Jump to content

SUBIECTE NOI
« 1 / 5 »
RSS
Melodie dance veche

RIP Shifty Shellshock

Daca nu ar conta salariul, ce mes...

Racordare la apa termosemineu
 Mi-am luat 4x4 si vreau sa-l testez

Recomandare laptop cu luminozitat...

Cautarea pe google android nu merge

Caut serviciu serios de captura v...
 Frauda magazin online

AC Woods Venezia Smart - nu races...

podea ciment denivelata

Îndepartare bule folie reflectoriz...
 Revista imobiliara cu poze... cir...

Recomandare soundbar pentru laptop

Veți renunța in 2025 la...

Coaxial pentru cablare casa
 

HIJACKTHIS

- - - - -
  • Please log in to reply
39 replies to this topic

#1
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
am mai postat topicul a fost mutat aici http://forum.softped...;#entry10359668    fara rezultate am cerut sa fie mutat aici dar nimic..

am reatasat logul cu HiJackThis.. problema a aparut pe alt pc..se pare dupa instalarea radmin...cu acces doar din lan..nu am gasit nici o solutie  


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:32:40 PM, on 10/28/2011
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\WiFi\bin\EvtEng.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
C:\WINDOWS\vspc1000.exe
C:\WINDOWS\vsnpstd2.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\VPro1000.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtblfs.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
C:\WINDOWS\regedit.exe
E:\down\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.ro
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.ro
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://site.banat.pt.spam
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.ro
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.ro
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.ro
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.ro
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.google.ro
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.ro
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: IEVkbdBHO - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll
O2 - BHO: Java™ Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: link filter bho - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray
O4 - HKLM\..\Run: [AVP] "C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe"
O4 - HKLM\..\Run: [spc1000] C:\WINDOWS\vspc1000.exe
O4 - HKLM\..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware] "C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe" /starttray
O4 - HKLM\..\Run: [Malwarebytes' Anti-Malware (reboot)] "C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe" /runcleanupscript
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-20\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [_nltide_3] rundll32 advpack.dll,LaunchINFSectionEx nLite.inf,C,,4,N (User 'Default user')
O4 - Global Startup: VPro1000.lnk = ?
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ie_banner_deny.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office12\EXCEL.EXE/3000
O9 - Extra button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll
O9 - Extra button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Kaspersky Anti-Virus Service (AVP) - Kaspersky Lab ZAO - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel® Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless WiFi Service (S24EventMonitor) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
O23 - Service: VNC Server Version 4 (WinVNC4) - RealVNC Ltd - C:\Program Files\RealVNC\VNC4\WinVNC4.exe
O23 - Service: webcamXP Service (wxpSvc) - Unknown owner - C:\Program Files\webcamXP 5\wService.exe

--
End of file - 7164 bytes

#2
rootkit

rootkit

    Awake. Security DNA

  • Grup: Senior Members
  • Posts: 34,883
  • Înscris: 07.02.2007
E curat.

#3
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
si atunci ce naibii o sterge continutul directoarelor...am scanat acu cu Kaspersky Virus Removal Tool si dr web si nimik..

#4
rootkit

rootkit

    Awake. Security DNA

  • Grup: Senior Members
  • Posts: 34,883
  • Înscris: 07.02.2007
E curat log-ul, nu am zis nimic de sistem.

Fa ce scrie aici si pune log-urile in topic.

http://forum.softped...howtopic=676590

#5
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
OTL logfile created on: 10/29/2011 7:13:35 PM - Run 1
OTL by OldTimer - Version 3.2.31.0     Folder = E:\down
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1022.42 Mb Total Physical Memory | 402.39 Mb Available Physical Memory | 39.36% Memory free
2.40 Gb Paging File | 1.82 Gb Available in Paging File | 75.65% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 12.48 Gb Total Space | 5.81 Gb Free Space | 46.57% Space Free | Partition Type: NTFS
Drive E: | 1.17 Gb Total Space | 1.10 Gb Free Space | 93.98% Space Free | Partition Type: NTFS
Drive I: | 60.86 Gb Total Space | 59.82 Gb Free Space | 98.29% Space Free | Partition Type: NTFS

Computer Name: DVL-92C1D504EB9 | User Name: mumu | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2011/10/29 19:13:09 | 000,584,192 | ---- | M] (OldTimer Tools) -- E:\down\OTL.exe
PRC - [2011/09/29 10:31:33 | 000,924,632 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2011/08/31 17:00:48 | 000,449,608 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
PRC - [2011/08/31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
PRC - [2011/04/24 23:15:02 | 000,202,296 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
PRC - [2011/04/24 23:12:42 | 000,131,472 | ---- | M] (Kaspersky Lab ZAO) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtblfs.exe
PRC - [2010/12/13 14:37:46 | 000,135,536 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe
PRC - [2008/10/16 17:26:20 | 000,860,160 | ---- | M] (Intel® Corporation) -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe
PRC - [2008/10/16 17:14:56 | 001,368,064 | ---- | M] (Intel® Corporation) -- C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
PRC - [2008/10/16 17:05:38 | 000,905,216 | ---- | M] (Intel® Corporation) -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
PRC - [2008/10/16 16:55:42 | 001,191,936 | ---- | M] (Intel® Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
PRC - [2008/10/16 16:54:34 | 000,466,944 | ---- | M] (Intel® Corporation) -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
PRC - [2008/07/03 17:38:24 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2007/07/12 14:59:00 | 000,675,840 | ---- | M] (Sonix) -- C:\WINDOWS\vspc1000.exe
PRC - [2007/04/22 16:24:54 | 000,077,824 | ---- | M] (Philips) -- C:\WINDOWS\VPro1000.exe
PRC - [2004/08/30 16:37:08 | 000,286,720 | ---- | M] () -- C:\WINDOWS\vsnpstd2.exe
PRC - [2004/04/06 23:17:12 | 000,397,312 | ---- | M] (High Criteria, Inc.) -- C:\Program Files\HighCriteria\FileMon\FileMon.exe


========== Modules (No Company Name) ==========

MOD - [2011/10/02 14:35:44 | 006,277,280 | ---- | M] () -- C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
MOD - [2011/09/29 10:31:33 | 001,833,944 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2011/04/24 23:13:30 | 007,008,656 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\qtgui4.dll
MOD - [2011/04/24 23:13:28 | 000,192,912 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\qtsql4.dll
MOD - [2011/04/24 23:13:26 | 001,270,160 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\qtscript4.dll
MOD - [2011/04/24 23:13:26 | 000,758,160 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\qtnetwork4.dll
MOD - [2011/04/24 23:13:24 | 002,118,032 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\qtcore4.dll
MOD - [2011/04/24 23:13:24 | 002,089,360 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\qtdeclarative4.dll
MOD - [2011/04/20 19:56:28 | 000,025,088 | ---- | M] () -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\imageformats\qgif4.dll
MOD - [2008/10/16 16:57:18 | 000,200,704 | ---- | M] () -- C:\Program Files\Intel\WiFi\bin\iWMSProv.dll
MOD - [2008/04/14 18:00:00 | 000,059,904 | ---- | M] () -- C:\WINDOWS\system32\devenum.dll
MOD - [2008/04/14 18:00:00 | 000,014,336 | ---- | M] () -- C:\WINDOWS\system32\msdmo.dll
MOD - [2004/12/26 20:34:38 | 000,121,344 | ---- | M] () -- C:\Program Files\WinRAR\RarExt.dll
MOD - [2004/08/30 16:37:08 | 000,286,720 | ---- | M] () -- C:\WINDOWS\vsnpstd2.exe


========== Win32 Services (SafeList) ==========

SRV - [2011/08/31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2011/08/18 14:37:42 | 001,696,496 | ---- | M] (RealVNC Ltd) [On_Demand | Stopped] -- C:\Program Files\RealVNC\VNC4\WinVNC4.exe -- (WinVNC4)
SRV - [2011/07/27 22:58:30 | 005,023,744 | ---- | M] (Moonware Studios) [On_Demand | Stopped] -- C:\Program Files\webcamXP 5\wService.exe -- (wxpSvc)
SRV - [2011/04/24 23:15:02 | 000,202,296 | ---- | M] (Kaspersky Lab ZAO) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe -- (AVP)
SRV - [2010/12/13 14:37:46 | 000,135,536 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
SRV - [2008/10/16 17:26:20 | 000,860,160 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV - [2008/10/16 17:05:38 | 000,905,216 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\S24EvMon.exe -- (S24EventMonitor)
SRV - [2008/10/16 16:54:34 | 000,466,944 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)


========== Driver Services (SafeList) ==========

DRV - [2011/10/06 17:47:11 | 000,232,512 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2011/10/02 17:28:59 | 000,139,264 | ---- | M] (Acronis) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\snapman.sys -- (snapman)
DRV - [2011/10/01 23:13:21 | 000,565,552 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF)
DRV - [2011/08/31 17:00:50 | 000,022,216 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\WINDOWS\system32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2011/08/18 14:23:40 | 000,004,608 | ---- | M] (RealVNC Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vncmirror.sys -- (vncmirror)
DRV - [2011/03/10 18:34:46 | 000,034,608 | ---- | M] (Kaspersky Lab ZAO) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5)
DRV - [2011/03/04 13:23:20 | 000,011,352 | ---- | M] (Kaspersky Lab ZAO) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl2.sys -- (kl2)
DRV - [2011/03/04 13:23:14 | 000,133,208 | ---- | M] (Kaspersky Lab ZAO) [Kernel | Boot | Running] -- C:\WINDOWS\system32\DRIVERS\kl1.sys -- (KL1)
DRV - [2010/08/16 15:31:08 | 000,016,472 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pwdrvio.sys -- (pwdrvio)
DRV - [2010/08/16 15:31:06 | 000,011,104 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\pwdspio.sys -- (pwdspio)
DRV - [2009/11/02 20:27:24 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt)
DRV - [2008/08/13 16:23:56 | 000,011,904 | ---- | M] (Intel Corporation) [Kernel | Auto | Running] -- C:\WINDOWS\system32\drivers\s24trans.sys -- (s24trans)
DRV - [2008/01/07 13:36:16 | 002,216,064 | R--- | M] (Intel® Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\w29n51.sys -- (w29n51) Intel®
DRV - [2007/07/12 15:00:00 | 003,033,856 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\spc1000.sys -- (SPC1000) USB2.0 PC Camera (SPC1000)
DRV - [2007/07/12 14:58:00 | 000,088,320 | ---- | M] (Philips Applied Technologies) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\phaudlwr.sys -- (phaudlwr)
DRV - [2006/11/01 06:01:56 | 000,003,328 | ---- | M] (Famatech International Corp.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\rminiv3.sys -- (mirrorv3)
DRV - [2005/05/23 20:29:00 | 000,392,448 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\snpstd2.sys -- (snpstd2)
DRV - [2005/05/12 22:15:08 | 001,198,080 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2005/03/04 12:10:26 | 000,074,496 | ---- | M] (Realtek Semiconductor Corporation                           ) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\Rtlnicxp.sys -- (RTL8023xp)


========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.ro
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.ro
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,CustomizeSearch = http://www.google.ro
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.ro
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.ro


IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.ro
IE - HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.ro
IE - HKU\S-1-5-18\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


IE - HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/

IE - HKU\S-1-5-21-484763869-1425521274-1417001333-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = http://www.google.ro
IE - HKU\S-1-5-21-484763869-1425521274-1417001333-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = http://www.google.ro
IE - HKU\S-1-5-21-484763869-1425521274-1417001333-1004\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
IE - HKU\S-1-5-21-484763869-1425521274-1417001333-1004\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

========== Firefox ==========


FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6: C:\Program Files\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WPF,version=3.5: C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\[email protected] [2011/10/08 12:34:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\[email protected] [2011/10/08 12:34:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\[email protected]: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\[email protected] [2011/10/08 12:34:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components [2011/10/02 14:26:50 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 7.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins

[2011/10/02 14:27:24 | 000,000,000 | ---D | M] (No name found) -- C:\Documents and Settings\mumu\Application Data\Mozilla\Extensions
[2011/10/02 14:26:50 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\Mozilla Firefox\extensions
[2011/10/01 21:40:06 | 000,000,000 | ---D | M] (Java Quick Starter) -- C:\PROGRAM FILES\JAVA\JRE6\LIB\DEPLOY\JQS\FF
[2011/10/08 12:34:33 | 000,000,000 | ---D | M] (Anti-Banner) -- C:\PROGRAM FILES\KASPERSKY LAB\KASPERSKY INTERNET SECURITY 2012\FFEXT\[email protected]
[2011/10/08 12:34:33 | 000,000,000 | ---D | M] (Kaspersky URL Advisor) -- C:\PROGRAM FILES\KASPERSKY LAB\KASPERSKY INTERNET SECURITY 2012\FFEXT\[email protected]
[2011/10/08 12:34:33 | 000,000,000 | ---D | M] (Kaspersky Virtual Keyboard) -- C:\PROGRAM FILES\KASPERSKY LAB\KASPERSKY INTERNET SECURITY 2012\FFEXT\[email protected]
[2011/10/02 15:52:34 | 000,000,000 | ---D | M] (Microsoft .NET Framework Assistant) -- C:\WINDOWS\MICROSOFT.NET\FRAMEWORK\V3.5\WINDOWS PRESENTATION FOUNDATION\DOTNETASSISTANTEXTENSION
[2011/09/29 10:31:33 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files\mozilla firefox\components\browsercomps.dll
[2011/09/29 03:33:57 | 000,002,252 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\bing.xml
[2011/09/29 04:03:34 | 000,001,179 | ---- | M] () -- C:\Program Files\mozilla firefox\searchplugins\wikipediaro.xml

O1 HOSTS File: ([2008/04/14 18:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1       localhost
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll (Kaspersky Lab ZAO)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe (Kaspersky Lab ZAO)
O4 - HKLM..\Run: [IntelWireless] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel® Corporation)
O4 - HKLM..\Run: [IntelZeroConfig] C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe (Intel® Corporation)
O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [SNPSTD2] C:\WINDOWS\vsnpstd2.exe ()
O4 - HKLM..\Run: [spc1000] C:\WINDOWS\vspc1000.exe (Sonix)
O4 - HKU\S-1-5-21-484763869-1425521274-1417001333-1004..\Run: [FileMonRun] C:\Program Files\HighCriteria\FileMon\FileMon.exe (High Criteria, Inc.)
O4 - Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\VPro1000.lnk = C:\WINDOWS\VPro1000.exe (Philips)
O4 - Startup: C:\Documents and Settings\mumu\Start Menu\Programs\Startup\Directory Monitor.lnk =  File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 149
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O7 - HKU\S-1-5-21-484763869-1425521274-1417001333-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-484763869-1425521274-1417001333-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoLowDiskSpaceChecks = 1
O7 - HKU\S-1-5-21-484763869-1425521274-1417001333-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoSMMyPictures = 1
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ie_banner_deny.htm ()
O9 - Extra Button: &Virtual Keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ievkbd.dll (Kaspersky Lab ZAO)
O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbbho.dll (Kaspersky Lab ZAO)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_13)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-...indows-i586.cab (Java Plug-in 1.6.0_13)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 82.76.253.115 82.76.253.125
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{D0A38592-AE85-4EB2-BA2D-FB79B1D7C891}: DhcpNameServer = 192.168.1.1 82.76.253.115 82.76.253.125
O20 - HKLM Winlogon: Shell - (Explorer.exe) -C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\WINDOWS\system32\userinit.exe) -C:\WINDOWS\system32\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\AtiExtEvent: DllName - (Ati2evxx.dll) - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)
O20 - Winlogon\Notify\klogon: DllName - (C:\WINDOWS\system32\klogon.dll) - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab ZAO)
O24 - Desktop WallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O24 - Desktop BackupWallPaper: C:\WINDOWS\Web\Wallpaper\Bliss.bmp
O28 - HKLM ShellExecuteHooks: {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Program Files\Windows Desktop Search\MsnlNamespaceMgr.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2011/10/01 21:33:51 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O33 - MountPoints2\D\Shell - "" = AutoRun
O33 - MountPoints2\D\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\D\Shell\AutoRun\command - "" = D:\SETUP.EXE
O33 - MountPoints2\D\Shell\configure\command - "" = D:\SETUP.EXE
O33 - MountPoints2\D\Shell\install\command - "" = D:\SETUP.EXE
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*

========== Files/Folders - Created Within 30 Days ==========

[2011/10/29 13:11:23 | 000,000,000 | ---D | C] -- C:\Program Files\Folder Protect
[2011/10/29 00:52:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Start Menu\Programs\File Alert Monitor
[2011/10/29 00:52:31 | 000,000,000 | ---D | C] -- C:\Program Files\HighCriteria
[2011/10/29 00:36:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\ApplicationHistory
[2011/10/29 00:17:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\watchDirectory
[2011/10/29 00:16:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\TEMP
[2011/10/28 23:58:47 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Disk Pulse Pro
[2011/10/28 23:46:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\DevEnterprise.NET
[2011/10/28 23:39:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\DirectoryMonitor
[2011/10/28 23:14:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Malwarebytes
[2011/10/28 23:08:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Malwarebytes' Anti-Malware
[2011/10/28 23:08:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Malwarebytes
[2011/10/28 23:08:49 | 000,022,216 | ---- | C] (Malwarebytes Corporation) -- C:\WINDOWS\System32\drivers\mbam.sys
[2011/10/28 23:08:49 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2011/10/26 23:41:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\RealVNC
[2011/10/26 23:41:30 | 000,020,992 | ---- | C] (RealVNC Ltd.) -- C:\WINDOWS\System32\vncmirror.dll
[2011/10/26 23:41:30 | 000,004,608 | ---- | C] (RealVNC Ltd.) -- C:\WINDOWS\System32\drivers\vncmirror.sys
[2011/10/26 23:41:23 | 000,000,000 | ---D | C] -- C:\Program Files\RealVNC
[2011/10/26 22:58:23 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\mumu\Recent
[2011/10/24 17:55:01 | 000,000,000 | R--D | C] -- C:\Documents and Settings\mumu\My Documents\My Videos
[2011/10/24 17:20:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\My Documents\Debut
[2011/10/24 17:20:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\NCH Software
[2011/10/24 17:20:08 | 000,000,000 | ---D | C] -- C:\Program Files\NCH Software
[2011/10/21 21:38:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\rserver30
[2011/10/21 21:37:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Downloaded Installations
[2011/10/21 20:58:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\webcamXP 5
[2011/10/21 20:58:01 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\webcamXP 5
[2011/10/21 20:57:51 | 000,000,000 | ---D | C] -- C:\Program Files\webcamXP 5
[2011/10/21 18:37:28 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft LifeCam
[2011/10/21 18:37:25 | 000,636,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\LCCoin36.dll
[2011/10/21 18:37:25 | 000,514,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\LcProxy2.ax
[2011/10/21 18:37:25 | 000,078,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nx6000res.dll
[2011/10/21 18:37:06 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft LifeCam
[2011/10/21 18:36:59 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_42.dll
[2011/10/21 18:36:55 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_42.dll
[2011/10/21 18:36:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\Logs
[2011/10/18 18:47:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\Album
[2011/10/18 18:47:18 | 000,098,304 | ---- | C] ( ) -- C:\WINDOWS\System32\rsnpstd2.dll
[2011/10/18 18:47:18 | 000,061,440 | ---- | C] ( ) -- C:\WINDOWS\System32\csnpstd2.dll
[2011/10/18 18:47:18 | 000,036,864 | ---- | C] ( ) -- C:\WINDOWS\System32\vsnpstd2.dll
[2011/10/18 18:47:18 | 000,036,864 | ---- | C] ( ) -- C:\WINDOWS\System32\dsnpstd2.ax
[2011/10/18 18:47:18 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Trek310
[2011/10/18 18:47:18 | 000,000,000 | ---D | C] -- C:\Program Files\Trek 310
[2011/10/18 18:47:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Trek 310
[2011/10/09 21:38:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Temp
[2011/10/09 21:38:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Adobe
[2011/10/08 20:19:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\skin
[2011/10/08 20:19:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\languages
[2011/10/08 20:19:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\codec
[2011/10/08 20:19:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\adv
[2011/10/06 17:55:48 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Office
[2011/10/06 17:54:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2011/10/06 17:54:29 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2011/10/06 17:51:20 | 000,000,000 | ---D | C] -- C:\WINDOWS\SHELLNEW
[2011/10/06 17:50:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Microsoft Help
[2011/10/06 17:50:29 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2011/10/06 17:50:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft Help
[2011/10/06 17:49:39 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2011/10/06 17:47:11 | 000,232,512 | ---- | C] (DT Soft Ltd) -- C:\WINDOWS\System32\drivers\dtsoftbus01.sys
[2011/10/06 17:47:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\DAEMON Tools Lite
[2011/10/06 17:46:55 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2011/10/06 17:46:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\DAEMON Tools Lite
[2011/10/06 17:46:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Lite
[2011/10/06 17:22:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\DAEMON Tools Pro
[2011/10/06 17:22:43 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\DAEMON Tools Pro
[2011/10/05 19:25:21 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hidserv.dll
[2011/10/02 17:30:26 | 001,383,264 | ---- | C] (Acronis) -- C:\WINDOWS\System32\AutoPartNt.exe
[2011/10/02 17:30:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Acronis
[2011/10/02 17:28:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Acronis
[2011/10/02 17:28:53 | 000,000,000 | ---D | C] -- C:\Program Files\Acronis
[2011/10/02 17:28:52 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Acronis
[2011/10/02 17:25:33 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt
[2011/10/02 17:24:50 | 000,026,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbstor.sys
[2011/10/02 17:22:15 | 000,000,000 | ---D | C] -- C:\temp
[2011/10/02 17:14:34 | 000,139,264 | ---- | C] (Acronis) -- C:\WINDOWS\System32\drivers\snapman.sys
[2011/10/02 17:08:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Start Menu\Programs\WinRAR
[2011/10/02 17:08:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\WinRAR
[2011/10/02 17:08:19 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2011/10/02 16:54:41 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\PCHealth
[2011/10/02 16:21:40 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2011/10/02 16:00:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Microsoft Silverlight
[2011/10/02 15:38:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\URTTemp
[2011/10/02 15:38:41 | 000,000,000 | ---D | C] -- C:\Config.Msi
[2011/10/02 15:31:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\ie8updates
[2011/10/02 14:48:29 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2011/10/02 14:48:29 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2011/10/02 14:47:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Adobe
[2011/10/02 14:39:48 | 000,361,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcpip.sys
[2011/10/02 14:37:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Yahoo!
[2011/10/02 14:37:51 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Yahoo
[2011/10/02 14:36:50 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Yahoo! Messenger
[2011/10/02 14:36:45 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Yahoo!
[2011/10/02 14:35:44 | 000,404,640 | ---- | C] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/10/02 14:35:00 | 000,000,000 | ---D | C] -- C:\Program Files\Yahoo!
[2011/10/02 14:33:18 | 000,457,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mrxsmb.sys
[2011/10/02 14:30:02 | 002,067,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstscax.dll
[2011/10/02 14:27:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\My Documents\Descărcări
[2011/10/02 14:27:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Mozilla
[2011/10/02 14:27:16 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Mozilla
[2011/10/02 14:27:05 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\browserchoice.exe
[2011/10/02 14:26:46 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2011/10/02 14:21:49 | 002,148,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrnlmp.exe
[2011/10/02 14:21:48 | 002,192,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntoskrnl.exe
[2011/10/02 14:21:47 | 002,027,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntkrpamp.exe
[2011/10/02 14:20:48 | 000,602,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeeds.dll
[2011/10/02 14:20:48 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msfeedsbs.dll
[2011/10/02 14:20:47 | 000,743,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedvtool.dll
[2011/10/02 14:20:46 | 001,992,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iertutil.dll
[2011/10/02 14:16:43 | 000,012,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mouhid.sys
[2011/10/02 14:16:28 | 000,010,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hidusb.sys
[2011/10/02 00:20:57 | 000,014,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\battc.sys
[2011/10/02 00:20:19 | 000,006,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\enum1394.sys
[2011/10/02 00:19:57 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\usbui.dll
[2011/10/02 00:18:34 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer
[2011/10/02 00:18:33 | 000,000,000 | R--D | C] -- C:\Program Files
[2011/10/02 00:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC
[2011/10/02 00:18:33 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files
[2011/10/02 00:18:31 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0408.dll
[2011/10/02 00:18:31 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt041f.dll
[2011/10/02 00:18:31 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0419.dll
[2011/10/02 00:18:30 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt040e.dll
[2011/10/02 00:18:30 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0415.dll
[2011/10/02 00:18:30 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0405.dll
[2011/10/02 00:18:28 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuq.dll
[2011/10/02 00:18:28 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuf.dll
[2011/10/02 00:18:28 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtuq.dll
[2011/10/02 00:18:28 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtuf.dll
[2011/10/02 00:18:28 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdazel.dll
[2011/10/02 00:18:28 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdazel.dll
[2011/10/02 00:18:27 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbduzb.dll
[2011/10/02 00:18:27 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtat.dll
[2011/10/02 00:18:27 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmon.dll
[2011/10/02 00:18:27 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkyr.dll
[2011/10/02 00:18:27 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkaz.dll
[2011/10/02 00:18:27 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdaze.dll
[2011/10/02 00:18:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbduzb.dll
[2011/10/02 00:18:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtat.dll
[2011/10/02 00:18:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdmon.dll
[2011/10/02 00:18:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkyr.dll
[2011/10/02 00:18:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkaz.dll
[2011/10/02 00:18:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdaze.dll
[2011/10/02 00:18:26 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycc.dll
[2011/10/02 00:18:26 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdur.dll
[2011/10/02 00:18:26 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru1.dll
[2011/10/02 00:18:26 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru.dll
[2011/10/02 00:18:26 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbu.dll
[2011/10/02 00:18:26 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdblr.dll
[2011/10/02 00:18:26 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdycc.dll
[2011/10/02 00:18:26 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdur.dll
[2011/10/02 00:18:26 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdru1.dll
[2011/10/02 00:18:26 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdru.dll
[2011/10/02 00:18:26 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdbu.dll
[2011/10/02 00:18:26 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdblr.dll
[2011/10/02 00:18:25 | 000,008,192 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhept.dll
[2011/10/02 00:18:25 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhept.dll
[2011/10/02 00:18:25 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela3.dll
[2011/10/02 00:18:25 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhela3.dll
[2011/10/02 00:18:25 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela2.dll
[2011/10/02 00:18:25 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhela2.dll
[2011/10/02 00:18:24 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgkl.dll
[2011/10/02 00:18:24 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgkl.dll
[2011/10/02 00:18:24 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe319.dll
[2011/10/02 00:18:24 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe220.dll
[2011/10/02 00:18:24 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe.dll
[2011/10/02 00:18:24 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe319.dll
[2011/10/02 00:18:24 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe220.dll
[2011/10/02 00:18:24 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe.dll
[2011/10/02 00:18:23 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv1.dll
[2011/10/02 00:18:23 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv.dll
[2011/10/02 00:18:23 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdest.dll
[2011/10/02 00:18:23 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlv1.dll
[2011/10/02 00:18:23 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlv.dll
[2011/10/02 00:18:23 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdest.dll
[2011/10/02 00:18:23 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt1.dll
[2011/10/02 00:18:23 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt.dll
[2011/10/02 00:18:23 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlt1.dll
[2011/10/02 00:18:23 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlt.dll
[2011/10/02 00:18:21 | 000,007,168 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz.dll
[2011/10/02 00:18:21 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycl.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl1.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz2.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz1.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcr.dll
[2011/10/02 00:18:21 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\KBDAL.DLL
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdycl.dll
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsl1.dll
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsl.dll
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdpl.dll
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhu.dll
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz2.dll
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz1.dll
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcr.dll
[2011/10/02 00:18:21 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdal.dll
[2011/10/02 00:18:21 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdro.dll
[2011/10/02 00:18:21 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl1.dll
[2011/10/02 00:18:21 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu1.dll
[2011/10/02 00:18:21 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdro.dll
[2011/10/02 00:18:21 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdpl1.dll
[2011/10/02 00:18:21 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhu1.dll
[2011/10/02 00:18:16 | 000,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dllcache\dgrpsetu.dll
[2011/10/02 00:18:16 | 000,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dgrpsetu.dll
[2011/10/02 00:18:16 | 000,085,020 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dllcache\dgsetup.dll
[2011/10/02 00:18:16 | 000,085,020 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dgsetup.dll
[2011/10/02 00:18:16 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll
[2011/10/02 00:18:16 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irclass.dll
[2011/10/02 00:18:15 | 000,103,424 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\EqnClass.Dll
[2011/10/02 00:18:15 | 000,103,424 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\dllcache\eqnclass.dll
[2011/10/02 00:18:15 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll
[2011/10/02 00:18:15 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\dllcache\spxcoins.dll
[2011/10/02 00:18:15 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TAPI.DLL
[2011/10/02 00:18:15 | 000,013,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WFWNET.DRV
[2011/10/02 00:18:15 | 000,009,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VER.DLL
[2011/10/02 00:18:15 | 000,004,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TIMER.DRV
[2011/10/02 00:18:15 | 000,003,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SYSTEM.DRV
[2011/10/02 00:18:15 | 000,002,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VGA.DRV
[2011/10/02 00:18:14 | 000,126,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MSVIDEO.DLL
[2011/10/02 00:18:14 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLECLI.DLL
[2011/10/02 00:18:14 | 000,073,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIAVI.DRV
[2011/10/02 00:18:14 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIWAVE.DRV
[2011/10/02 00:18:14 | 000,025,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCISEQ.DRV
[2011/10/02 00:18:14 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLESVR.DLL
[2011/10/02 00:18:14 | 000,009,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\LZEXPAND.DLL
[2011/10/02 00:18:14 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SHELL.DLL
[2011/10/02 00:18:14 | 000,002,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MOUSE.DRV
[2011/10/02 00:18:14 | 000,002,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\KEYBOARD.DRV
[2011/10/02 00:18:14 | 000,001,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SOUND.DRV
[2011/10/02 00:18:14 | 000,001,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMTASK.TSK
[2011/10/02 00:18:13 | 000,109,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVIFILE.DLL
[2011/10/02 00:18:13 | 000,069,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVICAP.DLL
[2011/10/02 00:18:13 | 000,032,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\COMMDLG.DLL
[2011/10/02 00:18:13 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\TASKMAN.EXE
[2011/10/02 00:18:13 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\taskman.exe
[2011/10/02 00:18:13 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irenum.sys
[2011/10/02 00:18:12 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WINSPOOL.DRV
[2011/10/02 00:18:12 | 000,068,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMSYSTEM.DLL
[2011/10/02 00:18:12 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\batt.dll
[2011/10/02 00:18:12 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\batt.dll
[2011/10/02 00:18:11 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\storprop.dll
[2011/10/02 00:18:02 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup
[2011/10/02 00:18:02 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu
[2011/10/02 00:18:02 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents
[2011/10/02 00:18:02 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Templates
[2011/10/02 00:18:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites
[2011/10/02 00:18:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Desktop
[2011/10/02 00:17:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2
[2011/10/02 00:17:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot
[2011/10/02 00:17:36 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft
[2011/10/02 00:17:36 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data
[2011/10/02 00:17:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings
[2011/10/02 00:17:10 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2011/10/02 00:13:09 | 000,000,000 | -HSD | C] -- C:\RECYCLER
[2011/10/02 00:13:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\GHISLER
[2011/10/02 00:12:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\Offline Web Pages
[2011/10/02 00:12:06 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files
[2011/10/02 00:12:06 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts
[2011/10/02 00:12:06 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache
[2011/10/02 00:12:06 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web
[2011/10/02 00:12:06 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\WBEM
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\UMDF
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\system
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\security
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\scripting
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\NLDRV
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Network Diagnostic
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\L2Schemas
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\java
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en-US
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\en
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\ehome
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028
[2011/10/02 00:12:06 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025
[2011/10/02 00:07:17 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Start Menu\Programs\The KMPlayer
[2011/10/02 00:07:08 | 000,000,000 | ---D | C] -- C:\Program Files\The KMPlayer
[2011/10/01 23:46:09 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Start Menu\Programs\Total Commander
[2011/10/01 23:45:58 | 000,000,000 | ---D | C] -- C:\totalcmd
[2011/10/01 23:45:58 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\GHISLER
[2011/10/01 23:38:26 | 000,077,824 | ---- | C] (Philips) -- C:\WINDOWS\VPro1000.exe
[2011/10/01 23:38:03 | 001,419,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wdfcoinstaller01005.dll
[2011/10/01 23:38:03 | 000,088,320 | ---- | C] (Philips Applied Technologies) -- C:\WINDOWS\System32\drivers\phaudlwr.sys
[2011/10/01 23:38:02 | 000,000,000 | ---D | C] -- C:\Program Files\DIFX
[2011/10/01 23:38:00 | 000,675,840 | ---- | C] (Sonix) -- C:\WINDOWS\vspc1000.exe
[2011/10/01 23:38:00 | 000,053,248 | ---- | C] ( ) -- C:\WINDOWS\System32\cspc1000.dll
[2011/10/01 23:37:59 | 000,000,000 | ---D | C] -- C:\Program Files\Philips_VLounge
[2011/10/01 23:37:29 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Philips SPC1000NC Webcam
[2011/10/01 23:37:29 | 000,000,000 | ---D | C] -- C:\WINDOWS\Philips
[2011/10/01 23:37:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SPC1000NC
[2011/10/01 23:32:57 | 000,049,152 | ---- | C] (Analog Devices Inc.) -- C:\WINDOWS\System32\DSndUp.exe
[2011/10/01 23:32:57 | 000,045,056 | ---- | C] (adi) -- C:\WINDOWS\System32\CleanUp.exe
[2011/10/01 23:32:57 | 000,000,000 | ---D | C] -- C:\Program Files\Analog Devices
[2011/10/01 23:31:35 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek Sound Manager
[2011/10/01 23:31:35 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Realtek Sound Manager
[2011/10/01 23:31:33 | 000,000,000 | ---D | C] -- C:\Program Files\AvRack
[2011/10/01 23:31:29 | 002,284,864 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\alcxwdm.sys
[2011/10/01 23:31:29 | 000,073,728 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\soundman.exe
[2011/10/01 23:31:28 | 009,179,648 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RTLCPL.exe
[2011/10/01 23:31:25 | 016,179,200 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\alsndmgr.cpl
[2011/10/01 23:31:24 | 000,208,896 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\alcupd.exe
[2011/10/01 23:31:24 | 000,139,264 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\alcrmv.exe
[2011/10/01 23:30:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\iuLab
[2011/10/01 23:30:20 | 000,000,000 | ---D | C] -- C:\Program Files\iuLAB
[2011/10/01 23:30:20 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\iulab
[2011/10/01 23:30:20 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\iuLab
[2011/10/01 23:29:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Windows Search
[2011/10/01 23:28:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups
[2011/10/01 23:28:37 | 000,479,232 | ---- | C] (Philips) -- C:\WINDOWS\System32\vspc1000.dll
[2011/10/01 23:28:26 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\amcap.exe
[2011/10/01 23:27:38 | 000,005,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstee.sys
[2011/10/01 23:27:36 | 000,006,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\splitter.sys
[2011/10/01 23:27:34 | 000,083,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wdmaud.sys
[2011/10/01 23:27:32 | 000,052,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmusic.sys
[2011/10/01 23:27:31 | 000,056,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\swmidi.sys
[2011/10/01 23:27:29 | 000,142,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aec.sys
[2011/10/01 23:27:28 | 000,172,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kmixer.sys
[2011/10/01 23:27:26 | 000,002,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drmkaud.sys
[2011/10/01 23:27:24 | 000,060,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sysaudio.sys
[2011/10/01 23:27:20 | 000,010,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ndisip.sys
[2011/10/01 23:27:18 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ipsink.ax
[2011/10/01 23:27:18 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ipsink.ax
[2011/10/01 23:27:18 | 000,015,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\streamip.sys
[2011/10/01 23:27:16 | 000,011,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\slip.sys
[2011/10/01 23:27:11 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wstcodec.sys
[2011/10/01 23:27:09 | 000,085,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nabtsfec.sys
[2011/10/01 23:27:06 | 000,017,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ccdecode.sys
[2011/10/01 23:27:05 | 000,007,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mskssrv.sys
[2011/10/01 23:27:03 | 000,004,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspqm.sys
[2011/10/01 23:27:01 | 000,005,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspclock.sys
[2011/10/01 23:26:54 | 000,146,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\portcls.sys
[2011/10/01 23:26:54 | 000,146,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\portcls.sys
[2011/10/01 23:26:54 | 000,060,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\drmk.sys
[2011/10/01 23:26:54 | 000,060,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drmk.sys
[2011/10/01 23:26:54 | 000,060,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbaudio.sys
[2011/10/01 23:26:45 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksproxy.ax
[2011/10/01 23:26:45 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksproxy.ax
[2011/10/01 23:26:45 | 000,121,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbvideo.sys
[2011/10/01 23:26:45 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kswdmcap.ax
[2011/10/01 23:26:45 | 000,091,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kswdmcap.ax
[2011/10/01 23:26:45 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kstvtune.ax
[2011/10/01 23:26:45 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kstvtune.ax
[2011/10/01 23:26:45 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vfwwdm32.dll
[2011/10/01 23:26:45 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vfwwdm32.dll
[2011/10/01 23:26:45 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksxbar.ax
[2011/10/01 23:26:45 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksxbar.ax
[2011/10/01 23:26:45 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\vidcap.ax
[2011/10/01 23:26:45 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vidcap.ax
[2011/10/01 23:26:45 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dshowext.ax
[2011/10/01 23:26:45 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dshowext.ax
[2011/10/01 23:26:45 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksuser.dll
[2011/10/01 23:26:45 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksuser.dll
[2011/10/01 23:25:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\K-Lite Codec Pack
[2011/10/01 23:25:29 | 000,000,000 | ---D | C] -- C:\Program Files\K-Lite Codec Pack
[2011/10/01 23:24:37 | 000,032,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbccgp.sys
[2011/10/01 23:14:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Kaspersky Internet Security 2012
[2011/10/01 23:13:31 | 000,000,000 | ---D | C] -- C:\Program Files\Kaspersky Lab
[2011/10/01 23:13:31 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
[2011/10/01 23:13:21 | 000,565,552 | ---- | C] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys
[2011/10/01 23:07:15 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Macromedia
[2011/10/01 23:03:30 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\SoftwareDistribution
[2011/10/01 23:03:25 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Adobe
[2011/10/01 23:03:14 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\mumu\PrivacIE
[2011/10/01 23:02:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\pss
[2011/10/01 22:59:06 | 000,000,000 | ---D | C] -- C:\Documents and Settings\NetworkService\Application Data\Intel
[2011/10/01 22:59:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Intel
[2011/10/01 22:59:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\LocalService\Application Data\Intel
[2011/10/01 22:58:46 | 002,732,032 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\Netw2r32.dll
[2011/10/01 22:58:46 | 000,557,056 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\Netw2c32.dll
[2011/10/01 22:58:44 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRVSTORE
[2011/10/01 22:58:42 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Intel PROSet Wireless
[2011/10/01 22:58:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel
[2011/10/01 22:58:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Intel
[2011/10/01 22:55:51 | 002,216,064 | R--- | C] (Intel® Corporation) -- C:\WINDOWS\System32\drivers\w29n51.sys
[2011/10/01 22:55:51 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2011/10/01 22:55:27 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\REALTEK Gigabit and Fast Ethernet NIC Driver
[2011/10/01 22:55:08 | 000,074,496 | ---- | C] (Realtek Semiconductor Corporation                           ) -- C:\WINDOWS\System32\drivers\Rtlnicxp.sys
[2011/10/01 22:55:08 | 000,000,000 | ---D | C] -- C:\WINDOWS\OPTIONS
[2011/10/01 22:52:21 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2011/10/01 22:52:19 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2011/10/01 22:52:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2011/10/01 22:15:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Identities
[2011/10/01 22:15:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Identities
[2011/10/01 22:15:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Application Data\Windows Desktop Search
[2011/10/01 22:15:20 | 000,134,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sqmapi.dll
[2011/10/01 22:15:20 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\iedkcs32.dll.mui
[2011/10/01 22:15:20 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msrating.dll.mui
[2011/10/01 22:15:20 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ie4uinit.exe.mui
[2011/10/01 22:14:56 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information
[2011/10/01 22:14:55 | 000,000,000 | R--D | C] -- C:\Documents and Settings\mumu\My Documents\My Pictures
[2011/10/01 22:14:55 | 000,000,000 | R--D | C] -- C:\Documents and Settings\mumu\My Documents\My Music
[2011/10/01 22:14:38 | 000,000,000 | --SD | C] -- C:\Documents and Settings\mumu\Local Settings\Application Data\Microsoft
[2011/10/01 22:14:38 | 000,000,000 | --SD | C] -- C:\Documents and Settings\mumu\Application Data\Microsoft
[2011/10/01 22:14:38 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\mumu\Application Data
[2011/10/01 22:14:38 | 000,000,000 | R--D | C] -- C:\Documents and Settings\mumu\Favorites
[2011/10/01 22:14:38 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\mumu\IETldCache
[2011/10/01 22:14:38 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\mumu\Cookies
[2011/10/01 22:14:38 | 000,000,000 | ---D | C] -- C:\Documents and Settings\mumu\Desktop
[2011/10/01 22:14:37 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\mumu\SendTo
[2011/10/01 22:14:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\mumu\Start Menu\Programs\Startup
[2011/10/01 22:14:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\mumu\Start Menu
[2011/10/01 22:14:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\mumu\My Documents
[2011/10/01 22:14:37 | 000,000,000 | R--D | C] -- C:\Documents and Settings\mumu\Start Menu\Programs\Accessories
[2011/10/01 22:14:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\mumu\Templates
[2011/10/01 22:14:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\mumu\PrintHood
[2011/10/01 22:14:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\mumu\NetHood
[2011/10/01 22:14:37 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\mumu\Local Settings
[2011/10/01 21:46:44 | 000,000,000 | -HSD | C] -- C:\WINDOWS\CSC
[2011/10/01 21:46:31 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft
[2011/10/01 21:46:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch
[2011/10/01 21:45:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft
[2011/10/01 21:45:18 | 000,000,000 | --SD | C] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft
[2011/10/01 21:43:32 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winzm.ime
[2011/10/01 21:43:31 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winsp.ime
[2011/10/01 21:43:31 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winpy.ime
[2011/10/01 21:43:31 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wingb.ime
[2011/10/01 21:43:31 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winime.ime
[2011/10/01 21:43:30 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winar30.ime
[2011/10/01 21:43:29 | 000,041,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.dll
[2011/10/01 21:43:29 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.sys
[2011/10/01 21:43:28 | 000,364,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svc.dll
[2011/10/01 21:43:28 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wam51.dll
[2011/10/01 21:43:28 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamreg51.dll
[2011/10/01 21:43:28 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamps51.dll
[2011/10/01 21:43:27 | 000,426,041 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicepad.dll
[2011/10/01 21:43:27 | 000,086,073 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\voicesub.dll
[2011/10/01 21:43:27 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ext.dll
[2011/10/01 21:43:27 | 000,048,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32.dll
[2011/10/01 21:43:27 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svapi.dll
[2011/10/01 21:43:27 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ctrs51.dll
[2011/10/01 21:43:24 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uihelper.dll
[2011/10/01 21:43:24 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniime.dll
[2011/10/01 21:43:24 | 000,065,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unicdime.ime
[2011/10/01 21:43:24 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe
[2011/10/01 21:43:23 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tools.dll
[2011/10/01 21:43:22 | 000,571,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlgnt.ime
[2011/10/01 21:43:22 | 000,455,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintsetp.exe
[2011/10/01 21:43:22 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\thawbrkr.dll
[2011/10/01 21:43:22 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tintlphr.exe
[2011/10/01 21:43:22 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmigrate.dll
[2011/10/01 21:43:21 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdipx.sys
[2011/10/01 21:43:21 | 000,019,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdspx.sys
[2011/10/01 21:43:21 | 000,013,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdasync.sys
[2011/10/01 21:43:19 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\svcext51.dll
[2011/10/01 21:43:19 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sspifilt.dll
[2011/10/01 21:43:19 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ssinc51.dll
[2011/10/01 21:43:19 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\status.dll
[2011/10/01 21:43:18 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srusbusd.dll
[2011/10/01 21:43:17 | 000,143,422 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\softkey.dll
[2011/10/01 21:43:16 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpincl.dll
[2011/10/01 21:43:16 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpcl.dll
[2011/10/01 21:43:16 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpsmir.dll
[2011/10/01 21:43:16 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpthrd.dll
[2011/10/01 21:43:16 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmp.exe
[2011/10/01 21:43:16 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpstup.dll
[2011/10/01 21:43:16 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmptrap.exe
[2011/10/01 21:43:16 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_snprfdll.dll
[2011/10/01 21:43:16 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpmib.dll
[2011/10/01 21:43:15 | 000,456,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpsvc.dll
[2011/10/01 21:43:15 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpctrs.dll
[2011/10/01 21:43:15 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpapi.dll
[2011/10/01 21:43:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smimsgif.dll
[2011/10/01 21:43:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsy.dll
[2011/10/01 21:43:14 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smi2smir.exe
[2011/10/01 21:43:14 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm9aw.dll
[2011/10/01 21:43:14 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smb6w.dll
[2011/10/01 21:43:14 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sma3w.dll
[2011/10/01 21:43:14 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8cw.dll
[2011/10/01 21:43:14 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm93w.dll
[2011/10/01 21:43:14 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm92w.dll
[2011/10/01 21:43:14 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm90w.dll
[2011/10/01 21:43:14 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8dw.dll
[2011/10/01 21:43:14 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8aw.dll
[2011/10/01 21:43:14 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm89w.dll
[2011/10/01 21:43:14 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsm.dll
[2011/10/01 21:43:13 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm87w.dll
[2011/10/01 21:43:13 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm81w.dll
[2011/10/01 21:43:13 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm59w.dll
[2011/10/01 21:43:13 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\simptcp.dll
[2011/10/01 21:43:10 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\seo.dll
[2011/10/01 21:43:10 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_seos.dll
[2011/10/01 21:43:09 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll
[2011/10/01 21:43:09 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll
[2011/10/01 21:43:09 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_scripto.dll
[2011/10/01 21:43:09 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rwnh.dll
[2011/10/01 21:43:08 | 000,029,184 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll
[2011/10/01 21:43:08 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rw001ext.dll
[2011/10/01 21:43:07 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\romanime.ime
[2011/10/01 21:43:07 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rpcref.dll
[2011/10/01 21:43:06 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe
[2011/10/01 21:43:06 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe
[2011/10/01 21:43:05 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quick.ime
[2011/10/01 21:43:05 | 000,020,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ramdisk.sys
[2011/10/01 21:43:05 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe
[2011/10/01 21:43:04 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe
[2011/10/01 21:43:03 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pwsdata.dll
[2011/10/01 21:43:02 | 000,482,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlgnt.ime
[2011/10/01 21:43:02 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll
[2011/10/01 21:43:02 | 000,070,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlphr.exe
[2011/10/01 21:43:02 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmigrate.dll
[2011/10/01 21:43:02 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll
[2011/10/01 21:43:02 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll
[2011/10/01 21:43:01 | 000,079,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\phon.ime
[2011/10/01 21:43:01 | 000,053,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pintlcsd.dll
[2011/10/01 21:43:01 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\permchk.dll
[2011/10/01 21:43:00 | 000,036,927 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs411.dll
[2011/10/01 21:43:00 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pagecnt.dll
[2011/10/01 21:43:00 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs404.dll
[2011/10/01 21:43:00 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs804.dll
[2011/10/01 21:43:00 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\padrs412.dll
[2011/10/01 21:42:58 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_ntfsdrv.dll
[2011/10/01 21:42:57 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nsepm.dll
[2011/10/01 21:42:56 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nextlink.dll
[2011/10/01 21:42:54 | 000,229,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\multibox.dll
[2011/10/01 21:42:54 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtstocom.exe
[2011/10/01 21:42:49 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msiregmv.exe
[2011/10/01 21:42:48 | 001,875,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.lex
[2011/10/01 21:42:48 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msir3jp.dll
[2011/10/01 21:42:42 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migregdb.exe
[2011/10/01 21:42:41 | 000,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys
[2011/10/01 21:42:41 | 000,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll
[2011/10/01 21:42:41 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\metada51.dll
[2011/10/01 21:42:41 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\md5filt.dll
[2011/10/01 21:42:41 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mdsync.dll
[2011/10/01 21:42:40 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_mailmsg.dll
[2011/10/01 21:42:39 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lpdsvc.dll
[2011/10/01 21:42:39 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logscrpt.dll
[2011/10/01 21:42:39 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lprmon.dll
[2011/10/01 21:42:39 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lonsint.dll
[2011/10/01 21:42:38 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lmmib2.dll
[2011/10/01 21:42:37 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\korwbrkr.dll
[2011/10/01 21:42:37 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdvntc.dll
[2011/10/01 21:42:37 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll
[2011/10/01 21:42:37 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdurdu.dll
[2011/10/01 21:42:36 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecat.dll
[2011/10/01 21:42:36 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecnt.dll
[2011/10/01 21:42:36 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnec95.dll
[2011/10/01 21:42:36 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth3.dll
[2011/10/01 21:42:36 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth2.dll
[2011/10/01 21:42:36 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlk41j.dll
[2011/10/01 21:42:36 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth1.dll
[2011/10/01 21:42:36 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth0.dll
[2011/10/01 21:42:36 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr2.dll
[2011/10/01 21:42:36 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr1.dll
[2011/10/01 21:42:35 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdibm02.dll
[2011/10/01 21:42:35 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlk41a.dll
[2011/10/01 21:42:35 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinpun.dll
[2011/10/01 21:42:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintel.dll
[2011/10/01 21:42:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintam.dll
[2011/10/01 21:42:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinmar.dll
[2011/10/01 21:42:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinkan.dll
[2011/10/01 21:42:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinhin.dll
[2011/10/01 21:42:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinguj.dll
[2011/10/01 21:42:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdindev.dll
[2011/10/01 21:42:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdheb.dll
[2011/10/01 21:42:34 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdax2.dll
[2011/10/01 21:42:34 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd106n.dll
[2011/10/01 21:42:34 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101a.dll
[2011/10/01 21:42:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdfa.dll
[2011/10/01 21:42:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv2.dll
[2011/10/01 21:42:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv1.dll
[2011/10/01 21:42:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda3.dll
[2011/10/01 21:42:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda2.dll
[2011/10/01 21:42:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda1.dll
[2011/10/01 21:42:34 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgeo.dll
[2011/10/01 21:42:34 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarmw.dll
[2011/10/01 21:42:34 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarme.dll
[2011/10/01 21:42:33 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iscomlog.dll
[2011/10/01 21:42:33 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jupiw.dll
[2011/10/01 21:42:33 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iwrps.dll
[2011/10/01 21:42:33 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isapips.dll
[2011/10/01 21:42:33 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101.dll
[2011/10/01 21:42:32 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iprip.dll
[2011/10/01 21:42:32 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infoctrs.dll
[2011/10/01 21:42:31 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infocomm.dll
[2011/10/01 21:42:31 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetin51.exe
[2011/10/01 21:42:30 | 000,471,102 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskdic.dll
[2011/10/01 21:42:30 | 000,315,455 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imskf.dll
[2011/10/01 21:42:30 | 000,274,489 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputyc.dll
[2011/10/01 21:42:30 | 000,262,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjputy.exe
[2011/10/01 21:42:30 | 000,102,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imlang.dll
[2011/10/01 21:42:30 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imkrinst.exe
[2011/10/01 21:42:29 | 000,307,257 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.exe
[2011/10/01 21:42:29 | 000,233,527 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjprw.exe
[2011/10/01 21:42:29 | 000,208,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpmig.exe
[2011/10/01 21:42:29 | 000,155,705 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdsvr.exe
[2011/10/01 21:42:29 | 000,081,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdct.dll
[2011/10/01 21:42:29 | 000,057,398 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpdadm.exe
[2011/10/01 21:42:29 | 000,045,109 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpuex.exe
[2011/10/01 21:42:28 | 000,811,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81k.dll
[2011/10/01 21:42:28 | 000,716,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcus.dll
[2011/10/01 21:42:28 | 000,368,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjpcic.dll
[2011/10/01 21:42:28 | 000,340,023 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imjp81.ime
[2011/10/01 21:42:27 | 000,311,359 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsv.exe
[2011/10/01 21:42:27 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrcic.dll
[2011/10/01 21:42:27 | 000,102,463 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imepadsm.dll
[2011/10/01 21:42:27 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekr61.ime
[2011/10/01 21:42:27 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmbx.dll
[2011/10/01 21:42:27 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imekrmig.exe
[2011/10/01 21:42:27 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iissync.exe
[2011/10/01 21:42:27 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iismui.dll
[2011/10/01 21:42:26 | 000,145,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iische51.dll
[2011/10/01 21:42:26 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iislog51.dll
[2011/10/01 21:42:26 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisclex4.dll
[2011/10/01 21:42:26 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisadmin.dll
[2011/10/01 21:42:26 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iiscrmap.dll
[2011/10/01 21:42:26 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisfecnv.dll
[2011/10/01 21:42:20 | 010,129,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxkor.dll
[2011/10/01 21:42:09 | 010,096,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hwxcht.dll
[2011/10/01 21:42:09 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpext.dll
[2011/10/01 21:42:09 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpod51.dll
[2011/10/01 21:42:09 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpmb51.dll
[2011/10/01 21:42:08 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hostmib.dll
[2011/10/01 21:42:07 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hanjadic.dll
[2011/10/01 21:42:07 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\gzip.dll
[2011/10/01 21:42:06 | 000,400,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsxp32.dll
[2011/10/01 21:42:06 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxswzrd.dll
[2011/10/01 21:42:06 | 000,154,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsui.dll
[2011/10/01 21:42:05 | 000,562,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsst.dll
[2011/10/01 21:42:05 | 000,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxstiff.dll
[2011/10/01 21:42:05 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssvc.exe
[2011/10/01 21:42:05 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxst30.dll
[2011/10/01 21:42:05 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsevent.dll
[2011/10/01 21:42:05 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsroute.dll
[2011/10/01 21:42:05 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsdrv.dll
[2011/10/01 21:42:05 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsmon.dll
[2011/10/01 21:42:05 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsext32.dll
[2011/10/01 21:42:05 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssend.exe
[2011/10/01 21:42:05 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsperf.dll
[2011/10/01 21:42:05 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsres.dll
[2011/10/01 21:42:04 | 000,451,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsapi.dll
[2011/10/01 21:42:04 | 000,285,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscomex.dll
[2011/10/01 21:42:04 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscover.exe
[2011/10/01 21:42:04 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclnt.exe
[2011/10/01 21:42:04 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclntr.dll
[2011/10/01 21:42:04 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpsv251.dll
[2011/10/01 21:42:04 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscfgwz.dll
[2011/10/01 21:42:04 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscom.dll
[2011/10/01 21:42:04 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpmib.dll
[2011/10/01 21:42:03 | 000,618,605 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4autl.dll
[2011/10/01 21:42:03 | 000,024,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpadmcgi.exe
[2011/10/01 21:42:03 | 000,020,541 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpadmdll.dll
[2011/10/01 21:42:03 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpctrs2.dll
[2011/10/01 21:42:03 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll
[2011/10/01 21:42:02 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe
[2011/10/01 21:42:01 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntagnt.dll
[2011/10/01 21:42:01 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntwin.exe
[2011/10/01 21:42:01 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_fcachdll.dll
[2011/10/01 21:42:01 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntcmd.exe
[2011/10/01 21:42:01 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\exstrace.dll
[2011/10/01 21:42:01 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\f3ahvoas.dll
[2011/10/01 21:42:00 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll
[2011/10/01 21:42:00 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll
[2011/10/01 21:42:00 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll
[2011/10/01 21:42:00 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\et4000.sys
[2011/10/01 21:41:59 | 000,514,587 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\edb500.dll
[2011/10/01 21:41:54 | 000,078,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dayi.ime
[2011/10/01 21:41:54 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\davcdata.exe
[2011/10/01 21:41:52 | 000,057,399 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cplexe.exe
[2011/10/01 21:41:52 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe
[2011/10/01 21:41:51 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\convlog.exe
[2011/10/01 21:41:51 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\controt.dll
[2011/10/01 21:41:51 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\counters.dll
[2011/10/01 21:41:50 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\compfilt.dll
[2011/10/01 21:41:49 | 000,480,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintsetp.exe
[2011/10/01 21:41:49 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintlgnt.ime
[2011/10/01 21:41:48 | 000,838,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtbrkr.dll
[2011/10/01 21:41:48 | 000,198,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cintime.dll
[2011/10/01 21:41:48 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtmbx.dll
[2011/10/01 21:41:48 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chtskdic.dll
[2011/10/01 21:41:47 | 001,677,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chsbrkr.dll
[2011/10/01 21:41:47 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe
[2011/10/01 21:41:47 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe
[2011/10/01 21:41:46 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chajei.ime
[2011/10/01 21:41:46 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe
[2011/10/01 21:41:46 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe
[2011/10/01 21:41:45 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys
[2011/10/01 21:41:44 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_g18030.dll
[2011/10/01 21:41:44 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll
[2011/10/01 21:41:44 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_is2022.dll
[2011/10/01 21:41:38 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\browscap.dll
[2011/10/01 21:41:37 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\authfilt.dll
[2011/10/01 21:41:36 | 000,369,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\asp51.dll
[2011/10/01 21:41:36 | 000,331,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aqueue.dll
[2011/10/01 21:41:36 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_aqadmin.dll
[2011/10/01 21:41:36 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\asptxn.dll
[2011/10/01 21:41:36 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aspperf.dll
[2011/10/01 21:41:35 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\appconf.dll
[2011/10/01 21:41:35 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0804.dll
[2011/10/01 21:41:35 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0412.dll
[2011/10/01 21:41:35 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0411.dll
[2011/10/01 21:41:35 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt040d.dll
[2011/10/01 21:41:35 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0404.dll
[2011/10/01 21:41:35 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0401.dll
[2011/10/01 21:41:34 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_adsiisex.dll
[2011/10/01 21:41:33 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adrot.dll
[2011/10/01 21:41:33 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admexs.dll
[2011/10/01 21:41:33 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admxprox.dll
[2011/10/01 21:41:28 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcptsat.dll
[2011/10/01 21:41:28 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamregps.dll
[2011/10/01 21:41:27 | 002,134,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpsnap.dll
[2011/10/01 21:41:27 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpadm.dll
[2011/10/01 21:41:27 | 000,032,827 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcptest.exe
[2011/10/01 21:41:27 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\staxmem.dll
[2011/10/01 21:41:26 | 000,020,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shtml.dll
[2011/10/01 21:41:26 | 000,016,437 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shtml.exe
[2011/10/01 21:41:22 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logui.ocx
[2011/10/01 21:41:22 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isatq.dll
[2011/10/01 21:41:21 | 000,829,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetmgr.dll
[2011/10/01 21:41:21 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisui.dll
[2011/10/01 21:41:21 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrtl.dll
[2011/10/01 21:41:21 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrstas.exe
[2011/10/01 21:41:21 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetsloc.dll
[2011/10/01 21:41:21 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infoadmn.dll
[2011/10/01 21:41:21 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetmgr.exe
[2011/10/01 21:41:21 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrstap.dll
[2011/10/01 21:41:20 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisext51.dll
[2011/10/01 21:41:20 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iismap.dll
[2011/10/01 21:41:20 | 000,020,538 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpremadm.exe
[2011/10/01 21:41:20 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisreset.exe
[2011/10/01 21:41:20 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpsapi2.dll
[2011/10/01 21:41:19 | 000,876,653 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4awel.dll
[2011/10/01 21:41:19 | 000,598,071 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpmmc.dll
[2011/10/01 21:41:19 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpmmcsat.dll
[2011/10/01 21:41:19 | 000,188,494 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpcount.exe
[2011/10/01 21:41:19 | 000,109,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp98swin.exe
[2011/10/01 21:41:19 | 000,020,541 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpexedll.dll
[2011/10/01 21:41:19 | 000,014,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp98sadm.exe
[2011/10/01 21:41:18 | 000,184,435 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4amsft.dll
[2011/10/01 21:41:18 | 000,147,513 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4apws.dll
[2011/10/01 21:41:18 | 000,102,509 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4atxt.dll
[2011/10/01 21:41:18 | 000,082,035 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4anscp.dll
[2011/10/01 21:41:18 | 000,049,212 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4awebs.dll
[2011/10/01 21:41:18 | 000,049,210 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4areg.dll
[2011/10/01 21:41:18 | 000,041,020 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4avnb.dll
[2011/10/01 21:41:18 | 000,032,826 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4avss.dll
[2011/10/01 21:41:17 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\certwiz.ocx
[2011/10/01 21:41:17 | 000,188,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cfgwiz.exe
[2011/10/01 21:41:17 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\certmap.ocx
[2011/10/01 21:41:17 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cnfgprts.ocx
[2011/10/01 21:41:17 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\coadmin.dll
[2011/10/01 21:41:16 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adsiis51.dll
[2011/10/01 21:41:16 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admwprox.dll
[2011/10/01 21:41:16 | 000,020,540 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\author.dll
[2011/10/01 21:41:16 | 000,016,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\author.exe
[2011/10/01 21:41:15 | 000,016,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admin.exe
[2011/10/01 21:41:14 | 000,020,540 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admin.dll
[2011/10/01 21:41:10 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom
[2011/10/01 21:41:10 | 000,000,000 | ---D | C] -- C:\Program Files\xerox
[2011/10/01 21:41:10 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\speechengines
[2011/10/01 21:41:10 | 000,000,000 | ---D | C] -- C:\Program Files\msn gaming zone
[2011/10/01 21:41:10 | 000,000,000 | ---D | C] -- C:\Program Files\movie maker
[2011/10/01 21:41:10 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage
[2011/10/01 21:40:41 | 000,000,000 | -H-D | C] -- C:\WINDOWS\$hf_mig$
[2011/10/01 21:40:15 | 000,410,984 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll
[2011/10/01 21:40:15 | 000,148,888 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2011/10/01 21:40:15 | 000,144,792 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2011/10/01 21:40:15 | 000,144,792 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2011/10/01 21:40:15 | 000,073,728 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2011/10/01 21:40:03 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2011/10/01 21:37:04 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft
[2011/10/01 21:37:04 | 000,000,000 | --SD | C] -- C:\Documents and Settings\LocalService\Application Data\Microsoft
[2011/10/01 21:36:46 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\XPSViewer
[2011/10/01 21:36:46 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2011/10/01 21:36:43 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2011/10/01 21:36:33 | 000,016,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spmsg.dll
[2011/10/01 21:35:03 | 000,575,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpsshhdr.dll
[2011/10/01 21:34:56 | 000,117,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\prntvpt.dll
[2011/10/01 21:34:54 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\filterpipelineprintproc.dll
[2011/10/01 21:34:53 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\printfilterpipelinesvc.exe
[2011/10/01 21:33:27 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mapi32.dll
[2011/10/01 21:32:13 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM
[2011/10/01 21:31:53 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Music
[2011/10/01 21:31:44 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate
[2011/10/01 21:31:22 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Connect 2
[2011/10/01 21:30:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX
[2011/10/01 21:30:40 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helphost.exe
[2011/10/01 21:30:40 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\notiflag.exe
[2011/10/01 21:30:40 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\brpinfo.dll
[2011/10/01 21:30:40 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\atrace.dll
[2011/10/01 21:30:40 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\atrace.dll
[2011/10/01 21:30:39 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hcappres.dll
[2011/10/01 21:30:28 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srdiag.exe
[2011/10/01 21:30:27 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmevtmsg.dll
[2011/10/01 21:30:27 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmevtmsg.dll
[2011/10/01 21:30:26 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wb32.exe
[2011/10/01 21:30:25 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\acctres.dll
[2011/10/01 21:30:25 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\acctres.dll
[2011/10/01 21:30:25 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msinfo32.exe
[2011/10/01 21:30:25 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cb32.exe
[2011/10/01 21:30:24 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services
[2011/10/01 21:30:18 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icfgnt5.dll
[2011/10/01 21:30:18 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icfgnt5.dll
[2011/10/01 21:30:18 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks
[2011/10/01 21:30:17 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwtutor.exe
[2011/10/01 21:30:17 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwres.dll
[2011/10/01 21:30:17 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\trialoc.dll
[2011/10/01 21:30:17 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mssoapr.dll
[2011/10/01 21:30:17 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isignup.exe
[2011/10/01 21:30:16 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mssoap1.dll
[2011/10/01 21:30:16 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wisc10.dll
[2011/10/01 21:30:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap
[2011/10/01 21:30:15 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieinfo5.ocx
[2011/10/01 21:30:08 | 000,726,078 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srchui.dll
[2011/10/01 21:30:08 | 000,058,434 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srchctls.dll
[2011/10/01 21:30:07 | 003,166,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msgr3en.dll
[2011/10/01 21:30:07 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst
[2011/10/01 21:30:06 | 000,758,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vgx.dll
[2011/10/01 21:30:05 | 000,096,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpband.dll
[2011/10/01 21:30:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed
[2011/10/01 21:30:04 | 001,669,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\setup_wm.exe
[2011/10/01 21:30:04 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mpvis.dll
[2011/10/01 21:30:04 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpns.dll
[2011/10/01 21:30:04 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\custsat.dll
[2011/10/01 21:30:03 | 000,786,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migrate.exe
[2011/10/01 21:30:03 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\npdrmv2.dll
[2011/10/01 21:30:03 | 000,064,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmplayer.exe
[2011/10/01 21:30:03 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\npwmsdrm.dll
[2011/10/01 21:30:02 | 000,364,544 | ---- | C] (Microsoft Corporation (written by Digital Renaissance Inc.)) -- C:\WINDOWS\System32\dllcache\npdsplay.dll
[2011/10/01 21:30:02 | 000,004,639 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mplayer2.exe
[2011/10/01 21:30:01 | 000,327,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wucltui.dll
[2011/10/01 21:30:01 | 000,327,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wucltui.dll
[2011/10/01 21:30:01 | 000,209,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuweb.dll
[2011/10/01 21:30:01 | 000,194,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuaueng1.dll
[2011/10/01 21:30:01 | 000,194,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaueng1.dll
[2011/10/01 21:30:01 | 000,023,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuauserv.dll
[2011/10/01 21:30:00 | 001,929,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaueng.dll
[2011/10/01 21:30:00 | 000,217,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaucpl.cpl
[2011/10/01 21:30:00 | 000,172,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuauclt1.exe
[2011/10/01 21:30:00 | 000,172,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuauclt1.exe
[2011/10/01 21:30:00 | 000,053,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuauclt.exe
[2011/10/01 21:30:00 | 000,035,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wups.dll
[2011/10/01 21:30:00 | 000,035,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wups.dll
[2011/10/01 21:29:59 | 000,575,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll
[2011/10/01 21:29:59 | 000,575,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuapi.dll
[2011/10/01 21:29:59 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qmgrprxy.dll
[2011/10/01 21:29:59 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qmgrprxy.dll
[2011/10/01 21:29:59 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bitsprx2.dll
[2011/10/01 21:29:59 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx2.dll
[2011/10/01 21:29:59 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bitsprx4.dll
[2011/10/01 21:29:59 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx4.dll
[2011/10/01 21:29:59 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bitsprx3.dll
[2011/10/01 21:29:59 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx3.dll
[2011/10/01 21:29:58 | 000,409,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qmgr.dll
[2011/10/01 21:29:29 | 000,565,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobmain.dll
[2011/10/01 21:29:29 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobdl.dll
[2011/10/01 21:29:28 | 000,122,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobcomm.dll
[2011/10/01 21:29:28 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oobebaln.exe
[2011/10/01 21:29:28 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobshel.dll
[2011/10/01 21:29:28 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoobe.exe
[2011/10/01 21:29:28 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobweb.dll
[2011/10/01 21:29:23 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uploadm.exe
[2011/10/01 21:29:22 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrslv.dll
[2011/10/01 21:29:22 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\safrslv.dll
[2011/10/01 21:29:22 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrcdlg.dll
[2011/10/01 21:29:22 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\safrcdlg.dll
[2011/10/01 21:29:22 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\racpldlg.dll
[2011/10/01 21:29:22 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\racpldlg.dll
[2011/10/01 21:29:22 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrdm.dll
[2011/10/01 21:29:22 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\safrdm.dll
[2011/10/01 21:29:21 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pchshell.dll
[2011/10/01 21:29:21 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pchsvc.dll
[2011/10/01 21:29:19 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msconfig.exe
[2011/10/01 21:29:18 | 000,769,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpctr.exe
[2011/10/01 21:29:18 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpsvc.exe
[2011/10/01 21:29:18 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hscupd.exe
[2011/10/01 21:29:16 | 000,129,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fltmgr.sys
[2011/10/01 21:29:16 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fltMc.exe
[2011/10/01 21:29:16 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fltmc.exe
[2011/10/01 21:29:16 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fltlib.dll
[2011/10/01 21:29:15 | 000,380,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rstrui.exe
[2011/10/01 21:29:15 | 000,239,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\srrstr.dll
[2011/10/01 21:29:15 | 000,239,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srrstr.dll
[2011/10/01 21:29:15 | 000,171,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srsvc.dll
[2011/10/01 21:29:15 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srclient.dll
[2011/10/01 21:29:15 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore
[2011/10/01 21:29:14 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ils.dll
[2011/10/01 21:29:14 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ils.dll
[2011/10/01 21:29:14 | 000,073,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sr.sys
[2011/10/01 21:29:13 | 000,034,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mnmdd.dll
[2011/10/01 21:29:13 | 000,034,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mnmdd.dll
[2011/10/01 21:29:13 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mnmsrvc.exe
[2011/10/01 21:29:13 | 000,032,768 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\isrdbg32.dll
[2011/10/01 21:29:13 | 000,032,768 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\isrdbg32.dll
[2011/10/01 21:29:13 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmmkcert.dll
[2011/10/01 21:29:13 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmmkcert.dll
[2011/10/01 21:29:12 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmas.dll
[2011/10/01 21:29:12 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msconf.dll
[2011/10/01 21:29:12 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msconf.dll
[2011/10/01 21:29:12 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dcap32.dll
[2011/10/01 21:29:12 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmasnt.dll
[2011/10/01 21:29:11 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\callcont.dll
[2011/10/01 21:29:11 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nac.dll
[2011/10/01 21:29:11 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rrcm.dll
[2011/10/01 21:29:11 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\h323cc.dll
[2011/10/01 21:29:10 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mst120.dll
[2011/10/01 21:29:10 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmcom.dll
[2011/10/01 21:29:10 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mst123.dll
[2011/10/01 21:29:10 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\confmrsl.dll
[2011/10/01 21:29:09 | 001,032,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\conf.exe
[2011/10/01 21:29:09 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmwb.dll
[2011/10/01 21:29:09 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmoldwb.dll
[2011/10/01 21:29:09 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmft.dll
[2011/10/01 21:29:09 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmchat.dll
[2011/10/01 21:29:08 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoert2.dll
[2011/10/01 21:29:08 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoert2.dll
[2011/10/01 21:29:08 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting
[2011/10/01 21:29:07 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoeacct.dll
[2011/10/01 21:29:07 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoeacct.dll
[2011/10/01 21:29:07 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wabimp.dll
[2011/10/01 21:29:07 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab.exe
[2011/10/01 21:29:07 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wabfind.dll
[2011/10/01 21:29:07 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wabmig.exe
[2011/10/01 21:29:06 | 000,510,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab32.dll
[2011/10/01 21:29:06 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab32res.dll
[2011/10/01 21:29:06 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\directdb.dll
[2011/10/01 21:29:06 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetres.dll
[2011/10/01 21:29:06 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetres.dll
[2011/10/01 21:29:05 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcomm.dll
[2011/10/01 21:29:05 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oeimport.dll
[2011/10/01 21:29:05 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msimn.exe
[2011/10/01 21:29:03 | 002,479,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoeres.dll
[2011/10/01 21:29:03 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\setup50.exe
[2011/10/01 21:29:03 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oemig50.exe
[2011/10/01 21:29:03 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oemiglib.dll
[2011/10/01 21:29:02 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstask.dll
[2011/10/01 21:29:02 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\schedsvc.dll
[2011/10/01 21:29:02 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mstinit.exe
[2011/10/01 21:29:02 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstinit.exe
[2011/10/01 21:29:02 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express
[2011/10/01 21:29:01 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcfg.dll
[2011/10/01 21:29:01 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcfg.dll
[2011/10/01 21:29:01 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\isign32.dll
[2011/10/01 21:29:01 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isign32.dll
[2011/10/01 21:29:01 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwdial.dll
[2011/10/01 21:29:01 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwdial.dll
[2011/10/01 21:29:01 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwphbk.dll
[2011/10/01 21:29:01 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwphbk.dll
[2011/10/01 21:28:59 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwconn.dll
[2011/10/01 21:28:59 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwutil.dll
[2011/10/01 21:28:59 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwdl.dll
[2011/10/01 21:28:59 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwrmind.exe
[2011/10/01 21:28:58 | 000,554,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dao360.dll
[2011/10/01 21:28:58 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwconn1.exe
[2011/10/01 21:28:58 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwhelp.dll
[2011/10/01 21:28:58 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwconn2.exe
[2011/10/01 21:28:58 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetwiz.exe
[2011/10/01 21:28:57 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sqlxmlx.dll
[2011/10/01 21:28:57 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oledb32r.dll
[2011/10/01 21:28:56 | 000,487,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oledb32.dll
[2011/10/01 21:28:56 | 000,204,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaps.dll
[2011/10/01 21:28:56 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdatl3.dll
[2011/10/01 21:28:56 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaosp.dll
[2011/10/01 21:28:56 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxactps.dll
[2011/10/01 21:28:55 | 000,315,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdasql.dll
[2011/10/01 21:28:55 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaora.dll
[2011/10/01 21:28:55 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdatt.dll
[2011/10/01 21:28:55 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdasqlr.dll
[2011/10/01 21:28:55 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaorar.dll
[2011/10/01 21:28:55 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaurl.dll
[2011/10/01 21:28:55 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdasc.dll
[2011/10/01 21:28:54 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadox.dll
[2011/10/01 21:28:54 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msjro.dll
[2011/10/01 21:28:54 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadrh15.dll
[2011/10/01 21:28:54 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaer.dll
[2011/10/01 21:28:54 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaenum.dll
[2011/10/01 21:28:54 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdadc.dll
[2011/10/01 21:28:53 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadomd.dll
[2011/10/01 21:28:53 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado27.tlb
[2011/10/01 21:28:53 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado26.tlb
[2011/10/01 21:28:53 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado25.tlb
[2011/10/01 21:28:53 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado21.tlb
[2011/10/01 21:28:53 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado20.tlb
[2011/10/01 21:28:53 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msador15.dll
[2011/10/01 21:28:52 | 000,565,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado15.dll
[2011/10/01 21:28:52 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msader15.dll
[2011/10/01 21:28:51 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaprst.dll
[2011/10/01 21:28:51 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadds.dll
[2011/10/01 21:28:51 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdarem.dll
[2011/10/01 21:28:51 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdfmap.dll
[2011/10/01 21:28:51 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msaddsr.dll
[2011/10/01 21:28:51 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaremr.dll
[2011/10/01 21:28:51 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaprsr.dll
[2011/10/01 21:28:50 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadce.dll
[2011/10/01 21:28:50 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadco.dll
[2011/10/01 21:28:50 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcf.dll
[2011/10/01 21:28:50 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcs.dll
[2011/10/01 21:28:50 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcer.dll
[2011/10/01 21:28:50 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcor.dll
[2011/10/01 21:28:50 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcfr.dll
[2011/10/01 21:28:49 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System
[2011/10/01 21:28:48 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hmmapi.dll
[2011/10/01 21:28:48 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedw.exe
[2011/10/01 21:28:48 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared
[2011/10/01 21:28:47 | 000,638,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iexplore.exe
[2011/10/01 21:28:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Pictures
[2011/10/01 21:28:15 | 000,000,000 | R-SD | C] -- C:\WINDOWS\assembly
[2011/10/01 21:28:05 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows PowerShell 1.0
[2011/10/01 21:28:04 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
[2011/10/01 21:27:27 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications
[2011/10/01 21:27:19 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Administrative Tools
[2011/10/01 21:27:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration
[2011/10/01 21:27:10 | 000,000,000 | ---D | C] -- C:\Program Files\Online Services
[2011/10/01 21:26:59 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player
[2011/10/01 21:26:53 | 000,291,840 | ---- | C] (Microsoft) -- C:\WINDOWS\System32\Bliss.scr
[2011/10/01 21:26:45 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xpssvcs.dll
[2011/10/01 21:26:45 | 001,676,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xpssvcs.dll
[2011/10/01 21:26:41 | 000,581,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winUsbCoinstaller.dll
[2011/10/01 21:26:40 | 001,112,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WdfCoInstaller01007.dll
[2011/10/01 21:26:39 | 001,302,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WUDFUpdate_01007.dll
[2011/10/01 21:26:39 | 000,922,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imapi2fs.dll
[2011/10/01 21:26:39 | 000,426,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\imapi2.dll
[2011/10/01 21:26:39 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\UMDF\wudfusbcciddriver.dll
[2011/10/01 21:26:38 | 000,922,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\imapi2fs.dll
[2011/10/01 21:26:38 | 000,426,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\imapi2.dll
[2011/10/01 21:26:38 | 000,192,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SecProc_ssp_isv.dll
[2011/10/01 21:26:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DRM
[2011/10/01 21:26:37 | 000,531,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RmActivate_isv.exe
[2011/10/01 21:26:37 | 000,358,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RmActivate_ssp.exe
[2011/10/01 21:26:37 | 000,354,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RmActivate_ssp_isv.exe
[2011/10/01 21:26:37 | 000,192,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SecProc_ssp.dll
[2011/10/01 21:26:36 | 000,523,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\RmActivate.exe
[2011/10/01 21:26:36 | 000,519,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SecProc_isv.dll
[2011/10/01 21:26:36 | 000,518,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\SecProc.dll
[2011/10/01 21:26:35 | 000,323,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdrm.dll
[2011/10/01 21:26:35 | 000,143,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UncDMS.dll
[2011/10/01 21:26:35 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UncNE.dll
[2011/10/01 21:26:34 | 000,273,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\oeph.dll
[2011/10/01 21:26:34 | 000,131,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UncPH.dll
[2011/10/01 21:26:34 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UncCplExt.dll
[2011/10/01 21:26:34 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\oephRes.dll
[2011/10/01 21:26:34 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\UncRes.dll
[2011/10/01 21:26:28 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Desktop Search
[2011/10/01 21:26:26 | 000,135,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\srchadmin.dll.mui
[2011/10/01 21:26:26 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssph.dll.mui
[2011/10/01 21:26:26 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssphtb.dll.mui
[2011/10/01 21:26:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\GroupPolicy
[2011/10/01 21:26:25 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tquery.dll.mui
[2011/10/01 21:26:25 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssrch.dll.mui
[2011/10/01 21:26:24 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\srchadmin.dll
[2011/10/01 21:26:24 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xmlfilter.dll
[2011/10/01 21:26:24 | 000,038,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rtffilt.dll
[2011/10/01 21:26:23 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msshsq.dll
[2011/10/01 21:26:23 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msshooks.dll
[2011/10/01 21:26:22 | 001,589,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tquery.dll
[2011/10/01 21:26:22 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msscb.dll
[2011/10/01 21:26:21 | 001,418,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssrch.dll
[2011/10/01 21:26:21 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\propdefs.dll
[2011/10/01 21:26:21 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msstrc.dll
[2011/10/01 21:26:21 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssprxy.dll
[2011/10/01 21:26:20 | 000,350,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssph.dll
[2011/10/01 21:26:20 | 000,203,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssphtb.dll
[2011/10/01 21:26:20 | 000,087,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mssitlb.dll
[2011/10/01 21:26:19 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msscntrs.dll
[2011/10/01 21:26:18 | 000,088,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msxml4r.dll
[2011/10/01 21:26:17 | 000,000,000 | ---D | C] -- C:\Program Files\MSXML 4.0
[2011/10/01 21:26:07 | 000,061,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput9_1_0.dll
[2011/10/01 21:26:06 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_4.dll
[2011/10/01 21:26:06 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_3.dll
[2011/10/01 21:26:06 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_3.dll
[2011/10/01 21:26:06 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_2.dll
[2011/10/01 21:26:06 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xinput1_1.dll
[2011/10/01 21:26:05 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_2.dll
[2011/10/01 21:26:05 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_1.dll
[2011/10/01 21:26:05 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAudio2_0.dll
[2011/10/01 21:26:05 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_2.dll
[2011/10/01 21:26:05 | 000,069,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_3.dll
[2011/10/01 21:26:04 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_2.dll
[2011/10/01 21:26:04 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_3.dll
[2011/10/01 21:26:04 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_4.dll
[2011/10/01 21:26:04 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_1.dll
[2011/10/01 21:26:04 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\XAPOFX1_0.dll
[2011/10/01 21:26:03 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_9.dll
[2011/10/01 21:26:03 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_8.dll
[2011/10/01 21:26:03 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_7.dll
[2011/10/01 21:26:03 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_6.dll
[2011/10/01 21:26:03 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_5.dll
[2011/10/01 21:26:03 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_1.dll
[2011/10/01 21:26:03 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine3_0.dll
[2011/10/01 21:26:02 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_10.dll
[2011/10/01 21:26:02 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_4.dll
[2011/10/01 21:26:02 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_3.dll
[2011/10/01 21:26:02 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_2.dll
[2011/10/01 21:26:02 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_0.dll
[2011/10/01 21:26:02 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xactengine2_1.dll
[2011/10/01 21:26:01 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_4.dll
[2011/10/01 21:26:01 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_3.dll
[2011/10/01 21:26:01 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_5.dll
[2011/10/01 21:26:01 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_6.dll
[2011/10/01 21:26:01 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\X3DAudio1_2.dll
[2011/10/01 21:26:01 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\x3daudio1_1.dll
[2011/10/01 21:26:01 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\x3daudio1_0.dll
[2011/10/01 21:26:00 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_41.dll
[2011/10/01 21:25:59 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_40.dll
[2011/10/01 21:25:57 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_39.dll
[2011/10/01 21:25:56 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_38.dll
[2011/10/01 21:25:55 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DX9_37.dll
[2011/10/01 21:25:54 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_36.dll
[2011/10/01 21:25:53 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_35.dll
[2011/10/01 21:25:52 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_34.dll
[2011/10/01 21:25:51 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_33.dll
[2011/10/01 21:25:50 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_32.dll
[2011/10/01 21:25:50 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_31.dll
[2011/10/01 21:25:49 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_30.dll
[2011/10/01 21:25:48 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_29.dll
[2011/10/01 21:25:47 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_28.dll
[2011/10/01 21:25:46 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_27.dll
[2011/10/01 21:25:46 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_26.dll
[2011/10/01 21:25:45 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_25.dll
[2011/10/01 21:25:44 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx9_24.dll
[2011/10/01 21:25:44 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_39.dll
[2011/10/01 21:25:44 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_41.dll
[2011/10/01 21:25:44 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_40.dll
[2011/10/01 21:25:43 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_38.dll
[2011/10/01 21:25:43 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_37.dll
[2011/10/01 21:25:43 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_36.dll
[2011/10/01 21:25:43 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_35.dll
[2011/10/01 21:25:42 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_41.dll
[2011/10/01 21:25:42 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_34.dll
[2011/10/01 21:25:42 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\d3dx10_33.dll
[2011/10/01 21:25:41 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_40.dll
[2011/10/01 21:25:40 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_39.dll
[2011/10/01 21:25:40 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_38.dll
[2011/10/01 21:25:40 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_37.dll
[2011/10/01 21:25:39 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_36.dll
[2011/10/01 21:25:38 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_35.dll
[2011/10/01 21:25:38 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_34.dll
[2011/10/01 21:25:38 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\D3DCompiler_33.dll
[2011/10/01 21:25:26 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\windowspowershell
[2011/10/01 21:25:16 | 000,016,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll.mui
[2011/10/01 21:25:16 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution
[2011/10/01 21:25:16 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2011/10/01 21:25:15 | 000,934,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\WgaTray.exe
[2011/10/01 21:25:15 | 000,934,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\WgaTray.exe
[2011/10/01 21:25:15 | 000,274,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mucltui.dll
[2011/10/01 21:25:15 | 000,239,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wgaLogon.dll
[2011/10/01 21:25:15 | 000,142,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MicrosoftUpdateCatalogWebControl.dll
[2011/10/01 21:25:14 | 000,026,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spupdsvc.exe
[2011/10/01 21:25:13 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\PreInstall
[2011/10/01 21:24:55 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer
[2011/10/01 21:24:41 | 000,000,000 | ---D | C] -- C:\WINDOWS\Microsoft.NET
[2011/10/01 21:24:36 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndvol32.exe
[2011/10/01 21:24:36 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sndvol32.exe
[2011/10/01 21:24:36 | 000,044,544 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hticons.dll
[2011/10/01 21:24:36 | 000,013,312 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\dllcache\htrn_jis.dll
[2011/10/01 21:24:36 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger
[2011/10/01 21:24:35 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avtapi.dll
[2011/10/01 21:24:35 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avtapi.dll
[2011/10/01 21:24:35 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avwav.dll
[2011/10/01 21:24:35 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avwav.dll
[2011/10/01 21:24:35 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avmeter.dll
[2011/10/01 21:24:35 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avmeter.dll
[2011/10/01 21:24:34 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winchat.exe
[2011/10/01 21:24:34 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winchat.exe
[2011/10/01 21:24:20 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\calc.exe
[2011/10/01 21:24:20 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\calc.exe
[2011/10/01 21:24:20 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\reset.exe
[2011/10/01 21:24:20 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\reset.exe
[2011/10/01 21:24:19 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsshutdn.exe
[2011/10/01 21:24:19 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsshutdn.exe
[2011/10/01 21:24:19 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tskill.exe
[2011/10/01 21:24:19 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tskill.exe
[2011/10/01 21:24:19 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsdiscon.exe
[2011/10/01 21:24:19 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsdiscon.exe
[2011/10/01 21:24:19 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscon.exe
[2011/10/01 21:24:19 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscon.exe
[2011/10/01 21:24:19 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\shadow.exe
[2011/10/01 21:24:19 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shadow.exe
[2011/10/01 21:24:18 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\regini.exe
[2011/10/01 21:24:18 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\regini.exe
[2011/10/01 21:24:18 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qwinsta.exe
[2011/10/01 21:24:18 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qwinsta.exe
[2011/10/01 21:24:18 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msg.exe
[2011/10/01 21:24:18 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msg.exe
[2011/10/01 21:24:18 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qappsrv.exe
[2011/10/01 21:24:18 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qappsrv.exe
[2011/10/01 21:24:18 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rwinsta.exe
[2011/10/01 21:24:18 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rwinsta.exe
[2011/10/01 21:24:18 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\logoff.exe
[2011/10/01 21:24:18 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logoff.exe
[2011/10/01 21:24:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpcfgex.dll
[2011/10/01 21:24:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpcfgex.dll
[2011/10/01 21:24:17 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cdmodem.dll
[2011/10/01 21:24:17 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cdmodem.dll
[2011/10/01 21:24:16 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmi2xml.dll
[2011/10/01 21:24:16 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtsadmin.tlb
[2011/10/01 21:24:08 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipicmp.dll
[2011/10/01 21:24:08 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmimsg.dll
[2011/10/01 21:24:08 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmitimep.dll
[2011/10/01 21:24:07 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemdisp.tlb
[2011/10/01 21:24:07 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemads.tlb
[2011/10/01 21:24:07 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmtr.dll
[2011/10/01 21:24:07 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmt.exe
[2011/10/01 21:24:06 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\updprov.dll
[2011/10/01 21:24:06 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmplprov.dll
[2011/10/01 21:24:06 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\trnsprov.dll
[2011/10/01 21:24:06 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unsecapp.exe
[2011/10/01 21:24:06 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemads.dll
[2011/10/01 21:24:05 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msiprov.dll
[2011/10/01 21:24:05 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsprov.dll
[2011/10/01 21:24:05 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fwdprov.dll
[2011/10/01 21:24:05 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpcons.dll
[2011/10/01 21:23:50 | 000,000,000 | ---D | C] -- C:\Program Files\MSN
[2011/10/01 21:23:49 | 000,347,136 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hypertrm.dll
[2011/10/01 21:23:49 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndrec32.exe
[2011/10/01 21:23:49 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sndrec32.exe
[2011/10/01 21:23:49 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mplay32.exe
[2011/10/01 21:23:49 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mplay32.exe
[2011/10/01 21:23:48 | 000,539,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dialer.exe
[2011/10/01 21:23:48 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT
[2011/10/01 21:23:47 | 000,139,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpwd.sys
[2011/10/01 21:23:47 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscfgwmi.dll
[2011/10/01 21:23:47 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscfgwmi.dll
[2011/10/01 21:23:47 | 000,022,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdtcp.sys
[2011/10/01 21:23:47 | 000,012,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdpipe.sys
[2011/10/01 21:23:46 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rhttpaa.dll
[2011/10/01 21:23:46 | 000,290,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rhttpaa.dll
[2011/10/01 21:23:46 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aaclient.dll
[2011/10/01 21:23:46 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\aaclient.dll
[2011/10/01 21:23:46 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsgqec.dll
[2011/10/01 21:23:46 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsgqec.dll
[2011/10/01 21:23:45 | 002,062,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lhmstscx.dll
[2011/10/01 21:23:45 | 000,677,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lhmstsc.exe
[2011/10/01 21:23:44 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdchost.dll
[2011/10/01 21:23:44 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdchost.dll
[2011/10/01 21:23:44 | 000,141,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sessmgr.exe
[2011/10/01 21:23:44 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdshost.exe
[2011/10/01 21:23:44 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdshost.exe
[2011/10/01 21:23:44 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\remotepg.dll
[2011/10/01 21:23:44 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdsaddin.exe
[2011/10/01 21:23:44 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdsaddin.exe
[2011/10/01 21:23:43 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\termsrv.dll
[2011/10/01 21:23:43 | 000,087,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpwsx.dll
[2011/10/01 21:23:43 | 000,087,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpwsx.dll
[2011/10/01 21:23:43 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpclip.exe
[2011/10/01 21:23:43 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpclip.exe
[2011/10/01 21:23:43 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpsnd.dll
[2011/10/01 21:23:43 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpsnd.dll
[2011/10/01 21:23:43 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qprocess.exe
[2011/10/01 21:23:43 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qprocess.exe
[2011/10/01 21:23:42 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcuiu.dll
[2011/10/01 21:23:42 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtcuiu.dll
[2011/10/01 21:23:42 | 000,091,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtxoci.dll
[2011/10/01 21:23:42 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cfgbkend.dll
[2011/10/01 21:23:42 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cfgbkend.dll
[2011/10/01 21:23:42 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icaapi.dll
[2011/10/01 21:23:42 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc
[2011/10/01 21:23:41 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtctm.dll
[2011/10/01 21:23:41 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtctm.dll
[2011/10/01 21:23:41 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcprx.dll
[2011/10/01 21:23:41 | 000,428,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtcprx.dll
[2011/10/01 21:23:41 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xolehlp.dll
[2011/10/01 21:23:41 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xolehlp.dll
[2011/10/01 21:23:40 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtclog.dll
[2011/10/01 21:23:40 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtclog.dll
[2011/10/01 21:23:40 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtc.exe
[2011/10/01 21:23:39 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxlegih.dll
[2011/10/01 21:23:39 | 000,034,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtxlegih.dll
[2011/10/01 21:23:39 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comrepl.exe
[2011/10/01 21:23:39 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dcomcnfg.exe
[2011/10/01 21:23:39 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dcomcnfg.exe
[2011/10/01 21:23:39 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comrereg.exe
[2011/10/01 21:23:39 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxex.dll
[2011/10/01 21:23:39 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtxex.dll
[2011/10/01 21:23:38 | 000,195,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comadmin.dll
[2011/10/01 21:23:38 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comrepl.dll
[2011/10/01 21:23:38 | 000,097,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comrepl.dll
[2011/10/01 21:23:38 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\colbact.dll
[2011/10/01 21:23:38 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxdm.dll
[2011/10/01 21:23:38 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtxdm.dll
[2011/10/01 21:23:38 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comaddin.dll
[2011/10/01 21:23:38 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comaddin.dll
[2011/10/01 21:23:38 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com
[2011/10/01 21:23:37 | 000,625,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\catsrvut.dll
[2011/10/01 21:23:37 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\clbcatex.dll
[2011/10/01 21:23:37 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clbcatex.dll
[2011/10/01 21:23:37 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\catsrvps.dll
[2011/10/01 21:23:37 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvps.dll
[2011/10/01 21:23:37 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\stclient.dll
[2011/10/01 21:23:37 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\stclient.dll
[2011/10/01 21:23:36 | 001,267,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comsvcs.dll
[2011/10/01 21:23:36 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\catsrv.dll
[2011/10/01 21:23:35 | 000,539,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comuid.dll
[2011/10/01 21:23:35 | 000,539,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comuid.dll
[2011/10/01 21:23:35 | 000,498,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\clbcatq.dll
[2011/10/01 21:23:35 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comsnap.dll
[2011/10/01 21:23:35 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsnap.dll
[2011/10/01 21:23:32 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiutils.dll
[2011/10/01 21:23:31 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmisvc.dll
[2011/10/01 21:23:31 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiprov.dll
[2011/10/01 21:23:31 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipjobj.dll
[2011/10/01 21:23:31 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipiprt.dll
[2011/10/01 21:23:31 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipsess.dll
[2011/10/01 21:23:30 | 000,358,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmic.exe
[2011/10/01 21:23:30 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipcima.dll
[2011/10/01 21:23:30 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmidcprv.dll
[2011/10/01 21:23:30 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipdskq.dll
[2011/10/01 21:23:30 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiapsrv.exe
[2011/10/01 21:23:30 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmicookr.dll
[2011/10/01 21:23:29 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemupgd.dll
[2011/10/01 21:23:29 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiadap.exe
[2011/10/01 21:23:29 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemtest.exe
[2011/10/01 21:23:29 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiaprpl.dll
[2011/10/01 21:23:29 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemsvc.dll
[2011/10/01 21:23:29 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiapres.dll
[2011/10/01 21:23:28 | 000,531,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemcore.dll
[2011/10/01 21:23:28 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemess.dll
[2011/10/01 21:23:28 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemcomn.dll
[2011/10/01 21:23:28 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemdisp.dll
[2011/10/01 21:23:28 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemcons.dll
[2011/10/01 21:23:28 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemprox.dll
[2011/10/01 21:23:27 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemcntl.dll
[2011/10/01 21:23:27 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\repdrvfs.dll
[2011/10/01 21:23:27 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\viewprov.dll
[2011/10/01 21:23:27 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\stdprov.dll
[2011/10/01 21:23:27 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\scrcons.exe
[2011/10/01 21:23:26 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\provthrd.dll
[2011/10/01 21:23:26 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntevt.dll
[2011/10/01 21:23:26 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mofd.dll
[2011/10/01 21:23:26 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\policman.dll
[2011/10/01 21:23:26 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ncprov.dll
[2011/10/01 21:23:25 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\framedyn.dll
[2011/10/01 21:23:25 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\krnlprov.dll
[2011/10/01 21:23:25 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mofcomp.exe
[2011/10/01 21:23:24 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\esscli.dll
[2011/10/01 21:23:23 | 001,358,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cimwin32.dll
[2011/10/01 21:23:23 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\licwmi.dll
[2011/10/01 21:23:23 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\licwmi.dll
[2011/10/01 21:23:23 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\servdeps.dll
[2011/10/01 21:23:23 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\servdeps.dll
[2011/10/01 21:23:23 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmfutil.dll
[2011/10/01 21:23:23 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mmfutil.dll
[2011/10/01 21:23:22 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cmprops.dll
[2011/10/01 21:23:22 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cmprops.dll
[2011/10/01 21:23:13 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cdrom.sys
[2011/10/01 21:23:12 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Videos
[2011/10/01 21:22:48 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu\Programs\Accessories
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files - Modified Within 30 Days ==========

[2011/10/29 18:58:26 | 000,002,206 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2011/10/29 18:57:30 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2011/10/29 13:16:15 | 000,001,386 | -HS- | M] () -- C:\Documents and Settings\mumu\Application Data\systemFP.$dk
[2011/10/29 12:52:12 | 000,000,731 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\VNC Server.lnk
[2011/10/29 09:19:25 | 000,015,872 | ---- | M] () -- C:\Documents and Settings\mumu\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/10/29 00:43:27 | 000,001,949 | ---- | M] () -- C:\Documents and Settings\mumu\Start Menu\Programs\Startup\Directory Monitor.lnk
[2011/10/29 00:05:01 | 000,000,211 | -H-- | M] () -- C:\boot.ini
[2011/10/28 23:58:47 | 000,000,139 | -HS- | M] () -- C:\Documents and Settings\mumu\Local Settings\Application Data\00000108
[2011/10/28 23:08:56 | 000,000,784 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/10/26 23:41:42 | 000,000,695 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\VNC Viewer.lnk
[2011/10/24 17:53:20 | 000,000,731 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\Shortcut to iuVCS.exe.lnk
[2011/10/22 20:16:50 | 000,018,403 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\test300.jpg
[2011/10/22 00:47:38 | 000,000,664 | ---- | M] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/10/21 21:05:23 | 000,000,015 | ---- | M] () -- C:\WINDOWS\OverlayXP.ini
[2011/10/21 20:58:33 | 000,001,553 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\webcamXP 5.lnk
[2011/10/21 18:40:37 | 000,000,270 | ---- | M] () -- C:\WINDOWS\tasks\Microsoft_Hardware_Launch_LifeExp_exe.job
[2011/10/21 18:37:28 | 000,001,788 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Microsoft LifeCam.lnk
[2011/10/18 19:02:36 | 000,921,624 | ---- | M] () -- C:\img2-001.raw
[2011/10/18 18:47:20 | 000,000,658 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Trek 310.lnk
[2011/10/12 22:27:47 | 000,000,597 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\Shortcut to Virtualdub.exe.lnk
[2011/10/08 20:19:24 | 000,075,938 | ---- | M] () -- C:\WINDOWS\System32\Uninstall-TvPlugin-5.4
[2011/10/07 19:39:13 | 000,134,072 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/10/06 18:52:39 | 000,000,331 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\Shortcut to down.lnk
[2011/10/06 17:48:54 | 000,441,692 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat
[2011/10/06 17:48:54 | 000,071,462 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat
[2011/10/06 17:47:11 | 000,232,512 | ---- | M] (DT Soft Ltd) -- C:\WINDOWS\System32\drivers\dtsoftbus01.sys
[2011/10/06 17:47:02 | 000,001,613 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\DAEMON Tools Lite.lnk
[2011/10/02 17:44:14 | 000,001,024 | ---- | M] () -- C:\WINDOWS\System32\AutoPartNt.let
[2011/10/02 17:42:25 | 001,383,264 | ---- | M] (Acronis) -- C:\WINDOWS\System32\AutoPartNt.exe
[2011/10/02 17:28:59 | 000,139,264 | ---- | M] (Acronis) -- C:\WINDOWS\System32\drivers\snapman.sys
[2011/10/02 17:28:58 | 000,001,049 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Acronis Disk Director Suite.lnk
[2011/10/02 16:21:42 | 000,000,682 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2011/10/02 14:49:43 | 000,001,734 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader X.lnk
[2011/10/02 14:36:50 | 000,000,830 | ---- | M] () -- C:\Documents and Settings\mumu\Application Data\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk
[2011/10/02 14:36:50 | 000,000,812 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Yahoo! Messenger.lnk
[2011/10/02 14:35:44 | 000,404,640 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\System32\FlashPlayerCPLApp.cpl
[2011/10/02 14:26:54 | 000,000,742 | ---- | M] () -- C:\Documents and Settings\mumu\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/10/02 14:26:53 | 000,000,724 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2011/10/02 00:21:41 | 000,004,444 | ---- | M] () -- C:\WINDOWS\System32\pid.PNF
[2011/10/02 00:07:19 | 000,000,710 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\KMPlayer.lnk
[2011/10/01 23:46:10 | 000,000,548 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\Total Commander.lnk
[2011/10/01 23:44:33 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_phaudlwr_01005.Wdf
[2011/10/01 23:44:32 | 000,000,000 | -H-- | M] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
[2011/10/01 23:37:29 | 000,001,189 | ---- | M] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\VPro1000.lnk
[2011/10/01 23:32:32 | 000,000,740 | ---- | M] () -- C:\Documents and Settings\mumu\Desktop\iuVCR.lnk
[2011/10/01 23:31:35 | 000,001,519 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\AvRack.lnk
[2011/10/01 23:31:02 | 000,115,369 | ---- | M] () -- C:\WINDOWS\System32\drivers\klin.dat
[2011/10/01 23:31:02 | 000,097,961 | ---- | M] () -- C:\WINDOWS\System32\drivers\klick.dat
[2011/10/01 23:15:37 | 000,017,408 | ---- | M] () -- C:\Documents and Settings\mumu\Local Settings\Application Data\WebpageIcons.db
[2011/10/01 23:13:21 | 000,565,552 | ---- | M] (Kaspersky Lab) -- C:\WINDOWS\System32\drivers\klif.sys
[2011/10/01 23:02:49 | 000,000,211 | ---- | M] () -- C:\boot.bak
[2011/10/01 22:15:18 | 000,000,079 | ---- | M] () -- C:\Documents and Settings\mumu\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2011/10/01 22:15:16 | 000,000,815 | ---- | M] () -- C:\Documents and Settings\mumu\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/10/01 21:45:23 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD
[2011/10/01 21:44:20 | 000,001,043 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf
[2011/10/01 21:40:06 | 000,148,888 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2011/10/01 21:40:06 | 000,144,792 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2011/10/01 21:40:06 | 000,144,792 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2011/10/01 21:40:06 | 000,073,728 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javacpl.cpl
[2011/10/01 21:40:05 | 000,410,984 | ---- | M] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\deploytk.dll
[2011/10/01 21:33:51 | 000,002,577 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT
[2011/10/01 21:33:51 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS
[2011/10/01 21:33:51 | 000,000,000 | RHS- | M] () -- C:\IO.SYS
[2011/10/01 21:33:51 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS
[2011/10/01 21:33:51 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT
[2011/10/01 21:33:48 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/10/01 21:33:48 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/10/01 21:33:39 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx
[2011/10/01 21:33:27 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI
[2011/10/01 21:27:38 | 000,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat
[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

========== Files Created - No Company Name ==========

[2011/10/29 13:14:11 | 000,001,386 | -HS- | C] () -- C:\Documents and Settings\mumu\Application Data\systemFP.$dk
[2011/10/29 12:52:12 | 000,000,731 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\VNC Server.lnk
[2011/10/29 00:42:22 | 000,001,949 | ---- | C] () -- C:\Documents and Settings\mumu\Start Menu\Programs\Startup\Directory Monitor.lnk
[2011/10/28 23:58:47 | 000,000,139 | -HS- | C] () -- C:\Documents and Settings\mumu\Local Settings\Application Data\00000108
[2011/10/28 23:08:56 | 000,000,784 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Malwarebytes' Anti-Malware.lnk
[2011/10/26 23:41:42 | 000,000,695 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\VNC Viewer.lnk
[2011/10/24 17:53:20 | 000,000,731 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\Shortcut to iuVCS.exe.lnk
[2011/10/22 20:16:49 | 000,018,403 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\test300.jpg
[2011/10/21 23:18:18 | 000,000,664 | ---- | C] () -- C:\WINDOWS\System32\d3d9caps.dat
[2011/10/21 21:41:36 | 000,223,576 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2011/10/21 21:05:23 | 000,000,015 | ---- | C] () -- C:\WINDOWS\OverlayXP.ini
[2011/10/21 20:58:33 | 000,001,553 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\webcamXP 5.lnk
[2011/10/21 18:40:37 | 000,000,270 | ---- | C] () -- C:\WINDOWS\tasks\Microsoft_Hardware_Launch_LifeExp_exe.job
[2011/10/21 18:37:28 | 000,001,788 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Microsoft LifeCam.lnk
[2011/10/18 19:02:36 | 000,921,624 | ---- | C] () -- C:\img2-001.raw
[2011/10/18 18:47:18 | 000,392,448 | ---- | C] () -- C:\WINDOWS\System32\drivers\snpstd2.sys
[2011/10/18 18:47:18 | 000,286,720 | ---- | C] () -- C:\WINDOWS\vsnpstd2.exe
[2011/10/18 18:47:18 | 000,053,248 | ---- | C] () -- C:\WINDOWS\System32\dsnpstd2.dll
[2011/10/18 18:47:18 | 000,015,541 | ---- | C] () -- C:\WINDOWS\snpstd2.ini
[2011/10/18 18:47:18 | 000,013,023 | ---- | C] () -- C:\WINDOWS\snpstd2.src
[2011/10/18 18:47:18 | 000,000,658 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Trek 310.lnk
[2011/10/12 22:27:47 | 000,000,597 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\Shortcut to VirtualDub.exe.lnk
[2011/10/08 20:19:13 | 000,075,938 | ---- | C] () -- C:\WINDOWS\System32\Uninstall-TvPlugin-5.4
[2011/10/06 18:52:39 | 000,000,331 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\Shortcut to down.lnk
[2011/10/06 17:47:02 | 000,001,613 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\DAEMON Tools Lite.lnk
[2011/10/02 17:30:30 | 000,001,024 | ---- | C] () -- C:\WINDOWS\System32\AutoPartNt.let
[2011/10/02 17:28:58 | 000,001,049 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Acronis Disk Director Suite.lnk
[2011/10/02 16:21:42 | 000,000,682 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\CCleaner.lnk
[2011/10/02 14:49:43 | 000,001,804 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Adobe Reader X.lnk
[2011/10/02 14:49:43 | 000,001,734 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Adobe Reader X.lnk
[2011/10/02 14:36:50 | 000,000,830 | ---- | C] () -- C:\Documents and Settings\mumu\Application Data\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk
[2011/10/02 14:36:50 | 000,000,812 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Yahoo! Messenger.lnk
[2011/10/02 14:26:54 | 000,000,742 | ---- | C] () -- C:\Documents and Settings\mumu\Application Data\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk
[2011/10/02 14:26:53 | 000,000,730 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Mozilla Firefox.lnk
[2011/10/02 14:26:53 | 000,000,724 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Mozilla Firefox.lnk
[2011/10/02 00:21:41 | 000,004,444 | ---- | C] () -- C:\WINDOWS\System32\pid.PNF
[2011/10/02 00:18:33 | 000,004,161 | ---- | C] () -- C:\WINDOWS\ODBCINST.INI
[2011/10/02 00:18:13 | 000,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT
[2011/10/02 00:17:56 | 000,144,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\netfx.cat
[2011/10/02 00:17:56 | 000,112,918 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tabletpc.cat
[2011/10/02 00:17:56 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT
[2011/10/02 00:17:56 | 000,034,747 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mediactr.cat
[2011/10/02 00:17:56 | 000,026,991 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn7.cat
[2011/10/02 00:17:56 | 000,014,433 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn9.cat
[2011/10/02 00:17:56 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT
[2011/10/02 00:17:56 | 000,010,027 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT
[2011/10/02 00:17:56 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT
[2011/10/02 00:17:56 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT
[2011/10/02 00:17:56 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat
[2011/10/02 00:17:55 | 002,144,487 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5.CAT
[2011/10/02 00:17:55 | 001,296,669 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP3.CAT
[2011/10/02 00:17:55 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT
[2011/10/02 00:17:55 | 000,522,220 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT
[2011/10/02 00:17:55 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT
[2011/10/02 00:17:55 | 000,034,063 | ---- | C] () -- C:\WINDOWS\System32\dllcache\FP4.CAT
[2011/10/02 00:17:55 | 000,016,535 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IMS.CAT
[2011/10/02 00:17:55 | 000,012,363 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT
[2011/10/02 00:17:10 | 000,134,072 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2011/10/02 00:16:33 | 000,000,211 | -H-- | C] () -- C:\boot.ini
[2011/10/02 00:16:28 | 000,001,043 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf
[2011/10/02 00:07:19 | 000,000,710 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\KMPlayer.lnk
[2011/10/02 00:06:03 | 000,015,872 | ---- | C] () -- C:\Documents and Settings\mumu\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2011/10/01 23:46:10 | 000,000,548 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\Total Commander.lnk
[2011/10/01 23:46:08 | 000,000,545 | ---- | C] () -- C:\WINDOWS\UC.PIF
[2011/10/01 23:46:08 | 000,000,545 | ---- | C] () -- C:\WINDOWS\RAR.PIF
[2011/10/01 23:46:08 | 000,000,545 | ---- | C] () -- C:\WINDOWS\PKZIP.PIF
[2011/10/01 23:46:08 | 000,000,545 | ---- | C] () -- C:\WINDOWS\PKUNZIP.PIF
[2011/10/01 23:46:08 | 000,000,545 | ---- | C] () -- C:\WINDOWS\NOCLOSE.PIF
[2011/10/01 23:46:08 | 000,000,545 | ---- | C] () -- C:\WINDOWS\LHA.PIF
[2011/10/01 23:46:08 | 000,000,545 | ---- | C] () -- C:\WINDOWS\ARJ.PIF
[2011/10/01 23:44:33 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\Msft_Kernel_phaudlwr_01005.Wdf
[2011/10/01 23:44:32 | 000,000,000 | -H-- | C] () -- C:\WINDOWS\System32\drivers\MsftWdf_Kernel_01005_Coinstaller_Critical.Wdf
[2011/10/01 23:38:00 | 003,033,856 | ---- | C] () -- C:\WINDOWS\System32\drivers\spc1000.sys
[2011/10/01 23:38:00 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\drivers\spc1000c.sys
[2011/10/01 23:38:00 | 000,015,497 | ---- | C] () -- C:\WINDOWS\spc1000.ini
[2011/10/01 23:38:00 | 000,013,022 | ---- | C] () -- C:\WINDOWS\spc1000.src
[2011/10/01 23:37:29 | 000,001,189 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Startup\VPro1000.lnk
[2011/10/01 23:32:32 | 000,000,740 | ---- | C] () -- C:\Documents and Settings\mumu\Desktop\iuVCR.lnk
[2011/10/01 23:31:35 | 000,001,519 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\AvRack.lnk
[2011/10/01 23:31:32 | 000,000,164 | ---- | C] () -- C:\WINDOWS\avrack.ini
[2011/10/01 23:31:29 | 000,156,672 | ---- | C] () -- C:\WINDOWS\System32\RtlCPAPI.dll
[2011/10/01 23:31:29 | 000,040,448 | ---- | C] () -- C:\WINDOWS\System32\ChCfg.exe
[2011/10/01 23:31:26 | 000,141,016 | ---- | C] () -- C:\WINDOWS\System32\alsndmgr.wav
[2011/10/01 23:25:32 | 000,175,616 | ---- | C] () -- C:\WINDOWS\System32\unrar.dll
[2011/10/01 23:15:33 | 000,017,408 | ---- | C] () -- C:\Documents and Settings\mumu\Local Settings\Application Data\WebpageIcons.db
[2011/10/01 23:14:38 | 000,115,369 | ---- | C] () -- C:\WINDOWS\System32\drivers\klin.dat
[2011/10/01 23:14:37 | 000,097,961 | ---- | C] () -- C:\WINDOWS\System32\drivers\klick.dat
[2011/10/01 22:55:52 | 000,000,013 | ---- | C] () -- C:\WINDOWS\System32\drivers\verfile.tic
[2011/10/01 22:27:11 | 000,725,064 | ---- | C] () -- C:\WINDOWS\System32\pwNative.exe
[2011/10/01 22:27:10 | 000,016,472 | ---- | C] () -- C:\WINDOWS\System32\pwdrvio.sys
[2011/10/01 22:27:10 | 000,011,104 | ---- | C] () -- C:\WINDOWS\System32\pwdspio.sys
[2011/10/01 22:26:38 | 000,000,211 | ---- | C] () -- C:\boot.bak
[2011/10/01 22:15:18 | 000,000,079 | ---- | C] () -- C:\Documents and Settings\mumu\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf
[2011/10/01 22:15:16 | 000,000,815 | ---- | C] () -- C:\Documents and Settings\mumu\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
[2011/10/01 22:15:16 | 000,000,803 | ---- | C] () -- C:\Documents and Settings\mumu\Start Menu\Programs\Internet Explorer.lnk
[2011/10/01 22:15:05 | 000,000,738 | ---- | C] () -- C:\Documents and Settings\mumu\Start Menu\Programs\Outlook Express.lnk
[2011/10/01 22:14:38 | 000,001,599 | ---- | C] () -- C:\Documents and Settings\mumu\Start Menu\Programs\Remote Assistance.lnk
[2011/10/01 22:14:38 | 000,000,788 | ---- | C] () -- C:\Documents and Settings\mumu\Start Menu\Programs\Windows Media Player.lnk
[2011/10/01 21:45:22 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD
[2011/10/01 21:44:07 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat
[2011/10/01 21:43:01 | 000,175,104 | ---- | C] () -- C:\WINDOWS\System32\dllcache\pintlcsa.dll
[2011/10/01 21:42:37 | 001,158,818 | ---- | C] () -- C:\WINDOWS\System32\dllcache\korwbrkr.lex
[2011/10/01 21:42:30 | 000,059,392 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imscinst.exe
[2011/10/01 21:42:29 | 000,196,665 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imjpinst.exe
[2011/10/01 21:42:27 | 000,134,339 | ---- | C] () -- C:\WINDOWS\System32\dllcache\imekr.lex
[2011/10/01 21:42:14 | 013,463,552 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hwxjpn.dll
[2011/10/01 21:42:07 | 000,108,827 | ---- | C] () -- C:\WINDOWS\System32\dllcache\hanja.lex
[2011/10/01 21:42:03 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\fpencode.dll
[2011/10/01 21:41:48 | 000,173,568 | ---- | C] () -- C:\WINDOWS\System32\dllcache\chtskf.dll
[2011/10/01 21:33:51 | 000,002,577 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT
[2011/10/01 21:33:51 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS
[2011/10/01 21:33:51 | 000,000,000 | RHS- | C] () -- C:\IO.SYS
[2011/10/01 21:33:51 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS
[2011/10/01 21:33:51 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT
[2011/10/01 21:33:41 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb
[2011/10/01 21:33:41 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb
[2011/10/01 21:33:39 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx
[2011/10/01 21:31:12 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex
[2011/10/01 21:30:38 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp
[2011/10/01 21:30:38 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp
[2011/10/01 21:30:28 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf
[2011/10/01 21:29:19 | 000,376,832 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msinfo.dll
[2011/10/01 21:28:10 | 000,000,893 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Search.lnk
[2011/10/01 21:27:40 | 000,000,609 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\Windows Messenger.lnk
[2011/10/01 21:27:38 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat
[2011/10/01 21:27:10 | 000,001,986 | ---- | C] () -- C:\Documents and Settings\All Users\Start Menu\Programs\MSN.lnk
[2011/10/01 21:26:52 | 001,472,512 | ---- | C] () -- C:\WINDOWS\System32\Bliss.avi
[2011/10/01 21:26:24 | 000,106,605 | ---- | C] () -- C:\WINDOWS\System32\structuredqueryschema.bin
[2011/10/01 21:26:24 | 000,018,904 | ---- | C] () -- C:\WINDOWS\System32\structuredqueryschematrivial.bin
[2011/10/01 21:26:23 | 000,031,698 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.ini
[2011/10/01 21:26:23 | 000,030,628 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.ini
[2011/10/01 21:26:23 | 000,020,698 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.ini
[2011/10/01 21:26:23 | 000,004,640 | ---- | C] () -- C:\WINDOWS\System32\idxcntrs.h
[2011/10/01 21:26:23 | 000,003,100 | ---- | C] () -- C:\WINDOWS\System32\gthrctr.h
[2011/10/01 21:26:22 | 000,002,590 | ---- | C] () -- C:\WINDOWS\System32\gsrvctr.h
[2011/10/01 21:24:22 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp
[2011/10/01 21:24:22 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp
[2011/10/01 21:24:22 | 000,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp
[2011/10/01 21:24:22 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp
[2011/10/01 21:24:22 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp
[2011/10/01 21:24:21 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp
[2011/10/01 21:24:21 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp
[2011/10/01 21:24:21 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp
[2011/10/01 21:24:21 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp
[2011/10/01 21:24:21 | 000,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp
[2011/10/01 21:24:21 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp
[2011/10/01 21:24:20 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd
[2011/10/01 21:24:19 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h
[2011/10/01 21:24:17 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h
[2011/10/01 21:24:04 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc
[2011/03/11 12:43:54 | 000,029,763 | ---- | C] () -- C:\WINDOWS\System32\drivers\klopp.dat
[2009/04/19 02:41:06 | 000,004,569 | ---- | C] () -- C:\WINDOWS\System32\secupd.dat
[2008/04/14 18:00:00 | 013,107,200 | ---- | C] () -- C:\WINDOWS\System32\oembios.bin
[2008/04/14 18:00:00 | 000,673,088 | ---- | C] () -- C:\WINDOWS\System32\mlang.dat
[2008/04/14 18:00:00 | 000,441,692 | ---- | C] () -- C:\WINDOWS\System32\perfh009.dat
[2008/04/14 18:00:00 | 000,272,128 | ---- | C] () -- C:\WINDOWS\System32\perfi009.dat
[2008/04/14 18:00:00 | 000,218,003 | ---- | C] () -- C:\WINDOWS\System32\dssec.dat
[2008/04/14 18:00:00 | 000,071,462 | ---- | C] () -- C:\WINDOWS\System32\perfc009.dat
[2008/04/14 18:00:00 | 000,046,258 | ---- | C] () -- C:\WINDOWS\System32\mib.bin
[2008/04/14 18:00:00 | 000,028,626 | ---- | C] () -- C:\WINDOWS\System32\perfd009.dat
[2008/04/14 18:00:00 | 000,004,463 | ---- | C] () -- C:\WINDOWS\System32\oembios.dat
[2008/04/14 18:00:00 | 000,001,804 | ---- | C] () -- C:\WINDOWS\System32\Dcache.bin
[2008/04/14 18:00:00 | 000,000,741 | ---- | C] () -- C:\WINDOWS\System32\noise.dat
[2005/05/03 16:18:54 | 000,093,878 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat

========== Alternate Data Streams ==========

@Alternate Data Stream - 147 bytes -> C:\Documents and Settings\All Users\Application Data\TEMP:8779C396

< End of report >



OTL Extras logfile created on: 10/29/2011 7:13:35 PM - Run 1
OTL by OldTimer - Version 3.2.31.0     Folder = E:\down
Windows XP Professional Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy

1022.42 Mb Total Physical Memory | 402.39 Mb Available Physical Memory | 39.36% Memory free
2.40 Gb Paging File | 1.82 Gb Available in Paging File | 75.65% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 12.48 Gb Total Space | 5.81 Gb Free Space | 46.57% Space Free | Partition Type: NTFS
Drive E: | 1.17 Gb Total Space | 1.10 Gb Free Space | 93.98% Space Free | Partition Type: NTFS
Drive I: | 60.86 Gb Total Space | 59.82 Gb Free Space | 98.29% Space Free | Partition Type: NTFS

Computer Name: DVL-92C1D504EB9 | User Name: mumu | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Extra Registry (SafeList) ==========


========== File Associations ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*

[HKEY_USERS\S-1-5-21-484763869-1425521274-1417001333-1004\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========== Shell Spawning ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- rundll32.exe shell32.dll,Control_RunDLL "%1",%*
exefile [open] -- "%1" %*
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)

========== Security Center Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 0
"AntiVirusOverride" = 0
"FirewallOverride" = 0

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]

========== System Restore Settings ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 1

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Sr]
"Start" = 4

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SrService]
"Start" = 2

========== Firewall Settings ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
"DisableUnicastResponsesToMulticastBroadcast" = 0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
"DoNotAllowExceptions" = 0
"DisableNotifications" = 0
"DisableUnicastResponsesToMulticastBroadcast" = 0

========== Authorized Applications List ==========

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger -- (Yahoo! Inc.)
"C:\Program Files\Microsoft LifeCam\LifeCam.exe" = C:\Program Files\Microsoft LifeCam\LifeCam.exe:*:Enabled:LifeCam.exe -- (Microsoft Corporation)
"C:\Program Files\Microsoft LifeCam\LifeEnC2.exe" = C:\Program Files\Microsoft LifeCam\LifeEnC2.exe:*:Enabled:LifeEnC2.exe -- (Microsoft Corporation)
"C:\Program Files\Microsoft LifeCam\LifeExp.exe" = C:\Program Files\Microsoft LifeCam\LifeExp.exe:*:Enabled:LifeExp.exe -- (Microsoft Corporation)
"C:\Program Files\Microsoft LifeCam\LifeTray.exe" = C:\Program Files\Microsoft LifeCam\LifeTray.exe:*:Enabled:LifeTray.exe -- (Microsoft Corporation)
"C:\Program Files\webcamXP 5\wLite.exe" = C:\Program Files\webcamXP 5\wLite.exe:*:Enabled:webcamXP -- (Moonware Studios)
"C:\Program Files\webcamXP 5\wService.exe" = C:\Program Files\webcamXP 5\wService.exe:*:Enabled:webcamXP Service -- (Moonware Studios)


========== HKEY_LOCAL_MACHINE Uninstall List ==========

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{059CF2AE-188F-45D3-8231-B79A131AC8C2}" = Philips SPC1000NC Webcam
"{0BEDBD4E-2D34-47B5-9973-57E62B29307C}" = ATI Control Panel
"{196467F1-C11F-4F76-858B-5812ADC83B94}" = MSXML 4.0 SP3 Parser
"{2300EE96-0A41-4FAB-BD03-989EC44577A0}" = Acronis Disk Director Suite
"{26A24AE4-039D-4CA4-87B4-2F83216013FF}" = Java™ 6 Update 13
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{35C0A1E4-D02A-412C-841F-266DBB116ABB}" = Intel® PROSet/Wireless WiFi Software
"{45E557D6-2271-4F13-8101-C620B4285AB0}" = Kaspersky Internet Security 2012
"{7AC09F4A-6AA6-4848-8959-A109BA079C5C}" = Trek 310
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders  (English) 12
"{90120000-0015-0409-0000-0000000FF1CE}" = Microsoft Office Access MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0019-0409-0000-0000000FF1CE}" = Microsoft Office Publisher MUI (English) 2007
"{90120000-001A-0409-0000-0000000FF1CE}" = Microsoft Office Outlook MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-0030-0000-0000-0000000FF1CE}" = Microsoft Office Enterprise 2007
"{90120000-0044-0409-0000-0000000FF1CE}" = Microsoft Office InfoPath MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00BA-0409-0000-0000000FF1CE}" = Microsoft Office Groove MUI (English) 2007
"{90120000-0114-0409-0000-0000000FF1CE}" = Microsoft Office Groove Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0117-0409-0000-0000000FF1CE}" = Microsoft Office Access Setup Metadata MUI (English) 2007
"{94FB906A-CF42-4128-A509-D353026A607E}" = REALTEK Gigabit and Fast Ethernet NIC Driver
"{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2
"{AC76BA86-7AD7-1033-7B44-AA1000000001}" = Adobe Reader X (10.1.1)
"{B3BC9DB1-0B0A-48B0-B86B-EA77CAA7F800}" = Microsoft Corporation
"{BD71B413-9FEE-49BB-A6D1-2C0BFB99BDFE}" = Microsoft LifeCam
"{BDCF27CA-BFC4-4F49-8D24-A925C9505AB8}" = Windows Rights Management Client with Service Pack 2
"{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2
"{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1
"{EC905264-BCFE-423B-9C42-C3A106266790}" = Windows Rights Management Client Backwards Compatibility SP2
"{F0A37341-D692-11D4-A984-009027EC0A9C}" = SoundMAX
"{FB08F381-6533-4108-B7DD-039E11FBC27E}" = Realtek AC'97 Audio
"4DF2CED4A3F0255B2228A629BC8B64D5D47A37C4" = Windows Driver Package - Philips (SPC1000) Image  (07/06/2007 5.8.8.028)
"AB076FF359D7ED09338BED944754FA8949B67836" = Windows Driver Package - Philips CE (phaudlwr) MEDIA  (06/19/2007 1.0.0.7)
"Adobe Flash Player Plugin" = Adobe Flash Player 10 Plugin
"All ATI Software" = ATI - Software Uninstall Utility
"ATI Display Driver" = ATI Display Driver
"CCleaner" = CCleaner
"DAEMON Tools Lite" = Daemon Tools Lite
"ENTERPRISE" = Microsoft Office Enterprise 2007
"FileMon" = File Alert Monitor 2.0
"InstallWIX_{45E557D6-2271-4F13-8101-C620B4285AB0}" = Kaspersky Internet Security 2012
"iuVCR_is1" = iuVCR
"KLiteCodecPack_is1" = K-Lite Codec Pack 7.7.0 (Standard)
"Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware version 1.51.2.1300
"Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1
"Microsoft Silverlight" = Microsoft Silverlight
"Mozilla Firefox 7.0.1 (x86 ro)" = Mozilla Firefox 7.0.1 (x86 ro)
"ProInst" = Intel PROSet Wireless
"RealVNC_is1" = VNC Enterprise Edition E4.6.3
"SopCast Tv Plugin 5.4 Setup" = Sopcast Tv Plugin 5.4 Setup
"The KMPlayer" = The KMPlayer (remove only)
"Totalcmd" = Total Commander (Remove or Repair)
"VNCMirror_is1" = VNC Mirror Driver 1.8.0
"WinRAR archiver" = WinRAR archiver
"Yahoo! Messenger" = Yahoo! Messenger

========== Last 10 Event Log Errors ==========

[ Application Events ]
Error - 10/1/2011 2:37:04 PM | Computer Name = DVL-92C1D504EB9 | Source = MsiInstaller | ID = 10005
Description = Product: Microsoft .NET Framework 3.0 Service Pack 2 -- Error 2004.
Method SHGetFolderPath failed.  HRESULT: 0x80004005.

Error - 10/1/2011 2:37:04 PM | Computer Name = DVL-92C1D504EB9 | Source = MsiInstaller | ID = 10005
Description = Product: Microsoft .NET Framework 3.0 Service Pack 2 -- Error 2004.
Method GetFontCacheDataFolder failed.  HRESULT: 0x80004005.

[ System Events ]
Error - 10/1/2011 2:44:20 PM | Computer Name = DVL-92C1D504EB9 | Source = Setup | ID = 60055
Description = Windows Setup encountered non-fatal errors during installation. Please
check the setuperr.log found in your Windows directory for more informatio

Error - 10/1/2011 2:49:39 PM | Computer Name = DVL-92C1D504EB9 | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments ""  in order to run the server:  {1BE1F766-5536-11D1-B726-00C04FB926AF}

Error - 10/1/2011 2:50:14 PM | Computer Name = DVL-92C1D504EB9 | Source = Service Control Manager | ID = 7001
Description = The DHCP Client service depends on the NetBios over Tcpip service
which failed to start because of the following error:   %%31

Error - 10/1/2011 2:50:14 PM | Computer Name = DVL-92C1D504EB9 | Source = Service Control Manager | ID = 7001
Description = The DNS Client service depends on the TCP/IP Protocol Driver service
which failed to start because of the following error:   %%31

Error - 10/1/2011 2:50:14 PM | Computer Name = DVL-92C1D504EB9 | Source = Service Control Manager | ID = 7001
Description = The TCP/IP NetBIOS Helper service depends on the AFD service which
failed to start because of the following error:   %%31

Error - 10/1/2011 2:50:14 PM | Computer Name = DVL-92C1D504EB9 | Source = Service Control Manager | ID = 7001
Description = The IPSEC Services service depends on the IPSEC driver service which
failed to start because of the following error:   %%31

Error - 10/1/2011 2:50:14 PM | Computer Name = DVL-92C1D504EB9 | Source = Service Control Manager | ID = 7026
Description = The following boot-start or system-start driver(s) failed to load:
   AFD  Fips  intelppm  IPSec  MRxSmb  NetBIOS  NetBT  RasAcd  Rdbss  Tcpip

Error - 10/1/2011 2:50:40 PM | Computer Name = DVL-92C1D504EB9 | Source = DCOM | ID = 10005
Description = DCOM got error "%1084" attempting to start the service EventSystem
with arguments ""  in order to run the server:  {1BE1F766-5536-11D1-B726-00C04FB926AF}


< End of report >


#6
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
GMER 1.0.15.15641 - http://www.gmer.net
Rootkit scan 2011-10-29 19:50:02
Windows 5.1.2600 Service Pack 3 Harddisk0\DR0 -> \Device\Ide\IdeDeviceP1T0L0-e ST98823AS rev.3.03
Running: gmer.exe; Driver: C:\DOCUME~1\mumu\LOCALS~1\Temp\kflyifod.sys


---- System - GMER 1.0.15 ----

SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwAdjustPrivilegesToken [0xF075FFBA]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwClose [0xF07608B4]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwConnectPort [0xF0779AEE]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateEvent [0xF0760E26]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateMutant [0xF0760D14]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreatePort [0xF0779E06]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateProcess [0xF0761056]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateProcessEx [0xF076121E]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateSection [0xF075FD76]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateSemaphore [0xF0760F3E]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateSymbolicLinkObject [0xF077B110]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateThread [0xF07605E6]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwCreateWaitablePort [0xF0779ECE]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwDebugActiveProcess [0xF076153C]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwDeleteKey [0xF0774084]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwDeleteValueKey [0xF077588E]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwDeviceIoControlFile [0xF07608F6]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwDuplicateObject [0xF076253C]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwEnumerateKey [0xF0775088]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwEnumerateValueKey [0xF0775A38]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwLoadDriver [0xF076162E]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwLoadKey [0xF0774BC0]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwLoadKey2 [0xF0774E1C]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwMapViewOfSection [0xF0761B9A]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwNotifyChangeKey [0xF077830A]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwOpenEvent [0xF0760EB8]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwOpenMutant [0xF0760DA0]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwOpenProcess [0xF07601F4]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwOpenSection [0xF076197E]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwOpenSemaphore [0xF0760FD0]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwOpenThread [0xF07600E8]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwPlugPlayControl [0xF077B120]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwQueryKey [0xF0773EB8]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwQueryMultipleValueKey [0xF0775698]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwQueryObject [0xF0778500]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwQuerySection [0xF0761EC0]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwQueryValueKey [0xF0775488]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwQueueApcThread [0xF07617CE]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwRenameKey [0xF0774198]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwReplaceKey [0xF077480C]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwReplyPort [0xF077A048]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwReplyWaitReceivePort [0xF0779F96]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwRequestWaitReplyPort [0xF077A0B4]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwRestoreKey [0xF0774A14]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwResumeThread [0xF07623DE]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSaveKey [0xF077433E]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSaveKeyEx [0xF07744D4]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSaveMergedKeys [0xF0774670]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSecureConnectPort [0xF0779C76]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSetContextThread [0xF0760756]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSetInformationToken [0xF07613E8]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSetSystemInformation [0xF0762010]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSetValueKey [0xF0775248]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSuspendProcess [0xF0762104]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSuspendThread [0xF076223E]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwSystemDebugControl [0xF076145E]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwTerminateProcess [0xF0760392]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwTerminateThread [0xF07602EA]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwUnmapViewOfSection [0xF0761D78]
SSDT            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           ZwWriteVirtualMemory [0xF076047C]

Code            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           FsRtlCheckLockForReadAccess
Code            \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)                           IoIsOperationSynchronous

---- Kernel code sections - GMER 1.0.15 ----

.text           ntoskrnl.exe!_abnormal_termination + 104                                                                        804E2770 9 Bytes  [06, 9E, 77, F0, 56, 10, 76, ...] {PUSH ES; SAHF ; JA 0xfffffffffffffff4; PUSH ESI; ADC [ESI-0x10], DH; PUSH DS}
.text           ntoskrnl.exe!_abnormal_termination + 10E                                                                        804E277A 2 Bytes  [76, F0] {JBE 0xfffffffffffffff2}
.text           ntoskrnl.exe!_abnormal_termination + 114                                                                        804E2780 16 Bytes  [76, FD, 75, F0, 3E, 0F, 76, ...]
.text           ntoskrnl.exe!_abnormal_termination + 1D0                                                                        804E283C 12 Bytes  [2E, 16, 76, F0, C0, 4B, 77, ...]
.text           ntoskrnl.exe!_abnormal_termination + 24C                                                                        804E28B8 4 Bytes  [E8, 00, 76, F0]
.text           ...                                                                                                            
.text           ntoskrnl.exe!IoIsOperationSynchronous                                                                           804E876A 5 Bytes  JMP F0752DCC \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)
.text           ntoskrnl.exe!FsRtlCheckLockForReadAccess                                                                        80512959 5 Bytes  JMP F07529F0 \SystemRoot\system32\DRIVERS\klif.sys (Klif Mini-Filter [fre_wnet_x86]/Kaspersky Lab)

---- User code sections - GMER 1.0.15 ----

?               C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[932] C:\WINDOWS\system32\ntdll.dll      time/date stamp mismatch;
.text           C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[932] ntdll.dll!NtProtectVirtualMemory   7C90D6EE 5 Bytes  JMP 6AC91765 C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ushata.dll (Ushata module/Kaspersky Lab ZAO)
?               C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[932] C:\WINDOWS\system32\kernel32.dll   time/date stamp mismatch;
.text           C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[932] USER32.dll!AlignRects              7E412A78 4 Bytes  [E0, 13, 54, 67]
.text           C:\Program Files\Mozilla Firefox\plugin-container.exe[1204] USER32.dll!SetWindowLongA                           7E42C29D 5 Bytes  JMP 1069E349 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text           C:\Program Files\Mozilla Firefox\plugin-container.exe[1204] USER32.dll!SetWindowLongW                           7E42C2BB 5 Bytes  JMP 1069E2DB C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text           C:\Program Files\Mozilla Firefox\plugin-container.exe[1204] USER32.dll!GetWindowInfo                            7E42C49C 5 Bytes  JMP 104589A7 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text           C:\Program Files\Mozilla Firefox\plugin-container.exe[1204] USER32.dll!TrackPopupMenu                           7E46531E 5 Bytes  JMP 10458F65 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
.text           C:\Program Files\Mozilla Firefox\firefox.exe[2556] ntdll.dll!LdrLoadDll                                         7C915C35 5 Bytes  JMP 011DFAE0 C:\Program Files\Mozilla Firefox\xul.dll (Mozilla Foundation)
?               C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[3036] C:\WINDOWS\system32\ntdll.dll     time/date stamp mismatch;
.text           C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[3036] ntdll.dll!NtProtectVirtualMemory  7C90D6EE 5 Bytes  JMP 6AC91765 C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\ushata.dll (Ushata module/Kaspersky Lab ZAO)
?               C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[3036] C:\WINDOWS\system32\kernel32.dll  time/date stamp mismatch;
.text           C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe[3036] USER32.dll!AlignRects             7E412A78 4 Bytes  [E0, 13, 54, 67]

---- Devices - GMER 1.0.15 ----

AttachedDevice  \Driver\Tcpip \Device\Ip                                                                                        kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
AttachedDevice  \Driver\Tcpip \Device\Tcp                                                                                       kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
AttachedDevice  \Driver\Ftdisk \Device\HarddiskVolume1                                                                          snapman.sys (Acronis Snapshot API/Acronis)
AttachedDevice  \Driver\Ftdisk \Device\HarddiskVolume2                                                                          snapman.sys (Acronis Snapshot API/Acronis)
AttachedDevice  \Driver\Ftdisk \Device\HarddiskVolume3                                                                          snapman.sys (Acronis Snapshot API/Acronis)
AttachedDevice  \Driver\Tcpip \Device\Udp                                                                                       kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)
AttachedDevice  \Driver\Tcpip \Device\RawIp                                                                                     kl1.sys (Kaspersky Unified Driver/Kaspersky Lab ZAO)

---- EOF - GMER 1.0.15 ----

#7
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
a sters iar ..aceleasi fisiere ca le aduc..in fiecare seara la ora  22:43...  am instalat astazi o aplicatie de monitorizat ..folderele..

laptopul nu avea acces la internet..deci e ceva local clar


o sa fac niste teste o sa aduc fisierele inapoi si o sa setez alta data..sa ajung iar la 22:43..sa vad daca dispar..din nou


am setat ziua de azi iar cu ora 22:42...aceleasi conditii practic...nu a mai sters nimic
am pus si ziua de 30 ora..la fel si nu a sters nimic
chiar e enervant foarte ..mai ales ca e primul virus care l-am luat in 13 ani..

Edited by chitziman, 29 October 2011 - 22:17.


#8
rootkit

rootkit

    Awake. Security DNA

  • Grup: Senior Members
  • Posts: 34,883
  • Înscris: 07.02.2007
Ruleaza o scanare si pune log-ul aici:

http://quickscan.bitdefender.com/ro/

#9
Morphinus

Morphinus

    Active Member

  • Grup: Members
  • Posts: 1,935
  • Înscris: 29.09.2010
Incearca o scanare cu Kaspersky Virus Removal Tool sau ruleaza din exteriorul sistemului de operare Kaspersky Rescue Disk.

#10
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004

View PostMorphinus, on 30th October 2011, 13:30, said:

Incearca o scanare cu Kaspersky Virus Removal Tool sau ruleaza din exteriorul sistemului de operare Kaspersky Rescue Disk.


cu kaspersky removal am scanat de pe cd si dr web la fel o sa incerc si acum cu bitdefender...


QuickScan Beta 32-bit v0.9.9.99
-------------------------------
Data scanării: Sun Oct 30 16:55:48 2011
ID-ul mașinii: 14C36149



Nimic infectat.
---------------



Procese
-------
            ATI Desktop Component                    2588    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
            ATI External Event Utility for WindowsN  1732    C:\WINDOWS\system32\ati2evxx.exe
            ATI External Event Utility for WindowsN  1428    C:\WINDOWS\system32\ati2evxx.exe
            CameraMonitor Application                2836    C:\WINDOWS\vsnpstd2.exe
            CameraMonitor Application                2776    C:\WINDOWS\vspc1000.exe
            FileMon                                  1464    C:\Program Files\HighCriteria\FileMon\FileMon.exe
            Firefox                                  1800    C:\Program Files\Mozilla Firefox\firefox.exe
            Firefox                                   464    C:\Program Files\Mozilla Firefox\plugin-container.exe
            Firefox                                  2976    C:\Program Files\Mozilla Firefox\plugin-container.exe
            Intel? PROSet/Wireless                 2712    C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
            Intel? PROSet/Wireless                 1776    C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
            Intel? PROSet/Wireless                 1116    C:\Program Files\Intel\WiFi\bin\EvtEng.exe
            Intel? PROSet/Wireless                  400    C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
            Intel? PROSet/Wireless                 2616    C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
            Kaspersky Anti-Virus                     2844    C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtblfs.exe
            Malwarebytes' Anti-Malware               1192    C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
            Microsoft LifeCam                        1400    C:\Program Files\Microsoft LifeCam\MSCamS32.exe
            Microsoft? Windows? Operating System     2140    C:\WINDOWS\explorer.exe
            Microsoft? Windows? Operating System     1560    C:\WINDOWS\system32\services.exe
            Microsoft? Windows? Operating System      744    C:\WINDOWS\system32\spoolsv.exe
            Microsoft? Windows? Operating System     3592    C:\WINDOWS\system32\wbem\unsecapp.exe
            Microsoft? Windows? Operating System      688    C:\WINDOWS\system32\wbem\wmiprvse.exe
            Microsoft? Windows? Operating System     3072    C:\WINDOWS\system32\wbem\wmiprvse.exe
            Microsoft? Windows? Operating System     1516    C:\WINDOWS\system32\winlogon.exe
            TrayMin Application                      2884    C:\WINDOWS\VPro1000.exe
(verificat) Java™ Platform SE 6 U13               1148    C:\Program Files\Java\jre6\bin\jqs.exe
(verificat) Microsoft? .NET Framework                 740    C:\WINDOWS\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(verificat) Microsoft? Windows? Operating System      624    C:\WINDOWS\system32\alg.exe
(verificat) Microsoft? Windows? Operating System     1488    C:\WINDOWS\system32\csrss.exe
(verificat) Microsoft? Windows? Operating System     2864    C:\WINDOWS\system32\ctfmon.exe
(verificat) Microsoft? Windows? Operating System     1572    C:\WINDOWS\system32\lsass.exe
(verificat) Microsoft? Windows? Operating System     1360    C:\WINDOWS\system32\smss.exe
(verificat) Microsoft? Windows? Operating System      516    C:\WINDOWS\system32\svchost.exe
(verificat) Microsoft? Windows? Operating System      928    C:\WINDOWS\system32\svchost.exe
(verificat) Microsoft? Windows? Operating System     1748    C:\WINDOWS\system32\svchost.exe
(verificat) Microsoft? Windows? Operating System     1848    C:\WINDOWS\system32\svchost.exe
(verificat) Microsoft? Windows? Operating System     1888    C:\WINDOWS\system32\svchost.exe
(verificat) Microsoft? Windows? Operating System     1968    C:\WINDOWS\system32\svchost.exe
(verificat) Microsoft? Windows? Operating System     2736    C:\WINDOWS\system32\svchost.exe


Conexiuni
---------
Procesul Firefox.exe (1800) conectat pe portul 80 (HTTP) --> 88.221.61.115
Procesul firefox.exe (1800) conectat pe portul 80 (HTTP) --> 74.125.232.250
Procesul firefox.exe (1800) conectat pe portul 80 (HTTP) --> 74.125.232.238
Procesul firefox.exe (1800) conectat pe portul 80 (HTTP) --> 74.125.232.250

Procesul svchost.exe (1848) servește pe porturile: 135 (RPC)


Autorun-uri și fișiere critice
------------------------------
            ATI Desktop Component                    C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
            ATI External Event Utility for NT, W2K   C:\WINDOWS\system32\Ati2evxx.dll
            CameraMonitor Application                C:\WINDOWS\vsnpstd2.exe
            CameraMonitor Application                C:\WINDOWS\vspc1000.exe
            FileMon                                  C:\Program Files\HighCriteria\FileMon\FileMon.exe
            Intel? PROSet/Wireless                 C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
            Intel? PROSet/Wireless                 C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
            Kaspersky Anti-Virus                     C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
            Kaspersky Anti-Virus                     C:\WINDOWS\system32\klogon.dll
            Malwarebytes' Anti-Malware               C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
            Microsoft LifeCam                        C:\Program Files\Microsoft LifeCam\LifeExp.exe
            Microsoft? Windows? Operating System     C:\WINDOWS\system32\CRYPT32.dll
            Microsoft? Windows? Operating System     C:\WINDOWS\system32\cryptnet.dll
            Microsoft? Windows? Operating System     C:\WINDOWS\System32\CSCDLL.dll
            Microsoft? Windows? Operating System     C:\WINDOWS\System32\dimsntfy.dll
            Microsoft? Windows? Operating System     C:\WINDOWS\system32\scrnsave.scr
            Microsoft? Windows? Operating System     C:\WINDOWS\system32\SHELL32.dll
            Microsoft? Windows? Operating System     c:\windows\system32\userinit.exe
            Microsoft? Windows? Operating System     C:\WINDOWS\system32\WlNotify.dll
            Windows? Search                          C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll
(verificat) Microsoft Genuine Advantage              C:\WINDOWS\system32\WgaLogon.dll
(verificat) Microsoft? Windows? Operating System     C:\WINDOWS\system32\BROWSEUI.dll
(verificat) Microsoft? Windows? Operating System     C:\WINDOWS\system32\ctfmon.exe
(verificat) Microsoft? Windows? Operating System     C:\WINDOWS\system32\logonui.exe
(verificat) Microsoft? Windows? Operating System     C:\WINDOWS\system32\sclgntfy.dll
(verificat) Microsoft? Windows? Operating System     C:\WINDOWS\system32\stobject.dll
(verificat) Microsoft? Windows? Operating System     C:\WINDOWS\system32\WPDShServiceObj.dll
(verificat) Windows? Internet Explorer               C:\WINDOWS\system32\webcheck.dll


Plugin-uri de browser
---------------------
            AcroIEHelperShim Library                 c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
            Adobe Acrobat                            C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
            BitDefender QuickScan                    C:\Documents and Settings\mumu\Application Data\Mozilla\Firefox\Profiles\ig75iwes.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
            Kaspersky Anti-Virus                     c:\program files\kaspersky lab\kaspersky internet security 2012\ievkbd.dll
            Kaspersky Anti-Virus                     c:\program files\kaspersky lab\kaspersky internet security 2012\klwtbbho.dll
            Messenger                                C:\Program Files\Messenger\msmsgs.exe
            Microsoft? Windows? Operating System     C:\WINDOWS\system32\mswsock.dll
            Microsoft? Windows? Operating System     C:\WINDOWS\system32\rsvpsp.dll
            Microsoft? Windows? Operating System     C:\WINDOWS\System32\winrnr.dll
            NPSWF32.dll                              C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
            Silverlight Plug-In                      C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
            Windows Presentation Foundation          C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
            Windows? Internet Explorer               C:\WINDOWS\system32\ieframe.dll
            Yahoo Application State Plugin           C:\Program Files\Yahoo!\Shared\npYState.dll
(verificat) Java™ Platform SE 6 U13               c:\program files\java\jre6\bin\jp2ssv.dll
(verificat) Java™ Platform SE 6 U13               c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
(verificat) Microsoft? Windows? Operating System     C:\WINDOWS\Network Diagnostic\xpnetdiag.exe


Scanare
-------
MD5: f4a569f89a90205a095965ae628625e1  C:\Documents and Settings\mumu\Application Data\Mozilla\Firefox\Profiles\ig75iwes.default\extensions\{e001c731-5e37-4538-a5cb-8168736a2360}\plugins\npqscan.dll
MD5: 198bed114015c2671c88fdc32cdcb21d  C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll
MD5: c07c1f31071e4e98a9e5fe9fc8168380  C:\Program Files\ATI Technologies\ATI Control Panel\atipdsxx.dll
MD5: 8987e61d2e4f33c6741836dcdd7f8bc7  C:\Program Files\ATI Technologies\ATI Control Panel\atipdxxx.dll
MD5: 042a5030ce5190618db03216a3a0351b  C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
MD5: db8442e5014bc790a479c3c1a95e93c3  C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATRPUIXX.ENU
MD5: 8c4ac22616e77925135c221c46dc6307  c:\program files\common files\adobe\acrobat\activex\acroiehelpershim.dll
MD5: 0cf54607b862bf6cdc7eb21be189be84  C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\PDFShell.dll
MD5: 5acc818608d15fbcd55663eded23275d  C:\Program Files\Common Files\Intel\WirelessCommon\FrameworkPlugins\ConnMgr.dll
MD5: 94b229ba042ec77bafba1d6ea0d84c49  C:\Program Files\Common Files\Intel\WirelessCommon\FrameworkPlugins\WiWiTray.dll
MD5: 5555e45ed67b256152681370b277a20b  C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
MD5: 11add8816d61a6025844eb5123ec92d3  C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
MD5: 6b5a5e98b3be97f6999a1e0c3924fc60  C:\Program Files\Common Files\Intel\WirelessCommon\PsRegApi.dll
MD5: 3ff45b7f17d5837216abae652cc61540  C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
MD5: 9c2b6a28a412294135d997d8329af73a  C:\Program Files\Common Files\Intel\WirelessCommon\TraceApi.dll
MD5: 5e8ad6c389f733d1b3429c51c08e9439  C:\Program Files\Common Files\System\ado\msado15.dll
MD5: 4b161d4638a2433aba4558264c6e6eca  C:\Program Files\Common Files\System\msadc\msadce.dll
MD5: 81e9041dac0983aace5c8920af73d64e  C:\Program Files\Common Files\System\msadc\msadcer.dll
MD5: 1ed4c96ec76c3ddfcabd7644da23f4b6  C:\Program Files\Common Files\System\Ole DB\msdasql.dll
MD5: 8985fcece06a74017e23ddd093e34d4e  C:\Program Files\Common Files\System\Ole DB\MSDASQLR.DLL
MD5: 73baffa0b02320690cdc606241078ce4  C:\Program Files\Common Files\System\Ole DB\MSDATL3.dll
MD5: 4f7195ed7b1551efba704652c7026b63  C:\Program Files\HighCriteria\FileMon\FileMon.exe
MD5: a8f7d8ecc23fe307d640d4728fa293dc  C:\Program Files\Intel\WiFi\bin\DbEngine.dll
MD5: 54b6e150bff4a47eb0d204119d262e46  C:\Program Files\Intel\WiFi\bin\EvtEng.exe
MD5: 79af1994b0c8e8df8b72d27ead8effe5  C:\Program Files\Intel\WiFi\bin\IntStngs.dll
MD5: 5b83ce4121949a13ca34e0ece3f11422  C:\Program Files\Intel\WiFi\bin\IWMSPROV.DLL
MD5: 7600645241a145c990104bbc4fb817d3  C:\Program Files\Intel\WiFi\bin\KmmdlPlugins\SupplicantPlugin.dll
MD5: d4b6cf364aa309e34ec8e54353ef82c7  C:\Program Files\Intel\WiFi\bin\KmmdlPlugins\WSCPlugin.dll
MD5: 2144cf83ab7cfd67fc3f7d1019591451  C:\Program Files\Intel\WiFi\bin\MurocApi.dll
MD5: 1d2e758f4062423f208af96c6d36ce1a  C:\Program Files\Intel\WiFi\bin\PfMgrApi.dll
MD5: 27090b248002bc3bc16d9a711bce15c9  C:\Program Files\Intel\WiFi\bin\S24EvMon.exe
MD5: 92735e1769ed5387528eb1a37db46dbb  C:\Program Files\Intel\WiFi\bin\S24MUDLL.dll
MD5: 008c44018c26b5c0bc8602f4076d21bc  C:\Program Files\Intel\WiFi\bin\supplicant.dll
MD5: d9a4296463a2f96ecf157ff5f9516ab7  C:\Program Files\Intel\WiFi\bin\ZCfgSvc.exe
MD5: 5e726aebd227d666b2aa181cacad80d6  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\abhelper.dll
MD5: 2718dc27571bd1e37813f5759d2dc118  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\avp.exe
MD5: 0b77082e2505603d24b02998bc7f15d3  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\[email protected]\components\ff7\abhelperxpcom7.dll
MD5: 805d02b62156b7a1ff3d06d568da53ad  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\[email protected]\components\ff7\kavlinkfilter7.dll
MD5: f42209fc6a0d52de405418cd8eaaff1d  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\[email protected]\components\ff7\ffvkplugin7.dll
MD5: b58849104a5e76875b34f23dcb82efe9  c:\program files\kaspersky lab\kaspersky internet security 2012\ievkbd.dll
MD5: 74c08d34f52508e248305ce42cf77865  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\kltbar.dll
MD5: 35006646bc1e5684f2a8be96631c69d5  c:\program files\kaspersky lab\kaspersky internet security 2012\klwtbbho.dll
MD5: 8964a832459dbe95d718288a48b9c236  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtbcl.dll
MD5: dd4b100fde022b01537288c7c73c22f8  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtblc.dll
MD5: 78405310a9db8d3cbf27432ed5393f71  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\klwtblfs.exe
MD5: 04a0422559ef54671ed6d88021f32d87  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\params.ppl
MD5: bbd6eadac482a006bebf0227dc763092  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\prloader.dll
MD5: eed1fbd0fde9f97eb90bd8f5075ca0df  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\prremote.dll
MD5: 809998dbb6625593c48cc174556a9d24  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\pxstub.ppl
MD5: f62d17fb716367bfc886393642794429  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\shellex.dll
MD5: 71afa4402f0b456a55afec899f5fa93f  C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\winreg.ppl
MD5: d8d95f3867c2c93d012660e59e80db20  C:\Program Files\Malwarebytes' Anti-Malware\mbam.dll
MD5: 844c363b47960cafcd81e5285269f280  C:\Program Files\Malwarebytes' Anti-Malware\mbamext.dll
MD5: 026423673b8563e9975bda97ed6273c7  C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe
MD5: 0af0c0c737ee9ba80a1c0b72fe9022c8  C:\Program Files\Malwarebytes' Anti-Malware\mbamnet.dll
MD5: 94e920be59b9ab65d95e582dbaa136ac  C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe
MD5: 3e930c641079443d4de036167a69caa2  C:\Program Files\Messenger\msmsgs.exe
MD5: bbd57331adfd9fd722c3bf4d6947554a  C:\Program Files\Microsoft LifeCam\CAL2.dll
MD5: dd15d9965943525db892296b3de6e263  C:\Program Files\Microsoft LifeCam\LifeExp.exe
MD5: b03e3f64b70f8031e65eb26da23de91a  C:\Program Files\Microsoft LifeCam\MSCamS32.exe
MD5: c3e42cbf8215171a524d123a54ae3233  C:\Program Files\Microsoft Silverlight\4.0.60531.0\npctrl.dll
MD5: 8a3314f8e2d828c689a1afabaadf1453  C:\Program Files\Mozilla Firefox\components\browsercomps.dll
MD5: 4e5585800b561fbef64b27425365a36f  C:\Program Files\Mozilla Firefox\firefox.exe
MD5: 8ea8b096ce1c336e031fc91f50fd2c79  C:\Program Files\Mozilla Firefox\freebl3.dll
MD5: d45b94e37b589d44602c8cd23d5846f2  C:\Program Files\Mozilla Firefox\mozalloc.dll
MD5: 201d1419f982e4e99491730800f93f8a  C:\Program Files\Mozilla Firefox\MOZCPP19.dll
MD5: 6769fa99f14b0a3a076c9b5c37c612ad  C:\Program Files\Mozilla Firefox\MOZCRT19.dll
MD5: fa5c3b89009e6eeeb8ce5b5d522c8d86  C:\Program Files\Mozilla Firefox\mozjs.dll
MD5: ffdf182c96bd0a9fd3bc63bc7ebd29d9  C:\Program Files\Mozilla Firefox\mozsqlite3.dll
MD5: c47e54508c4fd350d5aed0934e5f7ec5  C:\Program Files\Mozilla Firefox\nspr4.dll
MD5: 95bfebc87318a69daf90a451d8c41d9e  C:\Program Files\Mozilla Firefox\nss3.dll
MD5: 8f6e5bf3249385755a27216ba875fe54  C:\Program Files\Mozilla Firefox\nssckbi.dll
MD5: 5bfb3f3f690a279c0487a43a4959c58f  C:\Program Files\Mozilla Firefox\nssdbm3.dll
MD5: 8986675ef2d7f77a4ae2ec43e7e14cbb  C:\Program Files\Mozilla Firefox\nssutil3.dll
MD5: 328a247f9fc842e09f271ef53247c0f2  C:\Program Files\Mozilla Firefox\plc4.dll
MD5: e5daea8e7689a547a1edab4768934498  C:\Program Files\Mozilla Firefox\plds4.dll
MD5: 83f4ba8b8cda4f063aa2002955a508a9  C:\Program Files\Mozilla Firefox\plugin-container.exe
MD5: 19b4bddd14eda48ec07aace52b56c5c6  C:\Program Files\Mozilla Firefox\smime3.dll
MD5: fb38afc34dfb91c2b589a7bf535f21f9  C:\Program Files\Mozilla Firefox\softokn3.dll
MD5: 4265870f374c9a2be39d1ca6111200be  C:\Program Files\Mozilla Firefox\ssl3.dll
MD5: 428013e8625ddc3a220a2cb77c82a448  C:\Program Files\Mozilla Firefox\xpcom.dll
MD5: 3799b05efbc4f0a4b430ddec09791c88  C:\Program Files\Mozilla Firefox\xul.dll
MD5: 3f1546b526a8a38f96b19b4e2826d79d  C:\Program Files\RealVNC\VNC4\WinVNC4.exe
MD5: cd3c012fd96e00833819e57f85e338cc  C:\Program Files\webcamXP 5\wService.exe
MD5: 994ad0d8550b8b26990a6e3aa0791502  C:\Program Files\Windows Desktop Search\MSNLNamespaceMgr.dll
MD5: 82f0e6886ad9774f4504fe24b4ee3a42  C:\Program Files\WinRAR\rarext.dll
MD5: 310c15fd8358b2c4cd7a5b98a112883f  C:\WINDOWS\AppPatch\AcGenral.DLL
MD5: 617fb85504f7be3d0231b5c67724b1ba  C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\0309936a8e1672d39b9cf14463ce69f9\mscorlib.ni.dll
MD5: 1d28c1133a26e4f0a50ac927b675a6c6  C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationCore\5f332c48d03eca57419c4f0e884092ee\PresentationCore.ni.dll
MD5: 4e6add08494008bf17c6ddccd3e9ca51  C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\PresentationFontCac#\40ee65aacd9d7472cd6f8dddbfca604b\PresentationFontCache.ni.exe
MD5: 9cc7fa87f38daad1fcd80be2ab9bf557  C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.ServiceProce#\70a1400affdc775d7c7398e036359286\System.ServiceProcess.ni.dll
MD5: a8959295bdcd7a111acde9fae77c7ab1  C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\e6c79e1d71b0c9000afd7e5e439b5c54\System.ni.dll
MD5: 1630a3b87b2bb3c4d60c0c6b74e6d4ad  C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\WindowsBase\fd6e0cd6f124a6d041ef1b4c9a5f080b\WindowsBase.ni.dll
MD5: 2bb75b7f548d82a099125d0c5971de7d  C:\WINDOWS\explorer.exe
MD5: 429e3efafcae6c89a57cd5d8e3442cae  C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
MD5: ab87eeffd18f2baafc274e7075ea6c67  C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll
MD5: d34cbd5a6d63d6b95b5986d1ae37c3c3  C:\WINDOWS\system32\adsldp.dll
MD5: 446321d798e28daac1383637fbb524e0  C:\WINDOWS\system32\adsnt.dll
MD5: c8a6c82f90b055149925dc7526b2d78c  C:\WINDOWS\system32\ADVAPI32.dll
MD5: c6aed2f6da40603726aa67181e07f7bf  C:\WINDOWS\system32\Ati2edxx.dll
MD5: a055e1a2f252899895aeaebcf972e7d3  C:\WINDOWS\system32\Ati2evxx.dll
MD5: 725bbf8c2d631505cf6375a9d603a112  C:\WINDOWS\system32\ati2evxx.exe
MD5: 4c48f1b30a82583caee0da02dd7259ee  C:\WINDOWS\system32\Audiodev.dll
MD5: 7e39a3edc13b076e70fdb9a6f6d7a4b4  c:\windows\system32\browser.dll
MD5: 93afb83fbc1f9443cac722fca63d73bf  C:\WINDOWS\system32\COMCTL32.dll
MD5: ed0c0df222209e43ad9afbf3fe87dde0  C:\WINDOWS\system32\comsvcs.dll
MD5: f43180e876714d97f69b8ba3ed725a04  C:\WINDOWS\system32\CRYPT32.dll
MD5: c14350fc0d47d806699c4f907fc6785b  C:\WINDOWS\system32\cryptnet.dll
MD5: e69bdcda821e8be9de1ba1ef72f8c94d  C:\WINDOWS\System32\CSCDLL.dll
MD5: b751bd07a27970e05e3cde1c32b94c6b  C:\WINDOWS\system32\CSRSRV.dll
MD5: c51de19619d50cbd03708647aca10e70  c:\windows\system32\dhcpcsvc.dll
MD5: e2092f0a1d7abc243f9c2362483d150d  C:\WINDOWS\System32\dimsntfy.dll
MD5: aa0507f0516a4dff1b1279ab4a2abb37  C:\WINDOWS\system32\DINPUT8.dll
MD5: 64aa11d53a4a84cdf43370d7036517c3  C:\WINDOWS\system32\DNSAPI.dll
MD5: d977659ae4d8ece5286d99d1ed34614d  c:\windows\system32\dnsrslvr.dll
MD5: b4109c8c3d54c83246997a777724f318  C:\WINDOWS\System32\dot3svc.dll
MD5: f40b7e185b24426a1ab430b5655eb8bb  C:\WINDOWS\system32\drivers\ADIHdAud.sys
MD5: 8d499b1276012eb907e7a9e0f4d8fda4  C:\WINDOWS\System32\drivers\afd.sys
MD5: f48fe6d69f7a224a2157d052e3b1a0fc  C:\WINDOWS\system32\DRIVERS\ati2mtag.sys
MD5: 4b0a100eaf5c49ef3cca8c641431eacc  C:\WINDOWS\system32\DRIVERS\cdrom.sys
MD5: 47b6aaec570f2c11d8bad80a064d8ed1  C:\WINDOWS\system32\DRIVERS\disk.sys
MD5: c0c7ceccb6c85994c2bc92d58e52d3f2  C:\WINDOWS\system32\DRIVERS\dtsoftbus01.sys
MD5: 186b54479d98e48aee0e9ada4b3c4d31  C:\WINDOWS\system32\DRIVERS\kl1.sys
MD5: bf485bfba13c0ab116701fd9c55324d0  C:\WINDOWS\system32\DRIVERS\kl2.sys
MD5: 5d92a03045a6a98708975b3d77b39a36  C:\WINDOWS\system32\DRIVERS\klif.sys
MD5: 96a7ec308a93da26dfe481308baac2a2  C:\WINDOWS\system32\DRIVERS\klim5.sys
MD5: 3959530f69e19da56f1f24f2c89f1e2c  C:\WINDOWS\system32\DRIVERS\klmouflt.sys
MD5: 69a6268d7f81e53d568ab4e7e991caf3  C:\WINDOWS\system32\drivers\mbam.sys
MD5: fb2fccc70f7174c7bf64f48e96d3adf4  C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
MD5: 0109c4f3850dfbab279542515386ae22  C:\WINDOWS\system32\DRIVERS\ndistapi.sys
MD5: 2553f7c60b8d291b5a812245e6d4da6e  C:\WINDOWS\system32\DRIVERS\ohci1394.sys
MD5: 2eb9479db0d4e645fa5fbad0b4f43a46  C:\WINDOWS\system32\DRIVERS\phaudlwr.sys
MD5: 77050c6615f6eb5402f832b27fd695e0  C:\WINDOWS\system32\DRIVERS\rdbss.sys
MD5: d96ea49ab9a9174331bc023fd0cadc18  C:\WINDOWS\system32\DRIVERS\rminiv3.sys
MD5: 743d7d59767073a617b1dcc6c546f234  C:\WINDOWS\system32\DRIVERS\rspndr.sys
MD5: 7f0413bdd7d53eb4c7a371e7f6f84df1  C:\WINDOWS\system32\DRIVERS\Rtlnicxp.sys
MD5: 96b4494d4734970f47c566e098c4f527  C:\WINDOWS\system32\DRIVERS\s24trans.sys
MD5: d4efa70468110dbabb9bfe62e63afa68  C:\WINDOWS\system32\DRIVERS\sdbus.sys
MD5: 6081af973fe5388ccd7786d319fe077d  C:\WINDOWS\system32\DRIVERS\snapman.sys
MD5: 68071a3f784a31e9a386bd6f0a548f3b  C:\WINDOWS\system32\DRIVERS\snpstd2.sys
MD5: 0e7b32bf9eb1b509b62ef34f23188016  C:\WINDOWS\system32\DRIVERS\spc1000.sys
MD5: 9b390283569ea58d43d2586032b892f5  C:\WINDOWS\system32\DRIVERS\srv.sys
MD5: 25a740d70e8007814a48d3fa1b34fa34  C:\WINDOWS\system32\DRIVERS\tcpip.sys
MD5: 4bac8df07f1d8434fc640e677a62204e  C:\WINDOWS\system32\DRIVERS\usbehci.sys
MD5: 3b8f222b23917c041e4da29ccc57e7d0  C:\WINDOWS\system32\DRIVERS\vncmirror.sys
MD5: f0608f3b5b6d16f4870e867f9d069b6b  C:\WINDOWS\system32\DRIVERS\w29n51.sys
MD5: f17f6226bdc0cd5f0bef0daf84d29bec  c:\windows\system32\es.dll
MD5: f5b754cdea20bbb3a31e16a776ede6d6  c:\windows\system32\ESENT.dll
MD5: 303a63f4b913aa5d8998161cb77a8ce7  C:\WINDOWS\system32\feclient.dll
MD5: aa6e613d106c8523c7e14aff11314541  C:\WINDOWS\system32\GDI32.dll
MD5: 0a878aa66e4dd3e2608192a1eccd9f8f  C:\WINDOWS\system32\hnetcfg.dll
MD5: 87a15ef9ae97787b6d1bbebc20185d27  C:\WINDOWS\system32\ieframe.dll
MD5: 245977336bd60170cb13bed95c7e6918  C:\WINDOWS\system32\iertutil.dll
MD5: e128d805fb0ac4ec762fd6d68e2d2cb6  C:\WINDOWS\system32\inetpp.dll
MD5: 4f10a2fa76b5bd54cd68afa94e8adb39  c:\windows\system32\ipnathlp.dll
MD5: 4260bdcd96976da6f44e9ca8b2e029e5  C:\WINDOWS\system32\kerberos.dll
MD5: 8fe8d71756ea302293f2df4f3bdf94c7  C:\WINDOWS\system32\klogon.dll
MD5: 5c53aeac3fd476088e7985c842b9b048  C:\WINDOWS\system32\LSASRV.dll
MD5: 5ad4e19d583fa285f4b5ccb7784a28c2  C:\WINDOWS\system32\Macromed\Flash\NPSWF32.dll
MD5: 76848cb1aa5818db47d5f5986e0a7485  C:\WINDOWS\system32\MFC42.DLL
MD5: 7ed9af3e29a3f6a22b7b039cde5e7d32  C:\WINDOWS\system32\mscms.dll
MD5: 30b7d847ba9075aa8e1122fb6af3d1b5  C:\WINDOWS\system32\msctfime.ime
MD5: c393dabd629594d19a41d81a113385bd  C:\WINDOWS\system32\MSGINA.dll
MD5: 8c22083ed515dc94d575438662f0be6a  C:\WINDOWS\system32\msi.dll
MD5: 04b37ec9114f6464054108c2bfdbd9cf  C:\WINDOWS\system32\msjet40.dll
MD5: 7e2b58ce8c4013287371667880b1080d  C:\WINDOWS\system32\MSJINT40.DLL
MD5: 06b8485fb1da9a552b10ab978cd1ac85  C:\WINDOWS\system32\msvcrt.dll
MD5: 290c1a30defc723bbe10910ac2d6f6d0  C:\WINDOWS\system32\mswsock.dll
MD5: afdc647d16b285b9ae6140335b3b3255  C:\WINDOWS\system32\mswstr10.dll
MD5: 81fa5bf5c6fb46e58fdd5ca43f5ecf92  C:\WINDOWS\system32\msxml3.dll
MD5: 46954876ed60fed39c10e527d56c8e19  C:\WINDOWS\system32\MTXCLU.DLL
MD5: 958c52ec3fc517775dcd90c94882d229  C:\WINDOWS\system32\NETAPI32.dll
MD5: dab13813b25b3d009b2ac1194cf5d0a2  C:\WINDOWS\system32\netlogon.dll
MD5: 7329d1aa81a3179a1f7f2bc52d5ca081  C:\WINDOWS\system32\netprovcredman.dll
MD5: 062f837c1fbdb6a0a75f82efc2ee8e74  C:\WINDOWS\System32\netshell.dll
MD5: 15ce4dbc22fab90b3ca5352af1fff81c  C:\WINDOWS\system32\ntdll.dll
MD5: 30fe5893927f94cbbc84c2bdd0765093  C:\WINDOWS\system32\NTDSAPI.dll
MD5: 7eadba6d371c60cca9e4db57c28c8045  C:\WINDOWS\system32\oakley.DLL
MD5: 9d57d0cc9a03a5cf796870a8fcb93f9b  C:\WINDOWS\system32\objsel.dll
MD5: 1d604a51408d039e5692160c2dc44ff7  C:\WINDOWS\system32\ODBC32.dll
MD5: e9aa48086206ad74748a072d0b717ff7  C:\WINDOWS\system32\odbccp32.dll
MD5: 5ce275cdc5ffb77b1ec29dbdfe4b6689  C:\WINDOWS\system32\odbcji32.dll
MD5: 1b05dcc75fbb903a17e3e0ddaea8d508  C:\WINDOWS\system32\odbcjt32.dll
MD5: 8d51fb47062f2a1a9efeccef338a4c46  C:\WINDOWS\system32\ole32.dll
MD5: 1b2be5777f69a71778f52ffee1c798d6  C:\WINDOWS\system32\OLEAUT32.dll
MD5: 054bd21220b8a99b7e8f32b2fbcbdfdb  C:\WINDOWS\system32\pdh.dll
MD5: 9c300a0ca0a6cbd50d22b3d725edea30  C:\WINDOWS\system32\psbase.dll
MD5: c50de6d0c04b230f185a13fde0f047fa  C:\WINDOWS\system32\pwdrvio.sys
MD5: cdc5704308222400ad606bcf87b006a5  C:\WINDOWS\system32\pwdspio.sys
MD5: 94e47c79c291fc9e4d60de142fde3ab7  C:\WINDOWS\System32\RASAPI32.dll
MD5: b8ae25c09b8c26ff72820430294e4ef6  C:\WINDOWS\system32\RASSAPI.dll
MD5: 9a96a012e0d484ae4fee9f5973515423  C:\WINDOWS\system32\RPCRT4.dll
MD5: 9222562d44021b988b9f9f62207fb6f2  c:\windows\system32\rpcss.dll
MD5: 72451fd61ddbb0a1fb071b7c3cde5594  C:\WINDOWS\system32\rsvpsp.dll
MD5: 6fd5eec3703d7770c9029e774acc2294  C:\WINDOWS\system32\schannel.dll
MD5: 7ba27a296ee84861bfe97b96874ccaa6  C:\WINDOWS\system32\scrnsave.scr
MD5: 94b26802af755849ab0c4359235e881d  C:\WINDOWS\system32\sendmail.dll
MD5: 020ceaaedc8eb655b6506b8c70d53bb6  C:\WINDOWS\system32\services.exe
MD5: ed0ce2deec594778004306e3fa8cac33  C:\WINDOWS\system32\SETUPAPI.dll
MD5: 74ea2b739e9597e3a742f0ee299c77f6  C:\WINDOWS\system32\shdocvw.dll
MD5: 1026e80450e2cf36a3d69c0ea319eb95  C:\WINDOWS\system32\SHELL32.dll
MD5: e5edbd51476db5001abf5c82ae5c3dd1  C:\WINDOWS\system32\shgina.dll
MD5: fe04792b53c9633ae1e6f86b2e9c1e5a  C:\WINDOWS\system32\ShimEng.dll
MD5: e2a710e33c19e5e9c1acbf5df4156109  C:\WINDOWS\system32\SHLWAPI.dll
MD5: 29b6a85a733abe65b371023f790b2599  C:\WINDOWS\system32\shmedia.dll
MD5: 888cd7b39c37e13a2419becfaaf0a28c  C:\WINDOWS\system32\SHSVCS.dll
MD5: 60784f891563fb1b767f70117fc2428f  C:\WINDOWS\system32\spoolsv.exe
MD5: 3caeae7608f1bd7ba873a3b02895b106  C:\WINDOWS\system32\sti.dll
MD5: a3336ebd2527f6eb214f4593dcf67f6c  C:\WINDOWS\system32\SXS.DLL
MD5: d0049860b63dd87a73a5d165c829c65f  C:\WINDOWS\system32\t2embed.dll
MD5: e2b32b10acc5d97623275aafb67e5f03  C:\WINDOWS\System32\tapisrv.dll
MD5: 37981a741ad7b04258e87129ffe79ab9  c:\windows\system32\termsrv.dll
MD5: 88cd5f15a63f359327682413d6c21c49  C:\WINDOWS\system32\urlmon.dll
MD5: 3de22354c3609b3c3e5dc2c19c5e0693  C:\WINDOWS\system32\USER32.dll
MD5: a93aee1928a9d7ce3e16d24ec7380f89  c:\windows\system32\userinit.exe
MD5: 9e03dc5ab51cfd0190541ce2038d819d  C:\WINDOWS\system32\USP10.dll
MD5: 88f5be9ae5b87b82e83718f3e425e82d  C:\WINDOWS\system32\uxtheme.dll
MD5: 9f8a0d0cbb2fa265a754516128c00e22  C:\WINDOWS\system32\w32time.dll
MD5: 600519339671dcfa3dd20216a19817bb  C:\WINDOWS\system32\wbem\FastProx.dll
MD5: c7000f2db2a5515c64c257478769a481  C:\WINDOWS\system32\wbem\unsecapp.exe
MD5: 960f6d3cd9a1ba6435d7aadd102b297f  C:\WINDOWS\system32\wbem\wmiprov.dll
MD5: a688715ee6d068140180bd16b9a95150  C:\WINDOWS\system32\wbem\wmiprvsd.dll
MD5: bf67ac2c1f41be892b98e9b8e91c0cb8  C:\WINDOWS\system32\wiashext.dll
MD5: 86085d457c37d9991f756143188b2291  c:\windows\system32\WINHTTP.dll
MD5: 509cf67ae762a38e23a5455a0053853c  C:\WINDOWS\system32\WININET.dll
MD5: 5dfcba4e70da51cf67022f7c207feaa8  C:\WINDOWS\system32\winlogon.exe
MD5: d72b9ec3337b247a666f098f3d6b43de  C:\WINDOWS\System32\winrnr.dll
MD5: 3c733abe4f13206414f670f86c5f79d8  C:\WINDOWS\system32\winsrv.dll
MD5: 3df48b4e91f361ed22abeb3dde366e30  C:\WINDOWS\system32\WINTRUST.dll
MD5: d7950574b006ee16a262259f0ae8d86d  C:\WINDOWS\system32\wlanapi.dll
MD5: c83b3140192abe779d94e0c933601c75  C:\WINDOWS\system32\WLDAP32.dll
MD5: 2cc34e8bb667eef78899546e12649196  C:\WINDOWS\system32\WlNotify.dll
MD5: ec4857574f466cb8e8d7af92d7830a56  C:\WINDOWS\system32\wmpshell.dll
MD5: 81d2a27c916c7830743e4afa454099f7  C:\WINDOWS\system32\wpdshext.dll
MD5: aae1a6ffba2b0436e91795120f48c461  c:\windows\system32\wuauserv.dll
MD5: ff53377df21a723403c28825977212c5  C:\WINDOWS\system32\wzcdlg.dll
MD5: 349b8d2bb755e8c3b0e3e82a87663e55  c:\windows\system32\wzcsvc.dll
MD5: 16403217ab6fc5c30c14c6b12098ad4b  C:\WINDOWS\system32\xpsp2res.dll
MD5: 9c817aa10d0d44e49faf57120c8b3e6f  C:\WINDOWS\VPro1000.exe
MD5: 1e61596140ec9cca62e3a7a6ab51159a  C:\WINDOWS\vsnpstd2.exe
MD5: 2dff4944ef909bae2c01a80618e60064  C:\WINDOWS\vspc1000.exe
MD5: 4928ab3a304ddf05c354de3807a4a66b  C:\WINDOWS\WinSxS\x86_Microsoft.VC80.MFC_1fc8b3b9a1e18e3b_8.0.50727.4053_x-ww_b77cec8e\MFC80.DLL
MD5: 736b12b725aeb2b07f0241a9f680cb10  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.6028_x-ww_61e65202\comctl32.dll
MD5: 33d9b7bb7ba323bafe489df033dac824  C:\WINDOWS\WinSxS\x86_Microsoft.Windows.GdiPlus_6595b64144ccf1df_1.0.6002.22509_x-ww_c7dad023\gdiplus.dll


Nici un fișier nu a fost uploadat.

Scanarea s-a încheiat - comunicarea a durat 0 sec
Trafic total - 0.01 MB trimiși, 0.98 KB primiți
S-au scanat 589 fișiere și module - 49 secunde

==============================================================================







ma gandesc sa fie vreun program "artizanal"  facut ..chiar nu inteleg cum de nu este detectat

Edited by chitziman, 30 October 2011 - 17:06.


#11
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
am setat la unul din directoare deny la stergere sa vedem...

#12
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
alta idee?

#13
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
a sters iar..dar doar la directorul fara protectie la cel la care am pus deny la delete...nimic

#14
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
aceeasi faza si in seara aceasta...laptopul neconectat la internet..chiar nu are nimeni nici o idee???

#15
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
vad ca nea caisa imi sterge fisierele cand are chef..conectat sau nu la net...am mai incercat ceva.am sters userul curent si am instalat altu..in continuare absolut nici o idee

#16
BlueStrut

BlueStrut

    Member

  • Grup: Members
  • Posts: 809
  • Înscris: 27.11.2010
Verifica toate fisierele din %Windir%/Tasks si %Windir%/system32/Tasks .

#17
rootkit

rootkit

    Awake. Security DNA

  • Grup: Senior Members
  • Posts: 34,883
  • Înscris: 07.02.2007
Descarca Avira RescueCD de aici: http://dlpro.antivir...cd/rescuecd.iso, arde-l pe un CD si restarteaza PC-ul cu CD-ul in unitatea CD-ROM. Booteaza de pe el, configureaza-l sa deviruseze\redenumeasca infectiile gasite si apoi porneste-l.

http://forum.softped...howtopic=514404

#18
chitziman

chitziman

    Member

  • Grup: Members
  • Posts: 843
  • Înscris: 08.11.2004
am reinstalat ssistemu asera...am formatat doar partitia sistem.....o sa dau un scan si cu Avira...n-am mai apucat sa scanez si cu vipre.....

View PostBlueStrut, on 7th November 2011, 21:47, said:

Verifica toate fisierele din %Windir%/Tasks si %Windir%/system32/Tasks .


mda..ar fi si asta o idee multam..

Anunturi

Chirurgia endoscopică a hipofizei Chirurgia endoscopică a hipofizei

"Standardul de aur" în chirurgia hipofizară îl reprezintă endoscopia transnazală transsfenoidală.

Echipa NeuroHope este antrenată în unul din cele mai mari centre de chirurgie a hipofizei din Europa, Spitalul Foch din Paris, centrul în care a fost introdus pentru prima dată endoscopul în chirurgia transnazală a hipofizei, de către neurochirurgul francez Guiot. Pe lângă tumorile cu origine hipofizară, prin tehnicile endoscopice transnazale pot fi abordate numeroase alte patologii neurochirurgicale.

www.neurohope.ro

1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users

Forumul Softpedia foloseste "cookies" pentru a imbunatati experienta utilizatorilor Accept
Pentru detalii si optiuni legate de cookies si datele personale, consultati Politica de utilizare cookies si Politica de confidentialitate