Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Random Browser Windows open on their own and links take me to weird websites


  • This topic is locked This topic is locked
30 replies to this topic

#1 APPleas

APPleas

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:29 AM

Posted 20 April 2012 - 11:10 PM

.
DDS (Ver_2011-08-26.01) - NTFSx86
Internet Explorer: 8.0.7601.17514 BrowserJavaVersion: 1.6.0_30
Run by bjs at 20:24:03 on 2012-04-20
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3454.1651 [GMT -7:00]
.
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\system32\Ati2evxx.exe
C:\Windows\System32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\Windows\System32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Windows\system32\rundll32.exe
C:\Windows\system32\mfevtps.exe
C:\Program Files\Common Files\NeatReceipts\DB Controller\NeatReceiptsDBController.exe
C:\Toshiba\IVP\ISM\pinger.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\Toshiba\IVP\swupdate\swupdtmr.exe
C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
C:\Windows\system32\TODDSrv.exe
C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
\\.\globalroot\SystemRoot\system32\svchost.exe -k netsvcs
C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
C:\Program Files\McAfee Online Backup\MOBKbackup.exe
C:\Program Files\McAfee Online Backup\MOBKbackup.exe
C:\Windows\system32\SearchIndexer.exe
C:\Windows\system32\taskhost.exe
C:\Program Files\McAfee Online Backup\MOBKbackup.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\Toshiba\FlashCards\TCrdMain.exe
C:\Program Files\Camera Assistant Software for Toshiba\traybar.exe
C:\Program Files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe
.
============== Pseudo HJT Report ===============
.
uDefault_Page_URL = hxxp://www.toshibadirect.com/dpdstart
uStart Page = hxxp://www.blackle.com/
mDefault_Page_URL = hxxp://www.toshibadirect.com/dpdstart
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://search.yahoo.com/search?fr=mcafee&p=%s
uURLSearchHooks: UrlSearchHook Class: {00000000-6e41-4fd3-8538-502f5495e5fc} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelper.dll
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: SSVHelper Class: {761497bb-d6f0-462c-b6eb-d4daf1d92d43} - c:\program files\java\jre6\bin\ssv.dll
BHO: scriptproxy: {7db2d5a0-7241-4e79-b68d-6309f01c5231} - c:\program files\common files\mcafee\systemcore\ScriptSn.20111227010303.dll
BHO: AcroIEToolbarHelper Class: {ae7cd045-e861-484f-8273-0445ee161910} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
BHO: Skype Browser Helper: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: McAfee SiteAdvisor BHO: {b164e929-a1b6-4a06-b104-2cd0e90a88ff} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
BHO: Google Dictionary Compression sdch: {c84d72fe-e17d-4195-bb24-76c02e2e7c4e} - c:\program files\google\google toolbar\component\fastsearch_A8904FB862BD9564.dll
BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
TB: Adobe PDF: {47833539-d0c5-4125-9fa8-0819e2eaac93} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
TB: McAfee SiteAdvisor Toolbar: {0ebbbe48-bad4-4b4c-8e5a-516abecae064} - c:\progra~1\mcafee\sitead~1\mcieplg.dll
TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
EB: Adobe PDF: {182ec0be-5110-49c8-a062-beb1d02a220b} - c:\program files\adobe\acrobat 6.0\acrobat\AcroIEFavClient.dll
uRun: [ehTray.exe] c:\windows\ehome\ehTray.exe
uRun: [TOSCDSPD] c:\program files\toshiba\toscdspd\TOSCDSPD.exe
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
mRun: [RtHDVCpl] RtHDVCpl.exe
mRun: [Skytel] Skytel.exe
mRun: [00TCrdMain] c:\program files\toshiba\flashcards\TCrdMain.exe
mRun: [Camera Assistant Software] "c:\program files\camera assistant software for toshiba\traybar.exe" /start
mRun: [eBook Library Launcher] c:\program files\sony\reader\data\bin\launcher\Reader Library Launcher.exe
mRun: [Google Desktop Search] "c:\program files\google\google desktop search\GoogleDesktop.exe" /startup
mRun: [HostManager] c:\program files\common files\aol\1244832265\ee\AOLSoftware.exe
mRun: [HSON] %ProgramFiles%\TOSHIBA\TBS\HSON.exe
mRun: [ITSecMng] %ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START
mRun: [PCMAgent] "c:\program files\cyberlink\powercinema for toshiba\PCMAgent.exe"
mRun: [SmoothView] %ProgramFiles%\Toshiba\SmoothView\SmoothView.exe
mRun: [TPwrMain] %ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE
mRun: [CLMLServer] "c:\program files\cyberlink\powercinema for toshiba\kernel\clml\CLMLSvc.exe"
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [Logitech Download Assistant] c:\windows\system32\rundll32.exe c:\windows\system32\LogiLDA.dll,LogiFetch
mRun: [mcui_exe] "c:\program files\mcafee.com\agent\mcagent.exe" /runkey
mRun: [McPvTray_exe] "c:\program files\mcafee\mat\McPvTray.exe"
mRun: [<NO NAME>]
mRun: [ApnUpdater] "c:\program files\ask.com\updater\Updater.exe"
mRun: [APSDaemon] "c:\program files\common files\apple\apple application support\APSDaemon.exe"
mRun: [SunJavaUpdateSched] "c:\program files\java\jre6\bin\jusched.exe"
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
dRun: [dplaysvr] c:\windows\system32\config\systemprofile\appdata\local\dplaysvr.exe
mPolicies-explorer: BindDirectlyToPropertySetStorage = 0 (0x0)
mPolicies-system: ConsentPromptBehaviorAdmin = 5 (0x5)
mPolicies-system: ConsentPromptBehaviorUser = 3 (0x3)
mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
IE: E&xport to Microsoft Excel - c:\progra~1\micros~3\office12\EXCEL.EXE/3000
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
LSP: mswsock.dll
Trusted Zone: intuit.com\ttlc
DPF: {75AA409D-05F9-4F27-BD53-C7339D4B1D0A} - hxxp://int.salient.net/dwa85W.cab
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
TCP: DhcpNameServer = 75.75.75.75 75.75.76.76
TCP: Interfaces\{6D4EF603-38D0-471C-A27D-D77B94E18039} : DhcpNameServer = 68.87.76.182 68.87.78.134
TCP: Interfaces\{FB81B923-A8FD-48E8-857E-7A4F96349432} : DhcpNameServer = 75.75.75.75 75.75.76.76
TCP: Interfaces\{FB81B923-A8FD-48E8-857E-7A4F96349432}\C696E6B6379737 : DhcpNameServer = 68.87.76.182 68.87.78.134
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\progra~1\mcafee\msc\McSnIePl.dll
Filter: x-sdch - {B1759355-3EEC-4C1E-B0F1-B719FE26E377} -
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\progra~1\mcafee\sitead~1\McIEPlg.dll
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
.
================= FIREFOX ===================
.
FF - ProfilePath - c:\users\bjs\appdata\roaming\mozilla\firefox\profiles\w06ndksw.default\
FF - prefs.js: browser.search.selectedEngine - Secure Search
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=mcafee&p=
FF - plugin: c:\progra~1\mcafee\msc\npMcSnFFPl.dll
FF - plugin: c:\program files\adobe\reader 9.0\reader\air\nppdf32.dll
FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
FF - plugin: c:\program files\mcafee\siteadvisor\NPMcFFPlg32.dll
FF - plugin: c:\program files\microsoft silverlight\4.1.10111.0\npctrlui.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\sony\reader\data\bin\npebldetectmoz.dll
FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
.
============= SERVICES / DRIVERS ===============
.
R? avgfwsrv;K56
R? b57nd60x;Broadcom NetXtreme Gigabit Ethernet - NDIS 6.0
R? cfwids;McAfee Inc. cfwids
R? clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86
R? DasBoot;Panda AntiMalware Support
R? DasBootF;Panda AntiMalware Support MF
R? jswpsapi;Jumpstart Wifi Protected Setup
R? jswpslwf;JumpStart Wireless Filter Driver
R? McMPFSvc;McAfee Personal Firewall Service
R? mcpromgr;Yukonwxp
R? mcsysmon;S616obex
R? mferkdet;McAfee Inc. mferkdet
R? mirrorv3;Symdns
R? MSSQL$NR2007;SQL Server (NR2007)
R? SBSDWSCService;SBSD Security Center Service
R? SkypeUpdate;Skype Updater
R? TsUsbFlt;TsUsbFlt
R? vet-rec;Mqdmserd
R? WatAdminSvc;Windows Activation Technologies Service
R? WDC_SAM;WD SCSI Pass Thru driver
R? webrootenterpriseclientservice;Tosrfusb
R? ZDCNDIS5;Tmlisten
R? zipehreg;zipehreg
S? ConfigFree Service;ConfigFree Service
S? FwLnk;FwLnk Driver
S? McAfee SiteAdvisor Service;McAfee SiteAdvisor Service
S? McNaiAnn;McAfee VirusScan Announcer
S? McProxy;McAfee Proxy Service
S? McPvDrv;McPvDrv Driver
S? McShield;McAfee McShield
S? mfeavfk;McAfee Inc. mfeavfk
S? mfebopk;McAfee Inc. mfebopk
S? mfefire;McAfee Firewall Core Service
S? mfefirek;McAfee Inc. mfefirek
S? mfehidk;McAfee Inc. mfehidk
S? mfenlfk;McAfee NDIS Light Filter
S? mfevtp;McAfee Validation Trust Protection Service
S? mfewfpk;McAfee Inc. mfewfpk
S? MOBKbackup;McAfee Online Backup
S? MOBKFilter;MOBKFilter
S? NeatReceipts Database Controller;NeatReceipts Database Controller
S? TOSHIBA SMART Log Service;TOSHIBA SMART Log Service
S? vwififlt;Virtual WiFi Filter Driver
S? WDDMService;WD SmartWare Drive Manager
S? WDSmartWareBackgroundService;WD SmartWare Background Service
.
=============== Created Last 30 ================
.
2012-04-15 17:05:42 338944 ----a-w- c:\windows\system32\drivers\20120415100542.afd.sys
2012-04-15 16:53:09 -------- d-----w- c:\windows\system32\DBBK
2012-04-15 16:20:57 14664 ----a-w- c:\windows\stinger.sys
2012-04-15 16:18:50 -------- d-----w- c:\program files\stinger
2012-04-13 17:13:54 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
2012-04-13 17:13:54 626688 ----a-w- c:\program files\mozilla firefox\msvcr80.dll
2012-04-13 17:13:54 548864 ----a-w- c:\program files\mozilla firefox\msvcp80.dll
2012-04-13 17:13:54 479232 ----a-w- c:\program files\mozilla firefox\msvcm80.dll
2012-04-13 17:13:53 592824 ----a-w- c:\program files\mozilla firefox\gkmedias.dll
2012-04-13 17:13:53 44472 ----a-w- c:\program files\mozilla firefox\mozglue.dll
2012-04-11 10:03:56 5120 ----a-w- c:\windows\system32\wmi.dll
2012-04-11 10:03:56 19824 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-04-11 10:03:56 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-04-11 10:03:56 159232 ----a-w- c:\windows\system32\imagehlp.dll
2012-04-11 10:02:22 3968368 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-04-11 10:02:21 3913072 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-08 22:03:55 -------- d-----w- c:\users\bjs\appdata\roaming\Malwarebytes
2012-04-08 22:03:30 -------- d-----w- c:\programdata\Malwarebytes
2012-04-08 22:03:25 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-08 17:40:39 0 --sha-w- c:\windows\system32\dds_trash_log.cmd
2012-04-01 03:52:19 -------- d-----w- c:\program files\iPod
2012-04-01 03:52:17 -------- d-----w- c:\program files\iTunes
2012-03-26 15:41:34 103864 ----a-w- c:\program files\mozilla firefox\plugins\nppdf32.dll
2012-03-26 15:41:34 103864 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll
.
==================== Find3M ====================
.
2012-04-15 16:19:29 159608 ----a-w- c:\windows\system32\mfevtps.exe
2012-04-15 16:19:28 87656 ----a-w- c:\windows\system32\drivers\mferkdet.sys
2012-04-15 16:19:28 475704 ----a-w- c:\windows\system32\drivers\mfehidk.sys
2012-03-03 12:51:50 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-28 05:38:52 981504 ----a-w- c:\windows\system32\wininet.dll
2012-02-28 03:52:27 1638912 ----a-w- c:\windows\system32\mshtml.tlb
2012-02-17 05:34:22 826880 ----a-w- c:\windows\system32\rdpcore.dll
2012-02-17 04:14:08 183808 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:13:22 24576 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-02-10 05:38:43 1077248 ----a-w- c:\windows\system32\DWrite.dll
2012-02-03 03:54:27 2343424 ----a-w- c:\windows\system32\win32k.sys
2012-01-25 05:32:35 58880 ----a-w- c:\windows\system32\rdpwsx.dll
2012-01-25 05:32:34 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-01-25 05:27:51 8192 ----a-w- c:\windows\system32\rdrmemptylst.exe
.
============= FINISH: 20:27:32.81 ===============

Attached Files


Edited by APPleas, 21 April 2012 - 12:06 AM.


BC AdBot (Login to Remove)

 


#2 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:04:29 PM

Posted 21 April 2012 - 05:22 AM

Hello APPleas ! Welcome to BleepingComputer Forums! :welcome:

My name is Georgi and and I will be helping you with your computer problems.

Before we begin, please note the following:
  • I will working be on your Malware issues, this may or may not, solve other issues you have with your machine.
  • The logs can take some time to research, so please be patient with me.
  • Stay with the topic until I tell you that your system is clean. Missing symptoms does not mean that everything is okay.
  • Instructions that I give are for your system only!
  • Please do not run any tools until requested ! The reason for this is so I know what is going on with the machine at any time. Some programs can interfere with others and hamper the recovery process.
  • Please perform all steps in the order received. If you can't understand something don't hesitate to ask.
  • Again I would like to remind you to make no further changes to your computer unless I direct you to do so. I will not help you if you do not follow my instructions.





IMPORTANT NOTE: One or more of the identified infections is related to the rootkit ZeroAccess. Rootkits, backdoor Trojans, Botnets, and IRCBots are very dangerous because they compromise system integrity by making changes that allow it to be used be the attacker for malicious purposes. Rootkits are used be Trojans to conceal its presence (hide from view) in order to prevent detection of an attacker's software and make removal more difficult. Many rootkits can hook into the Windows 32-bit kernel, and patch several APIs to hide new registry keys and files they install. They can disable your anti-virus and security tools to prevent detection and removal. Remote attackers use backdoors as a means of accessing and taking control of a computer that bepasses security mechanisms. This type of exploit allows them to steal sensitive information like passwords, personal and financial data which is send back to the hacker. To learn more about these types of infections, you can refer to:If your computer was used for online banking, has credit card information or other sensitive data on it, you should stay disconnected from the Internet until your system is fully cleaned. All passwords should be changed immediately to include those used for banking, email, eBay, paypal and online forums. You should consider them to be compromised and change each password using a clean computer, not the infected one. If not, an attacker may get the new passwords and transaction information. If using a router, you need to reset it with a strong logon/password so the malware cannot gain control before connect again. Banking and credit card institutions should be notified of the possible security breach. Because your computer was compromised please read:Although the infection has been identified and may be removed, your PC has likely been compromised and there is no way to be sure the computer can ever be trusted again. It is dangerous and incorrect to assume the computer is secure even if the malware appears to have been removed. In some instances an infection may have caused so much damage to your system that it cannot be completely cleaned or repaired so you can never be sure that you have completely removed a rootkit. The malware may leave so many remnants behind that security tools cannot find them. Tools that claim to be able to remove rootkits cannot guarantee that all traces of it will be removed. Many experts in the security community believe that once infected with this type of malware, the best course of action is to wipe the drive clean, reformat and reinstall the OS. Please read:




We can still clean this machine but I can't guarantee that it will be 100% secure afterwards. If you decide to continue please do this:


Please download ComboFix from the link below:

Combofix

Save it to your Desktop <-- Important!!!

  • Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools. Please refer to this link for instructions.

  • Double click it & follow the prompts.
  • If you receive a UAC prompt asking if you want to continue running the program, you should press the Continue button.
  • When finished, it will produce a log for you.
  • Please include the C:\ComboFix.txt in your next reply.
  • Note: After running Combofix, you may receive an error about "illegal operation on a registry key that has been marked for deletion." If you receive this error, please reboot and it should disappear.
  • If you no longer have access to your Internet connection after running ComboFix, please reboot to restore it. If that does not restore the connection, then follow the instructions for Manually restoring the Internet connection provided in the "How to Guide" you printed out earlier.



-- Do not touch your mouse/keyboard until the ComboFix scan has completed, as this may cause the process to stall or the computer to lock.




Regards,
Georgi

cXfZ4wS.png


#3 APPleas

APPleas
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:29 AM

Posted 21 April 2012 - 11:58 AM

Hi - THANK YOU SO MUCH FOR YOUR HELP!!! Here is the txt from the file

ComboFix 12-04-20.03 - bjs 04/21/2012 9:18.1.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3454.2843 [GMT -7:00]
Running from: c:\users\bjs\Desktop\ComboFix.exe
AV: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
SP: McAfee Anti-Virus and Anti-Spyware *Enabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Resident AV is active
.
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\ZvGboQOPpzWeEu
c:\windows\$NtUninstallKB26711$\1199583191\@
c:\windows\$NtUninstallKB26711$\1199583191\cfg.ini
c:\windows\$NtUninstallKB26711$\1199583191\Desktop.ini
c:\windows\$NtUninstallKB26711$\1199583191\L\tcioixui
c:\windows\$NtUninstallKB26711$\1199583191\oemid
c:\windows\$NtUninstallKB26711$\1199583191\U\00000001.@
c:\windows\$NtUninstallKB26711$\1199583191\U\00000002.@
c:\windows\$NtUninstallKB26711$\1199583191\U\00000004.@
c:\windows\$NtUninstallKB26711$\1199583191\U\80000000.@
c:\windows\$NtUninstallKB26711$\1199583191\U\80000004.@
c:\windows\$NtUninstallKB26711$\1199583191\U\80000032.@
c:\windows\$NtUninstallKB26711$\1199583191\version
c:\windows\$NtUninstallKB26711$\791060287
c:\windows\system32\dds_trash_log.cmd
c:\windows\system32\pclepci.dll
.
Infected copy of c:\windows\system32\drivers\afd.sys was found and disinfected
Restored copy from - The cat found it :)
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Service_raysat3_4_6_18server
-------\Service_wg3n
.
.
((((((((((((((((((((((((( Files Created from 2012-03-21 to 2012-04-21 )))))))))))))))))))))))))))))))
.
.
2012-04-15 17:05 . 2012-04-15 16:55 338944 ----a-w- c:\windows\system32\drivers\20120415100542.afd.sys
2012-04-15 16:53 . 2012-04-15 17:05 -------- d-----w- c:\windows\system32\DBBK
2012-04-15 16:20 . 2012-04-15 16:20 14664 ----a-w- c:\windows\stinger.sys
2012-04-15 16:18 . 2012-04-15 16:42 -------- d-----w- c:\program files\stinger
2012-04-13 17:13 . 2012-03-13 04:39 97208 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll
2012-04-13 17:13 . 2012-03-13 04:38 626688 ----a-w- c:\program files\Mozilla Firefox\msvcr80.dll
2012-04-13 17:13 . 2012-03-13 04:38 548864 ----a-w- c:\program files\Mozilla Firefox\msvcp80.dll
2012-04-13 17:13 . 2012-03-13 04:38 479232 ----a-w- c:\program files\Mozilla Firefox\msvcm80.dll
2012-04-13 17:13 . 2012-03-13 04:39 44472 ----a-w- c:\program files\Mozilla Firefox\mozglue.dll
2012-04-13 17:13 . 2012-03-13 04:39 592824 ----a-w- c:\program files\Mozilla Firefox\gkmedias.dll
2012-04-11 10:03 . 2012-03-01 05:46 19824 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-04-11 10:03 . 2012-03-01 05:37 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-04-11 10:03 . 2012-03-01 05:33 159232 ----a-w- c:\windows\system32\imagehlp.dll
2012-04-11 10:03 . 2012-03-01 05:29 5120 ----a-w- c:\windows\system32\wmi.dll
2012-04-11 10:02 . 2012-03-06 05:59 3968368 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-04-11 10:02 . 2012-03-06 05:59 3913072 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-08 22:03 . 2012-04-08 22:03 -------- d-----w- c:\users\bjs\AppData\Roaming\Malwarebytes
2012-04-08 22:03 . 2012-04-08 22:03 -------- d-----w- c:\programdata\Malwarebytes
2012-04-08 22:03 . 2011-12-10 22:24 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-01 03:52 . 2012-04-01 03:52 -------- d-----w- c:\program files\iPod
2012-04-01 03:52 . 2012-04-01 03:54 -------- d-----w- c:\program files\iTunes
2012-03-26 15:41 . 2012-03-26 15:41 103864 ----a-w- c:\program files\Mozilla Firefox\plugins\nppdf32.dll
2012-03-26 15:41 . 2012-03-26 15:41 103864 ----a-w- c:\program files\Internet Explorer\Plugins\nppdf32.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-15 16:19 . 2011-05-29 15:33 159608 ----a-w- c:\windows\system32\mfevtps.exe
2012-04-15 16:19 . 2011-05-29 15:43 87656 ----a-w- c:\windows\system32\drivers\mferkdet.sys
2012-04-15 16:19 . 2011-03-13 18:20 475704 ----a-w- c:\windows\system32\drivers\mfehidk.sys
2012-03-03 12:51 . 2011-07-03 07:00 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-17 05:34 . 2012-03-14 07:05 826880 ----a-w- c:\windows\system32\rdpcore.dll
2012-02-17 04:14 . 2012-03-14 07:05 183808 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:13 . 2012-03-14 07:05 24576 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-02-10 05:38 . 2012-03-14 07:06 1077248 ----a-w- c:\windows\system32\DWrite.dll
2012-02-03 03:54 . 2012-03-14 07:06 2343424 ----a-w- c:\windows\system32\win32k.sys
2012-01-25 05:32 . 2012-03-14 07:05 58880 ----a-w- c:\windows\system32\rdpwsx.dll
2012-01-25 05:32 . 2012-03-14 07:05 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-01-25 05:27 . 2012-03-14 07:05 8192 ----a-w- c:\windows\system32\rdrmemptylst.exe
2012-03-13 04:39 . 2012-04-13 17:13 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-07-08 1491920]
.
[HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2011-07-08 00:53 1491920 ----a-w- c:\program files\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-07-08 1491920]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files\Ask.com\GenericAskToolbar.dll" [2011-07-08 1491920]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK]
@="{3c3f3c1a-9153-7c05-f938-622e7003894d}"
[HKEY_CLASSES_ROOT\CLSID\{3c3f3c1a-9153-7c05-f938-622e7003894d}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK2]
@="{e6ea1d7d-144e-b977-98c4-84c53c1a69d0}"
[HKEY_CLASSES_ROOT\CLSID\{e6ea1d7d-144e-b977-98c4-84c53c1a69d0}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK3]
@="{b4caf489-1eec-c617-49ad-8d7088598c06}"
[HKEY_CLASSES_ROOT\CLSID\{b4caf489-1eec-c617-49ad-8d7088598c06}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2010-11-20 144384]
"TOSCDSPD"="c:\program files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe" [2008-01-30 430080]
"SpybotSD TeaTimer"="c:\program files\Spybot - Search & Destroy\TeaTimer.exe" [2009-01-26 2144088]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-07 1029416]
"RtHDVCpl"="RtHDVCpl.exe" [2008-01-30 4911104]
"Skytel"="Skytel.exe" [2007-11-21 1826816]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2008-01-22 712704]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2007-10-26 413696]
"eBook Library Launcher"="c:\program files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe" [2009-11-24 906640]
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2008-02-13 1862144]
"HostManager"="c:\program files\Common Files\AOL\1244832265\ee\AOLSoftware.exe" [2008-06-24 41824]
"HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2007-11-01 54608]
"ITSecMng"="c:\program files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2007-09-29 75136]
"PCMAgent"="c:\program files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe" [2009-04-11 143360]
"SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2007-06-16 448080]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2008-01-17 431456]
"CLMLServer"="c:\program files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe" [2009-04-11 200704]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-30 421888]
"Logitech Download Assistant"="c:\windows\System32\LogiLDA.dll" [2010-11-04 1246544]
"mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2011-11-23 1318816]
"McPvTray_exe"="c:\program files\McAfee\MAT\McPvTray.exe" [2011-04-08 419904]
"ApnUpdater"="c:\program files\Ask.com\Updater\Updater.exe" [2011-07-08 399312]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-21 59240]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-03-27 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-27 421736]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\setup\disabledrunkeys]
"StartCCC"=c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
R0 DasBoot;Panda AntiMalware Support;c:\windows\\SystemRoot\system32\drivers\DasBoot.SYS [x]
R0 DasBootF;Panda AntiMalware Support MF;c:\windows\\SystemRoot\system32\drivers\DasBootF.SYS [x]
R0 zipehreg;zipehreg;c:\windows\system32\DRIVERS\zipehreg.sys [x]
R1 jswpslwf;JumpStart Wireless Filter Driver;c:\windows\system32\DRIVERS\jswpslwf.sys [2007-09-01 20352]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2012-02-29 158856]
R3 jswpsapi;Jumpstart Wifi Protected Setup;c:\program files\Jumpstart\jswpsapi.exe [2007-10-30 937984]
R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2012-04-15 87656]
R3 MSSQL$NR2007;SQL Server (NR2007);c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-11 29293408]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [2009-06-25 47360]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-07-11 1343400]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys [2008-05-07 11520]
S0 McPvDrv;McPvDrv Driver;c:\windows\system32\drivers\McPvDrv.sys [2011-04-11 64048]
S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2011-10-15 165680]
S1 mfenlfk;McAfee NDIS Light Filter;c:\windows\system32\DRIVERS\mfenlfk.sys [2011-10-15 64880]
S1 MOBKFilter;MOBKFilter;c:\windows\system32\DRIVERS\MOBK.sys [2010-04-14 54776]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 ConfigFree Service;ConfigFree Service;c:\program files\TOSHIBA\ConfigFree\CFSvcs.exe [2007-12-25 40960]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [2011-10-18 160608]
S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2012-04-15 159608]
S2 MOBKbackup;McAfee Online Backup;c:\program files\McAfee Online Backup\MOBKbackup.exe [2010-04-14 229688]
S2 NeatReceipts Database Controller;NeatReceipts Database Controller;c:\program files\Common Files\NeatReceipts\DB Controller\NeatReceiptsDBController.exe [2008-02-05 228480]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [2007-12-04 126976]
S2 WDDMService;WD SmartWare Drive Manager;c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [2009-10-14 98304]
S2 WDSmartWareBackgroundService;WD SmartWare Background Service;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [2009-06-16 20480]
S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2011-10-15 57600]
S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [2006-11-20 7168]
S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2011-10-15 338176]
.
.
--- Other Services/Drivers In Memory ---
.
*Deregistered* - mfeavfk01
.
NETSVCS REQUIRES REPAIRS - current entries shown
AeLookupSvc
CertPropSvc
SCPolicySvc
lanmanserver
gpsvc
IKEEXT
AudioSrv
FastUserSwitchingCompatibility
Ias
Irmon
Nla
Ntmssvc
NWCWorkstation
Nwsapagent
Rasauto
Rasman
Remoteaccess
SENS
Sharedaccess
SRService
Tapisrv
Wmi
WmdmPmSp
dmload
LVCap138
webrootenterpriseclientservice
iAimFP5
Atmuni
fcdabus
CBTNDIS5
Cinemsup
tandpl
cwcspud
ypcservice
NtMtlFax
Si3114r5
websenserealtimeanalyzer
vmkbd2
MTDVC2
JiaoIO
backuplauncher
remotelyanywhere
akshhl
alcxsens
UBHelper
scanwscs
apfiltrservice
LVVI500A
houdinilicenseserver
CAM1210
df5serv
mcpromgr
gdihook5
co_mon
sympxsvc
cwafreportscheduler
StkASSrv
CoachUsb
vpcbus
imonnt
EPOWER
wpshelper
SNPSTD3
s616unic
caboagp
SGHIDI
mfetdik
GoogleDesktopManager-010708-104812
nsausvc
ibmfilter
SE2Bmdfl
oraclesnmppeermasteragent
Anydlc
cpqdfw
cdrbsdrv
UpdateCenterService
nimcdldu
sr
nla
CAMCAUD
adiloader
lbrtfdc
merakpop3
purgeieservice
emitray
clmtomcatstartersvc
nvstor64
license
w550mgmt
SE2Cobex
tmesrv3
agentsrv
dmisrv
pdlnslea
surveyor
pacsptisvr
nvsvc
dpc_srv_webcast
automate5
MS1000
RecAgent
vet-rec
mxnic
lxrsii1s
sfman
sqlagent$soshome22
SaiNtHid
NWSIPX32
moufiltr
ageremodemaudio
sonywbms
XDva004
sgectl
se45mdfl
curtainssyssvc
nsm1bus
SWNC5E00
mqdmbus
nvmpu401
tvtpktfilter
rt61
ZDCNDIS5
iAimTV6
agpcpq
ClntMgmt.sys
pgfilter
mwlsvc
risdptsk
CTERFXFX.DLL
lvsrvlauncher
smwdm
mcsysmon
RMCAST
snare
nHancer
LPCFilter
SaiNtBus
fa_scheduler
BootScreen
VHidMinidrv
pelmouse
usrbridg
rpcnet
FVXSCSI
sfdrv01
umwdf
dlcq_device
bgmainsvc
dptrackerd
avsvcmonitor
asc3550
elosystemservice
digictrl
AtcL002
wlsetupsvc
tng-dtmg
oracleorahome90agent
gpc
mgabg
bcoreusb
NEOFLTR_600_13319
s117unic
CTSYN
igfx
nicser_wmp11
nvlddmkm
svcwmu
timounter
bobo
Via4in1
SRTSP
bcm43xx
isapisearch
USB11LDR
ati2mtaa
se2End5
vmauthdservice
wap3gx
dtscsi
nsm1mdfl
aavmker4
ZSMC303
WNIPROT5
tdrpman174
zunenetworksvc
emupia
arp1394
hcwPP2
venturi2
ctdvda2k
usbsermpt
avgfwsrv
Intels51
NMSSvc
RTSTOR
osaio
TMBMServer
epgspooler
F700ius
sfng32
lsdiorw
nmsaccess
FireTDI
se45nd5
fuj02b1
NWSLP
mpfp
wlluc48
npkcmsvc
lkcitadelserver
navex15
tsscoreservice
bthpan
pdscheduler
wmp54gssvc
sifilter
3dkeybd
Blfp
mirrorv3
cq_mem
SE26obex
PNDIS5
z525mgmt
ScFBPNT2
ftpqueue
acdservice
btwdins
dnetc
slee_503_service
wusb54gv2svc
WscNetDr
btwaudio
se2Cunic
LVPrcMon
USBVCD
gearsecurity
hpconfig
tdrpman
lbtserv
EUSBMSD
s3twistr
adaptecstoragemanageragent
SymIMMP
dlaudf_m
UPATC
nhcDriverDevice
MailService
RIOUNIV
R300
cwafadminmonitor
thkeys
tappsrv
pdlnctdl
WaveEnrollmentService
netcfgsvr
dpfusmgr
z525mdfl
SANDRA
ccalib8
smcirda
vxd
W700bus
CTHWIUT.DLL
TermService
wuauserv
BITS
ShellHWDetection
LogonHours
PCAudit
helpsvc
uploadmgr
iphlpsvc
seclogon
AppInfo
msiscsi
MMCSS
wercplsupport
EapHost
ProfSvc
schedule
hkmsvc
SessionEnv
winmgmt
browser
Themes
BDESVC
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs
.
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.blackle.com/
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://search.yahoo.com/search?fr=mcafee&p=%s
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
Trusted Zone: intuit.com\ttlc
TCP: DhcpNameServer = 75.75.75.75 75.75.76.76
FF - ProfilePath - c:\users\bjs\AppData\Roaming\Mozilla\Firefox\Profiles\w06ndksw.default\
FF - prefs.js: browser.search.selectedEngine - Secure Search
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=mcafee&p=
.
- - - - ORPHANS REMOVED - - - -
.
HKLM-Run-SunJavaUpdateSched - c:\program files\Java\jre6\bin\jusched.exe
.
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Toshiba\IVP\Services\Software Upgrades\Swupdtmr]
@DACL=(02 0000)
@SACL=
"STATE"=dword:00000003
"TMH"=dword:01cc1cac
"TML"=dword:9b2c0b9b
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(2592)
c:\program files\McAfee Online Backup\MOBKshell.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\AOL\ACS\AOLAcsd.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\system32\rundll32.exe
c:\toshiba\IVP\ISM\pinger.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\toshiba\IVP\swupdate\swupdtmr.exe
c:\program files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
c:\windows\system32\TODDSrv.exe
c:\program files\Toshiba\Power Saver\TosCoSrv.exe
c:\program files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
c:\program files\Common Files\McAfee\SystemCore\mcshield.exe
c:\program files\Common Files\McAfee\SystemCore\mfefire.exe
c:\windows\system32\conhost.exe
c:\program files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
c:\progra~1\mcafee.com\agent\mcagent.exe
c:\windows\system32\sppsvc.exe
c:\windows\system32\vssvc.exe
.
**************************************************************************
.
Completion time: 2012-04-21 09:48:59 - machine was rebooted
ComboFix-quarantined-files.txt 2012-04-21 16:48
.
Pre-Run: 102,215,405,568 bytes free
Post-Run: 102,144,561,152 bytes free
.
- - End Of File - - A1B91F5FDDA6494157DA0C8752F53D63

#4 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:04:29 PM

Posted 22 April 2012 - 05:18 AM

Hi,



We need to disable Spybot S&D's "TeaTimer"



TeaTimer works by preventing ANY changes to the system. It will attempt to undo any fixes we run, because it blocks these fixes from running.

In order to safeguard your system from problems that can be brought on by a half finished fix, we need to disable TeaTimer. We can reenable it when we're done if you like.
  • Open SpyBot Search and Destroy by going to Start -> All Programs -> Spybot Search and Destroy -> Spybot Search and Destroy.
  • If prompted with a legal dialog, accept the warning.
  • Click on mode and then on "Advanced Mode"
    Posted Image
  • You may be presented with a warning dialog. If so, press Posted Image
  • Click on Posted Image
  • Click on Posted Image
  • Uncheck this checkbox:
    Posted Image
  • Close/Exit Spybot Search and Destroy




Backup Your Registry with ERUNT


  • Please use the following link and scroll down to ERUNT and download it.
    http://aumha.org/freeware/freeware.php
  • For version with the Installer:
    Use the setup program to install ERUNT on your computer
  • For the zipped version:
    Unzip all the files into a folder of your choice.
Open Erunt.exe. Follow the prompts leaving the values at default.





We Need to Run a Registry Script


  • Press the Windows Logo in the lower left corner of your screen.
  • In the Posted Image box, enter notepad and press Enter.
  • Highlight the contents of the following codebox, and copy and paste that text into notepad.
    Windows Registry Editor Version 5.00
    
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost]
    "netsvcs"=hex(7):41,00,65,00,4c,00,6f,00,6f,00,6b,00,75,00,70,00,53,00,76,00,\
      63,00,00,00,43,00,65,00,72,00,74,00,50,00,72,00,6f,00,70,00,53,00,76,00,63,\
      00,00,00,53,00,43,00,50,00,6f,00,6c,00,69,00,63,00,79,00,53,00,76,00,63,00,\
      00,00,6c,00,61,00,6e,00,6d,00,61,00,6e,00,73,00,65,00,72,00,76,00,65,00,72,\
      00,00,00,67,00,70,00,73,00,76,00,63,00,00,00,49,00,4b,00,45,00,45,00,58,00,\
      54,00,00,00,41,00,75,00,64,00,69,00,6f,00,53,00,72,00,76,00,00,00,46,00,61,\
      00,73,00,74,00,55,00,73,00,65,00,72,00,53,00,77,00,69,00,74,00,63,00,68,00,\
      69,00,6e,00,67,00,43,00,6f,00,6d,00,70,00,61,00,74,00,69,00,62,00,69,00,6c,\
      00,69,00,74,00,79,00,00,00,49,00,61,00,73,00,00,00,49,00,72,00,6d,00,6f,00,\
      6e,00,00,00,4e,00,6c,00,61,00,00,00,4e,00,74,00,6d,00,73,00,73,00,76,00,63,\
      00,00,00,4e,00,57,00,43,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,\
      69,00,6f,00,6e,00,00,00,4e,00,77,00,73,00,61,00,70,00,61,00,67,00,65,00,6e,\
      00,74,00,00,00,52,00,61,00,73,00,61,00,75,00,74,00,6f,00,00,00,52,00,61,00,\
      73,00,6d,00,61,00,6e,00,00,00,52,00,65,00,6d,00,6f,00,74,00,65,00,61,00,63,\
      00,63,00,65,00,73,00,73,00,00,00,53,00,45,00,4e,00,53,00,00,00,53,00,68,00,\
      61,00,72,00,65,00,64,00,61,00,63,00,63,00,65,00,73,00,73,00,00,00,53,00,52,\
      00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,00,00,54,00,61,00,70,00,69,00,\
      73,00,72,00,76,00,00,00,57,00,6d,00,69,00,00,00,57,00,6d,00,64,00,6d,00,50,\
      00,6d,00,53,00,70,00,00,00,54,00,65,00,72,00,6d,00,53,00,65,00,72,00,76,00,\
      69,00,63,00,65,00,00,00,77,00,75,00,61,00,75,00,73,00,65,00,72,00,76,00,00,\
      00,42,00,49,00,54,00,53,00,00,00,53,00,68,00,65,00,6c,00,6c,00,48,00,57,00,\
      44,00,65,00,74,00,65,00,63,00,74,00,69,00,6f,00,6e,00,00,00,4c,00,6f,00,67,\
      00,6f,00,6e,00,48,00,6f,00,75,00,72,00,73,00,00,00,50,00,43,00,41,00,75,00,\
      64,00,69,00,74,00,00,00,68,00,65,00,6c,00,70,00,73,00,76,00,63,00,00,00,75,\
      00,70,00,6c,00,6f,00,61,00,64,00,6d,00,67,00,72,00,00,00,69,00,70,00,68,00,\
      6c,00,70,00,73,00,76,00,63,00,00,00,73,00,65,00,63,00,6c,00,6f,00,67,00,6f,\
      00,6e,00,00,00,41,00,70,00,70,00,49,00,6e,00,66,00,6f,00,00,00,6d,00,73,00,\
      69,00,73,00,63,00,73,00,69,00,00,00,4d,00,4d,00,43,00,53,00,53,00,00,00,77,\
      00,65,00,72,00,63,00,70,00,6c,00,73,00,75,00,70,00,70,00,6f,00,72,00,74,00,\
      00,00,45,00,61,00,70,00,48,00,6f,00,73,00,74,00,00,00,50,00,72,00,6f,00,66,\
      00,53,00,76,00,63,00,00,00,73,00,63,00,68,00,65,00,64,00,75,00,6c,00,65,00,\
      00,00,68,00,6b,00,6d,00,73,00,76,00,63,00,00,00,53,00,65,00,73,00,73,00,69,\
      00,6f,00,6e,00,45,00,6e,00,76,00,00,00,77,00,69,00,6e,00,6d,00,67,00,6d,00,\
      74,00,00,00,62,00,72,00,6f,00,77,00,73,00,65,00,72,00,00,00,54,00,68,00,65,\
      00,6d,00,65,00,73,00,00,00,42,00,44,00,45,00,53,00,56,00,43,00,00,00,41,00,\
      70,00,70,00,4d,00,67,00,6d,00,74,00,00,00,00,00
    
  • Select File -> Save.
  • Press the Desktop button on the left side of the save dialog.
  • In the Posted Image box, type in Fix.reg.
  • Press Posted Image.
  • Close Notepad.
  • Double click Posted Image on your desktop.
  • Press Yes if prompted by User Account Control.
  • Press Yes, and then Ok, when prompted.
  • Right click on Posted Image and choose Delete.
  • Press Yes.




Please make sure that you can view all hidden files. Instructions on how to do this can be found here:

How to see hidden files in Windows

Please click this link-->Virustotal

When the Virustotal page has finished loading, click the Browse button and navigate to the following file and click Submit.

c:\windows\system32\drivers\20120415100542.afd.sys

note, if VT says these files have already been analysed, make sure you click Reanalyse file now.

Please post back the results of the scan in your next post.

If Virustotal is busy, try the same at Virscan: http://virscan.org/

Repeat the steps for the following file:

c:\windows\system32\drivers\afd.sys





We Need to Run a Batch Script


  • Press the Windows Logo in the bottom left corner of your screen.
  • In the Posted Image box, enter notepad and press Enter.
  • Highlight the contents of the following codebox, and copy and paste that text into notepad.
    @echo off
    reg query "HKEY_LOCAL_MACHINE\System\currentcontrolset\Services\afd" /v imagepath > result.txt
    start result.txt
    del %0
    
  • Select File -> Save.
  • Press the Desktop button on the left side of the save dialog.
  • In the Posted Image box, type in Fix.bat.
  • Press Posted Image.
  • Close Notepad.
  • Right click Posted Image on your desktop, and choose Posted Image.
  • Press Yes if prompted by User Account Control.
  • Post the content of the log in your next reply.




We need to execute a CFScript to clean some remnants.

Please do this:


1. Open notepad => navigate to format and make sure that wordwrap is unchecked. <--- important !!!

2. Copy/paste the text in the codebox below into it:

Driver::
DasBoot
DasBootF
zipehreg
File::
c:\windows\system32\DRIVERS\DasBoot.SYS
c:\windows\system32\DRIVERS\DasBootF.SYS
c:\windows\system32\DRIVERS\zipehreg.sys
Folder::
c:\program files\Ask.com
DirLook::
c:\windows\system32\DBBK
Registry::
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\URLSearchHooks]
"{00000000-6E41-4FD3-8538-502F5495E5FC}"=-
[-HKEY_CLASSES_ROOT\clsid\{00000000-6e41-4fd3-8538-502f5495e5fc}]
[-HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"=-
[-HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[-HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"=-
[-HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[-HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[-HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ApnUpdater"=-
DDS::
uSearchURL,(Default) = hxxp://search.yahoo.com/search?fr=mcafee&p=%s
Firefox::
FF - ProfilePath - c:\users\bjs\AppData\Roaming\Mozilla\Firefox\Profiles\w06ndksw.default\
FF - prefs.js: browser.search.selectedEngine - Secure Search
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?fr=mcafee&p=

3. Save this as CFScript.txt. Save it in the same place as ComboFix.exe.

4. Close any open browsers.

5. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

6. Referring to the picture below, drag CFScript into ComboFix.exe

Posted Image


When finished, it shall produce a log for you at C:\ComboFix.txt which I will require in your next reply.



Also reply back to let me know how things are going.





Regards,
Georgi

Edited by B-boy/StyLe/, 22 April 2012 - 05:33 AM.
I added a note to the procedure about the batch file.

cXfZ4wS.png


#5 APPleas

APPleas
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:29 AM

Posted 22 April 2012 - 12:26 PM

Hello again Georgi!
Thank you again for your assistance with this! Things are ok but I've been keeping the use of the computer to a minimum and trying to keep the internet connection turned off. I need to change all of my passwords, but I only have this machine so I thought I should wait until I know it's safe to change them. You are so great to do this...thanks so much! Here are the logs you asked for...

VIRUSTOTAL first

SHA256: 2e5a0fa2995989e9391771024839f5ad040a041cee56787286d8fc421e26fe90
SHA1: c05af7e1eaa823fddf09fdeb41862423f83babbc
MD5: 9ebbba55060f786f0fcaa3893bfa2806
File size: 331.0 KB ( 338944 bytes )
File name: C:\Windows\System32\drivers\20120415100542.afd.sys
File type: Win32 EXE
Detection ratio: 0 / 42
Analysis date: 2012-04-22 16:22:06 UTC ( 0 minutes ago )

11More details
Antivirus Result Update
AhnLab-V3 - 20120421
AntiVir - 20120422
Antiy-AVL - 20120422
Avast - 20120422
AVG - 20120422
BitDefender - 20120422
ByteHero - 20120420
CAT-QuickHeal - 20120420
ClamAV - 20120422
Commtouch - 20120422
Comodo - 20120422
DrWeb - 20120422
Emsisoft - 20120422
eSafe - 20120419
eTrust-Vet - 20120421
F-Prot - 20120421
F-Secure - 20120422
Fortinet - 20120422
GData - 20120422
Ikarus - 20120422
Jiangmin - 20120422
K7AntiVirus - 20120420
Kaspersky - 20120422
McAfee - 20120422
McAfee-GW-Edition - 20120422
Microsoft - 20120422
NOD32 - 20120422
Norman - 20120421
nProtect - 20120422
Panda - 20120422
PCTools - 20120422
Rising - 20120420
Sophos - 20120422
SUPERAntiSpyware - 20120402
Symantec - 20120422
TheHacker - 20120422
TrendMicro - 20120422
TrendMicro-HouseCall - 20120422
VBA32 - 20120422
VIPRE - 20120422
ViRobot - 20120422
VirusBuster - 20120422


COMBOFIX

ComboFix 12-04-20.03 - bjs 04/22/2012 9:47.2.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3454.2774 [GMT -7:00]
Running from: c:\users\bjs\Desktop\ComboFix.exe
Command switches used :: c:\users\bjs\Desktop\CFScript.txt
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Resident AV is active
.
.
FILE ::
"c:\windows\system32\DRIVERS\DasBoot.SYS"
"c:\windows\system32\DRIVERS\DasBootF.SYS"
"c:\windows\system32\DRIVERS\zipehreg.sys"
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Ask.com
c:\program files\Ask.com\assets\oobe\b.png
c:\program files\Ask.com\assets\oobe\bl.png
c:\program files\Ask.com\assets\oobe\br.png
c:\program files\Ask.com\assets\oobe\l.png
c:\program files\Ask.com\assets\oobe\pointer.png
c:\program files\Ask.com\assets\oobe\r.png
c:\program files\Ask.com\assets\oobe\t.png
c:\program files\Ask.com\assets\oobe\tl.png
c:\program files\Ask.com\assets\oobe\tr.png
c:\program files\Ask.com\cobrand.ico
c:\program files\Ask.com\config.xml
c:\program files\Ask.com\favicon.ico
c:\program files\Ask.com\GenericAskToolbar.dll
c:\program files\Ask.com\mupcfg.xml
c:\program files\Ask.com\precache.exe
c:\program files\Ask.com\SaUpdate.exe
c:\program files\Ask.com\Updater\config.xml
c:\program files\Ask.com\Updater\Updater.exe
c:\program files\Ask.com\UpdateTask.exe
c:\windows\$NtUninstallKB26711$
c:\windows\$NtUninstallKB26711$\3563991852
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_DASBOOT
-------\Legacy_DASBOOTF
-------\Legacy_ZIPEHREG
-------\Service_DasBoot
-------\Service_DasBootF
-------\Service_zipehreg
.
.
((((((((((((((((((((((((( Files Created from 2012-03-22 to 2012-04-22 )))))))))))))))))))))))))))))))
.
.
2012-04-22 17:05 . 2012-04-22 17:08 -------- d-----w- c:\users\bjs\AppData\Local\temp
2012-04-22 17:05 . 2012-04-22 17:05 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-04-22 16:12 . 2012-04-22 16:12 -------- d-----w- c:\program files\ERUNT
2012-04-21 16:14 . 2011-04-25 02:18 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2012-04-15 17:05 . 2012-04-15 16:55 338944 ----a-w- c:\windows\system32\drivers\20120415100542.afd.sys
2012-04-15 16:53 . 2012-04-15 17:05 -------- d-----w- c:\windows\system32\DBBK
2012-04-15 16:20 . 2012-04-15 16:20 14664 ----a-w- c:\windows\stinger.sys
2012-04-15 16:18 . 2012-04-15 16:42 -------- d-----w- c:\program files\stinger
2012-04-13 17:13 . 2012-03-13 04:39 97208 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll
2012-04-13 17:13 . 2012-03-13 04:38 626688 ----a-w- c:\program files\Mozilla Firefox\msvcr80.dll
2012-04-13 17:13 . 2012-03-13 04:38 548864 ----a-w- c:\program files\Mozilla Firefox\msvcp80.dll
2012-04-13 17:13 . 2012-03-13 04:38 479232 ----a-w- c:\program files\Mozilla Firefox\msvcm80.dll
2012-04-13 17:13 . 2012-03-13 04:39 44472 ----a-w- c:\program files\Mozilla Firefox\mozglue.dll
2012-04-13 17:13 . 2012-03-13 04:39 592824 ----a-w- c:\program files\Mozilla Firefox\gkmedias.dll
2012-04-11 10:03 . 2012-03-01 05:46 19824 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-04-11 10:03 . 2012-03-01 05:37 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-04-11 10:03 . 2012-03-01 05:33 159232 ----a-w- c:\windows\system32\imagehlp.dll
2012-04-11 10:03 . 2012-03-01 05:29 5120 ----a-w- c:\windows\system32\wmi.dll
2012-04-11 10:02 . 2012-03-06 05:59 3968368 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-04-11 10:02 . 2012-03-06 05:59 3913072 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-08 22:03 . 2012-04-08 22:03 -------- d-----w- c:\users\bjs\AppData\Roaming\Malwarebytes
2012-04-08 22:03 . 2012-04-08 22:03 -------- d-----w- c:\programdata\Malwarebytes
2012-04-08 22:03 . 2011-12-10 22:24 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-01 03:52 . 2012-04-01 03:52 -------- d-----w- c:\program files\iPod
2012-04-01 03:52 . 2012-04-01 03:54 -------- d-----w- c:\program files\iTunes
2012-03-26 15:41 . 2012-03-26 15:41 103864 ----a-w- c:\program files\Mozilla Firefox\plugins\nppdf32.dll
2012-03-26 15:41 . 2012-03-26 15:41 103864 ----a-w- c:\program files\Internet Explorer\Plugins\nppdf32.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-15 16:19 . 2011-05-29 15:33 159608 ----a-w- c:\windows\system32\mfevtps.exe
2012-04-15 16:19 . 2011-05-29 15:43 87656 ----a-w- c:\windows\system32\drivers\mferkdet.sys
2012-04-15 16:19 . 2011-03-13 18:20 475704 ----a-w- c:\windows\system32\drivers\mfehidk.sys
2012-03-03 12:51 . 2011-07-03 07:00 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-17 05:34 . 2012-03-14 07:05 826880 ----a-w- c:\windows\system32\rdpcore.dll
2012-02-17 04:14 . 2012-03-14 07:05 183808 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:13 . 2012-03-14 07:05 24576 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-02-10 05:38 . 2012-03-14 07:06 1077248 ----a-w- c:\windows\system32\DWrite.dll
2012-02-03 03:54 . 2012-03-14 07:06 2343424 ----a-w- c:\windows\system32\win32k.sys
2012-01-25 05:32 . 2012-03-14 07:05 58880 ----a-w- c:\windows\system32\rdpwsx.dll
2012-01-25 05:32 . 2012-03-14 07:05 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-01-25 05:27 . 2012-03-14 07:05 8192 ----a-w- c:\windows\system32\rdrmemptylst.exe
2012-03-13 04:39 . 2012-04-13 17:13 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\windows\system32\DBBK ----
.
2012-04-15 17:05 . 2012-04-15 17:05 19968 ----a-w- c:\windows\system32\DBBK\DEB9AA27507C858A965C287C11F3ACE3
2012-04-15 17:05 . 2012-04-15 17:05 194000 ----a-w- c:\windows\system32\DBBK\A89884DEA8ADDD3893191C2F255475B5
2012-04-15 17:05 . 2012-04-15 17:05 132560 ----a-w- c:\windows\system32\DBBK\45D1D3C2E8CFCA15477F1BF53A542546
2012-04-15 17:04 . 2012-04-15 17:04 1115136 ----a-w- c:\windows\system32\DBBK\198366199A9F342EF87978D79308B49F
2012-04-15 17:03 . 2012-04-15 17:03 126976 ----a-w- c:\windows\system32\DBBK\A99C4D1B5E7E794EC5779CF14F431932
2012-04-15 17:03 . 2012-04-15 17:03 1019904 ----a-w- c:\windows\system32\DBBK\CA9DCA108124558EED6F3B5CDB76F7E8
2012-04-15 17:03 . 2012-04-15 17:03 2049344 ----a-w- c:\windows\system32\DBBK\879E94BBBF50FF6BB0C7D472C83F6B89
2012-04-15 17:03 . 2012-04-15 17:03 61888 ----a-w- c:\windows\system32\DBBK\2CBCA94ABCCB2B79E4693BA0E4FC85BE
2012-04-15 17:03 . 2012-04-15 17:03 3855520 ----a-w- c:\windows\system32\DBBK\70CE1DA6684A7043B0008C2F2E286E27
2012-04-15 17:03 . 2012-04-15 17:03 147456 ----a-w- c:\windows\system32\DBBK\44BCFF08947790E74BD7CC7532D2B793
2012-04-15 17:03 . 2012-04-15 17:03 30840 ----a-w- c:\windows\system32\DBBK\E3FFF2892D52E75A901141E39DD16EC9
2012-04-15 17:03 . 2012-04-15 17:03 78920 ----a-w- c:\windows\system32\DBBK\A76EFC0767ACBE3AD7B0FC30905D92D8
2012-04-15 17:03 . 2012-04-15 17:03 281600 ----a-w- c:\windows\system32\DBBK\7B17107D054A88C6D1ECC285B502D2D9
2012-04-15 17:03 . 2012-04-15 17:03 8632480 ----a-w- c:\windows\system32\DBBK\D2938C8085CB65A7C0C3448E673E8C39
2012-04-15 17:03 . 2012-04-15 17:03 818104 ----a-w- c:\windows\system32\DBBK\CFA3C950B2B8EE3C5034D65F2BC41197
2012-04-15 17:03 . 2012-04-15 17:03 161368 ----a-w- c:\windows\system32\DBBK\B5F52184A02CB5F34838D53022B5640F
2012-04-15 17:03 . 2012-04-15 17:03 163328 ----a-w- c:\windows\system32\DBBK\2D5D50C1F49E38932947F7DF5F655AD9
2012-04-15 17:03 . 2012-04-15 17:03 16312 ----a-w- c:\windows\system32\DBBK\34DE10B73CD7FC49883194E7D3BE22DE
2012-04-15 17:03 . 2012-04-15 17:03 165488 ----a-w- c:\windows\system32\DBBK\4B175EA3CA2607ACDB2E6096FCA919FC
2012-04-15 17:03 . 2012-04-15 17:03 57856 ----a-w- c:\windows\system32\DBBK\43E51A4C9ADBB084DDC360057F6988C8
2012-04-15 17:03 . 2012-04-15 17:03 269240 ----a-w- c:\windows\system32\DBBK\792AD4E12D88FA5C00AEF1CD47C799F4
2012-04-15 17:03 . 2012-04-15 17:03 109496 ----a-w- c:\windows\system32\DBBK\BBB6D09959D7530254A532A3DE0B722A
2012-04-15 17:03 . 2012-04-15 17:03 44472 ----a-w- c:\windows\system32\DBBK\F999636C41C916D0155D56A85249CC64
2012-04-15 17:03 . 2012-04-15 17:03 158648 ----a-w- c:\windows\system32\DBBK\5D8F040C8083A361D3496B06A51D3560
2012-04-15 17:03 . 2012-04-15 17:03 2276216 ----a-w- c:\windows\system32\DBBK\3D1D1AC64DE63BC65D81EB7FB46472AC
2012-04-15 17:03 . 2012-04-15 17:03 333896 ----a-w- c:\windows\system32\DBBK\59BB68E6F1567B3C29CEBD3C2199D199
2012-04-15 17:03 . 2012-04-15 17:03 309760 ----a-w- c:\windows\system32\DBBK\13CDD3FF0961A2EC6D9829A1640DD6DC
2012-04-15 17:03 . 2012-04-15 17:03 346112 ----a-w- c:\windows\system32\DBBK\55A97EC5956A72D3B7060560F785FF32
2012-04-15 17:03 . 2012-04-15 17:03 163840 ----a-w- c:\windows\system32\DBBK\69A1D7C29CFF256BECBD4E39E2159636
2012-04-15 17:03 . 2012-04-15 17:03 154624 ----a-w- c:\windows\system32\DBBK\358AB7956D3160000726574083DFC8A6
2012-04-15 17:03 . 2012-04-15 17:03 313856 ----a-w- c:\windows\system32\DBBK\A28BD92DF340E57B024BA433165D34D7
2012-04-15 17:03 . 2012-04-15 17:03 176640 ----a-w- c:\windows\system32\DBBK\CA7F9A24ED2FE57096569BF7E6810BE1
2012-04-15 17:03 . 2012-04-15 17:03 12433408 ----a-w- c:\windows\system32\DBBK\5764F20720F350D46FD6CEF6CB3A4941
2012-04-15 17:03 . 2012-04-15 17:03 1587200 ----a-w- c:\windows\system32\DBBK\56CEBC1D7B1D98959B87149EA3D22071
2012-04-15 17:03 . 2012-04-15 17:03 1069056 ----a-w- c:\windows\system32\DBBK\2DF845510EFA14F41E24D71C65BA289F
2012-04-15 17:03 . 2012-04-15 17:03 75200 ----a-w- c:\windows\system32\DBBK\1F9B3487739B31C3D770728CB157A54D
2012-04-15 17:03 . 2012-04-15 17:03 559264 ----a-w- c:\windows\system32\DBBK\DD57B8B38ECBDA8E91AB4F2AAE2E156F
2012-04-15 17:02 . 2012-04-15 17:02 16824 ----a-w- c:\windows\system32\DBBK\1AA987A15080E19E83F0872F8FC0FFC2
2012-04-15 17:02 . 2012-04-15 17:02 244768 ----a-w- c:\windows\system32\DBBK\0D168F3C4BBA13F5854DD789334B1D94
2012-04-15 17:02 . 2012-04-15 17:02 231648 ----a-w- c:\windows\system32\DBBK\22E020FA26223C12BB32E7AB39703DB7
2012-04-15 17:02 . 2012-04-15 17:02 623360 ----a-w- c:\windows\system32\DBBK\AE18D2D914AE4B171480A1D70682C89C
2012-04-15 17:02 . 2012-04-15 17:02 388208 ----a-w- c:\windows\system32\DBBK\1E4AB28F1E71B24B5488505D4948A78F
2012-04-15 17:02 . 2012-04-15 17:02 115968 ----a-w- c:\windows\system32\DBBK\7A56825F0682875956E7159FE20F9AF8
2012-04-15 17:02 . 2012-04-15 17:02 154688 ----a-w- c:\windows\system32\DBBK\DF4C263FC829C7E755952B90475FA39C
2012-04-15 17:02 . 2012-04-15 17:02 184792 ----a-w- c:\windows\system32\DBBK\4CB3A14E6DE068DA2354FBAF569A1D3F
2012-04-15 17:02 . 2012-04-15 17:02 308128 ----a-w- c:\windows\system32\DBBK\F3F15850B1029B17805165D5BD646EBE
2012-04-15 17:02 . 2012-04-15 17:02 63488 ----a-w- c:\windows\system32\DBBK\5EF12E329823947A06F1B06AA0196F83
2012-04-15 17:02 . 2012-04-15 17:02 105400 ----a-w- c:\windows\system32\DBBK\74108B60FAF9D33975FEC563F151DD4C
2012-04-15 17:02 . 2012-04-15 17:02 371640 ----a-w- c:\windows\system32\DBBK\C416C299590DEEEE0BE11B888F883F6A
2012-04-15 17:02 . 2012-04-15 17:02 20920 ----a-w- c:\windows\system32\DBBK\81B31AFF59C953AB6470DB8D1085DBEE
2012-04-15 17:02 . 2012-04-15 17:02 1969080 ----a-w- c:\windows\system32\DBBK\48E8DEA531335D2B19A3A8447F8B004B
2012-04-15 17:02 . 2012-04-15 17:02 22456 ----a-w- c:\windows\system32\DBBK\4B1E9F38378763C9947410FC72A8D2D3
2012-04-15 17:02 . 2012-04-15 17:02 452608 ----a-w- c:\windows\system32\DBBK\92F44E405DB16AC55D97E3BFE3B132FA
2012-04-15 17:02 . 2012-04-15 17:02 131072 ----a-w- c:\windows\system32\DBBK\29FEA7A6277E775A870682F2F7435F9F
2012-04-15 17:02 . 2012-04-15 17:02 856576 ----a-w- c:\windows\system32\DBBK\84897874906481E0B3F4045DAD90D69F
2012-04-15 17:02 . 2012-04-15 17:02 15915960 ----a-w- c:\windows\system32\DBBK\B2187594F83A69CC04E74BF878D8B5A3
2012-04-15 17:02 . 2012-04-15 17:02 316928 ----a-w- c:\windows\system32\DBBK\347AAE83C7C7B787CED89544532AA47D
2012-04-15 17:02 . 2012-04-15 17:02 3727872 ----a-w- c:\windows\system32\DBBK\45C0DF404182850C21749AF7763C095F
2012-04-15 17:02 . 2012-04-15 17:02 1195488 ----a-w- c:\windows\system32\DBBK\1C48FC41FA7A2939E213E1F72772CA8C
2012-04-15 17:02 . 2012-04-15 17:02 363520 ----a-w- c:\windows\system32\DBBK\6A1E8DEB746912DF47CF651E138401D7
2012-04-15 17:02 . 2012-04-15 17:02 537600 ----a-w- c:\windows\system32\DBBK\54DEFF61C4E6AF1581DA2F236154BA4C
2012-04-15 17:02 . 2012-04-15 17:02 187912 ----a-w- c:\windows\system32\DBBK\21E6A7AB35B7A1D08BBB95F56A5FBDFA
2012-04-15 17:02 . 2012-04-15 17:02 55808 ----a-w- c:\windows\system32\DBBK\6F6759407B843B99E0367036632EC798
2012-04-15 17:02 . 2012-04-15 17:02 245840 ----a-w- c:\windows\system32\DBBK\B8BFF4B0E31A5B77AE7A2659E726901E
2012-04-15 17:02 . 2012-04-15 17:02 181760 ----a-w- c:\windows\system32\DBBK\B72F77DA5A69F5626696182E17B503BA
2012-04-15 17:02 . 2012-04-15 17:02 61440 ----a-w- c:\windows\system32\DBBK\AC804569BB2364FB6017370258A4091B
2012-04-15 17:02 . 2012-04-15 17:02 330552 ----a-w- c:\windows\system32\DBBK\DF9EA0E95CCD8F98760553FBE503FA7B
2012-04-15 17:02 . 2012-04-15 17:02 646144 ----a-w- c:\windows\system32\DBBK\6581B52E133CC6D00661C58968C7E212
2012-04-15 17:02 . 2012-04-15 17:02 163840 ----a-w- c:\windows\system32\DBBK\768B9F3A2F40E3DFB7E87AA847A98EF2
2012-04-15 17:02 . 2012-04-15 17:02 744448 ----a-w- c:\windows\system32\DBBK\9A39A2A5F443A756C568C6ED5748AFE4
2012-04-15 17:02 . 2012-04-15 17:02 484864 ----a-w- c:\windows\system32\DBBK\2A39F32E0067CBF221611FE1FA8C6D8F
2012-04-15 17:02 . 2012-04-15 17:02 26112 ----a-w- c:\windows\system32\DBBK\57CE9D8350B1DD76EEC596C423C3C0BC
2012-04-15 17:02 . 2012-04-15 17:02 129536 ----a-w- c:\windows\system32\DBBK\2B5B3E324E52CF0975BB0C2B053F3CCB
2012-04-15 17:02 . 2012-04-15 17:02 2202624 ----a-w- c:\windows\system32\DBBK\E8CB091A918C1C687B087389D9A66B39
2012-04-15 17:02 . 2012-04-15 17:02 1334272 ----a-w- c:\windows\system32\DBBK\29BC473072568C072EC8B176498DE996
2012-04-15 17:02 . 2012-04-15 17:02 95744 ----a-w- c:\windows\system32\DBBK\F175E53C7C3B25A9029A131FB578B155
2012-04-15 17:02 . 2012-04-15 17:02 233472 ----a-w- c:\windows\system32\DBBK\7717A57C01812C3714BA25B96C36BF39
2012-04-15 17:02 . 2012-04-15 17:02 271800 ----a-w- c:\windows\system32\DBBK\D5F07FAF22BA5AA6B73A15B990067E89
2012-04-15 17:02 . 2012-04-15 17:02 1063936 ----a-w- c:\windows\system32\DBBK\1869BD251211FB6275067372A45682D6
2012-04-15 17:02 . 2012-04-15 17:02 151552 ----a-w- c:\windows\system32\DBBK\B6C756FA661C5EB7B3547E60647F87A7
2012-04-15 17:02 . 2012-04-15 17:02 335872 ----a-w- c:\windows\system32\DBBK\81C0FA250EF6DC1C6B3FA2BCE81D6C2E
2012-04-15 17:02 . 2012-04-15 17:02 1977856 ----a-w- c:\windows\system32\DBBK\0BDF121EBD33DA510BD82051C795E199
2012-04-15 17:02 . 2012-04-15 17:02 21504 ----a-w- c:\windows\system32\DBBK\A29E036A5A3B37C7530F3EA1CF385129
2012-04-15 17:02 . 2012-04-15 17:02 3405312 ----a-w- c:\windows\system32\DBBK\59B7280D73906B43B13B273A1F9CC3DD
2012-04-15 17:02 . 2012-04-15 17:02 99328 ----a-w- c:\windows\system32\DBBK\0DCA6A11D09D4C2CBE6B898B897EA915
2012-04-15 17:02 . 2012-04-15 17:02 67584 ----a-w- c:\windows\system32\DBBK\319C6B309773D063541D01DF8AC6F55F
2012-04-15 17:02 . 2012-04-15 17:02 605184 ----a-w- c:\windows\system32\DBBK\60236C8C3B8C2D8B9A59326890533EB8
2012-04-15 17:02 . 2012-04-15 17:02 229888 ----a-w- c:\windows\system32\DBBK\0BBDB0F5A25A2FE0502F44CA7D04AB61
2012-04-15 17:02 . 2012-04-15 17:02 116736 ----a-w- c:\windows\system32\DBBK\50AF423CC8915B0010F0A96BF78672E9
2012-04-15 17:02 . 2012-04-15 17:02 444416 ----a-w- c:\windows\system32\DBBK\A3E23DD82AA7963D9F7D184BEEEE5448
2012-04-15 17:02 . 2012-04-15 17:02 1203200 ----a-w- c:\windows\system32\DBBK\691E3285E53DCA558E1A84667F13E15A
2012-04-15 17:02 . 2012-04-15 17:02 330240 ----a-w- c:\windows\system32\DBBK\61D57A5D7C6D9AFE10E77DAE6E1B445E
2012-04-15 17:02 . 2012-04-15 17:02 198144 ----a-w- c:\windows\system32\DBBK\73869A8A7AF77801387A36CF9B9B5886
2012-04-15 17:02 . 2012-04-15 17:02 20268032 ----a-w- c:\windows\system32\DBBK\827CB0D6C3F8057EA037FF271F8E9795
2012-04-15 17:02 . 2012-04-15 17:02 297472 ----a-w- c:\windows\system32\DBBK\81241E7723D5675AF6E27A7F0E7F3324
2012-04-15 17:02 . 2012-04-15 17:02 441856 ----a-w- c:\windows\system32\DBBK\3925944734DFC5D2253F3DC5923F797D
2012-04-15 17:02 . 2012-04-15 17:02 233984 ----a-w- c:\windows\system32\DBBK\A00075951E38A73FE2F9D8384311710A
2012-04-15 17:02 . 2012-04-15 17:02 86016 ----a-w- c:\windows\system32\DBBK\76B5A48D429D29F69485BD314B9866A6
2012-04-15 17:02 . 2012-04-15 17:02 218624 ----a-w- c:\windows\system32\DBBK\F945ADCEF203E6104AEC8EC9C337CFD0
2012-04-15 17:02 . 2012-04-15 17:02 4096 ----a-w- c:\windows\system32\DBBK\90FB1802D488FFA9029854A77D4F3F27
2012-04-15 17:02 . 2012-04-15 17:02 1294336 ----a-w- c:\windows\system32\DBBK\CA75367CE419922291A11227E32FBA0C
2012-04-15 17:02 . 2012-04-15 17:02 120320 ----a-w- c:\windows\system32\DBBK\6435B29D2018CFAD173BD50AE8F8D5DD
2012-04-15 17:02 . 2012-04-15 17:02 389120 ----a-w- c:\windows\system32\DBBK\0E4A28030C7C6B8A57A60BAF494B114D
2012-04-15 17:02 . 2012-04-15 17:02 2311168 ----a-w- c:\windows\system32\DBBK\181F69BC9C406B7FB5C0ADE8031630AC
2012-04-15 17:02 . 2012-04-15 17:02 14848 ----a-w- c:\windows\system32\DBBK\432BE6CF7311062633459EEF6B242FB5
2012-04-15 17:02 . 2012-04-15 17:02 44032 ----a-w- c:\windows\system32\DBBK\14486EB6AF542F2BD3239F7FC3E713F7
2012-04-15 17:02 . 2012-04-15 17:02 205824 ----a-w- c:\windows\system32\DBBK\A205B7A5D8E4AE6E8DE7B313C7FC3FA4
2012-04-15 17:02 . 2012-04-15 17:02 342016 ----a-w- c:\windows\system32\DBBK\61B1ED5F429EFAC7E2036769870AB93E
2012-04-15 17:02 . 2012-04-15 17:02 521216 ----a-w- c:\windows\system32\DBBK\382C804C92811BE57829D8E550A900E2
2012-04-15 17:02 . 2012-04-15 17:02 828928 ----a-w- c:\windows\system32\DBBK\69C81451DCE63069A036FBF646A86996
2012-04-15 17:02 . 2012-04-15 17:02 202752 ----a-w- c:\windows\system32\DBBK\51F5CC1E7DA3D9C664C2D0D61F315E06
2012-04-15 17:02 . 2012-04-15 17:02 81920 ----a-w- c:\windows\system32\DBBK\2765B91A9EE086C20B451E80D2709CC9
2012-04-15 17:02 . 2012-04-15 17:02 499712 ----a-w- c:\windows\system32\DBBK\4D65A07B795D6674312F879D09AA7663
2012-04-15 17:02 . 2012-04-15 17:02 73216 ----a-w- c:\windows\system32\DBBK\EEE470F2A771FC0B543BDEEF74FCECA0
2012-04-15 17:02 . 2012-04-15 17:02 1040384 ----a-w- c:\windows\system32\DBBK\14558D849EC14160AC3DACD8AC36E10A
2012-04-15 17:02 . 2012-04-15 17:02 78336 ----a-w- c:\windows\system32\DBBK\98ECA04A6B5319043583FE00FC3C22EE
2012-04-15 17:02 . 2012-04-15 17:02 304128 ----a-w- c:\windows\system32\DBBK\00D7AB9A8E5C9A84CFCA19AD9E583E6F
2012-04-15 17:02 . 2012-04-15 17:02 132608 ----a-w- c:\windows\system32\DBBK\4D05BDE56A7116B744B04192173A0122
2012-04-15 17:02 . 2012-04-15 17:02 1188864 ----a-w- c:\windows\system32\DBBK\3E158EB9DC295CA3EF8D1F1EF57ABEDD
2012-04-15 17:02 . 2012-04-15 17:02 113664 ----a-w- c:\windows\system32\DBBK\4AE380F39A0032EAB7DD953030B26D28
2012-04-15 17:02 . 2012-04-15 17:02 2755072 ----a-w- c:\windows\system32\DBBK\5992A9DF57FD5E6960FDCC2DB69867F7
2012-04-15 17:02 . 2012-04-15 17:02 145408 ----a-w- c:\windows\system32\DBBK\A4B5A34EE451B5C501D5C90633D89BB0
2012-04-15 17:02 . 2012-04-15 17:02 16896 ----a-w- c:\windows\system32\DBBK\8E79090CB0987CA102E845341E052537
2012-04-15 17:02 . 2012-04-15 17:02 70656 ----a-w- c:\windows\system32\DBBK\83EDF12A090F0B66CDC9F7390A701521
2012-04-15 17:02 . 2012-04-15 17:02 122368 ----a-w- c:\windows\system32\DBBK\843ED534E2F15F733F4A468FD9CF0CD1
2012-04-15 17:02 . 2012-04-15 17:02 159232 ----a-w- c:\windows\system32\DBBK\20A20A911CD79A6F6839167149A05668
2012-04-15 17:02 . 2012-04-15 17:02 65024 ----a-w- c:\windows\system32\DBBK\08E420D873E4FD85241EE2421B02C4A4
2012-04-15 17:02 . 2012-04-15 17:02 23040 ----a-w- c:\windows\system32\DBBK\57A51217581614DE07F30E34D6BB4993
2012-04-15 17:02 . 2012-04-15 17:02 72192 ----a-w- c:\windows\system32\DBBK\2607A85B6466C0110EA8ABB9D8CC83FC
2012-04-15 17:02 . 2012-04-15 17:02 73728 ----a-w- c:\windows\system32\DBBK\6F5D49EFE0E7164E03AE773A3FE25340
2012-04-15 17:02 . 2012-04-15 17:02 1175040 ----a-w- c:\windows\system32\DBBK\1B91CD34EA3A90AB6A4EF0550174F4CC
2012-04-15 17:02 . 2012-04-15 17:02 43008 ----a-w- c:\windows\system32\DBBK\7AA994D0757EF3FDB4F3F7656E1E4D60
2012-04-15 17:02 . 2012-04-15 17:02 72704 ----a-w- c:\windows\system32\DBBK\9FA14FFC9150B48C5D582DCF6A79D6F2
2012-04-15 17:02 . 2012-04-15 17:02 566272 ----a-w- c:\windows\system32\DBBK\9835584E999D25004E1EE8E5F3E3B881
2012-04-15 17:02 . 2012-04-15 17:02 20992 ----a-w- c:\windows\system32\DBBK\CFD8B8537036CF35F6254192997A4D8E
2012-04-15 17:02 . 2012-04-15 17:02 674304 ----a-w- c:\windows\system32\DBBK\F95622F161474511B8D80D6B093AA610
2012-04-15 17:02 . 2012-04-15 17:02 410624 ----a-w- c:\windows\system32\DBBK\F5F9CB23EDBF2C77AAE5A2A2FC4FC333
2012-04-15 17:02 . 2012-04-15 17:02 577024 ----a-w- c:\windows\system32\DBBK\297848A1D7D03A5735CEDF91F82ACFAB
2012-04-15 17:02 . 2012-04-15 17:02 42496 ----a-w- c:\windows\system32\DBBK\4627D4C6D3BB999B123793C3A2709F86
2012-04-15 17:02 . 2012-04-15 17:02 1164288 ----a-w- c:\windows\system32\DBBK\24CAEDCD73B5B0E22226283B7B2468C7
2012-04-15 17:02 . 2012-04-15 17:02 209920 ----a-w- c:\windows\system32\DBBK\C5A99A4C0DC9F0F5A95BA0C83D30A549
2012-04-15 17:02 . 2012-04-15 17:02 25088 ----a-w- c:\windows\system32\DBBK\1F59B386F652A0484A3CC0B680B1132B
2012-04-15 17:02 . 2012-04-15 17:02 313856 ----a-w- c:\windows\system32\DBBK\A6154A954F08E99D27CEA4D3B9563172
2012-04-15 17:01 . 2012-04-15 17:01 523264 ----a-w- c:\windows\system32\DBBK\967EA5B213E9984CBE270205DF37755B
2012-04-15 17:01 . 2012-04-15 17:01 53760 ----a-w- c:\windows\system32\DBBK\C9905EA4C326DAB778B9297BA5BD1889
2012-04-15 17:01 . 2012-04-15 17:01 36864 ----a-w- c:\windows\system32\DBBK\C555046481601ED19920F2D3E76B8A36
2012-04-15 17:01 . 2012-04-15 17:01 1297408 ----a-w- c:\windows\system32\DBBK\808D8A8B2A3074002852BC856D419576
2012-04-15 17:01 . 2012-04-15 17:01 1140736 ----a-w- c:\windows\system32\DBBK\7FD5532C142DB6C9CC47AA4DCF71FDEC
2012-04-15 17:01 . 2012-04-15 17:01 47104 ----a-w- c:\windows\system32\DBBK\E2FE656A79D8F4C4FD70201E7423BDA0
2012-04-15 17:01 . 2012-04-15 17:01 33792 ----a-w- c:\windows\system32\DBBK\25ECEE9FE6D1E638E3980F71E77DB32C
2012-04-15 17:01 . 2012-04-15 17:01 905216 ----a-w- c:\windows\system32\DBBK\53E054880ADBB856ECE6EB10EDBB8A32
2012-04-15 17:01 . 2012-04-15 17:01 2048 ----a-w- c:\windows\system32\DBBK\47A65753EE82949D01364105AD85D29E
2012-04-15 17:01 . 2012-04-15 17:01 42496 ----a-w- c:\windows\system32\DBBK\EB7B4563D6D20FC663F15FE8581D0BF2
2012-04-15 17:01 . 2012-04-15 17:01 453632 ----a-w- c:\windows\system32\DBBK\C3CD30495687C2A2F66A65CA6FD89BE9
2012-04-15 17:01 . 2012-04-15 17:01 125440 ----a-w- c:\windows\system32\DBBK\DAB5808E0C26740577AE67878A87136E
2012-04-15 17:01 . 2012-04-15 17:01 146432 ----a-w- c:\windows\system32\DBBK\C9708C9F3DBA3DBFB1D2FEE1E9DABAD0
2012-04-15 17:01 . 2012-04-15 17:01 71168 ----a-w- c:\windows\system32\DBBK\196B4E3F4CCCC24AF836CE58FACBB699
2012-04-15 17:01 . 2012-04-15 17:01 560128 ----a-w- c:\windows\system32\DBBK\7D4DC95A1F5E0818E74A399960569EA1
2012-04-15 17:01 . 2012-04-15 17:01 42496 ----a-w- c:\windows\system32\DBBK\583B799BB61EAFA6F19E74D35AD5D731
2012-04-15 17:01 . 2012-04-15 17:01 666624 ----a-w- c:\windows\system32\DBBK\987323F0247D023AD1AE52195540ECE0
2012-04-15 17:01 . 2012-04-15 17:01 63488 ----a-w- c:\windows\system32\DBBK\64615069F13DA2F0876E72200F40C97D
2012-04-15 17:01 . 2012-04-15 17:01 750080 ----a-w- c:\windows\system32\DBBK\E24BB41C4EFC309A14709FC127A3B847
2012-04-15 17:01 . 2012-04-15 17:01 1739776 ----a-w- c:\windows\system32\DBBK\7D44EE5DBCC3A6E90EB60EDF72B66D99
2012-04-15 17:01 . 2012-04-15 17:01 516096 ----a-w- c:\windows\system32\DBBK\BA2B249CD7C8CE15E1A8D69ECAEE5FA3
2012-04-15 17:01 . 2012-04-15 17:01 108544 ----a-w- c:\windows\system32\DBBK\F93C84B307573327779AE0DA41115957
2012-04-15 17:01 . 2012-04-15 17:01 200192 ----a-w- c:\windows\system32\DBBK\2E2C17DF779AD51A7209754685B010A1
2012-04-15 17:01 . 2012-04-15 17:01 128000 ----a-w- c:\windows\system32\DBBK\079D12BFED9E3E03D02A44BAF8FFA3A9
2012-04-15 17:01 . 2012-04-15 17:01 101376 ----a-w- c:\windows\system32\DBBK\F6C262D0278BAA06217949639A6392C6
2012-04-15 17:01 . 2012-04-15 17:01 669184 ----a-w- c:\windows\system32\DBBK\E49EF627A75C0BAD02180C97AC527C33
2012-04-15 17:01 . 2012-04-15 17:01 606720 ----a-w- c:\windows\system32\DBBK\8D47D01378347889A662D54037A988CC
2012-04-15 17:01 . 2012-04-15 17:01 494592 ----a-w- c:\windows\system32\DBBK\1E2BAC209D184BB851E1A187D8A29136
2012-04-15 17:01 . 2012-04-15 17:01 155648 ----a-w- c:\windows\system32\DBBK\F43740C5C610D0DA32A5F54F7127EB28
2012-04-15 17:01 . 2012-04-15 17:01 802304 ----a-w- c:\windows\system32\DBBK\33B0A618BA5F44E67757C561D0A935C1
2012-04-15 17:01 . 2012-04-15 17:01 93696 ----a-w- c:\windows\system32\DBBK\737AFC772243C75E6AD17A7A8E8E23F9
2012-04-15 17:01 . 2012-04-15 17:01 755200 ----a-w- c:\windows\system32\DBBK\F1E9A22C1D4F5D3AC7BA555D4E95329C
2012-04-15 17:01 . 2012-04-15 17:01 78848 ----a-w- c:\windows\system32\DBBK\45D9F6CD2469CDB6A640DD4BD2B01471
2012-04-15 17:01 . 2012-04-15 17:01 1227776 ----a-w- c:\windows\system32\DBBK\8BCF1DCE05F4494C8891F33EEA450D0A
2012-04-15 17:01 . 2012-04-15 17:01 13824 ----a-w- c:\windows\system32\DBBK\53DA0477158774940C7FB45AC70645AA
2012-04-15 17:01 . 2012-04-15 17:01 573440 ----a-w- c:\windows\system32\DBBK\E8CFE3E528FDA8AC613F9C0372FDD0A2
2012-04-15 17:01 . 2012-04-15 17:01 557104 ----a-w- c:\windows\system32\DBBK\AE09E6597777BCB6479B94CD51188F6A
2012-04-15 17:01 . 2012-04-15 17:01 151056 ----a-w- c:\windows\system32\DBBK\3ECC3DAB2F39BDE554CCD17839D69868
2012-04-15 17:01 . 2012-04-15 17:01 17408 ----a-w- c:\windows\system32\DBBK\665748B8F1770EFE09AC75D8EC020100
2012-04-15 17:01 . 2012-04-15 17:01 189952 ----a-w- c:\windows\system32\DBBK\CE292C4C10B8DB6070F262EA2733F0DC
2012-04-15 17:01 . 2012-04-15 17:01 22016 ----a-w- c:\windows\system32\DBBK\BBED6A14692C48279F88B3127206A1BA
2012-04-15 17:01 . 2012-04-15 17:01 54272 ----a-w- c:\windows\system32\DBBK\C9B89E87CB6D87FA4CC3F04EBC9F3D1C
2012-04-15 17:01 . 2012-04-15 17:01 43008 ----a-w- c:\windows\system32\DBBK\AA376FE53D239EC404AD28AA14F33564
2012-04-15 17:01 . 2012-04-15 17:01 173568 ----a-w- c:\windows\system32\DBBK\4CCF86AAD1B67168FB51A477307EC288
2012-04-15 17:01 . 2012-04-15 17:01 1910784 ----a-w- c:\windows\system32\DBBK\8896EF6DEBA34C5507A488729A1D3AF2
2012-04-15 17:01 . 2012-04-15 17:01 257024 ----a-w- c:\windows\system32\DBBK\0C0DF0F05BAEA320FA301F34E256E08B
2012-04-15 17:01 . 2012-04-15 17:01 845312 ----a-w- c:\windows\system32\DBBK\5B3D1C528CD6674FF6BD1F6720F5A686
2012-04-15 17:01 . 2012-04-15 17:01 204800 ----a-w- c:\windows\system32\DBBK\2C49B175AEE1D4364B91B531417FE583
2012-04-15 17:01 . 2012-04-15 17:01 126464 ----a-w- c:\windows\system32\DBBK\4FE6AA4422BEC5DC3995051C670FFB26
2012-04-15 17:00 . 2012-04-15 17:00 121344 ----a-w- c:\windows\system32\DBBK\8E4B58E12B3FA65ED1462846906E0B59
2012-04-15 17:00 . 2012-04-15 17:00 14336 ----a-w- c:\windows\system32\DBBK\19F75D71E4256F5113D64CE2BB66B838
2012-04-15 17:00 . 2012-04-15 17:00 17920 ----a-w- c:\windows\system32\DBBK\ADD2ADE1C2B285AB8378D2DAAF991481
2012-04-15 17:00 . 2012-04-15 17:00 1085872 ----a-w- c:\windows\system32\DBBK\68531665BB5E52759247BCC2FFC16B2E
2012-04-15 17:00 . 2012-04-15 17:00 974336 ----a-w- c:\windows\system32\DBBK\421D9645B72CD341ECDBB0FCE06C97DE
2012-04-15 17:00 . 2012-04-15 17:00 1516984 ----a-w- c:\windows\system32\DBBK\D960ABF5CDE8F435D573572D02B7EB9E
2012-04-15 17:00 . 2012-04-15 17:00 128376 ----a-w- c:\windows\system32\DBBK\457D0EE7429B7C1616F94D13E331713C
2012-04-15 17:00 . 2012-04-15 17:00 1064296 ----a-w- c:\windows\system32\DBBK\1A8B4857F2CAAED89E16B1ED1F24930D
2012-04-15 17:00 . 2012-04-15 17:00 1247600 ----a-w- c:\windows\system32\DBBK\BC70AB7AC2FA8F7534BCE3E13256C07F
2012-04-15 17:00 . 2012-04-15 17:00 17324928 ----a-w- c:\windows\system32\DBBK\4A68EA31FF624A927E6D3B63FB695CFD
2012-04-15 17:00 . 2012-04-15 17:00 3004800 ----a-w- c:\windows\system32\DBBK\8385126C3A4654CD926435AB4183A504
2012-04-15 17:00 . 2012-04-15 17:00 48512 ----a-w- c:\windows\system32\DBBK\7D3471AAC8AAB05A32E194FC624F08FA
2012-04-15 17:00 . 2012-04-15 17:00 1537536 ----a-w- c:\windows\system32\DBBK\28CAAA8B3DAC4604B6871F311C6B9F49
2012-04-15 17:00 . 2012-04-15 17:00 2136064 ----a-w- c:\windows\system32\DBBK\5003ADEC6FF342D5C0BBAB94B76FE5E0
2012-04-15 17:00 . 2012-04-15 17:00 1811968 ----a-w- c:\windows\system32\DBBK\816FA57475CE5032E063BF69BFCD4C85
2012-04-15 17:00 . 2012-04-15 17:00 551424 ----a-w- c:\windows\system32\DBBK\02A2ED8497F437EA200DF3ACED255AFE
2012-04-15 17:00 . 2012-04-15 17:00 22528 ----a-w- c:\windows\system32\DBBK\7B3FD36359DE5D2EE49D213CCAD13427
2012-04-15 17:00 . 2012-04-15 17:00 38912 ----a-w- c:\windows\system32\DBBK\8444A7364D6877922049E99BF4B78C5C
2012-04-15 17:00 . 2012-04-15 17:00 2628608 ----a-w- c:\windows\system32\DBBK\C8CB301BF896C7C556BBE963FADF5BB6
2012-04-15 17:00 . 2012-04-15 17:00 4888576 ----a-w- c:\windows\system32\DBBK\2992932C1AB1D29A1A4A9E8CB8530CBF
2012-04-15 17:00 . 2012-04-15 17:00 907776 ----a-w- c:\windows\system32\DBBK\3B28814B74E898750A139FA4CBDFDCF7
2012-04-15 17:00 . 2012-04-15 17:00 801280 ----a-w- c:\windows\system32\DBBK\8B57A1AD493653BB57F281FE75DD175B
2012-04-15 17:00 . 2012-04-15 17:00 172544 ----a-w- c:\windows\system32\DBBK\971A36C4827AD1AE2A54E6407478921A
2012-04-15 17:00 . 2012-04-15 17:00 189952 ----a-w- c:\windows\system32\DBBK\A399514D3B28C9A3453A486BBAAFF1C7
2012-04-15 17:00 . 2012-04-15 17:00 247808 ----a-w- c:\windows\system32\DBBK\3CC04CB09FAFAD87942437FDDEE11EE3
2012-04-15 17:00 . 2012-04-15 17:00 1131008 ----a-w- c:\windows\system32\DBBK\5EFDBEAECD69E250E5BA4A2950203CD4
2012-04-15 16:59 . 2012-04-15 16:59 115712 ----a-w- c:\windows\system32\DBBK\529879612A7FAE235914E3AA6A9A669C
2012-04-15 16:59 . 2012-04-15 16:59 115200 ----a-w- c:\windows\system32\DBBK\52799EAD792B0E9AE7FD4BA5BD18FE5C
2012-04-15 16:59 . 2012-04-15 16:59 412160 ----a-w- c:\windows\system32\DBBK\3A11396EAC2414012155AB14E5C1E332
2012-04-15 16:59 . 2012-04-15 16:59 36352 ----a-w- c:\windows\system32\DBBK\3360F843C598DB57FFEB5A343114A744
2012-04-15 16:59 . 2012-04-15 16:59 27648 ----a-w- c:\windows\system32\DBBK\FB633DCC8664E4CCACF562DB5BAE38CF
2012-04-15 16:59 . 2012-04-15 16:59 9728 ----a-w- c:\windows\system32\DBBK\7DF186D86CF8C571A12AAB788C777F84
2012-04-15 16:59 . 2012-04-15 16:59 51712 ----a-w- c:\windows\system32\DBBK\A8CDF3768604FF95B54669E20053D569
2012-04-15 16:59 . 2012-04-15 16:59 18944 ----a-w- c:\windows\system32\DBBK\8258362DDB18B644A82D8B5061AD9426
2012-04-15 16:59 . 2012-04-15 16:59 25600 ----a-w- c:\windows\system32\DBBK\8C80EA0385219822BCE27485F4108444
2012-04-15 16:59 . 2012-04-15 16:59 487936 ----a-w- c:\windows\system32\DBBK\E25640558E3EE4FE6201A9928990BA2A
2012-04-15 16:59 . 2012-04-15 16:59 26112 ----a-w- c:\windows\system32\DBBK\5A8BF4E8810541C23F4067536FB48CA3
2012-04-15 16:59 . 2012-04-15 16:59 14848 ----a-w- c:\windows\system32\DBBK\1EBE9524683C7C4EED8B8BC93FB6FBCC
2012-04-15 16:59 . 2012-04-15 16:59 17408 ----a-w- c:\windows\system32\DBBK\88C170086371CC5716010AF223F6F780
2012-04-15 16:59 . 2012-04-15 16:59 47616 ----a-w- c:\windows\system32\DBBK\9D6AA2ADD3F704134EE89C1E58BDFD1B
2012-04-15 16:59 . 2012-04-15 16:59 1025536 ----a-w- c:\windows\system32\DBBK\209A3B1901B83AEB8527ED211CCE9E4C
2012-04-15 16:59 . 2012-04-15 16:59 236544 ----a-w- c:\windows\system32\DBBK\487F44B08EFEAF5AD087878357B9403D
2012-04-15 16:59 . 2012-04-15 16:59 35328 ----a-w- c:\windows\system32\DBBK\387A8A473ECC5BA02CF453277C1F3274
2012-04-15 16:59 . 2012-04-15 16:59 1914368 ----a-w- c:\windows\system32\DBBK\3026418A50C5B4761BEFA632CEDB7406
2012-04-15 16:59 . 2012-04-15 16:59 4608 ----a-w- c:\windows\system32\DBBK\4F6E72B34ED3DC53DCC5E8708E60B61F
2012-04-15 16:59 . 2012-04-15 16:59 405504 ----a-w- c:\windows\system32\DBBK\D16D818E9930A6E5B4F6476DD0998D1A
2012-04-15 16:59 . 2012-04-15 16:59 3179520 ----a-w- c:\windows\system32\DBBK\CF87A1DE791347E75B98885214CED2B8
2012-04-15 16:59 . 2012-04-15 16:59 77624 ----a-w- c:\windows\system32\DBBK\5A8A142C100F0C2F460E6EB34764D1C7
2012-04-15 16:59 . 2012-04-15 16:59 896800 ----a-w- c:\windows\system32\DBBK\697704BC00DAF64AAFFF4BD05E3301F3
2012-04-15 16:59 . 2012-04-15 16:59 3786552 ----a-w- c:\windows\system32\DBBK\D41282F47CCE5137FA8751A40982444C
2012-04-15 16:59 . 2012-04-15 16:59 933856 ----a-w- c:\windows\system32\DBBK\D91EA1F35A0FFA33F06B3A517624BC0E
2012-04-15 16:59 . 2012-04-15 16:59 1307216 ----a-w- c:\windows\system32\DBBK\E7CD1222BC61B64945DD9FD7F022B8EA
2012-04-15 16:59 . 2012-04-15 16:59 229688 ----a-w- c:\windows\system32\DBBK\35176FA09A0FC58DB630991A81A0BA39
2012-04-15 16:59 . 2012-04-15 16:59 2514912 ----a-w- c:\windows\system32\DBBK\515AD14CD8EB64AF841C6DB381A4BC9E
2012-04-15 16:59 . 2012-04-15 16:59 409960 ----a-w- c:\windows\system32\DBBK\BC204CE4CD9D08D6B178DFC77095B850
2012-04-15 16:59 . 2012-04-15 16:59 476520 ----a-w- c:\windows\system32\DBBK\1D114E646E5CC8B6D18238EBA210F9AE
2012-04-15 16:59 . 2012-04-15 16:59 121704 ----a-w- c:\windows\system32\DBBK\12500E86FAFEB5CB22C0ABA370CFFFBD
2012-04-15 16:59 . 2012-04-15 16:59 120168 ----a-w- c:\windows\system32\DBBK\C0770E006D0556D359F586ED86EAD004
2012-04-15 16:59 . 2012-04-15 16:59 794824 ----a-w- c:\windows\system32\DBBK\DB56B9251BC527B7EE89A6904C2B7A0F
2012-04-15 16:59 . 2012-04-15 16:59 421224 ----a-w- c:\windows\system32\DBBK\F71A731E236FB55E3585DC5391D286D3
2012-04-15 16:59 . 2012-04-15 16:59 315856 ----a-w- c:\windows\system32\DBBK\546AC7773CAE4419505A66273A299702
2012-04-15 16:59 . 2012-04-15 16:59 361712 ----a-w- c:\windows\system32\DBBK\5379A996F953DA65F40CC4E848DC7590
2012-04-15 16:59 . 2012-04-15 16:59 284968 ----a-w- c:\windows\system32\DBBK\91ED25E710E8B86E13E4D6ECD3FB75D8
2012-04-15 16:59 . 2012-04-15 16:59 171144 ----a-w- c:\windows\system32\DBBK\7A6ECC3DCE5D7E7A54C10E226A1CC60F
2012-04-15 16:59 . 2012-04-15 16:59 137696 ----a-w- c:\windows\system32\DBBK\C649C89DB9712597FA42B43B8249F2B5
2012-04-15 16:59 . 2012-04-15 16:59 1559560 ----a-w- c:\windows\system32\DBBK\8AC570284E6B4AC48107008CD04561E9
2012-04-15 16:59 . 2012-04-15 16:59 18792 ----a-w- c:\windows\system32\DBBK\B37A7C2B855FA1523A6840246C250FB2
2012-04-15 16:59 . 2012-04-15 16:59 269672 ----a-w- c:\windows\system32\DBBK\FE88E72F1B01EF8334E47EC44117559F
2012-04-15 16:59 . 2012-04-15 16:59 572760 ----a-w- c:\windows\system32\DBBK\7B46A076184B73AEDC1A66A71D9131E8
2012-04-15 16:59 . 2012-04-15 16:59 46592 ----a-w- c:\windows\system32\DBBK\EED5AE4EF38893DD1743A95760C98704
2012-04-15 16:59 . 2012-04-15 16:59 70504 ----a-w- c:\windows\system32\DBBK\26D2B399E87F2DF5DBCE2DAC24D94CFF
2012-04-15 16:59 . 2012-04-15 16:59 34304 ----a-w- c:\windows\system32\DBBK\93117349047DDB7B3FF24EB006207606
2012-04-15 16:59 . 2012-04-15 16:59 46952 ----a-w- c:\windows\system32\DBBK\E5210EB71E2017951050550067C30093
2012-04-15 16:59 . 2012-04-15 16:59 114688 ----a-w- c:\windows\system32\DBBK\F68CAFF425A9F37E498193BDDC5CC652
2012-04-15 16:59 . 2012-04-15 16:59 403456 ----a-w- c:\windows\system32\DBBK\B334FCA2F0878C2AF77826211DBE55BB
2012-04-15 16:59 . 2012-04-15 16:59 630784 ----a-w- c:\windows\system32\DBBK\25279D7FAF0F1BE97EA477EB939A1469
2012-04-15 16:59 . 2012-04-15 16:59 5025792 ----a-w- c:\windows\system32\DBBK\2228FA05BCC728E116663A5E11ED6301
2012-04-15 16:59 . 2012-04-15 16:59 790728 ----a-w- c:\windows\system32\DBBK\419EA3321D6F560EF1631E8600C4BBBA
2012-04-15 16:59 . 2012-04-15 16:59 270536 ----a-w- c:\windows\system32\DBBK\A8EE13C557CC17D40FB720F31F4483F3
2012-04-15 16:59 . 2012-04-15 16:59 303104 ----a-w- c:\windows\system32\DBBK\1D4DA021B0AD837B35AFB772CC7C636D
2012-04-15 16:59 . 2012-04-15 16:59 216976 ----a-w- c:\windows\system32\DBBK\EECDC93FD0907E42753370016497F9E4
2012-04-15 16:59 . 2012-04-15 16:59 258048 ----a-w- c:\windows\system32\DBBK\6DB969DF540BC71722848940D180AC08
2012-04-15 16:59 . 2012-04-15 16:59 428032 ----a-w- c:\windows\system32\DBBK\34C07D9BED227103E32E21FBCC2F1FBD
2012-04-15 16:59 . 2012-04-15 16:59 471040 ----a-w- c:\windows\system32\DBBK\333244713F41C02DE8502061C0A11622
2012-04-15 16:59 . 2012-04-15 16:59 716800 ----a-w- c:\windows\system32\DBBK\6ED9B473AF5238E6C8EDD4CD46F70E1F
2012-04-15 16:59 . 2012-04-15 16:59 79744 ----a-w- c:\windows\system32\DBBK\95408ABE169FA532CDDDF93B14F382F0
2012-04-15 16:59 . 2012-04-15 16:59 31232 ----a-w- c:\windows\system32\DBBK\1D1EAA16D193C6A2D45981ED3914D22A
2012-04-15 16:59 . 2012-04-15 16:59 261632 ----a-w- c:\windows\system32\DBBK\5F3F1BF5F5B43293953FC915845910C4
2012-04-15 16:59 . 2012-04-15 16:59 2927616 ----a-w- c:\windows\system32\DBBK\35CAB7CF3754C41AEB69DCE1D5ACA5A4
2012-04-15 16:59 . 2012-04-15 16:59 8856 ----a-w- c:\windows\system32\DBBK\FE5F2895422BA362B5AAF7B69144BBCA
2012-04-15 16:59 . 2012-04-15 16:59 395912 ----a-w- c:\windows\system32\DBBK\93789B0CC6D3849B2B20646A6AFB38A8
2012-04-15 16:59 . 2012-04-15 16:59 854016 ----a-w- c:\windows\system32\DBBK\937FBD23997A91AF923D5E89286126BD
2012-04-15 16:59 . 2012-04-15 16:59 121632 ----a-w- c:\windows\system32\DBBK\0C06A80DFFA51E0EB9C5CE3DF703BC46
2012-04-15 16:59 . 2012-04-15 16:59 146936 ----a-w- c:\windows\system32\DBBK\BEB7F69B626A2924DD3E55848A024230
2012-04-15 16:59 . 2012-04-15 16:59 191256 ----a-w- c:\windows\system32\DBBK\5BE19E58DFFA6D4A2CE94FC343406660
2012-04-15 16:59 . 2012-04-15 16:59 120096 ----a-w- c:\windows\system32\DBBK\CE652D887DE875B24BE66901C8C05F62
2012-04-15 16:59 . 2012-04-15 16:59 419616 ----a-w- c:\windows\system32\DBBK\E43C3D10E560DBEACFBC12BF888703A7
2012-04-15 16:59 . 2012-04-15 16:59 2048000 ----a-w- c:\windows\system32\DBBK\5B3FA17E1CD6FBBDF41AC34DAEECC256
2012-04-15 16:59 . 2012-04-15 16:59 265720 ----a-w- c:\windows\system32\DBBK\3D811BF538D6F359735D757C94F484B6
2012-04-15 16:59 . 2012-04-15 16:59 356032 ----a-w- c:\windows\system32\DBBK\A771C8752B8D3BD8E5F89CD61FB25B23
2012-04-15 16:59 . 2012-04-15 16:59 264368 ----a-w- c:\windows\system32\DBBK\EE4C851C3CC9875A48A142FD948DADF6
2012-04-15 16:59 . 2012-04-15 16:59 180224 ----a-w- c:\windows\system32\DBBK\A5B43E5C10EB7485D3380CA21A60658D
2012-04-15 16:59 . 2012-04-15 16:59 3190784 ----a-w- c:\windows\system32\DBBK\162AC985F452724D8CE7CCEFC842809F
2012-04-15 16:59 . 2012-04-15 16:59 5998080 ----a-w- c:\windows\system32\DBBK\624A8FC27001639D08F3558FBB607187
2012-04-15 16:59 . 2012-04-15 16:59 147424 ----a-w- c:\windows\system32\DBBK\E97F40AF27DFCEDE94A808D2BE093C7B
2012-04-15 16:59 . 2012-04-15 16:59 58880 ----a-w- c:\windows\system32\DBBK\E1BD96A7F3DC962617142CCB58E38C0A
2012-04-15 16:59 . 2012-04-15 16:59 81552 ----a-w- c:\windows\system32\DBBK\4251D612FB90E8C261994558E66EF318
2012-04-15 16:59 . 2012-04-15 16:59 425984 ----a-w- c:\windows\system32\DBBK\5A7A33F7F9DFC0C0A8B8E000F4D9D898
2012-04-15 16:59 . 2012-04-15 16:59 518736 ----a-w- c:\windows\system32\DBBK\BEFC97125CCD70D25A7FBCE8CB764032
2012-04-15 16:59 . 2012-04-15 16:59 270336 ----a-w- c:\windows\system32\DBBK\B89CB7F3F1A1E2807E708F5435DEB13D
2012-04-15 16:59 . 2012-04-15 16:59 286992 ----a-w- c:\windows\system32\DBBK\FF8976DC06BBFA1114D4A92515AC3373
2012-04-15 16:59 . 2012-04-15 16:59 235504 ----a-w- c:\windows\system32\DBBK\F9A218A97E1C8C8BE0A00122EF3F1C58
2012-04-15 16:59 . 2012-04-15 16:59 18720 ----a-w- c:\windows\system32\DBBK\712FA98F6794152B349FD74A702F40F7
2012-04-15 16:59 . 2012-04-15 16:59 385896 ----a-w- c:\windows\system32\DBBK\B32F726A1B50E9A6F158100DA93C8B12
2012-04-15 16:59 . 2012-04-15 16:59 270112 ----a-w- c:\windows\system32\DBBK\68A84E7D86995088127F30E5D118C4E2
2012-04-15 16:59 . 2012-04-15 16:59 432480 ----a-w- c:\windows\system32\DBBK\BDDBA3A308735D45D907FD5C2BB9633B
2012-04-15 16:59 . 2012-04-15 16:59 3831480 ----a-w- c:\windows\system32\DBBK\DAACA6CB21B84710AC51D7B1C1DC4FF1
2012-04-15 16:59 . 2012-04-15 16:59 207464 ----a-w- c:\windows\system32\DBBK\D6553CBA25827AD2E0FBBBD837410869
2012-04-15 16:59 . 2012-04-15 16:59 70432 ----a-w- c:\windows\system32\DBBK\A71A91C57D2832C5D6D3F1917830BEE8
2012-04-15 16:59 . 2012-04-15 16:59 46880 ----a-w- c:\windows\system32\DBBK\D6F5D2245D53B5F5D3939137A7EC97EC
2012-04-15 16:59 . 2012-04-15 16:59 379456 ----a-w- c:\windows\system32\DBBK\1704625273FF804B969B3269E2CEE2FF
2012-04-15 16:59 . 2012-04-15 16:59 12136 ----a-w- c:\windows\system32\DBBK\54B21273AAF8A0BA1C06494FFB21BB29
2012-04-15 16:59 . 2012-04-15 16:59 23912 ----a-w- c:\windows\system32\DBBK\515D0E89532FA76488BE97427DE4207F
2012-04-15 16:59 . 2012-04-15 16:59 205152 ----a-w- c:\windows\system32\DBBK\101C8FE3C4B3A3A097CFA5B1E1C2504A
2012-04-15 16:59 . 2012-04-15 16:59 100104 ----a-w- c:\windows\system32\DBBK\06912FF672025AD15787D4E758DE6EF0
2012-04-15 16:59 . 2012-04-15 16:59 13672 ----a-w- c:\windows\system32\DBBK\3DC635B66DD7412E1C9C3A77B8D78F25
2012-04-15 16:59 . 2012-04-15 16:59 206152 ----a-w- c:\windows\system32\DBBK\01BB3D883BA520FD45D62742DC884146
2012-04-15 16:59 . 2012-04-15 16:59 456448 ----a-w- c:\windows\system32\DBBK\32D2C44247C8F9CAC70DE1F3AE121964
2012-04-15 16:59 . 2012-04-15 16:59 583680 ----a-w- c:\windows\system32\DBBK\DE0FFD802CE38CD3728E26CDA9A7E002
2012-04-15 16:59 . 2012-04-15 16:59 107320 ----a-w- c:\windows\system32\DBBK\C57882B378F1FF59814BB48B4545E2FD
2012-04-15 16:59 . 2012-04-15 16:59 403912 ----a-w- c:\windows\system32\DBBK\7742FAF142741769827531439D586446
2012-04-15 16:59 . 2012-04-15 16:59 591896 ----a-w- c:\windows\system32\DBBK\9CD59757A3F724436F96FAAA543D5733
2012-04-15 16:59 . 2012-04-15 16:59 112952 ----a-w- c:\windows\system32\DBBK\5B26F3430942DF182DE32797BD7D9D8A
2012-04-15 16:59 . 2012-04-15 16:59 805376 ----a-w- c:\windows\system32\DBBK\B3A5EC6B6B6673DB7E87C2BCDBDDC074
2012-04-15 16:59 . 2012-04-15 16:59 140232 ----a-w- c:\windows\system32\DBBK\FF9DF3B06348FE9AAAA5C11EA80A8017
2012-04-15 16:59 . 2012-04-15 16:59 854016 ----a-w- c:\windows\system32\DBBK\53223B673A3FA2F9A4D1C31C8D3F6CD8
2012-04-15 16:59 . 2012-04-15 16:59 771424 ----a-w- c:\windows\system32\DBBK\E5F7C30EDF0892667933BE879F067D67
2012-04-15 16:59 . 2012-04-15 16:59 59456 ----a-w- c:\windows\system32\DBBK\E22385F64BDF0AD81157479496E33C4A
2012-04-15 16:59 . 2012-04-15 16:59 204800 ----a-w- c:\windows\system32\DBBK\341B1F37EB9E45B7386732479D2CA73B
2012-04-15 16:58 . 2012-04-15 16:58 711640 ----a-w- c:\windows\system32\DBBK\570641D4FA0E8CD53A5893F058BDD26F
2012-04-15 16:57 . 2012-04-15 16:57 1966464 ----a-w- c:\windows\system32\DBBK\8E073C9F0388B25ED8EBF940AEC780CE
2012-04-15 16:57 . 2012-04-15 16:57 130384 ----a-w- c:\windows\system32\DBBK\C5A75EB48E2344ABDC162BDA79E16841
2012-04-15 16:57 . 2012-04-15 16:57 58632 ----a-w- c:\windows\system32\DBBK\9D68D0F85185DB1712626CE7943D4349
2012-04-15 16:57 . 2012-04-15 16:57 121256 ----a-w- c:\windows\system32\DBBK\36B47B1E9C537F8F2B4481084B8F7D22
2012-04-15 16:57 . 2012-04-15 16:57 157696 ----a-w- c:\windows\system32\DBBK\43BE3B9CA431F88E049928DC45C4365C
2012-04-15 16:57 . 2012-04-15 16:57 28424 ----a-w- c:\windows\system32\DBBK\B3C157A66ECDBCD3570E2DA139225589
2012-04-15 16:57 . 2012-04-15 16:57 197632 ----a-w- c:\windows\system32\DBBK\459A04CCA068CAB8799C2F84068C222D
2012-04-15 16:57 . 2012-04-15 16:57 91648 ----a-w- c:\windows\system32\DBBK\2CD77B980B2CC3D655589A2E315AAB57
2012-04-15 16:57 . 2012-04-15 16:57 86 ----a-w- c:\windows\system32\DBBK\D8555A09D5862497F4156E9E4CCC808B
2012-04-15 16:57 . 2012-04-15 16:57 20320 ----a-w- c:\windows\system32\DBBK\8F6ADD0EB80120160BE117459A1BBED7
2012-04-15 16:57 . 2012-04-15 16:57 24064 ----a-w- c:\windows\system32\DBBK\2875B386B45B8A77E2343C5E129AE50C
2012-04-15 16:57 . 2012-04-15 16:57 80896 ----a-w- c:\windows\system32\DBBK\E8F6851E4600CD3674422487EE240941
2012-04-15 16:57 . 2012-04-15 16:57 20480 ----a-w- c:\windows\system32\DBBK\C5413BC4F10CEB4C3070BBF04D324117
2012-04-15 16:57 . 2012-04-15 16:57 165376 ----a-w- c:\windows\system32\DBBK\DBC02D918FFF1CAD628ACBE0C0EAA8E8
2012-04-15 16:57 . 2012-04-15 16:57 312832 ----a-w- c:\windows\system32\DBBK\C7952D0A4C43A965A1741916BB134751
2012-04-15 16:57 . 2012-04-15 16:57 392192 ----a-w- c:\windows\system32\DBBK\2D11BC8B460957E62E4420373A0D8BDA
2012-04-15 16:57 . 2012-04-15 16:57 76800 ----a-w- c:\windows\system32\DBBK\8BC9DB92C4B2F3BE89185BEAB2AFC1F6
2012-04-15 16:57 . 2012-04-15 16:57 337408 ----a-w- c:\windows\system32\DBBK\DB67C7C62038BDE813CB6486581A7611
2012-04-15 16:57 . 2012-04-15 16:57 2146304 ----a-w- c:\windows\system32\DBBK\2DDEA2C345DA5BC589EFD398F220DB0E
2012-04-15 16:57 . 2012-04-15 16:57 86528 ----a-w- c:\windows\system32\DBBK\A6CD6B3F71E13E2E45B727FB8A47EA87
2012-04-15 16:57 . 2012-04-15 16:57 10240 ----a-w- c:\windows\system32\DBBK\A5D237B8673025B052C0E6FDB6A883E8
2012-04-15 16:57 . 2012-04-15 16:57 164352 ----a-w- c:\windows\system32\DBBK\E1AC89F6C5252057E6062843E36A6701
2012-04-15 16:57 . 2012-04-15 16:57 177664 ----a-w- c:\windows\system32\DBBK\8EE6BDE1D572677AA35707C52C585F75
2012-04-15 16:57 . 2012-04-15 16:57 229376 ----a-w- c:\windows\system32\DBBK\A4EE3D80E31D5A3CA8EBE6A67A06CEC0
2012-04-15 16:56 . 2012-04-15 16:56 10992640 ----a-w- c:\windows\system32\DBBK\EC528C1EC2C0318A1612456E438D6963
2012-04-15 16:56 . 2012-04-15 16:56 449744 ----a-w- c:\windows\system32\DBBK\2F5E3784FE64C1A1927621ACAFC75548
2012-04-15 16:56 . 2012-04-15 16:56 32072 ----a-w- c:\windows\system32\DBBK\ED797D8DC2C92401985D162E42FFA450
2012-04-15 16:56 . 2012-04-15 16:56 110928 ----a-w- c:\windows\system32\DBBK\E955300DF949977878C705EC8681009A
2012-04-15 16:56 . 2012-04-15 16:56 95560 ----a-w- c:\windows\system32\DBBK\24FCC3CDAE327F632CB8696E1E40F772
2012-04-15 16:56 . 2012-04-15 16:56 156728 ----a-w- c:\windows\system32\DBBK\99B9343280AF6A4C0F27CF2E28E94BBF
2012-04-15 16:56 . 2012-04-15 16:56 1160008 ----a-w- c:\windows\system32\DBBK\C1B5307377C98F87E0152C44E9FF8DEE
2012-04-15 16:56 . 2012-04-15 16:56 77112 ----a-w- c:\windows\system32\DBBK\3D7D2E825C63FF501E896CF008C70D75
2012-04-15 16:56 . 2012-04-15 16:56 49152 ----a-w- c:\windows\system32\DBBK\F7637FF9B31E3D0300EF1C0E08BD5FD1
2012-04-15 16:56 . 2012-04-15 16:56 22528 ----a-w- c:\windows\system32\DBBK\D30117DB43F48C4DBA9B41C08156A339
2012-04-15 16:56 . 2012-04-15 16:56 692736 ----a-w- c:\windows\system32\DBBK\E3D5E244807AD655787FCD25477CC1BC
2012-04-15 16:56 . 2012-04-15 16:56 817664 ----a-w- c:\windows\system32\DBBK\523214677C1D31D7991632C6D11E6B42
2012-04-15 16:56 . 2012-04-15 16:56 171520 ----a-w- c:\windows\system32\DBBK\02530B0B7E048DD5AC8D52DAEACAEB2B
2012-04-15 16:56 . 2012-04-15 16:56 27648 ----a-w- c:\windows\system32\DBBK\F2ED6D00921CA138289E5E0CCB9ABF87
2012-04-15 16:56 . 2012-04-15 16:56 195072 ----a-w- c:\windows\system32\DBBK\B63E24E9271E99FD4540E3CA22A937DA
2012-04-15 16:56 . 2012-04-15 16:56 284672 ----a-w- c:\windows\system32\DBBK\C02AA67276FEE0C15CC4D6D616BDE95E
2012-04-15 16:56 . 2012-04-15 16:56 5504 ----a-w- c:\windows\system32\DBBK\F456E973590D663B1073E9C463B40932
2012-04-15 16:56 . 2012-04-15 16:56 190976 ----a-w- c:\windows\system32\DBBK\CC5BF60E9D3F181C0B62AC91AD8634B8
2012-04-15 16:56 . 2012-04-15 16:56 1328128 ----a-w- c:\windows\system32\DBBK\0AE0C4955E1DE29CCDC9DA1B816FE5EE
2012-04-15 16:56 . 2012-04-15 16:56 288256 ----a-w- c:\windows\system32\DBBK\6383C60EC0133B14F5705F96369421B2
2012-04-15 16:56 . 2012-04-15 16:56 84480 ----a-w- c:\windows\system32\DBBK\8063046AA70B97CA9985672B8848FB2E
2012-04-15 16:56 . 2012-04-15 16:56 91136 ----a-w- c:\windows\system32\DBBK\04B88428A872390D235BE52D38A9D4EF
2012-04-15 16:56 . 2012-04-15 16:56 35328 ----a-w- c:\windows\system32\DBBK\1CBF15FDB0310345A68972EB5C5B948F
2012-04-15 16:56 . 2012-04-15 16:56 280576 ----a-w- c:\windows\system32\DBBK\7CCCFCA7510684768DA22092D1FA4DB2
2012-04-15 16:56 . 2012-04-15 16:56 7680 ----a-w- c:\windows\system32\DBBK\81600E2E27ED61427AAD865B9BCDDB9D
2012-04-15 16:56 . 2012-04-15 16:56 1401344 ----a-w- c:\windows\system32\DBBK\0241CB16136B9A4939CA0395768AE286
2012-04-15 16:56 . 2012-04-15 16:56 1549312 ----a-w- c:\windows\system32\DBBK\465DBF63A5049E4DB4BC5C12FFE781CB
2012-04-15 16:56 . 2012-04-15 16:56 227328 ----a-w- c:\windows\system32\DBBK\942E57152F1CD0533644AB30EF1A4728
2012-04-15 16:56 . 2012-04-15 16:56 848384 ----a-w- c:\windows\system32\DBBK\C2D6A4475B87651D5909E364439FDA52
2012-04-15 16:56 . 2012-04-15 16:56 32768 ----a-w- c:\windows\system32\DBBK\2395CDB116BD8B5B88419A145C40FCD9
2012-04-15 16:56 . 2012-04-15 16:56 427520 ----a-w- c:\windows\system32\DBBK\236F286E103FD44BD85FDD93097FD5DD
2012-04-15 16:56 . 2012-04-15 16:56 64000 ----a-w- c:\windows\system32\DBBK\1C7F1C3EA5894995E6C563E9AE9F029F
2012-04-15 16:56 . 2012-04-15 16:56 18432 ----a-w- c:\windows\system32\DBBK\8EE566982477BC5886FE622CEBEE9C86
2012-04-15 16:56 . 2012-04-15 16:56 23552 ----a-w- c:\windows\system32\DBBK\AE796D3FD1C69CE62BB6AFACDFB950AA
2012-04-15 16:56 . 2012-04-15 16:56 301568 ----a-w- c:\windows\system32\DBBK\674B0C0F6A448EB185CAAB9C51D44032
2012-04-15 16:56 . 2012-04-15 16:56 12288 ----a-w- c:\windows\system32\DBBK\BF3D6F7D929E018703BE2D4556DD679A
2012-04-15 16:56 . 2012-04-15 16:56 17920 ----a-w- c:\windows\system32\DBBK\C2A12B061F591E093E3FD99D75811398
2012-04-15 16:56 . 2012-04-15 16:56 159744 ----a-w- c:\windows\system32\DBBK\ADB45A977BD9E45790CA496DB84BA148
2012-04-15 16:56 . 2012-04-15 16:56 281600 ----a-w- c:\windows\system32\DBBK\DAE616813F2371B85F8E36D6F9AE4AED
2012-04-15 16:56 . 2012-04-15 16:56 80896 ----a-w- c:\windows\system32\DBBK\BD626EF05967D14C772B8096292731A3
2012-04-15 16:56 . 2012-04-15 16:56 1750528 ----a-w- c:\windows\system32\DBBK\3D6F22551D422F97AACB0BB927E4C846
2012-04-15 16:56 . 2012-04-15 16:56 229376 ----a-w- c:\windows\system32\DBBK\ABA457BFC7EC0B5E130B2F1E0F549DFF
2012-04-15 16:56 . 2012-04-15 16:56 573440 ----a-w- c:\windows\system32\DBBK\7D34AF98A706230CC2DEDFE0CABF87AB
2012-04-15 16:56 . 2012-04-15 16:56 466944 ----a-w- c:\windows\system32\DBBK\7A4048D990AAB3D98DD6572DF94EBDC3
2012-04-15 16:56 . 2012-04-15 16:56 105984 ----a-w- c:\windows\system32\DBBK\735263DA17BF5BAF9CCD483843BF9D5A
2012-04-15 16:56 . 2012-04-15 16:56 1137664 ----a-w- c:\windows\system32\DBBK\DC6612A9EE015A36BA2A27BC9CC12537
2012-04-15 16:56 . 2012-04-15 16:56 81920 ----a-w- c:\windows\system32\DBBK\9F689E989ECB1E9E0C185111E572EA13
2012-04-15 16:56 . 2012-04-15 16:56 2494464 ----a-w- c:\windows\system32\DBBK\EAB975DB4C2805927FE5BD047D05C9AA
2012-04-15 16:56 . 2012-04-15 16:56 164864 ----a-w- c:\windows\system32\DBBK\C68B93C5124F6B283A725C857ED9C068
2012-04-15 16:56 . 2012-04-15 16:56 91136 ----a-w- c:\windows\system32\DBBK\F6B43AD86FCCC66A254D3BB29BA94BD1
2012-04-15 16:56 . 2012-04-15 16:56 167936 ----a-w- c:\windows\system32\DBBK\069766726AAABAD9AC53F7038256ABA4
2012-04-15 16:56 . 2012-04-15 16:56 107008 ----a-w- c:\windows\system32\DBBK\630A31F277349109299E590856A4B004
2012-04-15 16:56 . 2012-04-15 16:56 23040 ----a-w- c:\windows\system32\DBBK\4DDACA8A66B95ABA02812FF3C13DE198
2012-04-15 16:56 . 2012-04-15 16:56 193536 ----a-w- c:\windows\system32\DBBK\C140F86932B5B61F54A4D836E2D34AB2
2012-04-15 16:56 . 2012-04-15 16:56 48488 ----a-w- c:\windows\system32\DBBK\693C7694D451C51BEAE530F75A18E0DF
2012-04-15 16:56 . 2012-04-15 16:56 46592 ----a-w- c:\windows\system32\DBBK\B2B3DAE040F6B5AE1DF52B0CD7631A18
2012-04-15 16:56 . 2012-04-15 16:56 65024 ----a-w- c:\windows\system32\DBBK\E24FE90E9DE8D8AE70E59F7B01675DEF
2012-04-15 16:56 . 2012-04-15 16:56 30720 ----a-w- c:\windows\system32\DBBK\7069AAB8536F29ED7323140973A2894B
2012-04-15 16:56 . 2012-04-15 16:56 49512 ----a-w- c:\windows\system32\DBBK\E2AE392170BDD664739BB09552D833DC
2012-04-15 16:56 . 2012-04-15 16:56 20992 ----a-w- c:\windows\system32\DBBK\F8F03D206F7D5811D630349A23E9B9B9
2012-04-15 16:56 . 2012-04-15 16:56 55296 ----a-w- c:\windows\system32\DBBK\856CFFCD835528136367BB1A8FE1DB87
2012-04-15 16:56 . 2012-04-15 16:56 821608 ----a-w- c:\windows\system32\DBBK\57EDB35EA2FECA88F8B17C0C095C9A56
2012-04-15 16:56 . 2012-04-15 16:56 66560 ----a-w- c:\windows\system32\DBBK\5BB8C06EB5EA4BA22EE8A678F2D79B25
2012-04-15 16:56 . 2012-04-15 16:56 28672 ----a-w- c:\windows\system32\DBBK\6FA41E0C86EF049A12C05CA4BBA8F9AF
2012-04-15 16:56 . 2012-04-15 16:56 142336 ----a-w- c:\windows\system32\DBBK\2041012726EF7C95ED51C15C56545A7F
2012-04-15 16:56 . 2012-04-15 16:56 90112 ----a-w- c:\windows\system32\DBBK\703FFD301AB900B047337C5D40FD6F96
2012-04-15 16:56 . 2012-04-15 16:56 399872 ----a-w- c:\windows\system32\DBBK\ADDB05C93272A62606599B24730BD645
2012-04-15 16:56 . 2012-04-15 16:56 120320 ----a-w- c:\windows\system32\DBBK\C335EC1182AC10B188705554E0BC1186
2012-04-15 16:56 . 2012-04-15 16:56 91648 ----a-w- c:\windows\system32\DBBK\DCEABBA22E12CC44C2E7785C0EB9C6E3
2012-04-15 16:56 . 2012-04-15 16:56 124464 ----a-w- c:\windows\system32\DBBK\4646A4E602C82BF86EA8843E0EB643E3
2012-04-15 16:56 . 2012-04-15 16:56 117248 ----a-w- c:\windows\system32\DBBK\57BB1EAC4A55DEDBD67FB87F87C3CE9D
2012-04-15 16:56 . 2012-04-15 16:56 395264 ----a-w- c:\windows\system32\DBBK\C8333F1F77A1B2E25F2202E892CAF634
2012-04-15 16:56 . 2012-04-15 16:56 1361768 ----a-w- c:\windows\system32\DBBK\09EAD9CB2346B671F8F079D3472134D8
2012-04-15 16:56 . 2012-04-15 16:56 4624384 ----a-w- c:\windows\system32\DBBK\DD84FD291B2C324B8E6D6EF6B8643A69
2012-04-15 16:56 . 2012-04-15 16:56 7680 ----a-w- c:\windows\system32\DBBK\3B77FEE9D24E77A0D17AD91A14F8BE3D
2012-04-15 16:56 . 2012-04-15 16:56 90112 ----a-w- c:\windows\system32\DBBK\066B00871ECE0E36F5658BB675EAF7FA
2012-04-15 16:56 . 2012-04-15 16:56 740864 ----a-w- c:\windows\system32\DBBK\67C1B58706B47EEBA4E117AC197289E6
2012-04-15 16:56 . 2012-04-15 16:56 228352 ----a-w- c:\windows\system32\DBBK\912649A1B3F9E6ACB3899FBDABA2ED5F
2012-04-15 16:56 . 2012-04-15 16:56 46080 ----a-w- c:\windows\system32\DBBK\B9A4DAC2192FD78CDA097BFA79F6E7B2
2012-04-15 16:56 . 2012-04-15 16:56 9216 ----a-w- c:\windows\system32\DBBK\A9719562B3FEDB0565142B37C31E94BC
2012-04-15 16:56 . 2012-04-15 16:56 194680 ----a-w- c:\windows\system32\DBBK\F92FA005B7ED96502DADBCE0BBD49815
2012-04-15 16:56 . 2012-04-15 16:56 67584 ----a-w- c:\windows\system32\DBBK\2DB9A35DBE4DA58D4077655EDDD10A0D
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\C62CF532F92BD43B436BB1F0550722DC
2012-04-15 16:56 . 2012-04-15 16:56 196608 ----a-w- c:\windows\system32\DBBK\4D61FAE8432E83A00C48227691FB7CF3
2012-04-15 16:56 . 2012-04-15 16:56 7680 ----a-w- c:\windows\system32\DBBK\667E82F9A0EBC991992FDFAA0ABCBBAD
2012-04-15 16:56 . 2012-04-15 16:56 10240 ----a-w- c:\windows\system32\DBBK\7A45905B462F6AE857E4566F3831AEB6
2012-04-15 16:56 . 2012-04-15 16:56 102400 ----a-w- c:\windows\system32\DBBK\85FE1337101B9F9FD5E2AB865AD6C77F
2012-04-15 16:56 . 2012-04-15 16:56 94208 ----a-w- c:\windows\system32\DBBK\82E17BB7B9AF772B1D6E012DE437BC24
2012-04-15 16:56 . 2012-04-15 16:56 10240 ----a-w- c:\windows\system32\DBBK\250C1C68E4747C2C831BEAE3C10AD432
2012-04-15 16:56 . 2012-04-15 16:56 9728 ----a-w- c:\windows\system32\DBBK\311F8C91193B851104DD140966D6AEA1
2012-04-15 16:56 . 2012-04-15 16:56 262144 ----a-w- c:\windows\system32\DBBK\7204F76E069854A2785796A0911AFB27
2012-04-15 16:56 . 2012-04-15 16:56 15184 ----a-w- c:\windows\system32\DBBK\F272269C4DE5724151FCBDD4D757D3A8
2012-04-15 16:56 . 2012-04-15 16:56 90112 ----a-w- c:\windows\system32\DBBK\02F4CEA077E209EB95E00AF4678DC76D
2012-04-15 16:56 . 2012-04-15 16:56 61440 ----a-w- c:\windows\system32\DBBK\6C7722CAD2517C6170F3C4BCC5224286
2012-04-15 16:56 . 2012-04-15 16:56 10752 ----a-w- c:\windows\system32\DBBK\366031C1F10DC3D70211E7615B57134C
2012-04-15 16:56 . 2012-04-15 16:56 106496 ----a-w- c:\windows\system32\DBBK\9F631B2338922A6DD1B8399890B140B0
2012-04-15 16:56 . 2012-04-15 16:56 69632 ----a-w- c:\windows\system32\DBBK\149551A6BEA760DA03E1DB630A2CF053
2012-04-15 16:56 . 2012-04-15 16:56 11264 ----a-w- c:\windows\system32\DBBK\5271E6AC2E079A07BA8D7D7C644391F1
2012-04-15 16:56 . 2012-04-15 16:56 86016 ----a-w- c:\windows\system32\DBBK\92DA10946924CE1180CD89552379489C
2012-04-15 16:56 . 2012-04-15 16:56 39936 ----a-w- c:\windows\system32\DBBK\38D379EA86F712EAE395C6ACFF58D6B6
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\9D5270BF2CAAF1A4BC2D6B970576ABE0
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\AF9F38A0C5E790BB7F85BFACEEC88442
2012-04-15 16:56 . 2012-04-15 16:56 196608 ----a-w- c:\windows\system32\DBBK\9D33B5FB93AEAE88314C379063FFB2B4
2012-04-15 16:56 . 2012-04-15 16:56 233472 ----a-w- c:\windows\system32\DBBK\BCB62DABF580EF96AB08DE71A1F7475A
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\2240E4AA3910A1A6CBE168C66DAD2824
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\AA6BD503A41AE158EFBA851965A40FE9
2012-04-15 16:56 . 2012-04-15 16:56 10240 ----a-w- c:\windows\system32\DBBK\DE68C769901568F83FABA5F5FDD1B0D1
2012-04-15 16:56 . 2012-04-15 16:56 21504 ----a-w- c:\windows\system32\DBBK\85B45B4B285B159ACDB355FC8C1E8925
2012-04-15 16:56 . 2012-04-15 16:56 41984 ----a-w- c:\windows\system32\DBBK\45760EECC8B74B251171BE4F247F17CB
2012-04-15 16:56 . 2012-04-15 16:56 17408 ----a-w- c:\windows\system32\DBBK\A42E7748BE906434C5FD17161D168C20
2012-04-15 16:56 . 2012-04-15 16:56 5120 ----a-w- c:\windows\system32\DBBK\907281ED4AD35D41B29FFDC211EBAD80
2012-04-15 16:56 . 2012-04-15 16:56 204800 ----a-w- c:\windows\system32\DBBK\52E8FDB26CEEAE18DAE7B85252830381
2012-04-15 16:56 . 2012-04-15 16:56 4726784 ----a-w- c:\windows\system32\DBBK\6ED29CC2305022ED472709450D636933
2012-04-15 16:56 . 2012-04-15 16:56 196608 ----a-w- c:\windows\system32\DBBK\0630F22DA9F4B1BDCD3577A12AFB2C27
2012-04-15 16:56 . 2012-04-15 16:56 206848 ----a-w- c:\windows\system32\DBBK\954EA9B34F155C844B11F4047A8F6F89
2012-04-15 16:56 . 2012-04-15 16:56 39936 ----a-w- c:\windows\system32\DBBK\F45ED8C4F9AF862CD9992849B5203C11
2012-04-15 16:56 . 2012-04-15 16:56 19456 ----a-w- c:\windows\system32\DBBK\0552A8684BF7566F744D5B19FF6AEC6B
2012-04-15 16:56 . 2012-04-15 16:56 585728 ----a-w- c:\windows\system32\DBBK\E585445D5021971FAE10393F0F1C3961
2012-04-15 16:56 . 2012-04-15 16:56 4085360 ----a-w- c:\windows\system32\DBBK\0498F64095B42EB811D9D5BD70134277
2012-04-15 16:56 . 2012-04-15 16:56 61440 ----a-w- c:\windows\system32\DBBK\6DC04E1DDB48ED7397D1597C737BC106
2012-04-15 16:56 . 2012-04-15 16:56 118784 ----a-w- c:\windows\system32\DBBK\7E596F93291C02D91C08AEDB36EDED37
2012-04-15 16:56 . 2012-04-15 16:56 9728 ----a-w- c:\windows\system32\DBBK\BEAFF8B8715D4441C1ABC0B1928E52FC
2012-04-15 16:56 . 2012-04-15 16:56 217088 ----a-w- c:\windows\system32\DBBK\CC2ED6837C8A6ACBADC9123507639F35
2012-04-15 16:56 . 2012-04-15 16:56 9368 ----a-w- c:\windows\system32\DBBK\13913C081700E8BE51287ED92B2A2755
2012-04-15 16:56 . 2012-04-15 16:56 522752 ----a-w- c:\windows\system32\DBBK\33D933951E1DD39BA9A973CA5651BC90
2012-04-15 16:56 . 2012-04-15 16:56 190464 ----a-w- c:\windows\system32\DBBK\547F78746F20901C770E8653B242217C
2012-04-15 16:56 . 2012-04-15 16:56 1030144 ----a-w- c:\windows\system32\DBBK\2572E1F0254E2267E97DE1B15D099EC4
2012-04-15 16:56 . 2012-04-15 16:56 318976 ----a-w- c:\windows\system32\DBBK\255AF34C14E3F5CE45CC515EFB65FC41
2012-04-15 16:56 . 2012-04-15 16:56 196608 ----a-w- c:\windows\system32\DBBK\BA1D6C60D5912DEDCA82A368E42CB967
2012-04-15 16:56 . 2012-04-15 16:56 382824 ----a-w- c:\windows\system32\DBBK\391D21295B6E1D6B8F2388F5544642FE
2012-04-15 16:56 . 2012-04-15 16:56 130560 ----a-w- c:\windows\system32\DBBK\272DDA68347F2A265F4B9A12FDBF01DF
2012-04-15 16:56 . 2012-04-15 16:56 136648 ----a-w- c:\windows\system32\DBBK\E2AA7D19CAEADBAADAE6D1FA504C9569
2012-04-15 16:56 . 2012-04-15 16:56 210432 ----a-w- c:\windows\system32\DBBK\69C85737F4CA5634E7A19B818579D176
2012-04-15 16:56 . 2012-04-15 16:56 66608 ----a-w- c:\windows\system32\DBBK\BAB3E0A9D9E2B38225439DE28A45E4DD
2012-04-15 16:56 . 2012-04-15 16:56 2487608 ----a-w- c:\windows\system32\DBBK\380F19C971D09D3CC7AD6621B007FFAD
2012-04-15 16:56 . 2012-04-15 16:56 8856 ----a-w- c:\windows\system32\DBBK\EA04CB8165C3C8CACE84A440A43BED8A
2012-04-15 16:56 . 2012-04-15 16:56 48488 ----a-w- c:\windows\system32\DBBK\A0F110AB73271DA15E6BC314A8C1512A
2012-04-15 16:56 . 2012-04-15 16:56 49512 ----a-w- c:\windows\system32\DBBK\F047AC8029004B2FB94E2429F54617A9
2012-04-15 16:56 . 2012-04-15 16:56 1348432 ----a-w- c:\windows\system32\DBBK\09DEF3ABB6A196749299359AC5578DD8
2012-04-15 16:56 . 2012-04-15 16:56 65536 ----a-w- c:\windows\system32\DBBK\1FACE05ED7055FE5F2DB85D773BBFE0F
2012-04-15 16:56 . 2012-04-15 16:56 194840 ----a-w- c:\windows\system32\DBBK\17561F8EEECADFF9D3F440276D191020
2012-04-15 16:56 . 2012-04-15 16:56 5632 ----a-w- c:\windows\system32\DBBK\1337EF044854F38B9DFD085E56EBC3A2
2012-04-15 16:56 . 2012-04-15 16:56 90112 ----a-w- c:\windows\system32\DBBK\55C8678F4246A5D3F211E47C358B029A
2012-04-15 16:56 . 2012-04-15 16:56 106496 ----a-w- c:\windows\system32\DBBK\36D9D26C61D77E4223B6D763B28CB29D
2012-04-15 16:56 . 2012-04-15 16:56 249856 ----a-w- c:\windows\system32\DBBK\BF9D64E0ECD591BC1B38BD335156B66F
2012-04-15 16:56 . 2012-04-15 16:56 180736 ----a-w- c:\windows\system32\DBBK\483302397A9A1334FB9D44DD16638898
2012-04-15 16:56 . 2012-04-15 16:56 2626152 ----a-w- c:\windows\system32\DBBK\88C5E5CD8D540979BAE4B6C590AA6374
2012-04-15 16:56 . 2012-04-15 16:56 206336 ----a-w- c:\windows\system32\DBBK\D0481FB85BEEDD30A0884BE327880F80
2012-04-15 16:56 . 2012-04-15 16:56 430080 ----a-w- c:\windows\system32\DBBK\137149B37E9C9DBDE30E4C40867252E4
2012-04-15 16:56 . 2012-04-15 16:56 156520 ----a-w- c:\windows\system32\DBBK\B64F80B64EE7DE4FB68A0FEDA192EE52
2012-04-15 16:56 . 2012-04-15 16:56 1341952 ----a-w- c:\windows\system32\DBBK\CB67C2B94302DC94BC15ED6553A5C1C7
2012-04-15 16:56 . 2012-04-15 16:56 665448 ----a-w- c:\windows\system32\DBBK\8A6B867FC26B9850D446D2D86E5DB071
2012-04-15 16:56 . 2012-04-15 16:56 144384 ----a-w- c:\windows\system32\DBBK\A7DC47DBBE3C0384BA719DC4188AFA7E
2012-04-15 16:56 . 2012-04-15 16:56 47616 ----a-w- c:\windows\system32\DBBK\D32FFCEB504030E4A462D56BD3E5FD07
2012-04-15 16:56 . 2012-04-15 16:56 421736 ----a-w- c:\windows\system32\DBBK\D9D79F547AE2A70C650DFCFC27AEC0F7
2012-04-15 16:56 . 2012-04-15 16:56 843712 ----a-w- c:\windows\system32\DBBK\B8E421C0890356CD4A793D8A346D9096
2012-04-15 16:56 . 2012-04-15 16:56 37296 ----a-w- c:\windows\system32\DBBK\505F022493D471025ADD399A4162208B
2012-04-15 16:56 . 2012-04-15 16:56 19456 ----a-w- c:\windows\system32\DBBK\179BECE8D1A4C488DDB7191FF9BE3FB0
2012-04-15 16:56 . 2012-04-15 16:56 80384 ----a-w- c:\windows\system32\DBBK\284B59D7B56FC76C80E622AB856B1FAB
2012-04-15 16:56 . 2012-04-15 16:56 18944 ----a-w- c:\windows\system32\DBBK\D6692338B985D4A0CA52B828314D897D
2012-04-15 16:56 . 2012-04-15 16:56 69120 ----a-w- c:\windows\system32\DBBK\D7B7159BC8374E87D8C45A30377A3440
2012-04-15 16:56 . 2012-04-15 16:56 59240 ----a-w- c:\windows\system32\DBBK\35AC4B63CBB9FB6B4472913E9948B517
2012-04-15 16:56 . 2012-04-15 16:56 208896 ----a-w- c:\windows\system32\DBBK\45DB72BA472C0CAFE93410FF63255A1D
2012-04-15 16:56 . 2012-04-15 16:56 399312 ----a-w- c:\windows\system32\DBBK\BB6F29A0F374D0BFC5DE0B5C633AA439
2012-04-15 16:56 . 2012-04-15 16:56 419904 ----a-w- c:\windows\system32\DBBK\2CAA26CC32A7EC7027613043942B5795
2012-04-15 16:56 . 2012-04-15 16:56 868352 ----a-w- c:\windows\system32\DBBK\A7283762B2EDF69A1A55A03BC5D30023
2012-04-15 16:56 . 2012-04-15 16:56 1246544 ----a-w- c:\windows\system32\DBBK\5C0E0064D0FA3F540CF64A82AF9EB24A
2012-04-15 16:56 . 2012-04-15 16:56 1318816 ----a-w- c:\windows\system32\DBBK\0D21A7E336BEF56DA958958E570680D9
2012-04-15 16:56 . 2012-04-15 16:56 257536 ----a-w- c:\windows\system32\DBBK\4FB491AC8D46AAF22BA8BC5C73DABEF7
2012-04-15 16:56 . 2012-04-15 16:56 499712 ----a-w- c:\windows\system32\DBBK\561FA2ABB31DFA8FAB762145F81667C2
2012-04-15 16:56 . 2012-04-15 16:56 1060864 ----a-w- c:\windows\system32\DBBK\F35A584E947A5B401FEB0FE01DB4A0D7
2012-04-15 16:56 . 2012-04-15 16:56 1828352 ----a-w- c:\windows\system32\DBBK\6EF5F3F18413C367195F06E503AB86A6
2012-04-15 16:56 . 2012-04-15 16:56 11264 ----a-w- c:\windows\system32\DBBK\77B1471A490B53B24EFE136F09F76550
2012-04-15 16:56 . 2012-04-15 16:56 421888 ----a-w- c:\windows\system32\DBBK\0AEE5668EB59912F32FF245BFA72465F
2012-04-15 16:56 . 2012-04-15 16:56 306176 ----a-w- c:\windows\system32\DBBK\C88752BD115F27169A710324C3212FCD
2012-04-15 16:56 . 2012-04-15 16:56 200704 ----a-w- c:\windows\system32\DBBK\67BB4C28E89A2BE40D9FDBF80A034217
2012-04-15 16:56 . 2012-04-15 16:56 10240 ----a-w- c:\windows\system32\DBBK\55E5B32AE8D1F51A63C82919656FD275
2012-04-15 16:56 . 2012-04-15 16:56 431456 ----a-w- c:\windows\system32\DBBK\B0674AE101707D21F9E30484D6465704
2012-04-15 16:56 . 2012-04-15 16:56 531968 ----a-w- c:\windows\system32\DBBK\198552AEFECA69D646867EC8D792DE95
2012-04-15 16:56 . 2012-04-15 16:56 20992 ----a-w- c:\windows\system32\DBBK\5DF5D8CFD9B9573FA3B2C89D9061A240
2012-04-15 16:56 . 2012-04-15 16:56 448080 ----a-w- c:\windows\system32\DBBK\4E72F2DC0A0B2D48C70F7EE5D3B84B93
2012-04-15 16:56 . 2012-04-15 16:56 52224 ----a-w- c:\windows\system32\DBBK\0B7E85364CB878E2AD531DB7B601A9E5
2012-04-15 16:56 . 2012-04-15 16:56 10800 ----a-w- c:\windows\system32\DBBK\212C58D4ED065EBB1A42B8F2602DD7CB
2012-04-15 16:56 . 2012-04-15 16:56 65024 ----a-w- c:\windows\system32\DBBK\5CF640EDDB1E40A5AB1BB743BCDEC610
2012-04-15 16:56 . 2012-04-15 16:56 143360 ----a-w- c:\windows\system32\DBBK\289604531A3518EDF1959E3FD0A03F48
2012-04-15 16:56 . 2012-04-15 16:56 524288 ----a-w- c:\windows\system32\DBBK\5C880B519CAC424E7C5519092CACA236
2012-04-15 16:56 . 2012-04-15 16:56 75136 ----a-w- c:\windows\system32\DBBK\CE0999910D37F61F2314C998F4F9D1D4
2012-04-15 16:56 . 2012-04-15 16:56 54608 ----a-w- c:\windows\system32\DBBK\5F0D3BD87EA98332B5B1D5B86C40FBF9
2012-04-15 16:56 . 2012-04-15 16:56 249856 ----a-w- c:\windows\system32\DBBK\D9BFD66AFA50D266FF3789269E043BF4
2012-04-15 16:56 . 2012-04-15 16:56 586752 ----a-w- c:\windows\system32\DBBK\F6334C6F8D02B904C2C4C1E6D879243D
2012-04-15 16:56 . 2012-04-15 16:56 653136 ----a-w- c:\windows\system32\DBBK\B3892E6DA8E2C8CE4B0A9D3EB9A185E5
2012-04-15 16:56 . 2012-04-15 16:56 208896 ----a-w- c:\windows\system32\DBBK\66A2A18C100867756EC2811F3AB50315
2012-04-15 16:56 . 2012-04-15 16:56 187392 ----a-w- c:\windows\system32\DBBK\244C6722289F4869068992FD7D8A8832
2012-04-15 16:56 . 2012-04-15 16:56 1363456 ----a-w- c:\windows\system32\DBBK\63B282FB2550893724647A359BA2323F
2012-04-15 16:56 . 2012-04-15 16:56 348160 ----a-w- c:\windows\system32\DBBK\86F1895AE8C5E8B17D99ECE768A70732
2012-04-15 16:56 . 2012-04-15 16:56 41824 ----a-w- c:\windows\system32\DBBK\22870F235504152FE8873986A3D94905
2012-04-15 16:56 . 2012-04-15 16:56 1048576 ----a-w- c:\windows\system32\DBBK\532C5B8EBF42E5805D1A169169815698
2012-04-15 16:56 . 2012-04-15 16:56 118784 ----a-w- c:\windows\system32\DBBK\CB36E41675E4B5E89D5CFBD98B8D97D9
2012-04-15 16:56 . 2012-04-15 16:56 880640 ----a-w- c:\windows\system32\DBBK\E8B7AE1B638BB6623E7A8F0CF9937A76
2012-04-15 16:56 . 2012-04-15 16:56 1862144 ----a-w- c:\windows\system32\DBBK\CD6AD074C0158FFAA0CEEF86675E2E13
2012-04-15 16:56 . 2012-04-15 16:56 154112 ----a-w- c:\windows\system32\DBBK\E7E49ED14A52D839DAD6A7EF0251C16F
2012-04-15 16:56 . 2012-04-15 16:56 906640 ----a-w- c:\windows\system32\DBBK\1FC3E49C3726F60224F2B60BE1DB938A
2012-04-15 16:56 . 2012-04-15 16:56 413696 ----a-w- c:\windows\system32\DBBK\137962BA4B4B60A0E5F12D6C9DFA4C2F
2012-04-15 16:56 . 2012-04-15 16:56 101760 ----a-w- c:\windows\system32\DBBK\804D1B3F83682288619DF795543BF382
2012-04-15 16:56 . 2012-04-15 16:56 712704 ----a-w- c:\windows\system32\DBBK\E9E5692F51D6032A1105C7BE27FC0BAE
2012-04-15 16:56 . 2012-04-15 16:56 1826816 ----a-w- c:\windows\system32\DBBK\C8612E58FB7FCFA5EEA4E39F7B8CBC17
2012-04-15 16:56 . 2012-04-15 16:56 95528 ----a-w- c:\windows\system32\DBBK\09CFCEB5072C9FA0BFE0A551F6D5CE07
2012-04-15 16:56 . 2012-04-15 16:56 103424 ----a-w- c:\windows\system32\DBBK\936F728E04ACCF3F38801CFFCF1E3F40
2012-04-15 16:56 . 2012-04-15 16:56 4608 ----a-w- c:\windows\system32\DBBK\18AB2E5A40064ED5F7791AC5946A90F3
2012-04-15 16:56 . 2012-04-15 16:56 453632 ----a-w- c:\windows\system32\DBBK\0E85C11F8850D524B02181C6E02BA9AE
2012-04-15 16:56 . 2012-04-15 16:56 4911104 ----a-w- c:\windows\system32\DBBK\99C1D6B7C36C891EC099AA8D120185C4
2012-04-15 16:56 . 2012-04-15 16:56 1661440 ----a-w- c:\windows\system32\DBBK\3D57FFBAD3ED16B63DE3879BAB0FB56F
2012-04-15 16:56 . 2012-04-15 16:56 147456 ----a-w- c:\windows\system32\DBBK\98889275AE552574A8CF6E8DD8F65F75
2012-04-15 16:56 . 2012-04-15 16:56 163840 ----a-w- c:\windows\system32\DBBK\4F4703D7281B95C2B07CCE670B52C38C
2012-04-15 16:56 . 2012-04-15 16:56 1029416 ----a-w- c:\windows\system32\DBBK\98888488D0E6DB0256E5E661BCD35EB6
2012-04-15 16:56 . 2012-04-15 16:56 82944 ----a-w- c:\windows\system32\DBBK\672D7C5080ACB003343006405DA2E621
2012-04-15 16:56 . 2012-04-15 16:56 348160 ----a-w- c:\windows\system32\DBBK\7896EFFDEE215C172BE724A64931EF1C
2012-04-15 16:56 . 2012-04-15 16:56 157184 ----a-w- c:\windows\system32\DBBK\26025A46FB3FDB40FF06BBF1834093B5
2012-04-15 16:56 . 2012-04-15 16:56 592384 ----a-w- c:\windows\system32\DBBK\3A16EA01FCFAAB40882DB5BFEE632322
2012-04-15 16:56 . 2012-04-15 16:56 2576384 ----a-w- c:\windows\system32\DBBK\19BC13711AC403FEB830522E4831701B
2012-04-15 16:56 . 2012-04-15 16:56 22016 ----a-w- c:\windows\system32\DBBK\5987EA8A82C53359BCD2C29D6588583E
2012-04-15 16:56 . 2012-04-15 16:56 179712 ----a-w- c:\windows\system32\DBBK\BE247AE996A9FDE007A27B51413A6C79
2012-04-15 16:56 . 2012-04-15 16:56 309760 ----a-w- c:\windows\system32\DBBK\D2958325C1AE1AE37A83334C6229E3BC
2012-04-15 16:56 . 2012-04-15 16:56 478720 ----a-w- c:\windows\system32\DBBK\7E9917D5309A90E7576653BFE39F80D8
2012-04-15 16:56 . 2012-04-15 16:56 1410373 ----a-w- c:\windows\system32\DBBK\E938F820CDA025F9BF22C10BAF6A4796
2012-04-15 16:56 . 2012-04-15 16:56 1536 ----a-w- c:\windows\system32\DBBK\8A9D7D75CB9BEF94058502AFE53CD677
2012-04-15 16:56 . 2012-04-15 16:56 1536 ----a-w- c:\windows\system32\DBBK\A36FB747298925AE58E866A48B6D394D
2012-04-15 16:56 . 2012-04-15 16:56 2341376 ----a-w- c:\windows\system32\DBBK\0CE4D3BD306DA6D1F6F233C403F5B667
2012-04-15 16:56 . 2012-04-15 16:56 15872 ----a-w- c:\windows\system32\DBBK\F1278B3514EA6FA9BC39B20D26139AAC
2012-04-15 16:56 . 2012-04-15 16:56 271360 ----a-w- c:\windows\system32\DBBK\7B162F044B225FE0CF25CACB5F05B07E
2012-04-15 16:56 . 2012-04-15 16:56 302592 ----a-w- c:\windows\system32\DBBK\AD7B9C14083B52BC532FBA5948342B98
2012-04-15 16:56 . 2012-04-15 16:56 31744 ----a-w- c:\windows\system32\DBBK\F0016853FA3F38F55FD868FF74C0359B
2012-04-15 16:56 . 2012-04-15 16:56 16896 ----a-w- c:\windows\system32\DBBK\15E298B5EC5B89C5994A59863969D9FF
2012-04-15 16:56 . 2012-04-15 16:56 85504 ----a-w- c:\windows\system32\DBBK\7FFD52D73352806969D424EF327D10A7
2012-04-15 16:56 . 2012-04-15 16:56 62464 ----a-w- c:\windows\system32\DBBK\8B794AE6D5C7D42092804BC39A2EB8F6
2012-04-15 16:56 . 2012-04-15 16:56 381440 ----a-w- c:\windows\system32\DBBK\590D5C506044FE02FF7643E32FF9BDAC
2012-04-15 16:56 . 2012-04-15 16:56 50688 ----a-w- c:\windows\system32\DBBK\D44741F65A1D71F65814A12CF6E2400A
2012-04-15 16:56 . 2012-04-15 16:56 29696 ----a-w- c:\windows\system32\DBBK\D99621C0735B21DCC8BC4FEF02F379EF
2012-04-15 16:56 . 2012-04-15 16:56 10752 ----a-w- c:\windows\system32\DBBK\F8E882C10AF4C29E378D1E28D4817CB1
2012-04-15 16:56 . 2012-04-15 16:56 56832 ----a-w- c:\windows\system32\DBBK\F148865E4AC4F715E322EA06E6E21D84
2012-04-15 16:56 . 2012-04-15 16:56 360448 ----a-w- c:\windows\system32\DBBK\8C338238C16777A802D6A9211EB2BA50
2012-04-15 16:56 . 2012-04-15 16:56 60928 ----a-w- c:\windows\system32\DBBK\C693E642ACFBDD76433AF6BE3C3EEE6F
2012-04-15 16:56 . 2012-04-15 16:56 1699328 ----a-w- c:\windows\system32\DBBK\5C3F9DBA818CD93379D1A0F215270374
2012-04-15 16:56 . 2012-04-15 16:56 33792 ----a-w- c:\windows\system32\DBBK\C5C867CD7EFAC60D5021223E374DEEC5
2012-04-15 16:56 . 2012-04-15 16:56 547840 ----a-w- c:\windows\system32\DBBK\E98278865E8DABA21CFE5FE4BE34210A
2012-04-15 16:56 . 2012-04-15 16:56 62464 ----a-w- c:\windows\system32\DBBK\8B5EEFEEC1E6D1A72A06C526628AD161
2012-04-15 16:56 . 2012-04-15 16:56 578048 ----a-w- c:\windows\system32\DBBK\7E82616BEE76BF5EAA5B30F681414E21
2012-04-15 16:56 . 2012-04-15 16:56 53488 ----a-w- c:\windows\system32\DBBK\B5596DB70FD2FF1A821ED11B81D7FEA0
2012-04-15 16:56 . 2012-04-15 16:56 863744 ----a-w- c:\windows\system32\DBBK\ECF036299AA554B5E0455262857B39D0
2012-04-15 16:55 . 2012-04-15 16:55 85504 ----a-w- c:\windows\system32\DBBK\AA53356D60AF47EACC85BC617A4F3F66
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\2BC6F6A1992B3A77F5F41432CA6B3B6B
2012-04-15 16:55 . 2012-04-15 16:55 76288 ----a-w- c:\windows\system32\DBBK\46EF9DC96265FD0B423DB72E7C38C2A5
2012-04-15 16:55 . 2012-04-15 16:55 47104 ----a-w- c:\windows\system32\DBBK\FB1959012294D6AD43E5304DF65E3C26
2012-04-15 16:55 . 2012-04-15 16:55 122216 ----a-w- c:\windows\system32\DBBK\683C1D2EB06918D89B2F96C104C420C4
2012-04-15 16:55 . 2012-04-15 16:55 154664 ----a-w- c:\windows\system32\DBBK\01B3ECBDF91BEAD6B2F84E85FA8F7123
2012-04-15 16:55 . 2012-04-15 16:55 209248 ----a-w- c:\windows\system32\DBBK\3A712052E27942A055874A08341D25DD
2012-04-15 16:55 . 2012-04-15 16:55 3203904 ----a-w- c:\windows\system32\DBBK\E99C911045DA1810D082B7D7F0DCD1BD
2012-04-15 16:55 . 2012-04-15 16:55 154952 ----a-w- c:\windows\system32\DBBK\A04A23F0B3F2EBA04081898DB2224D88
2012-04-15 16:55 . 2012-04-15 16:55 187624 ----a-w- c:\windows\system32\DBBK\4170ED034E159A92FED60F0E97973190
2012-04-15 16:55 . 2012-04-15 16:55 160368 ----a-w- c:\windows\system32\DBBK\EAFEC0E5415070293710001F0C350279
2012-04-15 16:55 . 2012-04-15 16:55 112976 ----a-w- c:\windows\system32\DBBK\69B3A329102CA5FDE5B32BC3B02E3E69
2012-04-15 16:55 . 2012-04-15 16:55 464176 ----a-w- c:\windows\system32\DBBK\0C21B495A529F3BF5F2BBFB56D171590
2012-04-15 16:55 . 2012-04-15 16:55 342528 ----a-w- c:\windows\system32\DBBK\B350509B6C9296529BC464C60FEEAEF1
2012-04-15 16:55 . 2012-04-15 16:55 517120 ----a-w- c:\windows\system32\DBBK\3CDE2911462FEC80064A409C07710C06
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\A4CC7227A452C4909F9499D91B184364
2012-04-15 16:55 . 2012-04-15 16:55 143568 ----a-w- c:\windows\system32\DBBK\FE9859CDBFEA1564D99CD1215C9CB2FA
2012-04-15 16:55 . 2012-04-15 16:55 106784 ----a-w- c:\windows\system32\DBBK\585FDC3A786E1702B4B570446B889FC8
2012-04-15 16:55 . 2012-04-15 16:55 410616 ----a-w- c:\windows\system32\DBBK\660FFD19C45DEBFD06B47AFFB13DC460
2012-04-15 16:55 . 2012-04-15 16:55 74600 ----a-w- c:\windows\system32\DBBK\0826C771AF4CFFD8B34EB7E3BDA769E8
2012-04-15 16:55 . 2012-04-15 16:55 66896 ----a-w- c:\windows\system32\DBBK\EDF010167B5C2315C7E8BB1A3D261711
2012-04-15 16:55 . 2012-04-15 16:55 160608 ----a-w- c:\windows\system32\DBBK\3F17534B8867854113DF2B45FFF3ACF5
2012-04-15 16:55 . 2012-04-15 16:55 300544 ----a-w- c:\windows\system32\DBBK\371E3B05894549113D07CD3081ED55EF
2012-04-15 16:55 . 2012-04-15 16:55 85504 ----a-w- c:\windows\system32\DBBK\5610B0425518D185331CB8E968D060E6
2012-04-15 16:55 . 2012-04-15 16:55 47616 ----a-w- c:\windows\system32\DBBK\776AE0564F8B1C282E331FD95A1BDC5F
2012-04-15 16:55 . 2012-04-15 16:55 266240 ----a-w- c:\windows\system32\DBBK\5AE88135C6A86FCD67BA16AFBB1C8389
2012-04-15 16:55 . 2012-04-15 16:55 780288 ----a-w- c:\windows\system32\DBBK\585EB475E7AF55C9065256E8FFB751A1
2012-04-15 16:55 . 2012-04-15 16:55 54000 ----a-w- c:\windows\system32\DBBK\75B8AE4CE4E9B0741FD165867FBE4D68
2012-04-15 16:55 . 2012-04-15 16:55 385624 ----a-w- c:\windows\system32\DBBK\0A9EB2D3880762459222C1DFDC29E145
2012-04-15 16:55 . 2012-04-15 16:55 77184 ----a-w- c:\windows\system32\DBBK\EA014DB024A379CACD2CB12FDFABD476
2012-04-15 16:55 . 2012-04-15 16:55 29184 ----a-w- c:\windows\system32\DBBK\C5B0324DB461559ADD070E632A6919FA
2012-04-15 16:55 . 2012-04-15 16:55 312560 ----a-w- c:\windows\system32\DBBK\F0505EF0AA530049FDDBA75B7EE51DEE
2012-04-15 16:55 . 2012-04-15 16:55 84888 ----a-w- c:\windows\system32\DBBK\377FA5340455BD9BDB4FFC7E07839FA3
2012-04-15 16:55 . 2012-04-15 16:55 90112 ----a-w- c:\windows\system32\DBBK\E3E811471DE781900FF21C1FD84E941E
2012-04-15 16:55 . 2012-04-15 16:55 606208 ----a-w- c:\windows\system32\DBBK\CFC7D8289D2B5F3CF8D16E2DB7F93D4A
2012-04-15 16:55 . 2012-04-15 16:55 131072 ----a-w- c:\windows\system32\DBBK\701C9EB15E1E23D22F7C7184C0506673
2012-04-15 16:55 . 2012-04-15 16:55 39032 ----a-w- c:\windows\system32\DBBK\8510E39BEB785EB4ABBD84005860DF81
2012-04-15 16:55 . 2012-04-15 16:55 771584 ----a-w- c:\windows\system32\DBBK\A2C3F8E5AC37DBEE96C563606F710FE3
2012-04-15 16:55 . 2012-04-15 16:55 2560 ----a-w- c:\windows\system32\DBBK\5C99F92B3C4CFCDF928258C2E838D000
2012-04-15 16:55 . 2012-04-15 16:55 166288 ----a-w- c:\windows\system32\DBBK\16767B4CB7AE8F388E091717DB34FF6C
2012-04-15 16:55 . 2012-04-15 16:55 363008 ----a-w- c:\windows\system32\DBBK\704314FD398C81D5F342CAA5DF7B7F21
2012-04-15 16:55 . 2012-04-15 16:55 168960 ----a-w- c:\windows\system32\DBBK\F62E510B6AD4C21EB9FE8668ED251826
2012-04-15 16:55 . 2012-04-15 16:55 23872 ----a-w- c:\windows\system32\DBBK\A0617B5753E31126AD29C03154F4F329
2012-04-15 16:55 . 2012-04-15 16:55 28672 ----a-w- c:\windows\system32\DBBK\E74AEDF39F5C7FA9F6C1FDCCBD7C648D
2012-04-15 16:55 . 2012-04-15 16:55 20480 ----a-w- c:\windows\system32\DBBK\138AB06ADBBF300AA804D7974A5AEC82
2012-04-15 16:55 . 2012-04-15 16:55 266752 ----a-w- c:\windows\system32\DBBK\833FBB672460EFCE8011D262175FAD33
2012-04-15 16:55 . 2012-04-15 16:55 98304 ----a-w- c:\windows\system32\DBBK\8530B35284AA20D9C614CCB3725CEF37
2012-04-15 16:55 . 2012-04-15 16:55 288768 ----a-w- c:\windows\system32\DBBK\55187FD710E27D5095D10A472C8BAF1C
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\332D341D92B933600D41953B08360DFB
2012-04-15 16:55 . 2012-04-15 16:55 77312 ----a-w- c:\windows\system32\DBBK\4792C0378DB99A9BC2AE2DE6CFFF0C3A
2012-04-15 16:55 . 2012-04-15 16:55 126976 ----a-w- c:\windows\system32\DBBK\22690DFFC7F2A18279A7A0489AA02BAC
2012-04-15 16:55 . 2012-04-15 16:55 128360 ----a-w- c:\windows\system32\DBBK\2E7315B147E524E055026E6634B14EA6
2012-04-15 16:55 . 2012-04-15 16:55 28672 ----a-w- c:\windows\system32\DBBK\254CFBF1DAA777825B139CFA1A4C8B7D
2012-04-15 16:55 . 2012-04-15 16:55 25600 ----a-w- c:\windows\system32\DBBK\387ECAF254AB992EEA44091194551A4B
2012-04-15 16:55 . 2012-04-15 16:55 431456 ----a-w- c:\windows\system32\DBBK\DA6903958CBDC091FFCBBCA70CCFF34C
2012-04-15 16:55 . 2012-04-15 16:55 129632 ----a-w- c:\windows\system32\DBBK\C5AC715B65B01788ABC22D10749DDDD8
2012-04-15 16:55 . 2012-04-15 16:55 1093120 ----a-w- c:\windows\system32\DBBK\E2C48CD0132D4D1DC7D0DF9A6BEF686A
2012-04-15 16:55 . 2012-04-15 16:55 1159168 ----a-w- c:\windows\system32\DBBK\36650D618CA34C9D357DFD3D89B2C56F
2012-04-15 16:55 . 2012-04-15 16:55 83312 ----a-w- c:\windows\system32\DBBK\E47F35A87FF0DA38DEF37A0EB0C2D2DF
2012-04-15 16:55 . 2012-04-15 16:55 35328 ----a-w- c:\windows\system32\DBBK\CCA24162E055C3714CE5A88B100C64ED
2012-04-15 16:55 . 2012-04-15 16:55 12800 ----a-w- c:\windows\system32\DBBK\B087F2B901570F6EF62F6C2E01A480F3
2012-04-15 16:55 . 2012-04-15 16:55 463360 ----a-w- c:\windows\system32\DBBK\E1FB3706030FB4578A0D72C2FC3689E4
2012-04-15 16:55 . 2012-04-15 16:55 179040 ----a-w- c:\windows\system32\DBBK\0D77436DA61BE7338BC600F0D8773331
2012-04-15 16:55 . 2012-04-15 16:55 66928 ----a-w- c:\windows\system32\DBBK\E1292C1ED4DEB17B8A9B586D22CB2061
2012-04-15 16:55 . 2012-04-15 16:55 162816 ----a-w- c:\windows\system32\DBBK\D887C9FD02AC9FA880F6E5027A43E118
2012-04-15 16:55 . 2012-04-15 16:55 35032 ----a-w- c:\windows\system32\DBBK\7B193BA3F0245D5867B71AD1CF631474
2012-04-15 16:55 . 2012-04-15 16:55 86880 ----a-w- c:\windows\system32\DBBK\D89083C4EB02DACA8F944B0E05E57F9D
2012-04-15 16:55 . 2012-04-15 16:55 238944 ----a-w- c:\windows\system32\DBBK\86EBD8B1F23E743AAD21F4D5B4D40985
2012-04-15 16:55 . 2012-04-15 16:55 158856 ----a-w- c:\windows\system32\DBBK\6128E98EAAED364ED1A32708D2FD22CB
2012-04-15 16:55 . 2012-04-15 16:55 20480 ----a-w- c:\windows\system32\DBBK\90A3935D05B494A5A39D37E71F09A677
2012-04-15 16:55 . 2012-04-15 16:55 136816 ----a-w- c:\windows\system32\DBBK\6DBF2AC2BDAFF355995AB25ECCC4CFE1
2012-04-15 16:55 . 2012-04-15 16:55 586752 ----a-w- c:\windows\system32\DBBK\9E0104BA49F4E6973749A02BF41344ED
2012-04-15 16:55 . 2012-04-15 16:55 39936 ----a-w- c:\windows\system32\DBBK\28E2231BD34A39C854BDF3923AB2FF86
2012-04-15 16:55 . 2012-04-15 16:55 152064 ----a-w- c:\windows\system32\DBBK\75EA62927355189876081EF863064982
2012-04-15 16:55 . 2012-04-15 16:55 114688 ----a-w- c:\windows\system32\DBBK\DEB57A0AA7446A6E8A606D9A09F81157
2012-04-15 16:55 . 2012-04-15 16:55 242688 ----a-w- c:\windows\system32\DBBK\912084381D30D8B89EC4E293053F4710
2012-04-15 16:55 . 2012-04-15 16:55 7168 ----a-w- c:\windows\system32\DBBK\539C49CEBB3C50957AC8A09D95ECD880
2012-04-15 16:55 . 2012-04-15 16:55 12433408 ----a-w- c:\windows\system32\DBBK\673C39EC95B3623F198E8EED3F97F80C
2012-04-15 16:55 . 2012-04-15 16:55 1590784 ----a-w- c:\windows\system32\DBBK\9368BAC6D09B20CA367B13C5CE02730E
2012-04-15 16:55 . 2012-04-15 16:55 5453312 ----a-w- c:\windows\system32\DBBK\DCC1AC29AA8D2CE725CC86A626CEC360
2012-04-15 16:55 . 2012-04-15 16:55 971264 ----a-w- c:\windows\system32\DBBK\95E8D9C0E865EAD5A440C91D933B7D60
2012-04-15 16:55 . 2012-04-15 16:55 6189056 ----a-w- c:\windows\system32\DBBK\DC1F2221D367A83A79B4BE4527AEE5D1
2012-04-15 16:55 . 2012-04-15 16:55 696320 ----a-w- c:\windows\system32\DBBK\A357B0DE9E4BDCC16E8573EBA9A33729
2012-04-15 16:55 . 2012-04-15 16:55 363856 ----a-w- c:\windows\system32\DBBK\59D16FD61802739988728790BF1232B3
2012-04-15 16:55 . 2012-04-15 16:55 212992 ----a-w- c:\windows\system32\DBBK\960E6974343D0903DE3B5607E200C94C
2012-04-15 16:55 . 2012-04-15 16:55 7967232 ----a-w- c:\windows\system32\DBBK\3D725C257EA3952158FFFBB5874896DA
2012-04-15 16:55 . 2012-04-15 16:55 10752 ----a-w- c:\windows\system32\DBBK\6F8E3B7B70E1BBA871212940C1FBDF60
2012-04-15 16:55 . 2012-04-15 16:55 103424 ----a-w- c:\windows\system32\DBBK\04D16553664796613FE98D441A0C35D7
2012-04-15 16:55 . 2012-04-15 16:55 473600 ----a-w- c:\windows\system32\DBBK\102CF6879887BBE846A00C459E6D4ABC
2012-04-15 16:55 . 2012-04-15 16:55 74064 ----a-w- c:\windows\system32\DBBK\6E9E439517D89EDC9A6CB1E94489620A
2012-04-15 16:55 . 2012-04-15 16:55 11490304 ----a-w- c:\windows\system32\DBBK\638F45C6397C911828D2A478729B23AA
2012-04-15 16:55 . 2012-04-15 16:55 267952 ----a-w- c:\windows\system32\DBBK\62FC30FBEC3139DDB0A60FA925EF4B30
2012-04-15 16:55 . 2012-04-15 16:55 245280 ----a-w- c:\windows\system32\DBBK\38A10B30D2B7AB87F8B72C982326EED6
2012-04-15 16:55 . 2012-04-15 16:55 5924176 ----a-w- c:\windows\system32\DBBK\96076B8FCDFF3C6DB4CCFBF7FE3A9B28
2012-04-15 16:55 . 2012-04-15 16:55 413520 ----a-w- c:\windows\system32\DBBK\F5DF6846F30E9F54EA60CCAEB3FB2055
2012-04-15 16:55 . 2012-04-15 16:55 297808 ----a-w- c:\windows\system32\DBBK\D83947A58613E9091B4C9CC0F1546A8D
2012-04-15 16:55 . 2012-04-15 16:55 228480 ----a-w- c:\windows\system32\DBBK\B0ACA46E05EB819409F9965344800724
2012-04-15 16:55 . 2012-04-15 16:55 1236992 ----a-w- c:\windows\system32\DBBK\4205CA4CD43E725DB9FF02B0A588A8C6
2012-04-15 16:55 . 2012-04-15 16:55 59168 ----a-w- c:\windows\system32\DBBK\92F9CFD755E97D684D3FAB48A037623C
2012-04-15 16:55 . 2012-04-15 16:55 20032 ----a-w- c:\windows\system32\DBBK\A85403902F18FF6D34407D52A89F42FD
2012-04-15 16:55 . 2012-04-15 16:55 44544 ----a-w- c:\windows\system32\DBBK\51138BEEA3E2C21EC44D0932C71762A8
2012-04-15 16:55 . 2012-04-15 16:55 349080 ----a-w- c:\windows\system32\DBBK\4868CCBBF0FA9B0293B858C5FF8B3C02
2012-04-15 16:55 . 2012-04-15 16:55 442880 ----a-w- c:\windows\system32\DBBK\03F3B770DFBED6131653CEDA8CA780F0
2012-04-15 16:55 . 2012-04-15 16:55 9728 ----a-w- c:\windows\system32\DBBK\523CF74A52C9A1762DA8B83AEE734498
2012-04-15 16:55 . 2012-04-15 16:55 34816 ----a-w- c:\windows\system32\DBBK\8CD1DEE212E52B9C22E66DBA44991D32
2012-04-15 16:55 . 2012-04-15 16:55 314880 ----a-w- c:\windows\system32\DBBK\FB19FC5951A88F3C523E35C2C98D23C0
2012-04-15 16:55 . 2012-04-15 16:55 40960 ----a-w- c:\windows\system32\DBBK\84799328D87B3091A3BDD251E1AD31F9
2012-04-15 16:55 . 2012-04-15 16:55 2560 ----a-w- c:\windows\system32\DBBK\40CAEEE0EAF1B8569F7C8DF6420F2CB9
2012-04-15 16:55 . 2012-04-15 16:55 159608 ----a-w- c:\windows\system32\DBBK\9F09CAA8DC12FC1626F82A5C212F6F9C
2012-04-15 16:55 . 2012-04-15 16:55 322120 ----a-w- c:\windows\system32\DBBK\11F714F85530A2BD134074DC30E99FCA
2012-04-15 16:55 . 2012-04-15 16:55 925184 ----a-w- c:\windows\system32\DBBK\C4096CA42199428B3D63DC206C197F0E
2012-04-15 16:55 . 2012-04-15 16:55 34816 ----a-w- c:\windows\system32\DBBK\465BEA35F7ED4A4A57686DEA7EA10F47
2012-04-15 16:55 . 2012-04-15 16:55 126464 ----a-w- c:\windows\system32\DBBK\D27DDE7E0444C7F1819F958469EB7D93
2012-04-15 16:55 . 2012-04-15 16:55 1856464 ----a-w- c:\windows\system32\DBBK\1D8F0323EE013643A9B613269B6CA5F1
2012-04-15 16:55 . 2012-04-15 16:55 492032 ----a-w- c:\windows\system32\DBBK\536E06B5A05C6E39C8748E3941FB083D
2012-04-15 16:55 . 2012-04-15 16:55 106496 ----a-w- c:\windows\system32\DBBK\067239789BD7591F5EAA24DAB63D261A
2012-04-15 16:55 . 2012-04-15 16:55 53248 ----a-w- c:\windows\system32\DBBK\7CA836648E40709797D9F3BFF56679EE
2012-04-15 16:55 . 2012-04-15 16:55 61440 ----a-w- c:\windows\system32\DBBK\0CC7DA54F5FED71160C3FC13E9F972FC
2012-04-15 16:55 . 2012-04-15 16:55 57344 ----a-w- c:\windows\system32\DBBK\CDD90FA1AF84F483C37CA60FB56DE5D2
2012-04-15 16:55 . 2012-04-15 16:55 28552 ----a-w- c:\windows\system32\DBBK\EA8647A21BCB56C5F15712D4B7407501
2012-04-15 16:55 . 2012-04-15 16:55 13312 ----a-w- c:\windows\system32\DBBK\659E04E74135927CA6D7BC5E75C84417
2012-04-15 16:55 . 2012-04-15 16:55 13824 ----a-w- c:\windows\system32\DBBK\81F08948A0F1475894C99D4D19A158A8
2012-04-15 16:55 . 2012-04-15 16:55 30208 ----a-w- c:\windows\system32\DBBK\CD72C6406BA561BED6D42CB145E55307
2012-04-15 16:55 . 2012-04-15 16:55 167424 ----a-w- c:\windows\system32\DBBK\89D90579E5FB1469CB0464F6512E42B7
2012-04-15 16:55 . 2012-04-15 16:55 41984 ----a-w- c:\windows\system32\DBBK\F34CFADA6C48DAA41B996D24C7D8D3CA
2012-04-15 16:55 . 2012-04-15 16:55 214904 ----a-w- c:\windows\system32\DBBK\7E6932EEDA54C8EAF7DC6C2225261B85
2012-04-15 16:55 . 2012-04-15 16:55 192000 ----a-w- c:\windows\system32\DBBK\4F2659160AFCCA990305816946F69407
2012-04-15 16:55 . 2012-04-15 16:55 782336 ----a-w- c:\windows\system32\DBBK\DB846EECA70EE9D2E2FF31147C57B0F4
2012-04-15 16:55 . 2012-04-15 16:55 917504 ----a-w- c:\windows\system32\DBBK\73F6C5223F7E9B5780DD4A6C30FCF569
2012-04-15 16:55 . 2012-04-15 16:55 505856 ----a-w- c:\windows\system32\DBBK\544EFF88AC6C85DF5A4D6F18DFE08CFC
2012-04-15 16:55 . 2012-04-15 16:55 28160 ----a-w- c:\windows\system32\DBBK\7DBE8CBFE79EFBDEB98C9FB08D3A9A5B
2012-04-15 16:55 . 2012-04-15 16:55 1128448 ----a-w- c:\windows\system32\DBBK\13337A3FB17F2242487FD45488ED0485
2012-04-15 16:55 . 2012-04-15 16:55 56320 ----a-w- c:\windows\system32\DBBK\B940289C83121046BD6A60ACC6028593
2012-04-15 16:55 . 2012-04-15 16:55 144384 ----a-w- c:\windows\system32\DBBK\8EC04CA86F1D68DA9E11952EB85973D6
2012-04-15 16:55 . 2012-04-15 16:55 136192 ----a-w- c:\windows\system32\DBBK\A585BEBF7D054BD9618EDA0922D5484A
2012-04-15 16:55 . 2012-04-15 16:55 57344 ----a-w- c:\windows\system32\DBBK\28A09777D2D952122567A8A82F1A2C7B
2012-04-15 16:55 . 2012-04-15 16:55 772608 ----a-w- c:\windows\system32\DBBK\D39DA70FEA6BD713682F70635587DA9E
2012-04-15 16:55 . 2012-04-15 16:55 158720 ----a-w- c:\windows\system32\DBBK\D4191EFAB91E00FC09257AA5EBAF503B
2012-04-15 16:55 . 2012-04-15 16:55 86016 ----a-w- c:\windows\system32\DBBK\C3E53C4C5C1B3C8D38956EDB4E5A5F0F
2012-04-15 16:55 . 2012-04-15 16:55 1101824 ----a-w- c:\windows\system32\DBBK\1F5AFD468EB5E09E9ED75A087529EAB5
2012-04-15 16:55 . 2012-04-15 16:55 81408 ----a-w- c:\windows\system32\DBBK\B010CF886420EE29C2C276646721D255
2012-04-15 16:55 . 2012-04-15 16:55 53248 ----a-w- c:\windows\system32\DBBK\C328B03E5DC2B83A37B62971018BFFD7
2012-04-15 16:55 . 2012-04-15 16:55 266240 ----a-w- c:\windows\system32\DBBK\09AB39B3164C3E3AB48DC81E914203D3
2012-04-15 16:55 . 2012-04-15 16:55 1242472 ----a-w- c:\windows\system32\DBBK\73862FF693168369A90F046E7F227B83
2012-04-15 16:55 . 2012-04-15 16:55 456552 ----a-w- c:\windows\system32\DBBK\8BA9851E671E8B5E49E303748FFD530C
2012-04-15 16:55 . 2012-04-15 16:55 2463592 ----a-w- c:\windows\system32\DBBK\FC33CBBB9CADCEC307DA010FE763D04C
2012-04-15 16:55 . 2012-04-15 16:55 87912 ----a-w- c:\windows\system32\DBBK\2E14406E05789F91C9282AE7CFCA3A07
2012-04-15 16:55 . 2012-04-15 16:55 616296 ----a-w- c:\windows\system32\DBBK\2C478E667CE27B2B7142F756CF569A9A
2012-04-15 16:55 . 2012-04-15 16:55 40960 ----a-w- c:\windows\system32\DBBK\596E452B5152EC9AFE8153D296459D2B
2012-04-15 16:55 . 2012-04-15 16:55 390504 ----a-w- c:\windows\system32\DBBK\DB5BEA73EDAF19AC68B2C0FAD0F92B1A
2012-04-15 16:55 . 2012-04-15 16:55 73064 ----a-w- c:\windows\system32\DBBK\062373995EAE5F0EAC9EAA9192136BFB
2012-04-15 16:55 . 2012-04-15 16:55 210792 ----a-w- c:\windows\system32\DBBK\F8ECB748B53A010464F7A63154D75F56
2012-04-15 16:55 . 2012-04-15 16:55 75624 ----a-w- c:\windows\system32\DBBK\BA02F01BE7ED88E8974C798ACB3075F5
2012-04-15 16:55 . 2012-04-15 16:55 16303976 ----a-w- c:\windows\system32\DBBK\149D74E1128A86DC9CFB2851FBEA11EB
2012-04-15 16:55 . 2012-04-15 16:55 923496 ----a-w- c:\windows\system32\DBBK\F4BC62990E7E5C29799A895B80FC3177
2012-04-15 16:55 . 2012-04-15 16:55 239616 ----a-w- c:\windows\system32\DBBK\2100560AF3F7F2948F2676E44DFB4ECF
2012-04-15 16:55 . 2012-04-15 16:55 351232 ----a-w- c:\windows\system32\DBBK\CA9F7888B524D8100B977C81F44C3234
2012-04-15 16:55 . 2012-04-15 16:55 3825664 ----a-w- c:\windows\system32\DBBK\11680933909D518419EC4A4016B9E912
2012-04-15 16:55 . 2012-04-15 16:55 2872120 ----a-w- c:\windows\system32\DBBK\DE4428C4D6B468BA4CC5E47D027C3FD7
2012-04-15 16:55 . 2012-04-15 16:55 189952 ----a-w- c:\windows\system32\DBBK\846D0E4DB261CFAF363902E41498E961
2012-04-15 16:55 . 2012-04-15 16:55 2999296 ----a-w- c:\windows\system32\DBBK\34B9AE2D56C65385AB334F3E3F4F1DF2
2012-04-15 16:55 . 2012-04-15 16:55 1493504 ----a-w- c:\windows\system32\DBBK\E2A17BCC08D92F42E08AF6BA2F93ABA7
2012-04-15 16:55 . 2012-04-15 16:55 489984 ----a-w- c:\windows\system32\DBBK\F75BFDACAF4AD540444FFC31B49BDA99
2012-04-15 16:55 . 2012-04-15 16:55 2616320 ----a-w- c:\windows\system32\DBBK\8B88EBBB05A0E56B7DCC708498C02B3E
2012-04-15 16:55 . 2012-04-15 16:55 508416 ----a-w- c:\windows\system32\DBBK\0411B7958C524BB2E91EE1B3035FE321
2012-04-15 16:55 . 2012-04-15 16:55 185344 ----a-w- c:\windows\system32\DBBK\A8EB761DE499242BECF153B2B34F020E
2012-04-15 16:55 . 2012-04-15 16:55 34304 ----a-w- c:\windows\system32\DBBK\923CDD30092DB73EC4A0EBCDDD16C686
2012-04-15 16:55 . 2012-04-15 16:55 94208 ----a-w- c:\windows\system32\DBBK\61FB95B6F2A8715282E05C92E4527C5A
2012-04-15 16:55 . 2012-04-15 16:55 131072 ----a-w- c:\windows\system32\DBBK\2CDEF39641BC63A337B6EA13E61B32C6
2012-04-15 16:55 . 2012-04-15 16:55 219136 ----a-w- c:\windows\system32\DBBK\9C36A3CA80F9B204C670336D344F5DF8
2012-04-15 16:55 . 2012-04-15 16:55 172032 ----a-w- c:\windows\system32\DBBK\C385D4D4EC16E637AA4D2D18A06E80C9
2012-04-15 16:55 . 2012-04-15 16:55 161792 ----a-w- c:\windows\system32\DBBK\2DE90400A63818FA38C4C5C9ADB166BF
2012-04-15 16:55 . 2012-04-15 16:55 94208 ----a-w- c:\windows\system32\DBBK\DE955D6A5097DC306AF8C9F67E9A5F2D
2012-04-15 16:55 . 2012-04-15 16:55 167936 ----a-w- c:\windows\system32\DBBK\E662722D5C50AD1C0E201499E405FD73
2012-04-15 16:55 . 2012-04-15 16:55 1371136 ----a-w- c:\windows\system32\DBBK\497E59D9F01C6F247E72222A61835119
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\1220595CABA75AB91A6B3FA3B89483CC
2012-04-15 16:55 . 2012-04-15 16:55 51712 ----a-w- c:\windows\system32\DBBK\6357E2B68753A1F5CF4A68A25C4FD14A
2012-04-15 16:55 . 2012-04-15 16:55 148992 ----a-w- c:\windows\system32\DBBK\B390C1D825C7687493BEDE237C6C2F25
2012-04-15 16:55 . 2012-04-15 16:55 17408 ----a-w- c:\windows\system32\DBBK\AFA16A7CF18CB5A3EB72FF1F3F6C4885
2012-04-15 16:55 . 2012-04-15 16:55 39424 ----a-w- c:\windows\system32\DBBK\126F8331BD023178C7F0EF2F5EDE16B3
2012-04-15 16:55 . 2012-04-15 16:55 102400 ----a-w- c:\windows\system32\DBBK\00E74FD4E086C449E7EA3C89C9F25435
2012-04-15 16:55 . 2012-04-15 16:55 155648 ----a-w- c:\windows\system32\DBBK\F2E08C274BE0C6A15BD7AD88BBB0D3FE
2012-04-15 16:55 . 2012-04-15 16:55 167936 ----a-w- c:\windows\system32\DBBK\56CEED370508F69A1BA04939BD1BADDA
2012-04-15 16:55 . 2012-04-15 16:55 97280 ----a-w- c:\windows\system32\DBBK\754AFC50022C95DA7C86B7020DB78136
2012-04-15 16:55 . 2012-04-15 16:55 19968 ----a-w- c:\windows\system32\DBBK\B43687C534A49700BF4B3C9898763752
2012-04-15 16:55 . 2012-04-15 16:55 21099 ----a-w- c:\windows\system32\DBBK\381915766C2A5E47A7DB95423CE09A16
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\7319102526BD11B45FD66335CF90CA12
2012-04-15 16:55 . 2012-04-15 16:55 32768 ----a-w- c:\windows\system32\DBBK\03CF941D031F30272D3063E5A4D686F5
2012-04-15 16:55 . 2012-04-15 16:55 768512 ----a-w- c:\windows\system32\DBBK\12C4E95F468A5FD3FBB8166E27ED4D53
2012-04-15 16:55 . 2012-04-15 16:55 92672 ----a-w- c:\windows\system32\DBBK\505BF4D1CADEB8D4F8BCD08D944DE25D
2012-04-15 16:55 . 2012-04-15 16:55 45056 ----a-w- c:\windows\system32\DBBK\629181C26A78EB66B0B4E774E5AC2882
2012-04-15 16:55 . 2012-04-15 16:55 26624 ----a-w- c:\windows\system32\DBBK\61AC3EFDFACFDD3F0F11DD4FD4044223
2012-04-15 16:55 . 2012-04-15 16:55 77312 ----a-w- c:\windows\system32\DBBK\F58516E2DC0D963EF70D6BFC21FD82C4
2012-04-15 16:55 . 2012-04-15 16:55 29184 ----a-w- c:\windows\system32\DBBK\3CA2BB895E204478C7A4C9BAF70970CE
2012-04-15 16:55 . 2012-04-15 16:55 1292136 ----a-w- c:\windows\system32\DBBK\5A963C340DE1A01BA6E24945CE05D16A
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\7FA8BA5A780E4757964AC9D4238302B9
2012-04-15 16:55 . 2012-04-15 16:55 45056 ----a-w- c:\windows\system32\DBBK\0B31464B7B2D616BD5F7036673588EC1
2012-04-15 16:55 . 2012-04-15 16:55 7168 ----a-w- c:\windows\system32\DBBK\A63DC5C2EA944E6657203E0C8EDEAF61
2012-04-15 16:55 . 2012-04-15 16:55 43368 ----a-w- c:\windows\system32\DBBK\3BDE52411DF2FE4252C9289F51CB0F7E
2012-04-15 16:55 . 2012-04-15 16:55 124776 ----a-w- c:\windows\system32\DBBK\32D78DCABFB942275E01363D5232C77D
2012-04-15 16:55 . 2012-04-15 16:55 15360 ----a-w- c:\windows\system32\DBBK\DF13A51A5C591887D2EC6AE64CEED0FA
2012-04-15 16:55 . 2012-04-15 16:55 53024 ----a-w- c:\windows\system32\DBBK\C9680F06E51DB8B9A0772C20F3E10DB6
2012-04-15 16:55 . 2012-04-15 16:55 1075048 ----a-w- c:\windows\system32\DBBK\67B539D844F804EBAC7A1E3828FDE709
2012-04-15 16:55 . 2012-04-15 16:55 206208 ----a-w- c:\windows\system32\DBBK\A78F8B9BDD0027D17FB5BA5179944122
2012-04-15 16:55 . 2012-04-15 16:55 38760 ----a-w- c:\windows\system32\DBBK\2DEDC3AFE3C49B5DAE717D0A9BEBF298
2012-04-15 16:55 . 2012-04-15 16:55 16672 ----a-w- c:\windows\system32\DBBK\6C63DC384A15E2AFD4A860031EF40267
2012-04-15 16:55 . 2012-04-15 16:55 55144 ----a-w- c:\windows\system32\DBBK\7EF47644B74EBE721CC32211D3C35E76
2012-04-15 16:55 . 2012-04-15 16:55 106496 ----a-w- c:\windows\system32\DBBK\15B9CC21717F3CD0F660AF315521E3C0
2012-04-15 16:55 . 2012-04-15 16:55 87424 ----a-w- c:\windows\system32\DBBK\A9FFC3CDCD2785D11B9460509B056413
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\C6B2AD321E6C12E12898D1CAE587D0D5
2012-04-15 16:55 . 2012-04-15 16:55 124288 ----a-w- c:\windows\system32\DBBK\4B8FF89DCC1AB4ACA9B6B2A0B3814131
2012-04-15 16:55 . 2012-04-15 16:55 192000 ----a-w- c:\windows\system32\DBBK\BA32509D9B340162327B341013DE6522
2012-04-15 16:55 . 2012-04-15 16:55 1267072 ----a-w- c:\windows\system32\DBBK\386914F677F489C8AFCB1ED53092968B
2012-04-15 16:55 . 2012-04-15 16:55 64000 ----a-w- c:\windows\system32\DBBK\B9A8CBCFCD3EC9D2EA4740AF347BF108
2012-04-15 16:55 . 2012-04-15 16:55 562176 ----a-w- c:\windows\system32\DBBK\368B2BEE3F88BFB883D2C74A258DE6F6
2012-04-15 16:55 . 2012-04-15 16:55 46640 ----a-w- c:\windows\system32\DBBK\85180CF88C5EBAD73B452A43A004CA51
2012-04-15 16:55 . 2012-04-15 16:55 11776 ----a-w- c:\windows\system32\DBBK\ED6EE83D61EBC683C2CD8E899EA6FEBE
2012-04-15 16:55 . 2012-04-15 16:55 121704 ----a-w- c:\windows\system32\DBBK\40947436A70E0034E41123DF5A0A7702
2012-04-15 16:55 . 2012-04-15 16:55 79360 ----a-w- c:\windows\system32\DBBK\2EA877ED5DD9713C5AC74E8EA7348D14
2012-04-15 16:55 . 2012-04-15 16:55 71168 ----a-w- c:\windows\system32\DBBK\2AF094C822BD6094F14A8E85FB51D52A
2012-04-15 16:55 . 2012-04-15 16:55 230912 ----a-w- c:\windows\system32\DBBK\AE9898D5600A232CD8AE3298692162E5
2012-04-15 16:55 . 2012-04-15 16:55 9728 ----a-w- c:\windows\system32\DBBK\89E783711AF91AF09E1EF30EF3107446
2012-04-15 16:55 . 2012-04-15 16:55 2048 ----a-w- c:\windows\system32\DBBK\E4B72E71EC37A59FE574A998A0C0EB9B
2012-04-15 16:55 . 2012-04-15 16:55 102400 ----a-w- c:\windows\system32\DBBK\6E11F33D14D020F58D5E02E4D67DFA19
2012-04-15 16:55 . 2012-04-15 16:55 168960 ----a-w- c:\windows\system32\DBBK\D64AF876D53ECA3668BB97B51B4E70AB
2012-04-15 16:55 . 2012-04-15 16:55 311808 ----a-w- c:\windows\system32\DBBK\E4C2764065D66EA1D2D3EBC28FE99C46
2012-04-15 16:55 . 2012-04-15 16:55 84480 ----a-w- c:\windows\system32\DBBK\58405E4F68BA8E4057C6E914F326ABA2
2012-04-15 16:55 . 2012-04-15 16:55 310272 ----a-w- c:\windows\system32\DBBK\03F0545BD8D4C77FA0AE1CEEDFCC71AB
2012-04-15 16:55 . 2012-04-15 16:55 96768 ----a-w- c:\windows\system32\DBBK\B81F204D146000BE76651A50670A5E9E
2012-04-15 16:55 . 2012-04-15 16:55 223744 ----a-w- c:\windows\system32\DBBK\6D17A4791ACA19328C685D256349FEFC
2012-04-15 16:55 . 2012-04-15 16:55 123904 ----a-w- c:\windows\system32\DBBK\5D16C921E3671636C0EBA3BBAAC5FD25
2012-04-15 16:55 . 2012-04-15 16:55 69632 ----a-w- c:\windows\system32\DBBK\8F2DA3028D5FCBD1A060A3DE64CD6506
2012-04-15 16:55 . 2012-04-15 16:55 114688 ----a-w- c:\windows\system32\DBBK\BE6BD660CAA6F291AE06A718A4FA8ABC
2012-04-15 16:55 . 2012-04-15 16:55 317440 ----a-w- c:\windows\system32\DBBK\866A43013535DC8587C258E43579C764
2012-04-15 16:55 . 2012-04-15 16:55 513536 ----a-w- c:\windows\system32\DBBK\871917B07A141BFF43D76D8844D48106
2012-04-15 16:55 . 2012-04-15 16:55 33280 ----a-w- c:\windows\system32\DBBK\E2D56AE1D40E3725084054CD8E9CFBB1
2012-04-15 16:55 . 2012-04-15 16:55 406528 ----a-w- c:\windows\system32\DBBK\1FF7E4F548C7C372C804938F0D5B36AE
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\C87F28A34B3840F4B40011D170B1A159
2012-04-15 16:55 . 2012-04-15 16:55 12288 ----a-w- c:\windows\system32\DBBK\EAFC149CD3BD78C443E31BB157841197
2012-04-15 16:55 . 2012-04-15 16:55 271664 ----a-w- c:\windows\system32\DBBK\E6D90DC604F407B3B5E0FD285E46B2A0
2012-04-15 16:55 . 2012-04-15 16:55 305152 ----a-w- c:\windows\system32\DBBK\1C3E8371377E988B683797A132EFFE1B
2012-04-15 16:55 . 2012-04-15 16:55 241664 ----a-w- c:\windows\system32\DBBK\4BDEFD31F53729D85FFBBE08C91D2027
2012-04-15 16:55 . 2012-04-15 16:55 262144 ----a-w- c:\windows\system32\DBBK\A4C0D714CA0DAD557169BE4C586D5C63
2012-04-15 16:55 . 2012-04-15 16:55 43520 ----a-w- c:\windows\system32\DBBK\1B80C1D4E8B327A4D6A2D4424E1B7EFA
2012-04-15 16:55 . 2012-04-15 16:55 20480 ----a-w- c:\windows\system32\DBBK\38B13C0DF479DBA23ECFA815159BA86E
2012-04-15 16:55 . 2012-04-15 16:55 750592 ----a-w- c:\windows\system32\DBBK\A04BB13F8A72F8B6E8B4071723E4E336
2012-04-15 16:55 . 2012-04-15 16:55 328192 ----a-w- c:\windows\system32\DBBK\414DA952A35BF5D50192E28263B40577
2012-04-15 16:55 . 2012-04-15 16:55 1390080 ----a-w- c:\windows\system32\DBBK\269D867585CDA04D3972A39F3694E7DF
2012-04-15 16:55 . 2012-04-15 16:55 134656 ----a-w- c:\windows\system32\DBBK\9419ABF3163B6F0E3AD3DD2B381C879F
2012-04-15 16:55 . 2012-04-15 16:55 8192 ----a-w- c:\windows\system32\DBBK\1D6A771D1D702AE07919DB52C889A249
2012-04-15 16:55 . 2012-04-15 16:55 57344 ----a-w- c:\windows\system32\DBBK\C1585EAA67C37A05BF6F93726FAFC069
2012-04-15 16:55 . 2012-04-15 16:55 118784 ----a-w- c:\windows\system32\DBBK\749F9795F01C35EEBE100A87D82B9681
2012-04-15 16:55 . 2012-04-15 16:55 183296 ----a-w- c:\windows\system32\DBBK\5A5FEDDF02588B8F9FE4A95E5E7EAE97
2012-04-15 16:55 . 2012-04-15 16:55 56320 ----a-w- c:\windows\system32\DBBK\666E57B6B51824D1D235F80A3DD70A13
2012-04-15 16:55 . 2012-04-15 16:55 199168 ----a-w- c:\windows\system32\DBBK\F748F53FE09D21D8ECBB6421E6792024
2012-04-15 16:55 . 2012-04-15 16:55 392192 ----a-w- c:\windows\system32\DBBK\20C06A50DFC097E134BC6FA8444CA9BC
2012-04-15 16:55 . 2012-04-15 16:55 428032 ----a-w- c:\windows\system32\DBBK\3C9035085141162416A0DD34DBF3F3C1
2012-04-15 16:55 . 2012-04-15 16:55 829440 ----a-w- c:\windows\system32\DBBK\16935C98FF639D185086A3529B1F2067
2012-04-15 16:55 . 2012-04-15 16:55 50688 ----a-w- c:\windows\system32\DBBK\D33E95C0A2754061233B58DC41F8094C
2012-04-15 16:55 . 2012-04-15 16:55 43008 ----a-w- c:\windows\system32\DBBK\29CA5974FAB0E8AE4AA7814FE05CF832
2012-04-15 16:55 . 2012-04-15 16:55 61952 ----a-w- c:\windows\system32\DBBK\9A85ABCE0FDD1AF8E79E731EB0B679F3
2012-04-15 16:55 . 2012-04-15 16:55 6656 ----a-w- c:\windows\system32\DBBK\100103C6535C66265267F5EEA5F5846E
2012-04-15 16:55 . 2012-04-15 16:55 216576 ----a-w- c:\windows\system32\DBBK\03A03A453F1AAAE0C73AAAF895321C7A
2012-04-15 16:55 . 2012-04-15 16:55 132608 ----a-w- c:\windows\system32\DBBK\33EF4861F19A0736B11314AAD9AE28D0
2012-04-15 16:55 . 2012-04-15 16:55 191488 ----a-w- c:\windows\system32\DBBK\990A58A0B01720E419B55EFC5FF387F8
2012-04-15 16:55 . 2012-04-15 16:55 554832 ----a-w- c:\windows\system32\DBBK\0B3595A4FF0B36D68E5FC67FD7D70FDC
2012-04-15 16:55 . 2012-04-15 16:55 6701056 ----a-w- c:\windows\system32\DBBK\97B9D1F06328B3132FA77CFF6DE2AD2F
2012-04-15 16:55 . 2012-04-15 16:55 632656 ----a-w- c:\windows\system32\DBBK\C9564CF4976E7E96B4052737AA2492B4
2012-04-15 16:55 . 2012-04-15 16:55 995328 ----a-w- c:\windows\system32\DBBK\2E2876C96A801019B847BD9A17112E99
2012-04-15 16:55 . 2012-04-15 16:55 126976 ----a-w- c:\windows\system32\DBBK\B69909B8D9B82A47C73F2AD7F9E187BE
2012-04-15 16:55 . 2012-04-15 16:55 222208 ----a-w- c:\windows\system32\DBBK\9A892B3439884C62B04718F0303A49E9
2012-04-15 16:55 . 2012-04-15 16:55 282624 ----a-w- c:\windows\system32\DBBK\608E8DDAC1A340B6A3CD15897D6DE60C
2012-04-15 16:55 . 2012-04-15 16:55 98304 ----a-w- c:\windows\system32\DBBK\8600142FA91C1B96367D3300AD0F3F3A
2012-04-15 16:55 . 2012-04-15 16:55 19456 ----a-w- c:\windows\system32\DBBK\AF75DBA674E55221B7A055B0A4345F16
2012-04-15 16:55 . 2012-04-15 16:55 1003520 ----a-w- c:\windows\system32\DBBK\80C147EBC5C4FD5804305BB357E3CE6E
2012-04-15 16:55 . 2012-04-15 16:55 254464 ----a-w- c:\windows\system32\DBBK\E9E01EB683C132F7FA27CD607B8A2B63
2012-04-15 16:55 . 2012-04-15 16:55 11776 ----a-w- c:\windows\system32\DBBK\D2A937964199F647B1C3BC435712E5D9
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\CFF35B879D1618D42C86644C717BA947
2012-04-15 16:55 . 2012-04-15 16:55 103936 ----a-w- c:\windows\system32\DBBK\A90DC9ABD65DB1A8902F361103029952
2012-04-15 16:55 . 2012-04-15 16:55 19456 ----a-w- c:\windows\system32\DBBK\BA387E955E890C8A88306D9B8D06BF17
2012-04-15 16:55 . 2012-04-15 16:55 18432 ----a-w- c:\windows\system32\DBBK\55CA01BA19D0006C8F2639B6C045E08B
2012-04-15 16:55 . 2012-04-15 16:55 60928 ----a-w- c:\windows\system32\DBBK\032B0D36AD92B582D869879F5AF5B928
2012-04-15 16:55 . 2012-04-15 16:55 46080 ----a-w- c:\windows\system32\DBBK\D8A65DAFB3EB41CBB622745676FCD072
2012-04-15 16:55 . 2012-04-15 16:55 267264 ----a-w- c:\windows\system32\DBBK\26384429FCD85D83746F63E798AB1480
2012-04-15 16:55 . 2012-04-15 16:55 352768 ----a-w- c:\windows\system32\DBBK\40B82688907A7DBA4DB3B5ADDE3EAB3B
2012-04-15 16:55 . 2012-04-15 16:55 1202176 ----a-w- c:\windows\system32\DBBK\4E30ED3E551E867ADD1C8D58F5EDD9DF
2012-04-15 16:55 . 2012-04-15 16:55 48128 ----a-w- c:\windows\system32\DBBK\F7611EC07349979DA9B0AE1F18CCC7A6
2012-04-15 16:55 . 2012-04-15 16:55 162304 ----a-w- c:\windows\system32\DBBK\9FBCFD7E88A7ACE0E94456504895DD7F
2012-04-15 16:55 . 2012-04-15 16:55 2158592 ----a-w- c:\windows\system32\DBBK\824D940CD81A2814D4862C2AD62FACDD
2012-04-15 16:55 . 2012-04-15 16:55 442880 ----a-w- c:\windows\system32\DBBK\96F0F8F4DEE598C8D12AD9633E0CFE2A
2012-04-15 16:55 . 2012-04-15 16:55 374784 ----a-w- c:\windows\system32\DBBK\BBA9D5A730D5E304117AD26923EBD8AA
2012-04-15 16:55 . 2012-04-15 16:55 67584 ----a-w- c:\windows\system32\DBBK\8D1E1E529A2C9E9B6A85B55A345F7629
2012-04-15 16:55 . 2012-04-15 16:55 29696 ----a-w- c:\windows\system32\DBBK\081E6E1C91AEC36758902A9F727CD23C
2012-04-15 16:55 . 2012-04-15 16:55 49664 ----a-w- c:\windows\system32\DBBK\DCB7FCDCC97F87360F75D77425B81737
2012-04-15 16:55 . 2012-04-15 16:55 271360 ----a-w- c:\windows\system32\DBBK\F6916EFC29D9953D5D0DF06882AE8E16
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\5A12C364AD1D4FCC0AD0E56DBBC34462
2012-04-15 16:55 . 2012-04-15 16:55 20992 ----a-w- c:\windows\system32\DBBK\A12829E9974F57E9B5DBFEA7C93190F6
2012-04-15 16:55 . 2012-04-15 16:55 20992 ----a-w- c:\windows\system32\DBBK\07393A09C46083588E751B63B03C8301
2012-04-15 16:55 . 2012-04-15 16:55 72192 ----a-w- c:\windows\system32\DBBK\85683DF1F917E4D7F6BE1A04986BF1C8
2012-04-15 16:55 . 2012-04-15 16:55 27136 ----a-w- c:\windows\system32\DBBK\8B74CEC6980D4816B0037AE9A27E538F
2012-04-15 16:55 . 2012-04-15 16:55 22016 ----a-w- c:\windows\system32\DBBK\2F040CF0613A6D64DCBBA9EE81F5A5AE
2012-04-15 16:55 . 2012-04-15 16:55 195584 ----a-w- c:\windows\system32\DBBK\C940F2F5C60B3727C5F18840735B229C
2012-04-15 16:55 . 2012-04-15 16:55 70144 ----a-w- c:\windows\system32\DBBK\F10E5311E5093FA3C00FF88C54C32FCA
2012-04-15 16:55 . 2012-04-15 16:55 164352 ----a-w- c:\windows\system32\DBBK\43CA4CCC22D52FB58E8988F0198851D0
2012-04-15 16:55 . 2012-04-15 16:55 52224 ----a-w- c:\windows\system32\DBBK\104A1070E90F1C530328E69B49718841
2012-04-15 16:55 . 2012-04-15 16:55 37376 ----a-w- c:\windows\system32\DBBK\42FB6AFD6B79D9FE07381609172E7CA4
2012-04-15 16:55 . 2012-04-15 16:55 593408 ----a-w- c:\windows\system32\DBBK\E897EAF5ED6BA41E081060C9B447A673
2012-04-15 16:55 . 2012-04-15 16:55 4608 ----a-w- c:\windows\system32\DBBK\9C67F6BBDA3881CFD02095160CF91576
2012-04-15 16:55 . 2012-04-15 16:55 172032 ----a-w- c:\windows\system32\DBBK\D205C24A9D069049FE2DF2A1B38726A7
2012-04-15 16:55 . 2012-04-15 16:55 194048 ----a-w- c:\windows\system32\DBBK\D5AEFAD57C08349A4393D987DF7C715D
2012-04-15 16:55 . 2012-04-15 16:55 561664 ----a-w- c:\windows\system32\DBBK\FD049C25A168D3DE310D9207B7B6367B
2012-04-15 16:55 . 2012-04-15 16:55 37376 ----a-w- c:\windows\system32\DBBK\0915C4DB6DBC3BB9E11B7ECBBE4B7159
2012-04-15 16:55 . 2012-04-15 16:55 76800 ----a-w- c:\windows\system32\DBBK\FFA7172354B9256DBB2CDD75F16F33FE
2012-04-15 16:55 . 2012-04-15 16:55 325120 ----a-w- c:\windows\system32\DBBK\839F96DBAAFD3353E0B248A5E0BD2A51
2012-04-15 16:55 . 2012-04-15 16:55 385024 ----a-w- c:\windows\system32\DBBK\FFE4BEC5C187C426A17AE76A773063A6
2012-04-15 16:55 . 2012-04-15 16:55 122880 ----a-w- c:\windows\system32\DBBK\6D8CACF3B1B54943EFCF420C2D667B37
2012-04-15 16:55 . 2012-04-15 16:55 233472 ----a-w- c:\windows\system32\DBBK\8E01332CC4B68BC6B5B7EFFE374442AA
2012-04-15 16:55 . 2012-04-15 16:55 320000 ----a-w- c:\windows\system32\DBBK\9E4B0E7472B4CEBA9E17F440B8CB0AB8
2012-04-15 16:55 . 2012-04-15 16:55 471040 ----a-w- c:\windows\system32\DBBK\93BF790FCB9FBE1E82D2981BA1B7E134
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\20B3934DB73EABA2B49B7177873CB81F
2012-04-15 16:55 . 2012-04-15 16:55 51200 ----a-w- c:\windows\system32\DBBK\68ECCA523ED760AAFC03C5D587569859
2012-04-15 16:55 . 2012-04-15 16:55 56832 ----a-w- c:\windows\system32\DBBK\8CE1A6D16B9077E91E192499EB611C5F
2012-04-15 16:55 . 2012-04-15 16:55 47104 ----a-w- c:\windows\system32\DBBK\E5A4A1326A02F8E7B59E6C3270CE7202
2012-04-15 16:55 . 2012-04-15 16:55 36352 ----a-w- c:\windows\system32\DBBK\36B8D5903CEEF0AA42A1EE002BD27FF1
2012-04-15 16:55 . 2012-04-15 16:55 168960 ----a-w- c:\windows\system32\DBBK\108C2CFA5527458C096A699929ECBD80
2012-04-15 16:55 . 2012-04-15 16:55 57856 ----a-w- c:\windows\system32\DBBK\3FAD263CE1E2A6FFF40D00043B2275E3
2012-04-15 16:55 . 2012-04-15 16:55 171520 ----a-w- c:\windows\system32\DBBK\E59F08ED9D2A128CE436BBFC232247F6
2012-04-15 16:55 . 2012-04-15 16:55 152064 ----a-w- c:\windows\system32\DBBK\05BF975CA428E04B462FB90841B37C95
2012-04-15 16:55 . 2012-04-15 16:55 70144 ----a-w- c:\windows\system32\DBBK\65BF13016A3C22775F3E17591AE5268A
2012-04-15 16:55 . 2012-04-15 16:55 12800 ----a-w- c:\windows\system32\DBBK\326C7F76A29897A892AA7726E91C1C67
2012-04-15 16:55 . 2012-04-15 16:55 1010688 ----a-w- c:\windows\system32\DBBK\1DB71A41DAEE6B3F8CD0DDA8209FA2D5
2012-04-15 16:55 . 2012-04-15 16:55 100864 ----a-w- c:\windows\system32\DBBK\F68194F74350D4A2ADE98961E33F884C
2012-04-15 16:55 . 2012-04-15 16:55 67072 ----a-w- c:\windows\system32\DBBK\39C5F32747B3414D1BB216FDB1DEFC58
2012-04-15 16:55 . 2012-04-15 16:55 180224 ----a-w- c:\windows\system32\DBBK\EDF2A5E96BEC469DA3F64E9BDD386111
2012-04-15 16:55 . 2012-04-15 16:55 22016 ----a-w- c:\windows\system32\DBBK\63DF770DF74ACB370EF5A16727069AAF
2012-04-15 16:55 . 2012-04-15 16:55 220160 ----a-w- c:\windows\system32\DBBK\2CFA4569350B7F84F815E9EC34E85766
2012-04-15 16:55 . 2012-04-15 16:55 181248 ----a-w- c:\windows\system32\DBBK\6E1F8165C365D35C8E3C045AF0CDD481
2012-04-15 16:55 . 2012-04-15 16:55 717824 ----a-w- c:\windows\system32\DBBK\EE06B85BC69F18826302348A2AD089E0
2012-04-15 16:55 . 2012-04-15 16:55 1624576 ----a-w- c:\windows\system32\DBBK\0029EBA325F2FC9B6BA46BEE33F32A09
2012-04-15 16:55 . 2012-04-15 16:55 249856 ----a-w- c:\windows\system32\DBBK\63BFDF555DA2075A77D677829C3CCCD0
2012-04-15 16:55 . 2012-04-15 16:55 60928 ----a-w- c:\windows\system32\DBBK\C30A3E5DEEEBA22E782AC54C5AF5F352
2012-04-15 16:55 . 2012-04-15 16:55 108032 ----a-w- c:\windows\system32\DBBK\F14A9B1778376D0B1788E402AC1F831A
2012-04-15 16:55 . 2012-04-15 16:55 1680896 ----a-w- c:\windows\system32\DBBK\352B3DC62A0D259A82A052238425C872
2012-04-15 16:55 . 2012-04-15 16:55 1003520 ----a-w- c:\windows\system32\DBBK\28CA821606669BB9215CE010767720FA
2012-04-15 16:55 . 2012-04-15 16:55 1792000 ----a-w- c:\windows\system32\DBBK\CDD35C1CE1EBFE80C055691CDC8DF443
2012-04-15 16:55 . 2012-04-15 16:55 988160 ----a-w- c:\windows\system32\DBBK\12C45E3CB6D65F73209549E2D02ECA7A
2012-04-15 16:55 . 2012-04-15 16:55 213504 ----a-w- c:\windows\system32\DBBK\243974EC02F7AE49E4179C54624143AB
2012-04-15 16:55 . 2012-04-15 16:55 473600 ----a-w- c:\windows\system32\DBBK\CE3B4E731638D2EF62FCB419BE0D39F0
2012-04-15 16:55 . 2012-04-15 16:55 14336 ----a-w- c:\windows\system32\DBBK\139D3AB6AA920C34C50CBFFB9EB7D222
2012-04-15 16:55 . 2012-04-15 16:55 49664 ----a-w- c:\windows\system32\DBBK\146B6F43A673379A3C670E86D89BE5EA
2012-04-15 16:55 . 2012-04-15 16:55 1086976 ----a-w- c:\windows\system32\DBBK\241E015DD809CFB23242F890B1FC575B
2012-04-15 16:55 . 2012-04-15 16:55 40448 ----a-w- c:\windows\system32\DBBK\6A6B2EE4565A178035BE2A4FF6F2C968
2012-04-15 16:55 . 2012-04-15 16:55 21504 ----a-w- c:\windows\system32\DBBK\702254574E7E52052DE39408457B7149
2012-04-15 16:55 . 2012-04-15 16:55 10752 ----a-w- c:\windows\system32\DBBK\3EF0D8AB08385AAB5802E773511A2E6A
2012-04-15 16:55 . 2012-04-15 16:55 462848 ----a-w- c:\windows\system32\DBBK\3F50200237961034FACE602373838980
2012-04-15 16:55 . 2012-04-15 16:55 610304 ----a-w- c:\windows\system32\DBBK\581B9BE9E92A0F3856CC85EC011EDC6F
2012-04-15 16:55 . 2012-04-15 16:55 9216 ----a-w- c:\windows\system32\DBBK\EE5C8E27C37B79CB54A2FCEEED2DC262
2012-04-15 16:55 . 2012-04-15 16:55 43520 ----a-w- c:\windows\system32\DBBK\78D072F35BC45D9E4E1B61895C152234
2012-04-15 16:55 . 2012-04-15 16:55 376832 ----a-w- c:\windows\system32\DBBK\7660F01D3B38ACA1747E397D21D790AF
2012-04-15 16:55 . 2012-04-15 16:55 92672 ----a-w- c:\windows\system32\DBBK\E714A1C0354636837E20CCBF00888EE7
2012-04-15 16:55 . 2012-04-15 16:55 86528 ----a-w- c:\windows\system32\DBBK\6703E366CC18D3B6E534F5CF7DF39CEE
2012-04-15 16:55 . 2012-04-15 16:55 145408 ----a-w- c:\windows\system32\DBBK\08DFDBD2FD4EA951DC46B1C7661ED35A
2012-04-15 16:55 . 2012-04-15 16:55 33280 ----a-w- c:\windows\system32\DBBK\5893EBDCE371174AC89ECD7731DD6D77
2012-04-15 16:55 . 2012-04-15 16:55 119808 ----a-w- c:\windows\system32\DBBK\F87D30E72E03D579A5199CCB3831D6EA
2012-04-15 16:55 . 2012-04-15 16:55 79872 ----a-w- c:\windows\system32\DBBK\1097F3035BAF46CED8B332B3564C5108
2012-04-15 16:55 . 2012-04-15 16:55 81920 ----a-w- c:\windows\system32\DBBK\D15618A0FF8DBC2C5BF3726BACC75A0B
2012-04-15 16:55 . 2012-04-15 16:55 75776 ----a-w- c:\windows\system32\DBBK\4BDBBE5E4208022DD794F7EEEB0F7366
2012-04-15 16:55 . 2012-04-15 16:55 44544 ----a-w- c:\windows\system32\DBBK\FD07F21E0A19C27ED4E1EEC2B07452B3
2012-04-15 16:55 . 2012-04-15 16:55 293376 ----a-w- c:\windows\system32\DBBK\EC7BC28D207DA09E79B3E9FAF8B232CA
2012-04-15 16:55 . 2012-04-15 16:55 20992 ----a-w- c:\windows\system32\DBBK\54A47F6B5E09A77E61649109C6A08866
2012-04-15 16:55 . 2012-04-15 16:55 170496 ----a-w- c:\windows\system32\DBBK\7222995615BF93B628DCEA4BD6CCACF7
2012-04-15 16:55 . 2012-04-15 16:55 175616 ----a-w- c:\windows\system32\DBBK\8124944EC89D6A1815E4E53F5B96AAF4
2012-04-15 16:55 . 2012-04-15 16:55 17408 ----a-w- c:\windows\system32\DBBK\4E5FE39C1076D115EC8BFCFE14D75B80
2012-04-15 16:55 . 2012-04-15 16:55 40448 ----a-w- c:\windows\system32\DBBK\91F434FF6606ED9BDC6A05D651B69553
2012-04-15 16:55 . 2012-04-15 16:55 186880 ----a-w- c:\windows\system32\DBBK\37CC990D4E2CDFAE12AC47F6B620FC13
2012-04-15 16:55 . 2012-04-15 16:55 249680 ----a-w- c:\windows\system32\DBBK\E8449FE262D7406BCB2AC2A45C53EC5F
2012-04-15 16:55 . 2012-04-15 16:55 65024 ----a-w- c:\windows\system32\DBBK\D29E45078CF4020CE0AAC82EC652D1EA
2012-04-15 16:55 . 2012-04-15 16:55 242936 ----a-w- c:\windows\system32\DBBK\ED8EC63F7522DF4852147C84EC62C36A
2012-04-15 16:55 . 2012-04-15 16:55 171520 ----a-w- c:\windows\system32\DBBK\0450CF487ECD8A67B56F59F9A96D024D
2012-04-15 16:55 . 2012-04-15 16:55 224768 ----a-w- c:\windows\system32\DBBK\1AFFB765AF1FDCC0C185C38E9DDDDAEE
2012-04-15 16:55 . 2012-04-15 16:55 127488 ----a-w- c:\windows\system32\DBBK\8EA53101FF2B15BDFF934B62A8FB326D
2012-04-15 16:55 . 2012-04-15 16:55 270336 ----a-w- c:\windows\system32\DBBK\B40420876B9288E0A1C8CCA8A84E5DC9
2012-04-15 16:55 . 2012-04-15 16:55 563712 ----a-w- c:\windows\system32\DBBK\C1809B9907ADEDAF16F50C894100883B
2012-04-15 16:55 . 2012-04-15 16:55 257024 ----a-w- c:\windows\system32\DBBK\4C1E16B9A53102C8D6FBA587CBCB95DE
2012-04-15 16:55 . 2012-04-15 16:55 10752 ----a-w- c:\windows\system32\DBBK\73E8667A19FEEDD856DF2695E9E511D4
2012-04-15 16:55 . 2012-04-15 16:55 121856 ----a-w- c:\windows\system32\DBBK\3FD15B4611D9BDA3F8013548C0ECAECA
2012-04-15 16:55 . 2012-04-15 16:55 73216 ----a-w- c:\windows\system32\DBBK\7A6986DD659B96398A11AF5173892715
2012-04-15 16:55 . 2012-04-15 16:55 232448 ----a-w- c:\windows\system32\DBBK\8999B8631C7FD9F7F9EC3CAFD953BA24
2012-04-15 16:55 . 2012-04-15 16:55 78848 ----a-w- c:\windows\system32\DBBK\7321F18D1F820612ED0E9F2D4B578A7E
2012-04-15 16:55 . 2012-04-15 16:55 542208 ----a-w- c:\windows\system32\DBBK\2F4348DC0D06A0EBA5F5C4CB435790C1
2012-04-15 16:55 . 2012-04-15 16:55 93696 ----a-w- c:\windows\system32\DBBK\6DCFAEC6D1334AA6CDF8961DB4633CBF
2012-04-15 16:55 . 2012-04-15 16:55 161792 ----a-w- c:\windows\system32\DBBK\E343CABBD8D600ABAF3F11625D33B3D0
2012-04-15 16:55 . 2012-04-15 16:55 2048 ----a-w- c:\windows\system32\DBBK\C90878913DF3DC504790282043DB5F4C
2012-04-15 16:55 . 2012-04-15 16:55 219136 ----a-w- c:\windows\system32\DBBK\C20FF1A17726C357461A7AC5B3BFC3AD
2012-04-15 16:55 . 2012-04-15 16:55 98816 ----a-w- c:\windows\system32\DBBK\FB4EB9352B7D698E6B3C2AA2ED724DAD
2012-04-15 16:55 . 2012-04-15 16:55 80384 ----a-w- c:\windows\system32\DBBK\FC7650224790CAE75A5E9231961FDEC5
2012-04-15 16:55 . 2012-04-15 16:55 12288 ----a-w- c:\windows\system32\DBBK\50BA656134F78AF64E4DD3C8B6FEFD7E
2012-04-15 16:55 . 2012-04-15 16:55 262144 ----a-w- c:\windows\system32\DBBK\82C089EA2A3EEFADF3588EA71E8BDADA
2012-04-15 16:55 . 2012-04-15 16:55 58880 ----a-w- c:\windows\system32\DBBK\1128637CAD49A8E3C8B5FA5D0A061525
2012-04-15 16:55 . 2012-04-15 16:55 551424 ----a-w- c:\windows\system32\DBBK\245F4691314F42D4D1BC06442F0B2086
2012-04-15 16:55 . 2012-04-15 16:55 307712 ----a-w- c:\windows\system32\DBBK\250AA41DE690561AF1282D598914564C
2012-04-15 16:55 . 2012-04-15 16:55 90112 ----a-w- c:\windows\system32\DBBK\5CCDCD40E732D54E0F7451AC66AC1C87
2012-04-15 16:55 . 2012-04-15 16:55 1038848 ----a-w- c:\windows\system32\DBBK\C95CA687D32DDAB1C91E1122E80D5E16
2012-04-15 16:55 . 2012-04-15 16:55 11264 ----a-w- c:\windows\system32\DBBK\D412B1B72C5AB020218E9A047D90CA05
2012-04-15 16:55 . 2012-04-15 16:55 22016 ----a-w- c:\windows\system32\DBBK\69678722290C78D5D7198C60B5A4E3E8
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\BA51FFE170C5B3AE8EC4F5BD2581A29E
2012-04-15 16:55 . 2012-04-15 16:55 51200 ----a-w- c:\windows\system32\DBBK\3369D021265E369D57317D61FA86DD79
2012-04-15 16:55 . 2012-04-15 16:55 15872 ----a-w- c:\windows\system32\DBBK\E361AE3010EA4B3123DAB5BDAE21798F
2012-04-15 16:55 . 2012-04-15 16:55 100352 ----a-w- c:\windows\system32\DBBK\4A054C853031616D161A84BECF281F47
2012-04-15 16:55 . 2012-04-15 16:55 267776 ----a-w- c:\windows\system32\DBBK\8AEA9A37C1A3565A204D37C5E72AB791
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\81951F51E318AECC2D68559E47485CC4
2012-04-15 16:55 . 2012-04-15 16:55 295936 ----a-w- c:\windows\system32\DBBK\863F793D15B4026B1A5FDECA873D4D84
2012-04-15 16:55 . 2012-04-15 16:55 36864 ----a-w- c:\windows\system32\DBBK\F08F6FCD09F9BE94C37ACC1B344685FF
2012-04-15 16:55 . 2012-04-15 16:55 380416 ----a-w- c:\windows\system32\DBBK\919001D2BB17DF06CA3F8AC16AD039F6
2012-04-15 16:55 . 2012-04-15 16:55 259072 ----a-w- c:\windows\system32\DBBK\5F1B6A9C35D3D5CA72D6D6FDEF9747D6
2012-04-15 16:55 . 2012-04-15 16:55 8704 ----a-w- c:\windows\system32\DBBK\633C2C060CF857099F6C4F8D75C952B1
2012-04-15 16:55 . 2012-04-15 16:55 156672 ----a-w- c:\windows\system32\DBBK\418E881201583A3039D81F43E39E6C78
2012-04-15 16:55 . 2012-04-15 16:55 286720 ----a-w- c:\windows\system32\DBBK\6D13E1406F50C66E2A95D97F22C47560
2012-04-15 16:55 . 2012-04-15 16:55 6144 ----a-w- c:\windows\system32\DBBK\357B990A4249D7F7485B230C0CC8825A
2012-04-15 16:55 . 2012-04-15 16:55 46080 ----a-w- c:\windows\system32\DBBK\5997D769CDB108390DCFAEBF442BF816
2012-04-15 16:55 . 2012-04-15 16:55 31744 ----a-w- c:\windows\system32\DBBK\C733D233B623B7FFCE5031E4B756EE26
2012-04-15 16:55 . 2012-04-15 16:55 107520 ----a-w- c:\windows\system32\DBBK\CAEF9CD6C10B1017E2C298D849CD31DB
2012-04-15 16:55 . 2012-04-15 16:55 24576 ----a-w- c:\windows\system32\DBBK\364455805E64882844EE9ACB72522830
2012-04-15 16:55 . 2012-04-15 16:55 96256 ----a-w- c:\windows\system32\DBBK\B5C5DCAD3899512020D135600129D665
2012-04-15 16:55 . 2012-04-15 16:55 14848 ----a-w- c:\windows\system32\DBBK\7C76B61A5E1EF5D1FA554CF134100F18
2012-04-15 16:55 . 2012-04-15 16:55 23552 ----a-w- c:\windows\system32\DBBK\79D10964DE86B292320E9DFE02282A23
2012-04-15 16:55 . 2012-04-15 16:55 169984 ----a-w- c:\windows\system32\DBBK\183B4188D5D91B271613EC3EFD1B3CEF
2012-04-15 16:55 . 2012-04-15 16:55 38912 ----a-w- c:\windows\system32\DBBK\6C062EA09313872D2235027EF7A4554E
2012-04-15 16:55 . 2012-04-15 16:55 44032 ----a-w- c:\windows\system32\DBBK\DAB748AE0439955ED2FA22357533DDDB
2012-04-15 16:55 . 2012-04-15 16:55 6144 ----a-w- c:\windows\system32\DBBK\342271F6142E7C70805B8A81E1BA5F5C
2012-04-15 16:55 . 2012-04-15 16:55 13312 ----a-w- c:\windows\system32\DBBK\5FCD3320AAE71506B43F9E12E4E72172
2012-04-15 16:55 . 2012-04-15 16:55 2343424 ----a-w- c:\windows\system32\DBBK\5A9079677B2923127C43E880DC6A92CA
2012-04-15 16:55 . 2012-04-15 16:55 145920 ----a-w- c:\windows\system32\DBBK\3FFAEA12666E565FF51BF2FCA674F543
2012-04-15 16:55 . 2012-04-15 16:55 34304 ----a-w- c:\windows\system32\DBBK\938F39B50BAFE13D6F58C7790682C010
2012-04-15 16:55 . 2012-04-15 16:55 172544 ----a-w- c:\windows\system32\DBBK\A7D79E9F660340AB20CD73F12910985F
2012-04-15 16:55 . 2012-04-15 16:55 64512 ----a-w- c:\windows\system32\DBBK\CC4ED8BEA78B0DCA6F217E014C3291A7
2012-04-15 16:55 . 2012-04-15 16:55 530432 ----a-w- c:\windows\system32\DBBK\BDAC1AA64495D0F7E1FF810EBBF1F018
2012-04-15 16:55 . 2012-04-15 16:55 1154048 ----a-w- c:\windows\system32\DBBK\454E292861A4EF1D72F43F42BBAF6917
2012-04-15 16:55 . 2012-04-15 16:55 8704 ----a-w- c:\windows\system32\DBBK\6377051C63D5552A311935C67E9FDFDC
2012-04-15 16:55 . 2012-04-15 16:55 2048 ----a-w- c:\windows\system32\DBBK\9C278785347BCC991F8EA2999D90F58D
2012-04-15 16:55 . 2012-04-15 16:55 290816 ----a-w- c:\windows\system32\DBBK\A9F8E23C1FC00190376B11FFAD9DE6C6
2012-04-15 16:55 . 2012-04-15 16:55 159232 ----a-w- c:\windows\system32\DBBK\B2DB6ABA2E292235749B80A9C3DFA867
2012-04-15 16:55 . 2012-04-15 16:55 12872704 ----a-w- c:\windows\system32\DBBK\358FC25391C6733EAF49DB480AFDFD8C
2012-04-15 16:55 . 2012-04-15 16:55 981504 ----a-w- c:\windows\system32\DBBK\7CCA8574A3B9BB41A4150739E21F1B23
2012-04-15 16:55 . 2012-04-15 16:55 1414144 ----a-w- c:\windows\system32\DBBK\928CF7268086631F54C3D8E17238C6DD
2012-04-15 16:55 . 2012-04-15 16:55 828928 ----a-w- c:\windows\system32\DBBK\C9618BC9B2B0FD7C1138D8774795A79B
2012-04-15 16:55 . 2012-04-15 16:55 522240 ----a-w- c:\windows\system32\DBBK\FF5688D309347F2720911D8796912834
2012-04-15 16:55 . 2012-04-15 16:55 2073600 ----a-w- c:\windows\system32\DBBK\6872331A809FC689F6B2B60816B7EEA5
2012-04-15 16:55 . 2012-04-15 16:55 304640 ----a-w- c:\windows\system32\DBBK\E87F5393F7D8CE2FACC4DFF703531392
2012-04-15 16:55 . 2012-04-15 16:55 92160 ----a-w- c:\windows\system32\DBBK\CFC97F07904067A1E5FAE195D534DA3A
2012-04-15 16:55 . 2012-04-15 16:55 653312 ----a-w- c:\windows\system32\DBBK\6400774E903729ADD0A62A24A334EE56
2012-04-15 16:55 . 2012-04-15 16:55 26624 ----a-w- c:\windows\system32\DBBK\4F154D2C9C6DF951FD6E5AABBAE6B5EE
2012-04-15 16:55 . 2012-04-15 16:55 315904 ----a-w- c:\windows\system32\DBBK\070C5B9D3006602A07757179D9B56F5D
2012-04-15 16:55 . 2012-04-15 16:55 1667584 ----a-w- c:\windows\system32\DBBK\10FB16B50AFFDA6D44588F3C445DC273
2012-04-15 16:55 . 2012-04-15 16:55 571904 ----a-w- c:\windows\system32\DBBK\6C765E82B57F2E66CE9C54AC238471D9
2012-04-15 16:55 . 2012-04-15 16:55 118272 ----a-w- c:\windows\system32\DBBK\4A8E2F20809CC161107FAA94F6CF2685
2012-04-15 16:55 . 2012-04-15 16:55 690688 ----a-w- c:\windows\system32\DBBK\9DC80A8AAAAAC397BDAB3C67165A824E
2012-04-15 16:55 . 2012-04-15 16:55 350208 ----a-w- c:\windows\system32\DBBK\8CC3C111D653E96F3EA1590891491D71
2012-04-15 16:55 . 2012-04-15 16:55 640512 ----a-w- c:\windows\system32\DBBK\95E2376B3323F062EB562B8586D0F14A
2012-04-15 16:55 . 2012-04-15 16:55 811520 ----a-w- c:\windows\system32\DBBK\F1DD3ACAEE5E6B4BBC69BC6DF75CEF66
2012-04-15 16:55 . 2012-04-15 16:55 6144 ----a-w- c:\windows\system32\DBBK\A543AC1F7138376D778D630A35FCBC4C
2012-04-15 16:55 . 2012-04-15 16:55 485888 ----a-w- c:\windows\system32\DBBK\D1DE1EAFDE97BE41CF6585027FF3E732
2012-04-15 16:55 . 2012-04-15 16:55 1231360 ----a-w- c:\windows\system32\DBBK\FD859E892A62C5D4B708EA1D92550988
2012-04-15 16:55 . 2012-04-15 16:55 146432 ----a-w- c:\windows\system32\DBBK\45F4E7BF43DB40A6C6B4D92C76CBC3F2
2012-04-15 16:55 . 2012-04-15 16:55 18432 ----a-w- c:\windows\system32\DBBK\8C5094A8AB24DE7496C7C19942F2DF04
2012-04-15 16:55 . 2012-04-15 16:55 26112 ----a-w- c:\windows\system32\DBBK\2C388D2CD01C9042596CF3C8F3C7B24D
2012-04-15 16:55 . 2012-04-15 16:55 28160 ----a-w- c:\windows\system32\DBBK\9E3CED91863E6EE98C24794D05E27A71
2012-04-15 16:55 . 2012-04-15 16:55 25728 ----a-w- c:\windows\system32\DBBK\6C26122F1931D4D7810240F32DDCE890
2012-04-15 16:55 . 2012-04-15 16:55 55808 ----a-w- c:\windows\system32\DBBK\931A1DF1520ABC6E84BA4A75E6957025
2012-04-15 16:55 . 2012-04-15 16:55 24064 ----a-w- c:\windows\system32\DBBK\10C19F8290891AF023EAEC0832E1EB4D
2012-04-15 16:55 . 2012-04-15 16:55 75776 ----a-w- c:\windows\system32\DBBK\BD9C55D7023C5DE374507ACC7A14E2AC
2012-04-15 16:55 . 2012-04-15 16:55 269824 ----a-w- c:\windows\system32\DBBK\A8BB45F9ECAD993461E0FEF8E2A99152
2012-04-15 16:55 . 2012-04-15 16:55 626176 ----a-w- c:\windows\system32\DBBK\804AAAFEBB3AD5F49334DD906BCB1DE5
2012-04-15 16:55 . 2012-04-15 16:55 338176 ----a-w- c:\windows\system32\DBBK\215666A8A85023EF019B510CBB67F678
2012-04-15 16:55 . 2012-04-15 16:55 180816 ----a-w- c:\windows\system32\DBBK\CDE41293DB871A75CD99EB0CE781356B
2012-04-15 16:55 . 2012-04-15 16:55 80896 ----a-w- c:\windows\system32\DBBK\27F9288AF019E6DACA281EDE51FF5928
2012-04-15 16:55 . 2012-04-15 16:55 177152 ----a-w- c:\windows\system32\DBBK\D72708C9F49500C13D7D067E169B7715
2012-04-15 16:55 . 2012-04-15 16:55 2058528 ----a-w- c:\windows\system32\DBBK\8A4341616976E47712B60F18C7049DCC
2012-04-15 16:55 . 2012-04-15 16:55 31744 ----a-w- c:\windows\system32\DBBK\F001861E5700EE84E2D4E52C712F4964
2012-04-15 16:55 . 2012-04-15 16:55 1035776 ----a-w- c:\windows\system32\DBBK\7E10E3BB9B258AD8A9300F91214D67B9
2012-04-15 16:55 . 2012-04-15 16:55 48640 ----a-w- c:\windows\system32\DBBK\A4BDC541E69674FBFF1A8FF00BE913F2
2012-04-15 16:55 . 2012-04-15 16:55 206848 ----a-w- c:\windows\system32\DBBK\7FF15A4F092CD4A96055BA69F903E3E9
2012-04-15 16:55 . 2012-04-15 16:55 868352 ----a-w- c:\windows\system32\DBBK\E570CBD732848438EAC574EB3442A2A8
2012-04-15 16:55 . 2012-04-15 16:55 258560 ----a-w- c:\windows\system32\DBBK\8DC94AEC6A7E644A06135AE7506DC2E9
2012-04-15 16:55 . 2012-04-15 16:55 39936 ----a-w- c:\windows\system32\DBBK\D295BED4B898F0FD999FCFA9B32B071B
2012-04-15 16:55 . 2012-04-15 16:55 190976 ----a-w- c:\windows\system32\DBBK\5DCEF0C32BE0F33277326586FA503689
2012-04-15 16:55 . 2012-04-15 16:55 12240 ----a-w- c:\windows\system32\DBBK\E58C78A848ADD9610A4DB6D214AF5224
2012-04-15 16:55 . 2012-04-15 16:55 33588 ----a-w- c:\windows\system32\DBBK\0A716C08CB13C3A8F4F51E882DBF7416
2012-04-15 16:55 . 2012-04-15 16:55 75264 ----a-w- c:\windows\system32\DBBK\44101F495A83EA6401D886E7FD70096B
2012-04-15 16:55 . 2012-04-15 16:55 77824 ----a-w- c:\windows\system32\DBBK\0FE8B15916307A6AC12BFB6A63E45507
2012-04-15 16:55 . 2012-04-15 16:55 73728 ----a-w- c:\windows\system32\DBBK\631E3E205AD6D86F2AED6A4A8E69F2DB
2012-04-15 16:55 . 2012-04-15 16:55 118784 ----a-w- c:\windows\system32\DBBK\38FBE267E7E6983311179230FACB1017
2012-04-15 16:55 . 2012-04-15 16:55 20992 ----a-w- c:\windows\system32\DBBK\E4A8AEC125A2E43A9E32AFEEA7C9C888
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\57EC4AEF73660166074D8F7F31C0D4FD
2012-04-15 16:55 . 2012-04-15 16:55 31232 ----a-w- c:\windows\system32\DBBK\CBE8C58A8579CFE5FCCF809E6F114E89
2012-04-15 16:55 . 2012-04-15 16:55 78848 ----a-w- c:\windows\system32\DBBK\D9F91EAFEC2815365CBE6D167E4E332A
2012-04-15 16:55 . 2012-04-15 16:55 42496 ----a-w- c:\windows\system32\DBBK\A4216C71DD4F60B26418CCFD99CD0815
2012-04-15 16:55 . 2012-04-15 16:55 37376 ----a-w- c:\windows\system32\DBBK\D231B577024AA324AF13A42F3A807D10
2012-04-15 16:55 . 2012-04-15 16:55 84992 ----a-w- c:\windows\system32\DBBK\0328BE1C7F1CBA23848179F8762E391C
2012-04-15 16:55 . 2012-04-15 16:55 39936 ----a-w- c:\windows\system32\DBBK\355AAC141B214BEF1DBC1483AFD9BD50
2012-04-15 16:55 . 2012-04-15 16:55 164864 ----a-w- c:\windows\system32\DBBK\1B133875B8AA8AC48969BD3458AFE9F5
2012-04-15 16:55 . 2012-04-15 16:55 41552 ----a-w- c:\windows\system32\DBBK\FB18CC1D4C2E716B6B903B0AC0CC0609
2012-04-15 16:55 . 2012-04-15 16:55 5888 ----a-w- c:\windows\system32\DBBK\5787196F32D043572EC6565C0EF1B8E0
2012-04-15 16:55 . 2012-04-15 16:55 196400 ----a-w- c:\windows\system32\DBBK\55F6E55CC2430CA8713387106FA79817
2012-04-15 16:55 . 2012-04-15 16:55 42576 ----a-w- c:\windows\system32\DBBK\ADEF52CA1AEAE82B50DF86B56413107E
2012-04-15 16:55 . 2012-04-15 16:55 80896 ----a-w- c:\windows\system32\DBBK\F151F0BDC47F4A28B1B20A0818EA36D6
2012-04-15 16:55 . 2012-04-15 16:55 108544 ----a-w- c:\windows\system32\DBBK\9036377B8A6C15DC2EEC53E489D159B5
2012-04-15 16:55 . 2012-04-15 16:55 16128 ----a-w- c:\windows\system32\DBBK\1825BCEB47BF41C5A9F0E44DE82FC27A
2012-04-15 16:55 . 2012-04-15 16:55 26600 ----a-w- c:\windows\system32\DBBK\8182FF89C65E4D38B2DE4BB0FB18564E
2012-04-15 16:55 . 2012-04-15 16:55 43008 ----a-w- c:\windows\system32\DBBK\F92DE757E4B7CE9C07C5E65423F3AE3B
2012-04-15 16:55 . 2012-04-15 16:55 284672 ----a-w- c:\windows\system32\DBBK\3AA940AA9AC3055FE32FF2D3D20CCD28
2012-04-15 16:55 . 2012-04-15 16:55 20480 ----a-w- c:\windows\system32\DBBK\E185D44FAC515A18D9DEDDC23C2CDF44
2012-04-15 16:55 . 2012-04-15 16:55 19968 ----a-w- c:\windows\system32\DBBK\90567B1E658001E79D7C8BBD3DDE5AA6
2012-04-15 16:55 . 2012-04-15 16:55 1218048 ----a-w- c:\windows\system32\DBBK\AC4ADAC154563AB41CC79B0257BC685A
2012-04-15 16:55 . 2012-04-15 16:55 104448 ----a-w- c:\windows\system32\DBBK\8CCA591019216E9523E3CB385CE643E6
2012-04-15 16:55 . 2012-04-15 16:55 219008 ----a-w- c:\windows\system32\DBBK\D458D1C7F1D49869000668E3C3BB0D4D
2012-04-15 16:55 . 2012-04-15 16:55 728448 ----a-w- c:\windows\system32\DBBK\23F5D28378A160352BA8F817BD8C71CB
2012-04-15 16:55 . 2012-04-15 16:55 2929664 ----a-w- c:\windows\system32\DBBK\22D300F835600C9C634860CF2912F9CF
2012-04-15 16:55 . 2012-04-15 16:55 668160 ----a-w- c:\windows\system32\DBBK\F88A52EB62019D6A62FDD9E08034DBD8
2012-04-15 16:55 . 2012-04-15 16:55 69632 ----a-w- c:\windows\system32\DBBK\16742790895960690237A5143CEDEC8B
2012-04-15 16:55 . 2012-04-15 16:55 14080 ----a-w- c:\windows\system32\DBBK\DEA805815E587DAD1DD2C502220B5616
2012-04-15 16:55 . 2012-04-15 16:55 55296 ----a-w- c:\windows\system32\DBBK\00DDA200D71BAC534BF56A9DB5DFD666
2012-04-15 16:55 . 2012-04-15 16:55 108544 ----a-w- c:\windows\system32\DBBK\B2FA25D9B17A68BB93D58B0556E8C90D
2012-04-15 16:55 . 2012-04-15 16:55 7168 ----a-w- c:\windows\system32\DBBK\CBC22823628544735625B280665E434E
2012-04-15 16:55 . 2012-04-15 16:55 35328 ----a-w- c:\windows\system32\DBBK\2287078ED48FCFC477B05B20CF38F36F
2012-04-15 16:55 . 2012-04-15 16:55 78336 ----a-w- c:\windows\system32\DBBK\F024449C97EC1E464AAFFDA18593DB88
2012-04-15 16:55 . 2012-04-15 16:55 32256 ----a-w- c:\windows\system32\DBBK\1A050B0274BFB3890703D490F330C0DA
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\E9A0A4D07E53D8FEA2BB8387A3293C58
2012-04-15 16:55 . 2012-04-15 16:55 28240 ----a-w- c:\windows\system32\DBBK\FC6B9FF600CC585EA38B12589BD4E246
2012-04-15 16:55 . 2012-04-15 16:55 242688 ----a-w- c:\windows\system32\DBBK\D528BC58A489409BA40334EBF96A311B
2012-04-15 16:55 . 2012-04-15 16:55 53120 ----a-w- c:\windows\system32\DBBK\04DBF4B01EA4BF25A9A3E84AFFAC9B20
2012-04-15 16:55 . 2012-04-15 16:55 63488 ----a-w- c:\windows\system32\DBBK\3C3C78515F5AB448B022BDF5B8FFDD2E
2012-04-15 16:55 . 2012-04-15 16:55 36352 ----a-w- c:\windows\system32\DBBK\80B275B1CE3B0E79909DB7B39AF74D51
2012-04-15 16:55 . 2012-04-15 16:55 20352 ----a-w- c:\windows\system32\DBBK\7E72514A3A1C5A9F3BFF0660B3866C2B
2012-04-15 16:55 . 2012-04-15 16:55 64880 ----a-w- c:\windows\system32\DBBK\B41BACC049CDB916A52B1448BF30D6AB
2012-04-15 16:55 . 2012-04-15 16:55 104448 ----a-w- c:\windows\system32\DBBK\6270CCAE2A86DE6D146529FE55B3246A
2012-04-15 16:55 . 2012-04-15 16:55 48128 ----a-w- c:\windows\system32\DBBK\7090D3436EEB4E7DA3373090A23448F7
2012-04-15 16:55 . 2012-04-15 16:55 9728 ----a-w- c:\windows\system32\DBBK\8B9A943F3B53861F2BFAF6C186168F79
2012-04-15 16:55 . 2012-04-15 16:55 338944 ----a-w- c:\windows\system32\DBBK\9EBBBA55060F786F0FCAA3893BFA2806
2012-04-15 16:55 . 2012-04-15 16:55 187904 ----a-w- c:\windows\system32\DBBK\280122DDCF04B378EDD1AD54D71C1E54
2012-04-15 16:55 . 2012-04-15 16:55 21504 ----a-w- c:\windows\system32\DBBK\2F885864D5BC8A16C86BEE595969A48A
2012-04-15 16:55 . 2012-04-15 16:55 74752 ----a-w- c:\windows\system32\DBBK\B459575348C20E8121D6039DA063C704
2012-04-15 16:55 . 2012-04-15 16:55 35328 ----a-w- c:\windows\system32\DBBK\1DB262A9F8C087E8153D89BEF3D2235F
2012-04-15 16:55 . 2012-04-15 16:55 7168 ----a-w- c:\windows\system32\DBBK\44B0A53CD4F27D50ED461DAE0C0B4E1F
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\DAEFB28E3AF5A76ABCC2C3078C07327F
2012-04-15 16:55 . 2012-04-15 16:55 6656 ----a-w- c:\windows\system32\DBBK\23DAE03F29D253AE74C44F99E515F9A1
2012-04-15 16:55 . 2012-04-15 16:55 6656 ----a-w- c:\windows\system32\DBBK\5A53CA1598DD4156D44196D200C94B8A
2012-04-15 16:55 . 2012-04-15 16:55 35328 ----a-w- c:\windows\system32\DBBK\CB45A417C8EF7BA6BAC67EDCDDED8700
2012-04-15 16:55 . 2012-04-15 16:55 111616 ----a-w- c:\windows\system32\DBBK\15C126D1B55814B9E5CAB10A9C1F4C67
2012-04-15 16:55 . 2012-04-15 16:55 25088 ----a-w- c:\windows\system32\DBBK\8E38096AD5C8570A6F1570A61E251561
2012-04-15 16:55 . 2012-04-15 16:55 6144 ----a-w- c:\windows\system32\DBBK\505506526A9D467307B3C393DEDAF858
2012-04-15 16:55 . 2012-04-15 16:55 4608 ----a-w- c:\windows\system32\DBBK\F9756A98D69098DCA8945D62858A812C
2012-04-15 16:54 . 2012-04-15 16:54 54776 ----a-w- c:\windows\system32\DBBK\E896775837A8BCE436348DF460522394
2012-04-15 16:54 . 2012-04-15 16:54 108544 ----a-w- c:\windows\system32\DBBK\BE167ED0FDB9C1FA1133953C18D5A6C9
2012-04-15 16:54 . 2012-04-15 16:54 1288472 ----a-w- c:\windows\system32\DBBK\C30A91ADE8C9CB91E4281EC83C4500C6
2012-04-15 16:54 . 2012-04-15 16:54 55584 ----a-w- c:\windows\system32\DBBK\62A63EF2F3053B461CB327E4D69AAA74
2012-04-15 16:54 . 2012-04-15 16:54 64048 ----a-w- c:\windows\system32\DBBK\000751813ECEF491689176E72B3A8BEE
2012-04-15 16:54 . 2012-04-15 16:54 85376 ----a-w- c:\windows\system32\DBBK\05D860DA1040F111503AC416CCEF2BCA
2012-04-15 16:54 . 2012-04-15 16:54 14208 ----a-w- c:\windows\system32\DBBK\0C4E035C7F105F1299258C90886C64C5
2012-04-15 16:54 . 2012-04-15 16:54 49728 ----a-w- c:\windows\system32\DBBK\159FAD02F64E6381758C990F753BCC80
2012-04-15 16:54 . 2012-04-15 16:54 7680 ----a-w- c:\windows\system32\DBBK\4AA1EB65481C392955939E735D27118B
2012-04-15 16:54 . 2012-04-15 16:54 173440 ----a-w- c:\windows\system32\DBBK\518395321DC96FE2C9F0E96AC743B656
2012-04-15 16:54 . 2012-04-15 16:54 26704 ----a-w- c:\windows\system32\DBBK\5428227D4730EBDFC842E9FB593F8C8A
2012-04-15 16:54 . 2012-04-15 16:54 57424 ----a-w- c:\windows\system32\DBBK\565003F326F99802E68CA78F2A68E9FF
2012-04-15 16:54 . 2012-04-15 16:54 194800 ----a-w- c:\windows\system32\DBBK\8A73E79089B282100B9393B644CB853B
2012-04-15 16:54 . 2012-04-15 16:54 59272 ----a-w- c:\windows\system32\DBBK\998242A4EDE6992396A90585CC121F2C
2012-04-15 16:54 . 2012-04-15 16:54 140864 ----a-w- c:\windows\system32\DBBK\A6388A5ABF92C7927C085DB0A958125F
2012-04-15 16:54 . 2012-04-15 16:54 162896 ----a-w- c:\windows\system32\DBBK\0E008FC4819D238C51D7C93E7B41E560
2012-04-15 16:54 . 2012-04-15 16:54 43088 ----a-w- c:\windows\system32\DBBK\250F6B43D2B613172035C6747AEEB19F
2012-04-15 16:54 . 2012-04-15 16:54 240000 ----a-w- c:\windows\system32\DBBK\2899EF7AEEF6913ED4FCB0E8A7A04F46
2012-04-15 16:54 . 2012-04-15 16:54 187776 ----a-w- c:\windows\system32\DBBK\56E5C9B62BAD9EC85BC76940D28B6C11
2012-04-15 16:54 . 2012-04-15 16:54 369352 ----a-w- c:\windows\system32\DBBK\6427525D76F61D0C519B008D3680E8E7
2012-04-15 16:54 . 2012-04-15 16:54 1290608 ----a-w- c:\windows\system32\DBBK\65D10B191C59C5501A1263FC33F6894B
2012-04-15 16:54 . 2012-04-15 16:54 23640 ----a-w- c:\windows\system32\DBBK\792A8B80F8188ABA4B2BE271583F3E46
2012-04-15 16:54 . 2012-04-15 16:54 19824 ----a-w- c:\windows\system32\DBBK\7DAE5EBCC80E45D3253F4923DC424D05
2012-04-15 16:54 . 2012-04-15 16:54 17472 ----a-w- c:\windows\system32\DBBK\95CF1AE7527FB70F7816563CBC09D942
2012-04-15 16:54 . 2012-04-15 16:54 165680 ----a-w- c:\windows\system32\DBBK\C2FF7473A60C0FB2DF145AB686889653
2012-04-15 16:54 . 2012-04-15 16:54 134000 ----a-w- c:\windows\system32\DBBK\E73CAE53BBB72BA26918492C6B4C229D
2012-04-15 16:54 . 2012-04-15 16:54 712576 ----a-w- c:\windows\system32\DBBK\E7C54812A2AAF43316EB6930C1FFA108
2012-04-15 16:54 . 2012-04-15 16:54 67440 ----a-w- c:\windows\system32\DBBK\F4647BB23DB9038A7536CF6B68F4207F
2012-04-15 16:54 . 2012-04-15 16:54 245632 ----a-w- c:\windows\system32\DBBK\F497F67932C6FA693D7DE2780631CFE7
2012-04-15 16:54 . 2012-04-15 16:54 13888 ----a-w- c:\windows\system32\DBBK\0A4E5757AE09FA9622E3158CC1AEF114
2012-04-15 16:54 . 2012-04-15 16:54 25168 ----a-w- c:\windows\system32\DBBK\2B8EE031FD700AB942EBE60665440E83
2012-04-15 16:54 . 2012-04-15 16:54 21584 ----a-w- c:\windows\system32\DBBK\338C86357871C167A96AB976519BF59E
2012-04-15 16:54 . 2012-04-15 16:54 475704 ----a-w- c:\windows\system32\DBBK\37800FBB68D88E3C3E49BB9C97233E87
2012-04-15 16:54 . 2012-04-15 16:54 22400 ----a-w- c:\windows\system32\DBBK\46387FB17B086D16DEA267D5BE23A2F2
2012-04-15 16:54 . 2012-04-15 16:54 132992 ----a-w- c:\windows\system32\DBBK\4B55C9F9A93B3BFD01ED7366EB0B9D2E
2012-04-15 16:54 . 2012-04-15 16:54 53120 ----a-w- c:\windows\system32\DBBK\4C63E00F2F4B5F86AB48A58CD990F212
2012-04-15 16:54 . 2012-04-15 16:54 153984 ----a-w- c:\windows\system32\DBBK\673E55C3498EB970088E812EA820AA8F
2012-04-15 16:54 . 2012-04-15 16:54 58448 ----a-w- c:\windows\system32\DBBK\6CF00369C97F3CF563BE99BE983D13D8
2012-04-15 16:54 . 2012-04-15 16:54 198208 ----a-w- c:\windows\system32\DBBK\7520EC808E0C35E0EE6F841294316653
2012-04-15 16:54 . 2012-04-15 16:54 1211264 ----a-w- c:\windows\system32\DBBK\81189C3D7763838E55C397759D49007A
2012-04-15 16:54 . 2012-04-15 16:54 14912 ----a-w- c:\windows\system32\DBBK\9A5B1059FE015DB5269FBB25ACBF841D
2012-04-15 16:54 . 2012-04-15 16:54 32832 ----a-w- c:\windows\system32\DBBK\A059C4C3EDB09E07D21A8E5C0AABD3CB
2012-04-15 16:54 . 2012-04-15 16:54 19024 ----a-w- c:\windows\system32\DBBK\A6023D3823C37043986713F118A89BEE
2012-04-15 16:54 . 2012-04-15 16:54 12368 ----a-w- c:\windows\system32\DBBK\AFE86F419014DB4E5593F69FFE26CE0A
2012-04-15 16:54 . 2012-04-15 16:54 297040 ----a-w- c:\windows\system32\DBBK\B5BB72067DDDDBBFB04B2F89FF8C3C87
2012-04-15 16:54 . 2012-04-15 16:54 56192 ----a-w- c:\windows\system32\DBBK\BF8F6AF06DA75B336F07E23AEF97D93B
2012-04-15 16:54 . 2012-04-15 16:54 42560 ----a-w- c:\windows\system32\DBBK\EDE040D666FF81BF1978D0F19F799E7A
2012-04-15 16:54 . 2012-04-15 16:54 78208 ----a-w- c:\windows\system32\DBBK\FC8771F45ECCCFD89684E38842539B9B
2012-04-15 16:54 . 2012-04-15 16:54 3072 ----a-w- c:\windows\system32\DBBK\12DCA4373B9B0B3CFE505B0025BEB952
2012-04-15 16:54 . 2012-04-15 16:54 690680 ----a-w- c:\windows\system32\DBBK\1319CD4619E96B156911CA3897563EBC
2012-04-15 16:54 . 2012-04-15 16:54 249408 ----a-w- c:\windows\system32\DBBK\635181E0E9BBF16871BF5380D71DB02D
2012-04-15 16:54 . 2012-04-15 16:54 27528 ----a-w- c:\windows\system32\DBBK\718FB269AF435683E8ADBD5D2B36CF1A
2012-04-15 16:54 . 2012-04-15 16:54 445008 ----a-w- c:\windows\system32\DBBK\9950E3D0F08141C7E89E64456AE7DC73
2012-04-15 16:54 . 2012-04-15 16:54 20744 ----a-w- c:\windows\system32\DBBK\B41CB3AA2E0AAE024B4FB316FE440BE4
2012-04-15 16:54 . 2012-04-15 16:54 9096 ----a-w- c:\windows\system32\DBBK\C91F0B434B6F95A7EEC71361D166DFBF
2012-04-15 16:54 . 2012-04-15 16:54 274304 ----a-w- c:\windows\system32\DBBK\CEA80C80BED809AA0DA6FEBC04733349
2012-04-15 16:54 . 2012-04-15 16:54 21584 ----a-w- c:\windows\system32\DBBK\D5037B4C527AB5069C48C9C09A12756D
2012-04-15 16:54 . 2012-04-15 16:54 52816 ----a-w- c:\windows\system32\DBBK\D93A937A2A9D2CBC06B3A615A197011F
2012-04-15 16:54 . 2012-04-15 16:54 31824 ----a-w- c:\windows\system32\DBBK\EBCB31CB206A67ECE2207764FD612EC1
2012-04-15 16:54 . 2012-04-15 16:54 225664 ----a-w- c:\windows\system32\DBBK\F0B3EFFD3D114C5ABC75BA81302AFCFF
2012-04-15 16:54 . 2012-04-15 16:54 38480 ----a-w- c:\windows\system32\DBBK\FE7A7675C26FE936226641EF32AE9BB5
2012-04-15 16:54 . 2012-04-15 16:54 35408 ----a-w- c:\windows\system32\DBBK\B7EFEF22FF426EC4158A177CB3B558D3
2012-04-15 16:54 . 2012-04-15 16:54 15952 ----a-w- c:\windows\system32\DBBK\C8C436ACCF484F153E687B65031D17C4
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK]
@="{3c3f3c1a-9153-7c05-f938-622e7003894d}"
[HKEY_CLASSES_ROOT\CLSID\{3c3f3c1a-9153-7c05-f938-622e7003894d}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK2]
@="{e6ea1d7d-144e-b977-98c4-84c53c1a69d0}"
[HKEY_CLASSES_ROOT\CLSID\{e6ea1d7d-144e-b977-98c4-84c53c1a69d0}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK3]
@="{b4caf489-1eec-c617-49ad-8d7088598c06}"
[HKEY_CLASSES_ROOT\CLSID\{b4caf489-1eec-c617-49ad-8d7088598c06}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2010-11-20 144384]
"TOSCDSPD"="c:\program files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe" [2008-01-30 430080]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-07 1029416]
"RtHDVCpl"="RtHDVCpl.exe" [2008-01-30 4911104]
"Skytel"="Skytel.exe" [2007-11-21 1826816]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2008-01-22 712704]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2007-10-26 413696]
"eBook Library Launcher"="c:\program files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe" [2009-11-24 906640]
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2008-02-13 1862144]
"HostManager"="c:\program files\Common Files\AOL\1244832265\ee\AOLSoftware.exe" [2008-06-24 41824]
"HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2007-11-01 54608]
"ITSecMng"="c:\program files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2007-09-29 75136]
"PCMAgent"="c:\program files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe" [2009-04-11 143360]
"SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2007-06-16 448080]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2008-01-17 431456]
"CLMLServer"="c:\program files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe" [2009-04-11 200704]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-30 421888]
"Logitech Download Assistant"="c:\windows\System32\LogiLDA.dll" [2010-11-04 1246544]
"mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2011-11-23 1318816]
"McPvTray_exe"="c:\program files\McAfee\MAT\McPvTray.exe" [2011-04-08 419904]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-21 59240]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-03-27 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-27 421736]
.
c:\users\bjs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
ERUNT AutoBackup.lnk - c:\program files\ERUNT\AUTOBACK.EXE [2005-10-20 38912]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\setup\disabledrunkeys]
"StartCCC"=c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
R1 jswpslwf;JumpStart Wireless Filter Driver;c:\windows\system32\DRIVERS\jswpslwf.sys [2007-09-01 20352]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2012-02-29 158856]
R3 jswpsapi;Jumpstart Wifi Protected Setup;c:\program files\Jumpstart\jswpsapi.exe [2007-10-30 937984]
R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2012-04-15 87656]
R3 MSSQL$NR2007;SQL Server (NR2007);c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-11 29293408]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [2009-06-25 47360]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-07-11 1343400]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys [2008-05-07 11520]
S0 McPvDrv;McPvDrv Driver;c:\windows\system32\drivers\McPvDrv.sys [2011-04-11 64048]
S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2011-10-15 165680]
S1 mfenlfk;McAfee NDIS Light Filter;c:\windows\system32\DRIVERS\mfenlfk.sys [2011-10-15 64880]
S1 MOBKFilter;MOBKFilter;c:\windows\system32\DRIVERS\MOBK.sys [2010-04-14 54776]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 ConfigFree Service;ConfigFree Service;c:\program files\TOSHIBA\ConfigFree\CFSvcs.exe [2007-12-25 40960]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [2011-10-18 160608]
S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2012-04-15 159608]
S2 MOBKbackup;McAfee Online Backup;c:\program files\McAfee Online Backup\MOBKbackup.exe [2010-04-14 229688]
S2 NeatReceipts Database Controller;NeatReceipts Database Controller;c:\program files\Common Files\NeatReceipts\DB Controller\NeatReceiptsDBController.exe [2008-02-05 228480]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [2007-12-04 126976]
S2 WDDMService;WD SmartWare Drive Manager;c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [2009-10-14 98304]
S2 WDSmartWareBackgroundService;WD SmartWare Background Service;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [2009-06-16 20480]
S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2011-10-15 57600]
S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [2006-11-20 7168]
S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2011-10-15 338176]
.
.
--- Other Services/Drivers In Memory ---
.
*Deregistered* - mfeavfk01
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.blackle.com/
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://search.yahoo.com/search?fr=mcafee&p=%s
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
Trusted Zone: intuit.com\ttlc
TCP: DhcpNameServer = 75.75.75.75 75.75.76.76
FF - ProfilePath - c:\users\bjs\AppData\Roaming\Mozilla\Firefox\Profiles\w06ndksw.default\
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Toshiba\IVP\Services\Software Upgrades\Swupdtmr]
@DACL=(02 0000)
@SACL=
"STATE"=dword:00000003
"TMH"=dword:01cc1cac
"TML"=dword:9b2c0b9b
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(1352)
c:\program files\McAfee Online Backup\MOBKshell.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\AOL\ACS\AOLAcsd.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\system32\rundll32.exe
c:\toshiba\IVP\ISM\pinger.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\toshiba\IVP\swupdate\swupdtmr.exe
c:\program files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
c:\windows\system32\TODDSrv.exe
c:\program files\Toshiba\Power Saver\TosCoSrv.exe
c:\program files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
c:\program files\Common Files\McAfee\SystemCore\mcshield.exe
c:\program files\Common Files\McAfee\SystemCore\mfefire.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\conhost.exe
c:\program files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
c:\progra~1\mcafee.com\agent\mcagent.exe
c:\windows\system32\vssvc.exe
.
**************************************************************************
.
Completion time: 2012-04-22 10:17:35 - machine was rebooted
ComboFix-quarantined-files.txt 2012-04-22 17:17
ComboFix2.txt 2012-04-21 16:49
.
Pre-Run: 102,063,779,840 bytes free
Post-Run: 102,014,820,352 bytes free
.
- - End Of File - - DEECB0A2D04469DBBCC57AFD0AD4A06C

#6 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:04:29 PM

Posted 22 April 2012 - 12:37 PM

Hello,



Don't change your passwords yet, otherwise I'll just have to recommend that you do it after we're done!! :)



You missed to post the results of the virustotal scan for this file:
c:\windows\system32\drivers\afd.sys



Also you forgot to copy/paste the content of the log file created when you ran the batch file. :)



Regards,
Georgi

cXfZ4wS.png


#7 APPleas

APPleas
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:29 AM

Posted 22 April 2012 - 12:53 PM

I'm confused...I thought I posted those things? You wanted the VirusTotal information - which was the first thing I posted, and the ComboFix log - which was the 2nd...I'm sorry - I'm not trying to be clueless. OK - so - posting 1) Fix log 2) VirusTotal log 3) ComboFix log is that right? I hope I got it right this time

1) Fix Log

HKEY_LOCAL_MACHINE\System\currentcontrolset\Services\afd
imagepath REG_EXPAND_SZ \SystemRoot\system32\drivers\afd.sys

2) VirusTotal Log

SHA256: 2e5a0fa2995989e9391771024839f5ad040a041cee56787286d8fc421e26fe90
SHA1: c05af7e1eaa823fddf09fdeb41862423f83babbc
MD5: 9ebbba55060f786f0fcaa3893bfa2806
File size: 331.0 KB ( 338944 bytes )
File name: C:\Windows\System32\drivers\20120415100542.afd.sys
File type: Win32 EXE
Detection ratio: 0 / 42
Analysis date: 2012-04-22 16:22:06 UTC ( 0 minutes ago )

11More details
Antivirus Result Update
AhnLab-V3 - 20120421
AntiVir - 20120422
Antiy-AVL - 20120422
Avast - 20120422
AVG - 20120422
BitDefender - 20120422
ByteHero - 20120420
CAT-QuickHeal - 20120420
ClamAV - 20120422
Commtouch - 20120422
Comodo - 20120422
DrWeb - 20120422
Emsisoft - 20120422
eSafe - 20120419
eTrust-Vet - 20120421
F-Prot - 20120421
F-Secure - 20120422
Fortinet - 20120422
GData - 20120422
Ikarus - 20120422
Jiangmin - 20120422
K7AntiVirus - 20120420
Kaspersky - 20120422
McAfee - 20120422
McAfee-GW-Edition - 20120422
Microsoft - 20120422
NOD32 - 20120422
Norman - 20120421
nProtect - 20120422
Panda - 20120422
PCTools - 20120422
Rising - 20120420
Sophos - 20120422
SUPERAntiSpyware - 20120402
Symantec - 20120422
TheHacker - 20120422
TrendMicro - 20120422
TrendMicro-HouseCall - 20120422
VBA32 - 20120422
VIPRE - 20120422
ViRobot - 20120422
VirusBuster - 20120422


3) Combo Fix Log
ComboFix 12-04-20.03 - bjs 04/22/2012 9:47.2.2 - x86
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.1.1033.18.3454.2774 [GMT -7:00]
Running from: c:\users\bjs\Desktop\ComboFix.exe
Command switches used :: c:\users\bjs\Desktop\CFScript.txt
AV: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {86355677-4064-3EA7-ABB3-1B136EB04637}
FW: McAfee Firewall *Enabled* {BE0ED752-0A0B-3FFF-80EC-B2269063014C}
SP: McAfee Anti-Virus and Anti-Spyware *Disabled/Updated* {3D54B793-665E-3129-9103-206115370C8A}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
* Resident AV is active
.
.
FILE ::
"c:\windows\system32\DRIVERS\DasBoot.SYS"
"c:\windows\system32\DRIVERS\DasBootF.SYS"
"c:\windows\system32\DRIVERS\zipehreg.sys"
.
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files\Ask.com
c:\program files\Ask.com\assets\oobe\b.png
c:\program files\Ask.com\assets\oobe\bl.png
c:\program files\Ask.com\assets\oobe\br.png
c:\program files\Ask.com\assets\oobe\l.png
c:\program files\Ask.com\assets\oobe\pointer.png
c:\program files\Ask.com\assets\oobe\r.png
c:\program files\Ask.com\assets\oobe\t.png
c:\program files\Ask.com\assets\oobe\tl.png
c:\program files\Ask.com\assets\oobe\tr.png
c:\program files\Ask.com\cobrand.ico
c:\program files\Ask.com\config.xml
c:\program files\Ask.com\favicon.ico
c:\program files\Ask.com\GenericAskToolbar.dll
c:\program files\Ask.com\mupcfg.xml
c:\program files\Ask.com\precache.exe
c:\program files\Ask.com\SaUpdate.exe
c:\program files\Ask.com\Updater\config.xml
c:\program files\Ask.com\Updater\Updater.exe
c:\program files\Ask.com\UpdateTask.exe
c:\windows\$NtUninstallKB26711$
c:\windows\$NtUninstallKB26711$\3563991852
.
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
.
-------\Legacy_DASBOOT
-------\Legacy_DASBOOTF
-------\Legacy_ZIPEHREG
-------\Service_DasBoot
-------\Service_DasBootF
-------\Service_zipehreg
.
.
((((((((((((((((((((((((( Files Created from 2012-03-22 to 2012-04-22 )))))))))))))))))))))))))))))))
.
.
2012-04-22 17:05 . 2012-04-22 17:08 -------- d-----w- c:\users\bjs\AppData\Local\temp
2012-04-22 17:05 . 2012-04-22 17:05 -------- d-----w- c:\users\Default\AppData\Local\temp
2012-04-22 16:12 . 2012-04-22 16:12 -------- d-----w- c:\program files\ERUNT
2012-04-21 16:14 . 2011-04-25 02:18 338944 ----a-w- c:\windows\system32\drivers\afd.sys
2012-04-15 17:05 . 2012-04-15 16:55 338944 ----a-w- c:\windows\system32\drivers\20120415100542.afd.sys
2012-04-15 16:53 . 2012-04-15 17:05 -------- d-----w- c:\windows\system32\DBBK
2012-04-15 16:20 . 2012-04-15 16:20 14664 ----a-w- c:\windows\stinger.sys
2012-04-15 16:18 . 2012-04-15 16:42 -------- d-----w- c:\program files\stinger
2012-04-13 17:13 . 2012-03-13 04:39 97208 ----a-w- c:\program files\Mozilla Firefox\components\browsercomps.dll
2012-04-13 17:13 . 2012-03-13 04:38 626688 ----a-w- c:\program files\Mozilla Firefox\msvcr80.dll
2012-04-13 17:13 . 2012-03-13 04:38 548864 ----a-w- c:\program files\Mozilla Firefox\msvcp80.dll
2012-04-13 17:13 . 2012-03-13 04:38 479232 ----a-w- c:\program files\Mozilla Firefox\msvcm80.dll
2012-04-13 17:13 . 2012-03-13 04:39 44472 ----a-w- c:\program files\Mozilla Firefox\mozglue.dll
2012-04-13 17:13 . 2012-03-13 04:39 592824 ----a-w- c:\program files\Mozilla Firefox\gkmedias.dll
2012-04-11 10:03 . 2012-03-01 05:46 19824 ----a-w- c:\windows\system32\drivers\fs_rec.sys
2012-04-11 10:03 . 2012-03-01 05:37 172544 ----a-w- c:\windows\system32\wintrust.dll
2012-04-11 10:03 . 2012-03-01 05:33 159232 ----a-w- c:\windows\system32\imagehlp.dll
2012-04-11 10:03 . 2012-03-01 05:29 5120 ----a-w- c:\windows\system32\wmi.dll
2012-04-11 10:02 . 2012-03-06 05:59 3968368 ----a-w- c:\windows\system32\ntkrnlpa.exe
2012-04-11 10:02 . 2012-03-06 05:59 3913072 ----a-w- c:\windows\system32\ntoskrnl.exe
2012-04-08 22:03 . 2012-04-08 22:03 -------- d-----w- c:\users\bjs\AppData\Roaming\Malwarebytes
2012-04-08 22:03 . 2012-04-08 22:03 -------- d-----w- c:\programdata\Malwarebytes
2012-04-08 22:03 . 2011-12-10 22:24 20464 ----a-w- c:\windows\system32\drivers\mbam.sys
2012-04-01 03:52 . 2012-04-01 03:52 -------- d-----w- c:\program files\iPod
2012-04-01 03:52 . 2012-04-01 03:54 -------- d-----w- c:\program files\iTunes
2012-03-26 15:41 . 2012-03-26 15:41 103864 ----a-w- c:\program files\Mozilla Firefox\plugins\nppdf32.dll
2012-03-26 15:41 . 2012-03-26 15:41 103864 ----a-w- c:\program files\Internet Explorer\Plugins\nppdf32.dll
.
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-04-15 16:19 . 2011-05-29 15:33 159608 ----a-w- c:\windows\system32\mfevtps.exe
2012-04-15 16:19 . 2011-05-29 15:43 87656 ----a-w- c:\windows\system32\drivers\mferkdet.sys
2012-04-15 16:19 . 2011-03-13 18:20 475704 ----a-w- c:\windows\system32\drivers\mfehidk.sys
2012-03-03 12:51 . 2011-07-03 07:00 414368 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2012-02-17 05:34 . 2012-03-14 07:05 826880 ----a-w- c:\windows\system32\rdpcore.dll
2012-02-17 04:14 . 2012-03-14 07:05 183808 ----a-w- c:\windows\system32\drivers\rdpwd.sys
2012-02-17 04:13 . 2012-03-14 07:05 24576 ----a-w- c:\windows\system32\drivers\tdtcp.sys
2012-02-10 05:38 . 2012-03-14 07:06 1077248 ----a-w- c:\windows\system32\DWrite.dll
2012-02-03 03:54 . 2012-03-14 07:06 2343424 ----a-w- c:\windows\system32\win32k.sys
2012-01-25 05:32 . 2012-03-14 07:05 58880 ----a-w- c:\windows\system32\rdpwsx.dll
2012-01-25 05:32 . 2012-03-14 07:05 129536 ----a-w- c:\windows\system32\rdpcorekmts.dll
2012-01-25 05:27 . 2012-03-14 07:05 8192 ----a-w- c:\windows\system32\rdrmemptylst.exe
2012-03-13 04:39 . 2012-04-13 17:13 97208 ----a-w- c:\program files\mozilla firefox\components\browsercomps.dll
.
.
(((((((((((((((((((((((((((((((((((((((((((( Look )))))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
---- Directory of c:\windows\system32\DBBK ----
.
2012-04-15 17:05 . 2012-04-15 17:05 19968 ----a-w- c:\windows\system32\DBBK\DEB9AA27507C858A965C287C11F3ACE3
2012-04-15 17:05 . 2012-04-15 17:05 194000 ----a-w- c:\windows\system32\DBBK\A89884DEA8ADDD3893191C2F255475B5
2012-04-15 17:05 . 2012-04-15 17:05 132560 ----a-w- c:\windows\system32\DBBK\45D1D3C2E8CFCA15477F1BF53A542546
2012-04-15 17:04 . 2012-04-15 17:04 1115136 ----a-w- c:\windows\system32\DBBK\198366199A9F342EF87978D79308B49F
2012-04-15 17:03 . 2012-04-15 17:03 126976 ----a-w- c:\windows\system32\DBBK\A99C4D1B5E7E794EC5779CF14F431932
2012-04-15 17:03 . 2012-04-15 17:03 1019904 ----a-w- c:\windows\system32\DBBK\CA9DCA108124558EED6F3B5CDB76F7E8
2012-04-15 17:03 . 2012-04-15 17:03 2049344 ----a-w- c:\windows\system32\DBBK\879E94BBBF50FF6BB0C7D472C83F6B89
2012-04-15 17:03 . 2012-04-15 17:03 61888 ----a-w- c:\windows\system32\DBBK\2CBCA94ABCCB2B79E4693BA0E4FC85BE
2012-04-15 17:03 . 2012-04-15 17:03 3855520 ----a-w- c:\windows\system32\DBBK\70CE1DA6684A7043B0008C2F2E286E27
2012-04-15 17:03 . 2012-04-15 17:03 147456 ----a-w- c:\windows\system32\DBBK\44BCFF08947790E74BD7CC7532D2B793
2012-04-15 17:03 . 2012-04-15 17:03 30840 ----a-w- c:\windows\system32\DBBK\E3FFF2892D52E75A901141E39DD16EC9
2012-04-15 17:03 . 2012-04-15 17:03 78920 ----a-w- c:\windows\system32\DBBK\A76EFC0767ACBE3AD7B0FC30905D92D8
2012-04-15 17:03 . 2012-04-15 17:03 281600 ----a-w- c:\windows\system32\DBBK\7B17107D054A88C6D1ECC285B502D2D9
2012-04-15 17:03 . 2012-04-15 17:03 8632480 ----a-w- c:\windows\system32\DBBK\D2938C8085CB65A7C0C3448E673E8C39
2012-04-15 17:03 . 2012-04-15 17:03 818104 ----a-w- c:\windows\system32\DBBK\CFA3C950B2B8EE3C5034D65F2BC41197
2012-04-15 17:03 . 2012-04-15 17:03 161368 ----a-w- c:\windows\system32\DBBK\B5F52184A02CB5F34838D53022B5640F
2012-04-15 17:03 . 2012-04-15 17:03 163328 ----a-w- c:\windows\system32\DBBK\2D5D50C1F49E38932947F7DF5F655AD9
2012-04-15 17:03 . 2012-04-15 17:03 16312 ----a-w- c:\windows\system32\DBBK\34DE10B73CD7FC49883194E7D3BE22DE
2012-04-15 17:03 . 2012-04-15 17:03 165488 ----a-w- c:\windows\system32\DBBK\4B175EA3CA2607ACDB2E6096FCA919FC
2012-04-15 17:03 . 2012-04-15 17:03 57856 ----a-w- c:\windows\system32\DBBK\43E51A4C9ADBB084DDC360057F6988C8
2012-04-15 17:03 . 2012-04-15 17:03 269240 ----a-w- c:\windows\system32\DBBK\792AD4E12D88FA5C00AEF1CD47C799F4
2012-04-15 17:03 . 2012-04-15 17:03 109496 ----a-w- c:\windows\system32\DBBK\BBB6D09959D7530254A532A3DE0B722A
2012-04-15 17:03 . 2012-04-15 17:03 44472 ----a-w- c:\windows\system32\DBBK\F999636C41C916D0155D56A85249CC64
2012-04-15 17:03 . 2012-04-15 17:03 158648 ----a-w- c:\windows\system32\DBBK\5D8F040C8083A361D3496B06A51D3560
2012-04-15 17:03 . 2012-04-15 17:03 2276216 ----a-w- c:\windows\system32\DBBK\3D1D1AC64DE63BC65D81EB7FB46472AC
2012-04-15 17:03 . 2012-04-15 17:03 333896 ----a-w- c:\windows\system32\DBBK\59BB68E6F1567B3C29CEBD3C2199D199
2012-04-15 17:03 . 2012-04-15 17:03 309760 ----a-w- c:\windows\system32\DBBK\13CDD3FF0961A2EC6D9829A1640DD6DC
2012-04-15 17:03 . 2012-04-15 17:03 346112 ----a-w- c:\windows\system32\DBBK\55A97EC5956A72D3B7060560F785FF32
2012-04-15 17:03 . 2012-04-15 17:03 163840 ----a-w- c:\windows\system32\DBBK\69A1D7C29CFF256BECBD4E39E2159636
2012-04-15 17:03 . 2012-04-15 17:03 154624 ----a-w- c:\windows\system32\DBBK\358AB7956D3160000726574083DFC8A6
2012-04-15 17:03 . 2012-04-15 17:03 313856 ----a-w- c:\windows\system32\DBBK\A28BD92DF340E57B024BA433165D34D7
2012-04-15 17:03 . 2012-04-15 17:03 176640 ----a-w- c:\windows\system32\DBBK\CA7F9A24ED2FE57096569BF7E6810BE1
2012-04-15 17:03 . 2012-04-15 17:03 12433408 ----a-w- c:\windows\system32\DBBK\5764F20720F350D46FD6CEF6CB3A4941
2012-04-15 17:03 . 2012-04-15 17:03 1587200 ----a-w- c:\windows\system32\DBBK\56CEBC1D7B1D98959B87149EA3D22071
2012-04-15 17:03 . 2012-04-15 17:03 1069056 ----a-w- c:\windows\system32\DBBK\2DF845510EFA14F41E24D71C65BA289F
2012-04-15 17:03 . 2012-04-15 17:03 75200 ----a-w- c:\windows\system32\DBBK\1F9B3487739B31C3D770728CB157A54D
2012-04-15 17:03 . 2012-04-15 17:03 559264 ----a-w- c:\windows\system32\DBBK\DD57B8B38ECBDA8E91AB4F2AAE2E156F
2012-04-15 17:02 . 2012-04-15 17:02 16824 ----a-w- c:\windows\system32\DBBK\1AA987A15080E19E83F0872F8FC0FFC2
2012-04-15 17:02 . 2012-04-15 17:02 244768 ----a-w- c:\windows\system32\DBBK\0D168F3C4BBA13F5854DD789334B1D94
2012-04-15 17:02 . 2012-04-15 17:02 231648 ----a-w- c:\windows\system32\DBBK\22E020FA26223C12BB32E7AB39703DB7
2012-04-15 17:02 . 2012-04-15 17:02 623360 ----a-w- c:\windows\system32\DBBK\AE18D2D914AE4B171480A1D70682C89C
2012-04-15 17:02 . 2012-04-15 17:02 388208 ----a-w- c:\windows\system32\DBBK\1E4AB28F1E71B24B5488505D4948A78F
2012-04-15 17:02 . 2012-04-15 17:02 115968 ----a-w- c:\windows\system32\DBBK\7A56825F0682875956E7159FE20F9AF8
2012-04-15 17:02 . 2012-04-15 17:02 154688 ----a-w- c:\windows\system32\DBBK\DF4C263FC829C7E755952B90475FA39C
2012-04-15 17:02 . 2012-04-15 17:02 184792 ----a-w- c:\windows\system32\DBBK\4CB3A14E6DE068DA2354FBAF569A1D3F
2012-04-15 17:02 . 2012-04-15 17:02 308128 ----a-w- c:\windows\system32\DBBK\F3F15850B1029B17805165D5BD646EBE
2012-04-15 17:02 . 2012-04-15 17:02 63488 ----a-w- c:\windows\system32\DBBK\5EF12E329823947A06F1B06AA0196F83
2012-04-15 17:02 . 2012-04-15 17:02 105400 ----a-w- c:\windows\system32\DBBK\74108B60FAF9D33975FEC563F151DD4C
2012-04-15 17:02 . 2012-04-15 17:02 371640 ----a-w- c:\windows\system32\DBBK\C416C299590DEEEE0BE11B888F883F6A
2012-04-15 17:02 . 2012-04-15 17:02 20920 ----a-w- c:\windows\system32\DBBK\81B31AFF59C953AB6470DB8D1085DBEE
2012-04-15 17:02 . 2012-04-15 17:02 1969080 ----a-w- c:\windows\system32\DBBK\48E8DEA531335D2B19A3A8447F8B004B
2012-04-15 17:02 . 2012-04-15 17:02 22456 ----a-w- c:\windows\system32\DBBK\4B1E9F38378763C9947410FC72A8D2D3
2012-04-15 17:02 . 2012-04-15 17:02 452608 ----a-w- c:\windows\system32\DBBK\92F44E405DB16AC55D97E3BFE3B132FA
2012-04-15 17:02 . 2012-04-15 17:02 131072 ----a-w- c:\windows\system32\DBBK\29FEA7A6277E775A870682F2F7435F9F
2012-04-15 17:02 . 2012-04-15 17:02 856576 ----a-w- c:\windows\system32\DBBK\84897874906481E0B3F4045DAD90D69F
2012-04-15 17:02 . 2012-04-15 17:02 15915960 ----a-w- c:\windows\system32\DBBK\B2187594F83A69CC04E74BF878D8B5A3
2012-04-15 17:02 . 2012-04-15 17:02 316928 ----a-w- c:\windows\system32\DBBK\347AAE83C7C7B787CED89544532AA47D
2012-04-15 17:02 . 2012-04-15 17:02 3727872 ----a-w- c:\windows\system32\DBBK\45C0DF404182850C21749AF7763C095F
2012-04-15 17:02 . 2012-04-15 17:02 1195488 ----a-w- c:\windows\system32\DBBK\1C48FC41FA7A2939E213E1F72772CA8C
2012-04-15 17:02 . 2012-04-15 17:02 363520 ----a-w- c:\windows\system32\DBBK\6A1E8DEB746912DF47CF651E138401D7
2012-04-15 17:02 . 2012-04-15 17:02 537600 ----a-w- c:\windows\system32\DBBK\54DEFF61C4E6AF1581DA2F236154BA4C
2012-04-15 17:02 . 2012-04-15 17:02 187912 ----a-w- c:\windows\system32\DBBK\21E6A7AB35B7A1D08BBB95F56A5FBDFA
2012-04-15 17:02 . 2012-04-15 17:02 55808 ----a-w- c:\windows\system32\DBBK\6F6759407B843B99E0367036632EC798
2012-04-15 17:02 . 2012-04-15 17:02 245840 ----a-w- c:\windows\system32\DBBK\B8BFF4B0E31A5B77AE7A2659E726901E
2012-04-15 17:02 . 2012-04-15 17:02 181760 ----a-w- c:\windows\system32\DBBK\B72F77DA5A69F5626696182E17B503BA
2012-04-15 17:02 . 2012-04-15 17:02 61440 ----a-w- c:\windows\system32\DBBK\AC804569BB2364FB6017370258A4091B
2012-04-15 17:02 . 2012-04-15 17:02 330552 ----a-w- c:\windows\system32\DBBK\DF9EA0E95CCD8F98760553FBE503FA7B
2012-04-15 17:02 . 2012-04-15 17:02 646144 ----a-w- c:\windows\system32\DBBK\6581B52E133CC6D00661C58968C7E212
2012-04-15 17:02 . 2012-04-15 17:02 163840 ----a-w- c:\windows\system32\DBBK\768B9F3A2F40E3DFB7E87AA847A98EF2
2012-04-15 17:02 . 2012-04-15 17:02 744448 ----a-w- c:\windows\system32\DBBK\9A39A2A5F443A756C568C6ED5748AFE4
2012-04-15 17:02 . 2012-04-15 17:02 484864 ----a-w- c:\windows\system32\DBBK\2A39F32E0067CBF221611FE1FA8C6D8F
2012-04-15 17:02 . 2012-04-15 17:02 26112 ----a-w- c:\windows\system32\DBBK\57CE9D8350B1DD76EEC596C423C3C0BC
2012-04-15 17:02 . 2012-04-15 17:02 129536 ----a-w- c:\windows\system32\DBBK\2B5B3E324E52CF0975BB0C2B053F3CCB
2012-04-15 17:02 . 2012-04-15 17:02 2202624 ----a-w- c:\windows\system32\DBBK\E8CB091A918C1C687B087389D9A66B39
2012-04-15 17:02 . 2012-04-15 17:02 1334272 ----a-w- c:\windows\system32\DBBK\29BC473072568C072EC8B176498DE996
2012-04-15 17:02 . 2012-04-15 17:02 95744 ----a-w- c:\windows\system32\DBBK\F175E53C7C3B25A9029A131FB578B155
2012-04-15 17:02 . 2012-04-15 17:02 233472 ----a-w- c:\windows\system32\DBBK\7717A57C01812C3714BA25B96C36BF39
2012-04-15 17:02 . 2012-04-15 17:02 271800 ----a-w- c:\windows\system32\DBBK\D5F07FAF22BA5AA6B73A15B990067E89
2012-04-15 17:02 . 2012-04-15 17:02 1063936 ----a-w- c:\windows\system32\DBBK\1869BD251211FB6275067372A45682D6
2012-04-15 17:02 . 2012-04-15 17:02 151552 ----a-w- c:\windows\system32\DBBK\B6C756FA661C5EB7B3547E60647F87A7
2012-04-15 17:02 . 2012-04-15 17:02 335872 ----a-w- c:\windows\system32\DBBK\81C0FA250EF6DC1C6B3FA2BCE81D6C2E
2012-04-15 17:02 . 2012-04-15 17:02 1977856 ----a-w- c:\windows\system32\DBBK\0BDF121EBD33DA510BD82051C795E199
2012-04-15 17:02 . 2012-04-15 17:02 21504 ----a-w- c:\windows\system32\DBBK\A29E036A5A3B37C7530F3EA1CF385129
2012-04-15 17:02 . 2012-04-15 17:02 3405312 ----a-w- c:\windows\system32\DBBK\59B7280D73906B43B13B273A1F9CC3DD
2012-04-15 17:02 . 2012-04-15 17:02 99328 ----a-w- c:\windows\system32\DBBK\0DCA6A11D09D4C2CBE6B898B897EA915
2012-04-15 17:02 . 2012-04-15 17:02 67584 ----a-w- c:\windows\system32\DBBK\319C6B309773D063541D01DF8AC6F55F
2012-04-15 17:02 . 2012-04-15 17:02 605184 ----a-w- c:\windows\system32\DBBK\60236C8C3B8C2D8B9A59326890533EB8
2012-04-15 17:02 . 2012-04-15 17:02 229888 ----a-w- c:\windows\system32\DBBK\0BBDB0F5A25A2FE0502F44CA7D04AB61
2012-04-15 17:02 . 2012-04-15 17:02 116736 ----a-w- c:\windows\system32\DBBK\50AF423CC8915B0010F0A96BF78672E9
2012-04-15 17:02 . 2012-04-15 17:02 444416 ----a-w- c:\windows\system32\DBBK\A3E23DD82AA7963D9F7D184BEEEE5448
2012-04-15 17:02 . 2012-04-15 17:02 1203200 ----a-w- c:\windows\system32\DBBK\691E3285E53DCA558E1A84667F13E15A
2012-04-15 17:02 . 2012-04-15 17:02 330240 ----a-w- c:\windows\system32\DBBK\61D57A5D7C6D9AFE10E77DAE6E1B445E
2012-04-15 17:02 . 2012-04-15 17:02 198144 ----a-w- c:\windows\system32\DBBK\73869A8A7AF77801387A36CF9B9B5886
2012-04-15 17:02 . 2012-04-15 17:02 20268032 ----a-w- c:\windows\system32\DBBK\827CB0D6C3F8057EA037FF271F8E9795
2012-04-15 17:02 . 2012-04-15 17:02 297472 ----a-w- c:\windows\system32\DBBK\81241E7723D5675AF6E27A7F0E7F3324
2012-04-15 17:02 . 2012-04-15 17:02 441856 ----a-w- c:\windows\system32\DBBK\3925944734DFC5D2253F3DC5923F797D
2012-04-15 17:02 . 2012-04-15 17:02 233984 ----a-w- c:\windows\system32\DBBK\A00075951E38A73FE2F9D8384311710A
2012-04-15 17:02 . 2012-04-15 17:02 86016 ----a-w- c:\windows\system32\DBBK\76B5A48D429D29F69485BD314B9866A6
2012-04-15 17:02 . 2012-04-15 17:02 218624 ----a-w- c:\windows\system32\DBBK\F945ADCEF203E6104AEC8EC9C337CFD0
2012-04-15 17:02 . 2012-04-15 17:02 4096 ----a-w- c:\windows\system32\DBBK\90FB1802D488FFA9029854A77D4F3F27
2012-04-15 17:02 . 2012-04-15 17:02 1294336 ----a-w- c:\windows\system32\DBBK\CA75367CE419922291A11227E32FBA0C
2012-04-15 17:02 . 2012-04-15 17:02 120320 ----a-w- c:\windows\system32\DBBK\6435B29D2018CFAD173BD50AE8F8D5DD
2012-04-15 17:02 . 2012-04-15 17:02 389120 ----a-w- c:\windows\system32\DBBK\0E4A28030C7C6B8A57A60BAF494B114D
2012-04-15 17:02 . 2012-04-15 17:02 2311168 ----a-w- c:\windows\system32\DBBK\181F69BC9C406B7FB5C0ADE8031630AC
2012-04-15 17:02 . 2012-04-15 17:02 14848 ----a-w- c:\windows\system32\DBBK\432BE6CF7311062633459EEF6B242FB5
2012-04-15 17:02 . 2012-04-15 17:02 44032 ----a-w- c:\windows\system32\DBBK\14486EB6AF542F2BD3239F7FC3E713F7
2012-04-15 17:02 . 2012-04-15 17:02 205824 ----a-w- c:\windows\system32\DBBK\A205B7A5D8E4AE6E8DE7B313C7FC3FA4
2012-04-15 17:02 . 2012-04-15 17:02 342016 ----a-w- c:\windows\system32\DBBK\61B1ED5F429EFAC7E2036769870AB93E
2012-04-15 17:02 . 2012-04-15 17:02 521216 ----a-w- c:\windows\system32\DBBK\382C804C92811BE57829D8E550A900E2
2012-04-15 17:02 . 2012-04-15 17:02 828928 ----a-w- c:\windows\system32\DBBK\69C81451DCE63069A036FBF646A86996
2012-04-15 17:02 . 2012-04-15 17:02 202752 ----a-w- c:\windows\system32\DBBK\51F5CC1E7DA3D9C664C2D0D61F315E06
2012-04-15 17:02 . 2012-04-15 17:02 81920 ----a-w- c:\windows\system32\DBBK\2765B91A9EE086C20B451E80D2709CC9
2012-04-15 17:02 . 2012-04-15 17:02 499712 ----a-w- c:\windows\system32\DBBK\4D65A07B795D6674312F879D09AA7663
2012-04-15 17:02 . 2012-04-15 17:02 73216 ----a-w- c:\windows\system32\DBBK\EEE470F2A771FC0B543BDEEF74FCECA0
2012-04-15 17:02 . 2012-04-15 17:02 1040384 ----a-w- c:\windows\system32\DBBK\14558D849EC14160AC3DACD8AC36E10A
2012-04-15 17:02 . 2012-04-15 17:02 78336 ----a-w- c:\windows\system32\DBBK\98ECA04A6B5319043583FE00FC3C22EE
2012-04-15 17:02 . 2012-04-15 17:02 304128 ----a-w- c:\windows\system32\DBBK\00D7AB9A8E5C9A84CFCA19AD9E583E6F
2012-04-15 17:02 . 2012-04-15 17:02 132608 ----a-w- c:\windows\system32\DBBK\4D05BDE56A7116B744B04192173A0122
2012-04-15 17:02 . 2012-04-15 17:02 1188864 ----a-w- c:\windows\system32\DBBK\3E158EB9DC295CA3EF8D1F1EF57ABEDD
2012-04-15 17:02 . 2012-04-15 17:02 113664 ----a-w- c:\windows\system32\DBBK\4AE380F39A0032EAB7DD953030B26D28
2012-04-15 17:02 . 2012-04-15 17:02 2755072 ----a-w- c:\windows\system32\DBBK\5992A9DF57FD5E6960FDCC2DB69867F7
2012-04-15 17:02 . 2012-04-15 17:02 145408 ----a-w- c:\windows\system32\DBBK\A4B5A34EE451B5C501D5C90633D89BB0
2012-04-15 17:02 . 2012-04-15 17:02 16896 ----a-w- c:\windows\system32\DBBK\8E79090CB0987CA102E845341E052537
2012-04-15 17:02 . 2012-04-15 17:02 70656 ----a-w- c:\windows\system32\DBBK\83EDF12A090F0B66CDC9F7390A701521
2012-04-15 17:02 . 2012-04-15 17:02 122368 ----a-w- c:\windows\system32\DBBK\843ED534E2F15F733F4A468FD9CF0CD1
2012-04-15 17:02 . 2012-04-15 17:02 159232 ----a-w- c:\windows\system32\DBBK\20A20A911CD79A6F6839167149A05668
2012-04-15 17:02 . 2012-04-15 17:02 65024 ----a-w- c:\windows\system32\DBBK\08E420D873E4FD85241EE2421B02C4A4
2012-04-15 17:02 . 2012-04-15 17:02 23040 ----a-w- c:\windows\system32\DBBK\57A51217581614DE07F30E34D6BB4993
2012-04-15 17:02 . 2012-04-15 17:02 72192 ----a-w- c:\windows\system32\DBBK\2607A85B6466C0110EA8ABB9D8CC83FC
2012-04-15 17:02 . 2012-04-15 17:02 73728 ----a-w- c:\windows\system32\DBBK\6F5D49EFE0E7164E03AE773A3FE25340
2012-04-15 17:02 . 2012-04-15 17:02 1175040 ----a-w- c:\windows\system32\DBBK\1B91CD34EA3A90AB6A4EF0550174F4CC
2012-04-15 17:02 . 2012-04-15 17:02 43008 ----a-w- c:\windows\system32\DBBK\7AA994D0757EF3FDB4F3F7656E1E4D60
2012-04-15 17:02 . 2012-04-15 17:02 72704 ----a-w- c:\windows\system32\DBBK\9FA14FFC9150B48C5D582DCF6A79D6F2
2012-04-15 17:02 . 2012-04-15 17:02 566272 ----a-w- c:\windows\system32\DBBK\9835584E999D25004E1EE8E5F3E3B881
2012-04-15 17:02 . 2012-04-15 17:02 20992 ----a-w- c:\windows\system32\DBBK\CFD8B8537036CF35F6254192997A4D8E
2012-04-15 17:02 . 2012-04-15 17:02 674304 ----a-w- c:\windows\system32\DBBK\F95622F161474511B8D80D6B093AA610
2012-04-15 17:02 . 2012-04-15 17:02 410624 ----a-w- c:\windows\system32\DBBK\F5F9CB23EDBF2C77AAE5A2A2FC4FC333
2012-04-15 17:02 . 2012-04-15 17:02 577024 ----a-w- c:\windows\system32\DBBK\297848A1D7D03A5735CEDF91F82ACFAB
2012-04-15 17:02 . 2012-04-15 17:02 42496 ----a-w- c:\windows\system32\DBBK\4627D4C6D3BB999B123793C3A2709F86
2012-04-15 17:02 . 2012-04-15 17:02 1164288 ----a-w- c:\windows\system32\DBBK\24CAEDCD73B5B0E22226283B7B2468C7
2012-04-15 17:02 . 2012-04-15 17:02 209920 ----a-w- c:\windows\system32\DBBK\C5A99A4C0DC9F0F5A95BA0C83D30A549
2012-04-15 17:02 . 2012-04-15 17:02 25088 ----a-w- c:\windows\system32\DBBK\1F59B386F652A0484A3CC0B680B1132B
2012-04-15 17:02 . 2012-04-15 17:02 313856 ----a-w- c:\windows\system32\DBBK\A6154A954F08E99D27CEA4D3B9563172
2012-04-15 17:01 . 2012-04-15 17:01 523264 ----a-w- c:\windows\system32\DBBK\967EA5B213E9984CBE270205DF37755B
2012-04-15 17:01 . 2012-04-15 17:01 53760 ----a-w- c:\windows\system32\DBBK\C9905EA4C326DAB778B9297BA5BD1889
2012-04-15 17:01 . 2012-04-15 17:01 36864 ----a-w- c:\windows\system32\DBBK\C555046481601ED19920F2D3E76B8A36
2012-04-15 17:01 . 2012-04-15 17:01 1297408 ----a-w- c:\windows\system32\DBBK\808D8A8B2A3074002852BC856D419576
2012-04-15 17:01 . 2012-04-15 17:01 1140736 ----a-w- c:\windows\system32\DBBK\7FD5532C142DB6C9CC47AA4DCF71FDEC
2012-04-15 17:01 . 2012-04-15 17:01 47104 ----a-w- c:\windows\system32\DBBK\E2FE656A79D8F4C4FD70201E7423BDA0
2012-04-15 17:01 . 2012-04-15 17:01 33792 ----a-w- c:\windows\system32\DBBK\25ECEE9FE6D1E638E3980F71E77DB32C
2012-04-15 17:01 . 2012-04-15 17:01 905216 ----a-w- c:\windows\system32\DBBK\53E054880ADBB856ECE6EB10EDBB8A32
2012-04-15 17:01 . 2012-04-15 17:01 2048 ----a-w- c:\windows\system32\DBBK\47A65753EE82949D01364105AD85D29E
2012-04-15 17:01 . 2012-04-15 17:01 42496 ----a-w- c:\windows\system32\DBBK\EB7B4563D6D20FC663F15FE8581D0BF2
2012-04-15 17:01 . 2012-04-15 17:01 453632 ----a-w- c:\windows\system32\DBBK\C3CD30495687C2A2F66A65CA6FD89BE9
2012-04-15 17:01 . 2012-04-15 17:01 125440 ----a-w- c:\windows\system32\DBBK\DAB5808E0C26740577AE67878A87136E
2012-04-15 17:01 . 2012-04-15 17:01 146432 ----a-w- c:\windows\system32\DBBK\C9708C9F3DBA3DBFB1D2FEE1E9DABAD0
2012-04-15 17:01 . 2012-04-15 17:01 71168 ----a-w- c:\windows\system32\DBBK\196B4E3F4CCCC24AF836CE58FACBB699
2012-04-15 17:01 . 2012-04-15 17:01 560128 ----a-w- c:\windows\system32\DBBK\7D4DC95A1F5E0818E74A399960569EA1
2012-04-15 17:01 . 2012-04-15 17:01 42496 ----a-w- c:\windows\system32\DBBK\583B799BB61EAFA6F19E74D35AD5D731
2012-04-15 17:01 . 2012-04-15 17:01 666624 ----a-w- c:\windows\system32\DBBK\987323F0247D023AD1AE52195540ECE0
2012-04-15 17:01 . 2012-04-15 17:01 63488 ----a-w- c:\windows\system32\DBBK\64615069F13DA2F0876E72200F40C97D
2012-04-15 17:01 . 2012-04-15 17:01 750080 ----a-w- c:\windows\system32\DBBK\E24BB41C4EFC309A14709FC127A3B847
2012-04-15 17:01 . 2012-04-15 17:01 1739776 ----a-w- c:\windows\system32\DBBK\7D44EE5DBCC3A6E90EB60EDF72B66D99
2012-04-15 17:01 . 2012-04-15 17:01 516096 ----a-w- c:\windows\system32\DBBK\BA2B249CD7C8CE15E1A8D69ECAEE5FA3
2012-04-15 17:01 . 2012-04-15 17:01 108544 ----a-w- c:\windows\system32\DBBK\F93C84B307573327779AE0DA41115957
2012-04-15 17:01 . 2012-04-15 17:01 200192 ----a-w- c:\windows\system32\DBBK\2E2C17DF779AD51A7209754685B010A1
2012-04-15 17:01 . 2012-04-15 17:01 128000 ----a-w- c:\windows\system32\DBBK\079D12BFED9E3E03D02A44BAF8FFA3A9
2012-04-15 17:01 . 2012-04-15 17:01 101376 ----a-w- c:\windows\system32\DBBK\F6C262D0278BAA06217949639A6392C6
2012-04-15 17:01 . 2012-04-15 17:01 669184 ----a-w- c:\windows\system32\DBBK\E49EF627A75C0BAD02180C97AC527C33
2012-04-15 17:01 . 2012-04-15 17:01 606720 ----a-w- c:\windows\system32\DBBK\8D47D01378347889A662D54037A988CC
2012-04-15 17:01 . 2012-04-15 17:01 494592 ----a-w- c:\windows\system32\DBBK\1E2BAC209D184BB851E1A187D8A29136
2012-04-15 17:01 . 2012-04-15 17:01 155648 ----a-w- c:\windows\system32\DBBK\F43740C5C610D0DA32A5F54F7127EB28
2012-04-15 17:01 . 2012-04-15 17:01 802304 ----a-w- c:\windows\system32\DBBK\33B0A618BA5F44E67757C561D0A935C1
2012-04-15 17:01 . 2012-04-15 17:01 93696 ----a-w- c:\windows\system32\DBBK\737AFC772243C75E6AD17A7A8E8E23F9
2012-04-15 17:01 . 2012-04-15 17:01 755200 ----a-w- c:\windows\system32\DBBK\F1E9A22C1D4F5D3AC7BA555D4E95329C
2012-04-15 17:01 . 2012-04-15 17:01 78848 ----a-w- c:\windows\system32\DBBK\45D9F6CD2469CDB6A640DD4BD2B01471
2012-04-15 17:01 . 2012-04-15 17:01 1227776 ----a-w- c:\windows\system32\DBBK\8BCF1DCE05F4494C8891F33EEA450D0A
2012-04-15 17:01 . 2012-04-15 17:01 13824 ----a-w- c:\windows\system32\DBBK\53DA0477158774940C7FB45AC70645AA
2012-04-15 17:01 . 2012-04-15 17:01 573440 ----a-w- c:\windows\system32\DBBK\E8CFE3E528FDA8AC613F9C0372FDD0A2
2012-04-15 17:01 . 2012-04-15 17:01 557104 ----a-w- c:\windows\system32\DBBK\AE09E6597777BCB6479B94CD51188F6A
2012-04-15 17:01 . 2012-04-15 17:01 151056 ----a-w- c:\windows\system32\DBBK\3ECC3DAB2F39BDE554CCD17839D69868
2012-04-15 17:01 . 2012-04-15 17:01 17408 ----a-w- c:\windows\system32\DBBK\665748B8F1770EFE09AC75D8EC020100
2012-04-15 17:01 . 2012-04-15 17:01 189952 ----a-w- c:\windows\system32\DBBK\CE292C4C10B8DB6070F262EA2733F0DC
2012-04-15 17:01 . 2012-04-15 17:01 22016 ----a-w- c:\windows\system32\DBBK\BBED6A14692C48279F88B3127206A1BA
2012-04-15 17:01 . 2012-04-15 17:01 54272 ----a-w- c:\windows\system32\DBBK\C9B89E87CB6D87FA4CC3F04EBC9F3D1C
2012-04-15 17:01 . 2012-04-15 17:01 43008 ----a-w- c:\windows\system32\DBBK\AA376FE53D239EC404AD28AA14F33564
2012-04-15 17:01 . 2012-04-15 17:01 173568 ----a-w- c:\windows\system32\DBBK\4CCF86AAD1B67168FB51A477307EC288
2012-04-15 17:01 . 2012-04-15 17:01 1910784 ----a-w- c:\windows\system32\DBBK\8896EF6DEBA34C5507A488729A1D3AF2
2012-04-15 17:01 . 2012-04-15 17:01 257024 ----a-w- c:\windows\system32\DBBK\0C0DF0F05BAEA320FA301F34E256E08B
2012-04-15 17:01 . 2012-04-15 17:01 845312 ----a-w- c:\windows\system32\DBBK\5B3D1C528CD6674FF6BD1F6720F5A686
2012-04-15 17:01 . 2012-04-15 17:01 204800 ----a-w- c:\windows\system32\DBBK\2C49B175AEE1D4364B91B531417FE583
2012-04-15 17:01 . 2012-04-15 17:01 126464 ----a-w- c:\windows\system32\DBBK\4FE6AA4422BEC5DC3995051C670FFB26
2012-04-15 17:00 . 2012-04-15 17:00 121344 ----a-w- c:\windows\system32\DBBK\8E4B58E12B3FA65ED1462846906E0B59
2012-04-15 17:00 . 2012-04-15 17:00 14336 ----a-w- c:\windows\system32\DBBK\19F75D71E4256F5113D64CE2BB66B838
2012-04-15 17:00 . 2012-04-15 17:00 17920 ----a-w- c:\windows\system32\DBBK\ADD2ADE1C2B285AB8378D2DAAF991481
2012-04-15 17:00 . 2012-04-15 17:00 1085872 ----a-w- c:\windows\system32\DBBK\68531665BB5E52759247BCC2FFC16B2E
2012-04-15 17:00 . 2012-04-15 17:00 974336 ----a-w- c:\windows\system32\DBBK\421D9645B72CD341ECDBB0FCE06C97DE
2012-04-15 17:00 . 2012-04-15 17:00 1516984 ----a-w- c:\windows\system32\DBBK\D960ABF5CDE8F435D573572D02B7EB9E
2012-04-15 17:00 . 2012-04-15 17:00 128376 ----a-w- c:\windows\system32\DBBK\457D0EE7429B7C1616F94D13E331713C
2012-04-15 17:00 . 2012-04-15 17:00 1064296 ----a-w- c:\windows\system32\DBBK\1A8B4857F2CAAED89E16B1ED1F24930D
2012-04-15 17:00 . 2012-04-15 17:00 1247600 ----a-w- c:\windows\system32\DBBK\BC70AB7AC2FA8F7534BCE3E13256C07F
2012-04-15 17:00 . 2012-04-15 17:00 17324928 ----a-w- c:\windows\system32\DBBK\4A68EA31FF624A927E6D3B63FB695CFD
2012-04-15 17:00 . 2012-04-15 17:00 3004800 ----a-w- c:\windows\system32\DBBK\8385126C3A4654CD926435AB4183A504
2012-04-15 17:00 . 2012-04-15 17:00 48512 ----a-w- c:\windows\system32\DBBK\7D3471AAC8AAB05A32E194FC624F08FA
2012-04-15 17:00 . 2012-04-15 17:00 1537536 ----a-w- c:\windows\system32\DBBK\28CAAA8B3DAC4604B6871F311C6B9F49
2012-04-15 17:00 . 2012-04-15 17:00 2136064 ----a-w- c:\windows\system32\DBBK\5003ADEC6FF342D5C0BBAB94B76FE5E0
2012-04-15 17:00 . 2012-04-15 17:00 1811968 ----a-w- c:\windows\system32\DBBK\816FA57475CE5032E063BF69BFCD4C85
2012-04-15 17:00 . 2012-04-15 17:00 551424 ----a-w- c:\windows\system32\DBBK\02A2ED8497F437EA200DF3ACED255AFE
2012-04-15 17:00 . 2012-04-15 17:00 22528 ----a-w- c:\windows\system32\DBBK\7B3FD36359DE5D2EE49D213CCAD13427
2012-04-15 17:00 . 2012-04-15 17:00 38912 ----a-w- c:\windows\system32\DBBK\8444A7364D6877922049E99BF4B78C5C
2012-04-15 17:00 . 2012-04-15 17:00 2628608 ----a-w- c:\windows\system32\DBBK\C8CB301BF896C7C556BBE963FADF5BB6
2012-04-15 17:00 . 2012-04-15 17:00 4888576 ----a-w- c:\windows\system32\DBBK\2992932C1AB1D29A1A4A9E8CB8530CBF
2012-04-15 17:00 . 2012-04-15 17:00 907776 ----a-w- c:\windows\system32\DBBK\3B28814B74E898750A139FA4CBDFDCF7
2012-04-15 17:00 . 2012-04-15 17:00 801280 ----a-w- c:\windows\system32\DBBK\8B57A1AD493653BB57F281FE75DD175B
2012-04-15 17:00 . 2012-04-15 17:00 172544 ----a-w- c:\windows\system32\DBBK\971A36C4827AD1AE2A54E6407478921A
2012-04-15 17:00 . 2012-04-15 17:00 189952 ----a-w- c:\windows\system32\DBBK\A399514D3B28C9A3453A486BBAAFF1C7
2012-04-15 17:00 . 2012-04-15 17:00 247808 ----a-w- c:\windows\system32\DBBK\3CC04CB09FAFAD87942437FDDEE11EE3
2012-04-15 17:00 . 2012-04-15 17:00 1131008 ----a-w- c:\windows\system32\DBBK\5EFDBEAECD69E250E5BA4A2950203CD4
2012-04-15 16:59 . 2012-04-15 16:59 115712 ----a-w- c:\windows\system32\DBBK\529879612A7FAE235914E3AA6A9A669C
2012-04-15 16:59 . 2012-04-15 16:59 115200 ----a-w- c:\windows\system32\DBBK\52799EAD792B0E9AE7FD4BA5BD18FE5C
2012-04-15 16:59 . 2012-04-15 16:59 412160 ----a-w- c:\windows\system32\DBBK\3A11396EAC2414012155AB14E5C1E332
2012-04-15 16:59 . 2012-04-15 16:59 36352 ----a-w- c:\windows\system32\DBBK\3360F843C598DB57FFEB5A343114A744
2012-04-15 16:59 . 2012-04-15 16:59 27648 ----a-w- c:\windows\system32\DBBK\FB633DCC8664E4CCACF562DB5BAE38CF
2012-04-15 16:59 . 2012-04-15 16:59 9728 ----a-w- c:\windows\system32\DBBK\7DF186D86CF8C571A12AAB788C777F84
2012-04-15 16:59 . 2012-04-15 16:59 51712 ----a-w- c:\windows\system32\DBBK\A8CDF3768604FF95B54669E20053D569
2012-04-15 16:59 . 2012-04-15 16:59 18944 ----a-w- c:\windows\system32\DBBK\8258362DDB18B644A82D8B5061AD9426
2012-04-15 16:59 . 2012-04-15 16:59 25600 ----a-w- c:\windows\system32\DBBK\8C80EA0385219822BCE27485F4108444
2012-04-15 16:59 . 2012-04-15 16:59 487936 ----a-w- c:\windows\system32\DBBK\E25640558E3EE4FE6201A9928990BA2A
2012-04-15 16:59 . 2012-04-15 16:59 26112 ----a-w- c:\windows\system32\DBBK\5A8BF4E8810541C23F4067536FB48CA3
2012-04-15 16:59 . 2012-04-15 16:59 14848 ----a-w- c:\windows\system32\DBBK\1EBE9524683C7C4EED8B8BC93FB6FBCC
2012-04-15 16:59 . 2012-04-15 16:59 17408 ----a-w- c:\windows\system32\DBBK\88C170086371CC5716010AF223F6F780
2012-04-15 16:59 . 2012-04-15 16:59 47616 ----a-w- c:\windows\system32\DBBK\9D6AA2ADD3F704134EE89C1E58BDFD1B
2012-04-15 16:59 . 2012-04-15 16:59 1025536 ----a-w- c:\windows\system32\DBBK\209A3B1901B83AEB8527ED211CCE9E4C
2012-04-15 16:59 . 2012-04-15 16:59 236544 ----a-w- c:\windows\system32\DBBK\487F44B08EFEAF5AD087878357B9403D
2012-04-15 16:59 . 2012-04-15 16:59 35328 ----a-w- c:\windows\system32\DBBK\387A8A473ECC5BA02CF453277C1F3274
2012-04-15 16:59 . 2012-04-15 16:59 1914368 ----a-w- c:\windows\system32\DBBK\3026418A50C5B4761BEFA632CEDB7406
2012-04-15 16:59 . 2012-04-15 16:59 4608 ----a-w- c:\windows\system32\DBBK\4F6E72B34ED3DC53DCC5E8708E60B61F
2012-04-15 16:59 . 2012-04-15 16:59 405504 ----a-w- c:\windows\system32\DBBK\D16D818E9930A6E5B4F6476DD0998D1A
2012-04-15 16:59 . 2012-04-15 16:59 3179520 ----a-w- c:\windows\system32\DBBK\CF87A1DE791347E75B98885214CED2B8
2012-04-15 16:59 . 2012-04-15 16:59 77624 ----a-w- c:\windows\system32\DBBK\5A8A142C100F0C2F460E6EB34764D1C7
2012-04-15 16:59 . 2012-04-15 16:59 896800 ----a-w- c:\windows\system32\DBBK\697704BC00DAF64AAFFF4BD05E3301F3
2012-04-15 16:59 . 2012-04-15 16:59 3786552 ----a-w- c:\windows\system32\DBBK\D41282F47CCE5137FA8751A40982444C
2012-04-15 16:59 . 2012-04-15 16:59 933856 ----a-w- c:\windows\system32\DBBK\D91EA1F35A0FFA33F06B3A517624BC0E
2012-04-15 16:59 . 2012-04-15 16:59 1307216 ----a-w- c:\windows\system32\DBBK\E7CD1222BC61B64945DD9FD7F022B8EA
2012-04-15 16:59 . 2012-04-15 16:59 229688 ----a-w- c:\windows\system32\DBBK\35176FA09A0FC58DB630991A81A0BA39
2012-04-15 16:59 . 2012-04-15 16:59 2514912 ----a-w- c:\windows\system32\DBBK\515AD14CD8EB64AF841C6DB381A4BC9E
2012-04-15 16:59 . 2012-04-15 16:59 409960 ----a-w- c:\windows\system32\DBBK\BC204CE4CD9D08D6B178DFC77095B850
2012-04-15 16:59 . 2012-04-15 16:59 476520 ----a-w- c:\windows\system32\DBBK\1D114E646E5CC8B6D18238EBA210F9AE
2012-04-15 16:59 . 2012-04-15 16:59 121704 ----a-w- c:\windows\system32\DBBK\12500E86FAFEB5CB22C0ABA370CFFFBD
2012-04-15 16:59 . 2012-04-15 16:59 120168 ----a-w- c:\windows\system32\DBBK\C0770E006D0556D359F586ED86EAD004
2012-04-15 16:59 . 2012-04-15 16:59 794824 ----a-w- c:\windows\system32\DBBK\DB56B9251BC527B7EE89A6904C2B7A0F
2012-04-15 16:59 . 2012-04-15 16:59 421224 ----a-w- c:\windows\system32\DBBK\F71A731E236FB55E3585DC5391D286D3
2012-04-15 16:59 . 2012-04-15 16:59 315856 ----a-w- c:\windows\system32\DBBK\546AC7773CAE4419505A66273A299702
2012-04-15 16:59 . 2012-04-15 16:59 361712 ----a-w- c:\windows\system32\DBBK\5379A996F953DA65F40CC4E848DC7590
2012-04-15 16:59 . 2012-04-15 16:59 284968 ----a-w- c:\windows\system32\DBBK\91ED25E710E8B86E13E4D6ECD3FB75D8
2012-04-15 16:59 . 2012-04-15 16:59 171144 ----a-w- c:\windows\system32\DBBK\7A6ECC3DCE5D7E7A54C10E226A1CC60F
2012-04-15 16:59 . 2012-04-15 16:59 137696 ----a-w- c:\windows\system32\DBBK\C649C89DB9712597FA42B43B8249F2B5
2012-04-15 16:59 . 2012-04-15 16:59 1559560 ----a-w- c:\windows\system32\DBBK\8AC570284E6B4AC48107008CD04561E9
2012-04-15 16:59 . 2012-04-15 16:59 18792 ----a-w- c:\windows\system32\DBBK\B37A7C2B855FA1523A6840246C250FB2
2012-04-15 16:59 . 2012-04-15 16:59 269672 ----a-w- c:\windows\system32\DBBK\FE88E72F1B01EF8334E47EC44117559F
2012-04-15 16:59 . 2012-04-15 16:59 572760 ----a-w- c:\windows\system32\DBBK\7B46A076184B73AEDC1A66A71D9131E8
2012-04-15 16:59 . 2012-04-15 16:59 46592 ----a-w- c:\windows\system32\DBBK\EED5AE4EF38893DD1743A95760C98704
2012-04-15 16:59 . 2012-04-15 16:59 70504 ----a-w- c:\windows\system32\DBBK\26D2B399E87F2DF5DBCE2DAC24D94CFF
2012-04-15 16:59 . 2012-04-15 16:59 34304 ----a-w- c:\windows\system32\DBBK\93117349047DDB7B3FF24EB006207606
2012-04-15 16:59 . 2012-04-15 16:59 46952 ----a-w- c:\windows\system32\DBBK\E5210EB71E2017951050550067C30093
2012-04-15 16:59 . 2012-04-15 16:59 114688 ----a-w- c:\windows\system32\DBBK\F68CAFF425A9F37E498193BDDC5CC652
2012-04-15 16:59 . 2012-04-15 16:59 403456 ----a-w- c:\windows\system32\DBBK\B334FCA2F0878C2AF77826211DBE55BB
2012-04-15 16:59 . 2012-04-15 16:59 630784 ----a-w- c:\windows\system32\DBBK\25279D7FAF0F1BE97EA477EB939A1469
2012-04-15 16:59 . 2012-04-15 16:59 5025792 ----a-w- c:\windows\system32\DBBK\2228FA05BCC728E116663A5E11ED6301
2012-04-15 16:59 . 2012-04-15 16:59 790728 ----a-w- c:\windows\system32\DBBK\419EA3321D6F560EF1631E8600C4BBBA
2012-04-15 16:59 . 2012-04-15 16:59 270536 ----a-w- c:\windows\system32\DBBK\A8EE13C557CC17D40FB720F31F4483F3
2012-04-15 16:59 . 2012-04-15 16:59 303104 ----a-w- c:\windows\system32\DBBK\1D4DA021B0AD837B35AFB772CC7C636D
2012-04-15 16:59 . 2012-04-15 16:59 216976 ----a-w- c:\windows\system32\DBBK\EECDC93FD0907E42753370016497F9E4
2012-04-15 16:59 . 2012-04-15 16:59 258048 ----a-w- c:\windows\system32\DBBK\6DB969DF540BC71722848940D180AC08
2012-04-15 16:59 . 2012-04-15 16:59 428032 ----a-w- c:\windows\system32\DBBK\34C07D9BED227103E32E21FBCC2F1FBD
2012-04-15 16:59 . 2012-04-15 16:59 471040 ----a-w- c:\windows\system32\DBBK\333244713F41C02DE8502061C0A11622
2012-04-15 16:59 . 2012-04-15 16:59 716800 ----a-w- c:\windows\system32\DBBK\6ED9B473AF5238E6C8EDD4CD46F70E1F
2012-04-15 16:59 . 2012-04-15 16:59 79744 ----a-w- c:\windows\system32\DBBK\95408ABE169FA532CDDDF93B14F382F0
2012-04-15 16:59 . 2012-04-15 16:59 31232 ----a-w- c:\windows\system32\DBBK\1D1EAA16D193C6A2D45981ED3914D22A
2012-04-15 16:59 . 2012-04-15 16:59 261632 ----a-w- c:\windows\system32\DBBK\5F3F1BF5F5B43293953FC915845910C4
2012-04-15 16:59 . 2012-04-15 16:59 2927616 ----a-w- c:\windows\system32\DBBK\35CAB7CF3754C41AEB69DCE1D5ACA5A4
2012-04-15 16:59 . 2012-04-15 16:59 8856 ----a-w- c:\windows\system32\DBBK\FE5F2895422BA362B5AAF7B69144BBCA
2012-04-15 16:59 . 2012-04-15 16:59 395912 ----a-w- c:\windows\system32\DBBK\93789B0CC6D3849B2B20646A6AFB38A8
2012-04-15 16:59 . 2012-04-15 16:59 854016 ----a-w- c:\windows\system32\DBBK\937FBD23997A91AF923D5E89286126BD
2012-04-15 16:59 . 2012-04-15 16:59 121632 ----a-w- c:\windows\system32\DBBK\0C06A80DFFA51E0EB9C5CE3DF703BC46
2012-04-15 16:59 . 2012-04-15 16:59 146936 ----a-w- c:\windows\system32\DBBK\BEB7F69B626A2924DD3E55848A024230
2012-04-15 16:59 . 2012-04-15 16:59 191256 ----a-w- c:\windows\system32\DBBK\5BE19E58DFFA6D4A2CE94FC343406660
2012-04-15 16:59 . 2012-04-15 16:59 120096 ----a-w- c:\windows\system32\DBBK\CE652D887DE875B24BE66901C8C05F62
2012-04-15 16:59 . 2012-04-15 16:59 419616 ----a-w- c:\windows\system32\DBBK\E43C3D10E560DBEACFBC12BF888703A7
2012-04-15 16:59 . 2012-04-15 16:59 2048000 ----a-w- c:\windows\system32\DBBK\5B3FA17E1CD6FBBDF41AC34DAEECC256
2012-04-15 16:59 . 2012-04-15 16:59 265720 ----a-w- c:\windows\system32\DBBK\3D811BF538D6F359735D757C94F484B6
2012-04-15 16:59 . 2012-04-15 16:59 356032 ----a-w- c:\windows\system32\DBBK\A771C8752B8D3BD8E5F89CD61FB25B23
2012-04-15 16:59 . 2012-04-15 16:59 264368 ----a-w- c:\windows\system32\DBBK\EE4C851C3CC9875A48A142FD948DADF6
2012-04-15 16:59 . 2012-04-15 16:59 180224 ----a-w- c:\windows\system32\DBBK\A5B43E5C10EB7485D3380CA21A60658D
2012-04-15 16:59 . 2012-04-15 16:59 3190784 ----a-w- c:\windows\system32\DBBK\162AC985F452724D8CE7CCEFC842809F
2012-04-15 16:59 . 2012-04-15 16:59 5998080 ----a-w- c:\windows\system32\DBBK\624A8FC27001639D08F3558FBB607187
2012-04-15 16:59 . 2012-04-15 16:59 147424 ----a-w- c:\windows\system32\DBBK\E97F40AF27DFCEDE94A808D2BE093C7B
2012-04-15 16:59 . 2012-04-15 16:59 58880 ----a-w- c:\windows\system32\DBBK\E1BD96A7F3DC962617142CCB58E38C0A
2012-04-15 16:59 . 2012-04-15 16:59 81552 ----a-w- c:\windows\system32\DBBK\4251D612FB90E8C261994558E66EF318
2012-04-15 16:59 . 2012-04-15 16:59 425984 ----a-w- c:\windows\system32\DBBK\5A7A33F7F9DFC0C0A8B8E000F4D9D898
2012-04-15 16:59 . 2012-04-15 16:59 518736 ----a-w- c:\windows\system32\DBBK\BEFC97125CCD70D25A7FBCE8CB764032
2012-04-15 16:59 . 2012-04-15 16:59 270336 ----a-w- c:\windows\system32\DBBK\B89CB7F3F1A1E2807E708F5435DEB13D
2012-04-15 16:59 . 2012-04-15 16:59 286992 ----a-w- c:\windows\system32\DBBK\FF8976DC06BBFA1114D4A92515AC3373
2012-04-15 16:59 . 2012-04-15 16:59 235504 ----a-w- c:\windows\system32\DBBK\F9A218A97E1C8C8BE0A00122EF3F1C58
2012-04-15 16:59 . 2012-04-15 16:59 18720 ----a-w- c:\windows\system32\DBBK\712FA98F6794152B349FD74A702F40F7
2012-04-15 16:59 . 2012-04-15 16:59 385896 ----a-w- c:\windows\system32\DBBK\B32F726A1B50E9A6F158100DA93C8B12
2012-04-15 16:59 . 2012-04-15 16:59 270112 ----a-w- c:\windows\system32\DBBK\68A84E7D86995088127F30E5D118C4E2
2012-04-15 16:59 . 2012-04-15 16:59 432480 ----a-w- c:\windows\system32\DBBK\BDDBA3A308735D45D907FD5C2BB9633B
2012-04-15 16:59 . 2012-04-15 16:59 3831480 ----a-w- c:\windows\system32\DBBK\DAACA6CB21B84710AC51D7B1C1DC4FF1
2012-04-15 16:59 . 2012-04-15 16:59 207464 ----a-w- c:\windows\system32\DBBK\D6553CBA25827AD2E0FBBBD837410869
2012-04-15 16:59 . 2012-04-15 16:59 70432 ----a-w- c:\windows\system32\DBBK\A71A91C57D2832C5D6D3F1917830BEE8
2012-04-15 16:59 . 2012-04-15 16:59 46880 ----a-w- c:\windows\system32\DBBK\D6F5D2245D53B5F5D3939137A7EC97EC
2012-04-15 16:59 . 2012-04-15 16:59 379456 ----a-w- c:\windows\system32\DBBK\1704625273FF804B969B3269E2CEE2FF
2012-04-15 16:59 . 2012-04-15 16:59 12136 ----a-w- c:\windows\system32\DBBK\54B21273AAF8A0BA1C06494FFB21BB29
2012-04-15 16:59 . 2012-04-15 16:59 23912 ----a-w- c:\windows\system32\DBBK\515D0E89532FA76488BE97427DE4207F
2012-04-15 16:59 . 2012-04-15 16:59 205152 ----a-w- c:\windows\system32\DBBK\101C8FE3C4B3A3A097CFA5B1E1C2504A
2012-04-15 16:59 . 2012-04-15 16:59 100104 ----a-w- c:\windows\system32\DBBK\06912FF672025AD15787D4E758DE6EF0
2012-04-15 16:59 . 2012-04-15 16:59 13672 ----a-w- c:\windows\system32\DBBK\3DC635B66DD7412E1C9C3A77B8D78F25
2012-04-15 16:59 . 2012-04-15 16:59 206152 ----a-w- c:\windows\system32\DBBK\01BB3D883BA520FD45D62742DC884146
2012-04-15 16:59 . 2012-04-15 16:59 456448 ----a-w- c:\windows\system32\DBBK\32D2C44247C8F9CAC70DE1F3AE121964
2012-04-15 16:59 . 2012-04-15 16:59 583680 ----a-w- c:\windows\system32\DBBK\DE0FFD802CE38CD3728E26CDA9A7E002
2012-04-15 16:59 . 2012-04-15 16:59 107320 ----a-w- c:\windows\system32\DBBK\C57882B378F1FF59814BB48B4545E2FD
2012-04-15 16:59 . 2012-04-15 16:59 403912 ----a-w- c:\windows\system32\DBBK\7742FAF142741769827531439D586446
2012-04-15 16:59 . 2012-04-15 16:59 591896 ----a-w- c:\windows\system32\DBBK\9CD59757A3F724436F96FAAA543D5733
2012-04-15 16:59 . 2012-04-15 16:59 112952 ----a-w- c:\windows\system32\DBBK\5B26F3430942DF182DE32797BD7D9D8A
2012-04-15 16:59 . 2012-04-15 16:59 805376 ----a-w- c:\windows\system32\DBBK\B3A5EC6B6B6673DB7E87C2BCDBDDC074
2012-04-15 16:59 . 2012-04-15 16:59 140232 ----a-w- c:\windows\system32\DBBK\FF9DF3B06348FE9AAAA5C11EA80A8017
2012-04-15 16:59 . 2012-04-15 16:59 854016 ----a-w- c:\windows\system32\DBBK\53223B673A3FA2F9A4D1C31C8D3F6CD8
2012-04-15 16:59 . 2012-04-15 16:59 771424 ----a-w- c:\windows\system32\DBBK\E5F7C30EDF0892667933BE879F067D67
2012-04-15 16:59 . 2012-04-15 16:59 59456 ----a-w- c:\windows\system32\DBBK\E22385F64BDF0AD81157479496E33C4A
2012-04-15 16:59 . 2012-04-15 16:59 204800 ----a-w- c:\windows\system32\DBBK\341B1F37EB9E45B7386732479D2CA73B
2012-04-15 16:58 . 2012-04-15 16:58 711640 ----a-w- c:\windows\system32\DBBK\570641D4FA0E8CD53A5893F058BDD26F
2012-04-15 16:57 . 2012-04-15 16:57 1966464 ----a-w- c:\windows\system32\DBBK\8E073C9F0388B25ED8EBF940AEC780CE
2012-04-15 16:57 . 2012-04-15 16:57 130384 ----a-w- c:\windows\system32\DBBK\C5A75EB48E2344ABDC162BDA79E16841
2012-04-15 16:57 . 2012-04-15 16:57 58632 ----a-w- c:\windows\system32\DBBK\9D68D0F85185DB1712626CE7943D4349
2012-04-15 16:57 . 2012-04-15 16:57 121256 ----a-w- c:\windows\system32\DBBK\36B47B1E9C537F8F2B4481084B8F7D22
2012-04-15 16:57 . 2012-04-15 16:57 157696 ----a-w- c:\windows\system32\DBBK\43BE3B9CA431F88E049928DC45C4365C
2012-04-15 16:57 . 2012-04-15 16:57 28424 ----a-w- c:\windows\system32\DBBK\B3C157A66ECDBCD3570E2DA139225589
2012-04-15 16:57 . 2012-04-15 16:57 197632 ----a-w- c:\windows\system32\DBBK\459A04CCA068CAB8799C2F84068C222D
2012-04-15 16:57 . 2012-04-15 16:57 91648 ----a-w- c:\windows\system32\DBBK\2CD77B980B2CC3D655589A2E315AAB57
2012-04-15 16:57 . 2012-04-15 16:57 86 ----a-w- c:\windows\system32\DBBK\D8555A09D5862497F4156E9E4CCC808B
2012-04-15 16:57 . 2012-04-15 16:57 20320 ----a-w- c:\windows\system32\DBBK\8F6ADD0EB80120160BE117459A1BBED7
2012-04-15 16:57 . 2012-04-15 16:57 24064 ----a-w- c:\windows\system32\DBBK\2875B386B45B8A77E2343C5E129AE50C
2012-04-15 16:57 . 2012-04-15 16:57 80896 ----a-w- c:\windows\system32\DBBK\E8F6851E4600CD3674422487EE240941
2012-04-15 16:57 . 2012-04-15 16:57 20480 ----a-w- c:\windows\system32\DBBK\C5413BC4F10CEB4C3070BBF04D324117
2012-04-15 16:57 . 2012-04-15 16:57 165376 ----a-w- c:\windows\system32\DBBK\DBC02D918FFF1CAD628ACBE0C0EAA8E8
2012-04-15 16:57 . 2012-04-15 16:57 312832 ----a-w- c:\windows\system32\DBBK\C7952D0A4C43A965A1741916BB134751
2012-04-15 16:57 . 2012-04-15 16:57 392192 ----a-w- c:\windows\system32\DBBK\2D11BC8B460957E62E4420373A0D8BDA
2012-04-15 16:57 . 2012-04-15 16:57 76800 ----a-w- c:\windows\system32\DBBK\8BC9DB92C4B2F3BE89185BEAB2AFC1F6
2012-04-15 16:57 . 2012-04-15 16:57 337408 ----a-w- c:\windows\system32\DBBK\DB67C7C62038BDE813CB6486581A7611
2012-04-15 16:57 . 2012-04-15 16:57 2146304 ----a-w- c:\windows\system32\DBBK\2DDEA2C345DA5BC589EFD398F220DB0E
2012-04-15 16:57 . 2012-04-15 16:57 86528 ----a-w- c:\windows\system32\DBBK\A6CD6B3F71E13E2E45B727FB8A47EA87
2012-04-15 16:57 . 2012-04-15 16:57 10240 ----a-w- c:\windows\system32\DBBK\A5D237B8673025B052C0E6FDB6A883E8
2012-04-15 16:57 . 2012-04-15 16:57 164352 ----a-w- c:\windows\system32\DBBK\E1AC89F6C5252057E6062843E36A6701
2012-04-15 16:57 . 2012-04-15 16:57 177664 ----a-w- c:\windows\system32\DBBK\8EE6BDE1D572677AA35707C52C585F75
2012-04-15 16:57 . 2012-04-15 16:57 229376 ----a-w- c:\windows\system32\DBBK\A4EE3D80E31D5A3CA8EBE6A67A06CEC0
2012-04-15 16:56 . 2012-04-15 16:56 10992640 ----a-w- c:\windows\system32\DBBK\EC528C1EC2C0318A1612456E438D6963
2012-04-15 16:56 . 2012-04-15 16:56 449744 ----a-w- c:\windows\system32\DBBK\2F5E3784FE64C1A1927621ACAFC75548
2012-04-15 16:56 . 2012-04-15 16:56 32072 ----a-w- c:\windows\system32\DBBK\ED797D8DC2C92401985D162E42FFA450
2012-04-15 16:56 . 2012-04-15 16:56 110928 ----a-w- c:\windows\system32\DBBK\E955300DF949977878C705EC8681009A
2012-04-15 16:56 . 2012-04-15 16:56 95560 ----a-w- c:\windows\system32\DBBK\24FCC3CDAE327F632CB8696E1E40F772
2012-04-15 16:56 . 2012-04-15 16:56 156728 ----a-w- c:\windows\system32\DBBK\99B9343280AF6A4C0F27CF2E28E94BBF
2012-04-15 16:56 . 2012-04-15 16:56 1160008 ----a-w- c:\windows\system32\DBBK\C1B5307377C98F87E0152C44E9FF8DEE
2012-04-15 16:56 . 2012-04-15 16:56 77112 ----a-w- c:\windows\system32\DBBK\3D7D2E825C63FF501E896CF008C70D75
2012-04-15 16:56 . 2012-04-15 16:56 49152 ----a-w- c:\windows\system32\DBBK\F7637FF9B31E3D0300EF1C0E08BD5FD1
2012-04-15 16:56 . 2012-04-15 16:56 22528 ----a-w- c:\windows\system32\DBBK\D30117DB43F48C4DBA9B41C08156A339
2012-04-15 16:56 . 2012-04-15 16:56 692736 ----a-w- c:\windows\system32\DBBK\E3D5E244807AD655787FCD25477CC1BC
2012-04-15 16:56 . 2012-04-15 16:56 817664 ----a-w- c:\windows\system32\DBBK\523214677C1D31D7991632C6D11E6B42
2012-04-15 16:56 . 2012-04-15 16:56 171520 ----a-w- c:\windows\system32\DBBK\02530B0B7E048DD5AC8D52DAEACAEB2B
2012-04-15 16:56 . 2012-04-15 16:56 27648 ----a-w- c:\windows\system32\DBBK\F2ED6D00921CA138289E5E0CCB9ABF87
2012-04-15 16:56 . 2012-04-15 16:56 195072 ----a-w- c:\windows\system32\DBBK\B63E24E9271E99FD4540E3CA22A937DA
2012-04-15 16:56 . 2012-04-15 16:56 284672 ----a-w- c:\windows\system32\DBBK\C02AA67276FEE0C15CC4D6D616BDE95E
2012-04-15 16:56 . 2012-04-15 16:56 5504 ----a-w- c:\windows\system32\DBBK\F456E973590D663B1073E9C463B40932
2012-04-15 16:56 . 2012-04-15 16:56 190976 ----a-w- c:\windows\system32\DBBK\CC5BF60E9D3F181C0B62AC91AD8634B8
2012-04-15 16:56 . 2012-04-15 16:56 1328128 ----a-w- c:\windows\system32\DBBK\0AE0C4955E1DE29CCDC9DA1B816FE5EE
2012-04-15 16:56 . 2012-04-15 16:56 288256 ----a-w- c:\windows\system32\DBBK\6383C60EC0133B14F5705F96369421B2
2012-04-15 16:56 . 2012-04-15 16:56 84480 ----a-w- c:\windows\system32\DBBK\8063046AA70B97CA9985672B8848FB2E
2012-04-15 16:56 . 2012-04-15 16:56 91136 ----a-w- c:\windows\system32\DBBK\04B88428A872390D235BE52D38A9D4EF
2012-04-15 16:56 . 2012-04-15 16:56 35328 ----a-w- c:\windows\system32\DBBK\1CBF15FDB0310345A68972EB5C5B948F
2012-04-15 16:56 . 2012-04-15 16:56 280576 ----a-w- c:\windows\system32\DBBK\7CCCFCA7510684768DA22092D1FA4DB2
2012-04-15 16:56 . 2012-04-15 16:56 7680 ----a-w- c:\windows\system32\DBBK\81600E2E27ED61427AAD865B9BCDDB9D
2012-04-15 16:56 . 2012-04-15 16:56 1401344 ----a-w- c:\windows\system32\DBBK\0241CB16136B9A4939CA0395768AE286
2012-04-15 16:56 . 2012-04-15 16:56 1549312 ----a-w- c:\windows\system32\DBBK\465DBF63A5049E4DB4BC5C12FFE781CB
2012-04-15 16:56 . 2012-04-15 16:56 227328 ----a-w- c:\windows\system32\DBBK\942E57152F1CD0533644AB30EF1A4728
2012-04-15 16:56 . 2012-04-15 16:56 848384 ----a-w- c:\windows\system32\DBBK\C2D6A4475B87651D5909E364439FDA52
2012-04-15 16:56 . 2012-04-15 16:56 32768 ----a-w- c:\windows\system32\DBBK\2395CDB116BD8B5B88419A145C40FCD9
2012-04-15 16:56 . 2012-04-15 16:56 427520 ----a-w- c:\windows\system32\DBBK\236F286E103FD44BD85FDD93097FD5DD
2012-04-15 16:56 . 2012-04-15 16:56 64000 ----a-w- c:\windows\system32\DBBK\1C7F1C3EA5894995E6C563E9AE9F029F
2012-04-15 16:56 . 2012-04-15 16:56 18432 ----a-w- c:\windows\system32\DBBK\8EE566982477BC5886FE622CEBEE9C86
2012-04-15 16:56 . 2012-04-15 16:56 23552 ----a-w- c:\windows\system32\DBBK\AE796D3FD1C69CE62BB6AFACDFB950AA
2012-04-15 16:56 . 2012-04-15 16:56 301568 ----a-w- c:\windows\system32\DBBK\674B0C0F6A448EB185CAAB9C51D44032
2012-04-15 16:56 . 2012-04-15 16:56 12288 ----a-w- c:\windows\system32\DBBK\BF3D6F7D929E018703BE2D4556DD679A
2012-04-15 16:56 . 2012-04-15 16:56 17920 ----a-w- c:\windows\system32\DBBK\C2A12B061F591E093E3FD99D75811398
2012-04-15 16:56 . 2012-04-15 16:56 159744 ----a-w- c:\windows\system32\DBBK\ADB45A977BD9E45790CA496DB84BA148
2012-04-15 16:56 . 2012-04-15 16:56 281600 ----a-w- c:\windows\system32\DBBK\DAE616813F2371B85F8E36D6F9AE4AED
2012-04-15 16:56 . 2012-04-15 16:56 80896 ----a-w- c:\windows\system32\DBBK\BD626EF05967D14C772B8096292731A3
2012-04-15 16:56 . 2012-04-15 16:56 1750528 ----a-w- c:\windows\system32\DBBK\3D6F22551D422F97AACB0BB927E4C846
2012-04-15 16:56 . 2012-04-15 16:56 229376 ----a-w- c:\windows\system32\DBBK\ABA457BFC7EC0B5E130B2F1E0F549DFF
2012-04-15 16:56 . 2012-04-15 16:56 573440 ----a-w- c:\windows\system32\DBBK\7D34AF98A706230CC2DEDFE0CABF87AB
2012-04-15 16:56 . 2012-04-15 16:56 466944 ----a-w- c:\windows\system32\DBBK\7A4048D990AAB3D98DD6572DF94EBDC3
2012-04-15 16:56 . 2012-04-15 16:56 105984 ----a-w- c:\windows\system32\DBBK\735263DA17BF5BAF9CCD483843BF9D5A
2012-04-15 16:56 . 2012-04-15 16:56 1137664 ----a-w- c:\windows\system32\DBBK\DC6612A9EE015A36BA2A27BC9CC12537
2012-04-15 16:56 . 2012-04-15 16:56 81920 ----a-w- c:\windows\system32\DBBK\9F689E989ECB1E9E0C185111E572EA13
2012-04-15 16:56 . 2012-04-15 16:56 2494464 ----a-w- c:\windows\system32\DBBK\EAB975DB4C2805927FE5BD047D05C9AA
2012-04-15 16:56 . 2012-04-15 16:56 164864 ----a-w- c:\windows\system32\DBBK\C68B93C5124F6B283A725C857ED9C068
2012-04-15 16:56 . 2012-04-15 16:56 91136 ----a-w- c:\windows\system32\DBBK\F6B43AD86FCCC66A254D3BB29BA94BD1
2012-04-15 16:56 . 2012-04-15 16:56 167936 ----a-w- c:\windows\system32\DBBK\069766726AAABAD9AC53F7038256ABA4
2012-04-15 16:56 . 2012-04-15 16:56 107008 ----a-w- c:\windows\system32\DBBK\630A31F277349109299E590856A4B004
2012-04-15 16:56 . 2012-04-15 16:56 23040 ----a-w- c:\windows\system32\DBBK\4DDACA8A66B95ABA02812FF3C13DE198
2012-04-15 16:56 . 2012-04-15 16:56 193536 ----a-w- c:\windows\system32\DBBK\C140F86932B5B61F54A4D836E2D34AB2
2012-04-15 16:56 . 2012-04-15 16:56 48488 ----a-w- c:\windows\system32\DBBK\693C7694D451C51BEAE530F75A18E0DF
2012-04-15 16:56 . 2012-04-15 16:56 46592 ----a-w- c:\windows\system32\DBBK\B2B3DAE040F6B5AE1DF52B0CD7631A18
2012-04-15 16:56 . 2012-04-15 16:56 65024 ----a-w- c:\windows\system32\DBBK\E24FE90E9DE8D8AE70E59F7B01675DEF
2012-04-15 16:56 . 2012-04-15 16:56 30720 ----a-w- c:\windows\system32\DBBK\7069AAB8536F29ED7323140973A2894B
2012-04-15 16:56 . 2012-04-15 16:56 49512 ----a-w- c:\windows\system32\DBBK\E2AE392170BDD664739BB09552D833DC
2012-04-15 16:56 . 2012-04-15 16:56 20992 ----a-w- c:\windows\system32\DBBK\F8F03D206F7D5811D630349A23E9B9B9
2012-04-15 16:56 . 2012-04-15 16:56 55296 ----a-w- c:\windows\system32\DBBK\856CFFCD835528136367BB1A8FE1DB87
2012-04-15 16:56 . 2012-04-15 16:56 821608 ----a-w- c:\windows\system32\DBBK\57EDB35EA2FECA88F8B17C0C095C9A56
2012-04-15 16:56 . 2012-04-15 16:56 66560 ----a-w- c:\windows\system32\DBBK\5BB8C06EB5EA4BA22EE8A678F2D79B25
2012-04-15 16:56 . 2012-04-15 16:56 28672 ----a-w- c:\windows\system32\DBBK\6FA41E0C86EF049A12C05CA4BBA8F9AF
2012-04-15 16:56 . 2012-04-15 16:56 142336 ----a-w- c:\windows\system32\DBBK\2041012726EF7C95ED51C15C56545A7F
2012-04-15 16:56 . 2012-04-15 16:56 90112 ----a-w- c:\windows\system32\DBBK\703FFD301AB900B047337C5D40FD6F96
2012-04-15 16:56 . 2012-04-15 16:56 399872 ----a-w- c:\windows\system32\DBBK\ADDB05C93272A62606599B24730BD645
2012-04-15 16:56 . 2012-04-15 16:56 120320 ----a-w- c:\windows\system32\DBBK\C335EC1182AC10B188705554E0BC1186
2012-04-15 16:56 . 2012-04-15 16:56 91648 ----a-w- c:\windows\system32\DBBK\DCEABBA22E12CC44C2E7785C0EB9C6E3
2012-04-15 16:56 . 2012-04-15 16:56 124464 ----a-w- c:\windows\system32\DBBK\4646A4E602C82BF86EA8843E0EB643E3
2012-04-15 16:56 . 2012-04-15 16:56 117248 ----a-w- c:\windows\system32\DBBK\57BB1EAC4A55DEDBD67FB87F87C3CE9D
2012-04-15 16:56 . 2012-04-15 16:56 395264 ----a-w- c:\windows\system32\DBBK\C8333F1F77A1B2E25F2202E892CAF634
2012-04-15 16:56 . 2012-04-15 16:56 1361768 ----a-w- c:\windows\system32\DBBK\09EAD9CB2346B671F8F079D3472134D8
2012-04-15 16:56 . 2012-04-15 16:56 4624384 ----a-w- c:\windows\system32\DBBK\DD84FD291B2C324B8E6D6EF6B8643A69
2012-04-15 16:56 . 2012-04-15 16:56 7680 ----a-w- c:\windows\system32\DBBK\3B77FEE9D24E77A0D17AD91A14F8BE3D
2012-04-15 16:56 . 2012-04-15 16:56 90112 ----a-w- c:\windows\system32\DBBK\066B00871ECE0E36F5658BB675EAF7FA
2012-04-15 16:56 . 2012-04-15 16:56 740864 ----a-w- c:\windows\system32\DBBK\67C1B58706B47EEBA4E117AC197289E6
2012-04-15 16:56 . 2012-04-15 16:56 228352 ----a-w- c:\windows\system32\DBBK\912649A1B3F9E6ACB3899FBDABA2ED5F
2012-04-15 16:56 . 2012-04-15 16:56 46080 ----a-w- c:\windows\system32\DBBK\B9A4DAC2192FD78CDA097BFA79F6E7B2
2012-04-15 16:56 . 2012-04-15 16:56 9216 ----a-w- c:\windows\system32\DBBK\A9719562B3FEDB0565142B37C31E94BC
2012-04-15 16:56 . 2012-04-15 16:56 194680 ----a-w- c:\windows\system32\DBBK\F92FA005B7ED96502DADBCE0BBD49815
2012-04-15 16:56 . 2012-04-15 16:56 67584 ----a-w- c:\windows\system32\DBBK\2DB9A35DBE4DA58D4077655EDDD10A0D
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\C62CF532F92BD43B436BB1F0550722DC
2012-04-15 16:56 . 2012-04-15 16:56 196608 ----a-w- c:\windows\system32\DBBK\4D61FAE8432E83A00C48227691FB7CF3
2012-04-15 16:56 . 2012-04-15 16:56 7680 ----a-w- c:\windows\system32\DBBK\667E82F9A0EBC991992FDFAA0ABCBBAD
2012-04-15 16:56 . 2012-04-15 16:56 10240 ----a-w- c:\windows\system32\DBBK\7A45905B462F6AE857E4566F3831AEB6
2012-04-15 16:56 . 2012-04-15 16:56 102400 ----a-w- c:\windows\system32\DBBK\85FE1337101B9F9FD5E2AB865AD6C77F
2012-04-15 16:56 . 2012-04-15 16:56 94208 ----a-w- c:\windows\system32\DBBK\82E17BB7B9AF772B1D6E012DE437BC24
2012-04-15 16:56 . 2012-04-15 16:56 10240 ----a-w- c:\windows\system32\DBBK\250C1C68E4747C2C831BEAE3C10AD432
2012-04-15 16:56 . 2012-04-15 16:56 9728 ----a-w- c:\windows\system32\DBBK\311F8C91193B851104DD140966D6AEA1
2012-04-15 16:56 . 2012-04-15 16:56 262144 ----a-w- c:\windows\system32\DBBK\7204F76E069854A2785796A0911AFB27
2012-04-15 16:56 . 2012-04-15 16:56 15184 ----a-w- c:\windows\system32\DBBK\F272269C4DE5724151FCBDD4D757D3A8
2012-04-15 16:56 . 2012-04-15 16:56 90112 ----a-w- c:\windows\system32\DBBK\02F4CEA077E209EB95E00AF4678DC76D
2012-04-15 16:56 . 2012-04-15 16:56 61440 ----a-w- c:\windows\system32\DBBK\6C7722CAD2517C6170F3C4BCC5224286
2012-04-15 16:56 . 2012-04-15 16:56 10752 ----a-w- c:\windows\system32\DBBK\366031C1F10DC3D70211E7615B57134C
2012-04-15 16:56 . 2012-04-15 16:56 106496 ----a-w- c:\windows\system32\DBBK\9F631B2338922A6DD1B8399890B140B0
2012-04-15 16:56 . 2012-04-15 16:56 69632 ----a-w- c:\windows\system32\DBBK\149551A6BEA760DA03E1DB630A2CF053
2012-04-15 16:56 . 2012-04-15 16:56 11264 ----a-w- c:\windows\system32\DBBK\5271E6AC2E079A07BA8D7D7C644391F1
2012-04-15 16:56 . 2012-04-15 16:56 86016 ----a-w- c:\windows\system32\DBBK\92DA10946924CE1180CD89552379489C
2012-04-15 16:56 . 2012-04-15 16:56 39936 ----a-w- c:\windows\system32\DBBK\38D379EA86F712EAE395C6ACFF58D6B6
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\9D5270BF2CAAF1A4BC2D6B970576ABE0
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\AF9F38A0C5E790BB7F85BFACEEC88442
2012-04-15 16:56 . 2012-04-15 16:56 196608 ----a-w- c:\windows\system32\DBBK\9D33B5FB93AEAE88314C379063FFB2B4
2012-04-15 16:56 . 2012-04-15 16:56 233472 ----a-w- c:\windows\system32\DBBK\BCB62DABF580EF96AB08DE71A1F7475A
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\2240E4AA3910A1A6CBE168C66DAD2824
2012-04-15 16:56 . 2012-04-15 16:56 53248 ----a-w- c:\windows\system32\DBBK\AA6BD503A41AE158EFBA851965A40FE9
2012-04-15 16:56 . 2012-04-15 16:56 10240 ----a-w- c:\windows\system32\DBBK\DE68C769901568F83FABA5F5FDD1B0D1
2012-04-15 16:56 . 2012-04-15 16:56 21504 ----a-w- c:\windows\system32\DBBK\85B45B4B285B159ACDB355FC8C1E8925
2012-04-15 16:56 . 2012-04-15 16:56 41984 ----a-w- c:\windows\system32\DBBK\45760EECC8B74B251171BE4F247F17CB
2012-04-15 16:56 . 2012-04-15 16:56 17408 ----a-w- c:\windows\system32\DBBK\A42E7748BE906434C5FD17161D168C20
2012-04-15 16:56 . 2012-04-15 16:56 5120 ----a-w- c:\windows\system32\DBBK\907281ED4AD35D41B29FFDC211EBAD80
2012-04-15 16:56 . 2012-04-15 16:56 204800 ----a-w- c:\windows\system32\DBBK\52E8FDB26CEEAE18DAE7B85252830381
2012-04-15 16:56 . 2012-04-15 16:56 4726784 ----a-w- c:\windows\system32\DBBK\6ED29CC2305022ED472709450D636933
2012-04-15 16:56 . 2012-04-15 16:56 196608 ----a-w- c:\windows\system32\DBBK\0630F22DA9F4B1BDCD3577A12AFB2C27
2012-04-15 16:56 . 2012-04-15 16:56 206848 ----a-w- c:\windows\system32\DBBK\954EA9B34F155C844B11F4047A8F6F89
2012-04-15 16:56 . 2012-04-15 16:56 39936 ----a-w- c:\windows\system32\DBBK\F45ED8C4F9AF862CD9992849B5203C11
2012-04-15 16:56 . 2012-04-15 16:56 19456 ----a-w- c:\windows\system32\DBBK\0552A8684BF7566F744D5B19FF6AEC6B
2012-04-15 16:56 . 2012-04-15 16:56 585728 ----a-w- c:\windows\system32\DBBK\E585445D5021971FAE10393F0F1C3961
2012-04-15 16:56 . 2012-04-15 16:56 4085360 ----a-w- c:\windows\system32\DBBK\0498F64095B42EB811D9D5BD70134277
2012-04-15 16:56 . 2012-04-15 16:56 61440 ----a-w- c:\windows\system32\DBBK\6DC04E1DDB48ED7397D1597C737BC106
2012-04-15 16:56 . 2012-04-15 16:56 118784 ----a-w- c:\windows\system32\DBBK\7E596F93291C02D91C08AEDB36EDED37
2012-04-15 16:56 . 2012-04-15 16:56 9728 ----a-w- c:\windows\system32\DBBK\BEAFF8B8715D4441C1ABC0B1928E52FC
2012-04-15 16:56 . 2012-04-15 16:56 217088 ----a-w- c:\windows\system32\DBBK\CC2ED6837C8A6ACBADC9123507639F35
2012-04-15 16:56 . 2012-04-15 16:56 9368 ----a-w- c:\windows\system32\DBBK\13913C081700E8BE51287ED92B2A2755
2012-04-15 16:56 . 2012-04-15 16:56 522752 ----a-w- c:\windows\system32\DBBK\33D933951E1DD39BA9A973CA5651BC90
2012-04-15 16:56 . 2012-04-15 16:56 190464 ----a-w- c:\windows\system32\DBBK\547F78746F20901C770E8653B242217C
2012-04-15 16:56 . 2012-04-15 16:56 1030144 ----a-w- c:\windows\system32\DBBK\2572E1F0254E2267E97DE1B15D099EC4
2012-04-15 16:56 . 2012-04-15 16:56 318976 ----a-w- c:\windows\system32\DBBK\255AF34C14E3F5CE45CC515EFB65FC41
2012-04-15 16:56 . 2012-04-15 16:56 196608 ----a-w- c:\windows\system32\DBBK\BA1D6C60D5912DEDCA82A368E42CB967
2012-04-15 16:56 . 2012-04-15 16:56 382824 ----a-w- c:\windows\system32\DBBK\391D21295B6E1D6B8F2388F5544642FE
2012-04-15 16:56 . 2012-04-15 16:56 130560 ----a-w- c:\windows\system32\DBBK\272DDA68347F2A265F4B9A12FDBF01DF
2012-04-15 16:56 . 2012-04-15 16:56 136648 ----a-w- c:\windows\system32\DBBK\E2AA7D19CAEADBAADAE6D1FA504C9569
2012-04-15 16:56 . 2012-04-15 16:56 210432 ----a-w- c:\windows\system32\DBBK\69C85737F4CA5634E7A19B818579D176
2012-04-15 16:56 . 2012-04-15 16:56 66608 ----a-w- c:\windows\system32\DBBK\BAB3E0A9D9E2B38225439DE28A45E4DD
2012-04-15 16:56 . 2012-04-15 16:56 2487608 ----a-w- c:\windows\system32\DBBK\380F19C971D09D3CC7AD6621B007FFAD
2012-04-15 16:56 . 2012-04-15 16:56 8856 ----a-w- c:\windows\system32\DBBK\EA04CB8165C3C8CACE84A440A43BED8A
2012-04-15 16:56 . 2012-04-15 16:56 48488 ----a-w- c:\windows\system32\DBBK\A0F110AB73271DA15E6BC314A8C1512A
2012-04-15 16:56 . 2012-04-15 16:56 49512 ----a-w- c:\windows\system32\DBBK\F047AC8029004B2FB94E2429F54617A9
2012-04-15 16:56 . 2012-04-15 16:56 1348432 ----a-w- c:\windows\system32\DBBK\09DEF3ABB6A196749299359AC5578DD8
2012-04-15 16:56 . 2012-04-15 16:56 65536 ----a-w- c:\windows\system32\DBBK\1FACE05ED7055FE5F2DB85D773BBFE0F
2012-04-15 16:56 . 2012-04-15 16:56 194840 ----a-w- c:\windows\system32\DBBK\17561F8EEECADFF9D3F440276D191020
2012-04-15 16:56 . 2012-04-15 16:56 5632 ----a-w- c:\windows\system32\DBBK\1337EF044854F38B9DFD085E56EBC3A2
2012-04-15 16:56 . 2012-04-15 16:56 90112 ----a-w- c:\windows\system32\DBBK\55C8678F4246A5D3F211E47C358B029A
2012-04-15 16:56 . 2012-04-15 16:56 106496 ----a-w- c:\windows\system32\DBBK\36D9D26C61D77E4223B6D763B28CB29D
2012-04-15 16:56 . 2012-04-15 16:56 249856 ----a-w- c:\windows\system32\DBBK\BF9D64E0ECD591BC1B38BD335156B66F
2012-04-15 16:56 . 2012-04-15 16:56 180736 ----a-w- c:\windows\system32\DBBK\483302397A9A1334FB9D44DD16638898
2012-04-15 16:56 . 2012-04-15 16:56 2626152 ----a-w- c:\windows\system32\DBBK\88C5E5CD8D540979BAE4B6C590AA6374
2012-04-15 16:56 . 2012-04-15 16:56 206336 ----a-w- c:\windows\system32\DBBK\D0481FB85BEEDD30A0884BE327880F80
2012-04-15 16:56 . 2012-04-15 16:56 430080 ----a-w- c:\windows\system32\DBBK\137149B37E9C9DBDE30E4C40867252E4
2012-04-15 16:56 . 2012-04-15 16:56 156520 ----a-w- c:\windows\system32\DBBK\B64F80B64EE7DE4FB68A0FEDA192EE52
2012-04-15 16:56 . 2012-04-15 16:56 1341952 ----a-w- c:\windows\system32\DBBK\CB67C2B94302DC94BC15ED6553A5C1C7
2012-04-15 16:56 . 2012-04-15 16:56 665448 ----a-w- c:\windows\system32\DBBK\8A6B867FC26B9850D446D2D86E5DB071
2012-04-15 16:56 . 2012-04-15 16:56 144384 ----a-w- c:\windows\system32\DBBK\A7DC47DBBE3C0384BA719DC4188AFA7E
2012-04-15 16:56 . 2012-04-15 16:56 47616 ----a-w- c:\windows\system32\DBBK\D32FFCEB504030E4A462D56BD3E5FD07
2012-04-15 16:56 . 2012-04-15 16:56 421736 ----a-w- c:\windows\system32\DBBK\D9D79F547AE2A70C650DFCFC27AEC0F7
2012-04-15 16:56 . 2012-04-15 16:56 843712 ----a-w- c:\windows\system32\DBBK\B8E421C0890356CD4A793D8A346D9096
2012-04-15 16:56 . 2012-04-15 16:56 37296 ----a-w- c:\windows\system32\DBBK\505F022493D471025ADD399A4162208B
2012-04-15 16:56 . 2012-04-15 16:56 19456 ----a-w- c:\windows\system32\DBBK\179BECE8D1A4C488DDB7191FF9BE3FB0
2012-04-15 16:56 . 2012-04-15 16:56 80384 ----a-w- c:\windows\system32\DBBK\284B59D7B56FC76C80E622AB856B1FAB
2012-04-15 16:56 . 2012-04-15 16:56 18944 ----a-w- c:\windows\system32\DBBK\D6692338B985D4A0CA52B828314D897D
2012-04-15 16:56 . 2012-04-15 16:56 69120 ----a-w- c:\windows\system32\DBBK\D7B7159BC8374E87D8C45A30377A3440
2012-04-15 16:56 . 2012-04-15 16:56 59240 ----a-w- c:\windows\system32\DBBK\35AC4B63CBB9FB6B4472913E9948B517
2012-04-15 16:56 . 2012-04-15 16:56 208896 ----a-w- c:\windows\system32\DBBK\45DB72BA472C0CAFE93410FF63255A1D
2012-04-15 16:56 . 2012-04-15 16:56 399312 ----a-w- c:\windows\system32\DBBK\BB6F29A0F374D0BFC5DE0B5C633AA439
2012-04-15 16:56 . 2012-04-15 16:56 419904 ----a-w- c:\windows\system32\DBBK\2CAA26CC32A7EC7027613043942B5795
2012-04-15 16:56 . 2012-04-15 16:56 868352 ----a-w- c:\windows\system32\DBBK\A7283762B2EDF69A1A55A03BC5D30023
2012-04-15 16:56 . 2012-04-15 16:56 1246544 ----a-w- c:\windows\system32\DBBK\5C0E0064D0FA3F540CF64A82AF9EB24A
2012-04-15 16:56 . 2012-04-15 16:56 1318816 ----a-w- c:\windows\system32\DBBK\0D21A7E336BEF56DA958958E570680D9
2012-04-15 16:56 . 2012-04-15 16:56 257536 ----a-w- c:\windows\system32\DBBK\4FB491AC8D46AAF22BA8BC5C73DABEF7
2012-04-15 16:56 . 2012-04-15 16:56 499712 ----a-w- c:\windows\system32\DBBK\561FA2ABB31DFA8FAB762145F81667C2
2012-04-15 16:56 . 2012-04-15 16:56 1060864 ----a-w- c:\windows\system32\DBBK\F35A584E947A5B401FEB0FE01DB4A0D7
2012-04-15 16:56 . 2012-04-15 16:56 1828352 ----a-w- c:\windows\system32\DBBK\6EF5F3F18413C367195F06E503AB86A6
2012-04-15 16:56 . 2012-04-15 16:56 11264 ----a-w- c:\windows\system32\DBBK\77B1471A490B53B24EFE136F09F76550
2012-04-15 16:56 . 2012-04-15 16:56 421888 ----a-w- c:\windows\system32\DBBK\0AEE5668EB59912F32FF245BFA72465F
2012-04-15 16:56 . 2012-04-15 16:56 306176 ----a-w- c:\windows\system32\DBBK\C88752BD115F27169A710324C3212FCD
2012-04-15 16:56 . 2012-04-15 16:56 200704 ----a-w- c:\windows\system32\DBBK\67BB4C28E89A2BE40D9FDBF80A034217
2012-04-15 16:56 . 2012-04-15 16:56 10240 ----a-w- c:\windows\system32\DBBK\55E5B32AE8D1F51A63C82919656FD275
2012-04-15 16:56 . 2012-04-15 16:56 431456 ----a-w- c:\windows\system32\DBBK\B0674AE101707D21F9E30484D6465704
2012-04-15 16:56 . 2012-04-15 16:56 531968 ----a-w- c:\windows\system32\DBBK\198552AEFECA69D646867EC8D792DE95
2012-04-15 16:56 . 2012-04-15 16:56 20992 ----a-w- c:\windows\system32\DBBK\5DF5D8CFD9B9573FA3B2C89D9061A240
2012-04-15 16:56 . 2012-04-15 16:56 448080 ----a-w- c:\windows\system32\DBBK\4E72F2DC0A0B2D48C70F7EE5D3B84B93
2012-04-15 16:56 . 2012-04-15 16:56 52224 ----a-w- c:\windows\system32\DBBK\0B7E85364CB878E2AD531DB7B601A9E5
2012-04-15 16:56 . 2012-04-15 16:56 10800 ----a-w- c:\windows\system32\DBBK\212C58D4ED065EBB1A42B8F2602DD7CB
2012-04-15 16:56 . 2012-04-15 16:56 65024 ----a-w- c:\windows\system32\DBBK\5CF640EDDB1E40A5AB1BB743BCDEC610
2012-04-15 16:56 . 2012-04-15 16:56 143360 ----a-w- c:\windows\system32\DBBK\289604531A3518EDF1959E3FD0A03F48
2012-04-15 16:56 . 2012-04-15 16:56 524288 ----a-w- c:\windows\system32\DBBK\5C880B519CAC424E7C5519092CACA236
2012-04-15 16:56 . 2012-04-15 16:56 75136 ----a-w- c:\windows\system32\DBBK\CE0999910D37F61F2314C998F4F9D1D4
2012-04-15 16:56 . 2012-04-15 16:56 54608 ----a-w- c:\windows\system32\DBBK\5F0D3BD87EA98332B5B1D5B86C40FBF9
2012-04-15 16:56 . 2012-04-15 16:56 249856 ----a-w- c:\windows\system32\DBBK\D9BFD66AFA50D266FF3789269E043BF4
2012-04-15 16:56 . 2012-04-15 16:56 586752 ----a-w- c:\windows\system32\DBBK\F6334C6F8D02B904C2C4C1E6D879243D
2012-04-15 16:56 . 2012-04-15 16:56 653136 ----a-w- c:\windows\system32\DBBK\B3892E6DA8E2C8CE4B0A9D3EB9A185E5
2012-04-15 16:56 . 2012-04-15 16:56 208896 ----a-w- c:\windows\system32\DBBK\66A2A18C100867756EC2811F3AB50315
2012-04-15 16:56 . 2012-04-15 16:56 187392 ----a-w- c:\windows\system32\DBBK\244C6722289F4869068992FD7D8A8832
2012-04-15 16:56 . 2012-04-15 16:56 1363456 ----a-w- c:\windows\system32\DBBK\63B282FB2550893724647A359BA2323F
2012-04-15 16:56 . 2012-04-15 16:56 348160 ----a-w- c:\windows\system32\DBBK\86F1895AE8C5E8B17D99ECE768A70732
2012-04-15 16:56 . 2012-04-15 16:56 41824 ----a-w- c:\windows\system32\DBBK\22870F235504152FE8873986A3D94905
2012-04-15 16:56 . 2012-04-15 16:56 1048576 ----a-w- c:\windows\system32\DBBK\532C5B8EBF42E5805D1A169169815698
2012-04-15 16:56 . 2012-04-15 16:56 118784 ----a-w- c:\windows\system32\DBBK\CB36E41675E4B5E89D5CFBD98B8D97D9
2012-04-15 16:56 . 2012-04-15 16:56 880640 ----a-w- c:\windows\system32\DBBK\E8B7AE1B638BB6623E7A8F0CF9937A76
2012-04-15 16:56 . 2012-04-15 16:56 1862144 ----a-w- c:\windows\system32\DBBK\CD6AD074C0158FFAA0CEEF86675E2E13
2012-04-15 16:56 . 2012-04-15 16:56 154112 ----a-w- c:\windows\system32\DBBK\E7E49ED14A52D839DAD6A7EF0251C16F
2012-04-15 16:56 . 2012-04-15 16:56 906640 ----a-w- c:\windows\system32\DBBK\1FC3E49C3726F60224F2B60BE1DB938A
2012-04-15 16:56 . 2012-04-15 16:56 413696 ----a-w- c:\windows\system32\DBBK\137962BA4B4B60A0E5F12D6C9DFA4C2F
2012-04-15 16:56 . 2012-04-15 16:56 101760 ----a-w- c:\windows\system32\DBBK\804D1B3F83682288619DF795543BF382
2012-04-15 16:56 . 2012-04-15 16:56 712704 ----a-w- c:\windows\system32\DBBK\E9E5692F51D6032A1105C7BE27FC0BAE
2012-04-15 16:56 . 2012-04-15 16:56 1826816 ----a-w- c:\windows\system32\DBBK\C8612E58FB7FCFA5EEA4E39F7B8CBC17
2012-04-15 16:56 . 2012-04-15 16:56 95528 ----a-w- c:\windows\system32\DBBK\09CFCEB5072C9FA0BFE0A551F6D5CE07
2012-04-15 16:56 . 2012-04-15 16:56 103424 ----a-w- c:\windows\system32\DBBK\936F728E04ACCF3F38801CFFCF1E3F40
2012-04-15 16:56 . 2012-04-15 16:56 4608 ----a-w- c:\windows\system32\DBBK\18AB2E5A40064ED5F7791AC5946A90F3
2012-04-15 16:56 . 2012-04-15 16:56 453632 ----a-w- c:\windows\system32\DBBK\0E85C11F8850D524B02181C6E02BA9AE
2012-04-15 16:56 . 2012-04-15 16:56 4911104 ----a-w- c:\windows\system32\DBBK\99C1D6B7C36C891EC099AA8D120185C4
2012-04-15 16:56 . 2012-04-15 16:56 1661440 ----a-w- c:\windows\system32\DBBK\3D57FFBAD3ED16B63DE3879BAB0FB56F
2012-04-15 16:56 . 2012-04-15 16:56 147456 ----a-w- c:\windows\system32\DBBK\98889275AE552574A8CF6E8DD8F65F75
2012-04-15 16:56 . 2012-04-15 16:56 163840 ----a-w- c:\windows\system32\DBBK\4F4703D7281B95C2B07CCE670B52C38C
2012-04-15 16:56 . 2012-04-15 16:56 1029416 ----a-w- c:\windows\system32\DBBK\98888488D0E6DB0256E5E661BCD35EB6
2012-04-15 16:56 . 2012-04-15 16:56 82944 ----a-w- c:\windows\system32\DBBK\672D7C5080ACB003343006405DA2E621
2012-04-15 16:56 . 2012-04-15 16:56 348160 ----a-w- c:\windows\system32\DBBK\7896EFFDEE215C172BE724A64931EF1C
2012-04-15 16:56 . 2012-04-15 16:56 157184 ----a-w- c:\windows\system32\DBBK\26025A46FB3FDB40FF06BBF1834093B5
2012-04-15 16:56 . 2012-04-15 16:56 592384 ----a-w- c:\windows\system32\DBBK\3A16EA01FCFAAB40882DB5BFEE632322
2012-04-15 16:56 . 2012-04-15 16:56 2576384 ----a-w- c:\windows\system32\DBBK\19BC13711AC403FEB830522E4831701B
2012-04-15 16:56 . 2012-04-15 16:56 22016 ----a-w- c:\windows\system32\DBBK\5987EA8A82C53359BCD2C29D6588583E
2012-04-15 16:56 . 2012-04-15 16:56 179712 ----a-w- c:\windows\system32\DBBK\BE247AE996A9FDE007A27B51413A6C79
2012-04-15 16:56 . 2012-04-15 16:56 309760 ----a-w- c:\windows\system32\DBBK\D2958325C1AE1AE37A83334C6229E3BC
2012-04-15 16:56 . 2012-04-15 16:56 478720 ----a-w- c:\windows\system32\DBBK\7E9917D5309A90E7576653BFE39F80D8
2012-04-15 16:56 . 2012-04-15 16:56 1410373 ----a-w- c:\windows\system32\DBBK\E938F820CDA025F9BF22C10BAF6A4796
2012-04-15 16:56 . 2012-04-15 16:56 1536 ----a-w- c:\windows\system32\DBBK\8A9D7D75CB9BEF94058502AFE53CD677
2012-04-15 16:56 . 2012-04-15 16:56 1536 ----a-w- c:\windows\system32\DBBK\A36FB747298925AE58E866A48B6D394D
2012-04-15 16:56 . 2012-04-15 16:56 2341376 ----a-w- c:\windows\system32\DBBK\0CE4D3BD306DA6D1F6F233C403F5B667
2012-04-15 16:56 . 2012-04-15 16:56 15872 ----a-w- c:\windows\system32\DBBK\F1278B3514EA6FA9BC39B20D26139AAC
2012-04-15 16:56 . 2012-04-15 16:56 271360 ----a-w- c:\windows\system32\DBBK\7B162F044B225FE0CF25CACB5F05B07E
2012-04-15 16:56 . 2012-04-15 16:56 302592 ----a-w- c:\windows\system32\DBBK\AD7B9C14083B52BC532FBA5948342B98
2012-04-15 16:56 . 2012-04-15 16:56 31744 ----a-w- c:\windows\system32\DBBK\F0016853FA3F38F55FD868FF74C0359B
2012-04-15 16:56 . 2012-04-15 16:56 16896 ----a-w- c:\windows\system32\DBBK\15E298B5EC5B89C5994A59863969D9FF
2012-04-15 16:56 . 2012-04-15 16:56 85504 ----a-w- c:\windows\system32\DBBK\7FFD52D73352806969D424EF327D10A7
2012-04-15 16:56 . 2012-04-15 16:56 62464 ----a-w- c:\windows\system32\DBBK\8B794AE6D5C7D42092804BC39A2EB8F6
2012-04-15 16:56 . 2012-04-15 16:56 381440 ----a-w- c:\windows\system32\DBBK\590D5C506044FE02FF7643E32FF9BDAC
2012-04-15 16:56 . 2012-04-15 16:56 50688 ----a-w- c:\windows\system32\DBBK\D44741F65A1D71F65814A12CF6E2400A
2012-04-15 16:56 . 2012-04-15 16:56 29696 ----a-w- c:\windows\system32\DBBK\D99621C0735B21DCC8BC4FEF02F379EF
2012-04-15 16:56 . 2012-04-15 16:56 10752 ----a-w- c:\windows\system32\DBBK\F8E882C10AF4C29E378D1E28D4817CB1
2012-04-15 16:56 . 2012-04-15 16:56 56832 ----a-w- c:\windows\system32\DBBK\F148865E4AC4F715E322EA06E6E21D84
2012-04-15 16:56 . 2012-04-15 16:56 360448 ----a-w- c:\windows\system32\DBBK\8C338238C16777A802D6A9211EB2BA50
2012-04-15 16:56 . 2012-04-15 16:56 60928 ----a-w- c:\windows\system32\DBBK\C693E642ACFBDD76433AF6BE3C3EEE6F
2012-04-15 16:56 . 2012-04-15 16:56 1699328 ----a-w- c:\windows\system32\DBBK\5C3F9DBA818CD93379D1A0F215270374
2012-04-15 16:56 . 2012-04-15 16:56 33792 ----a-w- c:\windows\system32\DBBK\C5C867CD7EFAC60D5021223E374DEEC5
2012-04-15 16:56 . 2012-04-15 16:56 547840 ----a-w- c:\windows\system32\DBBK\E98278865E8DABA21CFE5FE4BE34210A
2012-04-15 16:56 . 2012-04-15 16:56 62464 ----a-w- c:\windows\system32\DBBK\8B5EEFEEC1E6D1A72A06C526628AD161
2012-04-15 16:56 . 2012-04-15 16:56 578048 ----a-w- c:\windows\system32\DBBK\7E82616BEE76BF5EAA5B30F681414E21
2012-04-15 16:56 . 2012-04-15 16:56 53488 ----a-w- c:\windows\system32\DBBK\B5596DB70FD2FF1A821ED11B81D7FEA0
2012-04-15 16:56 . 2012-04-15 16:56 863744 ----a-w- c:\windows\system32\DBBK\ECF036299AA554B5E0455262857B39D0
2012-04-15 16:55 . 2012-04-15 16:55 85504 ----a-w- c:\windows\system32\DBBK\AA53356D60AF47EACC85BC617A4F3F66
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\2BC6F6A1992B3A77F5F41432CA6B3B6B
2012-04-15 16:55 . 2012-04-15 16:55 76288 ----a-w- c:\windows\system32\DBBK\46EF9DC96265FD0B423DB72E7C38C2A5
2012-04-15 16:55 . 2012-04-15 16:55 47104 ----a-w- c:\windows\system32\DBBK\FB1959012294D6AD43E5304DF65E3C26
2012-04-15 16:55 . 2012-04-15 16:55 122216 ----a-w- c:\windows\system32\DBBK\683C1D2EB06918D89B2F96C104C420C4
2012-04-15 16:55 . 2012-04-15 16:55 154664 ----a-w- c:\windows\system32\DBBK\01B3ECBDF91BEAD6B2F84E85FA8F7123
2012-04-15 16:55 . 2012-04-15 16:55 209248 ----a-w- c:\windows\system32\DBBK\3A712052E27942A055874A08341D25DD
2012-04-15 16:55 . 2012-04-15 16:55 3203904 ----a-w- c:\windows\system32\DBBK\E99C911045DA1810D082B7D7F0DCD1BD
2012-04-15 16:55 . 2012-04-15 16:55 154952 ----a-w- c:\windows\system32\DBBK\A04A23F0B3F2EBA04081898DB2224D88
2012-04-15 16:55 . 2012-04-15 16:55 187624 ----a-w- c:\windows\system32\DBBK\4170ED034E159A92FED60F0E97973190
2012-04-15 16:55 . 2012-04-15 16:55 160368 ----a-w- c:\windows\system32\DBBK\EAFEC0E5415070293710001F0C350279
2012-04-15 16:55 . 2012-04-15 16:55 112976 ----a-w- c:\windows\system32\DBBK\69B3A329102CA5FDE5B32BC3B02E3E69
2012-04-15 16:55 . 2012-04-15 16:55 464176 ----a-w- c:\windows\system32\DBBK\0C21B495A529F3BF5F2BBFB56D171590
2012-04-15 16:55 . 2012-04-15 16:55 342528 ----a-w- c:\windows\system32\DBBK\B350509B6C9296529BC464C60FEEAEF1
2012-04-15 16:55 . 2012-04-15 16:55 517120 ----a-w- c:\windows\system32\DBBK\3CDE2911462FEC80064A409C07710C06
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\A4CC7227A452C4909F9499D91B184364
2012-04-15 16:55 . 2012-04-15 16:55 143568 ----a-w- c:\windows\system32\DBBK\FE9859CDBFEA1564D99CD1215C9CB2FA
2012-04-15 16:55 . 2012-04-15 16:55 106784 ----a-w- c:\windows\system32\DBBK\585FDC3A786E1702B4B570446B889FC8
2012-04-15 16:55 . 2012-04-15 16:55 410616 ----a-w- c:\windows\system32\DBBK\660FFD19C45DEBFD06B47AFFB13DC460
2012-04-15 16:55 . 2012-04-15 16:55 74600 ----a-w- c:\windows\system32\DBBK\0826C771AF4CFFD8B34EB7E3BDA769E8
2012-04-15 16:55 . 2012-04-15 16:55 66896 ----a-w- c:\windows\system32\DBBK\EDF010167B5C2315C7E8BB1A3D261711
2012-04-15 16:55 . 2012-04-15 16:55 160608 ----a-w- c:\windows\system32\DBBK\3F17534B8867854113DF2B45FFF3ACF5
2012-04-15 16:55 . 2012-04-15 16:55 300544 ----a-w- c:\windows\system32\DBBK\371E3B05894549113D07CD3081ED55EF
2012-04-15 16:55 . 2012-04-15 16:55 85504 ----a-w- c:\windows\system32\DBBK\5610B0425518D185331CB8E968D060E6
2012-04-15 16:55 . 2012-04-15 16:55 47616 ----a-w- c:\windows\system32\DBBK\776AE0564F8B1C282E331FD95A1BDC5F
2012-04-15 16:55 . 2012-04-15 16:55 266240 ----a-w- c:\windows\system32\DBBK\5AE88135C6A86FCD67BA16AFBB1C8389
2012-04-15 16:55 . 2012-04-15 16:55 780288 ----a-w- c:\windows\system32\DBBK\585EB475E7AF55C9065256E8FFB751A1
2012-04-15 16:55 . 2012-04-15 16:55 54000 ----a-w- c:\windows\system32\DBBK\75B8AE4CE4E9B0741FD165867FBE4D68
2012-04-15 16:55 . 2012-04-15 16:55 385624 ----a-w- c:\windows\system32\DBBK\0A9EB2D3880762459222C1DFDC29E145
2012-04-15 16:55 . 2012-04-15 16:55 77184 ----a-w- c:\windows\system32\DBBK\EA014DB024A379CACD2CB12FDFABD476
2012-04-15 16:55 . 2012-04-15 16:55 29184 ----a-w- c:\windows\system32\DBBK\C5B0324DB461559ADD070E632A6919FA
2012-04-15 16:55 . 2012-04-15 16:55 312560 ----a-w- c:\windows\system32\DBBK\F0505EF0AA530049FDDBA75B7EE51DEE
2012-04-15 16:55 . 2012-04-15 16:55 84888 ----a-w- c:\windows\system32\DBBK\377FA5340455BD9BDB4FFC7E07839FA3
2012-04-15 16:55 . 2012-04-15 16:55 90112 ----a-w- c:\windows\system32\DBBK\E3E811471DE781900FF21C1FD84E941E
2012-04-15 16:55 . 2012-04-15 16:55 606208 ----a-w- c:\windows\system32\DBBK\CFC7D8289D2B5F3CF8D16E2DB7F93D4A
2012-04-15 16:55 . 2012-04-15 16:55 131072 ----a-w- c:\windows\system32\DBBK\701C9EB15E1E23D22F7C7184C0506673
2012-04-15 16:55 . 2012-04-15 16:55 39032 ----a-w- c:\windows\system32\DBBK\8510E39BEB785EB4ABBD84005860DF81
2012-04-15 16:55 . 2012-04-15 16:55 771584 ----a-w- c:\windows\system32\DBBK\A2C3F8E5AC37DBEE96C563606F710FE3
2012-04-15 16:55 . 2012-04-15 16:55 2560 ----a-w- c:\windows\system32\DBBK\5C99F92B3C4CFCDF928258C2E838D000
2012-04-15 16:55 . 2012-04-15 16:55 166288 ----a-w- c:\windows\system32\DBBK\16767B4CB7AE8F388E091717DB34FF6C
2012-04-15 16:55 . 2012-04-15 16:55 363008 ----a-w- c:\windows\system32\DBBK\704314FD398C81D5F342CAA5DF7B7F21
2012-04-15 16:55 . 2012-04-15 16:55 168960 ----a-w- c:\windows\system32\DBBK\F62E510B6AD4C21EB9FE8668ED251826
2012-04-15 16:55 . 2012-04-15 16:55 23872 ----a-w- c:\windows\system32\DBBK\A0617B5753E31126AD29C03154F4F329
2012-04-15 16:55 . 2012-04-15 16:55 28672 ----a-w- c:\windows\system32\DBBK\E74AEDF39F5C7FA9F6C1FDCCBD7C648D
2012-04-15 16:55 . 2012-04-15 16:55 20480 ----a-w- c:\windows\system32\DBBK\138AB06ADBBF300AA804D7974A5AEC82
2012-04-15 16:55 . 2012-04-15 16:55 266752 ----a-w- c:\windows\system32\DBBK\833FBB672460EFCE8011D262175FAD33
2012-04-15 16:55 . 2012-04-15 16:55 98304 ----a-w- c:\windows\system32\DBBK\8530B35284AA20D9C614CCB3725CEF37
2012-04-15 16:55 . 2012-04-15 16:55 288768 ----a-w- c:\windows\system32\DBBK\55187FD710E27D5095D10A472C8BAF1C
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\332D341D92B933600D41953B08360DFB
2012-04-15 16:55 . 2012-04-15 16:55 77312 ----a-w- c:\windows\system32\DBBK\4792C0378DB99A9BC2AE2DE6CFFF0C3A
2012-04-15 16:55 . 2012-04-15 16:55 126976 ----a-w- c:\windows\system32\DBBK\22690DFFC7F2A18279A7A0489AA02BAC
2012-04-15 16:55 . 2012-04-15 16:55 128360 ----a-w- c:\windows\system32\DBBK\2E7315B147E524E055026E6634B14EA6
2012-04-15 16:55 . 2012-04-15 16:55 28672 ----a-w- c:\windows\system32\DBBK\254CFBF1DAA777825B139CFA1A4C8B7D
2012-04-15 16:55 . 2012-04-15 16:55 25600 ----a-w- c:\windows\system32\DBBK\387ECAF254AB992EEA44091194551A4B
2012-04-15 16:55 . 2012-04-15 16:55 431456 ----a-w- c:\windows\system32\DBBK\DA6903958CBDC091FFCBBCA70CCFF34C
2012-04-15 16:55 . 2012-04-15 16:55 129632 ----a-w- c:\windows\system32\DBBK\C5AC715B65B01788ABC22D10749DDDD8
2012-04-15 16:55 . 2012-04-15 16:55 1093120 ----a-w- c:\windows\system32\DBBK\E2C48CD0132D4D1DC7D0DF9A6BEF686A
2012-04-15 16:55 . 2012-04-15 16:55 1159168 ----a-w- c:\windows\system32\DBBK\36650D618CA34C9D357DFD3D89B2C56F
2012-04-15 16:55 . 2012-04-15 16:55 83312 ----a-w- c:\windows\system32\DBBK\E47F35A87FF0DA38DEF37A0EB0C2D2DF
2012-04-15 16:55 . 2012-04-15 16:55 35328 ----a-w- c:\windows\system32\DBBK\CCA24162E055C3714CE5A88B100C64ED
2012-04-15 16:55 . 2012-04-15 16:55 12800 ----a-w- c:\windows\system32\DBBK\B087F2B901570F6EF62F6C2E01A480F3
2012-04-15 16:55 . 2012-04-15 16:55 463360 ----a-w- c:\windows\system32\DBBK\E1FB3706030FB4578A0D72C2FC3689E4
2012-04-15 16:55 . 2012-04-15 16:55 179040 ----a-w- c:\windows\system32\DBBK\0D77436DA61BE7338BC600F0D8773331
2012-04-15 16:55 . 2012-04-15 16:55 66928 ----a-w- c:\windows\system32\DBBK\E1292C1ED4DEB17B8A9B586D22CB2061
2012-04-15 16:55 . 2012-04-15 16:55 162816 ----a-w- c:\windows\system32\DBBK\D887C9FD02AC9FA880F6E5027A43E118
2012-04-15 16:55 . 2012-04-15 16:55 35032 ----a-w- c:\windows\system32\DBBK\7B193BA3F0245D5867B71AD1CF631474
2012-04-15 16:55 . 2012-04-15 16:55 86880 ----a-w- c:\windows\system32\DBBK\D89083C4EB02DACA8F944B0E05E57F9D
2012-04-15 16:55 . 2012-04-15 16:55 238944 ----a-w- c:\windows\system32\DBBK\86EBD8B1F23E743AAD21F4D5B4D40985
2012-04-15 16:55 . 2012-04-15 16:55 158856 ----a-w- c:\windows\system32\DBBK\6128E98EAAED364ED1A32708D2FD22CB
2012-04-15 16:55 . 2012-04-15 16:55 20480 ----a-w- c:\windows\system32\DBBK\90A3935D05B494A5A39D37E71F09A677
2012-04-15 16:55 . 2012-04-15 16:55 136816 ----a-w- c:\windows\system32\DBBK\6DBF2AC2BDAFF355995AB25ECCC4CFE1
2012-04-15 16:55 . 2012-04-15 16:55 586752 ----a-w- c:\windows\system32\DBBK\9E0104BA49F4E6973749A02BF41344ED
2012-04-15 16:55 . 2012-04-15 16:55 39936 ----a-w- c:\windows\system32\DBBK\28E2231BD34A39C854BDF3923AB2FF86
2012-04-15 16:55 . 2012-04-15 16:55 152064 ----a-w- c:\windows\system32\DBBK\75EA62927355189876081EF863064982
2012-04-15 16:55 . 2012-04-15 16:55 114688 ----a-w- c:\windows\system32\DBBK\DEB57A0AA7446A6E8A606D9A09F81157
2012-04-15 16:55 . 2012-04-15 16:55 242688 ----a-w- c:\windows\system32\DBBK\912084381D30D8B89EC4E293053F4710
2012-04-15 16:55 . 2012-04-15 16:55 7168 ----a-w- c:\windows\system32\DBBK\539C49CEBB3C50957AC8A09D95ECD880
2012-04-15 16:55 . 2012-04-15 16:55 12433408 ----a-w- c:\windows\system32\DBBK\673C39EC95B3623F198E8EED3F97F80C
2012-04-15 16:55 . 2012-04-15 16:55 1590784 ----a-w- c:\windows\system32\DBBK\9368BAC6D09B20CA367B13C5CE02730E
2012-04-15 16:55 . 2012-04-15 16:55 5453312 ----a-w- c:\windows\system32\DBBK\DCC1AC29AA8D2CE725CC86A626CEC360
2012-04-15 16:55 . 2012-04-15 16:55 971264 ----a-w- c:\windows\system32\DBBK\95E8D9C0E865EAD5A440C91D933B7D60
2012-04-15 16:55 . 2012-04-15 16:55 6189056 ----a-w- c:\windows\system32\DBBK\DC1F2221D367A83A79B4BE4527AEE5D1
2012-04-15 16:55 . 2012-04-15 16:55 696320 ----a-w- c:\windows\system32\DBBK\A357B0DE9E4BDCC16E8573EBA9A33729
2012-04-15 16:55 . 2012-04-15 16:55 363856 ----a-w- c:\windows\system32\DBBK\59D16FD61802739988728790BF1232B3
2012-04-15 16:55 . 2012-04-15 16:55 212992 ----a-w- c:\windows\system32\DBBK\960E6974343D0903DE3B5607E200C94C
2012-04-15 16:55 . 2012-04-15 16:55 7967232 ----a-w- c:\windows\system32\DBBK\3D725C257EA3952158FFFBB5874896DA
2012-04-15 16:55 . 2012-04-15 16:55 10752 ----a-w- c:\windows\system32\DBBK\6F8E3B7B70E1BBA871212940C1FBDF60
2012-04-15 16:55 . 2012-04-15 16:55 103424 ----a-w- c:\windows\system32\DBBK\04D16553664796613FE98D441A0C35D7
2012-04-15 16:55 . 2012-04-15 16:55 473600 ----a-w- c:\windows\system32\DBBK\102CF6879887BBE846A00C459E6D4ABC
2012-04-15 16:55 . 2012-04-15 16:55 74064 ----a-w- c:\windows\system32\DBBK\6E9E439517D89EDC9A6CB1E94489620A
2012-04-15 16:55 . 2012-04-15 16:55 11490304 ----a-w- c:\windows\system32\DBBK\638F45C6397C911828D2A478729B23AA
2012-04-15 16:55 . 2012-04-15 16:55 267952 ----a-w- c:\windows\system32\DBBK\62FC30FBEC3139DDB0A60FA925EF4B30
2012-04-15 16:55 . 2012-04-15 16:55 245280 ----a-w- c:\windows\system32\DBBK\38A10B30D2B7AB87F8B72C982326EED6
2012-04-15 16:55 . 2012-04-15 16:55 5924176 ----a-w- c:\windows\system32\DBBK\96076B8FCDFF3C6DB4CCFBF7FE3A9B28
2012-04-15 16:55 . 2012-04-15 16:55 413520 ----a-w- c:\windows\system32\DBBK\F5DF6846F30E9F54EA60CCAEB3FB2055
2012-04-15 16:55 . 2012-04-15 16:55 297808 ----a-w- c:\windows\system32\DBBK\D83947A58613E9091B4C9CC0F1546A8D
2012-04-15 16:55 . 2012-04-15 16:55 228480 ----a-w- c:\windows\system32\DBBK\B0ACA46E05EB819409F9965344800724
2012-04-15 16:55 . 2012-04-15 16:55 1236992 ----a-w- c:\windows\system32\DBBK\4205CA4CD43E725DB9FF02B0A588A8C6
2012-04-15 16:55 . 2012-04-15 16:55 59168 ----a-w- c:\windows\system32\DBBK\92F9CFD755E97D684D3FAB48A037623C
2012-04-15 16:55 . 2012-04-15 16:55 20032 ----a-w- c:\windows\system32\DBBK\A85403902F18FF6D34407D52A89F42FD
2012-04-15 16:55 . 2012-04-15 16:55 44544 ----a-w- c:\windows\system32\DBBK\51138BEEA3E2C21EC44D0932C71762A8
2012-04-15 16:55 . 2012-04-15 16:55 349080 ----a-w- c:\windows\system32\DBBK\4868CCBBF0FA9B0293B858C5FF8B3C02
2012-04-15 16:55 . 2012-04-15 16:55 442880 ----a-w- c:\windows\system32\DBBK\03F3B770DFBED6131653CEDA8CA780F0
2012-04-15 16:55 . 2012-04-15 16:55 9728 ----a-w- c:\windows\system32\DBBK\523CF74A52C9A1762DA8B83AEE734498
2012-04-15 16:55 . 2012-04-15 16:55 34816 ----a-w- c:\windows\system32\DBBK\8CD1DEE212E52B9C22E66DBA44991D32
2012-04-15 16:55 . 2012-04-15 16:55 314880 ----a-w- c:\windows\system32\DBBK\FB19FC5951A88F3C523E35C2C98D23C0
2012-04-15 16:55 . 2012-04-15 16:55 40960 ----a-w- c:\windows\system32\DBBK\84799328D87B3091A3BDD251E1AD31F9
2012-04-15 16:55 . 2012-04-15 16:55 2560 ----a-w- c:\windows\system32\DBBK\40CAEEE0EAF1B8569F7C8DF6420F2CB9
2012-04-15 16:55 . 2012-04-15 16:55 159608 ----a-w- c:\windows\system32\DBBK\9F09CAA8DC12FC1626F82A5C212F6F9C
2012-04-15 16:55 . 2012-04-15 16:55 322120 ----a-w- c:\windows\system32\DBBK\11F714F85530A2BD134074DC30E99FCA
2012-04-15 16:55 . 2012-04-15 16:55 925184 ----a-w- c:\windows\system32\DBBK\C4096CA42199428B3D63DC206C197F0E
2012-04-15 16:55 . 2012-04-15 16:55 34816 ----a-w- c:\windows\system32\DBBK\465BEA35F7ED4A4A57686DEA7EA10F47
2012-04-15 16:55 . 2012-04-15 16:55 126464 ----a-w- c:\windows\system32\DBBK\D27DDE7E0444C7F1819F958469EB7D93
2012-04-15 16:55 . 2012-04-15 16:55 1856464 ----a-w- c:\windows\system32\DBBK\1D8F0323EE013643A9B613269B6CA5F1
2012-04-15 16:55 . 2012-04-15 16:55 492032 ----a-w- c:\windows\system32\DBBK\536E06B5A05C6E39C8748E3941FB083D
2012-04-15 16:55 . 2012-04-15 16:55 106496 ----a-w- c:\windows\system32\DBBK\067239789BD7591F5EAA24DAB63D261A
2012-04-15 16:55 . 2012-04-15 16:55 53248 ----a-w- c:\windows\system32\DBBK\7CA836648E40709797D9F3BFF56679EE
2012-04-15 16:55 . 2012-04-15 16:55 61440 ----a-w- c:\windows\system32\DBBK\0CC7DA54F5FED71160C3FC13E9F972FC
2012-04-15 16:55 . 2012-04-15 16:55 57344 ----a-w- c:\windows\system32\DBBK\CDD90FA1AF84F483C37CA60FB56DE5D2
2012-04-15 16:55 . 2012-04-15 16:55 28552 ----a-w- c:\windows\system32\DBBK\EA8647A21BCB56C5F15712D4B7407501
2012-04-15 16:55 . 2012-04-15 16:55 13312 ----a-w- c:\windows\system32\DBBK\659E04E74135927CA6D7BC5E75C84417
2012-04-15 16:55 . 2012-04-15 16:55 13824 ----a-w- c:\windows\system32\DBBK\81F08948A0F1475894C99D4D19A158A8
2012-04-15 16:55 . 2012-04-15 16:55 30208 ----a-w- c:\windows\system32\DBBK\CD72C6406BA561BED6D42CB145E55307
2012-04-15 16:55 . 2012-04-15 16:55 167424 ----a-w- c:\windows\system32\DBBK\89D90579E5FB1469CB0464F6512E42B7
2012-04-15 16:55 . 2012-04-15 16:55 41984 ----a-w- c:\windows\system32\DBBK\F34CFADA6C48DAA41B996D24C7D8D3CA
2012-04-15 16:55 . 2012-04-15 16:55 214904 ----a-w- c:\windows\system32\DBBK\7E6932EEDA54C8EAF7DC6C2225261B85
2012-04-15 16:55 . 2012-04-15 16:55 192000 ----a-w- c:\windows\system32\DBBK\4F2659160AFCCA990305816946F69407
2012-04-15 16:55 . 2012-04-15 16:55 782336 ----a-w- c:\windows\system32\DBBK\DB846EECA70EE9D2E2FF31147C57B0F4
2012-04-15 16:55 . 2012-04-15 16:55 917504 ----a-w- c:\windows\system32\DBBK\73F6C5223F7E9B5780DD4A6C30FCF569
2012-04-15 16:55 . 2012-04-15 16:55 505856 ----a-w- c:\windows\system32\DBBK\544EFF88AC6C85DF5A4D6F18DFE08CFC
2012-04-15 16:55 . 2012-04-15 16:55 28160 ----a-w- c:\windows\system32\DBBK\7DBE8CBFE79EFBDEB98C9FB08D3A9A5B
2012-04-15 16:55 . 2012-04-15 16:55 1128448 ----a-w- c:\windows\system32\DBBK\13337A3FB17F2242487FD45488ED0485
2012-04-15 16:55 . 2012-04-15 16:55 56320 ----a-w- c:\windows\system32\DBBK\B940289C83121046BD6A60ACC6028593
2012-04-15 16:55 . 2012-04-15 16:55 144384 ----a-w- c:\windows\system32\DBBK\8EC04CA86F1D68DA9E11952EB85973D6
2012-04-15 16:55 . 2012-04-15 16:55 136192 ----a-w- c:\windows\system32\DBBK\A585BEBF7D054BD9618EDA0922D5484A
2012-04-15 16:55 . 2012-04-15 16:55 57344 ----a-w- c:\windows\system32\DBBK\28A09777D2D952122567A8A82F1A2C7B
2012-04-15 16:55 . 2012-04-15 16:55 772608 ----a-w- c:\windows\system32\DBBK\D39DA70FEA6BD713682F70635587DA9E
2012-04-15 16:55 . 2012-04-15 16:55 158720 ----a-w- c:\windows\system32\DBBK\D4191EFAB91E00FC09257AA5EBAF503B
2012-04-15 16:55 . 2012-04-15 16:55 86016 ----a-w- c:\windows\system32\DBBK\C3E53C4C5C1B3C8D38956EDB4E5A5F0F
2012-04-15 16:55 . 2012-04-15 16:55 1101824 ----a-w- c:\windows\system32\DBBK\1F5AFD468EB5E09E9ED75A087529EAB5
2012-04-15 16:55 . 2012-04-15 16:55 81408 ----a-w- c:\windows\system32\DBBK\B010CF886420EE29C2C276646721D255
2012-04-15 16:55 . 2012-04-15 16:55 53248 ----a-w- c:\windows\system32\DBBK\C328B03E5DC2B83A37B62971018BFFD7
2012-04-15 16:55 . 2012-04-15 16:55 266240 ----a-w- c:\windows\system32\DBBK\09AB39B3164C3E3AB48DC81E914203D3
2012-04-15 16:55 . 2012-04-15 16:55 1242472 ----a-w- c:\windows\system32\DBBK\73862FF693168369A90F046E7F227B83
2012-04-15 16:55 . 2012-04-15 16:55 456552 ----a-w- c:\windows\system32\DBBK\8BA9851E671E8B5E49E303748FFD530C
2012-04-15 16:55 . 2012-04-15 16:55 2463592 ----a-w- c:\windows\system32\DBBK\FC33CBBB9CADCEC307DA010FE763D04C
2012-04-15 16:55 . 2012-04-15 16:55 87912 ----a-w- c:\windows\system32\DBBK\2E14406E05789F91C9282AE7CFCA3A07
2012-04-15 16:55 . 2012-04-15 16:55 616296 ----a-w- c:\windows\system32\DBBK\2C478E667CE27B2B7142F756CF569A9A
2012-04-15 16:55 . 2012-04-15 16:55 40960 ----a-w- c:\windows\system32\DBBK\596E452B5152EC9AFE8153D296459D2B
2012-04-15 16:55 . 2012-04-15 16:55 390504 ----a-w- c:\windows\system32\DBBK\DB5BEA73EDAF19AC68B2C0FAD0F92B1A
2012-04-15 16:55 . 2012-04-15 16:55 73064 ----a-w- c:\windows\system32\DBBK\062373995EAE5F0EAC9EAA9192136BFB
2012-04-15 16:55 . 2012-04-15 16:55 210792 ----a-w- c:\windows\system32\DBBK\F8ECB748B53A010464F7A63154D75F56
2012-04-15 16:55 . 2012-04-15 16:55 75624 ----a-w- c:\windows\system32\DBBK\BA02F01BE7ED88E8974C798ACB3075F5
2012-04-15 16:55 . 2012-04-15 16:55 16303976 ----a-w- c:\windows\system32\DBBK\149D74E1128A86DC9CFB2851FBEA11EB
2012-04-15 16:55 . 2012-04-15 16:55 923496 ----a-w- c:\windows\system32\DBBK\F4BC62990E7E5C29799A895B80FC3177
2012-04-15 16:55 . 2012-04-15 16:55 239616 ----a-w- c:\windows\system32\DBBK\2100560AF3F7F2948F2676E44DFB4ECF
2012-04-15 16:55 . 2012-04-15 16:55 351232 ----a-w- c:\windows\system32\DBBK\CA9F7888B524D8100B977C81F44C3234
2012-04-15 16:55 . 2012-04-15 16:55 3825664 ----a-w- c:\windows\system32\DBBK\11680933909D518419EC4A4016B9E912
2012-04-15 16:55 . 2012-04-15 16:55 2872120 ----a-w- c:\windows\system32\DBBK\DE4428C4D6B468BA4CC5E47D027C3FD7
2012-04-15 16:55 . 2012-04-15 16:55 189952 ----a-w- c:\windows\system32\DBBK\846D0E4DB261CFAF363902E41498E961
2012-04-15 16:55 . 2012-04-15 16:55 2999296 ----a-w- c:\windows\system32\DBBK\34B9AE2D56C65385AB334F3E3F4F1DF2
2012-04-15 16:55 . 2012-04-15 16:55 1493504 ----a-w- c:\windows\system32\DBBK\E2A17BCC08D92F42E08AF6BA2F93ABA7
2012-04-15 16:55 . 2012-04-15 16:55 489984 ----a-w- c:\windows\system32\DBBK\F75BFDACAF4AD540444FFC31B49BDA99
2012-04-15 16:55 . 2012-04-15 16:55 2616320 ----a-w- c:\windows\system32\DBBK\8B88EBBB05A0E56B7DCC708498C02B3E
2012-04-15 16:55 . 2012-04-15 16:55 508416 ----a-w- c:\windows\system32\DBBK\0411B7958C524BB2E91EE1B3035FE321
2012-04-15 16:55 . 2012-04-15 16:55 185344 ----a-w- c:\windows\system32\DBBK\A8EB761DE499242BECF153B2B34F020E
2012-04-15 16:55 . 2012-04-15 16:55 34304 ----a-w- c:\windows\system32\DBBK\923CDD30092DB73EC4A0EBCDDD16C686
2012-04-15 16:55 . 2012-04-15 16:55 94208 ----a-w- c:\windows\system32\DBBK\61FB95B6F2A8715282E05C92E4527C5A
2012-04-15 16:55 . 2012-04-15 16:55 131072 ----a-w- c:\windows\system32\DBBK\2CDEF39641BC63A337B6EA13E61B32C6
2012-04-15 16:55 . 2012-04-15 16:55 219136 ----a-w- c:\windows\system32\DBBK\9C36A3CA80F9B204C670336D344F5DF8
2012-04-15 16:55 . 2012-04-15 16:55 172032 ----a-w- c:\windows\system32\DBBK\C385D4D4EC16E637AA4D2D18A06E80C9
2012-04-15 16:55 . 2012-04-15 16:55 161792 ----a-w- c:\windows\system32\DBBK\2DE90400A63818FA38C4C5C9ADB166BF
2012-04-15 16:55 . 2012-04-15 16:55 94208 ----a-w- c:\windows\system32\DBBK\DE955D6A5097DC306AF8C9F67E9A5F2D
2012-04-15 16:55 . 2012-04-15 16:55 167936 ----a-w- c:\windows\system32\DBBK\E662722D5C50AD1C0E201499E405FD73
2012-04-15 16:55 . 2012-04-15 16:55 1371136 ----a-w- c:\windows\system32\DBBK\497E59D9F01C6F247E72222A61835119
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\1220595CABA75AB91A6B3FA3B89483CC
2012-04-15 16:55 . 2012-04-15 16:55 51712 ----a-w- c:\windows\system32\DBBK\6357E2B68753A1F5CF4A68A25C4FD14A
2012-04-15 16:55 . 2012-04-15 16:55 148992 ----a-w- c:\windows\system32\DBBK\B390C1D825C7687493BEDE237C6C2F25
2012-04-15 16:55 . 2012-04-15 16:55 17408 ----a-w- c:\windows\system32\DBBK\AFA16A7CF18CB5A3EB72FF1F3F6C4885
2012-04-15 16:55 . 2012-04-15 16:55 39424 ----a-w- c:\windows\system32\DBBK\126F8331BD023178C7F0EF2F5EDE16B3
2012-04-15 16:55 . 2012-04-15 16:55 102400 ----a-w- c:\windows\system32\DBBK\00E74FD4E086C449E7EA3C89C9F25435
2012-04-15 16:55 . 2012-04-15 16:55 155648 ----a-w- c:\windows\system32\DBBK\F2E08C274BE0C6A15BD7AD88BBB0D3FE
2012-04-15 16:55 . 2012-04-15 16:55 167936 ----a-w- c:\windows\system32\DBBK\56CEED370508F69A1BA04939BD1BADDA
2012-04-15 16:55 . 2012-04-15 16:55 97280 ----a-w- c:\windows\system32\DBBK\754AFC50022C95DA7C86B7020DB78136
2012-04-15 16:55 . 2012-04-15 16:55 19968 ----a-w- c:\windows\system32\DBBK\B43687C534A49700BF4B3C9898763752
2012-04-15 16:55 . 2012-04-15 16:55 21099 ----a-w- c:\windows\system32\DBBK\381915766C2A5E47A7DB95423CE09A16
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\7319102526BD11B45FD66335CF90CA12
2012-04-15 16:55 . 2012-04-15 16:55 32768 ----a-w- c:\windows\system32\DBBK\03CF941D031F30272D3063E5A4D686F5
2012-04-15 16:55 . 2012-04-15 16:55 768512 ----a-w- c:\windows\system32\DBBK\12C4E95F468A5FD3FBB8166E27ED4D53
2012-04-15 16:55 . 2012-04-15 16:55 92672 ----a-w- c:\windows\system32\DBBK\505BF4D1CADEB8D4F8BCD08D944DE25D
2012-04-15 16:55 . 2012-04-15 16:55 45056 ----a-w- c:\windows\system32\DBBK\629181C26A78EB66B0B4E774E5AC2882
2012-04-15 16:55 . 2012-04-15 16:55 26624 ----a-w- c:\windows\system32\DBBK\61AC3EFDFACFDD3F0F11DD4FD4044223
2012-04-15 16:55 . 2012-04-15 16:55 77312 ----a-w- c:\windows\system32\DBBK\F58516E2DC0D963EF70D6BFC21FD82C4
2012-04-15 16:55 . 2012-04-15 16:55 29184 ----a-w- c:\windows\system32\DBBK\3CA2BB895E204478C7A4C9BAF70970CE
2012-04-15 16:55 . 2012-04-15 16:55 1292136 ----a-w- c:\windows\system32\DBBK\5A963C340DE1A01BA6E24945CE05D16A
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\7FA8BA5A780E4757964AC9D4238302B9
2012-04-15 16:55 . 2012-04-15 16:55 45056 ----a-w- c:\windows\system32\DBBK\0B31464B7B2D616BD5F7036673588EC1
2012-04-15 16:55 . 2012-04-15 16:55 7168 ----a-w- c:\windows\system32\DBBK\A63DC5C2EA944E6657203E0C8EDEAF61
2012-04-15 16:55 . 2012-04-15 16:55 43368 ----a-w- c:\windows\system32\DBBK\3BDE52411DF2FE4252C9289F51CB0F7E
2012-04-15 16:55 . 2012-04-15 16:55 124776 ----a-w- c:\windows\system32\DBBK\32D78DCABFB942275E01363D5232C77D
2012-04-15 16:55 . 2012-04-15 16:55 15360 ----a-w- c:\windows\system32\DBBK\DF13A51A5C591887D2EC6AE64CEED0FA
2012-04-15 16:55 . 2012-04-15 16:55 53024 ----a-w- c:\windows\system32\DBBK\C9680F06E51DB8B9A0772C20F3E10DB6
2012-04-15 16:55 . 2012-04-15 16:55 1075048 ----a-w- c:\windows\system32\DBBK\67B539D844F804EBAC7A1E3828FDE709
2012-04-15 16:55 . 2012-04-15 16:55 206208 ----a-w- c:\windows\system32\DBBK\A78F8B9BDD0027D17FB5BA5179944122
2012-04-15 16:55 . 2012-04-15 16:55 38760 ----a-w- c:\windows\system32\DBBK\2DEDC3AFE3C49B5DAE717D0A9BEBF298
2012-04-15 16:55 . 2012-04-15 16:55 16672 ----a-w- c:\windows\system32\DBBK\6C63DC384A15E2AFD4A860031EF40267
2012-04-15 16:55 . 2012-04-15 16:55 55144 ----a-w- c:\windows\system32\DBBK\7EF47644B74EBE721CC32211D3C35E76
2012-04-15 16:55 . 2012-04-15 16:55 106496 ----a-w- c:\windows\system32\DBBK\15B9CC21717F3CD0F660AF315521E3C0
2012-04-15 16:55 . 2012-04-15 16:55 87424 ----a-w- c:\windows\system32\DBBK\A9FFC3CDCD2785D11B9460509B056413
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\C6B2AD321E6C12E12898D1CAE587D0D5
2012-04-15 16:55 . 2012-04-15 16:55 124288 ----a-w- c:\windows\system32\DBBK\4B8FF89DCC1AB4ACA9B6B2A0B3814131
2012-04-15 16:55 . 2012-04-15 16:55 192000 ----a-w- c:\windows\system32\DBBK\BA32509D9B340162327B341013DE6522
2012-04-15 16:55 . 2012-04-15 16:55 1267072 ----a-w- c:\windows\system32\DBBK\386914F677F489C8AFCB1ED53092968B
2012-04-15 16:55 . 2012-04-15 16:55 64000 ----a-w- c:\windows\system32\DBBK\B9A8CBCFCD3EC9D2EA4740AF347BF108
2012-04-15 16:55 . 2012-04-15 16:55 562176 ----a-w- c:\windows\system32\DBBK\368B2BEE3F88BFB883D2C74A258DE6F6
2012-04-15 16:55 . 2012-04-15 16:55 46640 ----a-w- c:\windows\system32\DBBK\85180CF88C5EBAD73B452A43A004CA51
2012-04-15 16:55 . 2012-04-15 16:55 11776 ----a-w- c:\windows\system32\DBBK\ED6EE83D61EBC683C2CD8E899EA6FEBE
2012-04-15 16:55 . 2012-04-15 16:55 121704 ----a-w- c:\windows\system32\DBBK\40947436A70E0034E41123DF5A0A7702
2012-04-15 16:55 . 2012-04-15 16:55 79360 ----a-w- c:\windows\system32\DBBK\2EA877ED5DD9713C5AC74E8EA7348D14
2012-04-15 16:55 . 2012-04-15 16:55 71168 ----a-w- c:\windows\system32\DBBK\2AF094C822BD6094F14A8E85FB51D52A
2012-04-15 16:55 . 2012-04-15 16:55 230912 ----a-w- c:\windows\system32\DBBK\AE9898D5600A232CD8AE3298692162E5
2012-04-15 16:55 . 2012-04-15 16:55 9728 ----a-w- c:\windows\system32\DBBK\89E783711AF91AF09E1EF30EF3107446
2012-04-15 16:55 . 2012-04-15 16:55 2048 ----a-w- c:\windows\system32\DBBK\E4B72E71EC37A59FE574A998A0C0EB9B
2012-04-15 16:55 . 2012-04-15 16:55 102400 ----a-w- c:\windows\system32\DBBK\6E11F33D14D020F58D5E02E4D67DFA19
2012-04-15 16:55 . 2012-04-15 16:55 168960 ----a-w- c:\windows\system32\DBBK\D64AF876D53ECA3668BB97B51B4E70AB
2012-04-15 16:55 . 2012-04-15 16:55 311808 ----a-w- c:\windows\system32\DBBK\E4C2764065D66EA1D2D3EBC28FE99C46
2012-04-15 16:55 . 2012-04-15 16:55 84480 ----a-w- c:\windows\system32\DBBK\58405E4F68BA8E4057C6E914F326ABA2
2012-04-15 16:55 . 2012-04-15 16:55 310272 ----a-w- c:\windows\system32\DBBK\03F0545BD8D4C77FA0AE1CEEDFCC71AB
2012-04-15 16:55 . 2012-04-15 16:55 96768 ----a-w- c:\windows\system32\DBBK\B81F204D146000BE76651A50670A5E9E
2012-04-15 16:55 . 2012-04-15 16:55 223744 ----a-w- c:\windows\system32\DBBK\6D17A4791ACA19328C685D256349FEFC
2012-04-15 16:55 . 2012-04-15 16:55 123904 ----a-w- c:\windows\system32\DBBK\5D16C921E3671636C0EBA3BBAAC5FD25
2012-04-15 16:55 . 2012-04-15 16:55 69632 ----a-w- c:\windows\system32\DBBK\8F2DA3028D5FCBD1A060A3DE64CD6506
2012-04-15 16:55 . 2012-04-15 16:55 114688 ----a-w- c:\windows\system32\DBBK\BE6BD660CAA6F291AE06A718A4FA8ABC
2012-04-15 16:55 . 2012-04-15 16:55 317440 ----a-w- c:\windows\system32\DBBK\866A43013535DC8587C258E43579C764
2012-04-15 16:55 . 2012-04-15 16:55 513536 ----a-w- c:\windows\system32\DBBK\871917B07A141BFF43D76D8844D48106
2012-04-15 16:55 . 2012-04-15 16:55 33280 ----a-w- c:\windows\system32\DBBK\E2D56AE1D40E3725084054CD8E9CFBB1
2012-04-15 16:55 . 2012-04-15 16:55 406528 ----a-w- c:\windows\system32\DBBK\1FF7E4F548C7C372C804938F0D5B36AE
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\C87F28A34B3840F4B40011D170B1A159
2012-04-15 16:55 . 2012-04-15 16:55 12288 ----a-w- c:\windows\system32\DBBK\EAFC149CD3BD78C443E31BB157841197
2012-04-15 16:55 . 2012-04-15 16:55 271664 ----a-w- c:\windows\system32\DBBK\E6D90DC604F407B3B5E0FD285E46B2A0
2012-04-15 16:55 . 2012-04-15 16:55 305152 ----a-w- c:\windows\system32\DBBK\1C3E8371377E988B683797A132EFFE1B
2012-04-15 16:55 . 2012-04-15 16:55 241664 ----a-w- c:\windows\system32\DBBK\4BDEFD31F53729D85FFBBE08C91D2027
2012-04-15 16:55 . 2012-04-15 16:55 262144 ----a-w- c:\windows\system32\DBBK\A4C0D714CA0DAD557169BE4C586D5C63
2012-04-15 16:55 . 2012-04-15 16:55 43520 ----a-w- c:\windows\system32\DBBK\1B80C1D4E8B327A4D6A2D4424E1B7EFA
2012-04-15 16:55 . 2012-04-15 16:55 20480 ----a-w- c:\windows\system32\DBBK\38B13C0DF479DBA23ECFA815159BA86E
2012-04-15 16:55 . 2012-04-15 16:55 750592 ----a-w- c:\windows\system32\DBBK\A04BB13F8A72F8B6E8B4071723E4E336
2012-04-15 16:55 . 2012-04-15 16:55 328192 ----a-w- c:\windows\system32\DBBK\414DA952A35BF5D50192E28263B40577
2012-04-15 16:55 . 2012-04-15 16:55 1390080 ----a-w- c:\windows\system32\DBBK\269D867585CDA04D3972A39F3694E7DF
2012-04-15 16:55 . 2012-04-15 16:55 134656 ----a-w- c:\windows\system32\DBBK\9419ABF3163B6F0E3AD3DD2B381C879F
2012-04-15 16:55 . 2012-04-15 16:55 8192 ----a-w- c:\windows\system32\DBBK\1D6A771D1D702AE07919DB52C889A249
2012-04-15 16:55 . 2012-04-15 16:55 57344 ----a-w- c:\windows\system32\DBBK\C1585EAA67C37A05BF6F93726FAFC069
2012-04-15 16:55 . 2012-04-15 16:55 118784 ----a-w- c:\windows\system32\DBBK\749F9795F01C35EEBE100A87D82B9681
2012-04-15 16:55 . 2012-04-15 16:55 183296 ----a-w- c:\windows\system32\DBBK\5A5FEDDF02588B8F9FE4A95E5E7EAE97
2012-04-15 16:55 . 2012-04-15 16:55 56320 ----a-w- c:\windows\system32\DBBK\666E57B6B51824D1D235F80A3DD70A13
2012-04-15 16:55 . 2012-04-15 16:55 199168 ----a-w- c:\windows\system32\DBBK\F748F53FE09D21D8ECBB6421E6792024
2012-04-15 16:55 . 2012-04-15 16:55 392192 ----a-w- c:\windows\system32\DBBK\20C06A50DFC097E134BC6FA8444CA9BC
2012-04-15 16:55 . 2012-04-15 16:55 428032 ----a-w- c:\windows\system32\DBBK\3C9035085141162416A0DD34DBF3F3C1
2012-04-15 16:55 . 2012-04-15 16:55 829440 ----a-w- c:\windows\system32\DBBK\16935C98FF639D185086A3529B1F2067
2012-04-15 16:55 . 2012-04-15 16:55 50688 ----a-w- c:\windows\system32\DBBK\D33E95C0A2754061233B58DC41F8094C
2012-04-15 16:55 . 2012-04-15 16:55 43008 ----a-w- c:\windows\system32\DBBK\29CA5974FAB0E8AE4AA7814FE05CF832
2012-04-15 16:55 . 2012-04-15 16:55 61952 ----a-w- c:\windows\system32\DBBK\9A85ABCE0FDD1AF8E79E731EB0B679F3
2012-04-15 16:55 . 2012-04-15 16:55 6656 ----a-w- c:\windows\system32\DBBK\100103C6535C66265267F5EEA5F5846E
2012-04-15 16:55 . 2012-04-15 16:55 216576 ----a-w- c:\windows\system32\DBBK\03A03A453F1AAAE0C73AAAF895321C7A
2012-04-15 16:55 . 2012-04-15 16:55 132608 ----a-w- c:\windows\system32\DBBK\33EF4861F19A0736B11314AAD9AE28D0
2012-04-15 16:55 . 2012-04-15 16:55 191488 ----a-w- c:\windows\system32\DBBK\990A58A0B01720E419B55EFC5FF387F8
2012-04-15 16:55 . 2012-04-15 16:55 554832 ----a-w- c:\windows\system32\DBBK\0B3595A4FF0B36D68E5FC67FD7D70FDC
2012-04-15 16:55 . 2012-04-15 16:55 6701056 ----a-w- c:\windows\system32\DBBK\97B9D1F06328B3132FA77CFF6DE2AD2F
2012-04-15 16:55 . 2012-04-15 16:55 632656 ----a-w- c:\windows\system32\DBBK\C9564CF4976E7E96B4052737AA2492B4
2012-04-15 16:55 . 2012-04-15 16:55 995328 ----a-w- c:\windows\system32\DBBK\2E2876C96A801019B847BD9A17112E99
2012-04-15 16:55 . 2012-04-15 16:55 126976 ----a-w- c:\windows\system32\DBBK\B69909B8D9B82A47C73F2AD7F9E187BE
2012-04-15 16:55 . 2012-04-15 16:55 222208 ----a-w- c:\windows\system32\DBBK\9A892B3439884C62B04718F0303A49E9
2012-04-15 16:55 . 2012-04-15 16:55 282624 ----a-w- c:\windows\system32\DBBK\608E8DDAC1A340B6A3CD15897D6DE60C
2012-04-15 16:55 . 2012-04-15 16:55 98304 ----a-w- c:\windows\system32\DBBK\8600142FA91C1B96367D3300AD0F3F3A
2012-04-15 16:55 . 2012-04-15 16:55 19456 ----a-w- c:\windows\system32\DBBK\AF75DBA674E55221B7A055B0A4345F16
2012-04-15 16:55 . 2012-04-15 16:55 1003520 ----a-w- c:\windows\system32\DBBK\80C147EBC5C4FD5804305BB357E3CE6E
2012-04-15 16:55 . 2012-04-15 16:55 254464 ----a-w- c:\windows\system32\DBBK\E9E01EB683C132F7FA27CD607B8A2B63
2012-04-15 16:55 . 2012-04-15 16:55 11776 ----a-w- c:\windows\system32\DBBK\D2A937964199F647B1C3BC435712E5D9
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\CFF35B879D1618D42C86644C717BA947
2012-04-15 16:55 . 2012-04-15 16:55 103936 ----a-w- c:\windows\system32\DBBK\A90DC9ABD65DB1A8902F361103029952
2012-04-15 16:55 . 2012-04-15 16:55 19456 ----a-w- c:\windows\system32\DBBK\BA387E955E890C8A88306D9B8D06BF17
2012-04-15 16:55 . 2012-04-15 16:55 18432 ----a-w- c:\windows\system32\DBBK\55CA01BA19D0006C8F2639B6C045E08B
2012-04-15 16:55 . 2012-04-15 16:55 60928 ----a-w- c:\windows\system32\DBBK\032B0D36AD92B582D869879F5AF5B928
2012-04-15 16:55 . 2012-04-15 16:55 46080 ----a-w- c:\windows\system32\DBBK\D8A65DAFB3EB41CBB622745676FCD072
2012-04-15 16:55 . 2012-04-15 16:55 267264 ----a-w- c:\windows\system32\DBBK\26384429FCD85D83746F63E798AB1480
2012-04-15 16:55 . 2012-04-15 16:55 352768 ----a-w- c:\windows\system32\DBBK\40B82688907A7DBA4DB3B5ADDE3EAB3B
2012-04-15 16:55 . 2012-04-15 16:55 1202176 ----a-w- c:\windows\system32\DBBK\4E30ED3E551E867ADD1C8D58F5EDD9DF
2012-04-15 16:55 . 2012-04-15 16:55 48128 ----a-w- c:\windows\system32\DBBK\F7611EC07349979DA9B0AE1F18CCC7A6
2012-04-15 16:55 . 2012-04-15 16:55 162304 ----a-w- c:\windows\system32\DBBK\9FBCFD7E88A7ACE0E94456504895DD7F
2012-04-15 16:55 . 2012-04-15 16:55 2158592 ----a-w- c:\windows\system32\DBBK\824D940CD81A2814D4862C2AD62FACDD
2012-04-15 16:55 . 2012-04-15 16:55 442880 ----a-w- c:\windows\system32\DBBK\96F0F8F4DEE598C8D12AD9633E0CFE2A
2012-04-15 16:55 . 2012-04-15 16:55 374784 ----a-w- c:\windows\system32\DBBK\BBA9D5A730D5E304117AD26923EBD8AA
2012-04-15 16:55 . 2012-04-15 16:55 67584 ----a-w- c:\windows\system32\DBBK\8D1E1E529A2C9E9B6A85B55A345F7629
2012-04-15 16:55 . 2012-04-15 16:55 29696 ----a-w- c:\windows\system32\DBBK\081E6E1C91AEC36758902A9F727CD23C
2012-04-15 16:55 . 2012-04-15 16:55 49664 ----a-w- c:\windows\system32\DBBK\DCB7FCDCC97F87360F75D77425B81737
2012-04-15 16:55 . 2012-04-15 16:55 271360 ----a-w- c:\windows\system32\DBBK\F6916EFC29D9953D5D0DF06882AE8E16
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\5A12C364AD1D4FCC0AD0E56DBBC34462
2012-04-15 16:55 . 2012-04-15 16:55 20992 ----a-w- c:\windows\system32\DBBK\A12829E9974F57E9B5DBFEA7C93190F6
2012-04-15 16:55 . 2012-04-15 16:55 20992 ----a-w- c:\windows\system32\DBBK\07393A09C46083588E751B63B03C8301
2012-04-15 16:55 . 2012-04-15 16:55 72192 ----a-w- c:\windows\system32\DBBK\85683DF1F917E4D7F6BE1A04986BF1C8
2012-04-15 16:55 . 2012-04-15 16:55 27136 ----a-w- c:\windows\system32\DBBK\8B74CEC6980D4816B0037AE9A27E538F
2012-04-15 16:55 . 2012-04-15 16:55 22016 ----a-w- c:\windows\system32\DBBK\2F040CF0613A6D64DCBBA9EE81F5A5AE
2012-04-15 16:55 . 2012-04-15 16:55 195584 ----a-w- c:\windows\system32\DBBK\C940F2F5C60B3727C5F18840735B229C
2012-04-15 16:55 . 2012-04-15 16:55 70144 ----a-w- c:\windows\system32\DBBK\F10E5311E5093FA3C00FF88C54C32FCA
2012-04-15 16:55 . 2012-04-15 16:55 164352 ----a-w- c:\windows\system32\DBBK\43CA4CCC22D52FB58E8988F0198851D0
2012-04-15 16:55 . 2012-04-15 16:55 52224 ----a-w- c:\windows\system32\DBBK\104A1070E90F1C530328E69B49718841
2012-04-15 16:55 . 2012-04-15 16:55 37376 ----a-w- c:\windows\system32\DBBK\42FB6AFD6B79D9FE07381609172E7CA4
2012-04-15 16:55 . 2012-04-15 16:55 593408 ----a-w- c:\windows\system32\DBBK\E897EAF5ED6BA41E081060C9B447A673
2012-04-15 16:55 . 2012-04-15 16:55 4608 ----a-w- c:\windows\system32\DBBK\9C67F6BBDA3881CFD02095160CF91576
2012-04-15 16:55 . 2012-04-15 16:55 172032 ----a-w- c:\windows\system32\DBBK\D205C24A9D069049FE2DF2A1B38726A7
2012-04-15 16:55 . 2012-04-15 16:55 194048 ----a-w- c:\windows\system32\DBBK\D5AEFAD57C08349A4393D987DF7C715D
2012-04-15 16:55 . 2012-04-15 16:55 561664 ----a-w- c:\windows\system32\DBBK\FD049C25A168D3DE310D9207B7B6367B
2012-04-15 16:55 . 2012-04-15 16:55 37376 ----a-w- c:\windows\system32\DBBK\0915C4DB6DBC3BB9E11B7ECBBE4B7159
2012-04-15 16:55 . 2012-04-15 16:55 76800 ----a-w- c:\windows\system32\DBBK\FFA7172354B9256DBB2CDD75F16F33FE
2012-04-15 16:55 . 2012-04-15 16:55 325120 ----a-w- c:\windows\system32\DBBK\839F96DBAAFD3353E0B248A5E0BD2A51
2012-04-15 16:55 . 2012-04-15 16:55 385024 ----a-w- c:\windows\system32\DBBK\FFE4BEC5C187C426A17AE76A773063A6
2012-04-15 16:55 . 2012-04-15 16:55 122880 ----a-w- c:\windows\system32\DBBK\6D8CACF3B1B54943EFCF420C2D667B37
2012-04-15 16:55 . 2012-04-15 16:55 233472 ----a-w- c:\windows\system32\DBBK\8E01332CC4B68BC6B5B7EFFE374442AA
2012-04-15 16:55 . 2012-04-15 16:55 320000 ----a-w- c:\windows\system32\DBBK\9E4B0E7472B4CEBA9E17F440B8CB0AB8
2012-04-15 16:55 . 2012-04-15 16:55 471040 ----a-w- c:\windows\system32\DBBK\93BF790FCB9FBE1E82D2981BA1B7E134
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\20B3934DB73EABA2B49B7177873CB81F
2012-04-15 16:55 . 2012-04-15 16:55 51200 ----a-w- c:\windows\system32\DBBK\68ECCA523ED760AAFC03C5D587569859
2012-04-15 16:55 . 2012-04-15 16:55 56832 ----a-w- c:\windows\system32\DBBK\8CE1A6D16B9077E91E192499EB611C5F
2012-04-15 16:55 . 2012-04-15 16:55 47104 ----a-w- c:\windows\system32\DBBK\E5A4A1326A02F8E7B59E6C3270CE7202
2012-04-15 16:55 . 2012-04-15 16:55 36352 ----a-w- c:\windows\system32\DBBK\36B8D5903CEEF0AA42A1EE002BD27FF1
2012-04-15 16:55 . 2012-04-15 16:55 168960 ----a-w- c:\windows\system32\DBBK\108C2CFA5527458C096A699929ECBD80
2012-04-15 16:55 . 2012-04-15 16:55 57856 ----a-w- c:\windows\system32\DBBK\3FAD263CE1E2A6FFF40D00043B2275E3
2012-04-15 16:55 . 2012-04-15 16:55 171520 ----a-w- c:\windows\system32\DBBK\E59F08ED9D2A128CE436BBFC232247F6
2012-04-15 16:55 . 2012-04-15 16:55 152064 ----a-w- c:\windows\system32\DBBK\05BF975CA428E04B462FB90841B37C95
2012-04-15 16:55 . 2012-04-15 16:55 70144 ----a-w- c:\windows\system32\DBBK\65BF13016A3C22775F3E17591AE5268A
2012-04-15 16:55 . 2012-04-15 16:55 12800 ----a-w- c:\windows\system32\DBBK\326C7F76A29897A892AA7726E91C1C67
2012-04-15 16:55 . 2012-04-15 16:55 1010688 ----a-w- c:\windows\system32\DBBK\1DB71A41DAEE6B3F8CD0DDA8209FA2D5
2012-04-15 16:55 . 2012-04-15 16:55 100864 ----a-w- c:\windows\system32\DBBK\F68194F74350D4A2ADE98961E33F884C
2012-04-15 16:55 . 2012-04-15 16:55 67072 ----a-w- c:\windows\system32\DBBK\39C5F32747B3414D1BB216FDB1DEFC58
2012-04-15 16:55 . 2012-04-15 16:55 180224 ----a-w- c:\windows\system32\DBBK\EDF2A5E96BEC469DA3F64E9BDD386111
2012-04-15 16:55 . 2012-04-15 16:55 22016 ----a-w- c:\windows\system32\DBBK\63DF770DF74ACB370EF5A16727069AAF
2012-04-15 16:55 . 2012-04-15 16:55 220160 ----a-w- c:\windows\system32\DBBK\2CFA4569350B7F84F815E9EC34E85766
2012-04-15 16:55 . 2012-04-15 16:55 181248 ----a-w- c:\windows\system32\DBBK\6E1F8165C365D35C8E3C045AF0CDD481
2012-04-15 16:55 . 2012-04-15 16:55 717824 ----a-w- c:\windows\system32\DBBK\EE06B85BC69F18826302348A2AD089E0
2012-04-15 16:55 . 2012-04-15 16:55 1624576 ----a-w- c:\windows\system32\DBBK\0029EBA325F2FC9B6BA46BEE33F32A09
2012-04-15 16:55 . 2012-04-15 16:55 249856 ----a-w- c:\windows\system32\DBBK\63BFDF555DA2075A77D677829C3CCCD0
2012-04-15 16:55 . 2012-04-15 16:55 60928 ----a-w- c:\windows\system32\DBBK\C30A3E5DEEEBA22E782AC54C5AF5F352
2012-04-15 16:55 . 2012-04-15 16:55 108032 ----a-w- c:\windows\system32\DBBK\F14A9B1778376D0B1788E402AC1F831A
2012-04-15 16:55 . 2012-04-15 16:55 1680896 ----a-w- c:\windows\system32\DBBK\352B3DC62A0D259A82A052238425C872
2012-04-15 16:55 . 2012-04-15 16:55 1003520 ----a-w- c:\windows\system32\DBBK\28CA821606669BB9215CE010767720FA
2012-04-15 16:55 . 2012-04-15 16:55 1792000 ----a-w- c:\windows\system32\DBBK\CDD35C1CE1EBFE80C055691CDC8DF443
2012-04-15 16:55 . 2012-04-15 16:55 988160 ----a-w- c:\windows\system32\DBBK\12C45E3CB6D65F73209549E2D02ECA7A
2012-04-15 16:55 . 2012-04-15 16:55 213504 ----a-w- c:\windows\system32\DBBK\243974EC02F7AE49E4179C54624143AB
2012-04-15 16:55 . 2012-04-15 16:55 473600 ----a-w- c:\windows\system32\DBBK\CE3B4E731638D2EF62FCB419BE0D39F0
2012-04-15 16:55 . 2012-04-15 16:55 14336 ----a-w- c:\windows\system32\DBBK\139D3AB6AA920C34C50CBFFB9EB7D222
2012-04-15 16:55 . 2012-04-15 16:55 49664 ----a-w- c:\windows\system32\DBBK\146B6F43A673379A3C670E86D89BE5EA
2012-04-15 16:55 . 2012-04-15 16:55 1086976 ----a-w- c:\windows\system32\DBBK\241E015DD809CFB23242F890B1FC575B
2012-04-15 16:55 . 2012-04-15 16:55 40448 ----a-w- c:\windows\system32\DBBK\6A6B2EE4565A178035BE2A4FF6F2C968
2012-04-15 16:55 . 2012-04-15 16:55 21504 ----a-w- c:\windows\system32\DBBK\702254574E7E52052DE39408457B7149
2012-04-15 16:55 . 2012-04-15 16:55 10752 ----a-w- c:\windows\system32\DBBK\3EF0D8AB08385AAB5802E773511A2E6A
2012-04-15 16:55 . 2012-04-15 16:55 462848 ----a-w- c:\windows\system32\DBBK\3F50200237961034FACE602373838980
2012-04-15 16:55 . 2012-04-15 16:55 610304 ----a-w- c:\windows\system32\DBBK\581B9BE9E92A0F3856CC85EC011EDC6F
2012-04-15 16:55 . 2012-04-15 16:55 9216 ----a-w- c:\windows\system32\DBBK\EE5C8E27C37B79CB54A2FCEEED2DC262
2012-04-15 16:55 . 2012-04-15 16:55 43520 ----a-w- c:\windows\system32\DBBK\78D072F35BC45D9E4E1B61895C152234
2012-04-15 16:55 . 2012-04-15 16:55 376832 ----a-w- c:\windows\system32\DBBK\7660F01D3B38ACA1747E397D21D790AF
2012-04-15 16:55 . 2012-04-15 16:55 92672 ----a-w- c:\windows\system32\DBBK\E714A1C0354636837E20CCBF00888EE7
2012-04-15 16:55 . 2012-04-15 16:55 86528 ----a-w- c:\windows\system32\DBBK\6703E366CC18D3B6E534F5CF7DF39CEE
2012-04-15 16:55 . 2012-04-15 16:55 145408 ----a-w- c:\windows\system32\DBBK\08DFDBD2FD4EA951DC46B1C7661ED35A
2012-04-15 16:55 . 2012-04-15 16:55 33280 ----a-w- c:\windows\system32\DBBK\5893EBDCE371174AC89ECD7731DD6D77
2012-04-15 16:55 . 2012-04-15 16:55 119808 ----a-w- c:\windows\system32\DBBK\F87D30E72E03D579A5199CCB3831D6EA
2012-04-15 16:55 . 2012-04-15 16:55 79872 ----a-w- c:\windows\system32\DBBK\1097F3035BAF46CED8B332B3564C5108
2012-04-15 16:55 . 2012-04-15 16:55 81920 ----a-w- c:\windows\system32\DBBK\D15618A0FF8DBC2C5BF3726BACC75A0B
2012-04-15 16:55 . 2012-04-15 16:55 75776 ----a-w- c:\windows\system32\DBBK\4BDBBE5E4208022DD794F7EEEB0F7366
2012-04-15 16:55 . 2012-04-15 16:55 44544 ----a-w- c:\windows\system32\DBBK\FD07F21E0A19C27ED4E1EEC2B07452B3
2012-04-15 16:55 . 2012-04-15 16:55 293376 ----a-w- c:\windows\system32\DBBK\EC7BC28D207DA09E79B3E9FAF8B232CA
2012-04-15 16:55 . 2012-04-15 16:55 20992 ----a-w- c:\windows\system32\DBBK\54A47F6B5E09A77E61649109C6A08866
2012-04-15 16:55 . 2012-04-15 16:55 170496 ----a-w- c:\windows\system32\DBBK\7222995615BF93B628DCEA4BD6CCACF7
2012-04-15 16:55 . 2012-04-15 16:55 175616 ----a-w- c:\windows\system32\DBBK\8124944EC89D6A1815E4E53F5B96AAF4
2012-04-15 16:55 . 2012-04-15 16:55 17408 ----a-w- c:\windows\system32\DBBK\4E5FE39C1076D115EC8BFCFE14D75B80
2012-04-15 16:55 . 2012-04-15 16:55 40448 ----a-w- c:\windows\system32\DBBK\91F434FF6606ED9BDC6A05D651B69553
2012-04-15 16:55 . 2012-04-15 16:55 186880 ----a-w- c:\windows\system32\DBBK\37CC990D4E2CDFAE12AC47F6B620FC13
2012-04-15 16:55 . 2012-04-15 16:55 249680 ----a-w- c:\windows\system32\DBBK\E8449FE262D7406BCB2AC2A45C53EC5F
2012-04-15 16:55 . 2012-04-15 16:55 65024 ----a-w- c:\windows\system32\DBBK\D29E45078CF4020CE0AAC82EC652D1EA
2012-04-15 16:55 . 2012-04-15 16:55 242936 ----a-w- c:\windows\system32\DBBK\ED8EC63F7522DF4852147C84EC62C36A
2012-04-15 16:55 . 2012-04-15 16:55 171520 ----a-w- c:\windows\system32\DBBK\0450CF487ECD8A67B56F59F9A96D024D
2012-04-15 16:55 . 2012-04-15 16:55 224768 ----a-w- c:\windows\system32\DBBK\1AFFB765AF1FDCC0C185C38E9DDDDAEE
2012-04-15 16:55 . 2012-04-15 16:55 127488 ----a-w- c:\windows\system32\DBBK\8EA53101FF2B15BDFF934B62A8FB326D
2012-04-15 16:55 . 2012-04-15 16:55 270336 ----a-w- c:\windows\system32\DBBK\B40420876B9288E0A1C8CCA8A84E5DC9
2012-04-15 16:55 . 2012-04-15 16:55 563712 ----a-w- c:\windows\system32\DBBK\C1809B9907ADEDAF16F50C894100883B
2012-04-15 16:55 . 2012-04-15 16:55 257024 ----a-w- c:\windows\system32\DBBK\4C1E16B9A53102C8D6FBA587CBCB95DE
2012-04-15 16:55 . 2012-04-15 16:55 10752 ----a-w- c:\windows\system32\DBBK\73E8667A19FEEDD856DF2695E9E511D4
2012-04-15 16:55 . 2012-04-15 16:55 121856 ----a-w- c:\windows\system32\DBBK\3FD15B4611D9BDA3F8013548C0ECAECA
2012-04-15 16:55 . 2012-04-15 16:55 73216 ----a-w- c:\windows\system32\DBBK\7A6986DD659B96398A11AF5173892715
2012-04-15 16:55 . 2012-04-15 16:55 232448 ----a-w- c:\windows\system32\DBBK\8999B8631C7FD9F7F9EC3CAFD953BA24
2012-04-15 16:55 . 2012-04-15 16:55 78848 ----a-w- c:\windows\system32\DBBK\7321F18D1F820612ED0E9F2D4B578A7E
2012-04-15 16:55 . 2012-04-15 16:55 542208 ----a-w- c:\windows\system32\DBBK\2F4348DC0D06A0EBA5F5C4CB435790C1
2012-04-15 16:55 . 2012-04-15 16:55 93696 ----a-w- c:\windows\system32\DBBK\6DCFAEC6D1334AA6CDF8961DB4633CBF
2012-04-15 16:55 . 2012-04-15 16:55 161792 ----a-w- c:\windows\system32\DBBK\E343CABBD8D600ABAF3F11625D33B3D0
2012-04-15 16:55 . 2012-04-15 16:55 2048 ----a-w- c:\windows\system32\DBBK\C90878913DF3DC504790282043DB5F4C
2012-04-15 16:55 . 2012-04-15 16:55 219136 ----a-w- c:\windows\system32\DBBK\C20FF1A17726C357461A7AC5B3BFC3AD
2012-04-15 16:55 . 2012-04-15 16:55 98816 ----a-w- c:\windows\system32\DBBK\FB4EB9352B7D698E6B3C2AA2ED724DAD
2012-04-15 16:55 . 2012-04-15 16:55 80384 ----a-w- c:\windows\system32\DBBK\FC7650224790CAE75A5E9231961FDEC5
2012-04-15 16:55 . 2012-04-15 16:55 12288 ----a-w- c:\windows\system32\DBBK\50BA656134F78AF64E4DD3C8B6FEFD7E
2012-04-15 16:55 . 2012-04-15 16:55 262144 ----a-w- c:\windows\system32\DBBK\82C089EA2A3EEFADF3588EA71E8BDADA
2012-04-15 16:55 . 2012-04-15 16:55 58880 ----a-w- c:\windows\system32\DBBK\1128637CAD49A8E3C8B5FA5D0A061525
2012-04-15 16:55 . 2012-04-15 16:55 551424 ----a-w- c:\windows\system32\DBBK\245F4691314F42D4D1BC06442F0B2086
2012-04-15 16:55 . 2012-04-15 16:55 307712 ----a-w- c:\windows\system32\DBBK\250AA41DE690561AF1282D598914564C
2012-04-15 16:55 . 2012-04-15 16:55 90112 ----a-w- c:\windows\system32\DBBK\5CCDCD40E732D54E0F7451AC66AC1C87
2012-04-15 16:55 . 2012-04-15 16:55 1038848 ----a-w- c:\windows\system32\DBBK\C95CA687D32DDAB1C91E1122E80D5E16
2012-04-15 16:55 . 2012-04-15 16:55 11264 ----a-w- c:\windows\system32\DBBK\D412B1B72C5AB020218E9A047D90CA05
2012-04-15 16:55 . 2012-04-15 16:55 22016 ----a-w- c:\windows\system32\DBBK\69678722290C78D5D7198C60B5A4E3E8
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\BA51FFE170C5B3AE8EC4F5BD2581A29E
2012-04-15 16:55 . 2012-04-15 16:55 51200 ----a-w- c:\windows\system32\DBBK\3369D021265E369D57317D61FA86DD79
2012-04-15 16:55 . 2012-04-15 16:55 15872 ----a-w- c:\windows\system32\DBBK\E361AE3010EA4B3123DAB5BDAE21798F
2012-04-15 16:55 . 2012-04-15 16:55 100352 ----a-w- c:\windows\system32\DBBK\4A054C853031616D161A84BECF281F47
2012-04-15 16:55 . 2012-04-15 16:55 267776 ----a-w- c:\windows\system32\DBBK\8AEA9A37C1A3565A204D37C5E72AB791
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\81951F51E318AECC2D68559E47485CC4
2012-04-15 16:55 . 2012-04-15 16:55 295936 ----a-w- c:\windows\system32\DBBK\863F793D15B4026B1A5FDECA873D4D84
2012-04-15 16:55 . 2012-04-15 16:55 36864 ----a-w- c:\windows\system32\DBBK\F08F6FCD09F9BE94C37ACC1B344685FF
2012-04-15 16:55 . 2012-04-15 16:55 380416 ----a-w- c:\windows\system32\DBBK\919001D2BB17DF06CA3F8AC16AD039F6
2012-04-15 16:55 . 2012-04-15 16:55 259072 ----a-w- c:\windows\system32\DBBK\5F1B6A9C35D3D5CA72D6D6FDEF9747D6
2012-04-15 16:55 . 2012-04-15 16:55 8704 ----a-w- c:\windows\system32\DBBK\633C2C060CF857099F6C4F8D75C952B1
2012-04-15 16:55 . 2012-04-15 16:55 156672 ----a-w- c:\windows\system32\DBBK\418E881201583A3039D81F43E39E6C78
2012-04-15 16:55 . 2012-04-15 16:55 286720 ----a-w- c:\windows\system32\DBBK\6D13E1406F50C66E2A95D97F22C47560
2012-04-15 16:55 . 2012-04-15 16:55 6144 ----a-w- c:\windows\system32\DBBK\357B990A4249D7F7485B230C0CC8825A
2012-04-15 16:55 . 2012-04-15 16:55 46080 ----a-w- c:\windows\system32\DBBK\5997D769CDB108390DCFAEBF442BF816
2012-04-15 16:55 . 2012-04-15 16:55 31744 ----a-w- c:\windows\system32\DBBK\C733D233B623B7FFCE5031E4B756EE26
2012-04-15 16:55 . 2012-04-15 16:55 107520 ----a-w- c:\windows\system32\DBBK\CAEF9CD6C10B1017E2C298D849CD31DB
2012-04-15 16:55 . 2012-04-15 16:55 24576 ----a-w- c:\windows\system32\DBBK\364455805E64882844EE9ACB72522830
2012-04-15 16:55 . 2012-04-15 16:55 96256 ----a-w- c:\windows\system32\DBBK\B5C5DCAD3899512020D135600129D665
2012-04-15 16:55 . 2012-04-15 16:55 14848 ----a-w- c:\windows\system32\DBBK\7C76B61A5E1EF5D1FA554CF134100F18
2012-04-15 16:55 . 2012-04-15 16:55 23552 ----a-w- c:\windows\system32\DBBK\79D10964DE86B292320E9DFE02282A23
2012-04-15 16:55 . 2012-04-15 16:55 169984 ----a-w- c:\windows\system32\DBBK\183B4188D5D91B271613EC3EFD1B3CEF
2012-04-15 16:55 . 2012-04-15 16:55 38912 ----a-w- c:\windows\system32\DBBK\6C062EA09313872D2235027EF7A4554E
2012-04-15 16:55 . 2012-04-15 16:55 44032 ----a-w- c:\windows\system32\DBBK\DAB748AE0439955ED2FA22357533DDDB
2012-04-15 16:55 . 2012-04-15 16:55 6144 ----a-w- c:\windows\system32\DBBK\342271F6142E7C70805B8A81E1BA5F5C
2012-04-15 16:55 . 2012-04-15 16:55 13312 ----a-w- c:\windows\system32\DBBK\5FCD3320AAE71506B43F9E12E4E72172
2012-04-15 16:55 . 2012-04-15 16:55 2343424 ----a-w- c:\windows\system32\DBBK\5A9079677B2923127C43E880DC6A92CA
2012-04-15 16:55 . 2012-04-15 16:55 145920 ----a-w- c:\windows\system32\DBBK\3FFAEA12666E565FF51BF2FCA674F543
2012-04-15 16:55 . 2012-04-15 16:55 34304 ----a-w- c:\windows\system32\DBBK\938F39B50BAFE13D6F58C7790682C010
2012-04-15 16:55 . 2012-04-15 16:55 172544 ----a-w- c:\windows\system32\DBBK\A7D79E9F660340AB20CD73F12910985F
2012-04-15 16:55 . 2012-04-15 16:55 64512 ----a-w- c:\windows\system32\DBBK\CC4ED8BEA78B0DCA6F217E014C3291A7
2012-04-15 16:55 . 2012-04-15 16:55 530432 ----a-w- c:\windows\system32\DBBK\BDAC1AA64495D0F7E1FF810EBBF1F018
2012-04-15 16:55 . 2012-04-15 16:55 1154048 ----a-w- c:\windows\system32\DBBK\454E292861A4EF1D72F43F42BBAF6917
2012-04-15 16:55 . 2012-04-15 16:55 8704 ----a-w- c:\windows\system32\DBBK\6377051C63D5552A311935C67E9FDFDC
2012-04-15 16:55 . 2012-04-15 16:55 2048 ----a-w- c:\windows\system32\DBBK\9C278785347BCC991F8EA2999D90F58D
2012-04-15 16:55 . 2012-04-15 16:55 290816 ----a-w- c:\windows\system32\DBBK\A9F8E23C1FC00190376B11FFAD9DE6C6
2012-04-15 16:55 . 2012-04-15 16:55 159232 ----a-w- c:\windows\system32\DBBK\B2DB6ABA2E292235749B80A9C3DFA867
2012-04-15 16:55 . 2012-04-15 16:55 12872704 ----a-w- c:\windows\system32\DBBK\358FC25391C6733EAF49DB480AFDFD8C
2012-04-15 16:55 . 2012-04-15 16:55 981504 ----a-w- c:\windows\system32\DBBK\7CCA8574A3B9BB41A4150739E21F1B23
2012-04-15 16:55 . 2012-04-15 16:55 1414144 ----a-w- c:\windows\system32\DBBK\928CF7268086631F54C3D8E17238C6DD
2012-04-15 16:55 . 2012-04-15 16:55 828928 ----a-w- c:\windows\system32\DBBK\C9618BC9B2B0FD7C1138D8774795A79B
2012-04-15 16:55 . 2012-04-15 16:55 522240 ----a-w- c:\windows\system32\DBBK\FF5688D309347F2720911D8796912834
2012-04-15 16:55 . 2012-04-15 16:55 2073600 ----a-w- c:\windows\system32\DBBK\6872331A809FC689F6B2B60816B7EEA5
2012-04-15 16:55 . 2012-04-15 16:55 304640 ----a-w- c:\windows\system32\DBBK\E87F5393F7D8CE2FACC4DFF703531392
2012-04-15 16:55 . 2012-04-15 16:55 92160 ----a-w- c:\windows\system32\DBBK\CFC97F07904067A1E5FAE195D534DA3A
2012-04-15 16:55 . 2012-04-15 16:55 653312 ----a-w- c:\windows\system32\DBBK\6400774E903729ADD0A62A24A334EE56
2012-04-15 16:55 . 2012-04-15 16:55 26624 ----a-w- c:\windows\system32\DBBK\4F154D2C9C6DF951FD6E5AABBAE6B5EE
2012-04-15 16:55 . 2012-04-15 16:55 315904 ----a-w- c:\windows\system32\DBBK\070C5B9D3006602A07757179D9B56F5D
2012-04-15 16:55 . 2012-04-15 16:55 1667584 ----a-w- c:\windows\system32\DBBK\10FB16B50AFFDA6D44588F3C445DC273
2012-04-15 16:55 . 2012-04-15 16:55 571904 ----a-w- c:\windows\system32\DBBK\6C765E82B57F2E66CE9C54AC238471D9
2012-04-15 16:55 . 2012-04-15 16:55 118272 ----a-w- c:\windows\system32\DBBK\4A8E2F20809CC161107FAA94F6CF2685
2012-04-15 16:55 . 2012-04-15 16:55 690688 ----a-w- c:\windows\system32\DBBK\9DC80A8AAAAAC397BDAB3C67165A824E
2012-04-15 16:55 . 2012-04-15 16:55 350208 ----a-w- c:\windows\system32\DBBK\8CC3C111D653E96F3EA1590891491D71
2012-04-15 16:55 . 2012-04-15 16:55 640512 ----a-w- c:\windows\system32\DBBK\95E2376B3323F062EB562B8586D0F14A
2012-04-15 16:55 . 2012-04-15 16:55 811520 ----a-w- c:\windows\system32\DBBK\F1DD3ACAEE5E6B4BBC69BC6DF75CEF66
2012-04-15 16:55 . 2012-04-15 16:55 6144 ----a-w- c:\windows\system32\DBBK\A543AC1F7138376D778D630A35FCBC4C
2012-04-15 16:55 . 2012-04-15 16:55 485888 ----a-w- c:\windows\system32\DBBK\D1DE1EAFDE97BE41CF6585027FF3E732
2012-04-15 16:55 . 2012-04-15 16:55 1231360 ----a-w- c:\windows\system32\DBBK\FD859E892A62C5D4B708EA1D92550988
2012-04-15 16:55 . 2012-04-15 16:55 146432 ----a-w- c:\windows\system32\DBBK\45F4E7BF43DB40A6C6B4D92C76CBC3F2
2012-04-15 16:55 . 2012-04-15 16:55 18432 ----a-w- c:\windows\system32\DBBK\8C5094A8AB24DE7496C7C19942F2DF04
2012-04-15 16:55 . 2012-04-15 16:55 26112 ----a-w- c:\windows\system32\DBBK\2C388D2CD01C9042596CF3C8F3C7B24D
2012-04-15 16:55 . 2012-04-15 16:55 28160 ----a-w- c:\windows\system32\DBBK\9E3CED91863E6EE98C24794D05E27A71
2012-04-15 16:55 . 2012-04-15 16:55 25728 ----a-w- c:\windows\system32\DBBK\6C26122F1931D4D7810240F32DDCE890
2012-04-15 16:55 . 2012-04-15 16:55 55808 ----a-w- c:\windows\system32\DBBK\931A1DF1520ABC6E84BA4A75E6957025
2012-04-15 16:55 . 2012-04-15 16:55 24064 ----a-w- c:\windows\system32\DBBK\10C19F8290891AF023EAEC0832E1EB4D
2012-04-15 16:55 . 2012-04-15 16:55 75776 ----a-w- c:\windows\system32\DBBK\BD9C55D7023C5DE374507ACC7A14E2AC
2012-04-15 16:55 . 2012-04-15 16:55 269824 ----a-w- c:\windows\system32\DBBK\A8BB45F9ECAD993461E0FEF8E2A99152
2012-04-15 16:55 . 2012-04-15 16:55 626176 ----a-w- c:\windows\system32\DBBK\804AAAFEBB3AD5F49334DD906BCB1DE5
2012-04-15 16:55 . 2012-04-15 16:55 338176 ----a-w- c:\windows\system32\DBBK\215666A8A85023EF019B510CBB67F678
2012-04-15 16:55 . 2012-04-15 16:55 180816 ----a-w- c:\windows\system32\DBBK\CDE41293DB871A75CD99EB0CE781356B
2012-04-15 16:55 . 2012-04-15 16:55 80896 ----a-w- c:\windows\system32\DBBK\27F9288AF019E6DACA281EDE51FF5928
2012-04-15 16:55 . 2012-04-15 16:55 177152 ----a-w- c:\windows\system32\DBBK\D72708C9F49500C13D7D067E169B7715
2012-04-15 16:55 . 2012-04-15 16:55 2058528 ----a-w- c:\windows\system32\DBBK\8A4341616976E47712B60F18C7049DCC
2012-04-15 16:55 . 2012-04-15 16:55 31744 ----a-w- c:\windows\system32\DBBK\F001861E5700EE84E2D4E52C712F4964
2012-04-15 16:55 . 2012-04-15 16:55 1035776 ----a-w- c:\windows\system32\DBBK\7E10E3BB9B258AD8A9300F91214D67B9
2012-04-15 16:55 . 2012-04-15 16:55 48640 ----a-w- c:\windows\system32\DBBK\A4BDC541E69674FBFF1A8FF00BE913F2
2012-04-15 16:55 . 2012-04-15 16:55 206848 ----a-w- c:\windows\system32\DBBK\7FF15A4F092CD4A96055BA69F903E3E9
2012-04-15 16:55 . 2012-04-15 16:55 868352 ----a-w- c:\windows\system32\DBBK\E570CBD732848438EAC574EB3442A2A8
2012-04-15 16:55 . 2012-04-15 16:55 258560 ----a-w- c:\windows\system32\DBBK\8DC94AEC6A7E644A06135AE7506DC2E9
2012-04-15 16:55 . 2012-04-15 16:55 39936 ----a-w- c:\windows\system32\DBBK\D295BED4B898F0FD999FCFA9B32B071B
2012-04-15 16:55 . 2012-04-15 16:55 190976 ----a-w- c:\windows\system32\DBBK\5DCEF0C32BE0F33277326586FA503689
2012-04-15 16:55 . 2012-04-15 16:55 12240 ----a-w- c:\windows\system32\DBBK\E58C78A848ADD9610A4DB6D214AF5224
2012-04-15 16:55 . 2012-04-15 16:55 33588 ----a-w- c:\windows\system32\DBBK\0A716C08CB13C3A8F4F51E882DBF7416
2012-04-15 16:55 . 2012-04-15 16:55 75264 ----a-w- c:\windows\system32\DBBK\44101F495A83EA6401D886E7FD70096B
2012-04-15 16:55 . 2012-04-15 16:55 77824 ----a-w- c:\windows\system32\DBBK\0FE8B15916307A6AC12BFB6A63E45507
2012-04-15 16:55 . 2012-04-15 16:55 73728 ----a-w- c:\windows\system32\DBBK\631E3E205AD6D86F2AED6A4A8E69F2DB
2012-04-15 16:55 . 2012-04-15 16:55 118784 ----a-w- c:\windows\system32\DBBK\38FBE267E7E6983311179230FACB1017
2012-04-15 16:55 . 2012-04-15 16:55 20992 ----a-w- c:\windows\system32\DBBK\E4A8AEC125A2E43A9E32AFEEA7C9C888
2012-04-15 16:55 . 2012-04-15 16:55 49152 ----a-w- c:\windows\system32\DBBK\57EC4AEF73660166074D8F7F31C0D4FD
2012-04-15 16:55 . 2012-04-15 16:55 31232 ----a-w- c:\windows\system32\DBBK\CBE8C58A8579CFE5FCCF809E6F114E89
2012-04-15 16:55 . 2012-04-15 16:55 78848 ----a-w- c:\windows\system32\DBBK\D9F91EAFEC2815365CBE6D167E4E332A
2012-04-15 16:55 . 2012-04-15 16:55 42496 ----a-w- c:\windows\system32\DBBK\A4216C71DD4F60B26418CCFD99CD0815
2012-04-15 16:55 . 2012-04-15 16:55 37376 ----a-w- c:\windows\system32\DBBK\D231B577024AA324AF13A42F3A807D10
2012-04-15 16:55 . 2012-04-15 16:55 84992 ----a-w- c:\windows\system32\DBBK\0328BE1C7F1CBA23848179F8762E391C
2012-04-15 16:55 . 2012-04-15 16:55 39936 ----a-w- c:\windows\system32\DBBK\355AAC141B214BEF1DBC1483AFD9BD50
2012-04-15 16:55 . 2012-04-15 16:55 164864 ----a-w- c:\windows\system32\DBBK\1B133875B8AA8AC48969BD3458AFE9F5
2012-04-15 16:55 . 2012-04-15 16:55 41552 ----a-w- c:\windows\system32\DBBK\FB18CC1D4C2E716B6B903B0AC0CC0609
2012-04-15 16:55 . 2012-04-15 16:55 5888 ----a-w- c:\windows\system32\DBBK\5787196F32D043572EC6565C0EF1B8E0
2012-04-15 16:55 . 2012-04-15 16:55 196400 ----a-w- c:\windows\system32\DBBK\55F6E55CC2430CA8713387106FA79817
2012-04-15 16:55 . 2012-04-15 16:55 42576 ----a-w- c:\windows\system32\DBBK\ADEF52CA1AEAE82B50DF86B56413107E
2012-04-15 16:55 . 2012-04-15 16:55 80896 ----a-w- c:\windows\system32\DBBK\F151F0BDC47F4A28B1B20A0818EA36D6
2012-04-15 16:55 . 2012-04-15 16:55 108544 ----a-w- c:\windows\system32\DBBK\9036377B8A6C15DC2EEC53E489D159B5
2012-04-15 16:55 . 2012-04-15 16:55 16128 ----a-w- c:\windows\system32\DBBK\1825BCEB47BF41C5A9F0E44DE82FC27A
2012-04-15 16:55 . 2012-04-15 16:55 26600 ----a-w- c:\windows\system32\DBBK\8182FF89C65E4D38B2DE4BB0FB18564E
2012-04-15 16:55 . 2012-04-15 16:55 43008 ----a-w- c:\windows\system32\DBBK\F92DE757E4B7CE9C07C5E65423F3AE3B
2012-04-15 16:55 . 2012-04-15 16:55 284672 ----a-w- c:\windows\system32\DBBK\3AA940AA9AC3055FE32FF2D3D20CCD28
2012-04-15 16:55 . 2012-04-15 16:55 20480 ----a-w- c:\windows\system32\DBBK\E185D44FAC515A18D9DEDDC23C2CDF44
2012-04-15 16:55 . 2012-04-15 16:55 19968 ----a-w- c:\windows\system32\DBBK\90567B1E658001E79D7C8BBD3DDE5AA6
2012-04-15 16:55 . 2012-04-15 16:55 1218048 ----a-w- c:\windows\system32\DBBK\AC4ADAC154563AB41CC79B0257BC685A
2012-04-15 16:55 . 2012-04-15 16:55 104448 ----a-w- c:\windows\system32\DBBK\8CCA591019216E9523E3CB385CE643E6
2012-04-15 16:55 . 2012-04-15 16:55 219008 ----a-w- c:\windows\system32\DBBK\D458D1C7F1D49869000668E3C3BB0D4D
2012-04-15 16:55 . 2012-04-15 16:55 728448 ----a-w- c:\windows\system32\DBBK\23F5D28378A160352BA8F817BD8C71CB
2012-04-15 16:55 . 2012-04-15 16:55 2929664 ----a-w- c:\windows\system32\DBBK\22D300F835600C9C634860CF2912F9CF
2012-04-15 16:55 . 2012-04-15 16:55 668160 ----a-w- c:\windows\system32\DBBK\F88A52EB62019D6A62FDD9E08034DBD8
2012-04-15 16:55 . 2012-04-15 16:55 69632 ----a-w- c:\windows\system32\DBBK\16742790895960690237A5143CEDEC8B
2012-04-15 16:55 . 2012-04-15 16:55 14080 ----a-w- c:\windows\system32\DBBK\DEA805815E587DAD1DD2C502220B5616
2012-04-15 16:55 . 2012-04-15 16:55 55296 ----a-w- c:\windows\system32\DBBK\00DDA200D71BAC534BF56A9DB5DFD666
2012-04-15 16:55 . 2012-04-15 16:55 108544 ----a-w- c:\windows\system32\DBBK\B2FA25D9B17A68BB93D58B0556E8C90D
2012-04-15 16:55 . 2012-04-15 16:55 7168 ----a-w- c:\windows\system32\DBBK\CBC22823628544735625B280665E434E
2012-04-15 16:55 . 2012-04-15 16:55 35328 ----a-w- c:\windows\system32\DBBK\2287078ED48FCFC477B05B20CF38F36F
2012-04-15 16:55 . 2012-04-15 16:55 78336 ----a-w- c:\windows\system32\DBBK\F024449C97EC1E464AAFFDA18593DB88
2012-04-15 16:55 . 2012-04-15 16:55 32256 ----a-w- c:\windows\system32\DBBK\1A050B0274BFB3890703D490F330C0DA
2012-04-15 16:55 . 2012-04-15 16:55 16896 ----a-w- c:\windows\system32\DBBK\E9A0A4D07E53D8FEA2BB8387A3293C58
2012-04-15 16:55 . 2012-04-15 16:55 28240 ----a-w- c:\windows\system32\DBBK\FC6B9FF600CC585EA38B12589BD4E246
2012-04-15 16:55 . 2012-04-15 16:55 242688 ----a-w- c:\windows\system32\DBBK\D528BC58A489409BA40334EBF96A311B
2012-04-15 16:55 . 2012-04-15 16:55 53120 ----a-w- c:\windows\system32\DBBK\04DBF4B01EA4BF25A9A3E84AFFAC9B20
2012-04-15 16:55 . 2012-04-15 16:55 63488 ----a-w- c:\windows\system32\DBBK\3C3C78515F5AB448B022BDF5B8FFDD2E
2012-04-15 16:55 . 2012-04-15 16:55 36352 ----a-w- c:\windows\system32\DBBK\80B275B1CE3B0E79909DB7B39AF74D51
2012-04-15 16:55 . 2012-04-15 16:55 20352 ----a-w- c:\windows\system32\DBBK\7E72514A3A1C5A9F3BFF0660B3866C2B
2012-04-15 16:55 . 2012-04-15 16:55 64880 ----a-w- c:\windows\system32\DBBK\B41BACC049CDB916A52B1448BF30D6AB
2012-04-15 16:55 . 2012-04-15 16:55 104448 ----a-w- c:\windows\system32\DBBK\6270CCAE2A86DE6D146529FE55B3246A
2012-04-15 16:55 . 2012-04-15 16:55 48128 ----a-w- c:\windows\system32\DBBK\7090D3436EEB4E7DA3373090A23448F7
2012-04-15 16:55 . 2012-04-15 16:55 9728 ----a-w- c:\windows\system32\DBBK\8B9A943F3B53861F2BFAF6C186168F79
2012-04-15 16:55 . 2012-04-15 16:55 338944 ----a-w- c:\windows\system32\DBBK\9EBBBA55060F786F0FCAA3893BFA2806
2012-04-15 16:55 . 2012-04-15 16:55 187904 ----a-w- c:\windows\system32\DBBK\280122DDCF04B378EDD1AD54D71C1E54
2012-04-15 16:55 . 2012-04-15 16:55 21504 ----a-w- c:\windows\system32\DBBK\2F885864D5BC8A16C86BEE595969A48A
2012-04-15 16:55 . 2012-04-15 16:55 74752 ----a-w- c:\windows\system32\DBBK\B459575348C20E8121D6039DA063C704
2012-04-15 16:55 . 2012-04-15 16:55 35328 ----a-w- c:\windows\system32\DBBK\1DB262A9F8C087E8153D89BEF3D2235F
2012-04-15 16:55 . 2012-04-15 16:55 7168 ----a-w- c:\windows\system32\DBBK\44B0A53CD4F27D50ED461DAE0C0B4E1F
2012-04-15 16:55 . 2012-04-15 16:55 22528 ----a-w- c:\windows\system32\DBBK\DAEFB28E3AF5A76ABCC2C3078C07327F
2012-04-15 16:55 . 2012-04-15 16:55 6656 ----a-w- c:\windows\system32\DBBK\23DAE03F29D253AE74C44F99E515F9A1
2012-04-15 16:55 . 2012-04-15 16:55 6656 ----a-w- c:\windows\system32\DBBK\5A53CA1598DD4156D44196D200C94B8A
2012-04-15 16:55 . 2012-04-15 16:55 35328 ----a-w- c:\windows\system32\DBBK\CB45A417C8EF7BA6BAC67EDCDDED8700
2012-04-15 16:55 . 2012-04-15 16:55 111616 ----a-w- c:\windows\system32\DBBK\15C126D1B55814B9E5CAB10A9C1F4C67
2012-04-15 16:55 . 2012-04-15 16:55 25088 ----a-w- c:\windows\system32\DBBK\8E38096AD5C8570A6F1570A61E251561
2012-04-15 16:55 . 2012-04-15 16:55 6144 ----a-w- c:\windows\system32\DBBK\505506526A9D467307B3C393DEDAF858
2012-04-15 16:55 . 2012-04-15 16:55 4608 ----a-w- c:\windows\system32\DBBK\F9756A98D69098DCA8945D62858A812C
2012-04-15 16:54 . 2012-04-15 16:54 54776 ----a-w- c:\windows\system32\DBBK\E896775837A8BCE436348DF460522394
2012-04-15 16:54 . 2012-04-15 16:54 108544 ----a-w- c:\windows\system32\DBBK\BE167ED0FDB9C1FA1133953C18D5A6C9
2012-04-15 16:54 . 2012-04-15 16:54 1288472 ----a-w- c:\windows\system32\DBBK\C30A91ADE8C9CB91E4281EC83C4500C6
2012-04-15 16:54 . 2012-04-15 16:54 55584 ----a-w- c:\windows\system32\DBBK\62A63EF2F3053B461CB327E4D69AAA74
2012-04-15 16:54 . 2012-04-15 16:54 64048 ----a-w- c:\windows\system32\DBBK\000751813ECEF491689176E72B3A8BEE
2012-04-15 16:54 . 2012-04-15 16:54 85376 ----a-w- c:\windows\system32\DBBK\05D860DA1040F111503AC416CCEF2BCA
2012-04-15 16:54 . 2012-04-15 16:54 14208 ----a-w- c:\windows\system32\DBBK\0C4E035C7F105F1299258C90886C64C5
2012-04-15 16:54 . 2012-04-15 16:54 49728 ----a-w- c:\windows\system32\DBBK\159FAD02F64E6381758C990F753BCC80
2012-04-15 16:54 . 2012-04-15 16:54 7680 ----a-w- c:\windows\system32\DBBK\4AA1EB65481C392955939E735D27118B
2012-04-15 16:54 . 2012-04-15 16:54 173440 ----a-w- c:\windows\system32\DBBK\518395321DC96FE2C9F0E96AC743B656
2012-04-15 16:54 . 2012-04-15 16:54 26704 ----a-w- c:\windows\system32\DBBK\5428227D4730EBDFC842E9FB593F8C8A
2012-04-15 16:54 . 2012-04-15 16:54 57424 ----a-w- c:\windows\system32\DBBK\565003F326F99802E68CA78F2A68E9FF
2012-04-15 16:54 . 2012-04-15 16:54 194800 ----a-w- c:\windows\system32\DBBK\8A73E79089B282100B9393B644CB853B
2012-04-15 16:54 . 2012-04-15 16:54 59272 ----a-w- c:\windows\system32\DBBK\998242A4EDE6992396A90585CC121F2C
2012-04-15 16:54 . 2012-04-15 16:54 140864 ----a-w- c:\windows\system32\DBBK\A6388A5ABF92C7927C085DB0A958125F
2012-04-15 16:54 . 2012-04-15 16:54 162896 ----a-w- c:\windows\system32\DBBK\0E008FC4819D238C51D7C93E7B41E560
2012-04-15 16:54 . 2012-04-15 16:54 43088 ----a-w- c:\windows\system32\DBBK\250F6B43D2B613172035C6747AEEB19F
2012-04-15 16:54 . 2012-04-15 16:54 240000 ----a-w- c:\windows\system32\DBBK\2899EF7AEEF6913ED4FCB0E8A7A04F46
2012-04-15 16:54 . 2012-04-15 16:54 187776 ----a-w- c:\windows\system32\DBBK\56E5C9B62BAD9EC85BC76940D28B6C11
2012-04-15 16:54 . 2012-04-15 16:54 369352 ----a-w- c:\windows\system32\DBBK\6427525D76F61D0C519B008D3680E8E7
2012-04-15 16:54 . 2012-04-15 16:54 1290608 ----a-w- c:\windows\system32\DBBK\65D10B191C59C5501A1263FC33F6894B
2012-04-15 16:54 . 2012-04-15 16:54 23640 ----a-w- c:\windows\system32\DBBK\792A8B80F8188ABA4B2BE271583F3E46
2012-04-15 16:54 . 2012-04-15 16:54 19824 ----a-w- c:\windows\system32\DBBK\7DAE5EBCC80E45D3253F4923DC424D05
2012-04-15 16:54 . 2012-04-15 16:54 17472 ----a-w- c:\windows\system32\DBBK\95CF1AE7527FB70F7816563CBC09D942
2012-04-15 16:54 . 2012-04-15 16:54 165680 ----a-w- c:\windows\system32\DBBK\C2FF7473A60C0FB2DF145AB686889653
2012-04-15 16:54 . 2012-04-15 16:54 134000 ----a-w- c:\windows\system32\DBBK\E73CAE53BBB72BA26918492C6B4C229D
2012-04-15 16:54 . 2012-04-15 16:54 712576 ----a-w- c:\windows\system32\DBBK\E7C54812A2AAF43316EB6930C1FFA108
2012-04-15 16:54 . 2012-04-15 16:54 67440 ----a-w- c:\windows\system32\DBBK\F4647BB23DB9038A7536CF6B68F4207F
2012-04-15 16:54 . 2012-04-15 16:54 245632 ----a-w- c:\windows\system32\DBBK\F497F67932C6FA693D7DE2780631CFE7
2012-04-15 16:54 . 2012-04-15 16:54 13888 ----a-w- c:\windows\system32\DBBK\0A4E5757AE09FA9622E3158CC1AEF114
2012-04-15 16:54 . 2012-04-15 16:54 25168 ----a-w- c:\windows\system32\DBBK\2B8EE031FD700AB942EBE60665440E83
2012-04-15 16:54 . 2012-04-15 16:54 21584 ----a-w- c:\windows\system32\DBBK\338C86357871C167A96AB976519BF59E
2012-04-15 16:54 . 2012-04-15 16:54 475704 ----a-w- c:\windows\system32\DBBK\37800FBB68D88E3C3E49BB9C97233E87
2012-04-15 16:54 . 2012-04-15 16:54 22400 ----a-w- c:\windows\system32\DBBK\46387FB17B086D16DEA267D5BE23A2F2
2012-04-15 16:54 . 2012-04-15 16:54 132992 ----a-w- c:\windows\system32\DBBK\4B55C9F9A93B3BFD01ED7366EB0B9D2E
2012-04-15 16:54 . 2012-04-15 16:54 53120 ----a-w- c:\windows\system32\DBBK\4C63E00F2F4B5F86AB48A58CD990F212
2012-04-15 16:54 . 2012-04-15 16:54 153984 ----a-w- c:\windows\system32\DBBK\673E55C3498EB970088E812EA820AA8F
2012-04-15 16:54 . 2012-04-15 16:54 58448 ----a-w- c:\windows\system32\DBBK\6CF00369C97F3CF563BE99BE983D13D8
2012-04-15 16:54 . 2012-04-15 16:54 198208 ----a-w- c:\windows\system32\DBBK\7520EC808E0C35E0EE6F841294316653
2012-04-15 16:54 . 2012-04-15 16:54 1211264 ----a-w- c:\windows\system32\DBBK\81189C3D7763838E55C397759D49007A
2012-04-15 16:54 . 2012-04-15 16:54 14912 ----a-w- c:\windows\system32\DBBK\9A5B1059FE015DB5269FBB25ACBF841D
2012-04-15 16:54 . 2012-04-15 16:54 32832 ----a-w- c:\windows\system32\DBBK\A059C4C3EDB09E07D21A8E5C0AABD3CB
2012-04-15 16:54 . 2012-04-15 16:54 19024 ----a-w- c:\windows\system32\DBBK\A6023D3823C37043986713F118A89BEE
2012-04-15 16:54 . 2012-04-15 16:54 12368 ----a-w- c:\windows\system32\DBBK\AFE86F419014DB4E5593F69FFE26CE0A
2012-04-15 16:54 . 2012-04-15 16:54 297040 ----a-w- c:\windows\system32\DBBK\B5BB72067DDDDBBFB04B2F89FF8C3C87
2012-04-15 16:54 . 2012-04-15 16:54 56192 ----a-w- c:\windows\system32\DBBK\BF8F6AF06DA75B336F07E23AEF97D93B
2012-04-15 16:54 . 2012-04-15 16:54 42560 ----a-w- c:\windows\system32\DBBK\EDE040D666FF81BF1978D0F19F799E7A
2012-04-15 16:54 . 2012-04-15 16:54 78208 ----a-w- c:\windows\system32\DBBK\FC8771F45ECCCFD89684E38842539B9B
2012-04-15 16:54 . 2012-04-15 16:54 3072 ----a-w- c:\windows\system32\DBBK\12DCA4373B9B0B3CFE505B0025BEB952
2012-04-15 16:54 . 2012-04-15 16:54 690680 ----a-w- c:\windows\system32\DBBK\1319CD4619E96B156911CA3897563EBC
2012-04-15 16:54 . 2012-04-15 16:54 249408 ----a-w- c:\windows\system32\DBBK\635181E0E9BBF16871BF5380D71DB02D
2012-04-15 16:54 . 2012-04-15 16:54 27528 ----a-w- c:\windows\system32\DBBK\718FB269AF435683E8ADBD5D2B36CF1A
2012-04-15 16:54 . 2012-04-15 16:54 445008 ----a-w- c:\windows\system32\DBBK\9950E3D0F08141C7E89E64456AE7DC73
2012-04-15 16:54 . 2012-04-15 16:54 20744 ----a-w- c:\windows\system32\DBBK\B41CB3AA2E0AAE024B4FB316FE440BE4
2012-04-15 16:54 . 2012-04-15 16:54 9096 ----a-w- c:\windows\system32\DBBK\C91F0B434B6F95A7EEC71361D166DFBF
2012-04-15 16:54 . 2012-04-15 16:54 274304 ----a-w- c:\windows\system32\DBBK\CEA80C80BED809AA0DA6FEBC04733349
2012-04-15 16:54 . 2012-04-15 16:54 21584 ----a-w- c:\windows\system32\DBBK\D5037B4C527AB5069C48C9C09A12756D
2012-04-15 16:54 . 2012-04-15 16:54 52816 ----a-w- c:\windows\system32\DBBK\D93A937A2A9D2CBC06B3A615A197011F
2012-04-15 16:54 . 2012-04-15 16:54 31824 ----a-w- c:\windows\system32\DBBK\EBCB31CB206A67ECE2207764FD612EC1
2012-04-15 16:54 . 2012-04-15 16:54 225664 ----a-w- c:\windows\system32\DBBK\F0B3EFFD3D114C5ABC75BA81302AFCFF
2012-04-15 16:54 . 2012-04-15 16:54 38480 ----a-w- c:\windows\system32\DBBK\FE7A7675C26FE936226641EF32AE9BB5
2012-04-15 16:54 . 2012-04-15 16:54 35408 ----a-w- c:\windows\system32\DBBK\B7EFEF22FF426EC4158A177CB3B558D3
2012-04-15 16:54 . 2012-04-15 16:54 15952 ----a-w- c:\windows\system32\DBBK\C8C436ACCF484F153E687B65031D17C4
.
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK]
@="{3c3f3c1a-9153-7c05-f938-622e7003894d}"
[HKEY_CLASSES_ROOT\CLSID\{3c3f3c1a-9153-7c05-f938-622e7003894d}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK2]
@="{e6ea1d7d-144e-b977-98c4-84c53c1a69d0}"
[HKEY_CLASSES_ROOT\CLSID\{e6ea1d7d-144e-b977-98c4-84c53c1a69d0}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\MOBK3]
@="{b4caf489-1eec-c617-49ad-8d7088598c06}"
[HKEY_CLASSES_ROOT\CLSID\{b4caf489-1eec-c617-49ad-8d7088598c06}]
2010-04-14 03:11 2872120 ----a-w- c:\program files\McAfee Online Backup\MOBKshell.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ehTray.exe"="c:\windows\ehome\ehTray.exe" [2010-11-20 144384]
"TOSCDSPD"="c:\program files\TOSHIBA\TOSCDSPD\TOSCDSPD.exe" [2008-01-30 430080]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SynTPEnh"="c:\program files\Synaptics\SynTP\SynTPEnh.exe" [2007-12-07 1029416]
"RtHDVCpl"="RtHDVCpl.exe" [2008-01-30 4911104]
"Skytel"="Skytel.exe" [2007-11-21 1826816]
"00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2008-01-22 712704]
"Camera Assistant Software"="c:\program files\Camera Assistant Software for Toshiba\traybar.exe" [2007-10-26 413696]
"eBook Library Launcher"="c:\program files\Sony\Reader\Data\bin\launcher\Reader Library Launcher.exe" [2009-11-24 906640]
"Google Desktop Search"="c:\program files\Google\Google Desktop Search\GoogleDesktop.exe" [2008-02-13 1862144]
"HostManager"="c:\program files\Common Files\AOL\1244832265\ee\AOLSoftware.exe" [2008-06-24 41824]
"HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2007-11-01 54608]
"ITSecMng"="c:\program files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2007-09-29 75136]
"PCMAgent"="c:\program files\CyberLink\PowerCinema for TOSHIBA\PCMAgent.exe" [2009-04-11 143360]
"SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2007-06-16 448080]
"TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2008-01-17 431456]
"CLMLServer"="c:\program files\CyberLink\PowerCinema for TOSHIBA\Kernel\CLML\CLMLSvc.exe" [2009-04-11 200704]
"QuickTime Task"="c:\program files\QuickTime\QTTask.exe" [2010-11-30 421888]
"Logitech Download Assistant"="c:\windows\System32\LogiLDA.dll" [2010-11-04 1246544]
"mcui_exe"="c:\program files\McAfee.com\Agent\mcagent.exe" [2011-11-23 1318816]
"McPvTray_exe"="c:\program files\McAfee\MAT\McPvTray.exe" [2011-04-08 419904]
"APSDaemon"="c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2012-02-21 59240]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2012-03-27 37296]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-01-02 843712]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe" [2012-03-27 421736]
.
c:\users\bjs\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
ERUNT AutoBackup.lnk - c:\program files\ERUNT\AUTOBACK.EXE [2005-10-20 38912]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\drivers32]
"aux"=wdmaud.drv
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\setup\disabledrunkeys]
"StartCCC"=c:\program files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe
.
R1 jswpslwf;JumpStart Wireless Filter Driver;c:\windows\system32\DRIVERS\jswpslwf.sys [2007-09-01 20352]
R2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
R2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [2012-02-29 158856]
R3 jswpsapi;Jumpstart Wifi Protected Setup;c:\program files\Jumpstart\jswpsapi.exe [2007-10-30 937984]
R3 mferkdet;McAfee Inc. mferkdet;c:\windows\system32\drivers\mferkdet.sys [2012-04-15 87656]
R3 MSSQL$NR2007;SQL Server (NR2007);c:\program files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2010-12-11 29293408]
R3 pcouffin;VSO Software pcouffin;c:\windows\system32\Drivers\pcouffin.sys [2009-06-25 47360]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2010-11-20 52224]
R3 WatAdminSvc;Windows Activation Technologies Service;c:\windows\system32\Wat\WatAdminSvc.exe [2010-07-11 1343400]
R3 WDC_SAM;WD SCSI Pass Thru driver;c:\windows\system32\DRIVERS\wdcsam.sys [2008-05-07 11520]
S0 McPvDrv;McPvDrv Driver;c:\windows\system32\drivers\McPvDrv.sys [2011-04-11 64048]
S0 mfewfpk;McAfee Inc. mfewfpk;c:\windows\system32\drivers\mfewfpk.sys [2011-10-15 165680]
S1 mfenlfk;McAfee NDIS Light Filter;c:\windows\system32\DRIVERS\mfenlfk.sys [2011-10-15 64880]
S1 MOBKFilter;MOBKFilter;c:\windows\system32\DRIVERS\MOBK.sys [2010-04-14 54776]
S1 vwififlt;Virtual WiFi Filter Driver;c:\windows\system32\DRIVERS\vwififlt.sys [2009-07-13 48128]
S2 ConfigFree Service;ConfigFree Service;c:\program files\TOSHIBA\ConfigFree\CFSvcs.exe [2007-12-25 40960]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 McMPFSvc;McAfee Personal Firewall Service;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 McNaiAnn;McAfee VirusScan Announcer;c:\program files\Common Files\Mcafee\McSvcHost\McSvHost.exe [2011-01-28 214904]
S2 mfefire;McAfee Firewall Core Service;c:\program files\Common Files\McAfee\SystemCore\\mfefire.exe [2011-10-18 160608]
S2 mfevtp;McAfee Validation Trust Protection Service;c:\windows\system32\mfevtps.exe [2012-04-15 159608]
S2 MOBKbackup;McAfee Online Backup;c:\program files\McAfee Online Backup\MOBKbackup.exe [2010-04-14 229688]
S2 NeatReceipts Database Controller;NeatReceipts Database Controller;c:\program files\Common Files\NeatReceipts\DB Controller\NeatReceiptsDBController.exe [2008-02-05 228480]
S2 SBSDWSCService;SBSD Security Center Service;c:\program files\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S2 TOSHIBA SMART Log Service;TOSHIBA SMART Log Service;c:\program files\TOSHIBA\SMARTLogService\TosIPCSrv.exe [2007-12-04 126976]
S2 WDDMService;WD SmartWare Drive Manager;c:\program files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [2009-10-14 98304]
S2 WDSmartWareBackgroundService;WD SmartWare Background Service;c:\program files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [2009-06-16 20480]
S3 cfwids;McAfee Inc. cfwids;c:\windows\system32\drivers\cfwids.sys [2011-10-15 57600]
S3 FwLnk;FwLnk Driver;c:\windows\system32\DRIVERS\FwLnk.sys [2006-11-20 7168]
S3 mfefirek;McAfee Inc. mfefirek;c:\windows\system32\drivers\mfefirek.sys [2011-10-15 338176]
.
.
--- Other Services/Drivers In Memory ---
.
*Deregistered* - mfeavfk01
.
.
------- Supplementary Scan -------
.
uStart Page = hxxp://www.blackle.com/
uInternet Settings,ProxyOverride = *.local
uSearchURL,(Default) = hxxp://search.yahoo.com/search?fr=mcafee&p=%s
IE: E&xport to Microsoft Excel - c:\progra~1\MICROS~3\Office12\EXCEL.EXE/3000
Trusted Zone: intuit.com\ttlc
TCP: DhcpNameServer = 75.75.75.75 75.75.76.76
FF - ProfilePath - c:\users\bjs\AppData\Roaming\Mozilla\Firefox\Profiles\w06ndksw.default\
.
.
--------------------- LOCKED REGISTRY KEYS ---------------------
.
[HKEY_LOCAL_MACHINE\software\Toshiba\IVP\Services\Software Upgrades\Swupdtmr]
@DACL=(02 0000)
@SACL=
"STATE"=dword:00000003
"TMH"=dword:01cc1cac
"TML"=dword:9b2c0b9b
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
"MSCurrentCountry"=dword:000000b5
.
[HKEY_LOCAL_MACHINE\system\ControlSet002\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
--------------------- DLLs Loaded Under Running Processes ---------------------
.
- - - - - - - > 'Explorer.exe'(1352)
c:\program files\McAfee Online Backup\MOBKshell.dll
.
------------------------ Other Running Processes ------------------------
.
c:\windows\system32\Ati2evxx.exe
c:\windows\system32\Ati2evxx.exe
c:\program files\Common Files\AOL\ACS\AOLAcsd.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\windows\system32\rundll32.exe
c:\toshiba\IVP\ISM\pinger.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
c:\program files\Microsoft SQL Server\90\Shared\sqlwriter.exe
c:\toshiba\IVP\swupdate\swupdtmr.exe
c:\program files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
c:\windows\system32\TODDSrv.exe
c:\program files\Toshiba\Power Saver\TosCoSrv.exe
c:\program files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
c:\program files\Common Files\McAfee\SystemCore\mcshield.exe
c:\program files\Common Files\McAfee\SystemCore\mfefire.exe
c:\windows\system32\taskhost.exe
c:\windows\system32\conhost.exe
c:\program files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
c:\progra~1\mcafee.com\agent\mcagent.exe
c:\windows\system32\vssvc.exe
.
**************************************************************************
.
Completion time: 2012-04-22 10:17:35 - machine was rebooted
ComboFix-quarantined-files.txt 2012-04-22 17:17
ComboFix2.txt 2012-04-21 16:49
.
Pre-Run: 102,063,779,840 bytes free
Post-Run: 102,014,820,352 bytes free
.
- - End Of File - - DEECB0A2D04469DBBCC57AFD0AD4A06C

#8 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:04:29 PM

Posted 22 April 2012 - 01:02 PM

Hi,



You can verify by yourself that the first log wasn't posted in your previous reply. :)

About the Virustotal results - it seems that you scanned only this file C:\Windows\System32\drivers\20120415100542.afd.sys

I've asked you to scan this one - File name: C:\Windows\System32\drivers\afd.sys too.



Now please carefully follow my next set of steps: :)



Please download the latest version of TDSSKiller from here and save it to your Desktop.

  • Doubleclick on TDSSKiller.exe to run the application, then click on Change parameters.

    Posted Image
  • Check the boxes beside Verify Driver Digital Signature and Detect TDLFS file system, then click OK.

    Posted Image
  • Click the Start Scan button.

    Posted Image
  • If a suspicious object is detected, the default action will be Skip, click on Continue.

    Posted Image
  • If malicious objects are found, they will show in the Scan results - Select action for found objects and offer three options.
    Ensure Cure (default) is selected, then click Continue > Reboot now to finish the cleaning process.

    Posted Image

    Note: If Cure is not available, please choose Skip instead, do not choose Delete unless instructed.
  • A report will be created in your root directory, (usually C:\ folder) in the form of "TDSSKiller.[Version]_[Date]_[Time]_log.txt". Please copy and paste the contents of that file here.



  • Please download OTL from the link below:
  • Save it to your desktop.
  • Double click on the Posted Image icon on your desktop.
  • OTL should now start. Change the following settings:
    - Click on Scan All Users checkbox given at the top.Posted Image
    - Under File Scans, change File age to 90
    - Check the boxes beside LOP Check and Purity Check
  • Copy and Paste the following code into the Posted Image textbox.
    netsvcs
    msconfig
    safebootminimal
    safebootnetwork
    "%WinDir%\$NtUninstallKB*$." /30
    C:\Program Files\Common Files\ComObjects\*.* /s
    %SYSTEMDRIVE%\*.*
    %USERPROFILE%\*.*
    %USERPROFILE%\AppData\Local\*.*
    %USERPROFILE%\AppData\Roaming\*.*
    %ProgramData%\*.*
    %CommonProgramFiles%\*.*
    %PROGRAMFILES%\*.*
    %systemroot%\system32\config\systemprofile\AppData\Local\*.*
    %windir%\ServiceProfiles\LocalService\AppData\Local\Temp\*.*
    %windir%\ServiceProfiles\NetworkService\AppData\Local\Temp\*.*
    %windir%\temp\*.*
    %windir%\system32\*.
    %Temp%\smtmp\1\*.*
    %Temp%\smtmp\2\*.*
    %Temp%\smtmp\3\*.*
    %Temp%\smtmp\4\*.*
    %systemroot%\system32\DBBK\*.* /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /90
    %systemroot%\system32\drivers\*.sys /lockedfiles
    %systemroot%\system32\Spool\prtprocs\w32x86\*.dll
    %systemroot%\*. /rp /s
    %systemroot%\assembly\tmp\*.* /S /MD5
    %systemroot%\assembly\temp\*.* /S /MD5
    %systemroot%\assembly\GAC_32\*.* /S /MD5
    %SystemRoot%\assembly\GAC_MSIL\*.* /S /MD5
    >C:\commands.txt echo list vol /raw /hide /c
    /wait
    >C:\DiskReport.txt diskpart /s C:\commands.txt /raw /hide /c
    /wait
    type c:\diskreport.txt /c
    /wait
    erase c:\commands.txt /hide /c
    /wait
    erase c:\diskreport.txt /hide /c
    /md5start
    explorer.exe
    lsass.exe
    svchost.exe
    wininit.exe
    winlogon.exe
    userinit.exe
    atapi.sys
    iaStor.sys
    serial.sys
    volsnap.sys
    disk.sys
    redbook.sys
    i8042prt.sys
    afd.sys
    netbt.sys
    csc.sys
    tcpip.sys
    dfsc.sys
    hlp.dat
    /md5stop
    
  • Push the Posted Image button.
  • Two reports will open, copy and paste them in a reply here:
    • OTL.txt <-- Will be opened
    • Extra.txt <-- Will be minimized


Regards,
Georgi

cXfZ4wS.png


#9 APPleas

APPleas
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:29 AM

Posted 22 April 2012 - 06:52 PM

I tried to post all 3 txt files here but it said my post was too long - so I will do them all separately. Did you still want me to run the scan on the other file I forgot last time?

Here is TDSSKiller text file

11:23:02.0304 5800 TDSS rootkit removing tool 2.7.31.0 Apr 20 2012 19:49:47
11:23:04.0312 5800 ============================================================
11:23:04.0312 5800 Current date / time: 2012/04/22 11:23:04.0312
11:23:04.0312 5800 SystemInfo:
11:23:04.0312 5800
11:23:04.0313 5800 OS Version: 6.1.7601 ServicePack: 1.0
11:23:04.0313 5800 Product type: Workstation
11:23:04.0313 5800 ComputerName: RWE-PC
11:23:04.0313 5800 UserName: bjs
11:23:04.0313 5800 Windows directory: C:\Windows
11:23:04.0313 5800 System windows directory: C:\Windows
11:23:04.0313 5800 Processor architecture: Intel x86
11:23:04.0313 5800 Number of processors: 2
11:23:04.0313 5800 Page size: 0x1000
11:23:04.0313 5800 Boot type: Normal boot
11:23:04.0313 5800 ============================================================
11:23:07.0036 5800 Drive \Device\Harddisk0\DR0 - Size: 0x3A38B2E000 (232.89 Gb), SectorSize: 0x200, Cylinders: 0x76C1, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
11:23:07.0043 5800 \Device\Harddisk0\DR0:
11:23:07.0059 5800 MBR partitions:
11:23:07.0059 5800 \Device\Harddisk0\DR0\Partition0: MBR, Type 0x7, StartLBA 0x2EE800, BlocksNum 0x1C27C800
11:23:07.0088 5800 C: <-> \Device\Harddisk0\DR0\Partition0
11:23:07.0089 5800 Initialize success
11:23:07.0089 5800 ============================================================
11:27:14.0144 1728 ============================================================
11:27:14.0144 1728 Scan started
11:27:14.0144 1728 Mode: Manual; SigCheck; TDLFS;
11:27:14.0144 1728 ============================================================
11:27:15.0013 1728 1394ohci (1b133875b8aa8ac48969bd3458afe9f5) C:\Windows\system32\drivers\1394ohci.sys
11:27:15.0306 1728 1394ohci - ok
11:27:15.0440 1728 3dkeybd - ok
11:27:15.0497 1728 aavmker4 - ok
11:27:15.0529 1728 acdservice - ok
11:27:15.0638 1728 ACPI (cea80c80bed809aa0da6febc04733349) C:\Windows\system32\drivers\ACPI.sys
11:27:15.0703 1728 ACPI - ok
11:27:15.0849 1728 AcpiPmi (1efbc664abff416d1d07db115dcb264f) C:\Windows\system32\drivers\acpipmi.sys
11:27:16.0193 1728 AcpiPmi - ok
11:27:16.0253 1728 adaptecstoragemanageragent - ok
11:27:16.0347 1728 adiloader - ok
11:27:16.0440 1728 adp94xx (21e785ebd7dc90a06391141aac7892fb) C:\Windows\system32\DRIVERS\adp94xx.sys
11:27:16.0541 1728 adp94xx - ok
11:27:16.0617 1728 adpahci (0c676bc278d5b59ff5abd57bbe9123f2) C:\Windows\system32\DRIVERS\adpahci.sys
11:27:16.0691 1728 adpahci - ok
11:27:16.0835 1728 adpu320 (7c7b5ee4b7b822ec85321fe23a27db33) C:\Windows\system32\DRIVERS\adpu320.sys
11:27:16.0913 1728 adpu320 - ok
11:27:16.0998 1728 AeLookupSvc (8b5eefeec1e6d1a72a06c526628ad161) C:\Windows\System32\aelupsvc.dll
11:27:17.0124 1728 AeLookupSvc - ok
11:27:17.0304 1728 AFD (9ebbba55060f786f0fcaa3893bfa2806) C:\Windows\system32\drivers\afd.sys
11:27:17.0723 1728 AFD - ok
11:27:17.0836 1728 agentsrv - ok
11:27:17.0887 1728 ageremodemaudio - ok
11:27:18.0028 1728 AgereSoftModem (7e10e3bb9b258ad8a9300f91214d67b9) C:\Windows\system32\DRIVERS\AGRSM.sys
11:27:18.0194 1728 AgereSoftModem - ok
11:27:18.0349 1728 agp440 (507812c3054c21cef746b6ee3d04dd6e) C:\Windows\system32\drivers\agp440.sys
11:27:18.0416 1728 agp440 - ok
11:27:18.0467 1728 agpcpq - ok
11:27:18.0521 1728 aic78xx (8b30250d573a8f6b4bd23195160d8707) C:\Windows\system32\DRIVERS\djsvs.sys
11:27:18.0579 1728 aic78xx - ok
11:27:18.0669 1728 akshhl - ok
11:27:18.0713 1728 alcxsens - ok
11:27:18.0775 1728 ALG (18a54e132947cd98fea9accc57f98f13) C:\Windows\System32\alg.exe
11:27:18.0872 1728 ALG - ok
11:27:18.0915 1728 aliide (0d40bcf52ea90fc7df2aeab6503dea44) C:\Windows\system32\drivers\aliide.sys
11:27:18.0981 1728 aliide - ok
11:27:19.0249 1728 amdagp (3c6600a0696e90a463771c7422e23ab5) C:\Windows\system32\drivers\amdagp.sys
11:27:19.0317 1728 amdagp - ok
11:27:19.0346 1728 amdide (cd5914170297126b6266860198d1d4f0) C:\Windows\system32\drivers\amdide.sys
11:27:19.0405 1728 amdide - ok
11:27:19.0515 1728 AmdK8 (00dda200d71bac534bf56a9db5dfd666) C:\Windows\system32\DRIVERS\amdk8.sys
11:27:19.0617 1728 AmdK8 - ok
11:27:19.0746 1728 AmdPPM (3cbf30f5370fda40dd3e87df38ea53b6) C:\Windows\system32\DRIVERS\amdppm.sys
11:27:19.0837 1728 AmdPPM - ok
11:27:19.0946 1728 amdsata (d320bf87125326f996d4904fe24300fc) C:\Windows\system32\drivers\amdsata.sys
11:27:20.0423 1728 amdsata - ok
11:27:20.0570 1728 amdsbs (ea43af0c423ff267355f74e7a53bdaba) C:\Windows\system32\DRIVERS\amdsbs.sys
11:27:20.0632 1728 amdsbs - ok
11:27:20.0711 1728 amdxata (46387fb17b086d16dea267d5be23a2f2) C:\Windows\system32\drivers\amdxata.sys
11:27:21.0180 1728 amdxata - ok
11:27:21.0201 1728 Anydlc - ok
11:27:21.0383 1728 AOL ACS (85180cf88c5ebad73b452a43a004ca51) C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
11:27:21.0432 1728 AOL ACS - ok
11:27:21.0544 1728 apfiltrservice - ok
11:27:21.0625 1728 AppID (aea177f783e20150ace5383ee368da19) C:\Windows\system32\drivers\appid.sys
11:27:22.0238 1728 AppID - ok
11:27:22.0361 1728 AppIDSvc (62a9c86cb6085e20db4823e4e97826f5) C:\Windows\System32\appidsvc.dll
11:27:22.0467 1728 AppIDSvc - ok
11:27:22.0540 1728 Appinfo (fb1959012294d6ad43e5304df65e3c26) C:\Windows\System32\appinfo.dll
11:27:22.0661 1728 Appinfo - ok
11:27:22.0776 1728 Apple Mobile Device (7ef47644b74ebe721cc32211d3c35e76) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
11:27:22.0822 1728 Apple Mobile Device - ok
11:27:22.0999 1728 arc (2932004f49677bd84dbc72edb754ffb3) C:\Windows\system32\DRIVERS\arc.sys
11:27:23.0061 1728 arc - ok
11:27:23.0096 1728 arcsas (5d6f36c46fd283ae1b57bd2e9feb0bc7) C:\Windows\system32\DRIVERS\arcsas.sys
11:27:23.0168 1728 arcsas - ok
11:27:23.0203 1728 arp1394 - ok
11:27:23.0266 1728 AsyncMac (add2ade1c2b285ab8378d2daaf991481) C:\Windows\system32\DRIVERS\asyncmac.sys
11:27:23.0478 1728 AsyncMac - ok
11:27:23.0624 1728 atapi (338c86357871c167a96ab976519bf59e) C:\Windows\system32\drivers\atapi.sys
11:27:23.0670 1728 atapi - ok
11:27:23.0731 1728 AtcL002 - ok
11:27:23.0836 1728 athr (ac4adac154563ab41cc79b0257bc685a) C:\Windows\system32\DRIVERS\athr.sys
11:27:24.0396 1728 athr - ok
11:27:24.0545 1728 Ati External Event Utility (581b9be9e92a0f3856cc85ec011edc6f) C:\Windows\system32\Ati2evxx.exe
11:27:24.0675 1728 Ati External Event Utility - ok
11:27:24.0697 1728 ati2mtaa - ok
11:27:24.0869 1728 atikmdag (22d300f835600c9c634860cf2912f9cf) C:\Windows\system32\DRIVERS\atikmdag.sys
11:27:25.0265 1728 atikmdag - ok
11:27:25.0415 1728 AtiPcie (4aa1eb65481c392955939e735d27118b) C:\Windows\system32\DRIVERS\AtiPcie.sys
11:27:25.0737 1728 AtiPcie - ok
11:27:25.0785 1728 Atmuni - ok
11:27:25.0860 1728 AudioEndpointBuilder (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
11:27:25.0967 1728 AudioEndpointBuilder - ok
11:27:25.0993 1728 Audiosrv (ce3b4e731638d2ef62fcb419be0d39f0) C:\Windows\System32\Audiosrv.dll
11:27:26.0097 1728 Audiosrv - ok
11:27:26.0215 1728 automate5 - ok
11:27:26.0272 1728 avgfwsrv - ok
11:27:26.0337 1728 AxInstSV (6e30d02aac9cac84f421622e3a2f6178) C:\Windows\System32\AxInstSV.dll
11:27:26.0474 1728 AxInstSV - ok
11:27:26.0625 1728 b06bdrv (1a231abec60fd316ec54c66715543cec) C:\Windows\system32\DRIVERS\bxvbdx.sys
11:27:26.0761 1728 b06bdrv - ok
11:27:26.0806 1728 b57nd60x (bd8869eb9cde6bbe4508d869929869ee) C:\Windows\system32\DRIVERS\b57nd60x.sys
11:27:26.0873 1728 b57nd60x - ok
11:27:26.0981 1728 backuplauncher - ok
11:27:27.0042 1728 bcm43xx - ok
11:27:27.0070 1728 bcoreusb - ok
11:27:27.0139 1728 BDESVC (ee1e9c3bb8228ae423dd38db69128e71) C:\Windows\System32\bdesvc.dll
11:27:27.0251 1728 BDESVC - ok
11:27:27.0417 1728 Beep (505506526a9d467307b3c393dedaf858) C:\Windows\system32\drivers\Beep.sys
11:27:27.0532 1728 Beep - ok
11:27:27.0628 1728 BFE (1e2bac209d184bb851e1a187d8a29136) C:\Windows\System32\bfe.dll
11:27:27.0757 1728 BFE - ok
11:27:27.0871 1728 bgmainsvc - ok
11:27:27.0989 1728 BITS (e585445d5021971fae10393f0f1c3961) C:\Windows\system32\qmgr.dll
11:27:28.0117 1728 BITS - ok
11:27:28.0286 1728 blbdrive (2287078ed48fcfc477b05b20cf38f36f) C:\Windows\system32\DRIVERS\blbdrive.sys
11:27:28.0378 1728 blbdrive - ok
11:27:28.0415 1728 Blfp - ok
11:27:28.0446 1728 bobo - ok
11:27:28.0576 1728 Bonjour Service (db5bea73edaf19ac68b2c0fad0f92b1a) C:\Program Files\Bonjour\mDNSResponder.exe
11:27:28.0635 1728 Bonjour Service - ok
11:27:28.0811 1728 bowser (8f2da3028d5fcbd1a060a3de64cd6506) C:\Windows\system32\DRIVERS\bowser.sys
11:27:29.0130 1728 bowser - ok
11:27:29.0205 1728 BrFiltLo (9f9acc7f7ccde8a15c282d3f88b43309) C:\Windows\system32\DRIVERS\BrFiltLo.sys
11:27:29.0334 1728 BrFiltLo - ok
11:27:29.0441 1728 BrFiltUp (56801ad62213a41f6497f96dee83755a) C:\Windows\system32\DRIVERS\BrFiltUp.sys
11:27:29.0538 1728 BrFiltUp - ok
11:27:29.0590 1728 BridgeMP (77361d72a04f18809d0efb6cceb74d4b) C:\Windows\system32\DRIVERS\bridge.sys
11:27:29.0725 1728 BridgeMP - ok
11:27:29.0872 1728 Browser (6e11f33d14d020f58d5e02e4d67dfa19) C:\Windows\System32\browser.dll
11:27:29.0998 1728 Browser - ok
11:27:30.0117 1728 Brserid (845b8ce732e67f3b4133164868c666ea) C:\Windows\System32\Drivers\Brserid.sys
11:27:30.0206 1728 Brserid - ok
11:27:30.0301 1728 BrSerWdm (203f0b1e73adadbbb7b7b1fabd901f6b) C:\Windows\System32\Drivers\BrSerWdm.sys
11:27:30.0397 1728 BrSerWdm - ok
11:27:30.0481 1728 BrUsbMdm (bd456606156ba17e60a04e18016ae54b) C:\Windows\System32\Drivers\BrUsbMdm.sys
11:27:30.0567 1728 BrUsbMdm - ok
11:27:30.0600 1728 BrUsbSer (af72ed54503f717a43268b3cc5faec2e) C:\Windows\System32\Drivers\BrUsbSer.sys
11:27:30.0695 1728 BrUsbSer - ok
11:27:30.0805 1728 BTHMODEM (ed3df7c56ce0084eb2034432fc56565a) C:\Windows\system32\DRIVERS\bthmodem.sys
11:27:30.0898 1728 BTHMODEM - ok
11:27:30.0929 1728 bthpan - ok
11:27:31.0003 1728 bthserv (1df19c96eef6c29d1c3e1a8678e07190) C:\Windows\system32\bthserv.dll
11:27:31.0130 1728 bthserv - ok
11:27:31.0238 1728 btwaudio - ok
11:27:31.0265 1728 btwdins - ok
11:27:31.0296 1728 caboagp - ok
11:27:31.0328 1728 CAM1210 - ok
11:27:31.0361 1728 CAMCAUD - ok
11:27:31.0509 1728 catchme - ok
11:27:31.0638 1728 CBTNDIS5 - ok
11:27:31.0695 1728 ccalib8 - ok
11:27:31.0816 1728 cdfs (77ea11b065e0a8ab902d78145ca51e10) C:\Windows\system32\DRIVERS\cdfs.sys
11:27:31.0950 1728 cdfs - ok
11:27:32.0049 1728 cdrbsdrv - ok
11:27:32.0158 1728 cdrom (be167ed0fdb9c1fa1133953c18d5a6c9) C:\Windows\system32\drivers\cdrom.sys
11:27:32.0456 1728 cdrom - ok
11:27:32.0535 1728 CertPropSvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
11:27:32.0650 1728 CertPropSvc - ok
11:27:32.0765 1728 cfwids (1dcb5209601a70e36c70fe8d197d62cb) C:\Windows\system32\drivers\cfwids.sys
11:27:33.0863 1728 cfwids - ok
11:27:33.0971 1728 Cinemsup - ok
11:27:34.0083 1728 circlass (3fe3fe94a34df6fb06e6418d0f6a0060) C:\Windows\system32\DRIVERS\circlass.sys
11:27:34.0172 1728 circlass - ok
11:27:34.0304 1728 CLFS (635181e0e9bbf16871bf5380d71db02d) C:\Windows\system32\CLFS.sys
11:27:34.0377 1728 CLFS - ok
11:27:34.0471 1728 clmtomcatstartersvc - ok
11:27:34.0527 1728 ClntMgmt.sys - ok
11:27:34.0714 1728 clr_optimization_v2.0.50727_32 (d88040f816fda31c3b466f0fa0918f29) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
11:27:34.0771 1728 clr_optimization_v2.0.50727_32 - ok
11:27:34.0863 1728 clr_optimization_v4.0.30319_32 (c5a75eb48e2344abdc162bda79e16841) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
11:27:35.0134 1728 clr_optimization_v4.0.30319_32 - ok
11:27:35.0265 1728 CmBatt (dea805815e587dad1dd2c502220b5616) C:\Windows\system32\DRIVERS\CmBatt.sys
11:27:35.0353 1728 CmBatt - ok
11:27:35.0452 1728 cmdide (c537b1db64d495b9b4717b4d6d9edbf2) C:\Windows\system32\drivers\cmdide.sys
11:27:35.0505 1728 cmdide - ok
11:27:35.0634 1728 CNG (6427525d76f61d0c519b008d3680e8e7) C:\Windows\system32\Drivers\cng.sys
11:27:36.0033 1728 CNG - ok
11:27:36.0119 1728 CoachUsb - ok
11:27:36.0180 1728 Compbatt (a6023d3823c37043986713f118a89bee) C:\Windows\system32\DRIVERS\compbatt.sys
11:27:36.0238 1728 Compbatt - ok
11:27:36.0361 1728 CompositeBus (cbe8c58a8579cfe5fccf809e6f114e89) C:\Windows\system32\drivers\CompositeBus.sys
11:27:36.0658 1728 CompositeBus - ok
11:27:36.0708 1728 COMSysApp - ok
11:27:36.0838 1728 ConfigFree Service (596e452b5152ec9afe8153d296459d2b) C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
11:27:36.0876 1728 ConfigFree Service ( UnsignedFile.Multi.Generic ) - warning
11:27:36.0876 1728 ConfigFree Service - detected UnsignedFile.Multi.Generic (1)
11:27:36.0948 1728 co_mon - ok
11:27:37.0007 1728 cpqdfw - ok
11:27:37.0036 1728 cq_mem - ok
11:27:37.0115 1728 crcdisk (2c4ebcfc84a9b44f209dff6c6e6c61d1) C:\Windows\system32\DRIVERS\crcdisk.sys
11:27:37.0178 1728 crcdisk - ok
11:27:37.0263 1728 CryptSvc (a585bebf7d054bd9618eda0922d5484a) C:\Windows\system32\cryptsvc.dll
11:27:37.0377 1728 CryptSvc - ok
11:27:37.0437 1728 ctdvda2k - ok
11:27:37.0540 1728 CTERFXFX.DLL - ok
11:27:37.0589 1728 CTHWIUT.DLL - ok
11:27:37.0621 1728 CTSYN - ok
11:27:37.0652 1728 curtainssyssvc - ok
11:27:37.0685 1728 cwafadminmonitor - ok
11:27:37.0765 1728 DcomLaunch (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
11:27:37.0889 1728 DcomLaunch - ok
11:27:37.0997 1728 defragsvc (8d6e10a2d9a5eed59562d9b82cf804e1) C:\Windows\System32\defragsvc.dll
11:27:38.0119 1728 defragsvc - ok
11:27:38.0196 1728 df5serv - ok
11:27:38.0319 1728 DfsC (b5dbab2a6c8b6d89ca90d20439a39e5f) C:\Windows\system32\Drivers\dfsc.sys
11:27:38.0500 1728 DfsC ( Virus.Win32.ZAccess.c ) - infected
11:27:38.0500 1728 DfsC - detected Virus.Win32.ZAccess.c (0)
11:27:38.0649 1728 Dhcp (e9e01eb683c132f7fa27cd607b8a2b63) C:\Windows\system32\dhcpcore.dll
11:27:38.0749 1728 Dhcp - ok
11:27:38.0807 1728 digictrl - ok
11:27:38.0884 1728 discache (1a050b0274bfb3890703d490f330c0da) C:\Windows\system32\drivers\discache.sys
11:27:39.0011 1728 discache - ok
11:27:39.0074 1728 Disk (565003f326f99802e68ca78f2a68e9ff) C:\Windows\system32\DRIVERS\disk.sys
11:27:39.0130 1728 Disk - ok
11:27:39.0208 1728 dlaudf_m - ok
11:27:39.0266 1728 dlcq_device - ok
11:27:39.0296 1728 dmisrv - ok
11:27:39.0323 1728 dmload - ok
11:27:39.0369 1728 dnetc - ok
11:27:39.0464 1728 Dnscache (33ef4861f19a0736b11314aad9ae28d0) C:\Windows\System32\dnsrslvr.dll
11:27:39.0736 1728 Dnscache - ok
11:27:39.0852 1728 dot3svc (366ba8fb4b7bb7435e3b9eacb3843f67) C:\Windows\System32\dot3svc.dll
11:27:39.0971 1728 dot3svc - ok
11:27:40.0037 1728 dpc_srv_webcast - ok
11:27:40.0089 1728 dpfusmgr - ok
11:27:40.0159 1728 DPS (8ec04ca86f1d68da9e11952eb85973d6) C:\Windows\system32\dps.dll
11:27:40.0268 1728 DPS - ok
11:27:40.0364 1728 drmkaud (b918e7c5f9bf77202f89e1a9539f2eb4) C:\Windows\system32\drivers\drmkaud.sys
11:27:40.0434 1728 drmkaud - ok
11:27:40.0504 1728 dtscsi - ok
11:27:40.0607 1728 DXGKrnl (23f5d28378a160352ba8f817bd8c71cb) C:\Windows\System32\drivers\dxgkrnl.sys
11:27:40.0923 1728 DXGKrnl - ok
11:27:41.0050 1728 EapHost (8600142fa91c1b96367d3300ad0f3f3a) C:\Windows\System32\eapsvc.dll
11:27:41.0162 1728 EapHost - ok
11:27:41.0373 1728 ebdrv (024e1b5cac09731e4d868e64dbfb4ab0) C:\Windows\system32\DRIVERS\evbdx.sys
11:27:41.0630 1728 ebdrv - ok
11:27:41.0752 1728 EFS (81951f51e318aecc2d68559e47485cc4) C:\Windows\System32\lsass.exe
11:27:41.0854 1728 EFS - ok
11:27:41.0954 1728 ehRecvr (a8c362018efc87beb013ee28f29c0863) C:\Windows\ehome\ehRecvr.exe
11:27:42.0089 1728 ehRecvr - ok
11:27:42.0178 1728 ehSched (d389bff34f80caede417bf9d1507996a) C:\Windows\ehome\ehsched.exe
11:27:42.0253 1728 ehSched - ok
11:27:42.0305 1728 elosystemservice - ok
11:27:42.0393 1728 elxstor (0ed67910c8c326796faa00b2bf6d9d3c) C:\Windows\system32\DRIVERS\elxstor.sys
11:27:42.0487 1728 elxstor - ok
11:27:42.0575 1728 emitray - ok
11:27:42.0604 1728 emupia - ok
11:27:42.0633 1728 epgspooler - ok
11:27:42.0667 1728 EPOWER - ok
11:27:42.0721 1728 ErrDev (8fc3208352dd3912c94367a206ab3f11) C:\Windows\system32\drivers\errdev.sys
11:27:42.0792 1728 ErrDev - ok
11:27:42.0849 1728 EUSBMSD - ok
11:27:42.0939 1728 EventSystem (f6916efc29d9953d5d0df06882ae8e16) C:\Windows\system32\es.dll
11:27:43.0064 1728 EventSystem - ok
11:27:43.0204 1728 exfat (2dc9108d74081149cc8b651d3a26207f) C:\Windows\system32\drivers\exfat.sys
11:27:43.0316 1728 exfat - ok
11:27:43.0373 1728 F700ius - ok
11:27:43.0457 1728 fastfat (7e0ab74553476622fb6ae36f73d97d35) C:\Windows\system32\drivers\fastfat.sys
11:27:43.0595 1728 fastfat - ok
11:27:43.0705 1728 Fax (967ea5b213e9984cbe270205df37755b) C:\Windows\system32\fxssvc.exe
11:27:43.0832 1728 Fax - ok
11:27:43.0884 1728 fcdabus - ok
11:27:43.0971 1728 fdc (e817a017f82df2a1f8cfdbda29388b29) C:\Windows\system32\DRIVERS\fdc.sys
11:27:44.0054 1728 fdc - ok
11:27:44.0140 1728 FDResPub (7dbe8cbfe79efbdeb98c9fb08d3a9a5b) C:\Windows\system32\fdrespub.dll
11:27:44.0254 1728 FDResPub - ok
11:27:44.0378 1728 FileInfo (6cf00369c97f3cf563be99be983d13d8) C:\Windows\system32\drivers\fileinfo.sys
11:27:44.0447 1728 FileInfo - ok
11:27:44.0548 1728 Filetrace (42c51dc94c91da21cb9196eb64c45db9) C:\Windows\system32\drivers\filetrace.sys
11:27:44.0660 1728 Filetrace - ok
11:27:44.0680 1728 FireTDI - ok
11:27:44.0720 1728 flpydisk (87907aa70cb3c56600f1c2fb8841579b) C:\Windows\system32\DRIVERS\flpydisk.sys
11:27:44.0803 1728 flpydisk - ok
11:27:44.0911 1728 FltMgr (7520ec808e0c35e0ee6f841294316653) C:\Windows\system32\drivers\fltmgr.sys
11:27:44.0981 1728 FltMgr - ok
11:27:45.0131 1728 FontCache (b3a5ec6b6b6673db7e87c2bcdbddc074) C:\Windows\system32\FntCache.dll
11:27:45.0263 1728 FontCache - ok
11:27:45.0360 1728 FontCache3.0.0.0 (e56f39f6b7fda0ac77a79b0fd3de1a2f) C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
11:27:45.0411 1728 FontCache3.0.0.0 - ok
11:27:45.0558 1728 FsDepends (1a16b57943853e598cff37fe2b8cbf1d) C:\Windows\system32\drivers\FsDepends.sys
11:27:45.0614 1728 FsDepends - ok
11:27:45.0691 1728 Fs_Rec (7dae5ebcc80e45d3253f4923dc424d05) C:\Windows\system32\drivers\Fs_Rec.sys
11:27:45.0951 1728 Fs_Rec - ok
11:27:45.0974 1728 ftpqueue - ok
11:27:46.0007 1728 fuj02b1 - ok
11:27:46.0099 1728 fvevol (8a73e79089b282100b9393b644cb853b) C:\Windows\system32\DRIVERS\fvevol.sys
11:27:46.0625 1728 fvevol - ok
11:27:46.0798 1728 FwLnk (cbc22823628544735625b280665e434e) C:\Windows\system32\DRIVERS\FwLnk.sys
11:27:47.0108 1728 FwLnk - ok
11:27:47.0168 1728 gagp30kx (65ee0c7a58b65e74ae05637418153938) C:\Windows\system32\DRIVERS\gagp30kx.sys
11:27:47.0242 1728 gagp30kx - ok
11:27:47.0386 1728 GameConsoleService (229730c40a585d85ccb031a1161bfa66) C:\Program Files\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe
11:27:47.0703 1728 GameConsoleService - ok
11:27:47.0805 1728 gdihook5 - ok
11:27:47.0909 1728 GEARAspiWDM (8182ff89c65e4d38b2de4bb0fb18564e) C:\Windows\system32\Drivers\GEARAspiWDM.sys
11:27:48.0158 1728 GEARAspiWDM - ok
11:27:48.0294 1728 GoogleDesktopManager (cd6ad074c0158ffaa0ceef86675e2e13) C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
11:27:48.0762 1728 GoogleDesktopManager ( UnsignedFile.Multi.Generic ) - warning
11:27:48.0762 1728 GoogleDesktopManager - detected UnsignedFile.Multi.Generic (1)
11:27:48.0882 1728 GoogleDesktopManager-010708-104812 - ok
11:27:48.0947 1728 gpc - ok
11:27:49.0022 1728 gpsvc (e897eaf5ed6ba41e081060c9b447a673) C:\Windows\System32\gpsvc.dll
11:27:49.0344 1728 gpsvc - ok
11:27:49.0475 1728 hcw85cir (c44e3c2bab6837db337ddee7544736db) C:\Windows\system32\drivers\hcw85cir.sys
11:27:49.0588 1728 hcw85cir - ok
11:27:49.0608 1728 hcwPP2 - ok
11:27:49.0695 1728 HDAudBus (9036377b8a6c15dc2eec53e489d159b5) C:\Windows\system32\drivers\HDAudBus.sys
11:27:49.0769 1728 HDAudBus - ok
11:27:49.0902 1728 HidBatt (1d58a7f3e11a9731d0eaaaa8405acc36) C:\Windows\system32\DRIVERS\HidBatt.sys
11:27:49.0983 1728 HidBatt - ok
11:27:50.0024 1728 HidBth (89448f40e6df260c206a193a4683ba78) C:\Windows\system32\DRIVERS\hidbth.sys
11:27:50.0113 1728 HidBth - ok
11:27:50.0147 1728 HidIr (cf50b4cf4a4f229b9f3c08351f99ca5e) C:\Windows\system32\DRIVERS\hidir.sys
11:27:50.0245 1728 HidIr - ok
11:27:50.0377 1728 hidserv (2bc6f6a1992b3a77f5f41432ca6b3b6b) C:\Windows\System32\hidserv.dll
11:27:50.0499 1728 hidserv - ok
11:27:50.0584 1728 HidUsb (10c19f8290891af023eaec0832e1eb4d) C:\Windows\system32\drivers\hidusb.sys
11:27:51.0078 1728 HidUsb - ok
11:27:51.0195 1728 hkmsvc (196b4e3f4cccc24af836ce58facbb699) C:\Windows\system32\kmsvc.dll
11:27:51.0307 1728 hkmsvc - ok
11:27:51.0386 1728 HomeGroupListener (6658f4404de03d75fe3ba09f7aba6a30) C:\Windows\system32\ListSvc.dll
11:27:51.0477 1728 HomeGroupListener - ok
11:27:51.0622 1728 HomeGroupProvider (dbc02d918fff1cad628acbe0c0eaa8e8) C:\Windows\system32\provsvc.dll
11:27:51.0713 1728 HomeGroupProvider - ok
11:27:51.0739 1728 houdinilicenseserver - ok
11:27:51.0785 1728 hpconfig - ok
11:27:51.0845 1728 HpSAMD (295fdc419039090eb8b49ffdbb374549) C:\Windows\system32\drivers\HpSAMD.sys
11:27:51.0905 1728 HpSAMD - ok
11:27:52.0055 1728 HTTP (871917b07a141bff43d76d8844d48106) C:\Windows\system32\drivers\HTTP.sys
11:27:52.0386 1728 HTTP - ok
11:27:52.0455 1728 hwpolicy (0c4e035c7f105f1299258c90886c64c5) C:\Windows\system32\drivers\hwpolicy.sys
11:27:52.0669 1728 hwpolicy - ok
11:27:52.0772 1728 i8042prt (f151f0bdc47f4a28b1b20a0818ea36d6) C:\Windows\system32\drivers\i8042prt.sys
11:27:52.0855 1728 i8042prt - ok
11:27:52.0938 1728 iAimFP5 - ok
11:27:52.0981 1728 iAimTV6 - ok
11:27:53.0098 1728 iaStorV (5cd5f9a5444e6cdcb0ac89bd62d8b76e) C:\Windows\system32\drivers\iaStorV.sys
11:27:53.0620 1728 iaStorV - ok
11:27:53.0762 1728 IDriverT (daf66902f08796f9c694901660e5a64a) C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
11:27:54.0077 1728 IDriverT ( UnsignedFile.Multi.Generic ) - warning
11:27:54.0077 1728 IDriverT - detected UnsignedFile.Multi.Generic (1)
11:27:54.0256 1728 idsvc (c521d7eb6497bb1af6afa89e322fb43c) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
11:27:54.0608 1728 idsvc - ok
11:27:54.0705 1728 igfx - ok
11:27:54.0853 1728 iirsp (4173ff5708f3236cf25195fecd742915) C:\Windows\system32\DRIVERS\iirsp.sys
11:27:54.0920 1728 iirsp - ok
11:27:55.0001 1728 IKEEXT (f95622f161474511b8d80d6b093aa610) C:\Windows\System32\ikeext.dll
11:27:55.0134 1728 IKEEXT - ok
11:27:55.0206 1728 imonnt - ok
11:27:55.0421 1728 IntcAzAudAddService (8a4341616976e47712b60f18c7049dcc) C:\Windows\system32\drivers\RTKVHDA.sys
11:27:55.0744 1728 IntcAzAudAddService - ok
11:27:55.0883 1728 intelide (a0f12f2c9ba6c72f3987ce780e77c130) C:\Windows\system32\drivers\intelide.sys
11:27:55.0941 1728 intelide - ok
11:27:56.0059 1728 intelppm (3b514d27bfc4accb4037bc6685f766e0) C:\Windows\system32\DRIVERS\intelppm.sys
11:27:56.0152 1728 intelppm - ok
11:27:56.0238 1728 Intels51 - ok
11:27:56.0407 1728 IntuitUpdateService (3dc635b66dd7412e1c9c3a77b8d78f25) C:\Program Files\Common Files\Intuit\Update Service\IntuitUpdateService.exe
11:27:56.0447 1728 IntuitUpdateService - ok
11:27:56.0576 1728 IPBusEnum (acb364b9075a45c0736e5c47be5cae19) C:\Windows\system32\ipbusenum.dll
11:27:56.0702 1728 IPBusEnum - ok
11:27:56.0805 1728 IpFilterDriver (709d1761d3b19a932ff0238ea6d50200) C:\Windows\system32\DRIVERS\ipfltdrv.sys
11:27:56.0946 1728 IpFilterDriver - ok
11:27:57.0110 1728 iphlpsvc (4d65a07b795d6674312f879d09aa7663) C:\Windows\System32\iphlpsvc.dll
11:27:57.0239 1728 iphlpsvc - ok
11:27:57.0302 1728 IPMIDRV (4bd7134618c1d2a27466a099062547bf) C:\Windows\system32\drivers\IPMIDrv.sys
11:27:57.0597 1728 IPMIDRV - ok
11:27:57.0731 1728 IPNAT (a5fa468d67abcdaa36264e463a7bb0cd) C:\Windows\system32\drivers\ipnat.sys
11:27:57.0851 1728 IPNAT - ok
11:27:57.0949 1728 iPod Service (57edb35ea2feca88f8b17c0c095c9a56) C:\Program Files\iPod\bin\iPodService.exe
11:27:58.0318 1728 iPod Service - ok
11:27:58.0502 1728 IRENUM (42996cff20a3084a56017b7902307e9f) C:\Windows\system32\drivers\irenum.sys
11:27:58.0624 1728 IRENUM - ok
11:27:58.0670 1728 isapisearch - ok
11:27:58.0805 1728 isapnp (1f32bb6b38f62f7df1a7ab7292638a35) C:\Windows\system32\drivers\isapnp.sys
11:27:58.0870 1728 isapnp - ok
11:27:58.0952 1728 iScsiPrt (cb7a9abb12b8415bce5d74994c7ba3ae) C:\Windows\system32\drivers\msiscsi.sys
11:27:59.0225 1728 iScsiPrt - ok
11:27:59.0238 1728 JiaoIO - ok
11:27:59.0356 1728 jswpsapi (723ba0aec942e91c0a9ce146e73deceb) C:\Program Files\Jumpstart\jswpsapi.exe
11:27:59.0536 1728 jswpsapi ( UnsignedFile.Multi.Generic ) - warning
11:27:59.0536 1728 jswpsapi - detected UnsignedFile.Multi.Generic (1)
11:27:59.0679 1728 jswpslwf (7e72514a3a1c5a9f3bff0660b3866c2b) C:\Windows\system32\DRIVERS\jswpslwf.sys
11:28:00.0007 1728 jswpslwf - ok
11:28:00.0054 1728 kbdclass (adef52ca1aeae82b50df86b56413107e) C:\Windows\system32\drivers\kbdclass.sys
11:28:00.0107 1728 kbdclass - ok
11:28:00.0153 1728 kbdhid (9e3ced91863e6ee98c24794d05e27a71) C:\Windows\system32\drivers\kbdhid.sys
11:28:00.0658 1728 kbdhid - ok
11:28:00.0776 1728 KeyIso (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
11:28:00.0829 1728 KeyIso - ok
11:28:00.0890 1728 KR10I (e8ca038f51f7761bd6e3a3b0b8014263) C:\Windows\system32\drivers\kr10i.sys
11:28:01.0242 1728 KR10I - ok
11:28:01.0287 1728 KR10N (6a4adb9186dd0e114e623daf57e42b31) C:\Windows\system32\drivers\kr10n.sys
11:28:01.0605 1728 KR10N - ok
11:28:01.0725 1728 KSecDD (f4647bb23db9038a7536cf6b68f4207f) C:\Windows\system32\Drivers\ksecdd.sys
11:28:02.0091 1728 KSecDD - ok
11:28:02.0173 1728 KSecPkg (e73cae53bbb72ba26918492c6b4c229d) C:\Windows\system32\Drivers\ksecpkg.sys
11:28:02.0672 1728 KSecPkg - ok
11:28:02.0749 1728 KtmRm (89a7b9cc98d0d80c6f31b91c0a310fcd) C:\Windows\system32\msdtckrm.dll
11:28:02.0900 1728 KtmRm - ok
11:28:03.0047 1728 LanmanServer (d64af876d53eca3668bb97b51b4e70ab) C:\Windows\System32\srvsvc.dll
11:28:03.0169 1728 LanmanServer - ok
11:28:03.0222 1728 LanmanWorkstation (58405e4f68ba8e4057c6e914f326aba2) C:\Windows\System32\wkssvc.dll
11:28:03.0339 1728 LanmanWorkstation - ok
11:28:03.0427 1728 lbrtfdc - ok
11:28:03.0456 1728 lbtserv - ok
11:28:03.0521 1728 license - ok
11:28:03.0550 1728 lkcitadelserver - ok
11:28:03.0653 1728 lltdio (f7611ec07349979da9b0ae1f18ccc7a6) C:\Windows\system32\DRIVERS\lltdio.sys
11:28:03.0773 1728 lltdio - ok
11:28:03.0834 1728 lltdsvc (5700673e13a2117fa3b9020c852c01e2) C:\Windows\System32\lltdsvc.dll
11:28:03.0956 1728 lltdsvc - ok
11:28:04.0062 1728 lmhosts (55ca01ba19d0006c8f2639b6c045e08b) C:\Windows\System32\lmhsvc.dll
11:28:04.0152 1728 lmhosts - ok
11:28:04.0174 1728 LPCFilter - ok
11:28:04.0214 1728 lsdiorw - ok
11:28:04.0291 1728 LSI_FC (eb119a53ccf2acc000ac71b065b78fef) C:\Windows\system32\DRIVERS\lsi_fc.sys
11:28:04.0364 1728 LSI_FC - ok
11:28:04.0395 1728 LSI_SAS (8ade1c877256a22e49b75d1cc9161f9c) C:\Windows\system32\DRIVERS\lsi_sas.sys
11:28:04.0470 1728 LSI_SAS - ok
11:28:04.0509 1728 LSI_SAS2 (dc9dc3d3daa0e276fd2ec262e38b11e9) C:\Windows\system32\DRIVERS\lsi_sas2.sys
11:28:04.0580 1728 LSI_SAS2 - ok
11:28:04.0686 1728 LSI_SCSI (0a036c7d7cab643a7f07135ac47e0524) C:\Windows\system32\DRIVERS\lsi_scsi.sys
11:28:04.0744 1728 LSI_SCSI - ok
11:28:04.0849 1728 luafv (6703e366cc18d3b6e534f5cf7df39cee) C:\Windows\system32\drivers\luafv.sys
11:28:04.0991 1728 luafv - ok
11:28:05.0073 1728 LVCap138 - ok
11:28:05.0105 1728 LVPrcMon - ok
11:28:05.0152 1728 lvsrvlauncher - ok
11:28:05.0186 1728 LVVI500A - ok
11:28:05.0215 1728 lxrsii1s - ok
11:28:05.0250 1728 MailService - ok
11:28:05.0424 1728 McAfee SiteAdvisor Service (7e6932eeda54c8eaf7dc6c2225261b85) C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
11:28:05.0476 1728 McAfee SiteAdvisor Service - ok
11:28:05.0494 1728 McMPFSvc (7e6932eeda54c8eaf7dc6c2225261b85) C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
11:28:05.0546 1728 McMPFSvc - ok
11:28:05.0563 1728 mcmscsvc (7e6932eeda54c8eaf7dc6c2225261b85) C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
11:28:05.0619 1728 mcmscsvc - ok
11:28:05.0644 1728 McNaiAnn (7e6932eeda54c8eaf7dc6c2225261b85) C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
11:28:05.0696 1728 McNaiAnn - ok
11:28:05.0714 1728 McNASvc (7e6932eeda54c8eaf7dc6c2225261b85) C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
11:28:05.0768 1728 McNASvc - ok
11:28:05.0928 1728 McODS (5379a996f953da65f40cc4e848dc7590) C:\Program Files\McAfee\VirusScan\mcods.exe
11:28:06.0245 1728 McODS - ok
11:28:06.0372 1728 mcpromgr - ok
11:28:06.0546 1728 McProxy (7e6932eeda54c8eaf7dc6c2225261b85) C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
11:28:06.0598 1728 McProxy - ok
11:28:06.0774 1728 McPvDrv (000751813ecef491689176e72b3a8bee) C:\Windows\system32\drivers\McPvDrv.sys
11:28:07.0140 1728 McPvDrv - ok
11:28:07.0326 1728 McShield (16767b4cb7ae8f388e091717db34ff6c) C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe
11:28:07.0350 1728 McShield - ok
11:28:07.0440 1728 mcsysmon - ok
11:28:07.0521 1728 Mcx2Svc (bfb9ee8ee977efe85d1a3105abef6dd1) C:\Windows\system32\Mcx2Svc.dll
11:28:07.0746 1728 Mcx2Svc - ok
11:28:07.0906 1728 MDM (11f714f85530a2bd134074dc30e99fca) C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
11:28:07.0962 1728 MDM - ok
11:28:08.0104 1728 megasas (0fff5b045293002ab38eb1fd1fc2fb74) C:\Windows\system32\DRIVERS\megasas.sys
11:28:08.0163 1728 megasas - ok
11:28:08.0210 1728 MegaSR (dcbab2920c75f390caf1d29f675d03d6) C:\Windows\system32\DRIVERS\MegaSR.sys
11:28:08.0281 1728 MegaSR - ok
11:28:08.0319 1728 merakpop3 - ok
11:28:08.0392 1728 mfeapfk (36b47b1e9c537f8f2b4481084b8f7d22) C:\Windows\system32\drivers\mfeapfk.sys
11:28:08.0671 1728 mfeapfk - ok
11:28:08.0792 1728 mfeavfk (cde41293db871a75cd99eb0ce781356b) C:\Windows\system32\drivers\mfeavfk.sys
11:28:09.0083 1728 mfeavfk - ok
11:28:09.0160 1728 mfeavfk01 - ok
11:28:09.0230 1728 mfebopk (e22385f64bdf0ad81157479496e33c4a) C:\Windows\system32\drivers\mfebopk.sys
11:28:09.0504 1728 mfebopk - ok
11:28:09.0648 1728 mfefire (3f17534b8867854113df2b45fff3acf5) C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
11:28:09.0699 1728 mfefire - ok
11:28:09.0862 1728 mfefirek (215666a8a85023ef019b510cbb67f678) C:\Windows\system32\drivers\mfefirek.sys
11:28:10.0162 1728 mfefirek - ok
11:28:10.0279 1728 mfehidk (37800fbb68d88e3c3e49bb9c97233e87) C:\Windows\system32\drivers\mfehidk.sys
11:28:10.0799 1728 mfehidk - ok
11:28:10.0958 1728 mfenlfk (b41bacc049cdb916a52b1448bf30d6ab) C:\Windows\system32\DRIVERS\mfenlfk.sys
11:28:11.0254 1728 mfenlfk - ok
11:28:11.0403 1728 mferkdet (47c91e229b129047f0138011ddf9f92f) C:\Windows\system32\drivers\mferkdet.sys
11:28:11.0651 1728 mferkdet - ok
11:28:11.0665 1728 mfetdik - ok
11:28:11.0747 1728 mfevtp (9f09caa8dc12fc1626f82a5c212f6f9c) C:\Windows\system32\mfevtps.exe
11:28:11.0774 1728 mfevtp - ok
11:28:11.0864 1728 mfewfpk (c2ff7473a60c0fb2df145ab686889653) C:\Windows\system32\drivers\mfewfpk.sys
11:28:12.0003 1728 mfewfpk - ok
11:28:12.0103 1728 mgabg - ok
11:28:12.0120 1728 mirrorv3 - ok
11:28:12.0193 1728 MMCSS (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
11:28:12.0296 1728 MMCSS - ok
11:28:12.0404 1728 MOBKbackup (35176fa09a0fc58db630991a81a0ba39) C:\Program Files\McAfee Online Backup\MOBKbackup.exe
11:28:12.0454 1728 MOBKbackup - ok
11:28:12.0616 1728 MOBKFilter (e896775837a8bce436348df460522394) C:\Windows\system32\DRIVERS\MOBK.sys
11:28:12.0949 1728 MOBKFilter - ok
11:28:13.0001 1728 Modem (f001861e5700ee84e2d4e52c712f4964) C:\Windows\system32\drivers\modem.sys
11:28:13.0066 1728 Modem - ok
11:28:13.0092 1728 monitor (79d10964de86b292320e9dfe02282a23) C:\Windows\system32\DRIVERS\monitor.sys
11:28:13.0141 1728 monitor - ok
11:28:13.0299 1728 mouclass (fb18cc1d4c2e716b6b903b0ac0cc0609) C:\Windows\system32\drivers\mouclass.sys
11:28:13.0351 1728 mouclass - ok
11:28:13.0375 1728 moufiltr - ok
11:28:13.0462 1728 mouhid (2c388d2cd01c9042596cf3c8f3c7b24d) C:\Windows\system32\DRIVERS\mouhid.sys
11:28:13.0536 1728 mouhid - ok
11:28:13.0596 1728 mountmgr (fc8771f45ecccfd89684e38842539b9b) C:\Windows\system32\drivers\mountmgr.sys
11:28:13.0862 1728 mountmgr - ok
11:28:13.0961 1728 mpfp - ok
11:28:14.0057 1728 mpio (2d699fb6e89ce0d8da14ecc03b3edfe0) C:\Windows\system32\drivers\mpio.sys
11:28:14.0540 1728 mpio - ok
11:28:14.0632 1728 mpsdrv (ad2723a7b53dd1aacae6ad8c0bfbf4d0) C:\Windows\system32\drivers\mpsdrv.sys
11:28:14.0750 1728 mpsdrv - ok
11:28:14.0942 1728 MpsSvc (9835584e999d25004e1ee8e5f3e3b881) C:\Windows\system32\mpssvc.dll
11:28:15.0280 1728 MpsSvc - ok
11:28:15.0303 1728 mqdmbus - ok
11:28:15.0411 1728 MRxDAV (ceb46ab7c01c9f825f8cc6babc18166a) C:\Windows\system32\drivers\mrxdav.sys
11:28:15.0974 1728 MRxDAV - ok
11:28:16.0131 1728 mrxsmb (5d16c921e3671636c0eba3bbaac5fd25) C:\Windows\system32\DRIVERS\mrxsmb.sys
11:28:16.0570 1728 mrxsmb - ok
11:28:16.0620 1728 mrxsmb10 (6d17a4791aca19328c685d256349fefc) C:\Windows\system32\DRIVERS\mrxsmb10.sys
11:28:16.0850 1728 mrxsmb10 - ok
11:28:16.0988 1728 mrxsmb20 (b81f204d146000be76651a50670a5e9e) C:\Windows\system32\DRIVERS\mrxsmb20.sys
11:28:17.0463 1728 mrxsmb20 - ok
11:28:17.0552 1728 MS1000 - ok
11:28:17.0612 1728 msahci (012c5f4e9349e711e11e0f19a8589f0a) C:\Windows\system32\drivers\msahci.sys
11:28:18.0096 1728 msahci - ok
11:28:18.0178 1728 msdsm (55055f8ad8be27a64c831322a780a228) C:\Windows\system32\drivers\msdsm.sys
11:28:18.0656 1728 msdsm - ok
11:28:18.0733 1728 MSDTC (e1bce74a3bd9902b72599c0192a07e27) C:\Windows\System32\msdtc.exe
11:28:18.0822 1728 MSDTC - ok
11:28:18.0994 1728 Msfs (daefb28e3af5a76abcc2c3078c07327f) C:\Windows\system32\drivers\Msfs.sys
11:28:19.0108 1728 Msfs - ok
11:28:19.0163 1728 mshidkmdf (3e1e5767043c5af9367f0056295e9f84) C:\Windows\System32\drivers\mshidkmdf.sys
11:28:19.0283 1728 mshidkmdf - ok
11:28:19.0322 1728 msisadrv (0a4e5757ae09fa9622e3158cc1aef114) C:\Windows\system32\drivers\msisadrv.sys
11:28:19.0393 1728 msisadrv - ok
11:28:19.0547 1728 MSiSCSI (90f7d9e6b6f27e1a707d4a297f077828) C:\Windows\system32\iscsiexe.dll
11:28:19.0675 1728 MSiSCSI - ok
11:28:19.0701 1728 msiserver - ok
11:28:19.0859 1728 MSK80Service (7e6932eeda54c8eaf7dc6c2225261b85) C:\Program Files\Common Files\Mcafee\McSvcHost\McSvHost.exe
11:28:19.0913 1728 MSK80Service - ok
11:28:20.0060 1728 MSKSSRV (8c0860d6366aaffb6c5bb9df9448e631) C:\Windows\system32\drivers\MSKSSRV.sys
11:28:20.0189 1728 MSKSSRV - ok
11:28:20.0226 1728 MSPCLOCK (3ea8b949f963562cedbb549eac0c11ce) C:\Windows\system32\drivers\MSPCLOCK.sys
11:28:20.0357 1728 MSPCLOCK - ok
11:28:20.0398 1728 MSPQM (f456e973590d663b1073e9c463b40932) C:\Windows\system32\drivers\MSPQM.sys
11:28:20.0524 1728 MSPQM - ok
11:28:20.0689 1728 MsRPC (0e008fc4819d238c51d7c93e7b41e560) C:\Windows\system32\drivers\MsRPC.sys
11:28:20.0760 1728 MsRPC - ok
11:28:20.0805 1728 mssmbios (fc6b9ff600cc585ea38b12589bd4e246) C:\Windows\system32\drivers\mssmbios.sys
11:28:20.0852 1728 mssmbios - ok
11:28:20.0954 1728 MSSQL$NR2007 - ok
11:28:21.0044 1728 MSSQLServerADHelper (1d89eb4e2a99cabd4e81225f4f4c4b25) c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe
11:28:21.0345 1728 MSSQLServerADHelper - ok
11:28:21.0507 1728 MSTEE (b42c6b921f61a6e55159b8be6cd54a36) C:\Windows\system32\drivers\MSTEE.sys
11:28:21.0613 1728 MSTEE - ok
11:28:21.0650 1728 MTConfig (33599130f44e1f34631cea241de8ac84) C:\Windows\system32\DRIVERS\MTConfig.sys
11:28:21.0731 1728 MTConfig - ok
11:28:21.0757 1728 MTDVC2 - ok
11:28:21.0827 1728 Mup (159fad02f64e6381758c990f753bcc80) C:\Windows\system32\Drivers\mup.sys
11:28:21.0890 1728 Mup - ok
11:28:22.0018 1728 mxnic - ok
11:28:22.0113 1728 napagent (61d57a5d7c6d9afe10e77dae6e1b445e) C:\Windows\system32\qagentRT.dll
11:28:22.0241 1728 napagent - ok
11:28:22.0344 1728 NativeWifiP (26384429fcd85d83746f63e798ab1480) C:\Windows\system32\DRIVERS\nwifi.sys
11:28:22.0463 1728 NativeWifiP - ok
11:28:22.0585 1728 navex15 - ok
11:28:22.0678 1728 NDIS (e7c54812a2aaf43316eb6930c1ffa108) C:\Windows\system32\drivers\ndis.sys
11:28:22.0757 1728 NDIS - ok
11:28:22.0854 1728 NdisCap (0e1787aa6c9191d3d319e8bafe86f80c) C:\Windows\system32\DRIVERS\ndiscap.sys
11:28:22.0995 1728 NdisCap - ok
11:28:23.0094 1728 NdisTapi (e4a8aec125a2e43a9e32afeea7c9c888) C:\Windows\system32\DRIVERS\ndistapi.sys
11:28:23.0219 1728 NdisTapi - ok
11:28:23.0277 1728 Ndisuio (d8a65dafb3eb41cbb622745676fcd072) C:\Windows\system32\DRIVERS\ndisuio.sys
11:28:23.0608 1728 Ndisuio - ok
11:28:23.0777 1728 NdisWan (38fbe267e7e6983311179230facb1017) C:\Windows\system32\DRIVERS\ndiswan.sys
11:28:24.0322 1728 NdisWan - ok
11:28:24.0484 1728 NDProxy (a4bdc541e69674fbff1a8ff00be913f2) C:\Windows\system32\drivers\NDProxy.sys
11:28:24.0784 1728 NDProxy - ok
11:28:24.0972 1728 NeatReceipts Database Controller (b0aca46e05eb819409f9965344800724) C:\Program Files\Common Files\NeatReceipts\DB Controller\NeatReceiptsDBController.exe
11:28:25.0026 1728 NeatReceipts Database Controller ( UnsignedFile.Multi.Generic ) - warning
11:28:25.0027 1728 NeatReceipts Database Controller - detected UnsignedFile.Multi.Generic (1)
11:28:25.0129 1728 NEOFLTR_600_13319 - ok
11:28:25.0220 1728 NetBIOS (80b275b1ce3b0e79909db7b39af74d51) C:\Windows\system32\DRIVERS\netbios.sys
11:28:25.0349 1728 NetBIOS - ok
11:28:25.0427 1728 NetBT (280122ddcf04b378edd1ad54d71c1e54) C:\Windows\system32\DRIVERS\netbt.sys
11:28:25.0981 1728 NetBT - ok
11:28:26.0096 1728 netcfgsvr - ok
11:28:26.0144 1728 Netlogon (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
11:28:26.0196 1728 Netlogon - ok
11:28:26.0266 1728 Netman (7cccfca7510684768da22092d1fa4db2) C:\Windows\System32\netman.dll
11:28:26.0372 1728 Netman - ok
11:28:26.0471 1728 netprofm (8c338238c16777a802d6a9211eb2ba50) C:\Windows\System32\netprofm.dll
11:28:26.0580 1728 netprofm - ok
11:28:26.0742 1728 NetTcpPortSharing (f476ec40033cdb91efbe73eb99b8362d) C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\SMSvcHost.exe
11:28:27.0026 1728 NetTcpPortSharing - ok
11:28:27.0152 1728 nfrd960 (1d85c4b390b0ee09c7a46b91efb2c097) C:\Windows\system32\DRIVERS\nfrd960.sys
11:28:27.0217 1728 nfrd960 - ok
11:28:27.0277 1728 nHancer - ok
11:28:27.0309 1728 nhcDriverDevice - ok
11:28:27.0363 1728 nicser_wmp11 - ok
11:28:27.0392 1728 nimcdldu - ok
11:28:27.0424 1728 nla - ok
11:28:27.0512 1728 NlaSvc (912084381d30d8b89ec4e293053f4710) C:\Windows\System32\nlasvc.dll
11:28:27.0633 1728 NlaSvc - ok
11:28:27.0686 1728 nmsaccess - ok
11:28:27.0755 1728 NMSSvc - ok
11:28:27.0840 1728 Npfs (1db262a9f8c087e8153d89bef3d2235f) C:\Windows\system32\drivers\Npfs.sys
11:28:27.0967 1728 Npfs - ok
11:28:27.0991 1728 npkcmsvc - ok
11:28:28.0030 1728 nsausvc - ok
11:28:28.0095 1728 nsi (ba387e955e890c8a88306d9b8d06bf17) C:\Windows\system32\nsisvc.dll
11:28:28.0192 1728 nsi - ok
11:28:28.0262 1728 nsiproxy (e9a0a4d07e53d8fea2bb8387a3293c58) C:\Windows\system32\drivers\nsiproxy.sys
11:28:28.0396 1728 nsiproxy - ok
11:28:28.0466 1728 nsm1bus - ok
11:28:28.0495 1728 nsm1mdfl - ok
11:28:28.0662 1728 Ntfs (81189c3d7763838e55c397759d49007a) C:\Windows\system32\drivers\Ntfs.sys
11:28:29.0001 1728 Ntfs - ok
11:28:29.0086 1728 NtMtlFax - ok
11:28:29.0192 1728 Null (f9756a98d69098dca8945d62858a812c) C:\Windows\system32\drivers\Null.sys
11:28:29.0314 1728 Null - ok
11:28:29.0342 1728 nvlddmkm - ok
11:28:29.0376 1728 nvmpu401 - ok
11:28:29.0482 1728 nvraid (b3e25ee28883877076e0e1ff877d02e0) C:\Windows\system32\drivers\nvraid.sys
11:28:29.0759 1728 nvraid - ok
11:28:29.0851 1728 nvstor (4380e59a170d88c4f1022eff6719a8a4) C:\Windows\system32\drivers\nvstor.sys
11:28:30.0336 1728 nvstor - ok
11:28:30.0411 1728 nvstor64 - ok
11:28:30.0446 1728 nvsvc - ok
11:28:30.0516 1728 nv_agp (5a0983915f02bae73267cc2a041f717d) C:\Windows\system32\drivers\nv_agp.sys
11:28:30.0573 1728 nv_agp - ok
11:28:30.0597 1728 NWSIPX32 - ok
11:28:30.0633 1728 NWSLP - ok
11:28:30.0800 1728 odserv (785f487a64950f3cb8e9f16253ba3b7b) C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE
11:28:31.0108 1728 odserv - ok
11:28:31.0263 1728 ohci1394 (08a70a1f2cdde9bb49b885cb817a66eb) C:\Windows\system32\drivers\ohci1394.sys
11:28:31.0356 1728 ohci1394 - ok
11:28:31.0383 1728 oracleorahome90agent - ok
11:28:31.0421 1728 oraclesnmppeermasteragent - ok
11:28:31.0450 1728 osaio - ok
11:28:31.0578 1728 ose (5a432a042dae460abe7199b758e8606c) C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
11:28:31.0834 1728 ose - ok
11:28:31.0990 1728 p2pimsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
11:28:32.0057 1728 p2pimsvc - ok
11:28:32.0112 1728 p2psvc (59c3ddd501e39e006dac31bf55150d91) C:\Windows\system32\p2psvc.dll
11:28:32.0147 1728 p2psvc - ok
11:28:32.0161 1728 pacsptisvr - ok
11:28:32.0219 1728 Parport (2ea877ed5dd9713c5ac74e8ea7348d14) C:\Windows\system32\DRIVERS\parport.sys
11:28:32.0298 1728 Parport - ok
11:28:32.0436 1728 partmgr (bf8f6af06da75b336f07e23aef97d93b) C:\Windows\system32\drivers\partmgr.sys
11:28:32.0921 1728 partmgr - ok
11:28:32.0988 1728 Parvdm (eb0a59f29c19b86479d36b35983daadc) C:\Windows\system32\DRIVERS\parvdm.sys
11:28:33.0047 1728 Parvdm - ok
11:28:33.0101 1728 PcaSvc (358ab7956d3160000726574083dfc8a6) C:\Windows\System32\pcasvc.dll
11:28:33.0169 1728 PcaSvc - ok
11:28:33.0224 1728 pci (673e55c3498eb970088e812ea820aa8f) C:\Windows\system32\drivers\pci.sys
11:28:33.0279 1728 pci - ok
11:28:33.0393 1728 pciide (afe86f419014db4e5593f69ffe26ce0a) C:\Windows\system32\drivers\pciide.sys
11:28:33.0456 1728 pciide - ok
11:28:33.0519 1728 pcmcia (f396431b31693e71e8a80687ef523506) C:\Windows\system32\DRIVERS\pcmcia.sys
11:28:33.0599 1728 pcmcia - ok
11:28:33.0660 1728 pcouffin (5b6c11de7e839c05248ced8825470fef) C:\Windows\system32\Drivers\pcouffin.sys
11:28:33.0974 1728 pcouffin - ok
11:28:34.0121 1728 pcw (250f6b43d2b613172035c6747aeeb19f) C:\Windows\system32\drivers\pcw.sys
11:28:34.0179 1728 pcw - ok
11:28:34.0206 1728 pdlnslea - ok
11:28:34.0245 1728 pdscheduler - ok
11:28:34.0340 1728 PEAUTH (9e0104ba49f4e6973749a02bf41344ed) C:\Windows\system32\drivers\peauth.sys
11:28:34.0495 1728 PEAUTH - ok
11:28:34.0587 1728 pelmouse - ok
11:28:34.0665 1728 pgfilter - ok
11:28:34.0749 1728 pinger (6dbf2ac2bdaff355995ab25eccc4cfe1) C:\Toshiba\IVP\ISM\pinger.exe
11:28:34.0794 1728 pinger - ok
11:28:34.0905 1728 pla (414bba67a3ded1d28437eb66aeb8a720) C:\Windows\system32\pla.dll
11:28:35.0086 1728 pla - ok
11:28:35.0230 1728 PlugPlay (ec7bc28d207da09e79b3e9faf8b232ca) C:\Windows\system32\umpnpmgr.dll
11:28:35.0353 1728 PlugPlay - ok
11:28:35.0375 1728 PNDIS5 - ok
11:28:35.0444 1728 PNRPAutoReg (63ff8572611249931eb16bb8eed6afc8) C:\Windows\system32\pnrpauto.dll
11:28:35.0520 1728 PNRPAutoReg - ok
11:28:35.0662 1728 PNRPsvc (82a8521ddc60710c3d3d3e7325209bec) C:\Windows\system32\pnrpsvc.dll
11:28:35.0724 1728 PNRPsvc - ok
11:28:35.0790 1728 PolicyAgent (53946b69ba0836bd95b03759530c81ec) C:\Windows\System32\ipsecsvc.dll
11:28:36.0087 1728 PolicyAgent - ok
11:28:36.0200 1728 Power (f87d30e72e03d579a5199ccb3831d6ea) C:\Windows\system32\umpo.dll
11:28:36.0297 1728 Power - ok
11:28:36.0441 1728 PptpMiniport (631e3e205ad6d86f2aed6a4a8e69f2db) C:\Windows\system32\DRIVERS\raspptp.sys
11:28:36.0596 1728 PptpMiniport - ok
11:28:36.0725 1728 Processor (85b1e3a0c7585bc4aae6899ec6fcf011) C:\Windows\system32\DRIVERS\processr.sys
11:28:36.0816 1728 Processor - ok
11:28:36.0882 1728 ProfSvc (43ca4ccc22d52fb58e8988f0198851d0) C:\Windows\system32\profsvc.dll
11:28:36.0977 1728 ProfSvc - ok
11:28:37.0057 1728 ProtectedStorage (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
11:28:37.0110 1728 ProtectedStorage - ok
11:28:37.0194 1728 Psched (6270ccae2a86de6d146529fe55b3246a) C:\Windows\system32\DRIVERS\pacer.sys
11:28:37.0307 1728 Psched - ok
11:28:37.0348 1728 purgeieservice - ok
11:28:37.0513 1728 ql2300 (ab95ecf1f6659a60ddc166d8315b0751) C:\Windows\system32\DRIVERS\ql2300.sys
11:28:37.0665 1728 ql2300 - ok
11:28:37.0741 1728 ql40xx (b4dd51dd25182244b86737dc51af2270) C:\Windows\system32\DRIVERS\ql40xx.sys
11:28:37.0805 1728 ql40xx - ok
11:28:37.0942 1728 QWAVE (31ac809e7707eb580b2bdb760390765a) C:\Windows\system32\qwave.dll
11:28:38.0038 1728 QWAVE - ok
11:28:38.0091 1728 QWAVEdrv (584078ca1b95ca72df2a27c336f9719d) C:\Windows\system32\drivers\qwavedrv.sys
11:28:38.0164 1728 QWAVEdrv - ok
11:28:38.0198 1728 R300 - ok
11:28:38.0243 1728 RasAcd (30a81b53c766d0133bb86d234e5556ab) C:\Windows\system32\DRIVERS\rasacd.sys
11:28:38.0376 1728 RasAcd - ok
11:28:38.0515 1728 RasAgileVpn (57ec4aef73660166074d8f7f31c0d4fd) C:\Windows\system32\DRIVERS\AgileVpn.sys
11:28:38.0640 1728 RasAgileVpn - ok
11:28:38.0727 1728 RasAuto (a60f1839849c0c00739787fd5ec03f13) C:\Windows\System32\rasauto.dll
11:28:38.0832 1728 RasAuto - ok
11:28:38.0901 1728 Rasl2tp (d9f91eafec2815365cbe6d167e4e332a) C:\Windows\system32\DRIVERS\rasl2tp.sys
11:28:39.0029 1728 Rasl2tp - ok
11:28:39.0169 1728 RasMan (cb9e04dc05eacf5b9a36ca276d475006) C:\Windows\System32\rasmans.dll
11:28:39.0289 1728 RasMan - ok
11:28:39.0383 1728 RasPppoe (0fe8b15916307a6ac12bfb6a63e45507) C:\Windows\system32\DRIVERS\raspppoe.sys
11:28:39.0499 1728 RasPppoe - ok
11:28:39.0546 1728 RasSstp (44101f495a83ea6401d886e7fd70096b) C:\Windows\system32\DRIVERS\rassstp.sys
11:28:39.0668 1728 RasSstp - ok
11:28:39.0825 1728 rdbss (d528bc58a489409ba40334ebf96a311b) C:\Windows\system32\DRIVERS\rdbss.sys
11:28:40.0374 1728 rdbss - ok
11:28:40.0459 1728 rdpbus (0d8f05481cb76e70e1da06ee9f0da9df) C:\Windows\system32\DRIVERS\rdpbus.sys
11:28:40.0550 1728 rdpbus - ok
11:28:40.0669 1728 RDPCDD (23dae03f29d253ae74c44f99e515f9a1) C:\Windows\system32\DRIVERS\RDPCDD.sys
11:28:41.0000 1728 RDPCDD - ok
11:28:41.0034 1728 RDPENCDD (5a53ca1598dd4156d44196d200c94b8a) C:\Windows\system32\drivers\rdpencdd.sys
11:28:41.0128 1728 RDPENCDD - ok
11:28:41.0180 1728 RDPREFMP (44b0a53cd4f27d50ed461dae0c0b4e1f) C:\Windows\system32\drivers\rdprefmp.sys
11:28:41.0289 1728 RDPREFMP - ok
11:28:41.0353 1728 RDPWD (244c83332f44589ae98fc347f11b2693) C:\Windows\system32\drivers\RDPWD.sys
11:28:41.0462 1728 RDPWD - ok
11:28:41.0561 1728 rdyboost (518395321dc96fe2c9f0e96ac743b656) C:\Windows\system32\drivers\rdyboost.sys
11:28:41.0618 1728 rdyboost - ok
11:28:41.0666 1728 RecAgent - ok
11:28:41.0826 1728 RemoteAccess (7b5e1419717fac363a31cc302895217a) C:\Windows\System32\mprdim.dll
11:28:41.0945 1728 RemoteAccess - ok
11:28:41.0968 1728 remotelyanywhere - ok
11:28:42.0062 1728 RemoteRegistry (cb9a8683f4ef2bf99e123d79950d7935) C:\Windows\system32\regsvc.dll
11:28:42.0186 1728 RemoteRegistry - ok
11:28:42.0304 1728 rimmptsk (355aac141b214bef1dbc1483afd9bd50) C:\Windows\system32\DRIVERS\rimmptsk.sys
11:28:42.0408 1728 rimmptsk - ok
11:28:42.0471 1728 rimsptsk (a4216c71dd4f60b26418ccfd99cd0815) C:\Windows\system32\DRIVERS\rimsptsk.sys
11:28:42.0577 1728 rimsptsk - ok
11:28:42.0653 1728 RIOUNIV - ok
11:28:42.0709 1728 risdptsk - ok
11:28:42.0792 1728 rismxdp (d231b577024aa324af13a42f3a807d10) C:\Windows\system32\DRIVERS\rixdptsk.sys
11:28:42.0867 1728 rismxdp - ok
11:28:42.0940 1728 RMCAST - ok
11:28:43.0044 1728 RpcEptMapper (78d072f35bc45d9e4e1b61895c152234) C:\Windows\System32\RpcEpMap.dll
11:28:43.0142 1728 RpcEptMapper - ok
11:28:43.0204 1728 RpcLocator (94d36c0e44677dd26981d2bfeef2a29d) C:\Windows\system32\locator.exe
11:28:43.0276 1728 RpcLocator - ok
11:28:43.0298 1728 rpcnet - ok
11:28:43.0372 1728 RpcSs (7660f01d3b38aca1747e397d21d790af) C:\Windows\system32\rpcss.dll
11:28:43.0476 1728 RpcSs - ok
11:28:43.0617 1728 rspndr (032b0d36ad92b582d869879f5af5b928) C:\Windows\system32\DRIVERS\rspndr.sys
11:28:43.0737 1728 rspndr - ok
11:28:43.0778 1728 rt61 - ok
11:28:43.0841 1728 RTL8169 (8cca591019216e9523e3cb385ce643e6) C:\Windows\system32\DRIVERS\Rtlh86.sys
11:28:43.0971 1728 RTL8169 - ok
11:28:44.0066 1728 RTSTOR - ok
11:28:44.0097 1728 s117unic - ok
11:28:44.0128 1728 s3twistr - ok
11:28:44.0158 1728 SaiNtHid - ok
11:28:44.0213 1728 SamSs (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
11:28:44.0265 1728 SamSs - ok
11:28:44.0311 1728 SANDRA - ok
11:28:44.0394 1728 sbp2port (05d860da1040f111503ac416ccef2bca) C:\Windows\system32\drivers\sbp2port.sys
11:28:44.0446 1728 sbp2port - ok
11:28:44.0634 1728 SBSDWSCService (794d4b48dfb6e999537c7c3947863463) C:\Program Files\Spybot - Search & Destroy\SDWinSec.exe
11:28:44.0726 1728 SBSDWSCService - ok
11:28:44.0822 1728 scanwscs - ok
11:28:44.0897 1728 SCardSvr (8fc518ffe9519c2631d37515a68009c4) C:\Windows\System32\SCardSvr.dll
11:28:45.0023 1728 SCardSvr - ok
11:28:45.0047 1728 ScFBPNT2 - ok
11:28:45.0139 1728 scfilter (0693b5ec673e34dc147e195779a4dcf6) C:\Windows\system32\DRIVERS\scfilter.sys
11:28:45.0244 1728 scfilter - ok
11:28:45.0406 1728 Schedule (a04bb13f8a72f8b6e8b4071723e4e336) C:\Windows\system32\schedsvc.dll
11:28:45.0542 1728 Schedule - ok
11:28:45.0596 1728 SCPolicySvc (319c6b309773d063541d01df8ac6f55f) C:\Windows\System32\certprop.dll
11:28:45.0687 1728 SCPolicySvc - ok
11:28:45.0812 1728 sdbus (0328be1c7f1cba23848179f8762e391c) C:\Windows\system32\drivers\sdbus.sys
11:28:45.0893 1728 sdbus - ok
11:28:45.0952 1728 SDRSVC (08236c4bce5edd0a0318a438af28e0f7) C:\Windows\System32\SDRSVC.dll
11:28:46.0068 1728 SDRSVC - ok
11:28:46.0166 1728 SE26obex - ok
11:28:46.0197 1728 SE2Bmdfl - ok
11:28:46.0234 1728 SE2Cobex - ok
11:28:46.0265 1728 se2Cunic - ok
11:28:46.0297 1728 se2End5 - ok
11:28:46.0334 1728 se45mdfl - ok
11:28:46.0382 1728 se45nd5 - ok
11:28:46.0472 1728 secdrv (90a3935d05b494a5a39d37e71f09a677) C:\Windows\system32\drivers\secdrv.sys
11:28:46.0593 1728 secdrv - ok
11:28:46.0652 1728 seclogon (a59b3a4442c52060cc7a85293aa3546f) C:\Windows\system32\seclogon.dll
11:28:46.0767 1728 seclogon - ok
11:28:46.0897 1728 SENS (dcb7fcdcc97f87360f75d77425b81737) C:\Windows\system32\sens.dll
11:28:47.0032 1728 SENS - ok
11:28:47.0095 1728 SensrSvc (50087fe1ee447009c9cc2997b90de53f) C:\Windows\system32\sensrsvc.dll
11:28:47.0200 1728 SensrSvc - ok
11:28:47.0379 1728 Serenum (9ad8b8b515e3df6acd4212ef465de2d1) C:\Windows\system32\DRIVERS\serenum.sys
11:28:47.0432 1728 Serenum - ok
11:28:47.0493 1728 Serial (5fb7fcea0490d821f26f39cc5ea3d1e2) C:\Windows\system32\DRIVERS\serial.sys
11:28:47.0568 1728 Serial - ok
11:28:47.0624 1728 sermouse (79bffb520327ff916a582dfea17aa813) C:\Windows\system32\DRIVERS\sermouse.sys
11:28:47.0652 1728 sermouse - ok
11:28:47.0751 1728 SessionEnv (4ae380f39a0032eab7dd953030b26d28) C:\Windows\system32\sessenv.dll
11:28:47.0817 1728 SessionEnv - ok
11:28:47.0884 1728 sfdrv01 - ok
11:28:47.0931 1728 sffdisk (9f976e1eb233df46fce808d9dea3eb9c) C:\Windows\system32\drivers\sffdisk.sys
11:28:47.0959 1728 sffdisk - ok
11:28:47.0974 1728 sffp_mmc (932a68ee27833cfd57c1639d375f2731) C:\Windows\system32\drivers\sffp_mmc.sys
11:28:48.0017 1728 sffp_mmc - ok
11:28:48.0087 1728 sffp_sd (6d4ccaedc018f1cf52866bbbaa235982) C:\Windows\system32\drivers\sffp_sd.sys
11:28:48.0144 1728 sffp_sd - ok
11:28:48.0203 1728 sfloppy (db96666cc8312ebc45032f30b007a547) C:\Windows\system32\DRIVERS\sfloppy.sys
11:28:48.0272 1728 sfloppy - ok
11:28:48.0375 1728 sfman - ok
11:28:48.0406 1728 sfng32 - ok
11:28:48.0445 1728 sgectl - ok
11:28:48.0474 1728 SGHIDI - ok
11:28:48.0583 1728 SharedAccess (d1a079a0de2ea524513b6930c24527a2) C:\Windows\System32\ipnathlp.dll
11:28:48.0708 1728 SharedAccess - ok
11:28:48.0807 1728 ShellHWDetection (414da952a35bf5d50192e28263b40577) C:\Windows\System32\shsvcs.dll
11:28:48.0933 1728 ShellHWDetection - ok
11:28:49.0022 1728 Si3114r5 - ok
11:28:49.0067 1728 sifilter - ok
11:28:49.0155 1728 sisagp (2565cac0dc9fe0371bdce60832582b2e) C:\Windows\system32\drivers\sisagp.sys
11:28:49.0207 1728 sisagp - ok
11:28:49.0297 1728 SiSRaid2 (a9f0486851becb6dda1d89d381e71055) C:\Windows\system32\DRIVERS\SiSRaid2.sys
11:28:49.0346 1728 SiSRaid2 - ok
11:28:49.0434 1728 SiSRaid4 (3727097b55738e2f554972c3be5bc1aa) C:\Windows\system32\DRIVERS\sisraid4.sys
11:28:49.0486 1728 SiSRaid4 - ok
11:28:49.0580 1728 SkypeUpdate (6128e98eaaed364ed1a32708d2fd22cb) C:\Program Files\Skype\Updater\Updater.exe
11:28:49.0628 1728 SkypeUpdate - ok
11:28:49.0684 1728 slee_503_service - ok
11:28:49.0808 1728 Smb (3e21c083b8a01cb70ba1f09303010fce) C:\Windows\system32\DRIVERS\smb.sys
11:28:49.0907 1728 Smb - ok
11:28:49.0958 1728 smcirda - ok
11:28:50.0016 1728 smwdm - ok
11:28:50.0060 1728 snare - ok
11:28:50.0123 1728 SNMPTRAP (6a984831644eca1a33ffeae4126f4f37) C:\Windows\System32\snmptrap.exe
11:28:50.0180 1728 SNMPTRAP - ok
11:28:50.0286 1728 SNPSTD3 - ok
11:28:50.0415 1728 Sony SCSI Helper Service (3bb48f7e33c2b76184ddf233000c09cd) C:\Program Files\Common Files\Sony Shared\Fsk\SonySCSIHelperService.exe
11:28:50.0699 1728 Sony SCSI Helper Service ( UnsignedFile.Multi.Generic ) - warning
11:28:50.0699 1728 Sony SCSI Helper Service - detected UnsignedFile.Multi.Generic (1)
11:28:50.0721 1728 sonywbms - ok
11:28:50.0820 1728 spldr (95cf1ae7527fb70f7816563cbc09d942) C:\Windows\system32\drivers\spldr.sys
11:28:50.0867 1728 spldr - ok
11:28:51.0012 1728 Spooler (866a43013535dc8587c258e43579c764) C:\Windows\System32\spoolsv.exe
11:28:51.0131 1728 Spooler - ok
11:28:51.0304 1728 sppsvc (cf87a1de791347e75b98885214ced2b8) C:\Windows\system32\sppsvc.exe
11:28:51.0529 1728 sppsvc - ok
11:28:51.0665 1728 sppuinotify (b0180b20b065d89232a78a40fe56eaa6) C:\Windows\system32\sppuinotify.dll
11:28:51.0780 1728 sppuinotify - ok
11:28:51.0804 1728 sqlagent$soshome22 - ok
11:28:51.0948 1728 SQLBrowser (86ebd8b1f23e743aad21f4d5b4d40985) c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe
11:28:52.0001 1728 SQLBrowser - ok
11:28:52.0033 1728 SQLWriter (d89083c4eb02daca8f944b0e05e57f9d) c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
11:28:52.0080 1728 SQLWriter - ok
11:28:52.0198 1728 sr - ok
11:28:52.0235 1728 SRTSP - ok
11:28:52.0361 1728 srv (e4c2764065d66ea1d2d3ebc28fe99c46) C:\Windows\system32\DRIVERS\srv.sys
11:28:52.0469 1728 srv - ok
11:28:52.0532 1728 srv2 (03f0545bd8d4c77fa0ae1ceedfcc71ab) C:\Windows\system32\DRIVERS\srv2.sys
11:28:52.0595 1728 srv2 - ok
11:28:52.0740 1728 srvnet (be6bd660caa6f291ae06a718a4fa8abc) C:\Windows\system32\DRIVERS\srvnet.sys
11:28:52.0793 1728 srvnet - ok
11:28:52.0858 1728 SSDPSRV (d887c9fd02ac9fa880f6e5027a43e118) C:\Windows\System32\ssdpsrv.dll
11:28:52.0963 1728 SSDPSRV - ok
11:28:53.0012 1728 SstpSvc (d318f23be45d5e3a107469eb64815b50) C:\Windows\system32\sstpsvc.dll
11:28:53.0138 1728 SstpSvc - ok
11:28:53.0279 1728 stexstor (db32d325c192b801df274bfd12a7e72b) C:\Windows\system32\DRIVERS\stexstor.sys
11:28:53.0329 1728 stexstor - ok
11:28:53.0410 1728 StiSvc (e1fb3706030fb4578a0d72c2fc3689e4) C:\Windows\System32\wiaservc.dll
11:28:53.0515 1728 StiSvc - ok
11:28:53.0600 1728 StkASSrv - ok
11:28:53.0637 1728 surveyor - ok
11:28:53.0673 1728 svcwmu - ok
11:28:53.0769 1728 swenum (e58c78a848add9610a4db6d214af5224) C:\Windows\system32\drivers\swenum.sys
11:28:53.0817 1728 swenum - ok
11:28:53.0864 1728 SWNC5E00 - ok
11:28:53.0949 1728 swprv (a28bd92df340e57b024ba433165d34d7) C:\Windows\System32\swprv.dll
11:28:54.0084 1728 swprv - ok
11:28:54.0169 1728 Swupdtmr (e1292c1ed4deb17b8a9b586d22cb2061) c:\Toshiba\IVP\swupdate\swupdtmr.exe
11:28:54.0210 1728 Swupdtmr - ok
11:28:54.0300 1728 SymIMMP - ok
11:28:54.0330 1728 sympxsvc - ok
11:28:54.0424 1728 SynTP (55f6e55cc2430ca8713387106fa79817) C:\Windows\system32\DRIVERS\SynTP.sys
11:28:54.0475 1728 SynTP - ok
11:28:54.0573 1728 SysMain (36650d618ca34c9d357dfd3d89b2c56f) C:\Windows\system32\sysmain.dll
11:28:54.0678 1728 SysMain - ok
11:28:54.0844 1728 TabletInputService (763fecdc3d30c815fe72dd57936c6cd1) C:\Windows\System32\TabSvc.dll
11:28:54.0929 1728 TabletInputService - ok
11:28:54.0975 1728 tandpl - ok
11:28:55.0051 1728 TapiSrv (613bf4820361543956909043a265c6ac) C:\Windows\System32\tapisrv.dll
11:28:55.0171 1728 TapiSrv - ok
11:28:55.0265 1728 tappsrv - ok
11:28:55.0348 1728 TBS (b799d9fdb26111737f58288d8dc172d9) C:\Windows\System32\tbssvc.dll
11:28:55.0466 1728 TBS - ok
11:28:55.0591 1728 Tcpip (65d10b191c59c5501a1263fc33f6894b) C:\Windows\system32\drivers\tcpip.sys
11:28:55.0708 1728 Tcpip - ok
11:28:55.0849 1728 TCPIP6 (65d10b191c59c5501a1263fc33f6894b) C:\Windows\system32\DRIVERS\tcpip.sys
11:28:55.0954 1728 TCPIP6 - ok
11:28:56.0052 1728 tcpipreg (cca24162e055c3714ce5a88b100c64ed) C:\Windows\system32\drivers\tcpipreg.sys
11:28:56.0155 1728 tcpipreg - ok
11:28:56.0244 1728 tdcmdpst (1825bceb47bf41c5a9f0e44de82fc27a) C:\Windows\system32\DRIVERS\tdcmdpst.sys
11:28:56.0321 1728 tdcmdpst - ok
11:28:56.0376 1728 TDPIPE (1cb91b2bd8f6dd367dfc2ef26fd751b2) C:\Windows\system32\drivers\tdpipe.sys
11:28:56.0443 1728 TDPIPE - ok
11:28:56.0531 1728 tdrpman - ok
11:28:56.0616 1728 TDTCP (2c2c5afe7ee4f620d69c23c0617651a8) C:\Windows\system32\drivers\tdtcp.sys
11:28:56.0682 1728 TDTCP - ok
11:28:56.0739 1728 tdx (b459575348c20e8121d6039da063c704) C:\Windows\system32\DRIVERS\tdx.sys
11:28:56.0848 1728 tdx - ok
11:28:56.0972 1728 TermDD (04dbf4b01ea4bf25a9a3e84affac9b20) C:\Windows\system32\drivers\termdd.sys
11:28:57.0024 1728 TermDD - ok
11:28:57.0105 1728 TermService (382c804c92811be57829d8e550a900e2) C:\Windows\System32\termsrv.dll
11:28:57.0239 1728 TermService - ok
11:28:57.0376 1728 Themes (42fb6afd6b79d9fe07381609172e7ca4) C:\Windows\system32\themeservice.dll
11:28:57.0456 1728 Themes - ok
11:28:57.0483 1728 thkeys - ok
11:28:57.0554 1728 THREADORDER (146b6f43a673379a3c670e86d89be5ea) C:\Windows\system32\mmcss.dll
11:28:57.0652 1728 THREADORDER - ok
11:28:57.0697 1728 timounter - ok
11:28:57.0810 1728 tmesrv3 - ok
11:28:57.0942 1728 TNaviSrv (e47f35a87ff0da38def37a0eb0c2d2df) C:\Program Files\Toshiba\TOSHIBA DVD PLAYER\TNaviSrv.exe
11:28:57.0988 1728 TNaviSrv - ok
11:28:58.0017 1728 tng-dtmg - ok
11:28:58.0084 1728 TODDSrv (c5ac715b65b01788abc22d10749dddd8) C:\Windows\system32\TODDSrv.exe
11:28:58.0137 1728 TODDSrv - ok
11:28:58.0241 1728 TosCoSrv (da6903958cbdc091ffcbbca70ccff34c) C:\Program Files\Toshiba\Power Saver\TosCoSrv.exe
11:28:58.0301 1728 TosCoSrv - ok
11:28:58.0429 1728 TOSHIBA Bluetooth Service (2e7315b147e524e055026e6634b14ea6) C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
11:28:58.0474 1728 TOSHIBA Bluetooth Service - ok
11:28:58.0513 1728 TOSHIBA SMART Log Service (22690dffc7f2a18279a7a0489aa02bac) C:\Program Files\TOSHIBA\SMARTLogService\TosIPCSrv.exe
11:28:58.0556 1728 TOSHIBA SMART Log Service ( UnsignedFile.Multi.Generic ) - warning
11:28:58.0556 1728 TOSHIBA SMART Log Service - detected UnsignedFile.Multi.Generic (1)
11:28:58.0700 1728 tosrfec (5c4103544612e5011ef46301b93d1aa6) C:\Windows\system32\DRIVERS\tosrfec.sys
11:28:58.0794 1728 tosrfec - ok
11:28:58.0866 1728 TrkWks (4792c0378db99a9bc2ae2de6cfff0c3a) C:\Windows\System32\trkwks.dll
11:28:58.0985 1728 TrkWks - ok
11:28:59.0140 1728 TrustedInstaller (2c49b175aee1d4364b91b531417fe583) C:\Windows\servicing\TrustedInstaller.exe
11:28:59.0249 1728 TrustedInstaller - ok
11:28:59.0333 1728 tsscoreservice - ok
11:28:59.0445 1728 tssecsrv (254bb140eee3c59d6114c1a86b636877) C:\Windows\system32\DRIVERS\tssecsrv.sys
11:28:59.0536 1728 tssecsrv - ok
11:28:59.0656 1728 TsUsbFlt (fd1d6c73e6333be727cbcc6054247654) C:\Windows\system32\drivers\tsusbflt.sys
11:28:59.0740 1728 TsUsbFlt - ok
11:28:59.0817 1728 tunnel (b2fa25d9b17a68bb93d58b0556e8c90d) C:\Windows\system32\DRIVERS\tunnel.sys
11:28:59.0927 1728 tunnel - ok
11:28:59.0972 1728 TVALZ (792a8b80f8188aba4b2be271583f3e46) C:\Windows\system32\DRIVERS\TVALZ_O.SYS
11:29:00.0016 1728 TVALZ - ok
11:29:00.0091 1728 tvtpktfilter - ok
11:29:00.0144 1728 uagp35 (750fbcb269f4d7dd2e420c56b795db6d) C:\Windows\system32\DRIVERS\uagp35.sys
11:29:00.0195 1728 uagp35 - ok
11:29:00.0233 1728 UBHelper - ok
11:29:00.0323 1728 udfs (ee43346c7e4b5e63e54f927babbb32ff) C:\Windows\system32\DRIVERS\udfs.sys
11:29:00.0441 1728 udfs - ok
11:29:00.0549 1728 UI0Detect (8344fd4fce927880aa1aa7681d4927e5) C:\Windows\system32\UI0Detect.exe
11:29:00.0624 1728 UI0Detect - ok
11:29:00.0751 1728 UleadBurningHelper (332d341d92b933600d41953b08360dfb) C:\Program Files\Common Files\Ulead Systems\DVD\ULCDRSvr.exe
11:29:00.0796 1728 UleadBurningHelper ( UnsignedFile.Multi.Generic ) - warning
11:29:00.0796 1728 UleadBurningHelper - detected UnsignedFile.Multi.Generic (1)
11:29:00.0962 1728 uliagpkx (44e8048ace47befbfdc2e9be4cbc8880) C:\Windows\system32\drivers\uliagpkx.sys
11:29:01.0015 1728 uliagpkx - ok
11:29:01.0069 1728 umbus (d295bed4b898f0fd999fcfa9b32b071b) C:\Windows\system32\drivers\umbus.sys
11:29:01.0144 1728 umbus - ok
11:29:01.0195 1728 UmPass (7550ad0c6998ba1cb4843e920ee0feac) C:\Windows\system32\DRIVERS\umpass.sys
11:29:01.0264 1728 UmPass - ok
11:29:01.0366 1728 umwdf - ok
11:29:01.0397 1728 UPATC - ok
11:29:01.0428 1728 UpdateCenterService - ok
11:29:01.0516 1728 upnphost (833fbb672460efce8011d262175fad33) C:\Windows\System32\upnphost.dll
11:29:01.0623 1728 upnphost - ok
11:29:01.0713 1728 USBAAPL (83cafcb53201bbac04d822f32438e244) C:\Windows\system32\Drivers\usbaapl.sys
11:29:01.0761 1728 USBAAPL ( UnsignedFile.Multi.Generic ) - warning
11:29:01.0761 1728 USBAAPL - detected UnsignedFile.Multi.Generic (1)
11:29:01.0898 1728 usbccgp (bd9c55d7023c5de374507acc7a14e2ac) C:\Windows\system32\DRIVERS\usbccgp.sys
11:29:01.0982 1728 usbccgp - ok
11:29:02.0041 1728 usbcir (04ec7cec62ec3b6d9354eee93327fc82) C:\Windows\system32\drivers\usbcir.sys
11:29:02.0103 1728 usbcir - ok
11:29:02.0135 1728 usbehci (f92de757e4b7ce9c07c5e65423f3ae3b) C:\Windows\system32\DRIVERS\usbehci.sys
11:29:02.0187 1728 usbehci - ok
11:29:02.0339 1728 usbhub (8dc94aec6a7e644a06135ae7506dc2e9) C:\Windows\system32\DRIVERS\usbhub.sys
11:29:02.0415 1728 usbhub - ok
11:29:02.0482 1728 usbohci (e185d44fac515a18d9deddc23c2cdf44) C:\Windows\system32\DRIVERS\usbohci.sys
11:29:02.0555 1728 usbohci - ok
11:29:02.0682 1728 usbprint (797d862fe0875e75c7cc4c1ad7b30252) C:\Windows\system32\DRIVERS\usbprint.sys
11:29:02.0740 1728 usbprint - ok
11:29:02.0791 1728 usbscan (576096ccbc07e7c4ea4f5e6686d6888f) C:\Windows\system32\DRIVERS\usbscan.sys
11:29:02.0870 1728 usbscan - ok
11:29:02.0912 1728 usbsermpt - ok
11:29:02.0997 1728 USBSTOR (f991ab9cc6b908db552166768176896a) C:\Windows\system32\DRIVERS\USBSTOR.SYS
11:29:03.0086 1728 USBSTOR - ok
11:29:03.0190 1728 usbuhci (68df884cf41cdada664beb01daf67e3d) C:\Windows\system32\drivers\usbuhci.sys
11:29:03.0241 1728 usbuhci - ok
11:29:03.0268 1728 USBVCD - ok
11:29:03.0368 1728 usbvideo (45f4e7bf43db40a6c6b4d92c76cbc3f2) C:\Windows\system32\Drivers\usbvideo.sys
11:29:03.0448 1728 usbvideo - ok
11:29:03.0473 1728 usrbridg - ok
11:29:03.0538 1728 UVCFTR (8c5094a8ab24de7496c7c19942f2df04) C:\Windows\system32\Drivers\UVCFTR_S.SYS
11:29:03.0616 1728 UVCFTR - ok
11:29:03.0743 1728 UxSms (081e6e1c91aec36758902a9f727cd23c) C:\Windows\System32\uxsms.dll
11:29:03.0858 1728 UxSms - ok
11:29:03.0901 1728 VaultSvc (81951f51e318aecc2d68559e47485cc4) C:\Windows\system32\lsass.exe
11:29:03.0952 1728 VaultSvc - ok
11:29:04.0055 1728 vdrvroot (a059c4c3edb09e07d21a8e5c0aabd3cb) C:\Windows\system32\drivers\vdrvroot.sys
11:29:04.0106 1728 vdrvroot - ok
11:29:04.0264 1728 vds (c3cd30495687c2a2f66a65ca6fd89be9) C:\Windows\System32\vds.exe
11:29:04.0377 1728 vds - ok
11:29:04.0404 1728 venturi2 - ok
11:29:04.0441 1728 vet-rec - ok
11:29:04.0515 1728 vga (17c408214ea61696cec9c66e388b14f3) C:\Windows\system32\DRIVERS\vgapnp.sys
11:29:04.0598 1728 vga - ok
11:29:04.0704 1728 VgaSave (8e38096ad5c8570a6f1570a61e251561) C:\Windows\System32\drivers\vga.sys
11:29:04.0801 1728 VgaSave - ok
11:29:04.0857 1728 vhdmp (5461686cca2fda57b024547733ab42e3) C:\Windows\system32\drivers\vhdmp.sys
11:29:04.0914 1728 vhdmp - ok
11:29:04.0960 1728 VHidMinidrv - ok
11:29:04.0992 1728 Via4in1 - ok
11:29:05.0055 1728 viaagp (c829317a37b4bea8f39735d4b076e923) C:\Windows\system32\drivers\viaagp.sys
11:29:05.0106 1728 viaagp - ok
11:29:05.0168 1728 ViaC7 (e02f079a6aa107f06b16549c6e5c7b74) C:\Windows\system32\DRIVERS\viac7.sys
11:29:05.0244 1728 ViaC7 - ok
11:29:05.0379 1728 viaide (e43574f6a56a0ee11809b48c09e4fd3c) C:\Windows\system32\drivers\viaide.sys
11:29:05.0427 1728 viaide - ok
11:29:05.0472 1728 vmauthdservice - ok
11:29:05.0509 1728 vmkbd2 - ok
11:29:05.0579 1728 volmgr (4c63e00f2f4b5f86ab48a58cd990f212) C:\Windows\system32\drivers\volmgr.sys
11:29:05.0629 1728 volmgr - ok
11:29:05.0674 1728 volmgrx (b5bb72067ddddbbfb04b2f89ff8c3c87) C:\Windows\system32\drivers\volmgrx.sys
11:29:05.0739 1728 volmgrx - ok
11:29:05.0872 1728 volsnap (f497f67932c6fa693d7de2780631cfe7) C:\Windows\system32\drivers\volsnap.sys
11:29:05.0934 1728 volsnap - ok
11:29:05.0964 1728 vpcbus - ok
11:29:06.0039 1728 vsmraid (9dfa0cc2f8855a04816729651175b631) C:\Windows\system32\DRIVERS\vsmraid.sys
11:29:06.0096 1728 vsmraid - ok
11:29:06.0195 1728 VSS (209a3b1901b83aeb8527ed211cce9e4c) C:\Windows\system32\vssvc.exe
11:29:06.0345 1728 VSS - ok
11:29:06.0516 1728 vwifibus (90567b1e658001e79d7c8bbd3dde5aa6) C:\Windows\system32\DRIVERS\vwifibus.sys
11:29:06.0591 1728 vwifibus - ok
11:29:06.0642 1728 vwififlt (7090d3436eeb4e7da3373090a23448f7) C:\Windows\system32\DRIVERS\vwififlt.sys
11:29:06.0723 1728 vwififlt - ok
11:29:06.0832 1728 vxd - ok
11:29:06.0916 1728 W32Time (55187fd710e27d5095d10a472c8baf1c) C:\Windows\system32\w32time.dll
11:29:07.0047 1728 W32Time - ok
11:29:07.0081 1728 w550mgmt - ok
11:29:07.0115 1728 W700bus - ok
11:29:07.0204 1728 WacomPen (de3721e89c653aa281428c8a69745d90) C:\Windows\system32\DRIVERS\wacompen.sys
11:29:07.0274 1728 WacomPen - ok
11:29:07.0419 1728 WANARP (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
11:29:07.0532 1728 WANARP - ok
11:29:07.0546 1728 Wanarpv6 (3c3c78515f5ab448b022bdf5b8ffdd2e) C:\Windows\system32\DRIVERS\wanarp.sys
11:29:07.0638 1728 Wanarpv6 - ok
11:29:07.0698 1728 wanatw (0a716c08cb13c3a8f4f51e882dbf7416) C:\Windows\system32\DRIVERS\wanatw4.sys
11:29:07.0771 1728 wanatw - ok
11:29:07.0865 1728 wap3gx - ok
11:29:07.0973 1728 WatAdminSvc (353a04c273ec58475d8633e75ccd5604) C:\Windows\system32\Wat\WatAdminSvc.exe
11:29:08.0337 1728 WatAdminSvc - ok
11:29:08.0449 1728 wbengine (691e3285e53dca558e1a84667f13e15a) C:\Windows\system32\wbengine.exe
11:29:08.0612 1728 wbengine - ok
11:29:08.0754 1728 WbioSrvc (9614b5d29dc76ac3c29f6d2d3aa70e67) C:\Windows\System32\wbiosrvc.dll
11:29:08.0840 1728 WbioSrvc - ok
11:29:08.0902 1728 wcncsvc (34eee0dfaadb4f691d6d5308a51315dc) C:\Windows\System32\wcncsvc.dll
11:29:08.0976 1728 wcncsvc - ok
11:29:09.0006 1728 WcsPlugInService (5d930b6357a6d2af4d7653bdabbf352f) C:\Windows\System32\WcsPlugInService.dll
11:29:09.0082 1728 WcsPlugInService - ok
11:29:09.0225 1728 Wd (1112a9badacb47b7c0bb0392e3158dff) C:\Windows\system32\DRIVERS\wd.sys
11:29:09.0273 1728 Wd - ok
11:29:09.0330 1728 WDC_SAM (d6efaf429fd30c5df613d220e344cce7) C:\Windows\system32\DRIVERS\wdcsam.sys
11:29:09.0408 1728 WDC_SAM - ok
11:29:09.0496 1728 WDDMService (8530b35284aa20d9c614ccb3725cef37) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
11:29:09.0534 1728 WDDMService ( UnsignedFile.Multi.Generic ) - warning
11:29:09.0534 1728 WDDMService - detected UnsignedFile.Multi.Generic (1)
11:29:09.0682 1728 Wdf01000 (9950e3d0f08141c7e89e64456ae7dc73) C:\Windows\system32\drivers\Wdf01000.sys
11:29:09.0754 1728 Wdf01000 - ok
11:29:09.0819 1728 WdiServiceHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
11:29:09.0909 1728 WdiServiceHost - ok
11:29:09.0925 1728 WdiSystemHost (46ef9dc96265fd0b423db72e7c38c2a5) C:\Windows\system32\wdi.dll
11:29:09.0991 1728 WdiSystemHost - ok
11:29:10.0087 1728 WDSmartWareBackgroundService (138ab06adbbf300aa804d7974a5aec82) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
11:29:10.0109 1728 WDSmartWareBackgroundService ( UnsignedFile.Multi.Generic ) - warning
11:29:10.0109 1728 WDSmartWareBackgroundService - detected UnsignedFile.Multi.Generic (1)
11:29:10.0247 1728 WebClient (a9d880f97530d5b8fee278923349929d) C:\Windows\System32\webclnt.dll
11:29:10.0345 1728 WebClient - ok
11:29:10.0369 1728 webrootenterpriseclientservice - ok
11:29:10.0427 1728 websenserealtimeanalyzer - ok
11:29:10.0496 1728 Wecsvc (760f0afe937a77cff27153206534f275) C:\Windows\system32\wecsvc.dll
11:29:10.0603 1728 Wecsvc - ok
11:29:10.0755 1728 wercplsupport (ac804569bb2364fb6017370258a4091b) C:\Windows\System32\wercplsupport.dll
11:29:10.0864 1728 wercplsupport - ok
11:29:10.0914 1728 WerSvc (08e420d873e4fd85241ee2421b02c4a4) C:\Windows\System32\WerSvc.dll
11:29:11.0023 1728 WerSvc - ok
11:29:11.0130 1728 WfpLwf (8b9a943f3b53861f2bfaf6c186168f79) C:\Windows\system32\DRIVERS\wfplwf.sys
11:29:11.0224 1728 WfpLwf - ok
11:29:11.0327 1728 WIMMount (5cf95b35e59e2a38023836fff31be64c) C:\Windows\system32\drivers\wimmount.sys
11:29:11.0376 1728 WIMMount - ok
11:29:11.0482 1728 WinDefend (3fae8f94296001c32eab62cd7d82e0fd) C:\Program Files\Windows Defender\mpsvc.dll
11:29:11.0617 1728 WinDefend - ok
11:29:11.0643 1728 WinHttpAutoProxySvc - ok
11:29:11.0837 1728 Winmgmt (f62e510b6ad4c21eb9fe8668ed251826) C:\Windows\system32\wbem\WMIsvc.dll
11:29:11.0932 1728 Winmgmt - ok
11:29:12.0040 1728 WinRM (1b91cd34ea3a90ab6a4ef0550174f4cc) C:\Windows\system32\WsmSvc.dll
11:29:12.0183 1728 WinRM - ok
11:29:12.0364 1728 WinUsb (a67e5f9a400f3bd1be3d80613b45f708) C:\Windows\system32\DRIVERS\WinUsb.sys
11:29:12.0449 1728 WinUsb - ok
11:29:12.0535 1728 Wlansvc (16935c98ff639d185086a3529b1f2067) C:\Windows\System32\wlansvc.dll
11:29:12.0632 1728 Wlansvc - ok
11:29:12.0721 1728 wlluc48 - ok
11:29:12.0759 1728 wlsetupsvc - ok
11:29:12.0859 1728 WmiAcpi (0217679b8fca58714c3bf2726d2ca84e) C:\Windows\system32\drivers\wmiacpi.sys
11:29:12.0914 1728 WmiAcpi - ok
11:29:13.0030 1728 wmiApSrv (6eb6b66517b048d87dc1856ddf1f4c3f) C:\Windows\system32\wbem\WmiApSrv.exe
11:29:13.0091 1728 wmiApSrv - ok
11:29:13.0211 1728 wmp54gssvc - ok
11:29:13.0336 1728 WMPNetworkSvc (3b40d3a61aa8c21b88ae57c58ab3122e) C:\Program Files\Windows Media Player\wmpnetwk.exe
11:29:13.0481 1728 WMPNetworkSvc - ok
11:29:13.0600 1728 WNIPROT5 - ok
11:29:13.0672 1728 WPCSvc (a2f0ec770a92f2b3f9de6d518e11409c) C:\Windows\System32\wpcsvc.dll
11:29:13.0791 1728 WPCSvc - ok
11:29:13.0890 1728 WPDBusEnum (aa53356d60af47eacc85bc617a4f3f66) C:\Windows\system32\wpdbusenum.dll
11:29:14.0009 1728 WPDBusEnum - ok
11:29:14.0110 1728 wpshelper - ok
11:29:14.0191 1728 ws2ifsl (6db3276587b853bf886b69528fdb048c) C:\Windows\system32\drivers\ws2ifsl.sys
11:29:14.0311 1728 ws2ifsl - ok
11:29:14.0337 1728 WscNetDr - ok
11:29:14.0414 1728 wscsvc (6f5d49efe0e7164e03ae773a3fe25340) C:\Windows\system32\wscsvc.dll
11:29:14.0494 1728 wscsvc - ok
11:29:14.0610 1728 WSearch - ok
11:29:14.0736 1728 wuauserv (3026418a50c5b4761befa632cedb7406) C:\Windows\system32\wuaueng.dll
11:29:14.0895 1728 wuauserv - ok
11:29:15.0089 1728 WudfPf (e714a1c0354636837e20ccbf00888ee7) C:\Windows\system32\drivers\WudfPf.sys
11:29:15.0203 1728 WudfPf - ok
11:29:15.0282 1728 WUDFRd (1023ee888c9b47178c5293ed5336ab69) C:\Windows\system32\DRIVERS\WUDFRd.sys
11:29:15.0377 1728 WUDFRd - ok
11:29:15.0497 1728 wudfsvc (8d1e1e529a2c9e9b6a85b55a345f7629) C:\Windows\System32\WUDFSvc.dll
11:29:15.0595 1728 wudfsvc - ok
11:29:15.0620 1728 wusb54gv2svc - ok
11:29:15.0705 1728 WwanSvc (ff2d745b560f7c71b31f30f4d49f73d2) C:\Windows\System32\wwansvc.dll
11:29:15.0799 1728 WwanSvc - ok
11:29:15.0840 1728 XDva004 - ok
11:29:15.0977 1728 z525mdfl - ok
11:29:16.0010 1728 z525mgmt - ok
11:29:16.0043 1728 ZDCNDIS5 - ok
11:29:16.0082 1728 ZSMC303 - ok
11:29:16.0118 1728 zunenetworksvc - ok
11:29:16.0180 1728 MBR (0x1B8) (a36c5e4f47e84449ff07ed3517b43a31) \Device\Harddisk0\DR0
11:29:16.0310 1728 \Device\Harddisk0\DR0 ( TDSS File System ) - warning
11:29:16.0310 1728 \Device\Harddisk0\DR0 - detected TDSS File System (1)
11:29:16.0321 1728 Boot (0x1200) (cbe80ebde2ada9b183ead82cb4a12a35) \Device\Harddisk0\DR0\Partition0
11:29:16.0324 1728 \Device\Harddisk0\DR0\Partition0 - ok
11:29:16.0331 1728 ============================================================
11:29:16.0331 1728 Scan finished
11:29:16.0331 1728 ============================================================
11:29:16.0386 6020 Detected object count: 13
11:29:16.0386 6020 Actual detected object count: 13
11:30:01.0083 6020 ConfigFree Service ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:01.0083 6020 ConfigFree Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:01.0311 6020 C:\Windows\system32\Drivers\dfsc.sys - copied to quarantine
11:30:16.0929 6020 VerifyFileNameVersionInfo: GetFileVersionInfoSizeW(C:\Windows\system32\drivers\dfsc.sys) error 1813
11:30:20.0063 6020 Backup copy not found, trying to cure infected file..
11:30:20.0064 6020 C:\Windows\system32\Drivers\dfsc.sys - Cure failed (FFFFFFFF)
11:30:20.0064 6020 C:\Windows\system32\Drivers\dfsc.sys - processing error
11:30:25.0256 6020 DfsC ( Virus.Win32.ZAccess.c ) - User select action: Cure
11:30:25.0257 6020 GoogleDesktopManager ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0258 6020 GoogleDesktopManager ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0265 6020 IDriverT ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0265 6020 IDriverT ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0274 6020 jswpsapi ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0274 6020 jswpsapi ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0275 6020 NeatReceipts Database Controller ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0275 6020 NeatReceipts Database Controller ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0289 6020 Sony SCSI Helper Service ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0289 6020 Sony SCSI Helper Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0294 6020 TOSHIBA SMART Log Service ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0295 6020 TOSHIBA SMART Log Service ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0306 6020 UleadBurningHelper ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0306 6020 UleadBurningHelper ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0313 6020 USBAAPL ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0313 6020 USBAAPL ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0323 6020 WDDMService ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0323 6020 WDDMService ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0330 6020 WDSmartWareBackgroundService ( UnsignedFile.Multi.Generic ) - skipped by user
11:30:25.0331 6020 WDSmartWareBackgroundService ( UnsignedFile.Multi.Generic ) - User select action: Skip
11:30:25.0339 6020 \Device\Harddisk0\DR0 ( TDSS File System ) - skipped by user
11:30:25.0339 6020 \Device\Harddisk0\DR0 ( TDSS File System ) - User select action: Skip

#10 APPleas

APPleas
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:29 AM

Posted 22 April 2012 - 06:54 PM

It won't let me post the OTL log file because it is too long so I was going to attach it but it was too big...what now?

OTL Extras logfile created on: 4/22/2012 3:11:45 PM - Run 1
OTL by OldTimer - Version 3.2.40.0 Folder = C:\Users\bjs\Desktop
Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 8.0.7601.17514)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

3.37 Gb Total Physical Memory | 2.26 Gb Available Physical Memory | 66.97% Memory free
6.74 Gb Paging File | 5.19 Gb Available in Paging File | 76.99% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 225.24 Gb Total Space | 95.08 Gb Free Space | 42.21% Space Free | Partition Type: NTFS

Computer Name: RWE-PC | User Name: bjs | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 90 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)

[HKEY_USERS\S-1-5-21-3451357519-3170182007-3584442759-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\TOSHIBA\Ivp\ISM\pinger.exe" = C:\TOSHIBA\Ivp\ISM\pinger.exe:*:Enabled:Toshiba Software Upgrades Pinger -- ()
"C:\TOSHIBA\ivp\NetInt\Netint.exe" = C:\TOSHIBA\ivp\NetInt\Netint.exe:*:Enabled:NIE - Toshiba Software Upgrades Engine -- (TOSHIBA Corporation)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{008D69EB-70FF-46AB-9C75-924620DF191A}" = TOSHIBA Speech System SR Engine(U.S.) Version1.0
"{03240EBA-04F2-4652-BC7F-B055902BDCD3}" = Memeo AutoBackup
"{05BDC796-3451-4F81-B91D-E98F7ADA76C2}" = TurboTax 2010 WinPerTaxSupport
"{062ABD24-47F8-D865-BCB6-A724A94BC9A5}" = CCC Help Japanese
"{06F2B3DC-74F4-300D-D41A-B21B46101CA2}" = Skins
"{0A573F30-FB63-9A85-2E6E-39E1AC5366D0}" = Catalyst Control Center Localization Hungarian
"{0A9F311E-A4B9-4808-1D1C-0B2E7705A735}" = Catalyst Control Center Localization Spanish
"{0F15A965-99BA-BC9D-5A00-D7E1E7B2AE7F}" = Catalyst Control Center Localization French
"{12B3A009-A080-4619-9A2A-C6DB151D8D67}" = TOSHIBA Assist
"{14FEF8C7-0EB1-47F2-6A13-D43171D4DFBB}" = Catalyst Control Center Localization Greek
"{1D4D4C5C-6771-A416-0FC9-167F47C4D977}" = Catalyst Control Center Localization Polish
"{1E32C2AB-9722-5F41-7BDE-24B5AFD2BCE6}" = CCC Help Spanish
"{206FD69B-F9FE-4164-81BD-D52552BC9C23}" = GearDrvs
"{21AEC16B-1C21-81B4-DA88-2235CC1F7E39}" = Catalyst Control Center Localization Japanese
"{23B8A91D-680B-462B-87AD-3D70F7341731}" = iTunes
"{26252794-F3EC-4419-8BBD-A9D51D296A6D}" = AXIS Media Control Embedded Installer
"{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = CyberLink PowerCinema for TOSHIBA
"{26A24AE4-039D-4CA4-87B4-2F83216021FF}" = Java™ 6 Update 30
"{27C467F8-F8EF-4f68-BD72-D63632B2096C}" = McAfee Online Backup
"{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Atheros Driver Installation Program
"{288306FF-D5B5-7398-0617-E52F625C6797}" = CCC Help Norwegian
"{2883F6F5-0509-43F3-868C-D50330DD9DD3}" = TOSHIBA Hardware Setup
"{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}" = Microsoft SQL Server 2005 Express Edition (NR2007)
"{3782EC09-4000-475E-8A59-9CABD6F03B4C}" = TurboTax 2010 WinPerFedFormset
"{37C866E4-AA67-4725-9E95-A39968DD7960}" = Camera Assistant Software for Toshiba
"{3881DB80-EAA2-012B-ADAE-000000000000}" = TurboTax 2009 WinPerFedFormset
"{38975F50-EAA2-012B-ADB4-000000000000}" = TurboTax 2009 WinPerReleaseEngine
"{38A34630-EAA2-012B-ADB6-000000000000}" = TurboTax 2009 WinPerTaxSupport
"{397AC65E-CB4A-29C2-ACF9-D04444438971}" = Catalyst Control Center Localization Thai
"{3A90BE50-EAA2-012B-AE2D-000000000000}" = TurboTax 2009 wnciper
"{3B96A467-811C-F9FE-B8D6-3BC952025F44}" = Catalyst Control Center Localization Dutch
"{3BEEC9AD-FA8F-B413-6BBC-8B5DC7C8E08F}" = Catalyst Control Center Localization Portuguese
"{3C3901C5-3455-3E0A-A214-0B093A5070A6}" = Microsoft .NET Framework 4 Client Profile
"{3C5A81D0-EAA2-012B-AE9F-000000000000}" = TurboTax 2009 wrapper
"{3FBF6F99-8EC6-41B4-8527-0A32241B5496}" = TOSHIBA Speech System TTS Engine(U.S.) Version1.0
"{425A2BC2-AA64-4107-9C29-484245BBEA05}" = TOSHIBA Software Upgrades
"{44CDBD1B-89FB-4E02-8319-2A4C550F664A}" = RTC Client API v1.2
"{45ECDC05-71AC-6372-2A17-4139B6296F4F}" = ccc-core-static
"{45F8CDEE-7F2D-4601-B300-EB83DEE8F156}" = TurboTax 2010 wnciper
"{480C3278-56A7-3F05-3829-6DC5D4B0CB06}" = CCC Help Portuguese
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B1E87C3-00DE-4898-8E39-E390AAEF2391}" = TOSHIBA Supervisor Password
"{4CA4D9FC-212C-9F69-E760-DB4BEB34FEB5}" = CCC Help Thai
"{4DE0D937-FEB0-0D89-C8D6-35F600300BD4}" = CCC Help French
"{4F2FCCCF-29F3-44B9-886F-6D16F8417522}" = TurboTax 2010 wrapper
"{526B6DD3-0C43-2C13-7DF8-44D20D4E9853}" = CCC Help English
"{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}" = Microsoft SQL Server Setup Support Files (English)
"{544587B1-B057-F0B3-7B19-6898ADBED9AC}" = Catalyst Control Center Localization Czech
"{571C0874-A931-EEFE-E89D-8F912F633B9F}" = CCC Help Danish
"{57752979-A1C9-4C02-856B-FBB27AC4E02C}" = QuickTime
"{59F6A514-9813-47A3-948C-8A155460CC2A}" = RICOH R5C83x/84x Flash Media Controller Driver Ver.3.51.01
"{5DA0E02F-970B-424B-BF41-513A5018E4C0}" = TOSHIBA Disc Creator
"{60843C2A-5DDF-4775-9D75-28A29E05FC76}" = TravelScan 464
"{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"{63427619-C918-6F3C-7318-11DDA4975241}" = ATI Catalyst Install Manager
"{63A6E9A9-A190-46D4-9430-2DB28654AFD8}" = Norton 360
"{648B4A01-F609-1D4E-556C-0F18B54E9E1C}" = Catalyst Control Center Localization Italian
"{64F18837-72CE-DC38-899C-260AF20F979A}" = CCC Help Swedish
"{65DA2EC9-0642-47E9-AAE2-B5267AA14D75}" = Activation Assistant for the 2007 Microsoft Office suites
"{69C82DDB-3FBC-EBEC-AE0A-3ABF1F3BD39B}" = CCC Help Polish
"{6C530FF7-F6F2-FD4C-0CFC-49AD3E7244A9}" = Catalyst Control Center Localization Turkish
"{6C5F3BDC-0A1B-4436-A696-5939629D5C31}" = TOSHIBA DVD PLAYER
"{6CA2BE46-A562-8CA4-1C33-CC2681B2DDA1}" = CCC Help Finnish
"{6D8D64BE-F500-55B6-705D-DFD08AFE0624}" = Acrobat.com
"{6DBBEC03-716B-7954-873A-B782100831C5}" = Catalyst Control Center Graphics Full New
"{70BCBA77-83D9-2075-1F99-69D65C44B422}" = Catalyst Control Center Graphics Full Existing
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7670D32F-DAE6-4E49-8C8B-B3F08B5B1686}" = Microsoft SQL Server Native Client
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{78C6A78A-8B03-48C8-A47C-78BA1FCA2307}" = TOSHIBA ConfigFree
"{78E6BC53-F765-2629-C028-9F3CD49F70D4}" = CCC Help Chinese Standard
"{79155F2B-9895-49D7-8612-D92580E0DE5B}" = Bonjour
"{797EE0CA-8165-405C-B5CE-F11EC20F1BB0}" = Microsoft VC9 runtime libraries
"{7ECE1045-66CB-2A70-7EAE-BE508AF95CF2}" = Catalyst Control Center Graphics Previews Vista
"{81F93FA5-BA87-322F-2166-4D1F0FFE196E}" = CCC Help Greek
"{8376FC56-5456-DFF9-5C36-FAB3DE39F5DF}" = Catalyst Control Center Localization Norwegian
"{85B3880D-F0D2-A50C-1464-7EF646A1D21D}" = Catalyst Control Center Localization Danish
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{87FF0E39-8490-4EB4-A557-FF12F712EF7E}" = TurboTax 2010 wcaiper
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek 8169, 8168, 8101E and 8102E Ethernet Network Card Driver for Windows Vista
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8D0957A4-8EE7-E273-0BFC-9B235BEAA41A}" = CCC Help Dutch
"{8D199EBB-749F-478E-B4E4-9D343A1BEB07}" = NeatReceipts Professional 3.0 Core Files
"{8D44F868-DA59-B1BF-CC33-58B0AF8E2E39}" = Catalyst Control Center Localization Chinese Traditional
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_STANDARDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_STANDARDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}_STANDARDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_STANDARDR_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_STANDARDR_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_STANDARDR_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_STANDARDR_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}" = Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)
"{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_STANDARDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_STANDARDR_{98333358-268C-4164-B6D4-C96DF5153727}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{90140000-2005-0000-0000-0000000FF1CE}" = Microsoft Office File Validation Add-In
"{90190409-6000-11D3-8CFE-0050048383C9}" = Microsoft Publisher 2002
"{90350409-6000-11D3-8CFE-0050048383C9}" = Microsoft Office XP Media Content Deluxe
"{91120000-0012-0000-0000-0000000FF1CE}" = Microsoft Office Standard 2007
"{91120000-0012-0000-0000-0000000FF1CE}_STANDARDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}" = Microsoft Office 2007 Service Pack 3 (SP3)
"{91789CDD-E83A-4186-B436-AA7A588679FD}" = NeatReceipts Database Controller
"{9A3F65CA-78FA-4749-004B-23743CF642D1}" = Catalyst Control Center Localization Korean
"{9E5A03E3-6246-4920-9630-0527D5DA9B07}" = iSEEK AnswerWorks English Runtime
"{9FE35071-CAB2-4E79-93E7-BFC6A2DC5C5D}" = CD/DVD Drive Acoustic Silencer
"{A212E6C2-20F7-4A8E-BD8E-DC3EE7483FA2}" = PRS-500 USB driver
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3D88A98-506E-4CFC-B294-E256C679B0EE}" = Microsoft Store Download Manager
"{A525E00B-6609-442E-9DCD-64453C233E8D}" = TurboTax 2010 WinPerReleaseEngine
"{A5B13934-D1C9-D33B-982E-BB09A19C0F90}" = Catalyst Control Center Localization Finnish
"{A60F4402-4CCE-E695-64C6-F0636ACC347F}" = CCC Help Italian
"{A67BB21E-D419-45BB-AB86-7D87D14BBCE2}" = Safari
"{A91A0484-8087-A838-9BA6-03374BE3F2CE}" = Catalyst Control Center Localization Russian
"{AA725670-A7B4-D1B0-4EF5-F4B2E418C9F4}" = Catalyst Control Center Localization German
"{AB05F2C8-F608-403b-95E1-FD8ADFACD31E}" = Windows 7 Upgrade Advisor
"{AC76BA86-1033-0000-7760-000000000001}" = Adobe Acrobat 6.0.1 Professional
"{AC76BA86-7AD7-1033-7B44-A95000000001}" = Adobe Reader 9.5.1
"{ADBE6E56-60E7-7FC3-467A-827987BE09CE}" = Catalyst Control Center Localization Swedish
"{B0BCDCBD-863D-4CAB-BF68-8D1F6B1BDC13}" = Atheros Wi-Fi Protected Setup Library
"{B1819DF7-D6B1-27AA-3A3B-6560C348C386}" = Catalyst Control Center Core Implementation
"{B2544A03-10D0-4E5E-BA69-0362FFC20D18}" = OGA Notifier 2.0.0048.0
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{B5FDA445-CAC4-4BA6-A8FB-A7212BD439DE}" = Microsoft XML Parser
"{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}" = TOSHIBA Recovery Disc Creator
"{B6CF2967-C81E-40C0-9815-C05774FEF120}" = Skype Click to Call
"{B9CD69C2-D14E-C499-C18B-7342E5FE245E}" = Catalyst Control Center Localization Chinese Standard
"{C53D16CC-E56F-47B8-906E-70AAF8EABB4F}" = Toshiba Registration
"{C6579A65-9CAE-4B31-8B6B-3306E0630A66}" = Apple Software Update
"{C730E42C-935A-45BB-A0C5-37E5234D111B}" = TOSHIBA Face Recognition
"{CB2A8585-BF48-462A-81F7-3C565646F5D4}" = Reader Library by Sony
"{CD0DC280-2489-4464-A2FC-16104676394A}" = WD SmartWare
"{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}" = Bluetooth Stack for Windows by Toshiba
"{CFF4500E-C5D6-695D-A027-B3D4DDED2CC3}" = McAfee Online Backup
"{D58A1E94-9EEA-4C6E-B9FB-D7C63DC6C941}" = Catalyst Control Center - Branding
"{D6DE02C7-1F47-11D4-9515-00105AE4B89A}" = Paint Shop Pro 7 Anniversary Edition
"{D8F9F4CB-41A1-CF15-39A2-75F28E0B9991}" = CCC Help Korean
"{DDA258BA-57D9-A76C-84CB-F19571A45FC8}" = ccc-utility
"{DF73BEDD-8A09-A6E2-462B-3BDF398BAFB2}" = CCC Help Czech
"{E371C150-A9F1-49CE-ACC1-51AEFD01C1D4}_is1" = Turbo Tax Audit Support Center 3.0
"{E38C00D0-A68B-4318-A8A6-F7D4B5B1DF0E}" = Windows Media Encoder 9 Series
"{E7084B89-69E0-46B3-A118-8F99D06988CD}" = Microsoft SQL Server VSS Writer
"{E70A3EE1-067D-8C6C-1C89-9F3A1BA4CF2C}" = Catalyst Control Center Graphics Light
"{E87A8D96-5795-A788-18A2-3BCC20B09E7C}" = CCC Help Chinese Traditional
"{EB295AF7-C2D1-D911-9E62-F288874B96F4}" = CCC Help Turkish
"{EB879750-CCBD-4013-BFD5-0294D4DA5BD0}" = Apple Application Support
"{EBCD5E4C-F14A-B147-39FE-906F75AC4ACE}" = CCC Help Russian
"{EBFF48F5-3CFA-436F-8FD5-94FB01D3A0A7}" = TOSHIBA SD Memory Utilities
"{EE033C1F-443E-41EC-A0E2-559B539A4E4D}" = TOSHIBA Speech System Applications
"{EE7257A2-39A2-4D2F-9DAC-F9F25B8AE1D8}" = Skype™ 5.8
"{EFC04D3F-A152-47E7-8517-EE0F6201AFEF}" = Apple Mobile Device Support
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F214EAA4-A069-4BAF-9DA4-4DB8BEEDE485}" = DVD MovieFactory for TOSHIBA
"{F226C1DA-66D7-4ABC-86B5-3F978A660EBF}" = AOL Mail and AIM Gadget
"{F36D6137-FD4C-1F67-7B2A-815BB05BB825}" = CCC Help German
"{F84C1DC6-4B39-1A34-AD6E-A6EE49A3DD78}" = CCC Help Hungarian
"{FA54AFB1-5745-4389-B8C1-9F7509672ED1}" = iPhone Configuration Utility
"{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package
"75070B1806113224B16C70296B90DD1AD8A53479" = Windows Driver Package - Sony Corporation (PRSUSB) USB (08/08/2006 1.0.03.08080)
"Activation Assistant for the 2007 Microsoft Office suites" = Activation Assistant for the 2007 Microsoft Office suites
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"AIM_6" = AIM 6
"AOL Emergency Connect Utility 1.0" = Uninstall AOL Emergency Connect Utility 1.0
"AOL Uninstaller" = AOL Uninstaller (Choose which Products to Remove)
"AXIS Media Control Embedded" = AXIS Media Control Embedded
"Coupon Printer for Windows5.0.0.0" = Coupon Printer for Windows
"Digital Editions" = Adobe Digital Editions
"ERUNT_is1" = ERUNT 1.1j
"Google Desktop" = Google Desktop
"Ideal DVD Copy_is1" = Ideal DVD Copy V3.2.1
"InstallShield_{03240EBA-04F2-4652-BC7F-B055902BDCD3}" = Memeo AutoBackup
"InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = CyberLink PowerCinema for TOSHIBA
"InstallShield_{617C36FD-0CBE-4600-84B2-441CEB12FADF}" = TOSHIBA Extended Tiles for Windows Mobility Center
"InstallShield_{C730E42C-935A-45BB-A0C5-37E5234D111B}" = TOSHIBA Face Recognition
"InstallShield_{FEDD27A0-B306-45EF-BF58-B527406B42C8}" = TOSHIBA Value Added Package
"ISI ResearchSoft - Export Helper" = ISI ResearchSoft - Export Helper
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware version 1.60.1.1000
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft SQL Server 2005" = Microsoft SQL Server 2005
"Mozilla Firefox 11.0 (x86 en-US)" = Mozilla Firefox 11.0 (x86 en-US)
"MSC" = McAfee Total Protection
"NeatReceipts Professional" = NeatReceipts Professional
"SoftwareUpdUtility" = Download Updater (AOL LLC)
"STANDARDR" = Microsoft Office Standard 2007
"SynTPDeinstKey" = Synaptics Pointing Device Driver
"TOSHIBA Software Modem" = TOSHIBA Software Modem
"TurboTax 2009" = TurboTax 2009
"TurboTax 2010" = TurboTax 2010
"ViewpointMediaPlayer" = Viewpoint Media Player
"WildTangent toshiba Master Uninstall" = TOSHIBA Games
"Windows Media Encoder 9" = Windows Media Encoder 9 Series

========== HKEY_USERS Uninstall List ==========

[HKEY_USERS\S-1-5-21-3451357519-3170182007-3584442759-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"GoToMeeting" = GoToMeeting 4.1.0.366

========== Last 10 Event Log Errors ==========

Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt!

< End of report >

#11 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:04:29 PM

Posted 22 April 2012 - 07:02 PM

Hi,



Please split the log into parts to bypass the character limit and post them in several posts.
Thanks !



Regards,
Georgi

cXfZ4wS.png


#12 APPleas

APPleas
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:29 AM

Posted 22 April 2012 - 07:26 PM

Here is the other file - the OTL compressed...
Thanks!

Attached Files



#13 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:04:29 PM

Posted 22 April 2012 - 08:38 PM

Hi APPleas,



We need to run an OTL Fix



  • Please reopen Posted Image on your desktop.
  • Copy and Paste the following code into the Posted Image textbox. Do not include the word "Code"
    :OTL
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lktimesync.dll -- (zunenetworksvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ichaud.dll -- (ZSMC303)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\themes.dll -- (ZDCNDIS5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\se26unic.dll -- (z525mgmt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wwsecsvc.dll -- (z525mdfl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ATIBTXBAR.dll -- (XDva004)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\P17xfi.dll -- (wusb54gv2svc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dphost.dll -- (WscNetDr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PSI_SVC_2.dll -- (wpshelper)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vwlogger.dll -- (WNIPROT5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tifm.dll -- (wmp54gssvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\rpcapd.dll -- (wlsetupsvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mhndrv.dll -- (wlluc48)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\generichidservice.dll -- (websenserealtimeanalyzer)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wanusb.dll -- (webrootenterpriseclientservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wmp54gsvc.dll -- (wap3gx)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sdbus.dll -- (W700bus)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\InterBaseServer.dll -- (w550mgmt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\NTACCESS.dll -- (vxd)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\netsvc.dll -- (vpcbus)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\bb-run.dll -- (vmkbd2)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\usbmate.dll -- (vmauthdservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\netwg311.dll -- (Via4in1)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SfCtlCom.dll -- (VHidMinidrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\rt2870.dll -- (vet-rec)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\KLOGNT.dll -- (venturi2)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ql1080.dll -- (usrbridg)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vvdsvc.dll -- (USBVCD)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\RioS30.dll -- (usbsermpt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\BrPar.dll -- (UpdateCenterService)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tsscoreservice.dll -- (UPATC)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pae_avs.dll -- (umwdf)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tsmservice.dll -- (UBHelper)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\zBackupAssistService.dll -- (tvtpktfilter)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ARSVC.dll -- (tsscoreservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vulfntrs.dll -- (tng-dtmg)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\USB28xxBGA.dll -- (tmesrv3)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ntiopnp.dll -- (timounter)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\w550mdm.dll -- (thkeys)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\vsbus.dll -- (tdrpman)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\oracleformsserver-forms60server-oraform.dll -- (tappsrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wps.dll -- (tandpl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Appn.dll -- (sympxsvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nuvvid2.dll -- (SymIMMP)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\wintab32.dll -- (SWNC5E00)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\zebrbus.dll -- (svcwmu)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lxbx_device.dll -- (surveyor)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pdengine.dll -- (StkASSrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\susbser.dll -- (SRTSP)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\W8100PCI.dll -- (sr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cdr4_xp.dll -- (sqlagent$soshome22)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\MxlW2k.dll -- (sonywbms)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\hcwPP2.dll -- (SNPSTD3)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\AMDPCI.dll -- (snare)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\AmdIde.dll -- (smwdm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dcevt32.dll -- (smcirda)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tm_cfw.dll -- (slee_503_service)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mnmdd.dll -- (sifilter)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\marvinbus.dll -- (Si3114r5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\DLH5X.dll -- (SGHIDI)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\backupexecagentbrowser.dll -- (sgectl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\usr11g.dll -- (sfng32)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\alertmanager.dll -- (sfman)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\backupexecjobengine.dll -- (sfdrv01)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Via4in1.dll -- (se45nd5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\MaxtorFrontPanel1.dll -- (se45mdfl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mrpostman.dll -- (se2End5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pdreli.dll -- (se2Cunic)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\omniinet.dll -- (SE2Cobex)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\BUFADPT.dll -- (SE2Bmdfl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cdaudio.dll -- (SE26obex)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ovsecurityserver.dll -- (ScFBPNT2)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ndassvc.dll -- (scanwscs)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mohfilt.dll -- (SANDRA)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s616mdm.dll -- (SaiNtHid)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nsengine.dll -- (s3twistr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WinVd32.dll -- (s117unic)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\entech.dll -- (RTSTOR)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\n3900.dll -- (rt61)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\IFPUSB.dll -- (rpcnet)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lyncusbserv.dll -- (RMCAST)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\firelm01.dll -- (risdptsk)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s3savagenb.dll -- (RIOUNIV)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\USBDeviceService.dll -- (remotelyanywhere)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\acermemusagecheckservice.dll -- (RecAgent)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PCISys.dll -- (R300)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ATSWPDRV.dll -- (purgeieservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\X10UIF.dll -- (PNDIS5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ssm_bus.dll -- (pgfilter)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\XilinxPC4Driver.dll -- (pelmouse)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mi-raysat_3dsMax2008_32.dll -- (pdscheduler)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sqlagent$sony_mediamgr.dll -- (pdlnslea)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s117obex.dll -- (pacsptisvr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dlcg_device.dll -- (osaio)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ntuneservice.dll -- (oraclesnmppeermasteragent)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\MTC0001_ESB.dll -- (oracleorahome90agent)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pptpminiport.dll -- (NWSLP)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lmhosts.dll -- (NWSIPX32)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pdlndtdl.dll -- (nvsvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\db2governor.dll -- (nvstor64)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\winvnc.dll -- (nvmpu401)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SE2Bmdfl.dll -- (nvlddmkm)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\protectedstorage.dll -- (NtMtlFax)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\processor.dll -- (nsm1mdfl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\umwdf.dll -- (nsm1bus)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PhilCam8116_XP.dll -- (nsausvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\k750obex.dll -- (npkcmsvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SiSRaid2.dll -- (NMSSvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\anydvd.dll -- (nmsaccess)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SlNtHal.dll -- (nla)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\superproserver.dll -- (nimcdldu)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\asusgsb.dll -- (nicser_wmp11)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lfsfilt.dll -- (nhcDriverDevice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\winpowermanager.dll -- (nHancer)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\rtl8023.dll -- (netcfgsvr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ATMsrvc.dll -- (NEOFLTR_600_13319)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\AtlsAud.dll -- (navex15)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\retroexplauncher.dll -- (mxnic)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dlcc_device.dll -- (MTDVC2)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ELacpi.dll -- (MS1000)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\zumbus.dll -- (mqdmbus)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pavreport.dll -- (mpfp)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SRTSP.dll -- (moufiltr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lckfldservice.dll -- (mirrorv3)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\btserial.dll -- (mgabg)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\bdftdif.dll -- (mfetdik)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\W2acehid.dll -- (merakpop3)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cmudau.dll -- (mcsysmon)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\i8042prt.dll -- (mcpromgr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\AcronisOSSReinstallSvc.dll -- (MailService)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iwebcal.dll -- (lxrsii1s)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nod32krn.dll -- (LVVI500A)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mfeavfk.dll -- (lvsrvlauncher)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tfsnudf.dll -- (LVPrcMon)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\slee_81_service.dll -- (LVCap138)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\messenger.dll -- (lsdiorw)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\point32.dll -- (LPCFilter)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ctaud2k.dll -- (lkcitadelserver)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sglogplayer.dll -- (license)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s125bus.dll -- (lbtserv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ADIDTSFiltService.dll -- (lbrtfdc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\tcpip.dll -- (JiaoIO)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Defrag32.dll -- (isapisearch)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pgpserv.dll -- (Intels51)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\rpcsvr4x.dll -- (imonnt)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\w200mdfl.dll -- (igfx)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\winachsx.dll -- (iAimTV6)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sit_bus.dll -- (iAimFP5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\imonnt.dll -- (hpconfig)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Si3132r5.dll -- (houdinilicenseserver)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lvpopflt.dll -- (hcwPP2)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ccproxy.dll -- (gpc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\upsmonservice.dll -- (GoogleDesktopManager-010708-104812)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WBHWDOCT.dll -- (gdihook5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\dladresn.dll -- (fuj02b1)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SenFiltService.dll -- (ftpqueue)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\slpmonx.dll -- (FireTDI)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ALABULK.dll -- (fcdabus)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sfilter.dll -- (F700ius)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\iteatapi.dll -- (EUSBMSD)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mcmispupdmgr.dll -- (EPOWER)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\udfs.dll -- (epgspooler)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pchost.dll -- (emupia)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\itchfltr.dll -- (emitray)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s217obex.dll -- (elosystemservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\retinaengine.dll -- (dtscsi)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\roxwatch9.dll -- (dpfusmgr)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\webdriveservice.dll -- (dpc_srv_webcast)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\sit_mdm.dll -- (dnetc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ws2ifsl.dll -- (dmload)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\odclientservice.dll -- (dmisrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\L6POD.dll -- (dlcq_device)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\msmpsvc.dll -- (dlaudf_m)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lpds.dll -- (digictrl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\application.dll -- (df5serv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\acdservice.dll -- (cwafadminmonitor)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\s716mdfl.dll -- (curtainssyssvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\afd.dll -- (CTSYN)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\UDFReadr.dll -- (CTHWIUT.DLL)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\websensecamreportserver.dll -- (CTERFXFX.DLL)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\psasrv.dll -- (ctdvda2k)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\backupexecnotificationserver.dll -- (cq_mem)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cxpt_service.dll -- (cpqdfw)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PcdrNt.dll -- (CoachUsb)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\zpnodecollector.dll -- (co_mon)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\bgmainsvc.dll -- (ClntMgmt.sys)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\qkbfiltr.dll -- (clmtomcatstartersvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PGPdisk.dll -- (Cinemsup)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pdscheduler.dll -- (cdrbsdrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\TdmService.dll -- (ccalib8)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\CoachAud.dll -- (CBTNDIS5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\se45mgmt.dll -- (CAMCAUD)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nmraapache.dll -- (CAM1210)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\cicssfs.scmmc223.dll -- (caboagp)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\oracleorahomemanagementserver.dll -- (btwdins)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\lvuvc.dll -- (btwaudio)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\GBFSHook.dll -- (bthpan)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\Slpsvdr.dll -- (bobo)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\se44bus.dll -- (Blfp)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\intelroam.dll -- (bgmainsvc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\SRTSPL.dll -- (bcoreusb)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ipodsrv.dll -- (bcm43xx)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\DVDRC.dll -- (backuplauncher)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\battc.dll -- (avgfwsrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\deltafw.dll -- (automate5)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\flpydisk.dll -- (Atmuni)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\de_serv.dll -- (ati2mtaa)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\CTDevice_Srv.dll -- (AtcL002)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\PSSdk23.dll -- (arp1394)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\pgsql-8.0.dll -- (apfiltrservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\mfehidk.dll -- (Anydlc)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\kbdclass.dll -- (alcxsens)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\aswlsvc.dll -- (akshhl)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\resourcemanagermail.dll -- (agpcpq)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nocashio.dll -- (ageremodemaudio)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\perc2hib.dll -- (agentsrv)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\RecAgent.dll -- (adiloader)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\nwrdr.dll -- (adaptecstoragemanageragent)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\ovepstatusengine.dll -- (acdservice)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\termservice.dll -- (aavmker4)
    SRV - File not found [Auto | Stopped] -- %systemroot%\system32\WmiAcpi.dll -- (3dkeybd)
    IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
    IE - HKLM\..\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}: "URL" = http://search.aol.com/aolcom/search?query={searchTerms}&invocationType=tb50TB50CLie7
    IE - HKLM\..\SearchScopes\{8C9000EA-8EB9-42F3-95FD-A32A97E873C5}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage};
    IE - HKU\S-1-5-21-3451357519-3170182007-3584442759-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
    IE - HKU\S-1-5-21-3451357519-3170182007-3584442759-1000\..\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}: "URL" = http://search.aol.com/aolcom/search?query={searchTerms}&invocationType=tb50TB50CLie7
    IE - HKU\S-1-5-21-3451357519-3170182007-3584442759-1000\..\SearchScopes\{6B5A4426-D5DC-409F-AE05-186ACD4F76E7}: "URL" = http://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=crm&q={searchTerms}&locale=&apn_ptnrs=&apn_dtid=OSJ000&apn_uid=25A9D44B-F818-4F8B-9EC7-4A255607D3AD&apn_sauid=DDFABC8C-88CA-4C77-89FB-78213FCB52E0
    IE - HKU\S-1-5-21-3451357519-3170182007-3584442759-1000\..\SearchScopes\{8C9000EA-8EB9-42F3-95FD-A32A97E873C5}: "URL" = http://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7TSHB_en
    IE - HKU\S-1-5-21-3451357519-3170182007-3584442759-1000\..\SearchScopes\{DECA3892-BA8F-44b8-A993-A466AD694AE4}: "URL" = http://search.yahoo.com/search?fr=mcafee&p={searchTerms}
    FF - prefs.js..browser.search.defaultenginename: "Secure Search"
    O2 - BHO: (Google Dictionary Compression sdch) - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll File not found
    O18 - Protocol\Filter\x-sdch {B1759355-3EEC-4C1E-B0F1-B719FE26E377} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_A8904FB862BD9564.dll File not found
    NetSvcs: Nla - %systemroot%\system32\SlNtHal.dll File not found
    [2012/04/08 14:48:27 | 000,000,000 | ---- | M] () -- C:\ProgramData\-ZvGboQOPpzWeEu
    [2012/04/08 14:48:26 | 000,000,682 | ---- | M] () -- C:\Users\bjs\Application Data\Microsoft\Internet Explorer\Quick Launch\SMART_HDD.lnk
    :files
    C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17603_none_d9f97e05bca8003a\afd.sys|C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16385_none_d7be98b5bfc0b4c1\afd.sys /replace
    C:\Windows\System32\drivers\dfsc.sys|C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.16385_none_87708401476f7a4f\dfsc.sys /replace
    C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7601.17514_none_89a197c9445dfde9\dfsc.sys|C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.16385_none_87708401476f7a4f\dfsc.sys /replace
    :commands
    [emptytemp]
    
  • Push Posted Image
  • OTL may ask to reboot the machine. Please do so if asked.
  • Click Posted Image.
  • A report will open. Copy and Paste that report in your next reply.
  • If a report is not shown please navigate to the C:\_OTL\MovedFiles folder, and open the newest .log file present.
  • Copy/paste the content of the log back here in your next post.


Regards,
Georgi

cXfZ4wS.png


#14 APPleas

APPleas
  • Topic Starter

  • Members
  • 16 posts
  • OFFLINE
  •  
  • Local time:05:29 AM

Posted 22 April 2012 - 09:29 PM

Hello again Georgi,

Here is the report from the OTL fix - :)

All processes killed
========== OTL ==========
Service zunenetworksvc stopped successfully!
Service zunenetworksvc deleted successfully!
File %systemroot%\system32\lktimesync.dll not found.
Service ZSMC303 stopped successfully!
Service ZSMC303 deleted successfully!
File %systemroot%\system32\ichaud.dll not found.
Service ZDCNDIS5 stopped successfully!
Service ZDCNDIS5 deleted successfully!
File %systemroot%\system32\themes.dll not found.
Service z525mgmt stopped successfully!
Service z525mgmt deleted successfully!
File %systemroot%\system32\se26unic.dll not found.
Service z525mdfl stopped successfully!
Service z525mdfl deleted successfully!
File %systemroot%\system32\wwsecsvc.dll not found.
Service XDva004 stopped successfully!
Service XDva004 deleted successfully!
File %systemroot%\system32\ATIBTXBAR.dll not found.
Service wusb54gv2svc stopped successfully!
Service wusb54gv2svc deleted successfully!
File %systemroot%\system32\P17xfi.dll not found.
Service WscNetDr stopped successfully!
Service WscNetDr deleted successfully!
File %systemroot%\system32\dphost.dll not found.
Service wpshelper stopped successfully!
Service wpshelper deleted successfully!
File %systemroot%\system32\PSI_SVC_2.dll not found.
Service WNIPROT5 stopped successfully!
Service WNIPROT5 deleted successfully!
File %systemroot%\system32\vwlogger.dll not found.
Service wmp54gssvc stopped successfully!
Service wmp54gssvc deleted successfully!
File %systemroot%\system32\tifm.dll not found.
Service wlsetupsvc stopped successfully!
Service wlsetupsvc deleted successfully!
File %systemroot%\system32\rpcapd.dll not found.
Service wlluc48 stopped successfully!
Service wlluc48 deleted successfully!
File %systemroot%\system32\mhndrv.dll not found.
Service websenserealtimeanalyzer stopped successfully!
Service websenserealtimeanalyzer deleted successfully!
File %systemroot%\system32\generichidservice.dll not found.
Service webrootenterpriseclientservice stopped successfully!
Service webrootenterpriseclientservice deleted successfully!
File %systemroot%\system32\wanusb.dll not found.
Service wap3gx stopped successfully!
Service wap3gx deleted successfully!
File %systemroot%\system32\wmp54gsvc.dll not found.
Service W700bus stopped successfully!
Service W700bus deleted successfully!
File %systemroot%\system32\sdbus.dll not found.
Service w550mgmt stopped successfully!
Service w550mgmt deleted successfully!
File %systemroot%\system32\InterBaseServer.dll not found.
Service vxd stopped successfully!
Service vxd deleted successfully!
File %systemroot%\system32\NTACCESS.dll not found.
Service vpcbus stopped successfully!
Service vpcbus deleted successfully!
File %systemroot%\system32\netsvc.dll not found.
Service vmkbd2 stopped successfully!
Service vmkbd2 deleted successfully!
File %systemroot%\system32\bb-run.dll not found.
Service vmauthdservice stopped successfully!
Service vmauthdservice deleted successfully!
File %systemroot%\system32\usbmate.dll not found.
Service Via4in1 stopped successfully!
Service Via4in1 deleted successfully!
File %systemroot%\system32\netwg311.dll not found.
Service VHidMinidrv stopped successfully!
Service VHidMinidrv deleted successfully!
File %systemroot%\system32\SfCtlCom.dll not found.
Service vet-rec stopped successfully!
Service vet-rec deleted successfully!
File %systemroot%\system32\rt2870.dll not found.
Service venturi2 stopped successfully!
Service venturi2 deleted successfully!
File %systemroot%\system32\KLOGNT.dll not found.
Service usrbridg stopped successfully!
Service usrbridg deleted successfully!
File %systemroot%\system32\ql1080.dll not found.
Service USBVCD stopped successfully!
Service USBVCD deleted successfully!
File %systemroot%\system32\vvdsvc.dll not found.
Service usbsermpt stopped successfully!
Service usbsermpt deleted successfully!
File %systemroot%\system32\RioS30.dll not found.
Service UpdateCenterService stopped successfully!
Service UpdateCenterService deleted successfully!
File %systemroot%\system32\BrPar.dll not found.
Service UPATC stopped successfully!
Service UPATC deleted successfully!
File %systemroot%\system32\tsscoreservice.dll not found.
Service umwdf stopped successfully!
Service umwdf deleted successfully!
File %systemroot%\system32\pae_avs.dll not found.
Service UBHelper stopped successfully!
Service UBHelper deleted successfully!
File %systemroot%\system32\tsmservice.dll not found.
Service tvtpktfilter stopped successfully!
Service tvtpktfilter deleted successfully!
File %systemroot%\system32\zBackupAssistService.dll not found.
Service tsscoreservice stopped successfully!
Service tsscoreservice deleted successfully!
File %systemroot%\system32\ARSVC.dll not found.
Service tng-dtmg stopped successfully!
Service tng-dtmg deleted successfully!
File %systemroot%\system32\vulfntrs.dll not found.
Service tmesrv3 stopped successfully!
Service tmesrv3 deleted successfully!
File %systemroot%\system32\USB28xxBGA.dll not found.
Service timounter stopped successfully!
Service timounter deleted successfully!
File %systemroot%\system32\ntiopnp.dll not found.
Service thkeys stopped successfully!
Service thkeys deleted successfully!
File %systemroot%\system32\w550mdm.dll not found.
Service tdrpman stopped successfully!
Service tdrpman deleted successfully!
File %systemroot%\system32\vsbus.dll not found.
Service tappsrv stopped successfully!
Service tappsrv deleted successfully!
File %systemroot%\system32\oracleformsserver-forms60server-oraform.dll not found.
Service tandpl stopped successfully!
Service tandpl deleted successfully!
File %systemroot%\system32\wps.dll not found.
Service sympxsvc stopped successfully!
Service sympxsvc deleted successfully!
File %systemroot%\system32\Appn.dll not found.
Service SymIMMP stopped successfully!
Service SymIMMP deleted successfully!
File %systemroot%\system32\nuvvid2.dll not found.
Service SWNC5E00 stopped successfully!
Service SWNC5E00 deleted successfully!
File %systemroot%\system32\wintab32.dll not found.
Service svcwmu stopped successfully!
Service svcwmu deleted successfully!
File %systemroot%\system32\zebrbus.dll not found.
Service surveyor stopped successfully!
Service surveyor deleted successfully!
File %systemroot%\system32\lxbx_device.dll not found.
Service StkASSrv stopped successfully!
Service StkASSrv deleted successfully!
File %systemroot%\system32\pdengine.dll not found.
Service SRTSP stopped successfully!
Service SRTSP deleted successfully!
File %systemroot%\system32\susbser.dll not found.
Service sr stopped successfully!
Service sr deleted successfully!
File %systemroot%\system32\W8100PCI.dll not found.
Service sqlagent$soshome22 stopped successfully!
Service sqlagent$soshome22 deleted successfully!
File %systemroot%\system32\cdr4_xp.dll not found.
Service sonywbms stopped successfully!
Service sonywbms deleted successfully!
File %systemroot%\system32\MxlW2k.dll not found.
Service SNPSTD3 stopped successfully!
Service SNPSTD3 deleted successfully!
File %systemroot%\system32\hcwPP2.dll not found.
Service snare stopped successfully!
Service snare deleted successfully!
File %systemroot%\system32\AMDPCI.dll not found.
Service smwdm stopped successfully!
Service smwdm deleted successfully!
File %systemroot%\system32\AmdIde.dll not found.
Service smcirda stopped successfully!
Service smcirda deleted successfully!
File %systemroot%\system32\dcevt32.dll not found.
Service slee_503_service stopped successfully!
Service slee_503_service deleted successfully!
File %systemroot%\system32\tm_cfw.dll not found.
Service sifilter stopped successfully!
Service sifilter deleted successfully!
File %systemroot%\system32\mnmdd.dll not found.
Service Si3114r5 stopped successfully!
Service Si3114r5 deleted successfully!
File %systemroot%\system32\marvinbus.dll not found.
Service SGHIDI stopped successfully!
Service SGHIDI deleted successfully!
File %systemroot%\system32\DLH5X.dll not found.
Service sgectl stopped successfully!
Service sgectl deleted successfully!
File %systemroot%\system32\backupexecagentbrowser.dll not found.
Service sfng32 stopped successfully!
Service sfng32 deleted successfully!
File %systemroot%\system32\usr11g.dll not found.
Service sfman stopped successfully!
Service sfman deleted successfully!
File %systemroot%\system32\alertmanager.dll not found.
Service sfdrv01 stopped successfully!
Service sfdrv01 deleted successfully!
File %systemroot%\system32\backupexecjobengine.dll not found.
Service se45nd5 stopped successfully!
Service se45nd5 deleted successfully!
File %systemroot%\system32\Via4in1.dll not found.
Service se45mdfl stopped successfully!
Service se45mdfl deleted successfully!
File %systemroot%\system32\MaxtorFrontPanel1.dll not found.
Service se2End5 stopped successfully!
Service se2End5 deleted successfully!
File %systemroot%\system32\mrpostman.dll not found.
Service se2Cunic stopped successfully!
Service se2Cunic deleted successfully!
File %systemroot%\system32\pdreli.dll not found.
Service SE2Cobex stopped successfully!
Service SE2Cobex deleted successfully!
File %systemroot%\system32\omniinet.dll not found.
Service SE2Bmdfl stopped successfully!
Service SE2Bmdfl deleted successfully!
File %systemroot%\system32\BUFADPT.dll not found.
Service SE26obex stopped successfully!
Service SE26obex deleted successfully!
File %systemroot%\system32\cdaudio.dll not found.
Service ScFBPNT2 stopped successfully!
Service ScFBPNT2 deleted successfully!
File %systemroot%\system32\ovsecurityserver.dll not found.
Service scanwscs stopped successfully!
Service scanwscs deleted successfully!
File %systemroot%\system32\ndassvc.dll not found.
Service SANDRA stopped successfully!
Service SANDRA deleted successfully!
File %systemroot%\system32\mohfilt.dll not found.
Service SaiNtHid stopped successfully!
Service SaiNtHid deleted successfully!
File %systemroot%\system32\s616mdm.dll not found.
Service s3twistr stopped successfully!
Service s3twistr deleted successfully!
File %systemroot%\system32\nsengine.dll not found.
Service s117unic stopped successfully!
Service s117unic deleted successfully!
File %systemroot%\system32\WinVd32.dll not found.
Service RTSTOR stopped successfully!
Service RTSTOR deleted successfully!
File %systemroot%\system32\entech.dll not found.
Service rt61 stopped successfully!
Service rt61 deleted successfully!
File %systemroot%\system32\n3900.dll not found.
Service rpcnet stopped successfully!
Service rpcnet deleted successfully!
File %systemroot%\system32\IFPUSB.dll not found.
Service RMCAST stopped successfully!
Service RMCAST deleted successfully!
File %systemroot%\system32\lyncusbserv.dll not found.
Service risdptsk stopped successfully!
Service risdptsk deleted successfully!
File %systemroot%\system32\firelm01.dll not found.
Service RIOUNIV stopped successfully!
Service RIOUNIV deleted successfully!
File %systemroot%\system32\s3savagenb.dll not found.
Service remotelyanywhere stopped successfully!
Service remotelyanywhere deleted successfully!
File %systemroot%\system32\USBDeviceService.dll not found.
Service RecAgent stopped successfully!
Service RecAgent deleted successfully!
File %systemroot%\system32\acermemusagecheckservice.dll not found.
Service R300 stopped successfully!
Service R300 deleted successfully!
File %systemroot%\system32\PCISys.dll not found.
Service purgeieservice stopped successfully!
Service purgeieservice deleted successfully!
File %systemroot%\system32\ATSWPDRV.dll not found.
Service PNDIS5 stopped successfully!
Service PNDIS5 deleted successfully!
File %systemroot%\system32\X10UIF.dll not found.
Service pgfilter stopped successfully!
Service pgfilter deleted successfully!
File %systemroot%\system32\ssm_bus.dll not found.
Service pelmouse stopped successfully!
Service pelmouse deleted successfully!
File %systemroot%\system32\XilinxPC4Driver.dll not found.
Service pdscheduler stopped successfully!
Service pdscheduler deleted successfully!
File %systemroot%\system32\mi-raysat_3dsMax2008_32.dll not found.
Service pdlnslea stopped successfully!
Service pdlnslea deleted successfully!
File %systemroot%\system32\sqlagent$sony_mediamgr.dll not found.
Service pacsptisvr stopped successfully!
Service pacsptisvr deleted successfully!
File %systemroot%\system32\s117obex.dll not found.
Service osaio stopped successfully!
Service osaio deleted successfully!
File %systemroot%\system32\dlcg_device.dll not found.
Service oraclesnmppeermasteragent stopped successfully!
Service oraclesnmppeermasteragent deleted successfully!
File %systemroot%\system32\ntuneservice.dll not found.
Service oracleorahome90agent stopped successfully!
Service oracleorahome90agent deleted successfully!
File %systemroot%\system32\MTC0001_ESB.dll not found.
Service NWSLP stopped successfully!
Service NWSLP deleted successfully!
File %systemroot%\system32\pptpminiport.dll not found.
Service NWSIPX32 stopped successfully!
Service NWSIPX32 deleted successfully!
File %systemroot%\system32\lmhosts.dll not found.
Service nvsvc stopped successfully!
Service nvsvc deleted successfully!
File %systemroot%\system32\pdlndtdl.dll not found.
Service nvstor64 stopped successfully!
Service nvstor64 deleted successfully!
File %systemroot%\system32\db2governor.dll not found.
Service nvmpu401 stopped successfully!
Service nvmpu401 deleted successfully!
File %systemroot%\system32\winvnc.dll not found.
Service nvlddmkm stopped successfully!
Service nvlddmkm deleted successfully!
File %systemroot%\system32\SE2Bmdfl.dll not found.
Service NtMtlFax stopped successfully!
Service NtMtlFax deleted successfully!
File %systemroot%\system32\protectedstorage.dll not found.
Service nsm1mdfl stopped successfully!
Service nsm1mdfl deleted successfully!
File %systemroot%\system32\processor.dll not found.
Service nsm1bus stopped successfully!
Service nsm1bus deleted successfully!
File %systemroot%\system32\umwdf.dll not found.
Service nsausvc stopped successfully!
Service nsausvc deleted successfully!
File %systemroot%\system32\PhilCam8116_XP.dll not found.
Service npkcmsvc stopped successfully!
Service npkcmsvc deleted successfully!
File %systemroot%\system32\k750obex.dll not found.
Service NMSSvc stopped successfully!
Service NMSSvc deleted successfully!
File %systemroot%\system32\SiSRaid2.dll not found.
Service nmsaccess stopped successfully!
Service nmsaccess deleted successfully!
File %systemroot%\system32\anydvd.dll not found.
Service nla stopped successfully!
Service nla deleted successfully!
File %systemroot%\system32\SlNtHal.dll not found.
Service nimcdldu stopped successfully!
Service nimcdldu deleted successfully!
File %systemroot%\system32\superproserver.dll not found.
Service nicser_wmp11 stopped successfully!
Service nicser_wmp11 deleted successfully!
File %systemroot%\system32\asusgsb.dll not found.
Service nhcDriverDevice stopped successfully!
Service nhcDriverDevice deleted successfully!
File %systemroot%\system32\lfsfilt.dll not found.
Service nHancer stopped successfully!
Service nHancer deleted successfully!
File %systemroot%\system32\winpowermanager.dll not found.
Service netcfgsvr stopped successfully!
Service netcfgsvr deleted successfully!
File %systemroot%\system32\rtl8023.dll not found.
Service NEOFLTR_600_13319 stopped successfully!
Service NEOFLTR_600_13319 deleted successfully!
File %systemroot%\system32\ATMsrvc.dll not found.
Service navex15 stopped successfully!
Service navex15 deleted successfully!
File %systemroot%\system32\AtlsAud.dll not found.
Service mxnic stopped successfully!
Service mxnic deleted successfully!
File %systemroot%\system32\retroexplauncher.dll not found.
Service MTDVC2 stopped successfully!
Service MTDVC2 deleted successfully!
File %systemroot%\system32\dlcc_device.dll not found.
Service MS1000 stopped successfully!
Service MS1000 deleted successfully!
File %systemroot%\system32\ELacpi.dll not found.
Service mqdmbus stopped successfully!
Service mqdmbus deleted successfully!
File %systemroot%\system32\zumbus.dll not found.
Service mpfp stopped successfully!
Service mpfp deleted successfully!
File %systemroot%\system32\pavreport.dll not found.
Service moufiltr stopped successfully!
Service moufiltr deleted successfully!
File %systemroot%\system32\SRTSP.dll not found.
Service mirrorv3 stopped successfully!
Service mirrorv3 deleted successfully!
File %systemroot%\system32\lckfldservice.dll not found.
Service mgabg stopped successfully!
Service mgabg deleted successfully!
File %systemroot%\system32\btserial.dll not found.
Service mfetdik stopped successfully!
Service mfetdik deleted successfully!
File %systemroot%\system32\bdftdif.dll not found.
Service merakpop3 stopped successfully!
Service merakpop3 deleted successfully!
File %systemroot%\system32\W2acehid.dll not found.
Service mcsysmon stopped successfully!
Service mcsysmon deleted successfully!
File %systemroot%\system32\cmudau.dll not found.
Service mcpromgr stopped successfully!
Service mcpromgr deleted successfully!
File %systemroot%\system32\i8042prt.dll not found.
Service MailService stopped successfully!
Service MailService deleted successfully!
File %systemroot%\system32\AcronisOSSReinstallSvc.dll not found.
Service lxrsii1s stopped successfully!
Service lxrsii1s deleted successfully!
File %systemroot%\system32\iwebcal.dll not found.
Service LVVI500A stopped successfully!
Service LVVI500A deleted successfully!
File %systemroot%\system32\nod32krn.dll not found.
Service lvsrvlauncher stopped successfully!
Service lvsrvlauncher deleted successfully!
File %systemroot%\system32\mfeavfk.dll not found.
Service LVPrcMon stopped successfully!
Service LVPrcMon deleted successfully!
File %systemroot%\system32\tfsnudf.dll not found.
Service LVCap138 stopped successfully!
Service LVCap138 deleted successfully!
File %systemroot%\system32\slee_81_service.dll not found.
Service lsdiorw stopped successfully!
Service lsdiorw deleted successfully!
File %systemroot%\system32\messenger.dll not found.
Service LPCFilter stopped successfully!
Service LPCFilter deleted successfully!
File %systemroot%\system32\point32.dll not found.
Service lkcitadelserver stopped successfully!
Service lkcitadelserver deleted successfully!
File %systemroot%\system32\ctaud2k.dll not found.
Service license stopped successfully!
Service license deleted successfully!
File %systemroot%\system32\sglogplayer.dll not found.
Service lbtserv stopped successfully!
Service lbtserv deleted successfully!
File %systemroot%\system32\s125bus.dll not found.
Service lbrtfdc stopped successfully!
Service lbrtfdc deleted successfully!
File %systemroot%\system32\ADIDTSFiltService.dll not found.
Service JiaoIO stopped successfully!
Service JiaoIO deleted successfully!
File %systemroot%\system32\tcpip.dll not found.
Service isapisearch stopped successfully!
Service isapisearch deleted successfully!
File %systemroot%\system32\Defrag32.dll not found.
Service Intels51 stopped successfully!
Service Intels51 deleted successfully!
File %systemroot%\system32\pgpserv.dll not found.
Service imonnt stopped successfully!
Service imonnt deleted successfully!
File %systemroot%\system32\rpcsvr4x.dll not found.
Service igfx stopped successfully!
Service igfx deleted successfully!
File %systemroot%\system32\w200mdfl.dll not found.
Service iAimTV6 stopped successfully!
Service iAimTV6 deleted successfully!
File %systemroot%\system32\winachsx.dll not found.
Service iAimFP5 stopped successfully!
Service iAimFP5 deleted successfully!
File %systemroot%\system32\sit_bus.dll not found.
Service hpconfig stopped successfully!
Service hpconfig deleted successfully!
File %systemroot%\system32\imonnt.dll not found.
Service houdinilicenseserver stopped successfully!
Service houdinilicenseserver deleted successfully!
File %systemroot%\system32\Si3132r5.dll not found.
Service hcwPP2 stopped successfully!
Service hcwPP2 deleted successfully!
File %systemroot%\system32\lvpopflt.dll not found.
Service gpc stopped successfully!
Service gpc deleted successfully!
File %systemroot%\system32\ccproxy.dll not found.
Service GoogleDesktopManager-010708-104812 stopped successfully!
Service GoogleDesktopManager-010708-104812 deleted successfully!
File %systemroot%\system32\upsmonservice.dll not found.
Service gdihook5 stopped successfully!
Service gdihook5 deleted successfully!
File %systemroot%\system32\WBHWDOCT.dll not found.
Service fuj02b1 stopped successfully!
Service fuj02b1 deleted successfully!
File %systemroot%\system32\dladresn.dll not found.
Service ftpqueue stopped successfully!
Service ftpqueue deleted successfully!
File %systemroot%\system32\SenFiltService.dll not found.
Service FireTDI stopped successfully!
Service FireTDI deleted successfully!
File %systemroot%\system32\slpmonx.dll not found.
Service fcdabus stopped successfully!
Service fcdabus deleted successfully!
File %systemroot%\system32\ALABULK.dll not found.
Service F700ius stopped successfully!
Service F700ius deleted successfully!
File %systemroot%\system32\sfilter.dll not found.
Service EUSBMSD stopped successfully!
Service EUSBMSD deleted successfully!
File %systemroot%\system32\iteatapi.dll not found.
Service EPOWER stopped successfully!
Service EPOWER deleted successfully!
File %systemroot%\system32\mcmispupdmgr.dll not found.
Service epgspooler stopped successfully!
Service epgspooler deleted successfully!
File %systemroot%\system32\udfs.dll not found.
Service emupia stopped successfully!
Service emupia deleted successfully!
File %systemroot%\system32\pchost.dll not found.
Service emitray stopped successfully!
Service emitray deleted successfully!
File %systemroot%\system32\itchfltr.dll not found.
Service elosystemservice stopped successfully!
Service elosystemservice deleted successfully!
File %systemroot%\system32\s217obex.dll not found.
Service dtscsi stopped successfully!
Service dtscsi deleted successfully!
File %systemroot%\system32\retinaengine.dll not found.
Service dpfusmgr stopped successfully!
Service dpfusmgr deleted successfully!
File %systemroot%\system32\roxwatch9.dll not found.
Service dpc_srv_webcast stopped successfully!
Service dpc_srv_webcast deleted successfully!
File %systemroot%\system32\webdriveservice.dll not found.
Service dnetc stopped successfully!
Service dnetc deleted successfully!
File %systemroot%\system32\sit_mdm.dll not found.
Service dmload stopped successfully!
Service dmload deleted successfully!
File %systemroot%\system32\ws2ifsl.dll not found.
Service dmisrv stopped successfully!
Service dmisrv deleted successfully!
File %systemroot%\system32\odclientservice.dll not found.
Service dlcq_device stopped successfully!
Service dlcq_device deleted successfully!
File %systemroot%\system32\L6POD.dll not found.
Service dlaudf_m stopped successfully!
Service dlaudf_m deleted successfully!
File %systemroot%\system32\msmpsvc.dll not found.
Service digictrl stopped successfully!
Service digictrl deleted successfully!
File %systemroot%\system32\lpds.dll not found.
Service df5serv stopped successfully!
Service df5serv deleted successfully!
File %systemroot%\system32\application.dll not found.
Service cwafadminmonitor stopped successfully!
Service cwafadminmonitor deleted successfully!
File %systemroot%\system32\acdservice.dll not found.
Service curtainssyssvc stopped successfully!
Service curtainssyssvc deleted successfully!
File %systemroot%\system32\s716mdfl.dll not found.
Service CTSYN stopped successfully!
Service CTSYN deleted successfully!
File %systemroot%\system32\afd.dll not found.
Service CTHWIUT.DLL stopped successfully!
Service CTHWIUT.DLL deleted successfully!
File %systemroot%\system32\UDFReadr.dll not found.
Service CTERFXFX.DLL stopped successfully!
Service CTERFXFX.DLL deleted successfully!
File %systemroot%\system32\websensecamreportserver.dll not found.
Service ctdvda2k stopped successfully!
Service ctdvda2k deleted successfully!
File %systemroot%\system32\psasrv.dll not found.
Service cq_mem stopped successfully!
Service cq_mem deleted successfully!
File %systemroot%\system32\backupexecnotificationserver.dll not found.
Service cpqdfw stopped successfully!
Service cpqdfw deleted successfully!
File %systemroot%\system32\cxpt_service.dll not found.
Service CoachUsb stopped successfully!
Service CoachUsb deleted successfully!
File %systemroot%\system32\PcdrNt.dll not found.
Service co_mon stopped successfully!
Service co_mon deleted successfully!
File %systemroot%\system32\zpnodecollector.dll not found.
Service ClntMgmt.sys stopped successfully!
Service ClntMgmt.sys deleted successfully!
File %systemroot%\system32\bgmainsvc.dll not found.
Service clmtomcatstartersvc stopped successfully!
Service clmtomcatstartersvc deleted successfully!
File %systemroot%\system32\qkbfiltr.dll not found.
Service Cinemsup stopped successfully!
Service Cinemsup deleted successfully!
File %systemroot%\system32\PGPdisk.dll not found.
Service cdrbsdrv stopped successfully!
Service cdrbsdrv deleted successfully!
File %systemroot%\system32\pdscheduler.dll not found.
Service ccalib8 stopped successfully!
Service ccalib8 deleted successfully!
File %systemroot%\system32\TdmService.dll not found.
Service CBTNDIS5 stopped successfully!
Service CBTNDIS5 deleted successfully!
File %systemroot%\system32\CoachAud.dll not found.
Service CAMCAUD stopped successfully!
Service CAMCAUD deleted successfully!
File %systemroot%\system32\se45mgmt.dll not found.
Service CAM1210 stopped successfully!
Service CAM1210 deleted successfully!
File %systemroot%\system32\nmraapache.dll not found.
Service caboagp stopped successfully!
Service caboagp deleted successfully!
File %systemroot%\system32\cicssfs.scmmc223.dll not found.
Service btwdins stopped successfully!
Service btwdins deleted successfully!
File %systemroot%\system32\oracleorahomemanagementserver.dll not found.
Service btwaudio stopped successfully!
Service btwaudio deleted successfully!
File %systemroot%\system32\lvuvc.dll not found.
Service bthpan stopped successfully!
Service bthpan deleted successfully!
File %systemroot%\system32\GBFSHook.dll not found.
Service bobo stopped successfully!
Service bobo deleted successfully!
File %systemroot%\system32\Slpsvdr.dll not found.
Service Blfp stopped successfully!
Service Blfp deleted successfully!
File %systemroot%\system32\se44bus.dll not found.
Service bgmainsvc stopped successfully!
Service bgmainsvc deleted successfully!
File %systemroot%\system32\intelroam.dll not found.
Service bcoreusb stopped successfully!
Service bcoreusb deleted successfully!
File %systemroot%\system32\SRTSPL.dll not found.
Service bcm43xx stopped successfully!
Service bcm43xx deleted successfully!
File %systemroot%\system32\ipodsrv.dll not found.
Service backuplauncher stopped successfully!
Service backuplauncher deleted successfully!
File %systemroot%\system32\DVDRC.dll not found.
Service avgfwsrv stopped successfully!
Service avgfwsrv deleted successfully!
File %systemroot%\system32\battc.dll not found.
Service automate5 stopped successfully!
Service automate5 deleted successfully!
File %systemroot%\system32\deltafw.dll not found.
Service Atmuni stopped successfully!
Service Atmuni deleted successfully!
File %systemroot%\system32\flpydisk.dll not found.
Service ati2mtaa stopped successfully!
Service ati2mtaa deleted successfully!
File %systemroot%\system32\de_serv.dll not found.
Service AtcL002 stopped successfully!
Service AtcL002 deleted successfully!
File %systemroot%\system32\CTDevice_Srv.dll not found.
Service arp1394 stopped successfully!
Service arp1394 deleted successfully!
File %systemroot%\system32\PSSdk23.dll not found.
Service apfiltrservice stopped successfully!
Service apfiltrservice deleted successfully!
File %systemroot%\system32\pgsql-8.0.dll not found.
Service Anydlc stopped successfully!
Service Anydlc deleted successfully!
File %systemroot%\system32\mfehidk.dll not found.
Service alcxsens stopped successfully!
Service alcxsens deleted successfully!
File %systemroot%\system32\kbdclass.dll not found.
Service akshhl stopped successfully!
Service akshhl deleted successfully!
File %systemroot%\system32\aswlsvc.dll not found.
Service agpcpq stopped successfully!
Service agpcpq deleted successfully!
File %systemroot%\system32\resourcemanagermail.dll not found.
Service ageremodemaudio stopped successfully!
Service ageremodemaudio deleted successfully!
File %systemroot%\system32\nocashio.dll not found.
Service agentsrv stopped successfully!
Service agentsrv deleted successfully!
File %systemroot%\system32\perc2hib.dll not found.
Service adiloader stopped successfully!
Service adiloader deleted successfully!
File %systemroot%\system32\RecAgent.dll not found.
Service adaptecstoragemanageragent stopped successfully!
Service adaptecstoragemanageragent deleted successfully!
File %systemroot%\system32\nwrdr.dll not found.
Service acdservice stopped successfully!
Service acdservice deleted successfully!
File %systemroot%\system32\ovepstatusengine.dll not found.
Service aavmker4 stopped successfully!
Service aavmker4 deleted successfully!
File %systemroot%\system32\termservice.dll not found.
Service 3dkeybd stopped successfully!
Service 3dkeybd deleted successfully!
File %systemroot%\system32\WmiAcpi.dll not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{8C9000EA-8EB9-42F3-95FD-A32A97E873C5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C9000EA-8EB9-42F3-95FD-A32A97E873C5}\ not found.
Registry key HKEY_USERS\S-1-5-21-3451357519-3170182007-3584442759-1000\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-3451357519-3170182007-3584442759-1000\Software\Microsoft\Internet Explorer\SearchScopes\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{443789B7-F39C-4b5c-9287-DA72D38F4FE6}\ not found.
Registry key HKEY_USERS\S-1-5-21-3451357519-3170182007-3584442759-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6B5A4426-D5DC-409F-AE05-186ACD4F76E7}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{6B5A4426-D5DC-409F-AE05-186ACD4F76E7}\ not found.
Registry key HKEY_USERS\S-1-5-21-3451357519-3170182007-3584442759-1000\Software\Microsoft\Internet Explorer\SearchScopes\{8C9000EA-8EB9-42F3-95FD-A32A97E873C5}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C9000EA-8EB9-42F3-95FD-A32A97E873C5}\ not found.
Registry key HKEY_USERS\S-1-5-21-3451357519-3170182007-3584442759-1000\Software\Microsoft\Internet Explorer\SearchScopes\{DECA3892-BA8F-44b8-A993-A466AD694AE4}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{DECA3892-BA8F-44b8-A993-A466AD694AE4}\ not found.
Prefs.js: "Secure Search" removed from browser.search.defaultenginename
Registry key HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{C84D72FE-E17D-4195-BB24-76C02E2E7C4E}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Filter\x-sdch\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B1759355-3EEC-4C1E-B0F1-B719FE26E377}\ deleted successfully.
Nla removed from NetSvcs value successfully!
C:\ProgramData\-ZvGboQOPpzWeEu moved successfully.
C:\Users\bjs\Application Data\Microsoft\Internet Explorer\Quick Launch\SMART_HDD.lnk moved successfully.
========== FILES ==========
File C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7601.17603_none_d9f97e05bca8003a\afd.sys successfully replaced with C:\Windows\winsxs\x86_microsoft-windows-winsock-core_31bf3856ad364e35_6.1.7600.16385_none_d7be98b5bfc0b4c1\afd.sys
Unable to replace file: C:\Windows\System32\drivers\dfsc.sys with C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.16385_none_87708401476f7a4f\dfsc.sys without a reboot.
Unable to replace file: C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7601.17514_none_89a197c9445dfde9\dfsc.sys with C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.16385_none_87708401476f7a4f\dfsc.sys without a reboot.
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: bjs
->Temp folder emptied: 4290146 bytes
->Temporary Internet Files folder emptied: 16531521 bytes
->Java cache emptied: 1938052 bytes
->FireFox cache emptied: 176466440 bytes
->Flash cache emptied: 187809 bytes

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 67 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes

User: Public
->Temp folder emptied: 0 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 0 bytes
RecycleBin emptied: 154961 bytes

Total Files Cleaned = 190.00 mb


OTL by OldTimer - Version 3.2.40.0 log created on 04222012_191913

Files\Folders moved on Reboot...
File\Folder C:\Users\bjs\AppData\Local\Temp\~DF2077CBB19C802E6E.TMP not found!
File\Folder C:\Users\bjs\AppData\Local\Temp\~DF2D3C4C14FD48EABF.TMP not found!
File\Folder C:\Users\bjs\AppData\Local\Temp\~DF4CA885F816EB07E0.TMP not found!
File\Folder C:\Users\bjs\AppData\Local\Temp\~DF7D5A724557857E6B.TMP not found!
C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\T215KB4S\Suite[2].htm moved successfully.
File move failed. C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I8UHHOWE\size=728x90;noperf=1;alias=93225964;kvugc=0;kvui=63c41bac8c2311e18a3f9be6cbf38a51;kvmn=93225964;extmirroring=0;target=_blank;aduho=-420;grp=147330137[1].htm scheduled to be moved on reboot.
C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I8UHHOWE\tcode3[1].htm moved successfully.
C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I8UHHOWE\tcodewads_at[1].htm moved successfully.
C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I8UHHOWE\weather[1].htm moved successfully.
C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\I8UHHOWE\ygm[1].mp3 moved successfully.
C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4O167EX9\page__pid__2675217[1].htm moved successfully.
C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\3BY2QCKI\tcodeqt[1].htm moved successfully.
C:\Users\bjs\AppData\Local\Microsoft\Windows\Temporary Internet Files\AntiPhishing\2CEDBFBC-DBA8-43AA-B1FD-CC8E6316E3E2.dat moved successfully.

Registry entries deleted on Reboot...

#15 B-boy/StyLe/

B-boy/StyLe/

    Bleepin' Freestyler


  • Malware Response Team
  • 8,307 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Bulgaria
  • Local time:04:29 PM

Posted 22 April 2012 - 09:40 PM

Hi,


Those damn dirty little buggers that just won't go. :)



We need to execute a CFScript to clean some remnants.

Please do this:



1. Open notepad => navigate to format and make sure that wordwrap is unchecked. <--- important !!!

2. Copy/paste the text in the codebox below into it:

Fcopy::
C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.16385_none_87708401476f7a4f\dfsc.sys | C:\Windows\System32\drivers\dfsc.sys
C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7600.16385_none_87708401476f7a4f\dfsc.sys | C:\Windows\winsxs\x86_microsoft-windows-dfsclient_31bf3856ad364e35_6.1.7601.17514_none_89a197c9445dfde9\dfsc.sys

3. Save this as CFScript.txt. Save it in the same place as ComboFix.exe.

4. Close any open browsers.

5. Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

6. Referring to the picture below, drag CFScript into ComboFix.exe

Posted Image



When finished, it shall produce a log for you at C:\ComboFix.txt which I will require in your next reply.



Regards,
Georgi

cXfZ4wS.png





0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users