007-09-12 16:34 736 ----a-w- c:\program files\temp\rld-civw.sfv


((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"updateMgr"="c:\program files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [2006-03-30 313472]
"ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360]
"AlcoholAutomount"="c:\program files\Alcohol Soft\Alcohol 120\axcmd.exe" [2004-05-06 220672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Recguard"="c:\windows\SMINST\RECGUARD.EXE" [2004-04-15 233472]
"NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2006-10-22 86016]
"NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2006-10-22 7700480]
"LSBWatcher"="c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe" [2004-10-15 253952]
"ISUSPM Startup"="c:\progra~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" [2004-04-18 196608]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2004-08-21 155648]
"hpsysdrv"="c:\windows\system\hpsysdrv.exe" [1998-05-07 52736]
"AVG8_TRAY"="c:\progra~1\AVG\AVG8\avgtray.exe" [2009-05-02 1947928]
"Ad-Watch"="c:\program files\Lavasoft\Ad-Aware\AAWTray.exe" [2009-07-05 520024]
"nwiz"="nwiz.exe" - c:\windows\system32\nwiz.exe [2006-10-22 1622016]
"AlcxMonitor"="ALCXMNTR.EXE" - c:\windows\ALCXMNTR.EXE [2004-09-08 57344]
"AlcWzrd"="ALCWZRD.EXE" - c:\windows\ALCWZRD.EXE [2004-07-29 2551808]
"AGRSMMSG"="AGRSMMSG.exe" - c:\windows\AGRSMMSG.exe [2004-06-30 88363]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoRecentDocsNetHood"= 01000000
"NoSMMyDocs"= 01000000
"NoSMMyPictures"= 01000000
"NoNetworkConnections"= 01000000
"NoStrCmpLogical"= 01000000

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
"{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
2009-03-24 03:31 356352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.DLL

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\avgrsstarter]
2009-05-02 14:36 11952 ----a-w- c:\windows\system32\avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"midi"=mapledxp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Lavasoft Ad-Aware Service]
@="Service"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"WMPNetworkSvc"=3 (0x3)
"MDM"=2 (0x2)
"aawservice"=3 (0x3)

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"RegistryCleanerPro"=c:\program files\iXi Tools\Registry Cleaner Pro\RegistryCleanerPro.exe -t
"Uniblue RegistryBooster 2"=c:\program files\Uniblue\RegistryBooster 2\RegistryBooster.exe /S

[HKEY_LOCAL_MACHINE\software\microsoft\security center]
"UpdatesDisableNotify"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"c:\\Program Files\\burst\\core-new1.1.3\\btdownloadheadless.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Firaxis Games\\Sid Meier's Civilization 4\\Civilization4.exe"=
"c:\\Program Files\\Firaxis Games\\Sid Meier's Civilization 4\\Warlords\\Civ4Warlords.exe"=
"c:\\Program Files\\Firaxis Games\\Sid Meier's Civilization 4\\Warlords\\Civ4Warlords_PitBoss.exe"=
"c:\\Program Files\\Microsoft Games\\Dungeon Siege 2\\DungeonSiege2.exe"=
"c:\\Program Files\\Windows Media Player\\wmplayer.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgupd.exe"=
"c:\\Program Files\\AVG\\AVG8\\avgnsx.exe"=
"c:\\Program Files\\The KMPlayer\\KMPlayer.exe"=

R0 Lbd;Lbd;c:\windows\system32\drivers\Lbd.sys [5/7/2009 12:42 AM 64160]
R1 AvgLdx86;AVG Free AVI Loader Driver x86;c:\windows\system32\drivers\avgldx86.sys [4/26/2009 6:17 PM 325896]
R1 AvgTdiX;AVG Free8 Network Redirector;c:\windows\system32\drivers\avgtdix.sys [4/26/2009 6:17 PM 108552]
R1 mapledxp;mapledxp;c:\windows\system32\drivers\mapledxp.sys [5/3/2009 11:02 PM 24720]
R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\SASDIFSV.SYS [8/19/2008 11:34 PM 9968]
R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [8/19/2008 11:34 PM 55024]
R2 avg8emc;AVG Free8 E-mail Scanner;c:\progra~1\AVG\AVG8\avgemc.exe [4/26/2009 6:17 PM 908568]
R2 avg8wd;AVG Free8 WatchDog;c:\progra~1\AVG\AVG8\avgwdsvc.exe [4/26/2009 6:17 PM 298776]
S3 Lavasoft Ad-Aware Service;Lavasoft Ad-Aware Service;c:\program files\Lavasoft\Ad-Aware\AAWService.exe [3/9/2009 2:06 PM 1029456]
S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [8/19/2008 11:34 PM 7408]
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://google.com/
.

**************************************************************************

catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2009-07-06 16:53
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

- - - - - - - > 'winlogon.exe'(752)
c:\program files\SUPERAntiSpyware\SASWINLO.DLL

- - - - - - - > 'explorer.exe'(2664)
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\nvsvc32.exe
c:\program files\AVG\AVG8\avgrsx.exe
c:\progra~1\AVG\AVG8\avgnsx.exe
c:\program files\AVG\AVG8\avgcsrvx.exe
c:\windows\system32\wscntfy.exe
.
**************************************************************************
.
Completion time: 2009-07-06 16:56 - machine was rebooted
ComboFix-quarantined-files.txt 2009-07-06 21:56
ComboFix2.txt 2009-07-06 06:11
ComboFix3.txt 2009-04-26 23:07
ComboFix4.txt 2009-04-26 22:57
ComboFix5.txt 2009-07-06 21:04

Pre-Run: 27,665,088,512 bytes free
Post-Run: 27,660,271,616 bytes free

Current=2 Default=2 Failed=1 LastKnownGood=4 Sets=,1,2,3,4
904 --- E O F --- 2009-04-30 13:02

#9 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,681 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:02:42 AM

Posted 07 July 2009 - 07:47 AM

Heya Jeffso,

c:\program files\temp\The_Sims_2_Glamour_Life_Stuff_Addon_Crackfix-Razor1911\Sims2SP2.exe
c:\program files\temp\ccd-s2ob\Crack\Crack info.nfo
c:\program files\temp\The Sims 2 Seasons\keygen.exe


The practice of using cracking tools, keygens, warez or any pirated software is not only considered illegal activity but it is a serious security risk.

Cracking applications are used for illegally breaking (cracking) various copy-protection and registration techniques used in commercial software. These programs may be distributed via Web sites, Usenet, and P2P networks.

http://www.trendmicro.com/vinfo/grayware/v...=CRCK_KEYGEN.BB

...warez and crack web pages are being used by cybercriminals as download sites for malware related to VIRUT and VIRUX. Searches for serial numbers, cracks, and even antivirus products like Trend Micro yield malcodes that come in the form of executables or self-extracting files...quick links in these sites also lead to malicious files. Ads and banners are also infection vectors...

http://blog.trendmicro.com/crack-sites-dis...rux-and-fakeav/


When you use these kind of programs, be forewarned that some of the worst types of malware infections can be contracted and spread by visiting crack, keygen, warez and other pirated software sites. In many cases, those sites are infested with a lot of malware and an increasing source of system infection. Those who attempt to get software for free can end up with a computer system so badly damaged that recovery is not possible and it cannot be repaired. When that happens there is nothing you can do besides reformatting and reinstalling the OS.


If you still need assistance please remove all cracked software from your system. Namely the The Sims 2 and all add-ons.

If you only use Alcohol120% for illegal purposes I would advise you, to remove it from your system. If you think you still need Alcohol120% I would advise to try to remove and reinstall it.
If you are unsure of how remove Programs, the please see this tutorial: How To Remove An Installed Program From Your Computer

You also have outdated software on your PC, old software has known security holes, which are exploited to get malware onto your system without your interaction. The Pirate Bay has been showing infectious banners before, so I would advise that you stay clear of it, until we have finished cleaning you up.

I'd like us to scan your machine with ESET OnlineScan
  • Hold down Control and click on the following link to open ESET OnlineScan in a new window.
    ESET OnlineScan
  • Click the Posted Image button.
  • For alternate browsers only: (Microsoft Internet Explorer users can skip these steps)
    • Click on Posted Image to download the ESET Smart Installer. Save it to your desktop.
    • Double click on the Posted Image icon on your desktop.
  • Check Posted Image
  • Click the Posted Image button.
  • Accept any security warnings from your browser.
  • Check Posted Image
  • Push the Start button.
  • ESET will then download updates for itself, install itself, and begin scanning your computer. Please be patient as this can take some time.
  • When the scan completes, push Posted Image
  • Push Posted Image, and save the file to your desktop using a unique name, such as ESETScan. Include the contents of this report in your next reply.
  • Push the Posted Image button.
  • Push Posted Image
Finally please run the following scan with systemlook:

Please download SystemLook from jpshortstuff and save it to your Desktop
Download Mirror #1
Download Mirror #2
  • Double-click the SystemLook and copy/paste the following into the box
    :dir
    C:\program files\temp
  • Hit the Look button. Let it finish the scan
  • A log will then pop-up to your Desktop.. Post the content of the log here in your next reply
Please post back the log from eset and systemlook along with any remaining problem in your next reply.

regards _temp_
If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!


Follow BleepingComputer on: Facebook | Twitter | Google+

#10 Jeffso

Jeffso
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:42 PM

Posted 08 July 2009 - 12:30 AM

SystemLook v1.0 by jpshortstuff (22.05.09)
Log created at 00:22 on 08/07/2009 by Compaq_Owner (Administrator - Elevation successful)

========== dir ==========

C:\program files\temp - Parameters: "(none)"

---Files---
Alcohol120_trial_1_9_2_1705.exe --a--- 3649386 bytes [13:35 07/07/2009] [06:07 12/12/2004]
avifixed.exe --a--- 576512 bytes [13:33 07/07/2009] [23:38 22/05/2003]
AVIPreview.exe --a--- 135168 bytes [13:33 07/07/2009] [02:02 23/04/2003]
FolderBackgrounds.exe --a--- 2201781 bytes [13:35 07/07/2009] [14:28 12/10/2007]
TweakUiPowertoySetup.exe --a--- 150192 bytes [13:27 07/07/2009] [13:21 12/10/2007]

---Folders---
Eraser57Setup d----- [13:28 07/07/2009]
Gspot d----- [13:28 07/07/2009]
Lemmings d----- [13:28 07/07/2009]
VirtualDub d----- [13:35 07/07/2009]

-=End Of File=-

---------------------------------

Here is the ESETscan:



C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\InternetSpeedMonitor.zip Win32/Bagle.gen.zip worm cleaned by deleting - quarantined
C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\Virtumondesdn2.zip Win32/Bagle.gen.zip worm cleaned by deleting - quarantined
C:\Program Files\Image-Line\FL Studio 8\Plugins\Fruity\Generators\Toxic Biohazard\Toxic Biohazard.dll probably a variant of Win32/Delf trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP2\A0000033.ini Win32/Adware.Virtumonde.NEO application cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP2\A0000034.ini Win32/Adware.Virtumonde.NEO application cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP38\A0009809.exe Win32/Adware.SpyProtector.M application cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP38\A0009815.dll Win32/Tinxy.AF trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP38\A0009833.exe Win32/Adware.SpyProtector.M application cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP41\A0010089.exe a variant of Win32/Kryptik.WY trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP41\A0010091.exe Win32/TrojanDownloader.Small.OQC trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP41\A0010094.exe a variant of Win32/Injector.HB trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP41\A0010118.dll Win32/TrojanDownloader.Small.NTQ trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP41\A0010120.exe a variant of Win32/Kryptik.SM trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP42\A0013189.sys Win32/Rootkit.Agent.NMM trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP42\A0013220.exe a variant of Win32/Kryptik.CY trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP42\A0013221.exe a variant of Win32/Kryptik.WZ trojan cleaned by deleting - quarantined
C:\System Volume Information\_restore{71CD564C-DFCF-4E26-881D-D113F8018F35}\RP45\A0014432.dll probably a variant of Win32/Delf trojan cleaned by deleting - quarantined


--------------------


I still have the weird error on startup.

Here it is exactly:

There is none Alcohol device(s) in your system.
Please execute the Alcohol and adjust the number of virtual devices to be more than one.

It just pops up and I click OK and that seems to be all that happens.

By the way I uninstalled and deleted The Sims for you.

#11 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,681 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:02:42 AM

Posted 09 July 2009 - 03:50 AM

Hi Jeffso,

unfortunately ESET has deleted part of a legit plugin:

C:\Program Files\Image-Line\FL Studio 8\Plugins\Fruity\Generators\Toxic Biohazard\Toxic Biohazard.dll


We need to restore that file, for the plugin to work correctly:
restoring files from quarantine
  • Please go to the folder C:\Program files\Eset\Eset Online Scanner and double click OnlineScannerApp.exe
  • This will open the window from the online scanner. Click start and let the scan run through.
  • Once it finishes. Click on manage quarantine
  • A list of files will open, select the following file and click restore

    C:\Program Files\Image-Line\FL Studio 8\Plugins\Fruity\Generators\Toxic Biohazard\Toxic Biohazard.dll

  • click < and finish to exit the online scan
Now let's get your PC more secure.

Your log indicates that you do not use a Firewall. Please Use a Firewall - I can not stress how important it is that you usea Firewall on your computer. Without a firewall your computer is succeptible to being hacked and taken over. I am very serious about this and see it happen almost every day with my clients. Simply using a Firewall in its default configuration can lower your risk greatly.
For more information see this tutorial on firewalls: Link

You also have some outdated software on your PC, that we need to remove:
Go to Start > Control Panel > Add or Remove Programs.

Remove the following programs, if they are present.
  • Adobe Reader 7.0.9
  • Java 2 Runtime Environment, SE v1.4.2_03
  • Java™ 6 Update 3
  • Java™ 6 Update 5
  • Java™ 6 Update 7
If you are unsure of how to use Add or Remove Programs, the please see this tutorial:
How To Remove An Installed Program From Your Computer

Please reboot your PC after uninstalling these programs.

Afterwards you can install the newest versions from their official websites:
Please follow these steps to update:
  • Download the latest version of Java Runtime Environment (JRE) Version 6 and save it to your desktop.
  • Look for "Java Runtime Environment (JRE)" JRE 6 Update 14.
  • Click the Download button to the right.
  • Select your Platform: "Windows".
  • Select your Language: "Multi-language".
  • Read the License Agreement, and then check the box that says: "Accept License Agreement".
  • Click Continue and the page will refresh.
  • Under Required Files, check the box for Windows Offline Installation, click the link below it and save the file to your desktop.
  • Then from your desktop double-click on jre-6u12-windows-i586-p.exe to install the newest version.
-- If using Windows Vista and the installer refuses to launch due to insufficient user permissions, then Run As Administrator.
-- If you choose to update via the Java applet in Control Panel, uncheck the option to install the Toolbar unless you want it.
-- The uninstaller incorporated in this release removes previous Updates 10 and above, but does not remove older versions, so they still need to be removed manually.


Note: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications. To disable the JQS service if you don't want to use it, go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter. Click Ok and reboot your computer.


To install the Adobe Acrobat Reader please go to: Adobe
Untick any proposed additional downloads, eg the google toolbar, unless you really want them.
click download to start the installation and follow their instructions.


Once you have installed the firewall and brought your programs up to date, please visite the pirate bay and tell us if you still experience any problems.


I have had a closer look at your problem with Alcohol120%. It seems that it may not be caused by Alcohol itself, but by a program called sptd, that Alcohol uses.
  • To remove SPTD, simply download SPTD setup file "SPTDinst-v159-x86.exe" and execute it.
  • In the dialog that appears press "Uninstall" to remove SPTD.
  • reboot
  • To install it again execute the same setup file and press "Install".
  • reboot and see if the problem persists.
If that does not help, I would advise that you seek out help on Acohol-Soft's support forum once I give you the all clear, as they will know the program better than I do.


I also noticed the presence of a couple of registry cleaners and tweaking tools on your Pc and wanted to give you my opinion.

I don't personally recommend the use of ANY registry cleaners.
Here is an excerpt from a discussion on regcleaners

Most reg cleaners aren't "bad" as such, but they aren't perfect and even the best have been known to cause problems.
The point we are trying to make is that the risk of using one far outweighs any benefit.
If it does work perfectly you will not see any difference
If it doesn't work properly you may end up with an expensive doorstop.


For more information have a look at these links:
http://miekiemoes.blogspot.com/2008/02/reg...weaking_13.html
http://forums.whatthetech.com/Regcleaner_t42862.html
regards _temp_
If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!


Follow BleepingComputer on: Facebook | Twitter | Google+

#12 Jeffso

Jeffso
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:42 PM

Posted 09 July 2009 - 03:21 PM

First, I wasn't using FL Studio very much anyway so I just uninstalled it.
Next I was using Windows Firewall, but now have installed ZoneAlarm.
Updated Java and Adobe.
Did the SPTD thing. Error still shows up on reboot. I don't think it actually has anything to do with Alcohol directly. This happened a couple years ago as well. I got rid of it then, but I don't remember how.
Visited TPB a few times and no problems so far.

I guess that is it unless you have any other suggestions.
If not, thanks for the help.

#13 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,681 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:02:42 AM

Posted 09 July 2009 - 06:26 PM

Heya Jeffso,

we still need to remove all that stuff we made you download and I have a couple of advices and suggestions left ;)

Please uninstall ESET Online Scanner using Add/Remove

Afterwards please do the following to remove the remaining programs from your PC:
  • Delete the tools used during the disinfection:
    • Download OTC from the following mirror and save it to your desktop:
    • Mirror
  • Double click on Posted Image
  • Push the large "Cleanup" button.
  • Allow your system to reboot.
Please read these advices, in order to prevent reinfecting your PC:
  • Install and update the following programs regularly:
    • an outbound firewall
      A comprehensive tutorial and a list of possible firewalls can be found here.
    • an AntiVirus Software
      It is imperative that you update your AntiVirus Software on regular basis.If you do not update your AntiVirus Software then it will not be able to catch the latest threats.
    • an Anti-Spyware program
      Malware Byte's Anti Malware is an excellent Anti-Spyware scanner. It's scan times are usually under ten minutes, and has excellent detection and removal rates.
      SUPERAntiSpyware is another good scanner with high detection and removal rates.
      Both programs are free for non commercial home use but provide a resident and do not nag if you purchase the paid versions.
    • Spyware Blaster
      A tutorial for Spywareblaster can be found here. If you wish, the commercial version provides automatic updating.
    • MVPs hosts file
      A tutorial for MVPs hosts file can be found here. If you would like automatic updates you might want to take a look at HostMan host file manager. For more information on thehosts file, and what it can do for you,please consult the Tutorial on the Hosts file
  • Keep Windows (and your other Microsoft software) up to date!
    I cannot stress how important this is enough. Often holes are found in Internet Explorer or Windows itself that require patching. Sometimes these holeswill allow an attacker unrestricted access to your computer.
    Therefore, please, visit the Microsoft Update Website and follow the on screen instructions to setup Microsoft Update. Also follow the instructions to update your system. Please REBOOT and repeat this process until there are no more updates to install!!
  • Keep your other software up to date as well
    Software does not need to be made by Microsoft to be insecure. You can use the Secunia Online Software occasionally to help you check for out of date software on yourmachine.
  • Stay up to date!
    The MOST IMPORTANT part of any security setup is keeping the software up to date. Malware writers release new variantsevery single day. If your software updates don't keep up, then the malware will always be one step ahead. Not a good thing :).
Some more links you might find of interest:Have a nice day

regards _temp_
If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!


Follow BleepingComputer on: Facebook | Twitter | Google+

#14 Jeffso

Jeffso
  • Topic Starter

  • Members
  • 8 posts
  • OFFLINE
  •  
  • Local time:08:42 PM

Posted 09 July 2009 - 10:41 PM

Thanks.

#15 myrti

myrti

    Sillyberry


  • Malware Study Hall Admin
  • 33,681 posts
  • OFFLINE
  •  
  • Gender:Female
  • Location:At home
  • Local time:02:42 AM

Posted 10 July 2009 - 03:29 AM

You'r very welcome. :thumbup2:

regards _temp_
If I have been helping you and haven't replied in 2 days, feel free to shoot me a PM! Please don't send help request via PM, unless I am already helping you. Use the forums!


Follow BleepingComputer on: Facebook | Twitter | Google+




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users