MBAM LOG:
Malwarebytes' Anti-Malware 1.45
www.malwarebytes.org
Database version: 3958
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
6/04/2010 3:07:42 PM
mbam-log-2010-04-06 (15-07-42).txt
Scan type: Quick scan
Objects scanned: 100936
Time elapsed: 5 minute(s), 51 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
OTL.Txt LOG: OTL logfile created on: 6/04/2010 3:09:50 PM - Run 1
OTL by OldTimer - Version 3.2.1.0 Folder = C:\Documents and Settings\Compaq_Owner\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000C09 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
1,023.00 Mb Total Physical Memory | 392.00 Mb Available Physical Memory | 38.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 75.00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 182.42 Gb Total Space | 119.30 Gb Free Space | 65.40% Space Free | Partition Type: NTFS
Drive D: | 3.87 Gb Total Space | 0.32 Gb Free Space | 8.33% Space Free | Partition Type: FAT32
Drive E: | 465.12 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: YOUR-8ABC512DA0
Current User Name: Compaq_Owner
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Processes (SafeList) ========== PRC - [2010/04/06 14:59:22 | 000,561,664 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Compaq_Owner\Desktop\OTL.exe
PRC - [2010/04/03 14:44:31 | 000,910,296 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2010/03/30 00:46:02 | 001,086,856 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe
PRC - [2009/10/17 01:41:10 | 002,384,240 | ---- | M] (Check Point Software Technologies LTD) -- C:\WINDOWS\system32\ZoneLabs\vsmon.exe
PRC - [2009/10/17 01:39:40 | 001,037,192 | ---- | M] (Check Point Software Technologies LTD) -- C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
PRC - [2009/10/14 23:30:26 | 000,476,528 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\ZAForceField\ISWSVC.exe
PRC - [2009/10/14 23:30:06 | 000,730,480 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\ZAForceField\ForceField.exe
PRC - [2009/09/10 11:15:42 | 000,870,672 | ---- | M] (SonicWALL, Inc.) -- C:\Program Files\Zone Labs\ZoneAlarm\MailFrontier\mantispm.exe
PRC - [2009/07/27 12:10:00 | 001,983,816 | ---- | M] (CANON INC.) -- C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
PRC - [2008/04/14 10:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006/11/03 19:19:58 | 000,013,592 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Windows Defender\MsMpEng.exe
PRC - [2004/10/15 07:54:32 | 000,253,952 | ---- | M] (Hewlett-Packard Company) -- C:\hp\drivers\hplsbwatcher\LSBurnWatcher.exe
PRC - [2004/10/14 09:17:06 | 002,742,272 | ---- | M] (RealTek Semicoductor Corp.) -- C:\WINDOWS\ALCWZRD.EXE
PRC - [2004/10/14 07:01:50 | 000,077,824 | ---- | M] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE
========== Modules (SafeList) ========== MOD - [2010/04/06 14:59:22 | 000,561,664 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Compaq_Owner\Desktop\OTL.exe
MOD - [2009/10/14 23:30:36 | 000,628,080 | ---- | M] (Check Point Software Technologies) -- C:\Program Files\CheckPoint\ZAForceField\Plugins\ISWSHEX.dll
MOD - [2009/09/10 11:15:48 | 000,013,072 | ---- | M] () -- C:\Program Files\Zone Labs\ZoneAlarm\MailFrontier\MlfHook.dll
MOD - [2009/07/12 01:12:06 | 000,632,656 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcr80.dll
MOD - [2009/07/12 01:09:20 | 000,554,832 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\WinSxS\x86_Microsoft.VC80.CRT_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_e6967989\msvcp80.dll
MOD - [2004/09/30 06:23:00 | 001,441,792 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nview.dll
MOD - [2004/09/30 06:23:00 | 000,081,920 | ---- | M] (NVIDIA Corporation) -- C:\WINDOWS\system32\nvwddi.dll
========== Win32 Services (SafeList) ========== SRV - [2009/10/17 01:41:10 | 002,384,240 | ---- | M] (Check Point Software Technologies LTD) [Auto | Running] -- C:\WINDOWS\System32\ZoneLabs\vsmon.exe -- (vsmon)
SRV - [2009/10/14 23:30:26 | 000,476,528 | ---- | M] (Check Point Software Technologies) [Auto | Running] -- C:\Program Files\CheckPoint\ZAForceField\IswSvc.exe -- (IswSvc)
SRV - [2009/02/11 02:01:49 | 000,116,104 | ---- | M] () [Disabled | Stopped] -- C:\Program Files\Canon\IJPLM\ijplmsvc.exe -- (IJPLMSVC)
SRV - [2006/11/03 19:19:58 | 000,013,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://ie.redirect.hp.com/svs/rdr?TYPE=3&a...&pf=desktopIE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.com.au/IE - HKCU\..\URLSearchHook: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Reg Error: Key error. File not found
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ========== FF - prefs.js..browser.startup.homepage: "http://www.google.com.au"
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2010/04/03 14:44:38 | 000,000,000 | ---D | M]
FF - HKLM\software\mozilla\Mozilla Firefox 3.6.3\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2010/04/03 14:44:37 | 000,000,000 | ---D | M]
[2010/03/26 22:29:44 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Compaq_Owner\Application Data\Mozilla\Extensions
[2010/04/06 15:05:59 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Compaq_Owner\Application Data\Mozilla\Firefox\Profiles\bz6eoj5y.default\extensions
[2010/03/31 12:37:41 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\Documents and Settings\Compaq_Owner\Application Data\Mozilla\Firefox\Profiles\bz6eoj5y.default\extensions\{20a82645-c095-46ed-80e3-08825760534b}
[2010/03/26 22:29:20 | 000,000,000 | ---D | M] -- C:\Program Files\Mozilla Firefox\extensions
O1 HOSTS File: ([2010/04/04 08:14:44 | 000,000,027 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2 - BHO: (AcroIEHlprObj Class) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
O2 - BHO: (SpywareGuardDLBLOCK.CBrowserHelper) - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - C:\Program Files\SpywareGuard\dlprotect.dll ()
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (ZoneAlarm Toolbar Registrar) - {8A4A36C2-0535-4D2C-BD3D-496CB7EED6E3} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O2 - BHO: (CNavExtBho Class) - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll File not found
O3 - HKLM\..\Toolbar: (ZoneAlarm Toolbar) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O3 - HKCU\..\Toolbar\ShellBrowser: (Norton AntiVirus) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll File not found
O3 - HKCU\..\Toolbar\WebBrowser: (ZoneAlarm Toolbar) - {EE2AC4E5-B0B0-4EC6-88A9-BCA1A32AB107} - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\TrustCheckerIEPlugin.dll (Check Point Software Technologies)
O4 - HKLM..\Run: [AlcWzrd] C:\WINDOWS\ALCWZRD.EXE (RealTek Semicoductor Corp.)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenu] C:\Program Files\Canon\SolutionMenu\CNSLMAIN.exe (CANON INC.)
O4 - HKLM..\Run: [High Definition Audio Property Page Shortcut] C:\WINDOWS\System32\Hdaudpropshortcut.exe (Windows ® Server 2003 DDK provider)
O4 - HKLM..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [ISW] C:\Program Files\CheckPoint\ZAForceField\ForceField.exe (Check Point Software Technologies)
O4 - HKLM..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\LSBurnWatcher.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe ()
O4 - HKLM..\Run: [NvCplDaemon] C:\WINDOWS\System32\NvCpl.DLL (NVIDIA Corporation)
O4 - HKLM..\Run: [nwiz] C:\WINDOWS\System32\nwiz.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE (Microsoft Corporation)
O4 - HKLM..\Run: [PS2] C:\WINDOWS\system32\ps2.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [Recguard] C:\WINDOWS\SMINST\Recguard.exe ()
O4 - HKLM..\Run: [SoundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe ()
O4 - HKLM..\Run: [TkBellExe] C:\Program Files\Common Files\Real\Update_OB\realsched.exe (RealNetworks, Inc.)
O4 - HKLM..\Run: [ZoneAlarm Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe (Check Point Software Technologies LTD)
O4 - Startup: C:\Documents and Settings\Compaq_Owner\Start Menu\Programs\Startup\SpywareGuard.lnk.disabled ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 323
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 67108863
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - Reg Error: Key error. File not found
O9 - Extra 'Tools' menuitem : Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000004 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} C:\Program Files\Yahoo!\Common\yinsthelper.dll (Reg Error: Key error.)
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C}
http://update.microsoft.com/windowsupdate/...b?1269613047375 (WUWebControl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93}
http://java.sun.com/products/plugin/autodl...indows-i586.cab (Java Plug-in 1.4.2_03)
O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}
http://java.sun.com/products/plugin/autodl...indows-i586.cab (Java Plug-in 1.4.2_03)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.1.1.1
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O24 - Desktop WallPaper: C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O24 - Desktop BackupWallPaper: C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\Microsoft\Wallpaper1.bmp
O28 - HKLM ShellExecuteHooks: {091EB208-39DD-417D-A5DD-7E2C2D8FB9CB} - C:\Program Files\Windows Defender\MpShHook.dll (Microsoft Corporation)
O28 - HKLM ShellExecuteHooks: {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL (SuperAdBlocker.com)
O28 - HKLM ShellExecuteHooks: {81559C35-8464-49F7-BB0E-07A383BEF910} - C:\Program Files\SpywareGuard\spywareguard.dll ()
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2004/11/23 21:58:04 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2001/07/28 06:07:38 | 000,000,000 | -HS- | M] () - D:\AUTOEXEC.BAT -- [ FAT32 ]
O32 - AutoRun File - [2005/06/14 10:40:45 | 000,000,145 | R--- | M] () - E:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{4905ae10-389f-11df-b97d-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{4905ae10-389f-11df-b97d-806d6172696f}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{4905ae10-389f-11df-b97d-806d6172696f}\Shell\AutoRun\command - "" = E:\Setup\rsrc\AUTORUN.EXE -- [2005/08/26 09:11:23 | 000,045,056 | R--- | M] ()
O33 - MountPoints2\{4905ae10-389f-11df-b97d-806d6172696f}\Shell\dinstall\command - "" = E:\DirectX\dxsetup.exe -- [2004/07/09 21:08:36 | 000,472,576 | R--- | M] (Microsoft Corporation)
O33 - MountPoints2\{6d5880eb-38a0-11df-b97e-0011d8b35945}\Shell - "" = AutoRun
O33 - MountPoints2\{6d5880eb-38a0-11df-b97e-0011d8b35945}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{6d5880eb-38a0-11df-b97e-0011d8b35945}\Shell\AutoRun\command - "" = J:\WD SmartWare.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
NetSvcs: 6to4 - File not found
NetSvcs: Ias - C:\WINDOWS\system32\ias [2010/03/27 10:09:37 | 000,000,000 | ---D | M]
NetSvcs: Iprip - File not found
NetSvcs: Irmon - File not found
NetSvcs: NWCWorkstation - File not found
NetSvcs: Nwsapagent - File not found
NetSvcs: Wmi - C:\WINDOWS\system32\wmi.dll (Microsoft Corporation)
NetSvcs: WmdmPmSp - File not found
CREATERESTOREPOINT
Restore point Set: OTL Restore Point (60249199932866560)
========== Files/Folders - Created Within 14 Days ========== [2010/04/06 14:59:14 | 000,561,664 | ---- | C] (OldTimer Tools) -- C:\Documents and Settings\Compaq_Owner\Desktop\OTL.exe
[2010/04/05 13:09:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\My Documents\The Matrix Effect Screensaver(www.cinedetodos.blogspot.com)
[2010/04/05 12:18:46 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2010/04/04 08:23:18 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Compaq_Owner\PrivacIE
[2010/04/04 08:01:45 | 000,212,480 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWXCACLS.exe
[2010/04/04 08:01:45 | 000,161,792 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWREG.exe
[2010/04/04 08:01:45 | 000,136,704 | ---- | C] (SteelWerX) -- C:\WINDOWS\SWSC.exe
[2010/04/04 08:01:45 | 000,031,232 | ---- | C] (NirSoft) -- C:\WINDOWS\NIRCMD.exe
[2010/04/04 08:01:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\ERDNT
[2010/04/04 08:00:57 | 000,000,000 | ---D | C] -- C:\Qoobox
[2010/04/03 09:22:25 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Compaq_Owner\Recent
[2010/03/30 21:27:50 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2010/03/30 12:07:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Desktop\gmer
[2010/03/30 11:54:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump
[2010/03/29 21:37:11 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJSolutionMenu
[2010/03/29 21:37:09 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJMyPrinter
[2010/03/29 21:36:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\CanonIJPLM
[2010/03/29 21:32:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Canon Easy-WebPrint EX
[2010/03/29 21:26:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON
[2010/03/29 21:21:54 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2010/03/29 21:21:16 | 000,000,000 | -H-D | C] -- C:\WINDOWS\System32\CanonIJ Uninstaller Information
[2010/03/29 21:20:57 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
[2010/03/29 21:00:41 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2010/03/29 17:55:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2010/03/29 17:55:11 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2010/03/29 17:55:01 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2010/03/29 17:54:14 | 000,000,000 | ---D | C] -- C:\7e40fc764d6511518e896ad39c0775
[2010/03/27 18:20:07 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Compaq_Owner\Desktop\cleaning and scanning programs
[2010/03/27 17:42:33 | 000,000,000 | ---D | C] -- C:\Program Files\Activision
[2010/03/27 17:40:25 | 000,000,000 | -HSD | C] -- C:\WINDOWS\ftpcache
[2010/03/27 13:27:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\AdobeUM
[2010/03/27 13:27:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\Adobe
[2010/03/27 13:27:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\My Documents\My eBooks
[2010/03/27 13:27:17 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2010/03/27 12:16:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Malwarebytes
[2010/03/27 12:16:19 | 000,038,224 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/03/27 12:16:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2010/03/27 12:16:15 | 000,020,824 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/03/27 12:16:15 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2010/03/27 12:14:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\My Documents\hosts
[2010/03/27 12:06:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\SUPERAntiSpyware.com
[2010/03/27 12:06:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\SUPERAntiSpyware.com
[2010/03/27 12:06:15 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2010/03/27 12:05:46 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Wise Installation Wizard
[2010/03/27 12:04:43 | 000,000,000 | ---D | C] -- C:\Program Files\Bazooka Scanner
[2010/03/27 12:03:54 | 000,000,000 | ---D | C] -- C:\Program Files\ProcessGuard
[2010/03/27 12:03:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SpycatcherAgentSetupTemp
[2010/03/27 12:02:45 | 000,000,000 | ---D | C] -- C:\Program Files\Tenebril
[2010/03/27 12:02:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Tenebril
[2010/03/27 11:41:50 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Defender
[2010/03/27 11:41:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2010/03/27 11:35:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\WinPatrol
[2010/03/27 11:35:28 | 000,000,000 | ---D | C] -- C:\Program Files\BillP Studios
[2010/03/27 10:18:49 | 000,000,000 | ---D | C] -- C:\Program Files\SpywareGuard
[2010/03/27 10:14:17 | 023,212,728 | ---- | C] (Tenebril Inc ) -- C:\Documents and Settings\Compaq_Owner\My Documents\spycatcher-express.exe
[2010/03/27 10:10:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\I386
[2010/03/27 10:10:05 | 000,999,160 | ---- | C] (BillP Studios) -- C:\Documents and Settings\Compaq_Owner\My Documents\wpsetup.exe
[2010/03/27 10:03:38 | 001,137,360 | ---- | C] (F-Secure Corporation) -- C:\Documents and Settings\Compaq_Owner\My Documents\fsbl2.2.exe
[2010/03/27 10:02:27 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu
[2010/03/27 10:02:27 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Pictures
[2010/03/27 10:02:27 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Music
[2010/03/27 10:02:27 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents
[2010/03/27 10:02:25 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data
[2010/03/27 10:02:15 | 001,968,975 | ---- | C] (DiamondCS ) -- C:\Documents and Settings\Compaq_Owner\My Documents\pgsetup.exe
[2010/03/27 10:02:04 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2010/03/27 10:02:02 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages
[2010/03/27 10:01:33 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2010/03/27 09:48:53 | 003,374,640 | ---- | C] (Macromedia, Inc.) -- C:\WINDOWS\System32\dllcache\tourP.exe
[2010/03/27 09:48:27 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2010/03/27 09:48:27 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2010/03/27 09:46:16 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2010/03/27 09:46:16 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2010/03/27 09:46:16 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2010/03/27 09:44:11 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2010/03/27 09:38:40 | 000,000,000 | ---D | C] -- C:\WINDOWS\Sun
[2010/03/27 09:34:56 | 005,115,824 | ---- | C] (Malwarebytes Corporation ) -- C:\Documents and Settings\Compaq_Owner\My Documents\mbam-setup.exe
[2010/03/27 09:02:09 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Compaq_Owner\IETldCache
[2010/03/27 08:59:47 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2010/03/27 08:58:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2010/03/27 08:57:46 | 000,000,000 | -H-D | C] -- C:\WINDOWS\ie8
[2010/03/27 08:52:56 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2010/03/27 06:37:36 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-us
[2010/03/27 06:37:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2010/03/27 06:37:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\l2schemas
[2010/03/27 06:37:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2010/03/27 06:37:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\bits
[2010/03/27 06:31:39 | 000,000,000 | ---D | C] -- C:\WINDOWS\network diagnostic
[2010/03/27 06:26:36 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$NtServicePackUninstall$
[2010/03/27 03:32:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\LogFiles
[2010/03/27 03:01:18 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2010/03/27 00:24:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2010/03/27 00:23:40 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
[2010/03/27 00:18:24 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2010/03/26 23:24:07 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2010/03/26 23:24:02 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2010/03/26 23:24:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2010/03/26 23:23:13 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2010/03/26 23:22:34 | 000,000,000 | ---D | C] -- C:\Program Files\QuickTime
[2010/03/26 23:22:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\Apple
[2010/03/26 23:22:12 | 000,000,000 | ---D | C] -- C:\Program Files\Apple Software Update
[2010/03/26 23:22:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2010/03/26 23:21:21 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2010/03/26 23:21:21 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Apple
[2010/03/26 22:29:36 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Mozilla
[2010/03/26 22:29:19 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2010/03/26 20:45:00 | 000,000,000 | ---D | C] -- C:\Program Files\VS Revo Group
[2010/03/26 20:43:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Adobe
[2010/03/26 20:29:25 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Compaq_Owner\My Documents\Downloads
[2010/03/26 20:19:23 | 008,351,672 | ---- | C] (Mozilla) -- C:\Documents and Settings\Compaq_Owner\My Documents\Firefox Setup 3.6.2.exe
[2010/03/26 20:10:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\Mozilla
[2010/03/26 20:04:23 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy
[2010/03/26 20:04:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
[2010/03/26 19:59:00 | 003,396,856 | ---- | C] (Piriform Ltd) -- C:\Documents and Settings\Compaq_Owner\My Documents\ccsetup229.exe
[2010/03/26 19:57:16 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2010/03/26 19:57:05 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2010/03/26 19:53:34 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/03/26 19:53:27 | 000,000,000 | ---D | C] -- C:\Program Files\SpywareBlaster
[2010/03/26 18:23:31 | 000,854,064 | ---- | C] (Symantec Corporation) -- C:\Documents and Settings\Compaq_Owner\My Documents\Norton_Removal_Tool.exe
[2010/03/26 18:23:23 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Downloads
[2010/03/26 18:21:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Kaspersky SDK
[2010/03/26 18:18:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\MailFrontier
[2010/03/26 18:07:22 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Compaq_Owner\UserData
[2010/03/26 18:07:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Macromedia
[2010/03/26 17:55:08 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\My Documents\ForceField Shared Files
[2010/03/26 17:55:07 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\CheckPoint
[2010/03/26 17:54:57 | 000,000,000 | ---D | C] -- C:\Program Files\CheckPoint
[2010/03/26 17:54:44 | 000,128,016 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\kl1.sys
[2010/03/26 17:54:37 | 000,317,072 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys
[2010/03/26 17:54:09 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ZoneLabs
[2010/03/26 17:48:52 | 000,000,000 | RHSD | C] -- C:\cmdcons
[2010/03/26 17:48:50 | 000,000,000 | ---D | C] -- C:\WINDOWS\setup.pss
[2010/03/26 17:47:47 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2010/03/26 17:43:32 | 000,000,000 | ---D | C] -- C:\WINDOWS\ServicePackFiles
[2010/03/26 17:42:49 | 000,000,000 | ---D | C] -- C:\WINDOWS\EHome
[2010/03/26 16:40:16 | 000,000,000 | ---D | C] -- C:\Program Files\Zone Labs
[2010/03/26 16:40:01 | 000,000,000 | ---D | C] -- C:\WINDOWS\Internet Logs
[2010/03/26 16:37:32 | 005,037,072 | ---- | C] (Safer Networking Limited ) -- C:\Documents and Settings\Compaq_Owner\My Documents\spybotsd14.exe
[2010/03/26 16:33:04 | 016,409,960 | ---- | C] (Safer Networking Limited ) -- C:\Documents and Settings\Compaq_Owner\My Documents\setup-spybotsd162.exe
[2010/03/26 16:30:16 | 003,012,768 | ---- | C] (Javacool Software LLC ) -- C:\Documents and Settings\Compaq_Owner\My Documents\spywareblastersetup42.exe
[2010/03/26 16:28:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\Western Digital
[2010/03/26 16:26:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\LightScribe
[2010/03/26 16:26:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Lang
[2010/03/26 16:25:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Identities
[2010/03/26 16:25:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Apple Computer
[2010/03/26 16:25:26 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Microsoft
[2010/03/26 16:25:26 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Compaq_Owner\SendTo
[2010/03/26 16:25:26 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data
[2010/03/26 16:25:26 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Compaq_Owner\Start Menu
[2010/03/26 16:25:26 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Compaq_Owner\My Documents\My Pictures
[2010/03/26 16:25:26 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Compaq_Owner\My Documents\My Music
[2010/03/26 16:25:26 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Compaq_Owner\My Documents
[2010/03/26 16:25:26 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Compaq_Owner\Favorites
[2010/03/26 16:25:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\Compaq_Owner\Cookies
[2010/03/26 16:25:26 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Compaq_Owner\Templates
[2010/03/26 16:25:26 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Compaq_Owner\PrintHood
[2010/03/26 16:25:26 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Compaq_Owner\NetHood
[2010/03/26 16:25:26 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\WINDOWS
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Sun
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\SampleView
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Application Data\Real
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\Microsoft
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Desktop
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\ApplicationHistory
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\Apple Computer
[2010/03/26 16:25:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\{7148F0A6-6813-11D6-A77B-00B0D0142030}
[2010/03/26 16:24:19 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\LightScribe
[2010/03/26 16:24:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\RTCOM
[2010/03/26 16:18:34 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2005/03/10 01:02:28 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2005/03/10 01:02:25 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2005/03/10 01:02:25 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files - Modified Within 14 Days ========== [2010/04/06 14:59:22 | 000,561,664 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Compaq_Owner\Desktop\OTL.exe
[2010/04/06 08:30:16 | 000,004,212 | -H-- | M] () -- C:\WINDOWS\System32\zllictbl.dat
[2010/04/06 02:08:20 | 000,000,330 | -H-- | M] () -- C:\WINDOWS\tasks\MP Scheduled Scan.job
[2010/04/05 12:51:14 | 006,291,456 | -H-- | M] () -- C:\Documents and Settings\Compaq_Owner\NTUSER.DAT
[2010/04/05 12:22:17 | 000,061,648 | -H-- | M] () -- C:\WINDOWS\System32\mlfcache.dat
[2010/04/05 08:55:01 | 000,002,137 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Desktop\iTunes.lnk
[2010/04/05 08:11:00 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/04/05 08:08:12 | 000,000,227 | ---- | M] () -- C:\WINDOWS\system.ini
[2010/04/05 07:55:48 | 003,907,280 | R--- | M] () -- C:\Documents and Settings\Compaq_Owner\Desktop\schrauber.exe
[2010/04/04 08:15:17 | 000,007,883 | ---- | M] () -- C:\WINDOWS\System32\nvapps.xml
[2010/04/04 08:15:13 | 000,000,182 | ---- | M] () -- C:\WINDOWS\System\hpsysdrv.DAT
[2010/04/04 08:14:44 | 000,000,027 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\hosts
[2010/04/04 08:12:24 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/04/01 13:23:52 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Compaq_Owner\ntuser.ini
[2010/03/30 21:30:28 | 000,503,304 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI
[2010/03/30 21:30:28 | 000,442,466 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2010/03/30 21:30:28 | 000,071,732 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2010/03/30 15:34:08 | 000,000,081 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Desktop\help removing possible trojan adware and malware.URL
[2010/03/30 12:00:47 | 000,000,000 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\defogger_reenable
[2010/03/30 11:24:24 | 000,284,915 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Desktop\gmer.zip
[2010/03/30 11:23:11 | 000,525,824 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Desktop\dds.scr
[2010/03/30 11:18:01 | 000,050,477 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Desktop\Defogger.exe
[2010/03/30 00:46:30 | 000,038,224 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbamswissarmy.sys
[2010/03/30 00:45:52 | 000,020,824 | ---- | M] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2010/03/29 21:26:30 | 000,001,688 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon Solution Menu.lnk
[2010/03/29 21:26:07 | 000,001,742 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon Easy-PhotoPrint EX.lnk
[2010/03/29 21:24:06 | 000,001,744 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon MP Navigator EX 3.0.lnk
[2010/03/29 21:23:31 | 000,001,660 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon My Printer.lnk
[2010/03/29 21:23:07 | 000,001,975 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Canon MP270 series On-screen Manual.lnk
[2010/03/29 20:37:16 | 002,002,000 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\My Documents\dog_cat_claim_form.pdf
[2010/03/29 18:22:05 | 000,079,824 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010/03/29 18:19:17 | 000,286,112 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/03/29 17:19:50 | 000,001,158 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/03/29 17:17:53 | 000,000,000 | -H-- | M] () -- C:\Documents and Settings\Compaq_Owner\My Documents\Default.rdp
[2010/03/28 22:02:57 | 000,059,592 | ---- | M] () -- C:\WINDOWS\System32\pghash.dat
[2010/03/27 18:02:48 | 000,001,563 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Call of Duty® 2 Single Player.lnk
[2010/03/27 18:02:48 | 000,001,563 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Call of Duty® 2 Multiplayer.lnk
[2010/03/27 18:02:45 | 000,000,287 | ---- | M] () -- C:\WINDOWS\game.ini
[2010/03/27 12:19:23 | 000,000,000 | ---- | M] () -- C:\WINDOWS\System32\pguard.dat
[2010/03/27 10:21:38 | 023,212,728 | ---- | M] (Tenebril Inc ) -- C:\Documents and Settings\Compaq_Owner\My Documents\spycatcher-express.exe
[2010/03/27 10:18:50 | 000,000,658 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Start Menu\Programs\Startup\SpywareGuard.lnk.disabled
[2010/03/27 10:13:26 | 005,154,304 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\My Documents\WindowsDefender.msi
[2010/03/27 10:10:23 | 000,999,160 | ---- | M] (BillP Studios) -- C:\Documents and Settings\Compaq_Owner\My Documents\wpsetup.exe
[2010/03/27 10:08:25 | 000,744,529 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\My Documents\bazookasetup.exe
[2010/03/27 10:05:14 | 002,062,665 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\My Documents\spywareguardsetup.exe
[2010/03/27 10:03:58 | 001,137,360 | ---- | M] (F-Secure Corporation) -- C:\Documents and Settings\Compaq_Owner\My Documents\fsbl2.2.exe
[2010/03/27 10:02:47 | 001,968,975 | ---- | M] (DiamondCS ) -- C:\Documents and Settings\Compaq_Owner\My Documents\pgsetup.exe
[2010/03/27 10:01:54 | 007,520,288 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\My Documents\SUPERAntiSpyware4.33.exe
[2010/03/27 09:36:36 | 005,115,824 | ---- | M] (Malwarebytes Corporation ) -- C:\Documents and Settings\Compaq_Owner\My Documents\mbam-setup.exe
[2010/03/27 09:32:56 | 000,150,596 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\My Documents\hosts.zip
[2010/03/27 09:19:41 | 000,380,956 | ---- | M] () -- C:\WINDOWS\System32\drivers\etc\HOSTS.MVP
[2010/03/27 09:01:10 | 004,845,698 | -H-- | M] () -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\IconCache.db
[2010/03/27 08:55:03 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2010/03/27 06:31:06 | 000,250,048 | RHS- | M] () -- C:\ntldr
[2010/03/27 00:13:05 | 000,000,671 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Desktop\Shortcut to iTunes Music.lnk
[2010/03/26 22:29:22 | 000,001,610 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2010/03/26 20:44:29 | 001,114,576 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\My Documents\revosetup.exe
[2010/03/26 20:33:52 | 000,000,277 | ---- | M] () -- C:\Documents and Settings\Compaq_Owner\Desktop\Hotmail.url
[2010/03/26 20:22:25 | 008,351,672 | ---- | M] (Mozilla) -- C:\Documents and Settings\Compaq_Owner\My Documents\Firefox Setup 3.6.2.exe
[2010/03/26 20:10:37 | 000,000,000 | ---- | M] () -- C:\WINDOWS\nsreg.dat
[2010/03/26 20:00:16 | 003,396,856 | ---- | M] (Piriform Ltd) -- C:\Documents and Settings\Compaq_Owner\My Documents\ccsetup229.exe
[2010/03/26 18:23:51 | 000,854,064 | ---- | M] (Symantec Corporation) -- C:\Documents and Settings\Compaq_Owner\My Documents\Norton_Removal_Tool.exe
[2010/03/26 17:55:35 | 000,423,031 | ---- | M] () -- C:\WINDOWS\System32\vsconfig.xml
[2010/03/26 17:49:01 | 000,000,283 | RHS- | M] () -- C:\boot.ini
[2010/03/26 17:45:48 | 000,000,213 | RHS- | M] () -- C:\BOOT.BAK
[2010/03/26 16:25:52 | 000,001,891 | RHS- | M] () -- C:\WINDOWS\System32\drivers\103C_HP_CPC_PW584AA-ABG SR1499AN AN520_YC_0Pres_QTHT512_E52ANheREG1_47_IPuffer_SASUSTeK Computer INC._V1.xx_B3.28_T060123_WXH2_L409_M1024_J200_7Intel_8Pentium 4_93.4_#100326_N10EC8139_Z11C1048C_G10DE0141.MRK
[2010/03/26 16:24:35 | 000,000,993 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2010/03/26 16:24:33 | 000,262,144 | ---- | M] () -- C:\Documents and Settings\All Users\NTUSER.DAT
[2 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]
========== Files Created - No Company Name ========== [2010/04/05 12:22:17 | 000,061,648 | -H-- | C] () -- C:\WINDOWS\System32\mlfcache.dat
[2010/04/05 07:54:35 | 003,907,280 | R--- | C] () -- C:\Documents and Settings\Compaq_Owner\Desktop\schrauber.exe
[2010/04/04 08:01:45 | 000,261,632 | ---- | C] () -- C:\WINDOWS\PEV.exe
[2010/04/04 08:01:45 | 000,098,816 | ---- | C] () -- C:\WINDOWS\sed.exe
[2010/04/04 08:01:45 | 000,080,412 | ---- | C] () -- C:\WINDOWS\grep.exe
[2010/04/04 08:01:45 | 000,077,312 | ---- | C] () -- C:\WINDOWS\MBR.exe
[2010/04/04 08:01:45 | 000,068,096 | ---- | C] () -- C:\WINDOWS\zip.exe
[2010/03/30 15:34:08 | 000,000,081 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Desktop\help removing possible trojan adware and malware.URL
[2010/03/30 12:00:47 | 000,000,000 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\defogger_reenable
[2010/03/30 11:24:23 | 000,284,915 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Desktop\gmer.zip
[2010/03/30 11:23:02 | 000,525,824 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Desktop\dds.scr
[2010/03/30 11:17:58 | 000,050,477 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Desktop\Defogger.exe
[2010/03/29 21:34:26 | 000,012,544 | ---- | C] () -- C:\WINDOWS\System32\CNC173BD.TBL
[2010/03/29 21:26:30 | 000,001,688 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon Solution Menu.lnk
[2010/03/29 21:26:07 | 000,001,742 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon Easy-PhotoPrint EX.lnk
[2010/03/29 21:24:06 | 000,001,744 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MP Navigator EX 3.0.lnk
[2010/03/29 21:23:31 | 000,001,660 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon My Printer.lnk
[2010/03/29 21:23:07 | 000,001,975 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Canon MP270 series On-screen Manual.lnk
[2010/03/29 20:37:15 | 002,002,000 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\dog_cat_claim_form.pdf
[2010/03/29 17:17:53 | 000,000,000 | -H-- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\Default.rdp
[2010/03/27 18:02:48 | 000,001,563 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Call of Duty® 2 Single Player.lnk
[2010/03/27 18:02:48 | 000,001,563 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Call of Duty® 2 Multiplayer.lnk
[2010/03/27 18:02:45 | 000,000,287 | ---- | C] () -- C:\WINDOWS\game.ini
[2010/03/27 12:30:09 | 000,002,137 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Desktop\iTunes.lnk
[2010/03/27 12:19:25 | 000,059,592 | ---- | C] () -- C:\WINDOWS\System32\pghash.dat
[2010/03/27 12:19:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\System32\pguard.dat
[2010/03/27 11:44:58 | 000,000,330 | -H-- | C] () -- C:\WINDOWS\tasks\MP Scheduled Scan.job
[2010/03/27 10:18:50 | 000,000,658 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Start Menu\Programs\Startup\SpywareGuard.lnk.disabled
[2010/03/27 10:11:50 | 005,154,304 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\WindowsDefender.msi
[2010/03/27 10:08:12 | 000,744,529 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\bazookasetup.exe
[2010/03/27 10:04:38 | 002,062,665 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\spywareguardsetup.exe
[2010/03/27 09:59:34 | 007,520,288 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\SUPERAntiSpyware4.33.exe
[2010/03/27 09:49:21 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2010/03/27 09:49:21 | 000,000,707 | ---- | C] () -- C:\WINDOWS\_default.pif
[2010/03/27 09:49:18 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\xjis.nls
[2010/03/27 09:49:18 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls
[2010/03/27 09:49:10 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2010/03/27 09:49:10 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2010/03/27 09:49:06 | 000,032,674 | ---- | C] () -- C:\WINDOWS\System32\winhelp.hlp
[2010/03/27 09:49:06 | 000,013,312 | ---- | C] () -- C:\WINDOWS\System32\dllcache\win87em.dll
[2010/03/27 09:49:04 | 001,326,080 | ---- | C] () -- C:\WINDOWS\System32\webfldrs.msi
[2010/03/27 09:49:03 | 000,937,984 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.sve
[2010/03/27 09:49:03 | 000,004,096 | ---- | C] () -- C:\WINDOWS\System32\wdl.trm
[2010/03/27 09:49:02 | 001,095,680 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.nld
[2010/03/27 09:49:02 | 000,867,840 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.ita
[2010/03/27 09:49:02 | 000,786,944 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.fra
[2010/03/27 09:49:02 | 000,750,080 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.esn
[2010/03/27 09:49:01 | 001,309,184 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.deu
[2010/03/27 09:49:01 | 000,957,440 | ---- | C] () -- C:\WINDOWS\System32\wbdbase.enu
[2010/03/27 09:49:01 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.sve
[2010/03/27 09:49:01 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.nld
[2010/03/27 09:49:01 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.ita
[2010/03/27 09:49:01 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.fra
[2010/03/27 09:49:01 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.esn
[2010/03/27 09:49:01 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.enu
[2010/03/27 09:49:01 | 000,065,489 | ---- | C] () -- C:\WINDOWS\System32\wbcache.deu
[2010/03/27 09:48:59 | 000,018,832 | ---- | C] () -- C:\WINDOWS\System32\v7vga.rom
[2010/03/27 09:48:58 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2010/03/27 09:48:56 | 000,089,588 | ---- | C] () -- C:\WINDOWS\System32\unicode.nls
[2010/03/27 09:48:56 | 000,089,588 | ---- | C] () -- C:\WINDOWS\System32\dllcache\unicode.nls
[2010/03/27 09:48:55 | 000,015,360 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tsd32.dll
[2010/03/27 09:48:49 | 000,003,577 | ---- | C] () -- C:\WINDOWS\System32\sysprtj.sep
[2010/03/27 09:48:49 | 000,003,214 | ---- | C] () -- C:\WINDOWS\System32\sysprint.sep
[2010/03/27 09:48:48 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce
[2010/03/27 09:48:46 | 000,046,133 | ---- | C] () -- C:\WINDOWS\System32\sqlsodbc.chm
[2010/03/27 09:48:46 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2010/03/27 09:48:36 | 000,262,148 | ---- | C] () -- C:\WINDOWS\System32\sortkey.nls
[2010/03/27 09:48:36 | 000,262,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sortkey.nls
[2010/03/27 09:48:36 | 000,023,044 | ---- | C] () -- C:\WINDOWS\System32\sorttbls.nls
[2010/03/27 09:48:33 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce
[2010/03/27 09:48:31 | 000,011,753 | ---- | C] () -- C:\WINDOWS\System32\setver.exe
[2010/03/27 09:48:31 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\share.exe
[2010/03/27 09:48:31 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\dllcache\share.exe
[2010/03/27 09:48:30 | 000,033,464 | ---- | C] () -- C:\WINDOWS\System32\services.msc
[2010/03/27 09:48:27 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd
[2010/03/27 09:48:27 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf
[2010/03/27 09:48:26 | 000,003,167 | ---- | C] () -- C:\WINDOWS\System32\rsaci.rat
[2010/03/27 09:48:25 | 000,003,338 | ---- | C] () -- C:\WINDOWS\System32\redir.exe
[2010/03/27 09:48:25 | 000,003,338 | ---- | C] () -- C:\WINDOWS\System32\dllcache\redir.exe
[2010/03/27 09:48:23 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa
[2010/03/27 09:48:21 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prcp.nls
[2010/03/27 09:48:21 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls
[2010/03/27 09:48:21 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\prc.nls
[2010/03/27 09:48:21 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls
[2010/03/27 09:48:21 | 000,003,708 | ---- | C] () -- C:\WINDOWS\System32\pubprn.vbs
[2010/03/27 09:48:21 | 000,003,708 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pubprn.vbs
[2010/03/27 09:48:21 | 000,000,051 | ---- | C] () -- C:\WINDOWS\System32\pscript.sep
[2010/03/27 09:48:15 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2010/03/27 09:48:15 | 000,058,273 | R--- | C] () -- C:\WINDOWS\System32\perfmon.msc
[2010/03/27 09:48:15 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2010/03/27 09:48:14 | 000,000,114 | ---- | C] () -- C:\WINDOWS\System32\pcl.sep
[2010/03/27 09:48:10 | 000,007,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2010/03/27 09:48:10 | 000,006,788 | ---- | C] () -- C:\WINDOWS\System32\oembios.sig
[2010/03/27 09:48:10 | 000,006,788 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.sig
[2010/03/27 09:48:10 | 000,004,490 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2010/03/27 09:48:10 | 000,004,490 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.dat
[2010/03/27 09:48:05 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2010/03/27 09:48:05 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\dllcache\oembios.bin
[2010/03/27 09:48:05 | 000,004,310 | ---- | C] () -- C:\WINDOWS\System32\odbcconf.rsp
[2010/03/27 09:48:02 | 000,032,968 | ---- | C] () -- C:\WINDOWS\System32\ntmsoprq.msc
[2010/03/27 09:48:02 | 000,026,209 | ---- | C] () -- C:\WINDOWS\System32\ntmsmgr.msc
[2010/03/27 09:48:01 | 000,035,648 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio411.sys
[2010/03/27 09:48:01 | 000,035,424 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio412.sys
[2010/03/27 09:48:01 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio804.sys
[2010/03/27 09:48:00 | 000,048,794 | ---- | C] () -- C:\WINDOWS\System32\ntimage.gif
[2010/03/27 09:48:00 | 000,034,560 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio404.sys
[2010/03/27 09:48:00 | 000,033,840 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntio.sys
[2010/03/27 09:48:00 | 000,029,370 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos411.sys
[2010/03/27 09:48:00 | 000,029,274 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos412.sys
[2010/03/27 09:48:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos804.sys
[2010/03/27 09:48:00 | 000,029,146 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos404.sys
[2010/03/27 09:48:00 | 000,027,866 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ntdos.sys
[2010/03/27 09:47:59 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2010/03/27 09:47:58 | 000,149,848 | ---- | C] () -- C:\WINDOWS\System32\noise.deu
[2010/03/27 09:47:58 | 000,049,196 | ---- | C] () -- C:\WINDOWS\System32\noise.fra
[2010/03/27 09:47:58 | 000,019,684 | ---- | C] () -- C:\WINDOWS\System32\noise.esn
[2010/03/27 09:47:58 | 000,019,618 | ---- | C] () -- C:\WINDOWS\System32\noise.ita
[2010/03/27 09:47:58 | 000,013,730 | ---- | C] () -- C:\WINDOWS\System32\noise.sve
[2010/03/27 09:47:58 | 000,013,256 | ---- | C] () -- C:\WINDOWS\System32\noise.nld
[2010/03/27 09:47:58 | 000,007,052 | ---- | C] () -- C:\WINDOWS\System32\nlsfunc.exe
[2010/03/27 09:47:58 | 000,007,052 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nlsfunc.exe
[2010/03/27 09:47:58 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2010/03/27 09:47:58 | 000,000,697 | ---- | C] () -- C:\WINDOWS\System32\noise.tha
[2010/03/27 09:47:57 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2010/03/27 09:47:53 | 000,102,446 | ---- | C] () -- C:\WINDOWS\System32\net.hlp
[2010/03/27 09:47:53 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2010/03/27 09:47:35 | 000,004,126 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdxmlc.dll
[2010/03/27 09:47:34 | 000,844,314 | ---- | C] () -- C:\WINDOWS\System32\msdxm.ocx
[2010/03/27 09:47:34 | 000,844,314 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msdxm.ocx
[2010/03/27 09:47:34 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\mscdexnt.exe
[2010/03/27 09:47:34 | 000,000,817 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mscdexnt.exe
[2010/03/27 09:47:27 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2010/03/27 09:47:27 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mlang.dat
[2010/03/27 09:47:27 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2010/03/27 09:47:25 | 000,039,274 | ---- | C] () -- C:\WINDOWS\System32\mem.exe
[2010/03/27 09:47:25 | 000,039,274 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mem.exe
[2010/03/27 09:47:23 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2010/03/27 09:47:23 | 000,024,124 | ---- | C] () -- C:\WINDOWS\System32\dllcache\marlett.ttf
[2010/03/27 09:47:22 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa
[2010/03/27 09:47:22 | 000,042,166 | ---- | C] () -- C:\WINDOWS\System32\lusrmgr.msc
[2010/03/27 09:47:22 | 000,007,046 | ---- | C] () -- C:\WINDOWS\System32\l_intl.nls
[2010/03/27 09:47:22 | 000,007,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\l_intl.nls
[2010/03/27 09:47:22 | 000,000,168 | ---- | C] () -- C:\WINDOWS\System32\l_except.nls
[2010/03/27 09:47:22 | 000,000,168 | ---- | C] () -- C:\WINDOWS\System32\dllcache\l_except.nls
[2010/03/27 09:47:21 | 000,265,948 | ---- | C] () -- C:\WINDOWS\System32\locale.nls
[2010/03/27 09:47:21 | 000,001,131 | ---- | C] () -- C:\WINDOWS\System32\loadfix.com
[2010/03/27 09:46:35 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\ksc.nls
[2010/03/27 09:46:35 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls
[2010/03/27 09:46:35 | 000,042,809 | ---- | C] () -- C:\WINDOWS\System32\dllcache\key01.sys
[2010/03/27 09:46:35 | 000,042,537 | ---- | C] () -- C:\WINDOWS\System32\dllcache\keyboard.sys
[2010/03/27 09:46:35 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce
[2010/03/27 09:46:33 | 000,014,710 | ---- | C] () -- C:\WINDOWS\System32\kb16.com
[2010/03/27 09:46:33 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce
[2010/03/27 09:46:33 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce
[2010/03/27 09:46:30 | 000,956,990 | ---- | C] () -- C:\WINDOWS\System32\instcat.sql
[2010/03/27 09:46:28 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce
[2010/03/27 09:46:28 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2010/03/27 09:46:26 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2010/03/27 09:46:25 | 000,004,768 | ---- | C] () -- C:\WINDOWS\System32\dllcache\himem.sys
[2010/03/27 09:46:23 | 000,021,232 | ---- | C] () -- C:\WINDOWS\System32\graphics.pro
[2010/03/27 09:46:23 | 000,019,694 | ---- | C] () -- C:\WINDOWS\System32\graphics.com
[2010/03/27 09:46:21 | 003,440,660 | ---- | C] () -- C:\WINDOWS\System32\drivers\gm.dls
[2010/03/27 09:46:21 | 003,440,660 | ---- | C] () -- C:\WINDOWS\System32\dllcache\gm.dls
[2010/03/27 09:46:20 | 000,032,760 | ---- | C] () -- C:\WINDOWS\System32\fsmgmt.msc
[2010/03/27 09:46:20 | 000,024,772 | ---- | C] () -- C:\WINDOWS\System32\geo.nls
[2010/03/27 09:46:20 | 000,024,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\geo.nls
[2010/03/27 09:46:20 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce
[2010/03/27 09:46:19 | 000,152,844 | ---- | C] () -- C:\WINDOWS\System32\dllcache\framdit.ttf
[2010/03/27 09:46:19 | 000,135,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\framd.ttf
[2010/03/27 09:46:17 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\fastopen.exe
[2010/03/27 09:46:17 | 000,000,882 | ---- | C] () -- C:\WINDOWS\System32\dllcache\fastopen.exe
[2010/03/27 09:46:17 | 000,000,080 | ---- | C] () -- C:\WINDOWS\explorer.scf
[2010/03/27 09:46:16 | 000,056,678 | ---- | C] () -- C:\WINDOWS\System32\eventvwr.msc
[2010/03/27 09:46:16 | 000,008,424 | ---- | C] () -- C:\WINDOWS\System32\exe2bin.exe
[2010/03/27 09:46:16 | 000,008,424 | ---- | C] () -- C:\WINDOWS\System32\dllcache\exe2bin.exe
[2010/03/27 09:46:16 | 000,006,708 | ---- | C] () -- C:\WINDOWS\System32\esentprf.hxx
[2010/03/27 09:46:15 | 000,127,213 | ---- | C] () -- C:\WINDOWS\System32\ega.cpi
[2010/03/27 09:46:15 | 000,069,886 | ---- | C] () -- C:\WINDOWS\System32\edit.com
[2010/03/27 09:46:15 | 000,012,642 | ---- | C] () -- C:\WINDOWS\System32\edlin.exe
[2010/03/27 09:46:15 | 000,012,642 | ---- | C] () -- C:\WINDOWS\System32\dllcache\edlin.exe
[2010/03/27 09:46:15 | 000,010,790 | ---- | C] () -- C:\WINDOWS\System32\edit.hlp
[2010/03/27 09:44:59 | 000,498,742 | ---- | C] () -- C:\WINDOWS\System32\dllcache\dxmasf.dll
[2010/03/27 09:44:58 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2010/03/27 09:44:58 | 000,000,081 | ---- | C] () -- C:\WINDOWS\System32\dsound.vxd
[2010/03/27 09:44:31 | 000,053,840 | ---- | C] () -- C:\WINDOWS\System32\dosx.exe
[2010/03/27 09:44:31 | 000,053,840 | ---- | C] () -- C:\WINDOWS\System32\dllcache\dosx.exe
[2010/03/27 09:44:28 | 000,033,673 | ---- | C] () -- C:\WINDOWS\System32\diskmgmt.msc
[2010/03/27 09:44:26 | 000,041,397 | ---- | C] () -- C:\WINDOWS\System32\dfrg.msc
[2010/03/27 09:44:26 | 000,033,079 | ---- | C] () -- C:\WINDOWS\System32\devmgmt.msc
[2010/03/27 09:44:26 | 000,020,634 | ---- | C] () -- C:\WINDOWS\System32\dllcache\debug.exe
[2010/03/27 09:44:26 | 000,020,634 | ---- | C] () -- C:\WINDOWS\System32\debug.exe
[2010/03/27 09:44:26 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\dcache.bin
[2010/03/27 09:44:24 | 000,196,642 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_950.nls
[2010/03/27 09:44:24 | 000,196,642 | ---- | C] () -- C:\WINDOWS\System32\c_950.nls
[2010/03/27 09:44:24 | 000,196,642 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_949.nls
[2010/03/27 09:44:24 | 000,196,642 | ---- | C] () -- C:\WINDOWS\System32\c_949.nls
[2010/03/27 09:44:24 | 000,196,642 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_936.nls
[2010/03/27 09:44:24 | 000,196,642 | ---- | C] () -- C:\WINDOWS\System32\c_936.nls
[2010/03/27 09:44:24 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_932.nls
[2010/03/27 09:44:24 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_932.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_874.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_874.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_865.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_865.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_864.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_863.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_863.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_862.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_861.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_861.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_860.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_860.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_852.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_852.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_850.nls
[2010/03/27 09:44:24 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_850.nls
[2010/03/27 09:44:24 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls
[2010/03/27 09:44:24 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls
[2010/03/27 09:44:24 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls
[2010/03/27 09:44:23 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls
[2010/03/27 09:44:23 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\c_1361.nls
[2010/03/27 09:44:23 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls
[2010/03/27 09:44:23 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls
[2010/03/27 09:44:23 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls
[2010/03/27 09:44:23 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls
[2010/03/27 09:44:23 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\c_20932.nls
[2010/03/27 09:44:23 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls
[2010/03/27 09:44:23 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls
[2010/03/27 09:44:23 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\c_20000.nls
[2010/03/27 09:44:23 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls
[2010/03/27 09:44:23 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_20949.nls
[2010/03/27 09:44:23 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls
[2010/03/27 09:44:23 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_20936.nls
[2010/03/27 09:44:23 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls
[2010/03/27 09:44:23 | 000,139,810 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20261.nls
[2010/03/27 09:44:23 | 000,139,810 | ---- | C] () -- C:\WINDOWS\System32\c_20261.nls
[2010/03/27 09:44:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_775.nls
[2010/03/27 09:44:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_775.nls
[2010/03/27 09:44:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls
[2010/03/27 09:44:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls
[2010/03/27 09:44:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls
[2010/03/27 09:44:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_720.nls
[2010/03/27 09:44:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_437.nls
[2010/03/27 09:44:23 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_437.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_708.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_500.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_500.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28605.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28605.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28598.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28598.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28596.NLS
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28593.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28593.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28592.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28592.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28591.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28591.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21866.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21866.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_21027.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20905.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20905.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20866.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20866.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20290.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1258.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1258.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1257.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1257.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1256.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1256.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1255.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1255.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1254.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1254.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1253.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1253.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1252.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1252.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1251.nls
[2010/03/27 09:44:23 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1251.nls
[2010/03/27 09:44:22 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls
[2010/03/27 09:44:22 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\c_10002.nls
[2010/03/27 09:44:22 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls
[2010/03/27 09:44:22 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\c_10003.nls
[2010/03/27 09:44:22 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls
[2010/03/27 09:44:22 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\c_10008.nls
[2010/03/27 09:44:22 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls
[2010/03/27 09:44:22 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\c_10001.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1250.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1250.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1026.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_1026.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10079.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10079.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10021.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10005.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10004.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10000.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10000.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_037.nls
[2010/03/27 09:44:22 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_037.nls
[2010/03/27 09:44:22 | 000,008,386 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ctype.nls
[2010/03/27 09:44:22 | 000,008,386 | ---- | C] () -- C:\WINDOWS\System32\ctype.nls
[2010/03/27 09:44:21 | 000,027,097 | ---- | C] () -- C:\WINDOWS\System32\dllcache\country.sys
[2010/03/27 09:44:19 | 000,038,302 | ---- | C] () -- C:\WINDOWS\System32\compmgmt.msc
[2010/03/27 09:44:14 | 000,050,620 | ---- | C] () -- C:\WINDOWS\System32\command.com
[2010/03/27 09:44:13 | 000,082,944 | ---- | C] () -- C:\WINDOWS\clock.avi
[2010/03/27 09:44:13 | 000,071,859 | ---- | C] () -- C:\WINDOWS\System32\cliconf.chm
[2010/03/27 09:44:13 | 000,061,172 | ---- | C] () -- C:\WINDOWS\System32\cmmgr32.hlp
[2010/03/27 09:44:13 | 000,000,064 | ---- | C] () -- C:\WINDOWS\System32\cmos.ram
[2010/03/27 09:44:12 | 000,041,762 | ---- | C] () -- C:\WINDOWS\System32\ciadv.msc
[2010/03/27 09:44:11 | 000,042,339 | ---- | C] () -- C:\WINDOWS\System32\certmgr.msc
[2010/03/27 09:44:09 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls
[2010/03/27 09:44:09 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.nls
[2010/03/27 09:44:09 | 000,028,420 | ---- | C] () -- C:\WINDOWS\System32\bios1.rom
[2010/03/27 09:44:09 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce
[2010/03/27 09:44:09 | 000,008,191 | ---- | C] () -- C:\WINDOWS\System32\bios4.rom
[2010/03/27 09:44:08 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls
[2010/03/27 09:44:08 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\big5.nls
[2010/03/27 09:33:12 | 000,012,498 | ---- | C] () -- C:\WINDOWS\System32\dllcache\append.exe
[2010/03/27 09:33:12 | 000,012,498 | ---- | C] () -- C:\WINDOWS\System32\append.exe
[2010/03/27 09:33:12 | 000,009,029 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ansi.sys
[2010/03/27 09:33:10 | 000,002,233 | ---- | C] () -- C:\WINDOWS\System32\dllcache\12520850.cpx
[2010/03/27 09:33:10 | 000,002,233 | ---- | C] () -- C:\WINDOWS\System32\12520850.cpx
[2010/03/27 09:33:10 | 000,002,151 | ---- | C] () -- C:\WINDOWS\System32\dllcache\12520437.cpx
[2010/03/27 09:33:10 | 000,002,151 | ---- | C] () -- C:\WINDOWS\System32\12520437.cpx
[2010/03/27 09:32:54 | 000,150,596 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\hosts.zip
[2010/03/27 01:59:41 | 000,010,457 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.hta
[2010/03/27 01:59:41 | 000,001,771 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmptour.css
[2010/03/27 01:59:41 | 000,000,855 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpocm.inf
[2010/03/27 01:59:41 | 000,000,420 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmploc.js
[2010/03/27 01:59:40 | 000,613,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.chm
[2010/03/27 01:59:40 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud7.wav
[2010/03/27 01:59:40 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud9.wav
[2010/03/27 01:59:40 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud8.wav
[2010/03/27 01:59:40 | 000,067,374 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplayer.adm
[2010/03/27 01:59:40 | 000,023,195 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmplay.chm
[2010/03/27 01:59:39 | 000,354,468 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud1.wav
[2010/03/27 01:59:39 | 000,343,204 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud6.wav
[2010/03/27 01:59:39 | 000,172,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud3.wav
[2010/03/27 01:59:39 | 000,086,196 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud5.wav
[2010/03/27 01:59:39 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud4.wav
[2010/03/27 01:59:39 | 000,086,180 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmpaud2.wav
[2010/03/27 01:59:39 | 000,029,070 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmp.inf
[2010/03/27 01:59:37 | 000,017,272 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmdm.inf
[2010/03/27 01:59:37 | 000,007,892 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm9.gif
[2010/03/27 01:59:37 | 000,006,769 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmfsdk.inf
[2010/03/27 01:59:37 | 000,004,193 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm8.gif
[2010/03/27 01:59:36 | 000,008,677 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm7.gif
[2010/03/27 01:59:36 | 000,007,636 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm2.gif
[2010/03/27 01:59:36 | 000,007,369 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm4.gif
[2010/03/27 01:59:36 | 000,006,241 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm3.gif
[2010/03/27 01:59:36 | 000,006,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm6.gif
[2010/03/27 01:59:36 | 000,005,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm1.gif
[2010/03/27 01:59:36 | 000,002,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wm5.gif
[2010/03/27 01:59:29 | 000,300,969 | ---- | C] () -- C:\WINDOWS\System32\dllcache\viz.wmv
[2010/03/27 01:59:29 | 000,017,489 | ---- | C] () -- C:\WINDOWS\System32\dllcache\videobg.gif
[2010/03/27 01:59:29 | 000,005,290 | ---- | C] () -- C:\WINDOWS\System32\dllcache\vidsamp.gif
[2010/03/27 01:59:21 | 000,023,829 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tourbg.gif
[2010/03/27 01:59:21 | 000,002,469 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplay.gif
[2010/03/27 01:59:21 | 000,002,450 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpause.gif
[2010/03/27 01:59:21 | 000,002,375 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tplayh.gif
[2010/03/27 01:59:21 | 000,002,371 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tpauseh.gif
[2010/03/27 01:59:20 | 000,003,187 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tour.js
[2010/03/27 01:59:19 | 000,001,398 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taon.gif
[2010/03/27 01:59:19 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taonh.gif
[2010/03/27 01:59:19 | 000,001,380 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoff.gif
[2010/03/27 01:59:19 | 000,001,367 | ---- | C] () -- C:\WINDOWS\System32\dllcache\taoffh.gif
[2010/03/27 01:59:12 | 000,001,148 | ---- | C] () -- C:\WINDOWS\System32\dllcache\snd.htm
[2010/03/27 01:59:11 | 000,000,908 | ---- | C] () -- C:\WINDOWS\System32\dllcache\skins.inf
[2010/03/27 01:59:05 | 000,572,557 | ---- | C] () -- C:\WINDOWS\System32\dllcache\rtuner.wmv
[2010/03/27 01:59:03 | 000,066,725 | ---- | C] () -- C:\WINDOWS\System32\dllcache\revert.wmz
[2010/03/27 01:58:57 | 000,077,307 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plyr_err.chm
[2010/03/27 01:58:56 | 000,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst6.wpl
[2010/03/27 01:58:56 | 000,001,477 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst5.wpl
[2010/03/27 01:58:56 | 000,001,474 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst3.wpl
[2010/03/27 01:58:56 | 000,001,451 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst12.wpl
[2010/03/27 01:58:56 | 000,001,448 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst4.wpl
[2010/03/27 01:58:56 | 000,001,250 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst1.wpl
[2010/03/27 01:58:56 | 000,001,049 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst2.wpl
[2010/03/27 01:58:56 | 000,001,046 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst7.wpl
[2010/03/27 01:58:56 | 000,001,036 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst8.wpl
[2010/03/27 01:58:56 | 000,000,789 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst11.wpl
[2010/03/27 01:58:56 | 000,000,787 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst10.wpl
[2010/03/27 01:58:56 | 000,000,784 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst9.wpl
[2010/03/27 01:58:56 | 000,000,783 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst13.wpl
[2010/03/27 01:58:56 | 000,000,775 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst14.wpl
[2010/03/27 01:58:56 | 000,000,733 | ---- | C] () -- C:\WINDOWS\System32\dllcache\plylst15.wpl
[2010/03/27 01:58:50 | 000,375,519 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nuskin.wmv
[2010/03/27 01:58:47 | 000,022,060 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npds.zip
[2010/03/27 01:58:47 | 000,000,403 | ---- | C] () -- C:\WINDOWS\System32\dllcache\npdrmv2.zip
[2010/03/27 01:58:31 | 000,097,117 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.hlp
[2010/03/27 01:58:31 | 000,018,286 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.inf
[2010/03/27 01:58:31 | 000,002,778 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogoh.gif
[2010/03/27 01:58:31 | 000,002,545 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplogo.gif
[2010/03/27 01:58:31 | 000,001,885 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.cnt
[2010/03/27 01:58:25 | 000,457,607 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mdlib.wmv
[2010/03/27 01:58:11 | 000,001,261 | ---- | C] () -- C:\WINDOWS\System32\pid.inf
[2010/03/27 01:58:07 | 000,005,971 | ---- | C] () -- C:\WINDOWS\System32\dllcache\events.js
[2010/03/27 01:57:58 | 000,381,425 | ---- | C] () -- C:\WINDOWS\System32\dllcache\copycd.wmv
[2010/03/27 01:57:58 | 000,184,959 | ---- | C] () -- C:\WINDOWS\System32\dllcache\compact.wmz
[2010/03/27 01:57:58 | 000,009,585 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.css
[2010/03/27 01:57:58 | 000,008,298 | ---- | C] () -- C:\WINDOWS\System32\dllcache\contents.htm
[2010/03/27 01:57:58 | 000,006,878 | ---- | C] () -- C:\WINDOWS\System32\dllcache\controls.js
[2010/03/27 01:57:58 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnth.gif
[2010/03/27 01:57:58 | 000,000,773 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cnt.gif
[2010/03/27 01:57:58 | 000,000,772 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cntd.gif
[2010/03/27 01:57:57 | 000,000,760 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapph.gif
[2010/03/27 01:57:57 | 000,000,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\cloapp.gif
[2010/03/27 01:57:56 | 000,000,999 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bktrh.gif
[2010/03/27 00:13:05 | 000,000,671 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Desktop\Shortcut to iTunes Music.lnk
[2010/03/26 22:29:22 | 000,001,610 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2010/03/26 20:44:23 | 001,114,576 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\revosetup.exe
[2010/03/26 20:27:39 | 000,000,277 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Desktop\Hotmail.url
[2010/03/26 20:10:37 | 000,000,000 | ---- | C] () -- C:\WINDOWS\nsreg.dat
[2010/03/26 17:54:46 | 000,004,212 | -H-- | C] () -- C:\WINDOWS\System32\zllictbl.dat
[2010/03/26 17:54:07 | 000,423,031 | ---- | C] () -- C:\WINDOWS\System32\vsconfig.xml
[2010/03/26 17:49:00 | 000,000,213 | RHS- | C] () -- C:\BOOT.BAK
[2010/03/26 17:48:58 | 000,260,272 | RHS- | C] () -- C:\cmldr
[2010/03/26 17:45:27 | 000,064,352 | ---- | C] () -- C:\WINDOWS\System32\drivers\ativmc20.cod
[2010/03/26 17:45:26 | 000,129,045 | ---- | C] () -- C:\WINDOWS\System32\drivers\cxthsfs2.cty
[2010/03/26 17:45:26 | 000,067,866 | ---- | C] () -- C:\WINDOWS\System32\drivers\netwlan5.img
[2010/03/26 16:30:06 | 123,610,504 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\My Documents\zaSuiteSetup_91_008_000_en.exe
[2010/03/26 16:25:47 | 000,001,891 | RHS- | C] () -- C:\WINDOWS\System32\drivers\103C_HP_CPC_PW584AA-ABG SR1499AN AN520_YC_0Pres_QTHT512_E52ANheREG1_47_IPuffer_SASUSTeK Computer INC._V1.xx_B3.28_T060123_WXH2_L409_M1024_J200_7Intel_8Pentium 4_93.4_#100326_N10EC8139_Z11C1048C_G10DE0141.MRK
[2010/03/26 16:25:27 | 000,000,128 | ---- | C] () -- C:\Documents and Settings\Compaq_Owner\Local Settings\Application Data\fusioncache.dat
[2010/03/26 16:25:26 | 000,020,480 | -H-- | C] () -- C:\Documents and Settings\Compaq_Owner\ntuser.dat.LOG
[2010/03/26 16:25:26 | 000,000,178 | -HS- | C] () -- C:\Documents and Settings\Compaq_Owner\ntuser.ini
[2010/03/26 16:25:25 | 006,291,456 | -H-- | C] () -- C:\Documents and Settings\Compaq_Owner\NTUSER.DAT
[2010/03/26 16:24:33 | 000,262,144 | ---- | C] () -- C:\Documents and Settings\All Users\NTUSER.DAT
[2010/03/26 16:24:33 | 000,001,024 | -H-- | C] () -- C:\Documents and Settings\All Users\NTUSER.DAT.LOG
[2010/03/26 16:20:32 | 000,000,182 | ---- | C] () -- C:\WINDOWS\System\hpsysdrv.DAT
[2005/03/10 01:59:31 | 000,000,061 | ---- | C] () -- C:\WINDOWS\smscfg.ini
[2005/03/10 01:56:11 | 000,204,800 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeW7.dll
[2005/03/10 01:56:11 | 000,200,704 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeA6.dll
[2005/03/10 01:56:11 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeP6.dll
[2005/03/10 01:56:11 | 000,192,512 | ---- | C] () -- C:\WINDOWS\System32\IVIresizeM6.dll
[2005/03/10 01:56:11 | 000,188,416 | ---- | C] () -- C:\WINDOWS\System32\IVIresizePX.dll
[2005/03/10 01:56:11 | 000,020,480 | ---- | C] () -- C:\WINDOWS\System32\IVIresize.dll
[2005/03/10 01:31:04 | 000,013,210 | ---- | C] () -- C:\WINDOWS\System32\CHODDI.SYS
[2005/03/10 01:30:59 | 000,045,056 | ---- | C] () -- C:\WINDOWS\System32\hpreg.dll
[2005/03/10 01:27:24 | 000,000,376 | ---- | C] () -- C:\WINDOWS\ODBC.INI
[2005/03/10 01:18:15 | 000,001,793 | ---- | C] () -- C:\WINDOWS\System32\fxsperf.ini
[2005/03/10 01:15:58 | 000,156,672 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll
[2005/03/10 01:07:33 | 000,000,780 | ---- | C] () -- C:\WINDOWS\orun32.ini
[2005/03/10 01:05:56 | 000,323,584 | ---- | C] () -- C:\WINDOWS\System32\pythoncom22.dll
[2005/03/10 01:05:56 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\pywintypes22.dll
[2005/03/10 01:05:32 | 000,016,896 | ---- | C] () -- C:\WINDOWS\System32\bcbmm.dll
[2004/08/20 01:14:46 | 000,086,016 | ---- | C] () -- C:\WINDOWS\System32\PcdrKernelModeServices.dll
[2004/08/20 01:14:46 | 000,065,536 | ---- | C] () -- C:\WINDOWS\System32\ProgressTrace.dll
[2004/06/25 12:03:30 | 000,000,554 | ---- | C] () -- C:\WINDOWS\System32\oeminfo.ini
[2003/04/10 21:04:00 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\JAWTAccessBridge.dll
========== LOP Check ========== [2010/03/29 21:21:54 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonBJ
[2010/03/29 21:37:09 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJMyPrinter
[2010/04/01 13:23:36 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJPLM
[2010/03/29 21:37:11 | 000,000,000 | -H-D | M] -- C:\Documents and Settings\All Users\Application Data\CanonIJSolutionMenu
[2010/03/26 18:21:04 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Kaspersky SDK
[2010/03/31 13:38:55 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2010/03/27 12:02:45 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Tenebril
[2010/03/26 23:24:49 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD}
[2010/03/29 21:32:29 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Compaq_Owner\Application Data\Canon Easy-WebPrint EX
[2010/03/26 17:55:07 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Compaq_Owner\Application Data\CheckPoint
[2010/03/26 18:18:00 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Compaq_Owner\Application Data\MailFrontier
[2005/03/10 01:40:26 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Compaq_Owner\Application Data\SampleView
[2010/03/27 11:35:42 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Compaq_Owner\Application Data\WinPatrol
[2010/04/06 02:08:20 | 000,000,330 | -H-- | M] () -- C:\WINDOWS\Tasks\MP Scheduled Scan.job
========== Purity Check ========== ========== Custom Scans ========== < %SYSTEMDRIVE%\*.exe > < MD5 for: AGP440.SYS >[2004/08/05 04:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys
[2010/03/27 06:26:25 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:AGP440.sys
[2004/08/04 05:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp2.cab:AGP440.sys
[2004/08/04 01:05:44 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:AGP440.sys
[2010/03/27 06:26:25 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:AGP440.sys
[2008/04/14 04:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ERDNT\cache\agp440.sys
[2008/04/14 04:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\ServicePackFiles\i386\agp440.sys
[2008/04/14 04:36:38 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=08FD04AA961BDC77FB983F328334E3D7 -- C:\WINDOWS\system32\drivers\agp440.sys
[2004/08/03 23:07:42 | 000,042,368 | ---- | M] (Microsoft Corporation) MD5=2C428FA0C3E3A01ED93C9B2A27D8D4BB -- C:\WINDOWS\$NtServicePackUninstall$\agp440.sys
< MD5 for: ATAPI.SYS >[2004/08/05 04:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys
[2010/03/27 06:26:25 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp3.cab:atapi.sys
[2004/08/04 05:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\I386\sp2.cab:atapi.sys
[2004/08/04 01:05:44 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp2.cab:atapi.sys
[2010/03/27 06:26:25 | 023,852,652 | ---- | M] () .cab file -- C:\WINDOWS\ServicePackFiles\i386\sp3.cab:atapi.sys
[2008/04/14 04:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ERDNT\cache\atapi.sys
[2008/04/14 04:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\ServicePackFiles\i386\atapi.sys
[2008/04/14 04:40:30 | 000,096,512 | ---- | M] (Microsoft Corporation) MD5=9F3A2F5AA6875C72BF062C712CFA2674 -- C:\WINDOWS\system32\drivers\atapi.sys
[2004/08/04 05:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\$NtServicePackUninstall$\atapi.sys
[2004/08/04 05:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\ReinstallBackups\0000\DriverFiles\i386\atapi.sys
< MD5 for: EVENTLOG.DLL >[2008/04/14 10:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ERDNT\cache\eventlog.dll
[2008/04/14 10:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\ServicePackFiles\i386\eventlog.dll
[2008/04/14 10:11:53 | 000,056,320 | ---- | M] (Microsoft Corporation) MD5=6D4FEB43EE538FC5428CC7F0565AA656 -- C:\WINDOWS\system32\eventlog.dll
[2004/08/04 05:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\$NtServicePackUninstall$\eventlog.dll
< MD5 for: NETLOGON.DLL >[2008/04/14 10:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ERDNT\cache\netlogon.dll
[2008/04/14 10:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\ServicePackFiles\i386\netlogon.dll
[2008/04/14 10:12:01 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=1B7F071C51B77C272875C3A23E1E4550 -- C:\WINDOWS\system32\netlogon.dll
[2009/02/07 04:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$hf_mig$\KB968389\SP2QFE\netlogon.dll
[2009/02/07 04:46:09 | 000,408,064 | ---- | M] (Microsoft Corporation) MD5=6C476D33D82F1054849790181E8F7772 -- C:\WINDOWS\$hf_mig$\KB975467\SP2QFE\netlogon.dll
[2004/08/04 05:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\$NtServicePackUninstall$\netlogon.dll
< MD5 for: SCECLI.DLL >[2004/08/04 05:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\$NtServicePackUninstall$\scecli.dll
[2008/04/14 10:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ERDNT\cache\scecli.dll
[2008/04/14 10:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\ServicePackFiles\i386\scecli.dll
[2008/04/14 10:12:05 | 000,181,248 | ---- | M] (Microsoft Corporation) MD5=A86BB5E61BF3E39B62AB4C7E7085A084 -- C:\WINDOWS\system32\scecli.dll
< %systemroot%\*. /mp /s > < %systemroot%\system32\*.dll /lockedfiles >[2008/04/14 10:12:00 | 001,384,479 | ---- | M] (Microsoft Corporation)
Unable to obtain MD5 -- C:\WINDOWS\system32\msvbvm60.dll
[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]
< %systemroot%\Tasks\*.job /lockedfiles > < %systemroot%\system32\drivers\*.sys /lockedfiles > < %systemroot%\System32\config\*.sav >[2004/11/24 08:47:10 | 000,094,208 | ---- | M] () -- C:\WINDOWS\system32\config\default.sav
[2004/11/24 08:47:10 | 000,634,880 | ---- | M] () -- C:\WINDOWS\system32\config\software.sav
[2004/11/24 08:47:10 | 000,872,448 | ---- | M] () -- C:\WINDOWS\system32\config\system.sav
========== Alternate Data Streams ========== @Alternate Data Stream - 131 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:5C321E34
< End of report >
Extras.Txt LOG:
OTL Extras logfile created on: 6/04/2010 3:09:50 PM - Run 1
OTL by OldTimer - Version 3.2.1.0 Folder = C:\Documents and Settings\Compaq_Owner\Desktop
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000C09 | Country: Australia | Language: ENA | Date Format: d/MM/yyyy
1,023.00 Mb Total Physical Memory | 392.00 Mb Available Physical Memory | 38.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 75.00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 182.42 Gb Total Space | 119.30 Gb Free Space | 65.40% Space Free | Partition Type: NTFS
Drive D: | 3.87 Gb Total Space | 0.32 Gb Free Space | 8.33% Space Free | Partition Type: FAT32
Drive E: | 465.12 Mb Total Space | 0.00 Mb Free Space | 0.00% Space Free | Partition Type: CDFS
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: YOUR-8ABC512DA0
Current User Name: Compaq_Owner
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: On
Skip Microsoft Files: On
File Age = 14 Days
Output = Standard
Quick Scan
========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office10\msohtmed.exe" %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 1
"FirewallOverride" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
"DisableMonitoring" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DisableNotifications" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
"%ProgramFiles%\iTunes\iTunes.exe" = %ProgramFiles%\iTunes\iTunes.exe:*:enabled:iTunes -- (Apple Inc.)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\WINDOWS\system32\ZoneLabs\vsmon.exe" = C:\WINDOWS\system32\ZoneLabs\vsmon.exe:*:Enabled:TrueVector Service -- (Check Point Software Technologies LTD)
"C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.)
========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{02E89EFC-7B07-4D5A-AA03-9EC0902914EE}" = VC 9.0 Runtime
"{055A0044-64A6-4248-A026-9745C1E9E159}" = Microsoft Encarta Encyclopedia Standard 2005
"{07287123-B8AC-41CE-8346-3D777245C35B}" = Bonjour
"{0C66761E-497A-4BE3-AE0D-8EC30FC9A9AA}" = PC-Doctor for Windows
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP270_series" = Canon MP270 series MP Drivers
"{1451DE6B-ABE1-4F62-BE9A-B363A17588A2}" = QuickTime
"{2FCE4FC5-6930-40E7-A4F1-F862207424EF}" = InterVideo WinDVD Creator
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{3F262ADC-5AD2-48E5-A586-44315E04A9E2}" = Microsoft Picture It! Library 10
"{3FA365DF-2D68-45ED-8F83-8C8A33E65143}" = Apple Application Support
"{416D80BA-6F6D-4672-B7CF-F54DA2F80B44}" = Microsoft Works
"{42756145-9997-4D28-809B-8756BFD00106}" = Microsoft Photo Premium 10
"{63E949F6-03BC-5C40-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 CRT.Policy (x86) WinSXS MSM
"{6956856F-B6B3-4BE0-BA0B-8F495BE32033}" = Apple Software Update
"{6B350CA4-0031-0002-3757-34999AD85AEC}" = InterVideo WinDVD Creator
"{7148F0A8-6813-11D6-A77B-00B0D0142030}" = Java 2 Runtime Environment, SE v1.4.2_03
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{7B4A5C13-069F-4AFE-AE57-C497B4E33C7E}" = Call of Duty® 2 Patch 1.3
"{81063354-9060-42B2-A000-1EBE96778AA9}" = iTunes
"{911B0409-6000-11D3-8CFE-0050048383C9}" = Microsoft Word 2002
"{91810AFC-A4F8-4EBA-A5AA-B198BBC81144}" = InterVideo WinDVD Player
"{98CB24AD-52FB-DB5F-FF1F-C8B3B9A1E18E}" = Visual C++ 8.0 CRT (x86) WinSXS MSM
"{9F7FC79B-3059-4264-9450-39EB368E3225}" = Microsoft Digital Image Library 9 - Blocker
"{A06275F4-324B-4E85-95E6-87B2CD729401}" = Windows Defender
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{AADEA55D-C834-4BCB-98A3-4B8D1C18F4EE}" = Apple Mobile Device Support
"{AC76BA86-0000-0000-0000-6028747ADE01}" = Adobe Acrobat - Reader 6.0.2 Update
"{AC76BA86-7AD7-1033-7B44-A00000000001}" = Adobe Reader 6.0.1
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{C3F058C0-A21C-452D-8D99-95B1A45F417D}" = InterVideo DiscLabel
"{CB0888EE-96D8-4713-84DC-36462C33AEB4}" = Bazooka Scanner
"{CB2F7EDD-9D1F-43C1-90FC-4F52EAE172A1}" = Microsoft .NET Framework 1.1
"{CB54ABA8-D67F-47AD-A76C-2631BADA9FE5}" = Microsoft Works Suite Add-in for Microsoft Word
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty® 2
"{DB518BA6-CB74-4EB6-9ABD-880B6D6E1F38}" = HpSdpAppCoreApp
"{DE1AF137-C455-494A-A817-EFE44BCCFDEE}" = Works Upgrade
"{E0343A4C-2FFD-4CCB-B0EB-5DE9F0E2A083}" = LS_HSI
"{F0137EB8-1B6E-480B-8676-CE8A293F9FB8}" = SpyCatcher Express 5.1.2
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"Agere Systems Soft Modem" = Agere Systems PCI Soft Modem
"CANONIJPLM100" = Canon Inkjet Printer/Scanner/Fax Extended Survey Program
"CanonMyPrinter" = Canon Utilities My Printer
"CanonSolutionMenu" = Canon Utilities Solution Menu
"CCleaner" = CCleaner
"Easy-PhotoPrint EX" = Canon Utilities Easy-PhotoPrint EX
"Easy-WebPrint EX" = Canon Easy-WebPrint EX
"Help and Support Additions" = Help and Support Additions
"ie8" = Windows Internet Explorer 8
"InstallShield_{0C66761E-497A-4BE3-AE0D-8EC30FC9A9AA}" = PC-Doctor for Windows
"InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}" = Call of Duty® 2
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware
"Microsoft .NET Framework 1.1 (1033)" = Microsoft .NET Framework 1.1
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Mozilla Firefox (3.6.3)" = Mozilla Firefox (3.6.3)
"MP Navigator EX 3.0" = Canon MP Navigator EX 3.0
"NVIDIA Drivers" = NVIDIA Drivers
"PictureItPrem_v10" = Microsoft Photo Premium 10
"PS2" = PS2
"Python 2.2.3" = Python 2.2.3
"pywin32-py2.2" = Python 2.2 pywin32 extensions (build 203)
"RealPlayer 6.0" = RealPlayer
"Revo Uninstaller" = Revo Uninstaller 1.85
"Shockwave" = Shockwave
"SpywareBlaster_is1" = SpywareBlaster 4.2
"SpywareGuard_is1" = SpywareGuard v2.2
"Windows XP Service Pack" = Windows XP Service Pack 3
"WinPatrol" = WinPatrol 2009
"Works2005Setup" = Microsoft Works 2005 Setup Launcher
"ZoneAlarm Security Suite" = ZoneAlarm Security Suite
"ZoneAlarm Toolbar" = ZoneAlarm Toolbar
========== Last 10 Event Log Errors ========== [ Application Events ]
Error - 28/03/2010 8:04:50 AM | Computer Name = YOUR-8ABC512DA0 | Source = crypt32 | ID = 131080
Description = Failed auto update retrieval of third-party root list sequence number
from: <http://www.download.windowsupdate.com/msdownload/update/v3/static/trustedr/en/authrootseq.txt>
with error: This operation returned because the timeout period expired.
Error - 28/03/2010 1:02:20 PM | Computer Name = YOUR-8ABC512DA0 | Source = MsiInstaller | ID = 11704
Description = Product: RGB9RAST -- Error 1704. An installation for Microsoft .NET
Framework 1.1 is currently suspended. You must undo the changes made by that installation
to continue. Do you want to undo those changes?
Error - 29/03/2010 10:15:33 PM | Computer Name = YOUR-8ABC512DA0 | Source = SecurityCenter | ID = 1802
Description = The Windows Security Center Service was unable to establish event
queries with WMI to monitor third party AntiVirus and Firewall.
Error - 29/03/2010 10:23:57 PM | Computer Name = YOUR-8ABC512DA0 | Source = nview_info | ID = 11141121
Description =
Error - 29/03/2010 10:24:03 PM | Computer Name = YOUR-8ABC512DA0 | Source = nview_info | ID = 11141121
Description =
Error - 29/03/2010 10:24:08 PM | Computer Name = YOUR-8ABC512DA0 | Source = nview_info | ID = 11141121
Description =
Error - 31/03/2010 7:05:07 PM | Computer Name = YOUR-8ABC512DA0 | Source = Application Error | ID = 1000
Description = Faulting application explorer.exe, version 6.0.2900.5512, faulting
module shlwapi.dll, version 6.0.2900.5912, fault address 0x0000673f.
Error - 31/03/2010 7:05:14 PM | Computer Name = YOUR-8ABC512DA0 | Source = Application Error | ID = 1001
Description = Fault bucket 1706843156.
Error - 2/04/2010 5:25:04 AM | Computer Name = YOUR-8ABC512DA0 | Source = Application Error | ID = 1000
Description = Faulting application cod2mp_s.exe, version 0.0.0.0, faulting module
cod2mp_s.exe, version 0.0.0.0, fault address 0x0008d1a5.
Error - 2/04/2010 5:31:26 AM | Computer Name = YOUR-8ABC512DA0 | Source = Application Error | ID = 1000
Description = Faulting application cod2mp_s.exe, version 0.0.0.0, faulting module
cod2mp_s.exe, version 0.0.0.0, fault address 0x0008d1a5.
[ System Events ]
Error - 29/03/2010 9:56:57 PM | Computer Name = YOUR-8ABC512DA0 | Source = System Error | ID = 1003
Description = Error code 0000004e, parameter1 00000007, parameter2 000340d7, parameter3
00000001, parameter4 00000000.
Error - 29/03/2010 9:59:29 PM | Computer Name = YOUR-8ABC512DA0 | Source = Service Control Manager | ID = 7000
Description = The SASDIFSV service failed to start due to the following error: %%183
Error - 29/03/2010 10:27:16 PM | Computer Name = YOUR-8ABC512DA0 | Source = Service Control Manager | ID = 7023
Description = The IPSEC Services service terminated with the following error: %%2148073497
Error - 29/03/2010 10:27:18 PM | Computer Name = YOUR-8ABC512DA0 | Source = Service Control Manager | ID = 7023
Description = The Network Location Awareness (NLA) service terminated with the following
error: %%6
Error - 29/03/2010 11:22:04 PM | Computer Name = YOUR-8ABC512DA0 | Source = System Error | ID = 1003
Description = Error code 0000004e, parameter1 00000007, parameter2 0003c7f2, parameter3
00000001, parameter4 00000000.
Error - 31/03/2010 1:32:00 AM | Computer Name = YOUR-8ABC512DA0 | Source = Dhcp | ID = 1002
Description = The IP address lease 10.1.1.3 for the Network Card with network address
0011D8B35945 has been denied by the DHCP server 10.1.1.1 (The DHCP Server sent a
DHCPNACK message).
Error - 31/03/2010 1:18:20 PM | Computer Name = YOUR-8ABC512DA0 | Source = NLA | ID = 0
Description =
Error - 31/03/2010 11:25:07 PM | Computer Name = YOUR-8ABC512DA0 | Source = sr | ID = 1
Description = The System Restore filter encountered the unexpected error '0xC0000001'
while processing the file '' on the volume 'HarddiskVolume2'. It has stopped monitoring
the volume.
Error - 2/04/2010 8:59:11 PM | Computer Name = YOUR-8ABC512DA0 | Source = Dhcp | ID = 1002
Description = The IP address lease 10.1.1.3 for the Network Card with network address
0011D8B35945 has been denied by the DHCP server 10.1.1.1 (The DHCP Server sent a
DHCPNACK message).
Error - 4/04/2010 6:43:13 PM | Computer Name = YOUR-8ABC512DA0 | Source = Dhcp | ID = 1002
Description = The IP address lease 10.1.1.3 for the Network Card with network address
0011D8B35945 has been denied by the DHCP server 10.1.1.1 (The DHCP Server sent a
DHCPNACK message).
< End of report >
Edited by ash1, 06 April 2010 - 12:47 AM.