Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Slow Computer and Startup, Think I might be infected


  • Please log in to reply
9 replies to this topic

#1 HitmanB

HitmanB

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:48 AM

Posted 04 October 2009 - 05:02 AM

I got this computer from my father about 2 years ago, and it's been running progressively slower and slower. Here's the HiJack this log:


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:14:35, on 04.10.2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP3 (6.00.2900.5512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\system32\emaudsv.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Java\jre6\bin\jqs.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\bin\mysqld-nt.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\winlogon.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
c:\program files\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Hewlett-Packard\ToolBoxFX\bin\HPTLBXFX.exe
C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Creative Professional\E-MU USB Audio\EmuUsbAudioCP.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\explorer.exe
C:\Program Files\uTorrent\uTorrent.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.zoznam.sk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
R3 - URLSearchHook: (no name) - - (no file)
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\deSrcAs.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [ToolBoxFX] "C:\Program Files\Hewlett-Packard\ToolBoxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [Adobe Version Cue CS2] C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\McAgent.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [E-MU USB Audio Control Panel] "C:\Program Files\Creative Professional\E-MU USB Audio\EmuUsbAudioCP.exe"
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [BitComet] "C:\Program Files\BitComet\BitComet.exe" /tray
O4 - HKCU\..\Run: [uTorrent] "C:\Program Files\uTorrent\uTorrent.exe"
O4 - HKUS\S-1-5-21-2170964108-1077730282-688275805-1007\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup (User 'Samo')
O4 - HKUS\S-1-5-21-2170964108-1077730282-688275805-1008\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup (User 'Mamina')
O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll/206 (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Adobe Version Cue CS2 - Adobe Systems Incorporated - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: E-MU Audio Service (emaudsv) - E-MU Systems - C:\WINDOWS\system32\emaudsv.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: WLANKEEPER - IntelŪ Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

--
End of file - 14658 bytes


Thanks in advance

BC AdBot (Login to Remove)

 


#2 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:11:48 AM

Posted 22 October 2009 - 07:06 AM

Hello HitmanB

Welcome to BleepingComputer :(
==========================
  • Download OTL to your desktop.
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • When the window appears, underneath Output at the top change it to Minimal Output.
  • Under the Standard Registry box change it to All.
  • Check the boxes beside LOP Check and Purity Check.
  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply.
===========
Download This file. Note its name and save it to your root folder, such as C:\.
  • Disconnect from the Internet and close all running programs.
  • Temporarily disable any real-time active protection so your security program drivers will not conflict with this file.
  • Click on this link to see a list of programs that should be disabled.
  • Double-click on the downloaded file to start the program. (If running Vista, right click on it and select "Run as an Administrator")
  • Allow the driver to load if asked.
  • You may be prompted to scan immediately if it detects rootkit activity.
  • If you are prompted to scan your system click "Yes" to begin the scan.
  • If not prompted, click the "Rootkit/Malware" tab.
  • On the right-side, all items to be scanned should be checked by default except for "Show All". Leave that box unchecked.
  • Select all drives that are connected to your system to be scanned.
  • Click the Scan button to begin. (Please be patient as it can take some time to complete)
  • When the scan is finished, click Save to save the scan results to your Desktop.
  • Save the file as Results.log and copy/paste the contents in your next reply.
  • Exit the program and re-enable all active protection when done.

Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#3 HitmanB

HitmanB
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:48 AM

Posted 11 November 2009 - 07:06 AM

Thanks for writing back :( Sorry for the long time between the reply, but I had no idea somebody would reply.

I did both scans, but the OTL didn't have an Extra.txt file, I did the scan 3 times total.

The GMER program was done twice, but each time my computer completely froze up and I had to shut down (right after it was finished. But I did manage to save a log.

If you need any more info about my computer just ask:


GMER:

GMER 1.0.15.15163 - http://www.gmer.net
Rootkit scan 2009-11-10 21:06:42
Windows 5.1.2600 Service Pack 3
Running: 4sgjjorw.exe; Driver: C:\DOCUME~1\Stevo\LOCALS~1\Temp\uxtdypob.sys


---- System - GMER 1.0.15 ----

SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwCreateFile [0xF7A1B53C]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwCreateKey [0xF7A1D678]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwCreateThread [0xF7A1E534]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwDeleteKey [0xF7A1DD71]
SSDT \??\C:\Program Files\Symantec\SYMEVENT.SYS (Symantec Event Library/Symantec Corporation) ZwDeleteValueKey [0xEE3D9CB0]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwFsControlFile [0xF7A1B55E]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwOpenFile [0xF7A1B51E]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwOpenKey [0xF7A1D644]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwOpenSection [0xF7A1D0B3]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwProtectVirtualMemory [0xF7A1D452]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwReadVirtualMemory [0xF7A1D42F]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwRequestWaitReplyPort [0xF7A1C7C8]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwSetContextThread [0xF7A1E9B4]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwSetSystemInformation [0xF7A1E1F7]
SSDT \??\C:\Program Files\Symantec\SYMEVENT.SYS (Symantec Event Library/Symantec Corporation) ZwSetValueKey [0xEE3D9F10]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwSuspendProcess [0xF7A1D475]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwSuspendThread [0xF7A1E9F2]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwTerminateProcess [0xF7A1D410]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwTerminateThread [0xF7A1E9D3]
SSDT \??\C:\WINDOWS\system32\drivers\procguard.sys (ProcessGuard Driver/DiamondCS) ZwWriteVirtualMemory [0xF7A1D3ED]

---- Kernel code sections - GMER 1.0.15 ----

.text ntoskrnl.exe!_abnormal_termination + 3A0 804E29FC 4 Bytes JMP 4EAF21A2

---- User code sections - GMER 1.0.15 ----

.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!??2@YAPAXI@Z 77C29CC5 5 Bytes JMP 0A90D480 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!??3@YAXPAX@Z 77C29CDD 5 Bytes JMP 0A90D2D0 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!?set_new_handler@@YAP6AXXZP6AXXZ@Z 77C29D9F 5 Bytes JMP 0A90D500 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_aligned_offset_malloc 77C29DAF 5 Bytes JMP 0A90D3E0 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_aligned_free 77C29E33 5 Bytes JMP 0A90D2D0 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_aligned_malloc 77C29E52 5 Bytes JMP 0A90D3C0 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_aligned_offset_realloc 77C29E6E 5 Bytes JMP 0A90D420 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_aligned_realloc 77C29FC6 5 Bytes JMP 0A90D400 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_expand 77C29FE5 5 Bytes JMP 0A90D3A0 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_heapadd 77C2BC9F 5 Bytes JMP 0A90D550 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_heapchk 77C2BCB3 5 Bytes JMP 0A90D560 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_heapset + 1 77C2BD83 4 Bytes JMP 0A90D581 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_heapmin 77C2BD8C 5 Bytes JMP 0A90D650 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_heapused 77C2BE3A 5 Bytes JMP 0A90D620 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_heapwalk 77C2BE4D 5 Bytes JMP 0A90D590 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!_msize 77C2BF6C 5 Bytes JMP 0A90D2E0 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!calloc 77C2C0C3 5 Bytes JMP 0A90D270 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!free 77C2C21B 5 Bytes JMP 0A90D2D0 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!malloc 77C2C407 5 Bytes JMP 0A90D230 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe[936] msvcrt.dll!realloc 77C2C437 5 Bytes JMP 0A90D2B0 C:\Program Files\Adobe\Adobe Version Cue CS2\bin\SHSMP.DLL (Memory Management Library for Win32/MicroQuill Software Publishing, Inc.)
.text C:\Program Files\ProcessGuard\procguard.exe[3280] ntdll.dll!DbgUiRemoteBreakin 7C951E13 1 Byte [C3]

---- Devices - GMER 1.0.15 ----

AttachedDevice \FileSystem\Ntfs \Ntfs naiavf5x.sys (Anti-Virus File System Filter Driver/McAfee Inc.)
AttachedDevice \FileSystem\Ntfs \Ntfs SYMEVENT.SYS (Symantec Event Library/Symantec Corporation)
AttachedDevice \Driver\Tcpip \Device\Ip MpFirewall.sys (McAfee Personal Firewall Driver/McAfee)
AttachedDevice \Driver\Tcpip \Device\Ip ntoskrnl.exe (NT Kernel & System/Microsoft Corporation)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass0 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Kbdclass \Device\KeyboardClass1 SynTP.sys (Synaptics Touchpad Driver/Synaptics, Inc.)
AttachedDevice \Driver\Tcpip \Device\Tcp MpFirewall.sys (McAfee Personal Firewall Driver/McAfee)
AttachedDevice \Driver\Tcpip \Device\Tcp ntoskrnl.exe (NT Kernel & System/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\Udp MpFirewall.sys (McAfee Personal Firewall Driver/McAfee)
AttachedDevice \Driver\Tcpip \Device\Udp ntoskrnl.exe (NT Kernel & System/Microsoft Corporation)
AttachedDevice \Driver\Tcpip \Device\RawIp MpFirewall.sys (McAfee Personal Firewall Driver/McAfee)
AttachedDevice \Driver\Tcpip \Device\RawIp ntoskrnl.exe (NT Kernel & System/Microsoft Corporation)

Device \FileSystem\Fastfat \Fat EB253D20

AttachedDevice \FileSystem\Fastfat \Fat fltmgr.sys (Microsoft Filesystem Filter Manager/Microsoft Corporation)
AttachedDevice \FileSystem\Fastfat \Fat SYMEVENT.SYS (Symantec Event Library/Symantec Corporation)

Device \FileSystem\Fs_Rec \FileSystem\UdfsCdRomRecognizer tfsnifs.sys (Drive Letter Access Component/Sonic Solutions)
Device \FileSystem\Fs_Rec \FileSystem\CdfsRecognizer tfsnifs.sys (Drive Letter Access Component/Sonic Solutions)
Device \FileSystem\Fs_Rec \FileSystem\FatCdRomRecognizer tfsnifs.sys (Drive Letter Access Component/Sonic Solutions)
Device \FileSystem\Fs_Rec \FileSystem\FatDiskRecognizer tfsnifs.sys (Drive Letter Access Component/Sonic Solutions)
Device \FileSystem\Fs_Rec \FileSystem\UdfsDiskRecognizer tfsnifs.sys (Drive Letter Access Component/Sonic Solutions)
Device \FileSystem\Cdfs \Cdfs tfsnifs.sys (Drive Letter Access Component/Sonic Solutions)

---- Files - GMER 1.0.15 ----

File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CARD1A.TIF 9415 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CARD1B.TIF 13793 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CARD1C.TIF 19933 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK1A.TIF 11583 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK1B.TIF 16653 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK1C.TIF 39825 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK2A.TIF 11699 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK2B.TIF 21448 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK2C.TIF 41211 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK3A.TIF 14017 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK3B.TIF 22771 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK3C.TIF 35655 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK4A.TIF 7281 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK4B.TIF 7669 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK4C.TIF 10019 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK5A.TIF 6349 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK5B.TIF 7918 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK5C.TIF 9671 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK6A.TIF 5117 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK6C.TIF 12104 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR1A.TIF 3451 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR1B.TIF 5755 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR1C.TIF 22097 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR2A.TIF 5714 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR2B.TIF 7176 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR2C.TIF 8899 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR3A.TIF 6259 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR3B.TIF 8592 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR3C.TIF 13285 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR4A.TIF 6892 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR4B.TIF 8666 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR4C.TIF 9618 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR5A.TIF 7792 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR5B.TIF 8298 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR5C.TIF 10281 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR6A.TIF 13458 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR8A.TIF 12976 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR8B.TIF 17858 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR9A.TIF 9073 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR9B.TIF 10988 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR9C.TIF 13659 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHIK1A.TIF 11889 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHIK1B.TIF 19973 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHIK1C.TIF 40674 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHIK1D.TIF 43801 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CLTH1A.TIF 26341 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CLTH1B.TIF 14615 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CLTH1C.TIF 21832 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT1A.TIF 11201 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT1B.TIF 14099 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT1C.TIF 16782 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT2A.TIF 7538 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT3A.TIF 12709 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT4A.TIF 12063 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT5A.TIF 13298 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT6A.TIF 18686 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT7A.TIF 11675 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT7B.TIF 15839 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CONT7C.TIF 20392 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\COURIERA.TIF 102074 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\COURIERB.TIF 102074 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\COURIERC.TIF 102146 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY1A.TIF 6419 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY1B.TIF 8524 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY1C.TIF 9641 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY2A.TIF 8092 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY2B.TIF 10281 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY3A.TIF 7248 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY3B.TIF 10610 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY3C.TIF 14738 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY4A.TIF 13700 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY5A.TIF 10779 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY6A.TIF 14144 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING1A.TIF 5813 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING1B.TIF 11736 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING1C.TIF 12954 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING2A.TIF 6510 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING2B.TIF 7696 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING2C.TIF 9058 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING3A.TIF 6170 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING3B.TIF 8909 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FING3C.TIF 8662 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FLWR1A.TIF 11494 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FLWR1B.TIF 24857 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FLWR1C.TIF 28510 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FLWR2A.TIF 16235 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FLWR3B.TIF 20011 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FLWR3C.TIF 27832 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FLWR4A.TIF 20666 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM1A.TIF 25075 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM1B.TIF 28699 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM1C.TIF 22720 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM2A.TIF 2567 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM2B.TIF 4694 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM2C.TIF 7273 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM3A.TIF 1453 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM3B.TIF 1532 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM3C.TIF 1469 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM4A.TIF 1892 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM4B.TIF 2016 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM4C.TIF 2035 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM5A.TIF 1483 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM5B.TIF 1628 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM5C.TIF 1748 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM6A.TIF 1415 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM6C.TIF 1510 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM7A.TIF 5098 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM7B.TIF 8217 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM7C.TIF 13209 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM7D.TIF 16376 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF1A.TIF 6282 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF1B.TIF 9139 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF1C.TIF 18088 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF2A.TIF 8086 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF2B.TIF 11933 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF2C.TIF 12848 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF3A.TIF 10093 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF3B.TIF 11750 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GLYF3C.TIF 10679 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GRAS1A.TIF 11752 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GRAS1B.TIF 14909 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GRAS1C.TIF 16564 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GRAS1D.TIF 19597 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\INKY1A.TIF 14285 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAK6B.TIF 7754 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CHAR8C.TIF 14993 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\CRAY2C.TIF 16782 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\FLWR3A.TIF 9311 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\GEOM6B.TIF 1468 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\LETR1A.TIF 2148 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK5A.TIF 4913 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAIN2B.TIF 18536 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PNTL1B.TIF 14207 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB3B.TIF 5716 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SPNG1C.TIF 25203 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\LETR1B.TIF 2288 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\LETR1C.TIF 2100 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\LINO1A.TIF 1987 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\LINO1B.TIF 3788 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\LINO1C.TIF 6595 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\LINO2A.TIF 4154 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\LINO3A.TIF 3763 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK1A.TIF 6768 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK1B.TIF 12740 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK1C.TIF 18356 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK2A.TIF 6438 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK2B.TIF 11553 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK2C.TIF 17757 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK3A.TIF 6261 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK3B.TIF 11994 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK3C.TIF 17180 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK4A.TIF 6582 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK4B.TIF 13015 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK4C.TIF 19160 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK5B.TIF 6596 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK5C.TIF 9432 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK6A.TIF 6494 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK6B.TIF 8107 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK6C.TIF 10016 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK7A.TIF 7219 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK7B.TIF 9306 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK7C.TIF 18302 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK8A.TIF 8444 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK8B.TIF 10908 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MARK8C.TIF 14968 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MISC1A.TIF 14603 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MISC2A.TIF 26458 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MISC3A.TIF 14537 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\MISC4A.TIF 14367 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAIN1A.TIF 11049 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAIN1B.TIF 15520 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAIN1C.TIF 20007 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAIN2A.TIF 15222 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAIN2C.TIF 18930 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAIN3A.TIF 8466 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAST1A.TIF 10189 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAST1B.TIF 14559 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAST1C.TIF 21126 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAST2A.TIF 15263 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAST2B.TIF 15987 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PAST2C.TIF 23377 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC1A.TIF 13073 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC1B.TIF 22184 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC1C.TIF 27291 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC2A.TIF 15075 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC3A.TIF 2507 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC3B.TIF 3638 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC3C.TIF 4571 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC4A.TIF 13187 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PENC4B.TIF 15162 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\penc4c.TIF 25085 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PNTL1A.TIF 9934 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\PNTL1C.TIF 17661 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\POTA1A.TIF 17987 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\POTA2A.TIF 10639 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\POTA2B.TIF 11058 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\POTA2C.TIF 10938 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\POTA3A.TIF 12221 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\RORS1A.TIF 9127 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\RORS1B.TIF 16820 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\RORS1C.TIF 33741 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\RORS2A.TIF 6708 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\RORS2B.TIF 12786 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\RORS2C.TIF 21899 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB1A.TIF 11054 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB1B.TIF 16077 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB1C.TIF 24991 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB2A.TIF 15044 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB2B.TIF 19287 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB2C.TIF 34574 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB3A.TIF 4744 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SCRB3C.TIF 9556 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD1A.TIF 12048 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD2A.TIF 11941 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD2B.TIF 14789 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD2C.TIF 18769 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD3A.TIF 12892 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD3B.TIF 18047 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD3C.TIF 16715 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD4A.TIF 8014 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD4B.TIF 14980 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD4C.TIF 21049 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD5A.TIF 7530 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD5B.TIF 15199 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD5C.TIF 20193 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD6A.TIF 8372 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD6B.TIF 15954 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SMUD6C.TIF 23509 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SPNG1A.TIF 25620 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SPNG1B.TIF 22756 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SPNG2A.TIF 26902 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\STMP1A.TIF 15660 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\STMP1B.TIF 14262 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SUMI1A.TIF 7753 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SUMI1B.TIF 9227 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SUMI1C.TIF 9254 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SUMI2A.TIF 8060 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SUMI2B.TIF 11562 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SUMI2C.TIF 15047 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SUMI3A.TIF 14203 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\SUMI4A.TIF 13990 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\TINF1A.TIF 9114 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\TINF1B.TIF 11920 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\TINF1C.TIF 19166 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR1A.TIF 24877 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR2A.TIF 12670 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR2B.TIF 17586 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR3A.TIF 9523 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR3B.TIF 10390 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR3C.TIF 12213 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR4A.TIF 12086 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR4B.TIF 13752 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR4C.TIF 12474 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR5A.TIF 9355 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR5B.TIF 10888 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR5C.TIF 12335 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR6A.TIF 8268 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR6B.TIF 8214 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR6C.TIF 12040 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR7A.TIF 4456 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR7B.TIF 5379 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR7C.TIF 6607 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR8A.TIF 4806 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR8B.TIF 5077 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR8C.TIF 6039 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR9A.TIF 7910 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR9B.TIF 8456 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Brushes\WATR9C.TIF 7429 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shpt0000.png 86801 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0260.png 45653 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0817.png 24373 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0835.png 37162 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\aaanull.png 5250 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0020.png 12530 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0030.png 11305 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0040.png 13429 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0050.png 27510 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0060.png 15624 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0070.png 37396 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0080.png 24163 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0090.png 12546 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0100.png 11250 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0110.png 13290 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0120.png 13489 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0130.png 28438 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0140.png 4368 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0150.png 24264 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0160.png 19554 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shal0170.png 15857 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shpt020.png 12086 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shpt030.png 3650 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shpt040.png 12969 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shpt050.png 12926 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0001.png 92107 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0010.png 107509 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0014.png 70908 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0016.png 62446 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0017.png 68004 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0020.png 66005 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0027.png 129654 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0037.png 64373 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0040.png 37172 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0048.png 94245 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0050.png 56357 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0055.png 81892 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0092.png 133117 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0103.png 79199 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0115.png 130166 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0117.png 57447 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0120.png 53398 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0127.png 43054 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0155.png 83487 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0210.png 80539 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0220.png 74112 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0230.png 86421 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0240.png 64461 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0250.png 128521 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0270.png 71640 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0300.png 75874 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0320.png 65135 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0330.png 60450 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0803.png 68003 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0804.png 27755 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0805.png 23974 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0806.png 17165 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0807.png 12863 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0808.png 72473 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0809.png 75970 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0811.png 13463 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0812.png 107782 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0813.png 13179 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0814.png 16716 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0815.png 15301 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0816.png 10467 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0818.png 9560 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0819.png 5346 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0820.png 5944 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0821.png 11794 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0822.png 15098 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0823.png 28538 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0824.png 11430 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0825.png 12512 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0826.png 5580 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0827.png 5626 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0828.png 31063 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0829.png 26034 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0830.png 4534 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0831.png 17545 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0832.png 19537 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0833.png 24058 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0834.png 23110 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0836.png 21677 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0837.png 23110 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0838.png 20875 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0839.png 22384 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0840.png 29161 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0841.png 14681 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0842.png 12693 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0843.png 28460 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0844.png 12585 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0845.png 12691 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0846.png 10434 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0847.png 28202 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0848.png 37095 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0849.png 23093 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0850.png 35307 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0851.png 28068 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0852.png 18709 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0853.png 31232 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0854.png 5537 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0855.png 29850 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0856.png 16803 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0857.png 29404 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0858.png 25001 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0859.png 10522 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0860.png 15645 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0861.png 20057 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0862.png 21091 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Shapes\shrg0863.png 13501 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx01.png 66225 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx02.png 77215 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx04.png 69583 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx05.png 78487 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx06.png 89768 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx07.png 76342 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx08.png 65617 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx10.png 51645 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx15.png 64926 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx20.png 43566 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx21.png 71014 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Paint\Textures\tx24.png 66839 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Previews\bounce.gif 7010 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Previews\none.gif 1296 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Previews\rotatec.gif 20683 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Previews\rotatecc.gif 20588 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Previews\scrolll.gif 8147 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Previews\scrollr.gif 8147 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Previews\transpar.gif 11657 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Previews\wisp.gif 13272 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape23.emf 2544 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape42.emf 2992 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape02.emf 416 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape04.emf 392 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape06.emf 1148 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape07.emf 1108 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape08.emf 2120 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape09.emf 2164 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape10.emf 1276 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape11.emf 1224 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape12.emf 1336 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape13.emf 3932 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape14.emf 864 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape15.emf 1312 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape16.emf 456 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape17.emf 1056 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape18.emf 2400 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape19.emf 2276 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape20.emf 1784 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape21.emf 444 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape22.emf 448 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape24.emf 680 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape25.emf 1556 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape26.emf 1540 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape27.emf 1840 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape28.emf 1144 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape29.emf 644 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape30.emf 428 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape30_.emf 408 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape31.emf 1220 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape32.emf 824 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape33.emf 1012 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape34.emf 428 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape35.emf 1336 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape36.emf 1280 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape37.emf 2164 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape38.emf 492 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape39.emf 2332 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape40.emf 2744 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape41.emf 952 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape43.emf 5496 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape44.emf 2820 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape45.emf 444 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape46.emf 1340 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape47.emf 740 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape48.emf 4036 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape49.emf 2040 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape50.emf 888 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape50_.emf 424 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape51.emf 516 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape52.emf 752 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape53.emf 852 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape54.emf 852 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape55.emf 852 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape56.emf 852 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape57.emf 1304 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape58.emf 1084 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape59.emf 428 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape60.emf 1588 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape61.emf 496 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape62.emf 1452 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape63.emf 2520 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape64.emf 1404 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape65.emf 2024 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape66.emf 428 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Shapes\shape67.emf 1296 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art10.png 215465 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art11.png 267049 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art12.png 301059 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art13.png 398657 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art14.png 166093 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art15.png 69149 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art16.png 286369 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art17.png 322509 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art19.png 269469 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Artistic\art20.png 312962 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Exotic\fun10.png 38455 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Exotic\fun11.png 220149 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Exotic\fun12.png 338897 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Exotic\fun13.png 170372 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Exotic\fun14.png 37290 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Exotic\fun15.png 35687 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Exotic\fun16.png 264583 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Exotic\fun17.png 86379 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex10.png 37694 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex11.png 118311 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex12.png 53485 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex13.png 476470 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex14.png 343745 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex15.png 364106 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex17.png 102272 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex19.png 168589 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex20.png 216618 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Texteff\Traditn\tex21.png 18922 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\BLOCKS.TIF 16832 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\BRICK.TIF 48970 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\BURLAP.TIF 58010 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\CANVAS.TIF 55493 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\CLASSICW.TIF 89475 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\COLDROLL.TIF 86855 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\DIAMONDW.TIF 89360 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\FINECHIS.TIF 82490 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\FINEIRRE.TIF 83646 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\FINEPAPE.TIF 87621 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\FINEPITT.TIF 72472 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\FINEPLAS.TIF 52093 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\FINESTIP.TIF 85757 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\GAUZE.TIF 77316 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\HAMMERED.TIF 79358 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\HANDMADE.TIF 61263 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\LIGHTPIT.TIF 9568 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\LIZARDSK.TIF 83913 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\MEDIUMDE.TIF 89057 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\MEZZOTIN.TIF 31682 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\PLASTERG.TIF 79628 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\PLASTERS.TIF 42537 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\ROUGHHAN.TIF 80769 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\ROUGHRAG.TIF 85145 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\ROUGHSTO.TIF 67635 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\SANDCIRC.TIF 81716 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\SANDSTON.TIF 90242 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\SCREEN.TIF 46937 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\SHARPERO.TIF 87430 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\SOFTRAG.TIF 60143 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\TINYLENS.TIF 12500 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Textures\VERYFINE.TIF 80636 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0000.png 10364 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0010.png 29207 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0020.png 33988 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0030.png 29696 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0040.png 33378 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0050.png 34852 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0060.png 34620 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0070.png 26086 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0080.png 26365 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0090.png 26870 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0100.png 34472 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0110.png 28355 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0120.png 34700 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0130.png 36213 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0140.png 37872 bytes
File C:\Program Files\Picture It! Premium 10\PiFiles\Warps\deau0150.png 34616 bytes
File C:\Program Files\Picture It! Premium 10\PIP\PI 0 bytes
File C:\Program Files\Picture It! Premium 10\PIP\PI\PIPCP.ITS 14243280 bytes
File C:\Program Files\Picture It! Premium 10\Shoebox\Core1.sbt 548972 bytes
File C:\Program Files\Picture It! Premium 10\Shoebox\Core2.sbt 4094860 bytes
File C:\Program Files\Picture It! Premium 10\Shoebox\gwcal.sbt 92768 bytes
File C:\Program Files\Picture It! Premium 10\Shoebox\pi_tx.sbt 245854 bytes
File C:\Program Files\Picture It! Premium 10\Tutorial\beach.jpg 57999 bytes
File C:\Program Files\Picture It! Premium 10\Tutorial\facetchp.jpg 26072 bytes
File C:\Program Files\Picture It! Premium 10\Tutorial\windmill.jpg 31189 bytes
File C:\Program Files\Picture It! Premium 10\Tutorial\woman.jpg 21526 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\address.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\award.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\calendar.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\cards.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\collage.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\crafts.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\flyer.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\iconlpil.bmp 10296 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\iconspil.bmp 1004 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\labels.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\launcher.aw 8925 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\photofrm.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\phtalbm.bmp 11688 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\pi.xtr 14082 bytes
File C:\Program Files\Picture It! Premium 10\wkslnchr\postcard.bmp 11688 bytes
File C:\Program Files\PowerISO\History.txt 3937 bytes
File C:\Program Files\PowerISO\Lang 0 bytes
File C:\Program Files\PowerISO\Lang\Arabic.lng 14018 bytes
File C:\Program Files\PowerISO\Lang\Bulgarian.lng 17207 bytes
File C:\Program Files\PowerISO\Lang\cn_sc.lng 11644 bytes
File C:\Program Files\PowerISO\Lang\czech.lng 13873 bytes
File C:\Program Files\PowerISO\Lang\french.lng 17503 bytes
File C:\Program Files\PowerISO\Lang\German.lng 16603 bytes
File C:\Program Files\PowerISO\Lang\Greek.lng 16747 bytes
File C:\Program Files\PowerISO\Lang\Hungarian.lng 17093 bytes
File C:\Program Files\PowerISO\Lang\italian.lng 18167 bytes
File C:\Program Files\PowerISO\Lang\Japanese.lng 15896 bytes
File C:\Program Files\PowerISO\Lang\Korean.lng 12429 bytes
File C:\Program Files\PowerISO\Lang\Lithuanian.lng 16125 bytes
File C:\Program Files\PowerISO\Lang\Norsk.lng 14718 bytes
File C:\Program Files\PowerISO\Lang\Polish.lng 15889 bytes
File C:\Program Files\PowerISO\Lang\Portuguese(Brazil).lng 16398 bytes
File C:\Program Files\PowerISO\Lang\Russian.lng 15955 bytes
File C:\Program Files\PowerISO\Lang\Slovenian.lng 15823 bytes
File C:\Program Files\PowerISO\Lang\Spanish.lng 16757 bytes
File C:\Program Files\PowerISO\Lang\Swedish.lng 15219 bytes
File C:\Program Files\PowerISO\Lang\Turkish.lng 15513 bytes
File C:\Program Files\PowerISO\License.txt 3397 bytes
File C:\Program Files\PowerISO\piso.exe 5120 bytes executable
File C:\Program Files\PowerISO\PowerISO.chm 263591 bytes
File C:\Program Files\PowerISO\PowerISO.exe 983040 bytes executable
File C:\Program Files\PowerISO\PWRISOSH.DLL 204800 bytes executable
File C:\Program Files\PowerISO\PWRISOVM.EXE 200704 bytes executable
File C:\Program Files\PowerISO\Readme.txt 2109 bytes
File C:\Program Files\PowerISO\Skins 0 bytes
File C:\Program Files\PowerISO\Skins\blue.bmp 1050 bytes
File C:\Program Files\PowerISO\Skins\bluesky.bmp 48054 bytes
File C:\Program Files\PowerISO\Skins\flower.bmp 71094 bytes
File C:\Program Files\PowerISO\Skins\sand.bmp 19254 bytes
File C:\Program Files\PowerISO\Skins\silver.bmp 1806 bytes
File C:\Program Files\PowerISO\Skins\stone.bmp 24054 bytes
File C:\Program Files\PowerISO\Skins\water.bmp 19254 bytes
File C:\Program Files\PowerISO\uninstall.exe 39895 bytes executable
File C:\Program Files\ProcessGuard\help\DiamondCS Website.url 152 bytes
File C:\Program Files\ProcessGuard\help\Process Guard Website.url 165 bytes
File C:\Program Files\ProcessGuard\help\procguard.chm 899309 bytes
File C:\Program Files\ProcessGuard\help\Purchase Process Guard.url 174 bytes
File C:\Program Files\ProcessGuard\logs\pglog_2009'11'05_Thu.txt 254904 bytes
File C:\Program Files\ProcessGuard\logs\pglog_2009'11'06_Fri.txt 181910 bytes
File C:\Program Files\ProcessGuard\logs\pglog_2009'11'07_Sat.txt 152098 bytes
File C:\Program Files\ProcessGuard\logs\pglog_2009'11'08_Sun.txt 105884 bytes
File C:\Program Files\ProcessGuard\logs\pglog_2009'11'09_Mon.txt 91320 bytes
File C:\Program Files\ProcessGuard\logs\pglog_2009'11'10_Tue.txt 20400 bytes
File C:\Program Files\QuickTime\PictureViewer.exe 548864 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\nb.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\nb.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\nb.lproj\PictureViewerLocalized.qtr 35328 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\da.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\da.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\da.lproj\PictureViewerLocalized.qtr 87040 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\de.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\de.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\de.lproj\PictureViewerLocalized.qtr 75264 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\en.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\en.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\en.lproj\PictureViewerLocalized.qtr 34816 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\es.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\es.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\es.lproj\PictureViewerLocalized.qtr 86528 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\fi.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\fi.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\fi.lproj\PictureViewerLocalized.qtr 74752 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\fr.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\fr.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\fr.lproj\PictureViewerLocalized.qtr 83968 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\it.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\it.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\it.lproj\PictureViewerLocalized.qtr 80896 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\ja.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\ja.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\ja.lproj\PictureViewerLocalized.qtr 35328 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\ko.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\ko.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\ko.lproj\PictureViewerLocalized.qtr 34816 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\nl.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\nl.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\nl.lproj\PictureViewerLocalized.qtr 76800 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\PictureViewer.dll 86016 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\PictureViewer.qtr 3584 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\pl.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\pl.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\pl.lproj\PictureViewerLocalized.qtr 78848 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\pt_PT.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\pt_PT.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\pt_PT.lproj\PictureViewerLocalized.qtr 82432 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\ru.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\ru.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\ru.lproj\PictureViewerLocalized.qtr 35328 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\sv.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\sv.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\sv.lproj\PictureViewerLocalized.qtr 83456 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\zh_CN.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\zh_CN.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\zh_CN.lproj\PictureViewerLocalized.qtr 71168 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\zh_TW.lproj 0 bytes
File C:\Program Files\QuickTime\PictureViewer.Resources\zh_TW.lproj\PictureViewerLocalized.dll 57344 bytes executable
File C:\Program Files\QuickTime\PictureViewer.Resources\zh_TW.lproj\PictureViewerLocalized.qtr 67072 bytes executable
File C:\Program Files\QuickTime\Plugins 0 bytes
File C:\Program Files\QuickTime\Plugins\npqtplugin.dll 143360 bytes executable
File C:\Program Files\QuickTime\Plugins\npqtplugin2.dll 143360 bytes executable
File C:\Program Files\QuickTime\Plugins\npqtplugin3.dll 143360 bytes executable
File C:\Program Files\QuickTime\Plugins\npqtplugin4.dll 143360 bytes executable
File C:\Program Files\QuickTime\Plugins\npqtplugin5.dll 143360 bytes executable
File C:\Program Files\QuickTime\Plugins\npqtplugin6.dll 143360 bytes executable
File C:\Program Files\QuickTime\Plugins\npqtplugin7.dll 143360 bytes executable
File C:\Program Files\QuickTime\Plugins\nsIQTScriptablePlugin.xpt 2394 bytes
File C:\Program Files\QuickTime\Plugins\QuickTimePlugin.class 4208 bytes
File C:\Program Files\QuickTime\PropertyPanels 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\annoanno.pdef 2312 bytes
File C:\Program Files\QuickTime\PropertyPanels\moovaudi.pdef 4101 bytes
File C:\Program Files\QuickTime\PropertyPanels\moovpres.pdef 2464 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.qpa 86016 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\da.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\da.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\de.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\de.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\en.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\en.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\es.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\es.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\fi.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\fi.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\fr.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\fr.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\it.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\it.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ja.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ja.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ko.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ko.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\nb.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\nb.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\nl.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\nl.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\PanelHelperBase.qtr 3584 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\pl.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\pl.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\pt_PT.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\pt_PT.lproj\PanelHelperBaseLocalized.qtr 3072 bytes executable
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ru.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\ru.lproj\PanelHelperBaseLocalized.qtr 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\sv.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\zh_CN.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PanelHelperBase.Resources\zh_TW.lproj 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PropertyPanels.plist 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.qpa 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\PropPanelHelpers.Resources 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\rsrcrsrc.pdef 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\trakaudi.pdef 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\trakhint.pdef 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\trakothr.pdef 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\trakstrm.pdef 0 bytes
File C:\Program Files\QuickTime\PropertyPanels\trakvisl.pdef 0 bytes
File C:\Program Files\QuickTime\QTComponents 0 bytes
File C:\Program Files\QuickTime\QTInfo.exe 0 bytes
File C:\Program Files\QuickTime\QTOControl.dll 0 bytes
File C:\Program Files\QuickTime\QTOLibrary.dll 0 bytes
File C:\Program Files\QuickTime\QTPlugin.ocx 0 bytes
File C:\Program Files\QuickTime\QTSystem 0 bytes
File C:\Program Files\QuickTime\QTTask.exe 0 bytes
File C:\Program Files\QuickTime\QTUIPanelControl.dll 0 bytes
File C:\Program Files\QuickTime\QuickTime Read Me.htm 0 bytes
File C:\Program Files\QuickTime\QuickTimePlayer.exe 0 bytes
File C:\Program Files\QuickTime\QuickTimePlayer.Resources 0 bytes
File C:\Program Files\QuickTime\Sample.mov 0 bytes
File C:\Program Files\QuickTime\Sample.qtif 0 bytes

---- EOF - GMER 1.0.15 ----

(I'm hoping that's not all rootkit and malware activity)




And here's the OTL:


OTL logfile created on: 11/9/2009 8:42:54 PM - Run 2
OTL by OldTimer - Version 3.1.4.0 Folder = C:\Documents and Settings\Stevo\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 6.0.2900.5512)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1006.42 Mb Total Physical Memory | 801.03 Mb Available Physical Memory | 79.59% Memory free
2.36 Gb Paging File | 2.29 Gb Available in Paging File | 97.30% Paging File free
Paging file location(s): C:\pagefile.sys 1500 1500 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 70.42 Gb Total Space | 1.80 Gb Free Space | 2.56% Space Free | Partition Type: NTFS
Drive D: | 1.71 Gb Total Space | 0.00 Gb Free Space | 0.00% Space Free | Partition Type: CDFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded

Computer Name: STEFAN
Current User Name: Administrator
Logged in as Administrator.

Current Boot Mode: SafeMode
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Minimal

========== Processes (SafeList) ==========

PRC - C:\Documents and Settings\Stevo\Desktop\OTL.exe (OldTimer Tools)
PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)
PRC - C:\Program Files\Intel\Wireless\Bin\ZCfgSvc.exe (Intel Corporation)


========== Modules (SafeList) ==========

MOD - C:\Documents and Settings\Stevo\Desktop\OTL.exe (OldTimer Tools)
MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.5512_x-ww_35d4ce83\comctl32.dll (Microsoft Corporation)
MOD - C:\WINDOWS\system32\wbem\framedyn.dll (Microsoft Corporation)


========== Win32 Services (SafeList) ==========

SRV - (getPlusHelper) -- C:\Program Files\NOS\bin\getPlus_Helper.dll (NOS Microsystems Ltd.)
SRV - (JavaQuickStarterService) -- C:\Program Files\Java\jre6\bin\jqs.exe (Sun Microsystems, Inc.)
SRV - (gusvc) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)
SRV - (MSSQL$SQLEXPRESS) -- c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (Microsoft Corporation)
SRV - (SQLBrowser) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation)
SRV - (MSSQLServerADHelper) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe (Microsoft Corporation)
SRV - (SQLWriter) -- c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation)
SRV - (FontCache3.0.0.0) -- c:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation)
SRV - (idsvc) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe (Microsoft Corporation)
SRV - (NetTcpPortSharing) -- C:\WINDOWS\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe (Microsoft Corporation)
SRV - (clr_optimization_v2.0.50727_32) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (aspnet_state) -- C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe (Microsoft Corporation)
SRV - (DCSPGSRV) -- C:\Program Files\ProcessGuard\dcsuserprot.exe (DiamondCS)
SRV - (helpsvc) -- C:\WINDOWS\pchealth\helpctr\binaries\pchsvc.dll (Microsoft Corporation)
SRV - (hpqcxs08) -- C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqcxs08.dll (Hewlett-Packard Co.)
SRV - (emaudsv) -- C:\WINDOWS\system32\emaudsv.exe (E-MU Systems)
SRV - (hpqddsvc) -- C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqddsvc.dll (Hewlett-Packard Co.)
SRV - (DSBrokerService) -- C:\Program Files\DellSupport\brkrsvc.exe ()
SRV - (Pml Driver HPZ12) -- C:\WINDOWS\system32\hpzipm12.dll (Hewlett-Packard)
SRV - (Net Driver HPZ12) -- C:\WINDOWS\system32\HPZinw12.dll (Hewlett-Packard)
SRV - (iPod Service) -- C:\Program Files\iPod\bin\iPodService.exe (Apple Computer, Inc.)
SRV - (WMPNetworkSvc) -- C:\Program Files\Windows Media Player\WMPNetwk.exe (Microsoft Corporation)
SRV - (Adobe LM Service) -- C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe (Adobe Systems)
SRV - (SavRoam) -- C:\Program Files\Symantec AntiVirus\SavRoam.exe (symantec)
SRV - (Symantec AntiVirus) -- C:\Program Files\Symantec AntiVirus\Rtvscan.exe (Symantec Corporation)
SRV - (DefWatch) -- C:\Program Files\Symantec AntiVirus\DefWatch.exe (Symantec Corporation)
SRV - (ccSetMgr) -- C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe (Symantec Corporation)
SRV - (ccEvtMgr) -- C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe (Symantec Corporation)
SRV - (LiveUpdate) -- C:\Program Files\Symantec\LiveUpdate\LuComServer_3_0.EXE (Symantec Corporation)
SRV - (SPBBCSvc) -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe (Symantec Corporation)
SRV - (MpfService) -- C:\Program Files\McAfee.com\Personal Firewall\MpfService.exe (McAfee Corporation)
SRV - (McDetect.exe) -- c:\Program Files\McAfee.com\Agent\Mcdetect.exe (McAfee, Inc)
SRV - (McTskshd.exe) -- c:\Program Files\McAfee.com\Agent\McTskshd.exe (McAfee, Inc)
SRV - (McShield) -- c:\Program Files\McAfee.com\VSO\McShield.exe (McAfee Inc.)
SRV - (mcupdmgr.exe) -- C:\Program Files\McAfee.com\Agent\mcupdmgr.exe (McAfee, Inc)
SRV - (Adobe Version Cue CS2) -- C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe (Adobe Systems Incorporated)
SRV - (IDriverT) -- C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe (Macrovision Corporation)
SRV - (WLANKEEPER) -- C:\Program Files\Intel\Wireless\Bin\WLKEEPER.exe (IntelŪ Corporation)
SRV - (S24EventMonitor) -- C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe (Intel Corporation )
SRV - (EvtEng) -- C:\Program Files\Intel\Wireless\Bin\EvtEng.exe (Intel Corporation)
SRV - (RegSrvc) -- C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe (Intel Corporation)


========== Driver Services (SafeList) ==========

DRV - (NAVEX15) -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20091023.002\NAVEX15.SYS (Symantec Corporation)
DRV - (eeCtrl) -- C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys (Symantec Corporation)
DRV - (EraserUtilRebootDrv) -- C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys (Symantec Corporation)
DRV - (NAVENG) -- C:\Program Files\Common Files\Symantec Shared\VirusDefs\20091023.002\NAVENG.SYS (Symantec Corporation)
DRV - (procguard) -- C:\WINDOWS\system32\drivers\procguard.sys (DiamondCS)
DRV - (USB_RNDIS) -- C:\WINDOWS\system32\drivers\usb8023.sys (Microsoft Corporation)
DRV - (usbaudio) -- C:\WINDOWS\system32\drivers\usbaudio.sys (Microsoft Corporation)
DRV - (amdagp) -- C:\WINDOWS\system32\DRIVERS\amdagp.sys (Advanced Micro Devices, Inc.)
DRV - (sisagp) -- C:\WINDOWS\system32\DRIVERS\sisagp.sys (Silicon Integrated Systems Corporation)
DRV - (PxHelp20) -- C:\WINDOWS\System32\Drivers\PxHelp20.sys (Sonic Solutions)
DRV - (emusba10) -- C:\WINDOWS\system32\drivers\emusba10.sys (E-MU Systems)
DRV - (Secdrv) -- C:\WINDOWS\system32\drivers\secdrv.sys (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.)
DRV - (TVICHW32) -- C:\WINDOWS\system32\drivers\TVICHW32.SYS (EnTech Taiwan)
DRV - (SCDEmu) -- C:\WINDOWS\system32\drivers\scdemu.sys (PowerISO Computing, Inc.)
DRV - (HPFXBULK) -- C:\WINDOWS\system32\drivers\hpfxbulk.sys (Hewlett Packard)
DRV - (dsunidrv) -- C:\WINDOWS\system32\drivers\dsunidrv.sys (Gteko Ltd.)
DRV - (DSproct) -- C:\Program Files\DellSupport\GTAction\triggers\DSproct.sys (Gteko Ltd.)
DRV - (GEARAspiWDM) -- C:\WINDOWS\system32\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV - (SPBBCDrv) -- C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys (Symantec Corporation)
DRV - (SymEvent) -- C:\Program Files\Symantec\SYMEVENT.SYS (Symantec Corporation)
DRV - (SAVRTPEL) -- C:\Program Files\Symantec AntiVirus\Savrtpel.sys (Symantec Corporation)
DRV - (SAVRT) -- C:\Program Files\Symantec AntiVirus\savrt.sys (Symantec Corporation)
DRV - (Aspi32) -- C:\WINDOWS\system32\drivers\ASPI32.SYS (Adaptec)
DRV - (MPFIREWL) -- C:\WINDOWS\system32\drivers\MpFirewall.sys (McAfee)
DRV - (HPZipr12) -- C:\WINDOWS\system32\drivers\HPZipr12.sys (HP)
DRV - (HPZius12) -- C:\WINDOWS\system32\drivers\HPZius12.sys (HP)
DRV - (HPZid412) -- C:\WINDOWS\system32\drivers\HPZid412.sys (HP)
DRV - (AegisP) -- C:\WINDOWS\system32\drivers\AegisP.sys (Meetinghouse Data Communications)
DRV - (ialm) -- C:\WINDOWS\system32\drivers\ialmnt5.sys (Intel Corporation)
DRV - (NaiAvFilter1) -- C:\WINDOWS\system32\drivers\naiavf5x.sys (McAfee Inc.)
DRV - (tfsnudfa) -- C:\WINDOWS\system32\dla\tfsnudfa.sys (Sonic Solutions)
DRV - (tfsnudf) -- C:\WINDOWS\system32\dla\tfsnudf.sys (Sonic Solutions)
DRV - (tfsnifs) -- C:\WINDOWS\system32\dla\tfsnifs.sys (Sonic Solutions)
DRV - (tfsncofs) -- C:\WINDOWS\system32\dla\tfsncofs.sys (Sonic Solutions)
DRV - (tfsnboio) -- C:\WINDOWS\system32\dla\tfsnboio.sys (Sonic Solutions)
DRV - (tfsnopio) -- C:\WINDOWS\system32\dla\tfsnopio.sys (Sonic Solutions)
DRV - (tfsnpool) -- C:\WINDOWS\system32\dla\tfsnpool.sys (Sonic Solutions)
DRV - (tfsndrct) -- C:\WINDOWS\system32\dla\tfsndrct.sys (Sonic Solutions)
DRV - (tfsndres) -- C:\WINDOWS\system32\dla\tfsndres.sys (Sonic Solutions)
DRV - (drvmcdb) -- C:\WINDOWS\system32\drivers\drvmcdb.sys (Sonic Solutions)
DRV - (drvnddm) -- C:\WINDOWS\system32\drivers\drvnddm.sys (Sonic Solutions)
DRV - (STAC97) -- C:\WINDOWS\system32\drivers\stac97.sys (SigmaTel, Inc.)
DRV - (w29n51) -- C:\WINDOWS\system32\drivers\w29n51.sys (IntelŪ Corporation)
DRV - (AFS2K) -- C:\WINDOWS\system32\drivers\AFS2K.SYS (Oak Technology Inc.)
DRV - (s24trans) -- C:\WINDOWS\system32\drivers\s24trans.sys (Intel Corporation)
DRV - (IWCA) -- C:\WINDOWS\system32\drivers\iwca.sys (Intel Corporation)
DRV - (Ptilink) -- C:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)
DRV - (nv) -- C:\WINDOWS\system32\drivers\nv4_mini.sys (NVIDIA Corporation)
DRV - (sscdbhk5) -- C:\WINDOWS\system32\drivers\sscdbhk5.sys (Sonic Solutions)
DRV - (ssrtln) -- C:\WINDOWS\system32\drivers\ssrtln.sys (Sonic Solutions)
DRV - (bcm4sbxp) -- C:\WINDOWS\system32\drivers\bcm4sbxp.sys (Broadcom Corporation)
DRV - (tifm) -- C:\WINDOWS\system32\drivers\tifm.sys (Texas Instruments)
DRV - (SynTP) -- C:\WINDOWS\system32\drivers\SynTP.sys (Synaptics, Inc.)
DRV - (omci) -- C:\WINDOWS\system32\drivers\omci.sys (Dell Inc)
DRV - (HSFHWICH) -- C:\WINDOWS\system32\drivers\HSFHWICH.sys (Conexant Systems, Inc.)
DRV - (winachsf) -- C:\WINDOWS\system32\drivers\HSF_CNXT.sys (Conexant Systems, Inc.)
DRV - (HSF_DP) -- C:\WINDOWS\system32\drivers\HSF_DP.sys (Conexant Systems, Inc.)
DRV - (mdmxsdk) -- C:\WINDOWS\system32\drivers\mdmxsdk.sys (Conexant)
DRV - (ndiscm) -- C:\WINDOWS\system32\drivers\NetMotCM.sys (Motorola Inc.)
DRV - (Sparrow) -- C:\WINDOWS\system32\DRIVERS\sparrow.sys (Adaptec, Inc.)
DRV - (sym_u3) -- C:\WINDOWS\system32\DRIVERS\sym_u3.sys (LSI Logic)
DRV - (sym_hi) -- C:\WINDOWS\system32\DRIVERS\sym_hi.sys (LSI Logic)
DRV - (symc8xx) -- C:\WINDOWS\system32\DRIVERS\symc8xx.sys (LSI Logic)
DRV - (symc810) -- C:\WINDOWS\system32\DRIVERS\symc810.sys (Symbios Logic Inc.)
DRV - (ultra) -- C:\WINDOWS\system32\DRIVERS\ultra.sys (Promise Technology, Inc.)
DRV - (ql12160) -- C:\WINDOWS\system32\DRIVERS\ql12160.sys (QLogic Corporation)
DRV - (ql1080) -- C:\WINDOWS\system32\DRIVERS\ql1080.sys (QLogic Corporation)
DRV - (ql1280) -- C:\WINDOWS\system32\DRIVERS\ql1280.sys (QLogic Corporation)
DRV - (dac2w2k) -- C:\WINDOWS\system32\DRIVERS\dac2w2k.sys (Mylex Corporation)
DRV - (mraid35x) -- C:\WINDOWS\system32\DRIVERS\mraid35x.sys (American Megatrends Inc.)
DRV - (asc) -- C:\WINDOWS\system32\DRIVERS\asc.sys (Advanced System Products, Inc.)
DRV - (asc3550) -- C:\WINDOWS\system32\DRIVERS\asc3550.sys (Advanced System Products, Inc.)
DRV - (AliIde) -- C:\WINDOWS\system32\DRIVERS\aliide.sys (Acer Laboratories Inc.)
DRV - (CmdIde) -- C:\WINDOWS\system32\DRIVERS\cmdide.sys (CMD Technology, Inc.)
DRV - (E100B) -- C:\WINDOWS\system32\drivers\e100b325.sys (Intel Corporation)
DRV - (SONYPVU1) -- C:\WINDOWS\system32\drivers\SONYPVU1.SYS (Sony Corporation)


========== Standard Registry (All) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,First Home Page = http://www.dell.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\system32\blank.htm
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?p...amp;ar=iesearch
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
IE - HKCU\..\URLSearchHook: {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - Reg Error: Key error. File not found
IE - HKCU\..\URLSearchHook: {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

FF - HKLM\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\Program Files\Real\RealPlayer\browserrecord [2008/05/25 07:37:22 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\{20a82645-c095-46ed-80e3-08825760534b}: c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\ [2009/08/15 13:54:07 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Firefox\Extensions\\jqs@sun.com: C:\Program Files\Java\jre6\lib\deploy\jqs\ff [2009/08/15 00:31:29 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.14\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2009/10/28 21:32:59 | 00,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.0.14\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2009/10/28 21:40:37 | 00,000,000 | ---D | M]

[2009/11/09 15:11:19 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
[2008/07/02 14:07:03 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2009/10/28 21:32:58 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2008/05/25 07:55:46 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}
[2008/05/30 18:33:55 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}
[2009/08/15 00:32:04 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}
[2009/08/15 00:44:17 | 00,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}
[2009/10/28 21:32:52 | 00,023,032 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\browserdirprovider.dll
[2009/10/28 21:32:52 | 00,134,648 | ---- | M] (Mozilla Foundation) -- C:\Program Files\Mozilla Firefox\components\brwsrcmp.dll
[2004/11/13 04:36:20 | 00,005,120 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Mozilla Firefox\plugins\NPAdbESD.dll
[2008/01/23 07:20:30 | 00,491,520 | ---- | M] (BitComet) -- C:\Program Files\Mozilla Firefox\plugins\npBitCometAgent.dll
[2009/07/25 11:23:01 | 00,411,368 | ---- | M] (Sun Microsystems, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npdeploytk.dll
[2006/11/01 17:58:56 | 00,626,688 | ---- | M] (ebrary) -- C:\Program Files\Mozilla Firefox\plugins\NPinfotl.dll
[2007/04/24 10:36:16 | 01,452,416 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Mozilla Firefox\plugins\npLegitCheckPlugin.dll
[2009/10/28 21:32:54 | 00,065,528 | ---- | M] (mozilla.org) -- C:\Program Files\Mozilla Firefox\plugins\npnul32.dll
[2005/09/24 05:44:16 | 00,077,824 | ---- | M] (Adobe Systems Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppdf32.dll
[2008/05/25 07:37:11 | 00,144,984 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nppl3260.dll
[2008/10/02 08:48:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin.dll
[2008/10/02 08:48:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin2.dll
[2008/10/02 08:48:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin3.dll
[2008/10/02 08:48:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin4.dll
[2008/10/02 08:48:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin5.dll
[2008/10/02 08:48:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin6.dll
[2008/10/02 08:48:44 | 00,143,360 | ---- | M] (Apple Inc.) -- C:\Program Files\Mozilla Firefox\plugins\npqtplugin7.dll
[2008/05/25 07:37:30 | 00,008,192 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprjplug.dll
[2008/05/25 07:36:57 | 00,094,208 | ---- | M] (RealNetworks, Inc.) -- C:\Program Files\Mozilla Firefox\plugins\nprpjplug.dll
[2009/09/23 16:37:30 | 00,032,448 | ---- | M] (NOS Microsystems Ltd.) -- C:\Program Files\Mozilla Firefox\plugins\np_gp.dll
[2008/10/06 15:24:59 | 00,001,394 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\amazondotcom.xml
[2008/10/06 15:24:59 | 00,002,193 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\answers.xml
[2008/10/06 15:24:59 | 00,001,534 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\creativecommons.xml
[2008/11/13 12:05:48 | 00,002,343 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\eBay.xml
[2008/10/06 15:24:59 | 00,001,706 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\google.xml
[2008/10/06 15:24:59 | 00,001,178 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\wikipedia.xml
[2008/10/06 15:24:59 | 00,000,792 | ---- | M] () -- C:\Program Files\Mozilla Firefox\searchplugins\yahoo.xml

O1 HOSTS File: (734 bytes) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (Yahoo! Companion BHO) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (Yahoo! Inc.)
O2 - BHO: (Adobe PDF Reader Link Helper) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (RealPlayer Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll (RealPlayer)
O2 - BHO: (BitComet Helper) - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll (BitComet)
O2 - BHO: (DriveLetterAccess) - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll (Sonic Solutions)
O2 - BHO: (TomBHO Class) - {8AA217B9-D729-4ee0-AED7-E93D695E94A2} - C:\Program Files\Stylish Profile\tom4ie.dll (ChameleonTom)
O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.3.4501.1418\swg.dll (Google Inc.)
O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_219B3E1547538286.dll (Google Inc.)
O2 - BHO: (Java™ Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (JQSIEStartDetectorImpl Class) - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll (Sun Microsystems, Inc.)
O3 - HKLM\..\Toolbar: (&Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar.dll ()
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (McAfee VirusScan) - {BA52B914-B692-46c4-B683-905236F6F655} - c:\Program Files\McAfee.com\VSO\mcvsshl.dll (McAfee, Inc.)
O3 - HKLM\..\Toolbar: (Yahoo! Companion) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll (Yahoo! Inc.)
O4 - HKLM..\Run: [!1_pgaccount] C:\Program Files\ProcessGuard\pgaccount.exe (DiamondCS)
O4 - HKLM..\Run: [Adobe Version Cue CS2] C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe (Adobe Sytems Incorporated)
O4 - HKLM..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe (Symantec Corporation)
O4 - HKLM..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe (Intel Corporation)
O4 - HKLM..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe (Intel Corporation)
O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe (Intel Corporation)
O4 - HKLM..\Run: [ISUSPM Startup] C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [ISUSScheduler] C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe (InstallShield Software Corporation)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [MCAgentExe] c:\Program Files\McAfee.com\Agent\mcagent.exe (McAfee, Inc)
O4 - HKLM..\Run: [MCUpdateExe] C:\Program Files\McAfee.com\Agent\mcupdate.exe (McAfee, Inc)
O4 - HKLM..\Run: [MPFExe] C:\Program Files\McAfee.com\Personal Firewall\MpfTray.exe (McAfee Security)
O4 - HKLM..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe (McAfee, Inc.)
O4 - HKLM..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics, Inc.)
O4 - HKLM..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe (Synaptics, Inc.)
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [ToolBoxFX] C:\Program Files\Hewlett-Packard\ToolBoxFX\bin\HPTLBXFX.exe (HP)
O4 - HKLM..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe (McAfee, Inc.)
O4 - HKLM..\Run: [vptray] C:\Program Files\Symantec AntiVirus\VPTray.exe (Symantec Corporation)
O4 - HKCU..\Run: [DellSupport] C:\Program Files\DellSupport\DSAgnt.exe (Gteko Ltd.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk = C:\WINDOWS\Installer\{AC76BA86-1033-0000-7760-100000000002}\SC_Acrobat.exe ()
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe (Adobe Systems Incorporated)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe (BVRP Software)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\hp psc 1000 series.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe (Hewlett-Packard Co.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan.lnk = C:\Program Files\McAfee Security Scan\1.0.150\SSScheduler.exe (McAfee, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoCDBurning = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: dontdisplaylastusername = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticecaption =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: legalnoticetext =
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: shutdownwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: undockwithoutlogon = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableStatusMessages = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9 - Extra Button: StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm ()
O9 - Extra 'Tools' menuitem : StylishProfile - {14CD42DD-ABCD-3586-DCAB-40E3693E3737} - C:\Program Files\Stylish Profile\ct.htm ()
O9 - Extra Button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe File not found
O9 - Extra 'Tools' menuitem : ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe File not found
O9 - Extra Button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
O9 - Extra Button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.1.2.dll (BitComet)
O9 - Extra 'Tools' menuitem : @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe (Microsoft Corporation)
O9 - Extra Button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000001 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000002 [] - C:\WINDOWS\system32\winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000003 [] - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000001 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000005 - C:\WINDOWS\system32\rsvpsp.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000006 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000007 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000008 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000010 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000011 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000012 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000013 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000014 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000016 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000017 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000018 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000019 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000020 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9\Catalog_Entries\000000000021 - C:\WINDOWS\system32\mswsock.dll (Microsoft Corporation)
O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_15)
O16 - DPF: Microsoft XML Parser for Java file://C:\WINDOWS\Java\classes\xmldso.cab (Reg Error: Key error.)
O18 - Protocol\Handler\about {3050F406-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdl {3dd53d40-7b8b-11D0-b013-00aa0059ce02} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\cdo {CD00020A-8B95-11D1-82DB-00C04FB1625D} - C:\Program Files\Common Files\Microsoft Shared\Web Folders\PKMCDO.DLL (Microsoft Corporation)
O18 - Protocol\Handler\dvd {12D51199-0DB5-46FE-A120-47A3D7D937CC} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\file {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\ftp {79eac9e3-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\gopher {79eac9e4-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http {79eac9e2-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\http\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\http\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https {79eac9e5-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\https\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\https\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ipp - No CLSID value found
O18 - Protocol\Handler\ipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\javascript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\local {79eac9e7-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\mailto {3050f3DA-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\mhtml {05300401-BCBC-11d0-85E3-00C04FD85AB4} - C:\WINDOWS\system32\inetcomm.dll (Microsoft Corporation)
O18 - Protocol\Handler\mk {79eac9e6-baf9-11ce-8c82-00aa004ba90b} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
O18 - Protocol\Handler\ms-its {9D148291-B9C8-11D0-A4CC-0000F80149F6} - C:\WINDOWS\system32\itss.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-itss {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap {3D9F03FA-7A94-11D3-BE81-0050048385D1} - C:\Program Files\Common Files\Microsoft Shared\Web Components\10\OWC10.DLL (Microsoft Corporation)
O18 - Protocol\Handler\res {3050F3BC-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Handler\sysimage {76E67A63-06E9-11D2-A840-006008059382} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\tv {CBD30858-AF45-11D2-B6D6-00C04FBBDE6E} - C:\WINDOWS\system32\msvidctl.dll (Microsoft Corporation)
O18 - Protocol\Handler\vbscript {3050F3B2-98B5-11CF-BB82-00AA00BDCE0B} - C:\WINDOWS\system32\mshtml.dll (Microsoft Corporation)
O18 - Protocol\Handler\wia {13F3EA8B-91D7-4F0A-AD76-D2853AC8BECE} - C:\WINDOWS\system32\wiascr.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/octet-stream {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-complus {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\application/x-msdownload {1E66F26B-79EE-11D2-8710-00C04F79ED0D} - C:\WINDOWS\System32\mscoree.dll (Microsoft Corporation)
O18 - Protocol\Filter\Class Install Handler {32B533BB-EDAE-11d0-BD5A-00AA00B92AF1} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\deflate {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\gzip {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\lzdhtml {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\WINDOWS\system32\urlmon.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/webviewhtml {733AC4CB-F1A4-11d0-B951-00A0C90312E1} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) - C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UIHost - (logonui.exe) - C:\WINDOWS\System32\logonui.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (rundll32 shell32) - C:\WINDOWS\System32\shell32.dll (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (Control_RunDLL "sysdm.cpl") - C:\WINDOWS\System32\sysdm.cpl (Microsoft Corporation)
O20 - Winlogon\Notify\crypt32chain: DllName - crypt32.dll - C:\WINDOWS\System32\crypt32.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cryptnet: DllName - cryptnet.dll - C:\WINDOWS\System32\cryptnet.dll (Microsoft Corporation)
O20 - Winlogon\Notify\cscdll: DllName - cscdll.dll - C:\WINDOWS\System32\cscdll.dll (Microsoft Corporation)
O20 - Winlogon\Notify\dimsntfy: DllName - %SystemRoot%\System32\dimsntfy.dll - C:\WINDOWS\system32\dimsntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\igfxcui: DllName - igfxdev.dll - C:\WINDOWS\System32\igfxdev.dll (Intel Corporation)
O20 - Winlogon\Notify\IntelWireless: DllName - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll (Intel Corporation)
O20 - Winlogon\Notify\NavLogon: DllName - C:\WINDOWS\system32\NavLogon.dll - C:\WINDOWS\system32\NavLogon.dll (Symantec Corporation)
O20 - Winlogon\Notify\ScCertProp: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\Schedule: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\sclgntfy: DllName - sclgntfy.dll - C:\WINDOWS\System32\sclgntfy.dll (Microsoft Corporation)
O20 - Winlogon\Notify\SensLogn: DllName - WlNotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\termsrv: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O20 - Winlogon\Notify\wlballoon: DllName - wlnotify.dll - C:\WINDOWS\System32\wlnotify.dll (Microsoft Corporation)
O21 - SSODL: CDBurn - {fbeb8a05-beee-4442-804e-409d6c4515e9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: PostBootReminder - {7849596a-48ea-486e-8937-a2a3009f31a9} - C:\WINDOWS\system32\shell32.dll (Microsoft Corporation)
O21 - SSODL: SysTray - {35CEC8A3-2BE6-11D2-8773-92E220524153} - C:\WINDOWS\system32\stobject.dll (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - C:\WINDOWS\system32\webcheck.dll (Microsoft Corporation)
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {438755C2-A8BA-11D1-B96B-00A0C90312E1} - Browseui preloader - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O22 - SharedTaskScheduler: {8C7461EF-2B13-11d2-BE35-3078302C2030} - Component Categories cache daemon - C:\WINDOWS\system32\browseui.dll (Microsoft Corporation)
O24 - Desktop Components:0 (My Current Home Page) - About:Home
O29 - HKLM SecurityProviders - (msapsspc.dll) - C:\WINDOWS\System32\msapsspc.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (schannel.dll) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (digest.dll) - C:\WINDOWS\System32\digest.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (msnsspc.dll) - C:\WINDOWS\System32\msnsspc.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (kerberos) - C:\WINDOWS\System32\kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:\WINDOWS\System32\msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:\WINDOWS\System32\schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:\WINDOWS\System32\wdigest.dll (Microsoft Corporation)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/08/10 19:04:08 | 00,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O34 - HKLM BootExecute: (autocheck) - File not found
O34 - HKLM BootExecute: (autochk) - C:\WINDOWS\System32\autochk.exe (Microsoft Corporation)
O34 - HKLM BootExecute: (*) - File not found
O35 - comfile [open] -- "%1" %* File not found
O35 - exefile [open] -- "%1" %* File not found

========== Files/Folders - Created Within 30 Days ==========

[2009/11/09 20:39:23 | 00,000,000 | --SD | C] -- C:\Documents and Settings\Administrator\Application Data\Microsoft
[2009/11/09 20:39:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Macromedia
[2009/11/09 20:39:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Jasc Software Inc
[2009/11/09 20:39:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Intel
[2009/11/09 20:39:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Identities
[2009/11/09 20:39:23 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Apple Computer
[2009/11/09 20:39:22 | 00,000,000 | --SD | C] -- C:\Documents and Settings\Administrator\Cookies
[2009/11/09 20:39:22 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\SendTo
[2009/11/09 20:39:22 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Recent
[2009/11/09 20:39:22 | 00,000,000 | RH-D | C] -- C:\Documents and Settings\Administrator\Application Data
[2009/11/09 20:39:22 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Pictures
[2009/11/09 20:39:22 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents\My Music
[2009/11/09 20:39:22 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\My Documents
[2009/11/09 20:39:22 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Favorites
[2009/11/09 20:39:22 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\PrintHood
[2009/11/09 20:39:22 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\NetHood
[2009/11/09 20:39:22 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\Local Settings
[2009/11/09 20:39:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Desktop
[2009/11/09 20:39:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Microsoft
[2009/11/09 20:39:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\BVRP Software
[2009/11/09 20:39:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\ApplicationHistory
[2009/11/09 20:39:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\Apple Computer
[2009/11/09 20:39:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Local Settings\Application Data\{7148F0A6-6813-11D6-A77B-00B0D0142030}
[2009/11/09 20:39:22 | 00,000,000 | ---D | C] -- C:\Documents and Settings\Administrator\Application Data\Sun
[2009/11/09 20:39:21 | 00,000,000 | R--D | C] -- C:\Documents and Settings\Administrator\Start Menu
[2009/11/09 20:39:21 | 00,000,000 | -H-D | C] -- C:\Documents and Settings\Administrator\Templates
[2009/11/09 15:31:43 | 00,000,000 | ---D | C] -- C:\Intel
[2009/11/08 21:27:08 | 00,000,000 | ---D | C] -- C:\games
[2009/11/08 21:00:36 | 00,017,280 | ---- | C] (SCM Microsystems) -- C:\WINDOWS\System32\dllcache\scr111.sys
[2009/11/08 20:58:14 | 00,023,936 | ---- | C] (OMNIKEY AG) -- C:\WINDOWS\System32\dllcache\sccmusbm.sys
[2009/11/08 20:58:08 | 00,023,936 | ---- | C] (OMNIKEY AG) -- C:\WINDOWS\System32\dllcache\sccmn50m.sys
[2009/11/08 20:58:05 | 00,043,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sbp2port.sys
[2009/11/08 20:57:59 | 00,495,616 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\sblfx.dll
[2009/11/08 20:57:53 | 00,075,392 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\dllcache\s3savmxm.sys
[2009/11/08 20:57:48 | 00,245,632 | ---- | C] (S3 Graphics, Inc.) -- C:\WINDOWS\System32\dllcache\s3savmx.dll
[2009/11/08 20:57:43 | 00,077,824 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3sav4m.sys
[2009/11/08 20:57:38 | 00,198,400 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3sav4.dll
[2009/11/08 20:57:33 | 00,061,504 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3sav3dm.sys
[2009/11/08 20:57:29 | 00,179,264 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3sav3d.dll
[2009/11/08 20:57:25 | 00,210,496 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3mvirge.dll
[2009/11/08 20:57:21 | 00,062,496 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3mtrio.dll
[2009/11/08 20:57:17 | 00,041,216 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3mt3d.sys
[2009/11/08 20:57:13 | 00,182,272 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3mt3d.dll
[2009/11/08 20:57:09 | 00,166,720 | ---- | C] (S3 Incorporated) -- C:\WINDOWS\System32\dllcache\s3m.sys
[2009/11/08 20:57:05 | 00,065,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\s3legacy.sys
[2009/11/08 20:57:01 | 00,082,432 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia450.dll
[2009/11/08 20:56:53 | 00,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia430.dll
[2009/11/08 20:56:52 | 00,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2009/11/08 20:56:51 | 00,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2009/11/08 20:56:49 | 00,029,696 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw450ext.dll
[2009/11/08 20:56:47 | 00,027,648 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw430ext.dll
[2009/11/08 20:56:42 | 00,020,992 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\System32\dllcache\rtl8139.sys
[2009/11/08 20:56:36 | 00,019,017 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\System32\dllcache\rtl8029.sys
[2009/11/08 20:56:31 | 00,030,720 | ---- | C] (Conexant Systems Inc.) -- C:\WINDOWS\System32\dllcache\rthwcls.sys
[2009/11/08 20:56:24 | 00,009,216 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\rsmgrstr.dll
[2009/11/08 20:56:18 | 00,003,840 | ---- | C] (Conexant Systems Inc.) -- C:\WINDOWS\System32\dllcache\rpfun.sys
[2009/11/08 20:56:16 | 00,079,104 | ---- | C] (Comtrol Corporation) -- C:\WINDOWS\System32\dllcache\rocket.sys
[2009/11/08 20:56:10 | 00,037,563 | ---- | C] (RadioLAN) -- C:\WINDOWS\System32\dllcache\rlnet5.sys
[2009/11/08 20:56:04 | 00,086,097 | ---- | C] (Xircom) -- C:\WINDOWS\System32\dllcache\reslog32.dll
[2009/11/08 20:56:02 | 00,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe
[2009/11/08 20:56:02 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe
[2009/11/08 20:55:54 | 00,019,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rasirda.sys
[2009/11/08 20:55:49 | 00,714,762 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\r2mdmkxx.sys
[2009/11/08 20:55:44 | 00,899,146 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\r2mdkxga.sys
[2009/11/08 20:55:39 | 00,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qvusd.dll
[2009/11/08 20:55:34 | 00,003,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qv2kux.sys
[2009/11/08 20:55:33 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe
[2009/11/08 20:55:32 | 00,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe
[2009/11/08 20:55:28 | 00,006,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qic157.sys
[2009/11/08 20:55:23 | 00,130,942 | ---- | C] (PCTEL, INC.) -- C:\WINDOWS\System32\dllcache\ptserlv.sys
[2009/11/08 20:55:18 | 00,112,574 | ---- | C] (PCTEL, INC.) -- C:\WINDOWS\System32\dllcache\ptserlp.sys
[2009/11/08 20:55:14 | 00,128,286 | ---- | C] (PCTEL, INC.) -- C:\WINDOWS\System32\dllcache\ptserli.sys
[2009/11/08 20:55:13 | 00,159,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ptpusd.dll
[2009/11/08 20:55:09 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ptpusb.dll
[2009/11/08 20:55:02 | 00,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\psisload.dll
[2009/11/08 20:54:55 | 00,016,128 | ---- | C] (SCM Microsystems, Inc.) -- C:\WINDOWS\System32\dllcache\pscr.sys
[2009/11/08 20:54:50 | 00,017,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ppa3.sys
[2009/11/08 20:54:45 | 00,017,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ppa.sys
[2009/11/08 20:54:43 | 00,008,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\powerfil.sys
[2009/11/08 20:54:37 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pnrmc.sys
[2009/11/08 20:54:36 | 00,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll
[2009/11/08 20:54:36 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll
[2009/11/08 20:54:35 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll
[2009/11/08 20:54:26 | 00,121,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phvfwext.dll
[2009/11/08 20:54:20 | 00,019,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\philtune.sys
[2009/11/08 20:54:15 | 00,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phildec.sys
[2009/11/08 20:54:10 | 00,173,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\philcam2.sys
[2009/11/08 20:54:04 | 00,075,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\philcam1.sys
[2009/11/08 20:54:00 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\philcam1.dll
[2009/11/08 20:53:55 | 00,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phdsext.ax
[2009/11/08 20:53:54 | 00,259,328 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:\WINDOWS\System32\dllcache\perm3dd.dll
[2009/11/08 20:53:53 | 00,028,032 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:\WINDOWS\System32\dllcache\perm3.sys
[2009/11/08 20:53:51 | 00,211,584 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:\WINDOWS\System32\dllcache\perm2dll.dll
[2009/11/08 20:53:50 | 00,027,904 | ---- | C] (Microsoft Corp., 3Dlabs Inc. Ltd.) -- C:\WINDOWS\System32\dllcache\perm2.sys
[2009/11/08 20:53:47 | 00,169,984 | ---- | C] (Cisco Systems) -- C:\WINDOWS\System32\dllcache\pcx500.sys
[2009/11/08 20:53:43 | 00,086,016 | ---- | C] (PCtel, Inc.) -- C:\WINDOWS\System32\dllcache\pctspk.exe
[2009/11/08 20:53:38 | 00,035,328 | ---- | C] (AMD Inc.) -- C:\WINDOWS\System32\dllcache\pcntpci5.sys
[2009/11/08 20:53:33 | 00,029,769 | ---- | C] (AMD Inc.) -- C:\WINDOWS\System32\dllcache\pcntn5m.sys
[2009/11/08 20:53:29 | 00,030,282 | ---- | C] (AMD Inc.) -- C:\WINDOWS\System32\dllcache\pcntn5hl.sys
[2009/11/08 20:53:25 | 00,026,153 | ---- | C] (Linksys) -- C:\WINDOWS\System32\dllcache\pcmlm56.sys
[2009/11/08 20:53:23 | 00,029,502 | ---- | C] (Marconi Communications, Inc.) -- C:\WINDOWS\System32\dllcache\pca200e.sys
[2009/11/08 20:53:18 | 00,030,495 | ---- | C] (Linksys) -- C:\WINDOWS\System32\dllcache\pc100nds.sys
[2009/11/08 20:53:16 | 00,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs412.dll
[2009/11/08 20:53:15 | 00,036,927 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs411.dll
[2009/11/08 20:53:09 | 00,041,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovui2rc.dll
[2009/11/08 20:53:04 | 00,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovui2.dll
[2009/11/08 20:52:58 | 00,025,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovsound2.sys
[2009/11/08 20:52:53 | 00,039,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovcoms.exe
[2009/11/08 20:52:49 | 00,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovcomc.dll
[2009/11/08 20:52:44 | 00,351,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovcodek2.sys
[2009/11/08 20:52:40 | 00,116,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovcodec2.dll
[2009/11/08 20:52:35 | 00,031,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovce.sys
[2009/11/08 20:52:30 | 00,028,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovcd.sys
[2009/11/08 20:52:25 | 00,048,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovcam2.sys
[2009/11/08 20:52:21 | 00,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ovca.sys
[2009/11/08 20:52:17 | 00,054,186 | ---- | C] (Ositech Communications, Inc.) -- C:\WINDOWS\System32\dllcache\otcsercb.sys
[2009/11/08 20:52:13 | 00,043,689 | ---- | C] (Ositech Communications, Inc.) -- C:\WINDOWS\System32\dllcache\otceth5.sys
[2009/11/08 20:52:09 | 00,027,209 | ---- | C] (Ositech Communications, Inc.) -- C:\WINDOWS\System32\dllcache\otc06x5.sys
[2009/11/08 20:52:03 | 00,054,528 | ---- | C] (Yamaha Corp.) -- C:\WINDOWS\System32\dllcache\opl3sax.sys
[2009/11/08 20:51:49 | 00,198,144 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\dllcache\nv3.sys
[2009/11/08 20:51:43 | 00,123,776 | ---- | C] (NVIDIA Corporation) -- C:\WINDOWS\System32\dllcache\nv3.dll
[2009/11/08 20:51:34 | 00,051,552 | ---- | C] (Kensington Technology Group) -- C:\WINDOWS\System32\dllcache\ntgrip.sys
[2009/11/08 20:51:33 | 00,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_ntfsdrv.dll
[2009/11/08 20:51:27 | 00,009,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntapm.sys
[2009/11/08 20:51:22 | 00,007,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nsmmc.sys
[2009/11/08 20:51:21 | 00,028,672 | ---- | C] (National Semiconductor Corporation) -- C:\WINDOWS\System32\dllcache\nscirda.sys
[2009/11/08 20:51:14 | 00,087,040 | ---- | C] (NeoMagic Corporation) -- C:\WINDOWS\System32\dllcache\nm6wdm.sys
[2009/11/08 20:51:08 | 00,126,080 | ---- | C] (NeoMagic Corporation) -- C:\WINDOWS\System32\dllcache\nm5a2wdm.sys
[2009/11/08 20:51:02 | 00,032,840 | ---- | C] (NETGEAR Corporation.) -- C:\WINDOWS\System32\dllcache\ngrpci.sys
[2009/11/08 20:51:01 | 00,132,695 | ---- | C] (802.11b) -- C:\WINDOWS\System32\dllcache\netwlan5.sys
[2009/11/08 20:50:54 | 00,065,278 | ---- | C] (Compaq Computer Corporation) -- C:\WINDOWS\System32\dllcache\netflx3.sys
[2009/11/08 20:50:49 | 00,039,264 | ---- | C] (NeoMagic Corporation) -- C:\WINDOWS\System32\dllcache\neo20xx.sys
[2009/11/08 20:50:45 | 00,060,480 | ---- | C] (NeoMagic Corporation) -- C:\WINDOWS\System32\dllcache\neo20xx.dll
[2009/11/08 20:50:40 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ne2000.sys
[2009/11/08 20:50:38 | 00,010,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndisip.sys
[2009/11/08 20:50:36 | 00,085,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nabtsfec.sys
[2009/11/08 20:50:31 | 00,091,488 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i3disp.dll
[2009/11/08 20:50:27 | 00,027,936 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i3d.sys
[2009/11/08 20:50:24 | 00,033,088 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i128v2.sys
[2009/11/08 20:50:20 | 00,059,104 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i128v2.dll
[2009/11/08 20:50:17 | 00,013,664 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i128.sys
[2009/11/08 20:50:13 | 00,035,392 | ---- | C] (Number Nine Visual Technology Corp.) -- C:\WINDOWS\System32\dllcache\n9i128.dll
[2009/11/08 20:50:09 | 00,128,000 | ---- | C] (Compaq Computer Corporation) -- C:\WINDOWS\System32\dllcache\n100325.sys
[2009/11/08 20:50:06 | 00,052,255 | ---- | C] (Compaq Computer Corporation) -- C:\WINDOWS\System32\dllcache\n1000nt5.sys
[2009/11/08 20:50:01 | 00,075,520 | ---- | C] (Moxa Technologies Co., Ltd.) -- C:\WINDOWS\System32\dllcache\mxport.sys
[2009/11/08 20:49:57 | 00,007,168 | ---- | C] (Moxa Technologies Co., Ltd) -- C:\WINDOWS\System32\dllcache\mxport.dll
[2009/11/08 20:49:49 | 00,019,968 | ---- | C] (Macronix International Co., Ltd. ) -- C:\WINDOWS\System32\dllcache\mxnic.sys
[2009/11/08 20:49:43 | 00,019,968 | ---- | C] (Moxa Technologies Co., Ltd) -- C:\WINDOWS\System32\dllcache\mxicfg.dll
[2009/11/08 20:49:38 | 00,021,888 | ---- | C] (Moxa Technologies Co., Ltd.) -- C:\WINDOWS\System32\dllcache\mxcard.sys
[2009/11/08 20:49:37 | 00,229,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\multibox.dll
[2009/11/08 20:49:31 | 00,103,296 | ---- | C] (Matrox Graphics Inc) -- C:\WINDOWS\System32\dllcache\mtxvideo.sys
[2009/11/08 20:49:23 | 00,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstee.sys
[2009/11/08 20:49:22 | 00,049,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstape.sys
[2009/11/08 20:49:16 | 00,012,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msriffwv.sys
[2009/11/08 20:49:08 | 00,002,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msmpu401.sys
[2009/11/08 20:49:05 | 00,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msircomm.sys
[2009/11/08 20:49:04 | 01,875,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.lex
[2009/11/08 20:49:04 | 00,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.dll
[2009/11/08 20:48:56 | 00,035,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msgame.sys
[2009/11/08 20:48:51 | 00,006,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfsio.sys
[2009/11/08 20:48:49 | 00,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdv.sys
[2009/11/08 20:48:44 | 00,015,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mpe.sys
[2009/11/08 20:48:39 | 00,016,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\modemcsa.sys
[2009/11/08 20:48:33 | 00,006,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\miniqic.sys
[2009/11/08 20:48:31 | 00,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migisol.exe
[2009/11/08 20:48:27 | 00,320,384 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\dllcache\mgaum.sys
[2009/11/08 20:48:23 | 00,235,648 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\dllcache\mgaud.dll
[2009/11/08 20:48:23 | 00,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys
[2009/11/08 20:48:22 | 00,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll
[2009/11/08 20:48:21 | 00,026,112 | ---- | C] (Sony Corporation) -- C:\WINDOWS\System32\dllcache\memstpci.sys
[2009/11/08 20:48:17 | 00,047,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\memgrp.dll
[2009/11/08 20:48:14 | 00,008,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\memcard.sys
[2009/11/08 20:48:10 | 00,164,586 | ---- | C] (Madge Networks Ltd) -- C:\WINDOWS\System32\dllcache\mdgndis5.sys
[2009/11/08 20:48:04 | 00,007,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mammoth.sys
[2009/11/08 20:48:03 | 00,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_mailmsg.dll
[2009/11/08 20:47:58 | 00,048,768 | ---- | C] (ESS Technology, Inc.) -- C:\WINDOWS\System32\dllcache\maestro.sys
[2009/11/08 20:47:51 | 00,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\m3092dc.dll
[2009/11/08 20:47:45 | 00,058,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\m3091dc.dll
[2009/11/08 20:47:40 | 00,022,848 | ---- | C] (Logitech Inc.) -- C:\WINDOWS\System32\dllcache\lwusbhid.sys
[2009/11/08 20:47:38 | 00,020,864 | ---- | C] (Logitech Inc.) -- C:\WINDOWS\System32\dllcache\lwadihid.sys
[2009/11/08 20:47:32 | 00,797,500 | ---- | C] (LT) -- C:\WINDOWS\System32\dllcache\ltsmt.sys
[2009/11/08 20:47:28 | 00,802,683 | ---- | C] (Lucent Technologies) -- C:\WINDOWS\System32\dllcache\ltsm.sys
[2009/11/08 20:47:27 | 00,007,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ltotape.sys
[2009/11/08 20:47:26 | 00,420,992 | ---- | C] (LT) -- C:\WINDOWS\System32\dllcache\ltmdmntt.sys
[2009/11/08 20:47:22 | 00,576,746 | ---- | C] (LT) -- C:\WINDOWS\System32\dllcache\ltmdmntl.sys
[2009/11/08 20:47:21 | 00,606,684 | ---- | C] (LT) -- C:\WINDOWS\System32\dllcache\ltmdmnt.sys
[2009/11/08 20:47:17 | 00,727,786 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\ltck000c.sys
[2009/11/08 20:47:11 | 00,004,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\loop.sys
[2009/11/08 20:47:06 | 00,070,730 | ---- | C] (Linksys Group, Inc.) -- C:\WINDOWS\System32\dllcache\lne100tx.sys
[2009/11/08 20:47:02 | 00,020,573 | ---- | C] (The Linksts Group ) -- C:\WINDOWS\System32\dllcache\lne100.sys
[2009/11/08 20:46:59 | 00,025,065 | ---- | C] (D-Link) -- C:\WINDOWS\System32\dllcache\lmndis3.sys
[2009/11/08 20:46:55 | 00,015,744 | ---- | C] (Litronic Industries) -- C:\WINDOWS\System32\dllcache\lit220p.sys
[2009/11/08 20:46:54 | 00,034,688 | ---- | C] (Toshiba Corp.) -- C:\WINDOWS\System32\dllcache\lbrtfdc.sys
[2009/11/08 20:46:49 | 00,026,442 | ---- | C] (SMSC) -- C:\WINDOWS\System32\dllcache\lanepic5.sys
[2009/11/08 20:46:44 | 00,019,016 | ---- | C] (Kingston Technology Company ) -- C:\WINDOWS\System32\dllcache\ktc111.sys
[2009/11/08 20:46:43 | 00,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksxbar.ax
[2009/11/08 20:46:42 | 00,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kswdmcap.ax
[2009/11/08 20:46:41 | 00,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kstvtune.ax
[2009/11/08 20:46:35 | 00,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kousd.dll
[2009/11/08 20:46:34 | 00,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\korwbrkr.dll
[2009/11/08 20:46:32 | 00,253,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kdsusd.dll
[2009/11/08 20:46:31 | 00,048,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kdsui.dll
[2009/11/08 20:46:30 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll
[2009/11/08 20:46:23 | 00,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecat.dll
[2009/11/08 20:46:23 | 00,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecnt.dll
[2009/11/08 20:46:23 | 00,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnec95.dll
[2009/11/08 20:46:16 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkor.dll
[2009/11/08 20:46:12 | 00,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdjpn.dll
[2009/11/08 20:46:06 | 00,014,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhid.sys
[2009/11/08 20:45:57 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd106.dll
[2009/11/08 20:45:53 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd103.dll
[2009/11/08 20:45:50 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101c.dll
[2009/11/08 20:45:47 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101b.dll
[2009/11/08 20:45:46 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101a.dll
[2009/11/08 20:45:45 | 00,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jupiw.dll
[2009/11/08 20:45:41 | 00,026,624 | ---- | C] (SigmaTel, Inc.) -- C:\WINDOWS\System32\dllcache\irstusb.sys
[2009/11/08 20:45:37 | 00,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irmon.dll
[2009/11/08 20:45:37 | 00,018,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irsir.sys
[2009/11/08 20:45:33 | 00,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irftp.exe
[2009/11/08 20:45:33 | 00,023,552 | ---- | C] (MKNet Corporation) -- C:\WINDOWS\System32\dllcache\irmk7.sys
[2009/11/08 20:45:32 | 00,088,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irda.sys
[2009/11/08 20:45:30 | 00,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ipsink.ax
[2009/11/08 20:45:25 | 00,045,632 | ---- | C] (Interphase ® Corporation a Windows ® 2000 DDK Driver Provider) -- C:\WINDOWS\System32\dllcache\ip5515.sys
[2009/11/08 20:45:21 | 00,090,200 | ---- | C] (Perle Systems Ltd. ) -- C:\WINDOWS\System32\dllcache\io8ports.dll
[2009/11/08 20:45:18 | 00,038,784 | ---- | C] (Perle Systems Ltd. ) -- C:\WINDOWS\System32\dllcache\io8.sys
[2009/11/08 20:45:12 | 00,013,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inport.sys
[2009/11/08 20:45:10 | 00,471,102 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskdic.dll
[2009/11/08 20:45:08 | 00,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imkrinst.exe
[2009/11/08 20:45:06 | 00,045,109 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpuex.exe
[2009/11/08 20:45:02 | 00,057,398 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdadm.exe
[2009/11/08 20:44:59 | 00,311,359 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsv.exe
[2009/11/08 20:44:59 | 00,102,463 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsm.dll
[2009/11/08 20:44:58 | 00,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmig.exe
[2009/11/08 20:44:48 | 00,372,824 | ---- | C] (Xircom) -- C:\WINDOWS\System32\dllcache\iconf32.dll
[2009/11/08 20:44:43 | 00,100,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icam5usb.sys
[2009/11/08 20:44:39 | 00,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icam5ext.dll
[2009/11/08 20:44:34 | 00,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icam5com.dll
[2009/11/08 20:44:28 | 00,154,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icam4usb.sys
[2009/11/08 20:44:24 | 00,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icam4ext.dll
[2009/11/08 20:44:20 | 00,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icam4com.dll
[2009/11/08 20:44:16 | 00,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icam3ext.dll
[2009/11/08 20:44:13 | 00,141,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icam3.sys
[2009/11/08 20:44:08 | 00,038,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ibmvcap.sys
[2009/11/08 20:44:04 | 00,109,085 | ---- | C] (IBM Corporation) -- C:\WINDOWS\System32\dllcache\ibmtrp.sys
[2009/11/08 20:44:01 | 00,100,936 | ---- | C] (IBM Corporation) -- C:\WINDOWS\System32\dllcache\ibmtok.sys
[2009/11/08 20:43:58 | 00,009,216 | ---- | C] (IBM Corporation) -- C:\WINDOWS\System32\dllcache\ibmsgnet.dll
[2009/11/08 20:43:55 | 00,028,700 | ---- | C] (IBM Corp.) -- C:\WINDOWS\System32\dllcache\ibmexmp.sys
[2009/11/08 20:43:53 | 00,161,020 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\dllcache\i81xnt5.sys
[2009/11/08 20:43:52 | 00,702,845 | ---- | C] (Intel® Corporation) -- C:\WINDOWS\System32\dllcache\i81xdnt5.dll
[2009/11/08 20:43:48 | 00,058,592 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\i740nt5.sys
[2009/11/08 20:43:43 | 00,353,184 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\i740dnt5.dll
[2009/11/08 20:43:41 | 10,129,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxkor.dll
[2009/11/08 20:43:31 | 10,096,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxcht.dll
[2009/11/08 20:43:25 | 00,488,383 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_v124.sys
[2009/11/08 20:43:20 | 00,050,751 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_tone.sys
[2009/11/08 20:43:15 | 00,073,279 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_spkp.sys
[2009/11/08 20:43:11 | 00,044,863 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_soar.sys
[2009/11/08 20:43:06 | 00,057,471 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_samp.sys
[2009/11/08 20:43:02 | 00,542,879 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_msft.sys
[2009/11/08 20:42:57 | 00,391,199 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_k56k.sys
[2009/11/08 20:42:53 | 00,009,759 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_inst.dll
[2009/11/08 20:42:50 | 00,115,807 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_fsks.sys
[2009/11/08 20:42:46 | 00,199,711 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_faxx.sys
[2009/11/08 20:42:42 | 00,289,887 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_fall.sys
[2009/11/08 20:42:38 | 00,067,167 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_bsc2.sys
[2009/11/08 20:42:35 | 00,150,239 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hsf_amos.sys
[2009/11/08 20:42:30 | 00,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hr1w.dll
[2009/11/08 20:42:27 | 00,005,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hpt4qic.sys
[2009/11/08 20:42:23 | 00,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hpsjmcro.dll
[2009/11/08 20:42:20 | 00,324,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hpojwia.dll
[2009/11/08 20:42:17 | 00,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hpgtmcro.dll
[2009/11/08 20:42:14 | 00,068,608 | ---- | C] (Avisioin) -- C:\WINDOWS\System32\dllcache\hpgt53tk.dll
[2009/11/08 20:42:08 | 00,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hpgt42tk.dll
[2009/11/08 20:42:02 | 00,126,976 | ---- | C] (Hewlett Packard) -- C:\WINDOWS\System32\dllcache\hpgt34tk.dll
[2009/11/08 20:41:56 | 00,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hpgt33tk.dll
[2009/11/08 20:41:50 | 00,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hpgt21tk.dll
[2009/11/08 20:41:43 | 00,119,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hpdigwia.dll
[2009/11/08 20:41:38 | 00,002,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hidswvd.sys
[2009/11/08 20:41:34 | 00,008,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hidgame.sys
[2009/11/08 20:41:33 | 00,020,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hidbatt.sys
[2009/11/08 20:41:29 | 00,907,456 | ---- | C] (Conexant) -- C:\WINDOWS\System32\dllcache\hcf_msft.sys
[2009/11/08 20:41:28 | 00,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hanjadic.dll
[2009/11/08 20:41:26 | 00,028,288 | ---- | C] (Gemplus) -- C:\WINDOWS\System32\dllcache\grserial.sys
[2009/11/08 20:41:23 | 00,082,304 | ---- | C] (Gemplus) -- C:\WINDOWS\System32\dllcache\grclass.sys
[2009/11/08 20:41:19 | 00,017,408 | ---- | C] (Gemplus) -- C:\WINDOWS\System32\dllcache\gpr400.sys
[2009/11/08 20:41:17 | 00,059,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\gckernel.sys
[2009/11/08 20:41:16 | 00,010,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\gameenum.sys
[2009/11/08 20:41:13 | 00,322,432 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\dllcache\g400m.sys
[2009/11/08 20:41:11 | 01,733,120 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\dllcache\g400d.dll
[2009/11/08 20:41:08 | 00,320,384 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\dllcache\g200m.sys
[2009/11/08 20:41:06 | 00,470,144 | ---- | C] (Matrox Graphics Inc.) -- C:\WINDOWS\System32\dllcache\g200d.dll
[2009/11/08 20:41:03 | 00,454,912 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fxusbase.sys
[2009/11/08 20:40:57 | 00,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fuusd.dll
[2009/11/08 20:40:54 | 00,455,296 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fusbbase.sys
[2009/11/08 20:40:50 | 00,455,680 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fus2base.sys
[2009/11/08 20:40:49 | 00,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll
[2009/11/08 20:40:45 | 00,442,240 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fpnpbase.sys
[2009/11/08 20:40:41 | 00,441,728 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fpcmbase.sys
[2009/11/08 20:40:37 | 00,444,416 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\fpcibase.sys
[2009/11/08 20:40:36 | 00,034,173 | ---- | C] (Marconi Communications, Inc.) -- C:\WINDOWS\System32\dllcache\forehe.sys
[2009/11/08 20:40:32 | 00,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fnfilter.dll
[2009/11/08 20:40:30 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe
[2009/11/08 20:40:26 | 00,027,165 | ---- | C] (VIA Technologies, Inc. ) -- C:\WINDOWS\System32\dllcache\fetnd5.sys
[2009/11/08 20:40:18 | 00,022,090 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\fem556n5.sys
[2009/11/08 20:40:17 | 00,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_fcachdll.dll
[2009/11/08 20:40:13 | 00,024,618 | ---- | C] (NETGEAR) -- C:\WINDOWS\System32\dllcache\fa410nd5.sys
[2009/11/08 20:40:10 | 00,016,074 | ---- | C] (NETGEAR Corp.) -- C:\WINDOWS\System32\dllcache\fa312nd5.sys
[2009/11/08 20:40:07 | 00,011,850 | ---- | C] (FUJITSU LIMITED) -- C:\WINDOWS\System32\dllcache\f3ab18xj.sys
[2009/11/08 20:40:04 | 00,012,362 | ---- | C] (FUJITSU LIMITED) -- C:\WINDOWS\System32\dllcache\f3ab18xi.sys
[2009/11/08 20:40:00 | 00,007,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\exabyte2.sys
[2009/11/08 20:39:57 | 00,016,998 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\ex10.sys
[2009/11/08 20:39:55 | 00,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2009/11/08 20:39:55 | 00,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\et4000.sys
[2009/11/08 20:39:52 | 00,045,568 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunib.dll
[2009/11/08 20:39:50 | 00,045,568 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuni.dll
[2009/11/08 20:39:49 | 00,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2009/11/08 20:39:46 | 00,034,816 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimg.dll
[2009/11/08 20:39:46 | 00,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2009/11/08 20:39:43 | 00,043,008 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucm.dll
[2009/11/08 20:39:42 | 00,137,088 | ---- | C] (ESS Technology, Inc.) -- C:\WINDOWS\System32\dllcache\essm2e.sys
[2009/11/08 20:39:38 | 00,063,360 | ---- | C] (ESS Technology, Inc.) -- C:\WINDOWS\System32\dllcache\ess.sys
[2009/11/08 20:39:34 | 00,347,550 | ---- | C] (ESS Technology, Inc.) -- C:\WINDOWS\System32\dllcache\es56tpi.sys
[2009/11/08 20:39:31 | 00,594,238 | ---- | C] (ESS Technology, Inc.) -- C:\WINDOWS\System32\dllcache\es56hpi.sys
[2009/11/08 20:39:28 | 00,595,647 | ---- | C] (ESS Technology, Inc.) -- C:\WINDOWS\System32\dllcache\es56cvmp.sys
[2009/11/08 20:39:24 | 00,174,464 | ---- | C] (ESS Technology, Inc.) -- C:\WINDOWS\System32\dllcache\es198x.sys
[2009/11/08 20:39:21 | 00,072,192 | ---- | C] (ESS Technology Inc.) -- C:\WINDOWS\System32\dllcache\es1969.sys
[2009/11/08 20:39:18 | 00,040,704 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\es1371mp.sys
[2009/11/08 20:39:14 | 00,037,120 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\es1370mp.sys
[2009/11/08 20:39:10 | 00,061,952 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\dllcache\eqnloop.exe
[2009/11/08 20:39:07 | 00,051,200 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\dllcache\eqnlogr.exe
[2009/11/08 20:39:03 | 00,053,248 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\dllcache\eqndiag.exe
[2009/11/08 20:39:00 | 00,629,952 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\dllcache\eqn.sys
[2009/11/08 20:38:58 | 00,114,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\epstw2k.sys
[2009/11/08 20:38:54 | 00,018,503 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\epro4.sys
[2009/11/08 20:38:52 | 00,144,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\epcfw2k.sys
[2009/11/08 20:38:50 | 00,283,904 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\emu10k1m.sys
[2009/11/08 20:38:43 | 00,019,996 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\em556n4.sys
[2009/11/08 20:38:41 | 00,025,159 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\elnk3.sys
[2009/11/08 20:38:39 | 00,007,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\elmsmc.sys
[2009/11/08 20:38:37 | 00,171,520 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el99xn51.sys
[2009/11/08 20:38:35 | 00,070,174 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el98xn5.sys
[2009/11/08 20:38:33 | 00,455,199 | ---- | C] (3Com Corporation.) -- C:\WINDOWS\System32\dllcache\el985n51.sys
[2009/11/08 20:38:31 | 00,153,631 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el90xnd5.sys
[2009/11/08 20:38:29 | 00,066,591 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el90xbc5.sys
[2009/11/08 20:38:27 | 00,241,206 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el656se5.sys
[2009/11/08 20:38:25 | 00,077,386 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el656nd5.sys
[2009/11/08 20:38:23 | 00,634,134 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el656ct5.sys
[2009/11/08 20:38:21 | 00,069,194 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el656cd5.sys
[2009/11/08 20:38:19 | 00,026,141 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el589nd5.sys
[2009/11/08 20:38:18 | 00,069,692 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el575nd5.sys
[2009/11/08 20:38:16 | 00,024,653 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el574nd4.sys
[2009/11/08 20:38:14 | 00,055,999 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el556nd5.sys
[2009/11/08 20:38:10 | 00,044,103 | ---- | C] (3Com Corporation) -- C:\WINDOWS\System32\dllcache\el515.sys
[2009/11/08 20:38:08 | 00,514,587 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\edb500.dll
[2009/11/08 20:38:04 | 00,019,594 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\e100isa4.sys
[2009/11/08 20:38:01 | 00,050,719 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\e1000nt5.sys
[2009/11/08 20:37:54 | 00,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dshowext.ax
[2009/11/08 20:37:51 | 00,334,208 | ---- | C] (Yamaha Corp.) -- C:\WINDOWS\System32\dllcache\ds1wdm.sys
[2009/11/08 20:37:44 | 00,028,062 | ---- | C] (National Semiconductor Coproration) -- C:\WINDOWS\System32\dllcache\dp83820.sys
[2009/11/08 20:37:42 | 00,023,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dot4usb.sys
[2009/11/08 20:37:38 | 00,012,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dot4prt.sys
[2009/11/08 20:37:37 | 00,206,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dot4.sys
[2009/11/08 20:37:31 | 00,029,696 | ---- | C] (CNet Technology, Inc. ) -- C:\WINDOWS\System32\dllcache\dm9pci5.sys
[2009/11/08 20:37:30 | 00,008,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dlttape.sys
[2009/11/08 20:37:28 | 00,026,698 | ---- | C] (D-Link Corporation) -- C:\WINDOWS\System32\dllcache\dlh5xnd5.sys
[2009/11/08 20:37:25 | 00,952,007 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\diwan.sys
[2009/11/08 20:37:17 | 00,236,060 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\ditrace.exe
[2009/11/08 20:37:15 | 00,038,985 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\disrvsu.dll
[2009/11/08 20:37:13 | 00,031,305 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\disrvpp.dll
[2009/11/08 20:37:10 | 00,006,729 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\disrvci.dll
[2009/11/08 20:37:07 | 00,091,305 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\dimaint.sys
[2009/11/08 20:37:05 | 00,614,429 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digiview.exe
[2009/11/08 20:37:03 | 00,042,432 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dllcache\digirlpt.sys
[2009/11/08 20:37:02 | 00,110,621 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dllcache\digirlpt.dll
[2009/11/08 20:37:00 | 00,021,606 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digiisdn.sys
[2009/11/08 20:36:59 | 00,041,046 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digiisdn.dll
[2009/11/08 20:36:57 | 00,102,484 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digiinf.dll
[2009/11/08 20:36:55 | 00,159,828 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digihlc.dll
[2009/11/08 20:36:53 | 00,229,462 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digifwrk.dll
[2009/11/08 20:36:52 | 00,090,525 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digifep5.sys
[2009/11/08 20:36:50 | 00,103,044 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digidxb.sys
[2009/11/08 20:36:49 | 00,131,156 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digidbp.dll
[2009/11/08 20:36:47 | 00,037,735 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digiasyn.sys
[2009/11/08 20:36:44 | 00,065,622 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\digiasyn.dll
[2009/11/08 20:36:40 | 00,419,357 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dllcache\dgconfig.dll
[2009/11/08 20:36:38 | 00,029,531 | ---- | C] (Digi International Inc.) -- C:\WINDOWS\System32\dllcache\dgapci.sys
[2009/11/08 20:36:35 | 00,024,649 | ---- | C] (D-Link) -- C:\WINDOWS\System32\dllcache\dfe650d.sys
[2009/11/08 20:36:33 | 00,024,648 | ---- | C] (D-Link) -- C:\WINDOWS\System32\dllcache\dfe650.sys
[2009/11/08 20:36:31 | 00,024,064 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\devldr32.exe
[2009/11/08 20:36:29 | 00,256,512 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\devcon32.dll
[2009/11/08 20:36:26 | 00,020,928 | ---- | C] (Digital Networks, LLC) -- C:\WINDOWS\System32\dllcache\defpa.sys
[2009/11/08 20:36:24 | 00,007,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ddsmc.sys
[2009/11/08 20:36:21 | 00,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dc260usd.dll
[2009/11/08 20:36:19 | 00,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dc240usd.dll
[2009/11/08 20:36:17 | 00,063,208 | ---- | C] (Intel Corporation.) -- C:\WINDOWS\System32\dllcache\dc21x4.sys
[2009/11/08 20:36:15 | 00,080,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dc210usd.dll
[2009/11/08 20:36:13 | 00,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dc210_32.dll
[2009/11/08 20:36:08 | 00,117,760 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\d100ib5.sys
[2009/11/08 20:36:06 | 00,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cyzports.dll
[2009/11/08 20:36:04 | 00,049,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cyzport.sys
[2009/11/08 20:36:02 | 00,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cyzcoins.dll
[2009/11/08 20:36:00 | 00,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cyyports.dll
[2009/11/08 20:35:59 | 00,050,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cyyport.sys
[2009/11/08 20:35:57 | 00,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cyycoins.dll
[2009/11/08 20:35:55 | 00,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cyclom-y.sys
[2009/11/08 20:35:53 | 00,017,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cyclad-z.sys
[2009/11/08 20:35:52 | 00,048,640 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwrwdm.sys
[2009/11/08 20:35:51 | 00,093,952 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwcwdm.sys
[2009/11/08 20:35:49 | 00,111,872 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwcspud.sys
[2009/11/08 20:35:47 | 00,003,584 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwcosnt5.sys
[2009/11/08 20:35:45 | 00,072,832 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwbwdm.sys
[2009/11/08 20:35:43 | 00,003,072 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwbmidi.sys
[2009/11/08 20:35:41 | 00,003,072 | ---- | C] (Crystal Semiconductor Corp.) -- C:\WINDOWS\System32\dllcache\cwbase.sys
[2009/11/08 20:35:38 | 00,249,856 | ---- | C] (ComtrolŪ Corporation) -- C:\WINDOWS\System32\dllcache\ctmasetp.dll
[2009/11/08 20:35:38 | 00,004,096 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\ctwdm32.dll
[2009/11/08 20:35:36 | 00,096,256 | ---- | C] (Copyright © Creative Technology Ltd. 1994-2001) -- C:\WINDOWS\System32\dllcache\ctlsb16.sys
[2009/11/08 20:35:35 | 00,003,712 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\ctljystk.sys
[2009/11/08 20:35:33 | 00,006,912 | ---- | C] (Creative Technology Ltd.) -- C:\WINDOWS\System32\dllcache\ctlfacem.sys
[2009/11/08 20:35:31 | 00,175,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\csamsp.dll
[2009/11/08 20:35:29 | 00,042,112 | ---- | C] (Conexant Systems Inc.) -- C:\WINDOWS\System32\dllcache\crtaud.sys
[2009/11/08 20:35:28 | 00,216,064 | ---- | C] (COMPAQ Inc.) -- C:\WINDOWS\System32\dllcache\cpscan.dll
[2009/11/08 20:35:27 | 00,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe
[2009/11/08 20:35:25 | 00,060,970 | ---- | C] (Compaq Computer Corp.) -- C:\WINDOWS\System32\dllcache\cpqtrnd5.sys
[2009/11/08 20:35:23 | 00,021,533 | ---- | C] (Compaq Computer Corporation) -- C:\WINDOWS\System32\dllcache\cpqndis5.sys
[2009/11/08 20:35:18 | 00,039,936 | ---- | C] (Conexant Systems, Inc.) -- C:\WINDOWS\System32\dllcache\cnxt1803.sys
[2009/11/08 20:35:17 | 00,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cnusd.dll
[2009/11/08 20:35:14 | 00,020,736 | ---- | C] (OMNIKEY AG) -- C:\WINDOWS\System32\dllcache\cmbp0wdm.sys
[2009/11/08 20:35:13 | 00,248,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cl546xm.sys
[2009/11/08 20:35:12 | 00,170,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cl546x.dll
[2009/11/08 20:35:11 | 00,111,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cl5465.dll
[2009/11/08 20:35:10 | 00,045,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cirrus.sys
[2009/11/08 20:35:09 | 00,091,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cirrus.dll
[2009/11/08 20:35:05 | 00,272,640 | ---- | C] (RAVISENT Technologies Inc.) -- C:\WINDOWS\System32\dllcache\cinemclc.sys
[2009/11/08 20:35:03 | 00,980,034 | ---- | C] (Xircom) -- C:\WINDOWS\System32\dllcache\cicap.sys
[2009/11/08 20:35:00 | 01,677,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chsbrkr.dll
[2009/11/08 20:35:00 | 00,838,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtbrkr.dll
[2009/11/08 20:34:58 | 00,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe
[2009/11/08 20:34:58 | 00,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe
[2009/11/08 20:34:58 | 00,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe
[2009/11/08 20:34:57 | 00,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\changer.sys
[2009/11/08 20:34:55 | 00,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe
[2009/11/08 20:34:52 | 00,049,182 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cem56n5.sys
[2009/11/08 20:34:50 | 00,022,044 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cem33n5.sys
[2009/11/08 20:34:49 | 00,022,044 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cem28n5.sys
[2009/11/08 20:34:46 | 00,027,164 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\ce3n5.sys
[2009/11/08 20:34:44 | 00,021,530 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\ce2n5.sys
[2009/11/08 20:34:42 | 00,017,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ccdecode.sys
[2009/11/08 20:34:41 | 00,714,698 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cbmdmkxx.sys
[2009/11/08 20:34:40 | 00,046,108 | ---- | C] (Xircom, Inc.) -- C:\WINDOWS\System32\dllcache\cben5.sys
[2009/11/08 20:34:39 | 00,039,680 | ---- | C] (Silicom Ltd.) -- C:\WINDOWS\System32\dllcache\cb325.sys
[2009/11/08 20:34:37 | 00,037,916 | ---- | C] (Fast Ethernet Controller Provider) -- C:\WINDOWS\System32\dllcache\cb102.sys
[2009/11/08 20:34:35 | 00,032,256 | ---- | C] (Eicon Technology Corporation) -- C:\WINDOWS\System32\dllcache\diapi2NT.dll
[2009/11/08 20:34:34 | 00,164,923 | ---- | C] (Eicon Technology) -- C:\WINDOWS\System32\dllcache\diapi2.sys
[2009/11/08 20:34:33 | 00,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2009/11/08 20:34:32 | 00,121,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camext30.dll
[2009/11/08 20:34:31 | 00,236,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camext20.dll
[2009/11/08 20:34:31 | 00,116,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camext30.ax
[2009/11/08 20:34:30 | 00,244,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camext20.ax
[2009/11/08 20:34:29 | 00,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camexo20.dll
[2009/11/08 20:34:28 | 00,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camexo20.ax
[2009/11/08 20:34:27 | 00,171,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camdrv30.sys
[2009/11/08 20:34:26 | 00,223,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camdrv21.sys
[2009/11/08 20:34:25 | 00,314,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\camdro21.sys
[2009/11/08 20:34:24 | 00,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll
[2009/11/08 20:34:24 | 00,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_is2022.dll
[2009/11/08 20:33:49 | 00,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bulltlp3.sys
[2009/11/08 20:33:47 | 00,031,529 | ---- | C] (BreezeCOM) -- C:\WINDOWS\System32\dllcache\brzwlan.sys
[2009/11/08 20:33:45 | 00,010,368 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brusbscn.sys
[2009/11/08 20:33:44 | 00,011,008 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brusbmdm.sys
[2009/11/08 20:33:43 | 00,060,416 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brserwdm.sys
[2009/11/08 20:33:42 | 00,009,728 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brserif.dll
[2009/11/08 20:33:41 | 00,005,120 | ---- | C] (Brother Industries,Ltd.) -- C:\WINDOWS\System32\dllcache\brscnrsm.dll
[2009/11/08 20:33:40 | 00,039,552 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brparwdm.sys
[2009/11/08 20:33:39 | 00,003,168 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brparimg.sys
[2009/11/08 20:33:38 | 00,041,472 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brmfusb.dll
[2009/11/08 20:33:37 | 00,032,256 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brmfrsmg.exe
[2009/11/08 20:33:36 | 00,029,696 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brmflpt.dll
[2009/11/08 20:33:35 | 00,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\brmfcwia.dll
[2009/11/08 20:33:35 | 00,015,360 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brmfbidi.dll
[2009/11/08 20:33:34 | 00,003,968 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brfiltup.sys
[2009/11/08 20:33:33 | 00,012,160 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brfiltlo.sys
[2009/11/08 20:33:32 | 00,002,944 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brfilt.sys
[2009/11/08 20:33:31 | 00,012,800 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brevif.dll
[2009/11/08 20:33:31 | 00,009,728 | ---- | C] (Brother Industries Ltd.) -- C:\WINDOWS\System32\dllcache\brcoinst.dll
[2009/11/08 20:33:30 | 00,019,456 | ---- | C] (Brother Industries, Ltd.) -- C:\WINDOWS\System32\dllcache\brbidiif.dll
[2009/11/08 20:33:28 | 00,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\binlsvc.dll
[2009/11/08 20:33:26 | 00,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bdaplgin.ax
[2009/11/08 20:33:26 | 00,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bdasup.sys
[2009/11/08 20:33:25 | 00,871,388 | ---- | C] (BCM) -- C:\WINDOWS\System32\dllcache\bcmdm.sys
[2009/11/08 20:33:24 | 00,054,271 | ---- | C] (Broadcom Corporation) -- C:\WINDOWS\System32\dllcache\bcm42xx5.sys
[2009/11/08 20:33:24 | 00,026,568 | ---- | C] (Broadcom Corporation) -- C:\WINDOWS\System32\dllcache\bcm4e5.sys
[2009/11/08 20:33:23 | 00,066,557 | ---- | C] (Broadcom Corporation) -- C:\WINDOWS\System32\dllcache\bcm42u.sys
[2009/11/08 20:33:21 | 00,342,336 | ---- | C] (3Dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\banshee.dll
[2009/11/08 20:33:21 | 00,036,128 | ---- | C] (3Dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\banshee.sys
[2009/11/08 20:33:20 | 00,096,640 | ---- | C] (Broadcom Corporation) -- C:\WINDOWS\System32\dllcache\b57xp32.sys
[2009/11/08 20:33:20 | 00,089,952 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\b1cbase.sys
[2009/11/08 20:33:19 | 00,036,992 | ---- | C] (Aztech Systems Ltd) -- C:\WINDOWS\System32\dllcache\aztw2320.sys
[2009/11/08 20:33:18 | 00,037,568 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\avmwan.sys
[2009/11/08 20:33:17 | 00,144,384 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\avmenum.dll
[2009/11/08 20:33:16 | 00,087,552 | ---- | C] (AVM GmbH) -- C:\WINDOWS\System32\dllcache\avmcoxp.dll
[2009/11/08 20:33:15 | 00,013,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avcstrm.sys
[2009/11/08 20:33:14 | 00,036,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avcaudio.sys
[2009/11/08 20:33:13 | 00,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avc.sys
[2009/11/08 20:33:05 | 00,070,528 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\atiragem.sys
[2009/11/08 20:33:04 | 00,104,832 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\atiraged.dll
[2009/11/08 20:33:02 | 00,281,600 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\atimtai.sys
[2009/11/08 20:33:01 | 00,289,664 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\atimpab.sys
[2009/11/08 20:33:01 | 00,075,136 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\atimpae.sys
[2009/11/08 20:33:00 | 00,037,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\atievxx.exe
[2009/11/08 20:32:59 | 00,268,160 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\atidvai.dll
[2009/11/08 20:32:59 | 00,137,216 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\atidrae.dll
[2009/11/08 20:32:58 | 00,382,592 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\dllcache\atidrab.dll
[2009/11/08 20:32:55 | 00,077,568 | ---- | C] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\dllcache\ati.sys
[2009/11/08 20:32:54 | 00,096,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ati.dll
[2009/11/08 20:32:53 | 00,097,354 | ---- | C] (Bay Networks, Inc.) -- C:\WINDOWS\System32\dllcache\aspndis3.sys
[2009/11/08 20:32:51 | 00,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_aqadmin.dll
[2009/11/08 20:32:50 | 00,036,224 | ---- | C] (ADMtek Incorporated.) -- C:\WINDOWS\System32\dllcache\an983.sys
[2009/11/08 20:32:50 | 00,006,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\apmbatt.sys
[2009/11/08 20:32:48 | 00,016,969 | ---- | C] (AmbiCom, Inc.) -- C:\WINDOWS\System32\dllcache\amb8002.sys
[2009/11/08 20:32:47 | 00,027,678 | ---- | C] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\dllcache\ali5261.sys
[2009/11/08 20:32:47 | 00,026,624 | ---- | C] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\dllcache\alifir.sys
[2009/11/08 20:32:40 | 00,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agcgauge.ax
[2009/11/08 20:32:39 | 00,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_adsiisex.dll
[2009/11/08 20:32:38 | 00,046,112 | ---- | C] (Adaptec, Inc ) -- C:\WINDOWS\System32\dllcache\adptsf50.sys
[2009/11/08 20:32:37 | 00,747,392 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8830.sys
[2009/11/08 20:32:37 | 00,010,880 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\admjoy.sys
[2009/11/08 20:32:36 | 00,553,984 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8820.sys
[2009/11/08 20:32:35 | 00,584,448 | ---- | C] (Aureal, Inc.) -- C:\WINDOWS\System32\dllcache\adm8810.sys
[2009/11/08 20:32:35 | 00,020,160 | ---- | C] (ADMtek Incorporated) -- C:\WINDOWS\System32\dllcache\adm8511.sys
[2009/11/08 20:32:34 | 00,007,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adicvls.sys
[2009/11/08 20:32:33 | 00,061,440 | ---- | C] (Color Flatbed Scanner) -- C:\WINDOWS\System32\dllcache\acerscad.dll
[2009/11/08 20:32:32 | 00,084,480 | ---- | C] (VIA Technologies, Inc.) -- C:\WINDOWS\System32\dllcache\ac97via.sys
[2009/11/08 20:32:31 | 00,297,728 | ---- | C] (Silicon Integrated Systems Corp.) -- C:\WINDOWS\System32\dllcache\ac97sis.sys
[2009/11/08 20:32:31 | 00,096,256 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\ac97intc.sys
[2009/11/08 20:32:30 | 00,462,848 | ---- | C] (Aureal Inc.) -- C:\WINDOWS\System32\dllcache\a3dapi.dll
[2009/11/08 20:32:30 | 00,231,552 | ---- | C] (Acer Laboratories Inc.) -- C:\WINDOWS\System32\dllcache\ac97ali.sys
[2009/11/08 20:32:29 | 00,098,304 | ---- | C] (Aureal Semiconductor) -- C:\WINDOWS\System32\dllcache\a3d.dll
[2009/11/08 20:32:28 | 00,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\61883.sys
[2009/11/08 20:32:28 | 00,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\8514a.dll
[2009/11/08 20:32:27 | 00,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\4mmdat.sys
[2009/11/08 20:32:26 | 00,689,216 | ---- | C] (3dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\3dfxvs.dll
[2009/11/08 20:32:26 | 00,148,352 | ---- | C] (3dfx Interactive, Inc.) -- C:\WINDOWS\System32\dllcache\3dfxvsm.sys
[2009/11/08 20:32:25 | 00,762,780 | ---- | C] (3Com, Inc.) -- C:\WINDOWS\System32\dllcache\3cwmcru.sys
[2009/11/08 20:32:25 | 00,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\1394vdbg.sys
[2009/11/08 20:32:05 | 00,066,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\s3legacy.dll
[2009/11/06 20:05:33 | 00,000,000 | R--D | C] -- C:\Sandbox
[2009/11/06 19:57:33 | 00,000,000 | ---D | C] -- C:\Program Files\Sandboxie
[2009/11/05 11:57:39 | 00,094,208 | ---- | C] (Blizzard Entertainment) -- C:\WINDOWS\DIIUnin.exe
[2009/11/05 11:54:24 | 00,000,000 | ---D | C] -- C:\Program Files\Diablo II
[2009/11/03 20:01:03 | 00,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2009/11/03 20:00:26 | 00,044,544 | ---- | C] (DiamondCS) -- C:\WINDOWS\System32\procguard.dll
[2009/11/03 20:00:26 | 00,026,688 | ---- | C] (DiamondCS) -- C:\WINDOWS\System32\drivers\procguard.sys
[2009/11/03 20:00:24 | 00,000,000 | ---D | C] -- C:\Program Files\ProcessGuard
[2009/11/03 16:12:28 | 00,000,000 | ---D | C] -- C:\Program Files\Stylish Profile
[2009/10/30 23:12:29 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee
[2009/10/28 21:41:06 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\McAfee Security Scan
[2009/10/28 21:41:05 | 00,000,000 | ---D | C] -- C:\Program Files\McAfee Security Scan
[2009/10/28 21:40:36 | 00,000,000 | ---D | C] -- C:\Program Files\NOS
[2009/10/28 21:40:36 | 00,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NOS
[2009/10/26 13:22:40 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2009/10/26 13:16:59 | 00,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server
[2006/11/29 18:42:30 | 00,018,944 | ---- | C] ( ) -- C:\WINDOWS\System32\IMPLODE.DLL
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[10 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2009/11/09 20:39:01 | 00,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2009/11/09 19:51:36 | 00,000,868 | ---- | M] () -- C:\WINDOWS\tasks\Google Software Updater.job
[2009/11/09 16:01:29 | 00,130,460 | ---- | M] () -- C:\WINDOWS\System32\pguard.dat
[2009/11/09 16:01:21 | 00,084,040 | ---- | M] () -- C:\WINDOWS\System32\pghash.dat
[2009/11/09 15:58:59 | 00,291,328 | ---- | M] () -- C:\4sgjjorw.exe
[2009/11/09 15:00:27 | 00,224,288 | ---- | M] () -- C:\WINDOWS\System32\Status.MPF
[2009/11/09 13:46:14 | 00,002,359 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Adobe Acrobat Speed Launcher.lnk
[2009/11/08 21:17:45 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2009/11/08 19:15:24 | 00,002,137 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\iTunes.lnk
[2009/11/08 19:14:06 | 00,000,116 | ---- | M] () -- C:\WINDOWS\NeroDigital.ini
[2009/11/07 10:55:21 | 00,000,759 | ---- | M] () -- C:\WINDOWS\win.ini
[2009/11/06 18:30:01 | 00,000,350 | ---- | M] () -- C:\WINDOWS\tasks\McAfee.com Scan for Viruses - My Computer (STEFAN-Stevo).job
[2009/11/05 12:02:00 | 00,021,840 | ---- | M] () -- C:\WINDOWS\System32\SIntfNT.dll
[2009/11/05 12:01:59 | 00,017,212 | ---- | M] () -- C:\WINDOWS\System32\SIntf32.dll
[2009/11/05 12:01:59 | 00,012,067 | ---- | M] () -- C:\WINDOWS\System32\SIntf16.dll
[2009/11/05 11:57:42 | 00,016,960 | ---- | M] () -- C:\WINDOWS\DIIUnin.dat
[2009/11/05 11:57:42 | 00,001,564 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Diablo II.lnk
[2009/11/05 11:57:39 | 00,094,208 | ---- | M] (Blizzard Entertainment) -- C:\WINDOWS\DIIUnin.exe
[2009/11/05 11:57:39 | 00,002,829 | ---- | M] () -- C:\WINDOWS\DIIUnin.pif
[2009/10/31 11:58:02 | 00,490,618 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2009/10/31 11:58:02 | 00,090,294 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2009/10/31 11:58:01 | 00,591,452 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2009/10/28 21:41:05 | 00,000,715 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\McAfee Security Scan.lnk
[2009/10/28 21:41:05 | 00,000,707 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan.lnk
[2009/10/20 00:53:44 | 03,070,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\mshtml.dll
[2009/10/20 00:53:44 | 03,070,976 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshtml.dll
[6 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[10 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2009/11/09 20:39:57 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\Administrator\Application Data\desktop.ini
[2009/11/09 20:39:49 | 03,769,810 | -H-- | C] () -- C:\Documents and Settings\Administrator\Local Settings\Application Data\IconCache.db
[2009/11/09 20:39:21 | 00,786,432 | -H-- | C] () -- C:\Documents and Settings\Administrator\NTUSER.DAT
[2009/11/09 20:39:21 | 00,000,178 | -HS- | C] () -- C:\Documents and Settings\Administrator\ntuser.ini
[2009/11/09 15:58:59 | 00,291,328 | ---- | C] () -- C:\4sgjjorw.exe
[2009/11/08 20:55:07 | 00,033,280 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisrndr.ax
[2009/11/08 20:55:01 | 00,363,520 | ---- | C] () -- C:\WINDOWS\System32\dllcache\psisdecd.dll
[2009/11/08 20:54:52 | 00,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2009/11/08 20:54:52 | 00,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2009/11/08 20:48:50 | 00,056,832 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdvbnp.ax
[2009/11/08 20:46:40 | 00,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2009/11/08 20:46:35 | 01,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2009/11/08 20:44:56 | 00,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2009/11/08 20:42:11 | 00,165,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt53.dll
[2009/11/08 20:42:05 | 00,093,696 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt42.dll
[2009/11/08 20:41:59 | 00,101,376 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt34.dll
[2009/11/08 20:41:53 | 00,089,088 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt33.dll
[2009/11/08 20:41:46 | 00,083,968 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hpgt21.dll
[2009/11/08 20:41:28 | 00,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2009/11/08 20:37:23 | 00,029,768 | ---- | C] () -- C:\WINDOWS\System32\dllcache\divasu.dll
[2009/11/08 20:37:21 | 00,037,962 | ---- | C] () -- C:\WINDOWS\System32\dllcache\divaprop.dll
[2009/11/08 20:37:19 | 00,006,216 | ---- | C] () -- C:\WINDOWS\System32\dllcache\divaci.dll
[2009/11/08 20:34:23 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2009/11/08 20:34:22 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2009/11/08 20:34:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2009/11/08 20:34:21 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2009/11/08 20:34:20 | 00,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2009/11/08 20:34:19 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2009/11/08 20:34:18 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2009/11/08 20:34:17 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2009/11/08 20:34:16 | 00,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2009/11/08 20:34:16 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2009/11/08 20:34:16 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2009/11/08 20:34:15 | 00,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2009/11/08 20:34:15 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2009/11/08 20:34:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2009/11/08 20:34:14 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2009/11/08 20:34:13 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2009/11/08 20:34:13 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2009/11/08 20:34:13 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2009/11/08 20:34:12 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2009/11/08 20:34:12 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2009/11/08 20:34:11 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2009/11/08 20:34:11 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2009/11/08 20:34:11 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2009/11/08 20:34:10 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2009/11/08 20:34:10 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2009/11/08 20:34:09 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2009/11/08 20:34:09 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2009/11/08 20:34:09 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2009/11/08 20:34:08 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2009/11/08 20:34:08 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2009/11/08 20:34:07 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2009/11/08 20:34:07 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2009/11/08 20:34:06 | 00,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2009/11/08 20:34:06 | 00,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2009/11/08 20:34:06 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2009/11/08 20:34:05 | 00,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2009/11/08 20:34:05 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2009/11/08 20:34:04 | 00,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2009/11/08 20:34:04 | 00,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2009/11/08 20:34:04 | 00,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2009/11/08 20:34:03 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2009/11/08 20:34:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2009/11/08 20:34:02 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2009/11/08 20:34:01 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2009/11/08 20:34:01 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2009/11/08 20:34:01 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2009/11/08 20:34:00 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2009/11/08 20:34:00 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2009/11/08 20:33:59 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2009/11/08 20:33:59 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2009/11/08 20:33:59 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2009/11/08 20:33:58 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2009/11/08 20:33:56 | 00,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2009/11/08 20:33:55 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2009/11/08 20:33:54 | 00,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2009/11/08 20:33:54 | 00,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2009/11/08 20:33:53 | 00,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2009/11/08 20:33:51 | 00,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2009/11/08 20:33:29 | 00,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2009/11/08 20:33:27 | 00,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2009/11/08 20:33:10 | 00,026,624 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ativxbar.sys
[2009/11/08 20:33:10 | 00,023,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atixbar.sys
[2009/11/08 20:33:09 | 00,019,456 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ativttxx.sys
[2009/11/08 20:33:08 | 00,009,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ativmdcd.sys
[2009/11/08 20:33:07 | 00,017,152 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atitvsnd.sys
[2009/11/08 20:33:06 | 00,026,880 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atirtsnd.sys
[2009/11/08 20:33:06 | 00,017,152 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atitunep.sys
[2009/11/08 20:33:05 | 00,049,920 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atirtcap.sys
[2009/11/08 20:33:03 | 00,010,240 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atipcxxx.sys
[2009/11/08 20:32:57 | 00,046,464 | ---- | C] () -- C:\WINDOWS\System32\dllcache\atibt829.sys
[2009/11/05 12:01:59 | 00,021,840 | ---- | C] () -- C:\WINDOWS\System32\SIntfNT.dll
[2009/11/05 12:01:59 | 00,017,212 | ---- | C] () -- C:\WINDOWS\System32\SIntf32.dll
[2009/11/05 12:01:59 | 00,012,067 | ---- | C] () -- C:\WINDOWS\System32\SIntf16.dll
[2009/11/05 11:57:42 | 00,016,960 | ---- | C] () -- C:\WINDOWS\DIIUnin.dat
[2009/11/05 11:57:42 | 00,001,564 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Diablo II.lnk
[2009/11/05 11:57:39 | 00,002,829 | ---- | C] () -- C:\WINDOWS\DIIUnin.pif
[2009/11/05 10:46:12 | 00,084,040 | ---- | C] () -- C:\WINDOWS\System32\pghash.dat
[2009/11/05 10:46:11 | 00,130,460 | ---- | C] () -- C:\WINDOWS\System32\pguard.dat
[2009/10/28 21:41:05 | 00,000,715 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\McAfee Security Scan.lnk
[2009/10/28 21:41:05 | 00,000,707 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\McAfee Security Scan.lnk
[2008/02/02 12:56:43 | 00,009,728 | ---- | C] () -- C:\WINDOWS\System32\BASSMOD.dll
[2007/11/26 14:10:10 | 00,007,680 | ---- | C] () -- C:\WINDOWS\System32\emcoinst.dll
[2007/10/10 10:59:49 | 00,000,316 | ---- | C] () -- C:\WINDOWS\hpbvspst.ini
[2007/10/10 10:59:28 | 00,001,187 | ---- | C] () -- C:\WINDOWS\hpbvnstp.ini
[2007/10/10 10:57:26 | 00,229,376 | ---- | C] () -- C:\WINDOWS\System32\HPPCPR01.DLL
[2007/05/06 16:12:48 | 00,000,037 | ---- | C] () -- C:\WINDOWS\iltwain.ini
[2007/03/16 17:00:00 | 00,003,403 | ---- | C] () -- C:\WINDOWS\System32\hptcpmon.ini
[2007/02/03 16:53:41 | 00,001,751 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\QTSBandwidthCache
[2006/11/29 18:42:37 | 00,131,072 | ---- | C] () -- C:\WINDOWS\System32\P2SODBC.DLL
[2006/11/29 18:42:36 | 00,054,272 | ---- | C] () -- C:\WINDOWS\System32\P2IRDAO.DLL
[2006/11/29 18:42:35 | 00,050,176 | ---- | C] () -- C:\WINDOWS\System32\P2CTDAO.DLL
[2006/11/29 18:42:34 | 00,036,352 | ---- | C] () -- C:\WINDOWS\System32\P2BBND.DLL
[2006/11/29 18:42:32 | 00,748,160 | ---- | C] () -- C:\WINDOWS\System32\CO2C40EN.DLL
[2006/08/11 02:54:03 | 00,000,002 | ---- | C] () -- C:\WINDOWS\msoffice.ini
[2006/06/29 20:58:52 | 00,030,808 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalUserInterface.CompositeFont
[2006/06/29 20:53:56 | 00,026,489 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalSansSerif.CompositeFont
[2006/06/02 13:45:13 | 00,000,682 | ---- | C] () -- C:\WINDOWS\ULEAD32.INI
[2006/05/21 10:20:00 | 00,000,116 | ---- | C] () -- C:\WINDOWS\NeroDigital.ini
[2006/04/18 21:39:28 | 00,029,779 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalSerif.CompositeFont
[2006/04/18 21:39:28 | 00,026,040 | ---- | C] () -- C:\WINDOWS\Fonts\GlobalMonospace.CompositeFont
[2006/02/16 16:14:57 | 00,000,284 | ---- | C] () -- C:\WINDOWS\matlab.ini
[2006/02/05 18:36:54 | 00,001,536 | ---- | C] () -- C:\Documents and Settings\All Users\Application Data\hpzinstall.log
[2006/02/05 18:35:32 | 00,561,152 | R--- | C] () -- C:\WINDOWS\System32\hpotscl.dll
[2006/01/29 18:51:36 | 00,210,944 | ---- | C] () -- C:\WINDOWS\System32\Msvcrt10.dll
[2006/01/29 18:51:35 | 00,000,149 | ---- | C] () -- C:\WINDOWS\KPCMS.INI
[2006/01/21 19:10:26 | 00,003,420 | ---- | C] () -- C:\WINDOWS\cdPlayer.ini
[2005/12/25 14:50:17 | 00,001,025 | ---- | C] () -- C:\WINDOWS\System32\sysprs7.dll
[2005/12/25 14:50:17 | 00,000,343 | ---- | C] () -- C:\WINDOWS\System32\lsprst7.dll
[2005/12/25 14:34:05 | 00,001,024 | ---- | C] () -- C:\WINDOWS\System32\clauth2.dll
[2005/12/25 14:34:05 | 00,001,024 | ---- | C] () -- C:\WINDOWS\System32\clauth1.dll
[2005/12/25 14:34:05 | 00,000,073 | ---- | C] () -- C:\WINDOWS\System32\ssprs.dll
[2005/12/25 14:34:05 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\nsprs.dll
[2005/10/24 18:25:08 | 00,176,235 | ---- | C] () -- C:\WINDOWS\System32\Primomonnt.dll
[2005/10/24 18:25:07 | 00,000,129 | ---- | C] () -- C:\WINDOWS\primopdf.ini
[2005/10/04 17:12:06 | 00,000,000 | ---- | C] () -- C:\WINDOWS\vpc32.INI
[2005/09/22 03:38:48 | 00,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2005/09/22 03:32:33 | 00,000,136 | ---- | C] () -- C:\WINDOWS\wininit.ini
[2005/09/22 03:27:28 | 00,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2005/09/22 03:19:54 | 00,077,824 | ---- | C] () -- C:\WINDOWS\System32\SynTPCoI.dll
[2005/09/22 02:31:16 | 00,000,390 | ---- | C] () -- C:\WINDOWS\System32\OEMINFO.INI
[2005/01/28 14:08:34 | 00,000,000 | ---- | C] () -- C:\WINDOWS\System32\px.ini
[2004/08/12 14:44:10 | 00,016,384 | ---- | C] () -- C:\WINDOWS\System32\iwca.dll
[2004/08/10 19:12:05 | 00,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2004/08/10 19:01:18 | 00,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2004/08/10 18:57:41 | 00,000,062 | -HS- | C] () -- C:\Documents and Settings\All Users\Application Data\desktop.ini
[2004/08/10 18:51:28 | 00,000,759 | ---- | C] () -- C:\WINDOWS\win.ini
[2004/08/10 18:51:26 | 00,000,227 | ---- | C] () -- C:\WINDOWS\system.ini
[2004/08/10 18:51:16 | 00,139,292 | ---- | C] () -- C:\WINDOWS\System32\msppptoo.dll
[2003/02/20 03:20:16 | 00,225,280 | ---- | C] () -- C:\WINDOWS\System32\tifmicon.dll
[2000/11/29 15:50:40 | 00,471,040 | ---- | C] () -- C:\WINDOWS\System32\QTExporter.dll

========== LOP Check ==========

[2008/01/29 12:05:52 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Dell
[2008/07/02 14:07:09 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\ICQ
[2005/09/22 03:30:37 | 00,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Viewpoint
[2004/08/04 11:00:00 | 00,000,065 | RH-- | M] () -- C:\WINDOWS\Tasks\desktop.ini
[2006/05/17 17:49:08 | 00,000,342 | ---- | M] () -- C:\WINDOWS\Tasks\FRU Task #Hewlett-Packard#hp psc 1200 series#1139161858.job
[2009/11/08 21:17:45 | 00,000,006 | -H-- | M] () -- C:\WINDOWS\Tasks\SA.DAT

========== Purity Check ==========


< End of report >


Please post back as soon as possible, I need to get this thing fixed up ASAP. And again, if you need any more info on the computer just let me know.

HitmanB

#4 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:11:48 AM

Posted 11 November 2009 - 07:30 AM

Well fortunately there is no malware in the logs at all.
Does the computer freeze at random or do you hear clicking sounds at anytime coming from inside of the system?
Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#5 HitmanB

HitmanB
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:48 AM

Posted 11 November 2009 - 07:59 AM

Well I don't know whether I should be happy or confused. The computer has an extremely slow startup, freezes sometimes, but then unfreezes. I don't think I ever heard clicking, but I'll watch out for it

What about registry, rootkit or any of that? Do you mean to say there's no problem with my computer?

#6 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:11:48 AM

Posted 11 November 2009 - 08:12 AM

Correct all of the entries are legitimate not malicious.
I suspect a failing hard drive but this is only my suspicion.

You will need to know the manufacturer's name of the hard drive you have installed.
To get that go to Start then right click on the C:\drive and choose properties.
Then click on the hardware tab.

Then you can write down what you see there under Disk Drives and post that info here for me to see then I will be able to help you find a diagnostic utility to check it.
Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#7 HitmanB

HitmanB
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:48 AM

Posted 11 November 2009 - 08:46 AM

Disc Drive:

FUJITSU MHV2080AH

One more question: Could the fact that I have a little under 2 GB of free space have something to do with it?

#8 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:11:48 AM

Posted 11 November 2009 - 01:51 PM

Well the space factor won't affect the speed of the system.
Click here and save that exe file to the desktop.
Then run it and choose the Comprehensive Test.
Let me know the outcome.
Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image

#9 HitmanB

HitmanB
  • Topic Starter

  • Members
  • 6 posts
  • OFFLINE
  •  
  • Local time:10:48 AM

Posted 12 November 2009 - 01:31 PM

It said it passed the extended test. I seriously don't get it now, because it was acting up. But now that I did all 3 scans, it just seems to have starting going a little more smoothly. Could the scans have fixed something without me knowing? Or maybe I just have a lot of processes, plus a not top- of the line RAM...?

I just can't seem to comprehend the fact that it's not a software problem, which I was thinking for about 2 months.

#10 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:11:48 AM

Posted 13 November 2009 - 07:45 AM

Really I am not sure that it would do anything to the drive other than scan it for bad sectors.
Check to make sure that you don't have 2 antivirus programs running as well.
From your logs is shoes Norton and McAfee.
Uninstall one of those.
If the subscriptions to either of those are not active anymore then you can download some free antivirus programs below:
These are free.

This is antivirus and antispyware.
Microsoft Security Essentials

This is free antispyware protection and Antivirus protection.
AVG free 8.5


This is just antivirus protection.
Antivir

After doing that then reboot then try it again.
Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users