Cant Boot to Vista easily (Laptop)

garfield619garfield619 Philippines New
edited December 2008 in Spyware & Virus Removal
Ok i would try to explain everything detailed as possible. My laptop acts weird, after loading at the vista load, instead of the welcome of vista appears a blue screen appears showing stuff, and then it restarts again. So i tried safe mode, cleaned everything, scan, and tried and then reboot. luckily i got it on, but after fixing few stuffs, i decided to reboot again, here goes the blue screen again. i tried to restart and restart it sometimes boots normal. i guess this is caused by a virus so pls HELP. BTW, here is my Hijackthis Log:



Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:01:30 AM, on 1/1/2006
Platform: Windows Vista (WinNT 6.00.1904)
MSIE: Internet Explorer v7.00 (7.00.6000.16711)
Boot mode: Normal

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\HP\QuickPlay\QPService.exe
C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Windows Sidebar\sidebar.exe
C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\HP Connections\6811507\Program\HP Connections.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
C:\Windows\System32\rundll32.exe
C:\Windows\ehome\ehmsas.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\PROGRA~1\HEWLET~1\Shared\HPQTOA~1.EXE
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqSTE08.exe
C:\Windows\system32\wuauclt.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\Windows\system32\SearchFilterHost.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn2\yt.dll
R3 - URLSearchHook: Endangered Species Toolbar - {e457aa2c-7419-4ad4-944e-709205ca3f3a} - C:\Program Files\Endangered_Species\tbEnda.dll
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn2\yt.dll
O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll
O2 - BHO: Yahoo! IE Suggest - {5A263CF7-56A6-4D68-A8CF-345BE45BC911} - C:\Program Files\Yahoo!\Search\YSearchSuggest.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Endangered Species Toolbar - {e457aa2c-7419-4ad4-944e-709205ca3f3a} - C:\Program Files\Endangered_Species\tbEnda.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Endangered Species Toolbar - {e457aa2c-7419-4ad4-944e-709205ca3f3a} - C:\Program Files\Endangered_Species\tbEnda.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "c:\Program Files\Norton Internet Security\osCheck.exe"
O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
O4 - HKCU\..\Run: [YSearchProtection] C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [Yahoo Messengger] C:\Windows\system32\scvhosts.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
O4 - Global Startup: HP Connections.lnk = C:\Program Files\HP Connections\6811507\Program\HP Connections.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
O9 - Extra button: HP Clipbook - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: HP Smart Select - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O15 - Trusted Zone: http://www.runescape.com
O15 - Trusted Zone: http://www.youtube.com
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.exe.imgfarm.com/images/nocache/funwebproducts/ei-3/SmileyCentralFWBInitialSetup1.0.1.0.cab
O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v5.cab
O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 12717 bytes

Comments

  • VekaVeka Finland
    edited November 2008
    Hi garfield. There are some malwares present.

    Please download SDFix and save it to your Desktop.

    Double click SDFix.exe and it will extract the files to %systemdrive%
    (Drive that contains the Windows Directory, typically C:\SDFix)

    Please then reboot your computer in Safe Mode by doing the following :
    • Restart your computer
    • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
    • Instead of Windows loading as normal, the Advanced Options Menu should appear;
    • Select the first option, to run Windows in Safe Mode, then press Enter.
    • Choose your usual account.
    Running SDFix in Safe Mode:
    • Open the extracted SDFix folder and double click RunThis.bat to start the script.
    • Type Y to begin the cleanup process.
    • It will remove any Trojan Services and Registry Entries that it finds then prompt you to press any key to Reboot.
    • Press any Key and it will restart the PC.
    • When the PC restarts the Fixtool will run again and complete the removal process then display Finished, press any key to end the script and load your desktop icons.
    • Once the desktop icons load the SDFix report will open on screen and also save into the SDFix folder as Report.txt
      (Report.txt will also be copied to Clipboard ready for posting back on the forum).
    • Finally paste the contents of the Report.txt back on the forum with a new HijackThis log.
  • garfield619garfield619 Philippines New
    edited November 2008
    i have to clear something, can i run SDfix with safe mode? or i need to make the laptop boot at normal mode?
  • VekaVeka Finland
    edited November 2008
    SDFix must be run in Safe Mode, yea.
  • garfield619garfield619 Philippines New
    edited November 2008
    Sorry for the late reply, ive been busy because of our intramurals XD.
    SD fix wont run. when i double click ReadThis the command prompt window opens and then quickly closes again. i think the malware is stopping it. what should i do?
  • VekaVeka Finland
    edited December 2008
    Please check your Prive Messages for furher instructions.
  • garfield619garfield619 Philippines New
    edited December 2008
    The file says "this tool is not compatible with your system. press any key to continue."
  • VekaVeka Finland
    edited December 2008
    Ah. Poor.

    Please download Malwarebytes' Anti-Malware to your desktop.
    • Double-click mbam-setup.exe and follow the prompts to install the program.
    • At the end, be sure a checkmark is placed next to:
      • Update Malwarebytes' Anti-Malware
      • Launch Malwarebytes' Anti-Malware
    • Then click Finish.
    • If an update is found, it will download and install the latest version.
    • Once the program has loaded, select Perform full scan, then click Scan.
    • When the scan is complete, click OK, then Show Results to view the results.
    • Be sure that everything is checked, and click Remove Selected.
    • When completed, a log will open in Notepad. please copy and paste the log into your next reply.
    • If you accidently close it, the log file is saved here and will be named like this:
      C:\Documents and Settings\<your username>\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt
    Reboot your computer after the scan.


    NOTE: If you're facing problems with downloading and/or updating MBAM, you can download the installer and the latest databese using these links:

    Download mbam-setup.exe (installer)

    http://www.mediafire.com/?0qzmilfwzdk

    Download mbam-rules.exe (database)

    http://www.mediafire.com/?ynz2rzmnnty

    Install MBAM and run mbam-rules.exe. Then follow the instructions above.
  • garfield619garfield619 Philippines New
    edited December 2008
    I tried to boot it normaly, still the same. the blue screen still appears.

    Malwarebytes' Anti-Malware 1.30
    Database version: 1306
    Windows 6.0.6000

    1/10/2006 9:46:49 PM
    mbam-log-2006-01-10 (21-46-49).txt

    Scan type: Full Scan (C:\|D:\|)
    Objects scanned: 226923
    Time elapsed: 47 minute(s), 35 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 25
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 7
    Files Infected: 2

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{9afb8248-617f-460d-9366-d71cdeda3179} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{a4730ebe-43a6-443e-9776-36915d323ad3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{3c471948-f874-49f5-b338-4f214a2ee0b1} (Trojan.HumourCanine) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Typelib\{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} (Adware.Agent) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} (Adware.Agent) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWay) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    C:\Program Files\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\FunWebProducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\FunWebProducts\ScreenSaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully.

    Files Infected:
    C:\Program Files\Conduit\Community Alerts\Alert.dll (Trojan.HumourCanine) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
  • VekaVeka Finland
    edited December 2008
    Are you able to run RSIT;
    • Please download Random's System Iformation Tool (RSIT) and save it to your desktop.
    • Double click on RSIT.exe to run RSIT.
    • Click Continue at the disclaimer screen.
    • Once it has finished, two logs will open. Please post the contents of both log.txt (will be maximized) and info.txt (will be minimized)
  • garfield619garfield619 Philippines New
    edited December 2008
    The Log.txt is too long. cant post it here. mind if i just send the file? so here is the info.txt


    info.txt logfile of random's system information tool 1.04 2006-01-14 00:07:41

    ======Uninstall list======

    -->"C:\Program Files\HP Games\Ancient Sudoku\Uninstall.exe"
    -->"C:\Program Files\HP Games\Bejeweled 2 Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Big Kahuna Reef\Uninstall.exe"
    -->"C:\Program Files\HP Games\Blackhawk Striker 2\Uninstall.exe"
    -->"C:\Program Files\HP Games\Blasterball 3\Uninstall.exe"
    -->"C:\Program Files\HP Games\Boggle Supreme\Uninstall.exe"
    -->"C:\Program Files\HP Games\Bookworm Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Chuzzle Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Crystal Maze\Uninstall.exe"
    -->"C:\Program Files\HP Games\Family Feud\Uninstall.exe"
    -->"C:\Program Files\HP Games\FATE\Uninstall.exe"
    -->"C:\Program Files\HP Games\Final Drive Nitro\Uninstall.exe"
    -->"C:\Program Files\HP Games\Flip Words\Uninstall.exe"
    -->"C:\Program Files\HP Games\Insaniquarium Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Jewel Quest\Uninstall.exe"
    -->"C:\Program Files\HP Games\Lemonade Tycoon 2\Uninstall.exe"
    -->"C:\Program Files\HP Games\My HP Game Console\Uninstall.exe"
    -->"C:\Program Files\HP Games\Otto\Uninstall.exe"
    -->"C:\Program Files\HP Games\Penguins!\Uninstall.exe"
    -->"C:\Program Files\HP Games\Poker Superstars 2\Uninstall.exe"
    -->"C:\Program Files\HP Games\Polar Bowler\Uninstall.exe"
    -->"C:\Program Files\HP Games\Polar Golfer\Uninstall.exe"
    -->"C:\Program Files\HP Games\Polar Tubing\Uninstall.exe"
    -->"C:\Program Files\HP Games\Puzzle Express\Uninstall.exe"
    -->"C:\Program Files\HP Games\SCRABBLE\Uninstall.exe"
    -->"C:\Program Files\HP Games\Slingo Deluxe\Uninstall.exe"
    -->"C:\Program Files\HP Games\Super Granny\Uninstall.exe"
    -->"C:\Program Files\HP Games\The Apprentice\Uninstall.exe"
    -->"C:\Program Files\HP Games\Tradewinds\Uninstall.exe"
    -->"C:\Program Files\HP Games\Word Symphony\Uninstall.exe"
    -->"C:\Program Files\HP Games\Zuma Deluxe\Uninstall.exe"
    -->C:\PROGRA~1\Yahoo!\Common\UNYT_W~1.EXE
    Activation Assistant for the 2007 Microsoft Office suites-->"C:\ProgramData\{623D32E9-0C62-4453-AD44-98B31F52A5E1}\Microsoft Office Activation Assistant.exe" REMOVE=TRUE MODIFY=FALSE
    Adobe Flash Player ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
    Adobe Reader 8-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A80000000002}
    Adobe Shockwave Player-->C:\Windows\System32\Macromed\SHOCKW~1\UNWISE.EXE C:\Windows\System32\Macromed\SHOCKW~1\Install.log
    AppCore-->MsiExec.exe /I{EFB5B3B5-A280-4E25-BE1C-634EEFE32C1B}
    Apple Mobile Device Support-->MsiExec.exe /I{44734179-8A79-4DEE-BB08-73037F065543}
    Apple Software Update-->MsiExec.exe /I{02DFF6B1-1654-411C-8D7B-FD6052EF016F}
    ASL_HS_Installer32-->MsiExec.exe /I{FAB0C302-CB18-4A7A-BA03-C3DC23101A68}
    AV-->MsiExec.exe /I{F4DB525F-A986-4249-B98B-42A8066251CA}
    Bonjour-->MsiExec.exe /I{47BF1BD6-DCAC-468F-A0AD-E5DECC2211C3}
    ccCommon-->MsiExec.exe /I{3CCAD2EF-CFF2-4637-82AA-AABF370282D3}
    CCleaner (remove only)-->"C:\Program Files\CCleaner\uninst.exe"
    Conexant HD Audio-->C:\Program Files\CONEXANT\CNXT_HDAUDIO\HUFSetup.EXE -U -IwisR30B7.inf
    DivX-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
    Endangered Species Toolbar-->C:\PROGRA~1\ENDANG~1\UNWISE.EXE C:\PROGRA~1\ENDANG~1\INSTALL.LOG
    Google Toolbar for Internet Explorer-->MsiExec.exe /I{DBEA1034-5882-4A88-8033-81C4EF0CFA29}
    Google Toolbar for Internet Explorer-->regsvr32 /u /s "c:\program files\google\googletoolbar1.dll"
    Hewlett-Packard Active Check for Health Check-->MsiExec.exe /X{254C37AA-6B72-4300-84F6-98A82419187E}
    Hewlett-Packard Asset Agent for Health Check-->MsiExec.exe /X{669D4A35-146B-4314-89F1-1AC3D7B88367}
    HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
    HP Active Support Library-->C:\Program Files\InstallShield Installation Information\{21E62565-8639-457C-B64C-A3FF0A8B4D80}\setup.exe -runfromtemp -l0x0409
    HP Connections (remove only)-->C:\Windows\HPCPCUninstall-6811507\HPBWSetup.exe -appid 6811507 -uninstall
    HP Customer Experience Enhancements-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AB5E289E-76BF-4251-9F3F-9B763F681AE0}\setup.exe" -l0x9 -removeonly
    HP Customer Participation Program 9.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\ExtCapUninstall\hpzscr01.exe -datfile hpqhsc01.dat
    HP Deskjet Printer Driver Software 9.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\{03E66394-42F0-4745-85F7-0A2F8F35C09F}\setup\hpzscr01.exe -datfile hphscr15.dat -showdisconnect -forcereboot
    HP Easy Setup - Core-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{F94234DB-FD06-42C3-B88D-6FC4DC9F988C}\setup.exe" -l0x9
    HP Easy Setup - Frontend-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{40F7AED3-0C7D-4582-99F6-484A515C73F2}\setup.exe" -l0x9 -removeonly
    HP Help and Support-->MsiExec.exe /I{E4DDBA93-769B-49D8-BA33-8814E45ED0C1}
    HP Imaging Device Functions 9.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\DeviceManagement\hpzscr01.exe -datfile hpqbud01.dat
    HP Pavilion Webcam Driver for Vista v061.001.00005-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5CA81D12-9EC2-4082-972B-43ECA63F41F2}\setup.exe" -l0x9 -removeonly
    HP Photosmart Essential 2.01-->C:\Program Files\Hewlett-Packard\Digital Imaging\PhotoSmartEssential\hpzscr01.exe -datfile hpqbud13.dat
    HP Product Detection-->MsiExec.exe /X{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}
    HP Quick Launch Buttons 6.10 B9-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{34D2AB40-150D-475D-AE32-BD23FB5EE355}\setup.exe" -l0x9 uninst
    HP QuickPlay 3.0-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{45D707E9-F3C4-11D9-A373-0050BAE317E1}\setup.exe" -uninstall
    HP Smart Web Printing-->MsiExec.exe /X{415CDA53-9100-476F-A7B2-476691E117C7}
    HP Solution Center 9.0-->C:\Program Files\Hewlett-Packard\Digital Imaging\eSupport\hpzscr01.exe -datfile hpqbud05.dat
    HP Total Care Advisor-->MsiExec.exe /X{A12A3DED-CCDA-4F29-A1BA-00F0C6521CD5}
    HP Update-->MsiExec.exe /X{7059BDA7-E1DB-442C-B7A1-6144596720A4}
    HP User Guide 0041-->MsiExec.exe /I{ABFBC596-7EB3-4E4D-A1A3-D2B6806EF1FE}
    HP Wireless Assistant-->MsiExec.exe /I{02F33FB0-F7D5-4C0A-B4AD-8CE5CE230BBE}
    HPNetworkAssistant-->MsiExec.exe /I{228C6B46-64E2-404E-898A-EF0830603EF4}
    HPSSupply-->MsiExec.exe /X{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}
    iTunes-->MsiExec.exe /I{80FD852F-5AAC-4129-B931-06AAFFA43138}
    Java(TM) SE Runtime Environment 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
    LiveUpdate 3.2 (Symantec Corporation)-->"C:\Program Files\Symantec\LiveUpdate\LSETUP.EXE" /U
    LiveUpdate Notice (Symantec Corporation)-->MsiExec.exe /X{DBA4DB9D-EE51-4944-A419-98AB1F1249C8}
    Malwarebytes' Anti-Malware-->"C:\Program Files\Malwarebytes' Anti-Malware\unins000.exe"
    Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
    Microsoft Office Home and Student 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall HOMESTUDENTR /dll OSETUP.DLL
    Microsoft Office Home and Student 2007-->MsiExec.exe /X{91120000-002F-0000-0000-0000000FF1CE}
    Microsoft Office OneNote MUI (English) 2007-->MsiExec.exe /X{90120000-00A1-0409-0000-0000000FF1CE}
    Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
    Microsoft Office Professional Edition 2003-->MsiExec.exe /I{90110409-6000-11D3-8CFE-0150048383C9}
    Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
    Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
    Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
    Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
    Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
    Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
    Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
    Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
    Microsoft Works-->MsiExec.exe /I{6D52C408-B09A-4520-9B18-475B81D393F1}
    MSN-->C:\Program Files\MSN\MsnInstaller\msniadm.exe /Action:ARP
    MSRedist-->MsiExec.exe /I{B7C61755-DB48-4003-948F-3D34DB8EAF69}
    MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
    MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
    MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
    muvee autoProducer 5.0-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{99C5770C-1C90-42E7-9B74-D47CFAF14621}\setup.exe" -l0x9
    My HP Games-->"C:\Program Files\HP Games\Uninstall.exe"
    Norton AntiVirus-->MsiExec.exe /X{830D8CBD-C668-49e2-A969-C2C2106332E0}
    Norton Confidential Browser Component-->MsiExec.exe /I{4843B611-8FCB-4428-8C23-31D0A5EAE164}
    Norton Confidential Web Protection Component-->MsiExec.exe /I{D353CC51-430D-4C6F-9B7E-52003DA1E05A}
    Norton Internet Security (Symantec Corporation)-->"C:\Program Files\Common Files\Symantec Shared\SymSetup\{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}_10_1_0_26\{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}.exe" /X
    Norton Internet Security-->MsiExec.exe /I{3672B097-EA69-4bfe-B92F-29AE6D9D2B34}
    Norton Internet Security-->MsiExec.exe /I{48185814-A224-447A-81DA-71BD20580E1B}
    Norton Internet Security-->MsiExec.exe /I{5AA2CD16-706F-41f3-87C5-2B5A031F2B3B}
    Norton Internet Security-->MsiExec.exe /I{E3EFA461-EB83-4C3B-9C47-2C1D58A01555}
    Norton Internet Security-->MsiExec.exe /I{E5EE9939-259F-4DE2-8023-5C49E16A4F43}
    Norton Protection Center-->MsiExec.exe /I{9A129ABC-A53A-4209-A21E-D5DEDFB7CCA8}
    NVIDIA Drivers-->C:\Windows\system32\NVUNINST.EXE UninstallGUI
    QuickTime-->MsiExec.exe /I{BFD96B89-B769-4CD6-B11E-E79FFD46F067}
    Roxio Creator Audio-->MsiExec.exe /I{83FFCFC7-88C6-41c6-8752-958A45325C82}
    Roxio Creator Basic v9-->MsiExec.exe /I{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}
    Roxio Creator Copy-->MsiExec.exe /I{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}
    Roxio Creator Data-->MsiExec.exe /I{0D397393-9B50-4c52-84D5-77E344289F87}
    Roxio Creator EasyArchive-->MsiExec.exe /I{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}
    Roxio Creator Tools-->MsiExec.exe /I{0394CDC8-FABD-4ed8-B104-03393876DFDF}
    Roxio Express Labeler 3-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
    Roxio MyDVD Basic v9-->MsiExec.exe /I{33C65B6A-5D73-4E3E-A1F9-127C27BD3F72}
    Screen Recorder Gold-->C:\PROGRA~1\SCREEN~1\UNWISE.EXE C:\PROGRA~1\SCREEN~1\INSTALL.LOG
    Soft Data Fax Modem with SmartCP-->C:\Program Files\CONEXANT\CNXT_MODEM_HDAUDIO_VEN_14F1&DEV_5045&SUBSYS_103C30B7\HXFSETUP.EXE -U -Iwis30B7z.inf
    Sonic Activation Module-->MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}
    SPBBC 32bit-->MsiExec.exe /I{77772678-817F-4401-9301-ED1D01A8DA56}
    Synaptics Pointing Device Driver-->rundll32.exe "C:\Program Files\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
    Virtools 3D Life Player-->C:\Program Files\Virtools\3D Life Player\WebplayerConfig.exe -u
    WinRAR archiver-->C:\Program Files\WinRAR\uninstall.exe
    Yahoo! Internet Mail-->C:\Windows\system32\regsvr32 /u /s C:\PROGRA~1\Yahoo!\Common\YMMAPI.dll
    Yahoo! Search Protection-->C:\PROGRA~1\Yahoo!\SEARCH~1\UNINST~1.EXE
    Yahoo! Toolbar-->C:\PROGRA~1\Yahoo!\Common\UNYT_W~1.EXE

    ======Security center information======

    AV: Norton Internet Security
    FW: Norton Internet Security
    AS: Windows Defender (disabled)
    AS: Norton Internet Security (disabled)

    ======Environment variables======

    "ComSpec"=%SystemRoot%\system32\cmd.exe
    "FP_NO_HOST_CHECK"=NO
    "OS"=Windows_NT
    "Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;C:\Program Files\QuickTime\QTSystem\
    "PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
    "PROCESSOR_ARCHITECTURE"=x86
    "TEMP"=%SystemRoot%\TEMP
    "TMP"=%SystemRoot%\TEMP
    "USERNAME"=SYSTEM
    "windir"=%SystemRoot%
    "PROCESSOR_LEVEL"=15
    "PROCESSOR_IDENTIFIER"=x86 Family 15 Model 72 Stepping 2, AuthenticAMD
    "PROCESSOR_REVISION"=4802
    "NUMBER_OF_PROCESSORS"=2
    "PLATFORM"=MCD
    "PCBRAND"=Pavilion
    "OnlineServices"=Online Services
    "RoxioCentral"=C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\
    "CLASSPATH"=.;C:\Program Files\Java\jre1.6.0\lib\ext\QTJava.zip
    "QTJAVA"=C:\Program Files\Java\jre1.6.0\lib\ext\QTJava.zip
    "SAFEBOOT_OPTION"=MINIMAL

    EOF
  • VekaVeka Finland
    edited December 2008
    Please attach the Log.txt file.
  • garfield619garfield619 Philippines New
    edited December 2008
    Lol sorry, im not too brainy enough to think that i could divide the log XD


    Logfile of random's system information tool 1.04 (written by random/random)
    Run by EMMA at 2006-01-14 00:07:26
    Microsoft® Windows Vista™ Home Premium
    System drive C: has 81 GB (75%) free of 108 GB
    Total RAM: 958 MB (66% free)

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 12:07:29 AM, on 1/14/2006
    Platform: Windows Vista (WinNT 6.00.1904)
    MSIE: Internet Explorer v7.00 (7.00.6000.16711)
    Boot mode: Safe mode

    Running processes:
    C:\Windows\Explorer.EXE
    C:\Windows\system32\wbem\unsecapp.exe
    C:\Users\EMMA\Desktop\RSIT.exe
    C:\Program Files\Trend Micro\HijackThis\EMMA.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaults/sp/msgr8/*http://www.yahoo.com
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn2\yt.dll
    R3 - URLSearchHook: Endangered Species Toolbar - {e457aa2c-7419-4ad4-944e-709205ca3f3a} - C:\Program Files\Endangered_Species\tbEnda.dll
    O1 - Hosts: ::1 localhost
    O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn2\yt.dll
    O2 - BHO: HP Print Clips - {053F9267-DC04-4294-A72C-58F732D338C0} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll
    O2 - BHO: Yahoo! IE Suggest - {5A263CF7-56A6-4D68-A8CF-345BE45BC911} - C:\Program Files\Yahoo!\Search\YSearchSuggest.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O2 - BHO: Endangered Species Toolbar - {e457aa2c-7419-4ad4-944e-709205ca3f3a} - C:\Program Files\Endangered_Species\tbEnda.dll
    O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn2\yt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: Endangered Species Toolbar - {e457aa2c-7419-4ad4-944e-709205ca3f3a} - C:\Program Files\Endangered_Species\tbEnda.dll
    O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [ccApp] "c:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [osCheck] "c:\Program Files\Norton Internet Security\osCheck.exe"
    O4 - HKLM\..\Run: [QPService] "C:\Program Files\HP\QuickPlay\QPService.exe"
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
    O4 - HKLM\..\Run: [HP Health Check Scheduler] C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe
    O4 - HKLM\..\Run: [WAWifiMessage] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe
    O4 - HKLM\..\Run: [hpWirelessAssistant] %ProgramFiles%\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
    O4 - HKLM\..\Run: [NvSvc] RUNDLL32.EXE C:\Windows\system32\nvsvc.dll,nvsvcStart
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
    O4 - HKLM\..\RunOnce: [Launcher] %WINDIR%\SMINST\launcher.exe
    O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
    O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
    O4 - HKCU\..\Run: [YSearchProtection] C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
    O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
    O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
    O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
    O4 - Global Startup: Adobe Reader Synchronizer.lnk = C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
    O4 - Global Startup: HP Connections.lnk = C:\Program Files\HP Connections\6811507\Program\HP Connections.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~3\Office12\ONBttnIE.dll
    O9 - Extra button: HP Clipbook - {58ECB495-38F0-49cb-A538-10282ABF65E7} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
    O9 - Extra button: HP Smart Select - {700259D7-1666-479a-93B1-3250410481E8} - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_extensions.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\Office12\REFIEBAR.DLL
    O13 - Gopher Prefix:
    O15 - Trusted Zone: http://www.runescape.com
    O15 - Trusted Zone: http://www.youtube.com
    O16 - DPF: {69EF49E5-FE46-4B92-B5FA-2193AB7A6B8A} (GameLauncher Control) - http://www.acclaim.com/cabs/acclaim_v5.cab
    O16 - DPF: {6B75345B-AA36-438A-BBE6-4078B4C6984D} (HpProductDetection Class) - http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection.cab
    O23 - Service: AddFiltr - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe
    O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Autorun CDROM Monitor - Unknown owner - C:\Windows\system32\SupportAppXL\cdrom_mon.exe
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: CyberLink Background Capture Service (CBCS) (CLCapSvc) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe
    O23 - Service: CyberLink Task Scheduler (CTS) (CLSched) - Unknown owner - C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe
    O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: COM Host (comHost) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
    O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: HP Health Check Service - Hewlett-Packard - C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe
    O23 - Service: hpqwmiex - Hewlett-Packard Development Company, L.P. - C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - c:\Program Files\Norton Internet Security\isPwdSvc.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
    O23 - Service: LiveUpdate Notice Service - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe
    O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
    O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
    O23 - Service: Symantec Core LC - Unknown owner - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
    O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

    --
    End of file - 11569 bytes

    ======Scheduled tasks folder======

    C:\Windows\tasks\Norton Internet Security - Run Full System Scan - EMMA.job
    C:\Windows\tasks\User_Feed_Synchronization-{23D37031-CD29-4CEA-AD6F-FE7948361D79}.job

    ======Registry dump======

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}]
    &Yahoo! Toolbar Helper - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn2\yt.dll [2008-05-16 817936]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{053F9267-DC04-4294-A72C-58F732D338C0}]
    HP Print Clips - C:\Program Files\Hewlett-Packard\Smart Web Printing\hpswp_framework.dll [2007-03-02 177768]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}]
    Adobe PDF Reader Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2006-10-23 62080]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1E8A6170-7264-4D0F-BEAE-D42A53123C75}]
    c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll [2006-10-24 96984]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5A263CF7-56A6-4D68-A8CF-345BE45BC911}]
    Yahoo! IE Suggest - C:\Program Files\Yahoo!\Search\YSearchSuggest.dll [2007-02-24 140840]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
    SSVHelper Class - C:\Program Files\Java\jre1.6.0\bin\ssv.dll [2006-12-19 501384]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AA58ED58-01DD-4d91-8333-CF10577473F7}]
    Google Toolbar Helper - c:\program files\google\googletoolbar1.dll [2007-09-29 2403392]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e457aa2c-7419-4ad4-944e-709205ca3f3a}]
    Endangered Species Toolbar - C:\Program Files\Endangered_Species\tbEnda.dll [2008-05-21 1526296]

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
    {90222687-F593-4738-B738-FBEE9C7B26DF} - Show Norton Toolbar - c:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll [2006-10-24 565960]
    {EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn2\yt.dll [2008-05-16 817936]
    {2318C2B1-4965-11d4-9B18-009027A5CD4F} - &Google - c:\program files\google\googletoolbar1.dll [2007-09-29 2403392]
    {e457aa2c-7419-4ad4-944e-709205ca3f3a} - Endangered Species Toolbar - C:\Program Files\Endangered_Species\tbEnda.dll [2008-05-21 1526296]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
    "Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2007-07-04 1006264]
    "SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2006-11-15 815104]
    "ccApp"=c:\Program Files\Common Files\Symantec Shared\ccApp.exe [2006-10-25 107112]
    "osCheck"=c:\Program Files\Norton Internet Security\osCheck.exe [2006-10-27 22696]
    "QPService"=C:\Program Files\HP\QuickPlay\QPService.exe [2006-11-25 167936]
    "HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2007-05-08 54840]
    "QlbCtrl"=C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [2006-11-07 159744]
    "HP Health Check Scheduler"=C:\Program Files\Hewlett-Packard\HP Health Check\HPHC_Scheduler.exe [2006-11-29 46704]
    "WAWifiMessage"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\WiFiMsg.exe [2006-10-19 317152]
    "hpWirelessAssistant"=C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWAMain.exe [2006-10-19 472800]
    "SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0\bin\jusched.exe [2006-12-19 77824]
    "NvSvc"=C:\Windows\system32\nvsvc.dll [2006-12-07 90191]
    "NvCplDaemon"=C:\Windows\system32\NvCpl.dll [2006-12-07 7766016]
    "NvMediaCenter"=C:\Windows\system32\NvMcTray.dll [2006-12-07 81920]
    "QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-01-31 385024]
    "iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-02-19 267048]
    "Symantec PIF AlertEng"=C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
    "Launcher"=C:\Windows\SMINST\launcher.exe [2006-11-08 44128]
    "Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2008-10-22 399504]

    [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
    "Sidebar"=C:\Program Files\Windows Sidebar\sidebar.exe [2008-01-12 1232896]
    "YSearchProtection"=C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe [2007-06-08 224248]
    "ehTray.exe"=C:\Windows\ehome\ehTray.exe [2006-11-02 125440]
    "WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2006-11-02 201728]

    C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
    Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe
    Adobe Reader Synchronizer.lnk - C:\Program Files\Adobe\Reader 8.0\Reader\AdobeCollabSync.exe
    HP Connections.lnk - C:\Program Files\HP Connections\6811507\Program\HP Connections.exe
    HP Digital Imaging Monitor.lnk - C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpqtra08.exe

    [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
    "dontdisplaylastusername"=0
    "legalnoticecaption"=
    "legalnoticetext"=
    "shutdownwithoutlogon"=1
    "undockwithoutlogon"=1

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
    "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe"="C:\Program Files\EarthLink TotalAccess\TaskPanl.exe:*:Enabled:Earthlink"

    [HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{69414e93-7a19-11da-abb0-001b2434e4c3}]
    shell\AutoRun\command - F:\AutoRun.exe

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{809e4e0b-52c4-11dc-a512-001b2434e4c3}]
    shell\Auto\command - F:\infrom.exe
    shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\infrom.exe

    [HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{d85bfed4-263d-11dc-a502-001b2434e4c3}]
    shell\Auto\command - F:\infrom.exe
    shell\AutoRun\command - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL F:\infrom.exe


    ======File associations======

    .bat - edit - %SystemRoot%\System32\NOTEPAD.EXE %1"
    .ini - open - %SystemRoot%\System32\NOTEPAD.EXE %1"
    .scr - open -
    .scr - install -
    .scr - config -

    ======List of files/folders created in the last 1 months======

    2008-09-12 19:33:30 ----A---- C:\Windows\system32\gameux.dll
    2008-09-12 19:33:28 ----A---- C:\Windows\system32\Apphlpdm.dll
    2008-09-12 19:33:25 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
    2008-09-12 19:29:42 ----A---- C:\Windows\system32\wmpeffects.dll
    2008-08-28 10:45:37 ----A---- C:\Windows\system32\wups2.dll
    2008-08-28 10:45:37 ----A---- C:\Windows\system32\wucltux.dll
    2008-08-28 10:45:37 ----A---- C:\Windows\system32\wuauclt.exe
    2008-08-28 10:45:36 ----A---- C:\Windows\system32\wuaueng.dll
    2008-08-28 10:45:19 ----A---- C:\Windows\system32\wups.dll
    2008-08-28 10:45:19 ----A---- C:\Windows\system32\wudriver.dll
    2008-08-28 10:45:19 ----A---- C:\Windows\system32\wuapi.dll
    2008-08-28 10:45:13 ----A---- C:\Windows\system32\wuwebv.dll
    2008-08-28 10:45:13 ----A---- C:\Windows\system32\wuapp.exe
    2008-08-25 12:40:12 ----A---- C:\Windows\system32\tzres.dll
    2008-08-24 18:52:22 ----A---- C:\Windows\system32\polstore.dll
    2008-08-24 18:52:22 ----A---- C:\Windows\system32\IPSECSVC.DLL
    2008-08-24 18:52:21 ----A---- C:\Windows\system32\winipsec.dll
    2008-08-24 18:52:21 ----A---- C:\Windows\system32\FwRemoteSvr.dll
    2008-08-24 18:51:39 ----A---- C:\Windows\system32\mshtml.dll
    2008-08-24 18:51:37 ----A---- C:\Windows\system32\ieframe.dll
    2008-08-24 18:51:36 ----A---- C:\Windows\system32\wininet.dll
    2008-08-24 18:51:36 ----A---- C:\Windows\system32\urlmon.dll
    2008-08-24 18:51:35 ----A---- C:\Windows\system32\mshtmled.dll
    2008-08-24 18:51:34 ----A---- C:\Windows\system32\mstime.dll
    2008-08-24 18:51:34 ----A---- C:\Windows\system32\ieui.dll
    2008-08-24 18:51:34 ----A---- C:\Windows\system32\ieapfltr.dll
    2008-08-24 18:51:34 ----A---- C:\Windows\system32\ie4uinit.exe
    2008-08-24 18:51:34 ----A---- C:\Windows\system32\advpack.dll
    2008-08-24 18:51:33 ----A---- C:\Windows\system32\pngfilt.dll
    2008-08-24 18:51:33 ----A---- C:\Windows\system32\jsproxy.dll
    2008-08-24 18:51:33 ----A---- C:\Windows\system32\ieUnatt.exe
    2008-08-24 18:51:33 ----A---- C:\Windows\system32\iesetup.dll
    2008-08-24 18:51:33 ----A---- C:\Windows\system32\iernonce.dll
    2008-08-24 18:51:33 ----A---- C:\Windows\system32\icardie.dll
    2008-08-24 18:51:33 ----A---- C:\Windows\system32\dxtrans.dll
    2008-08-24 18:51:33 ----A---- C:\Windows\system32\dxtmsft.dll
    2008-08-24 18:49:23 ----A---- C:\Windows\system32\es.dll
    2008-08-24 18:43:52 ----A---- C:\Windows\system32\inetcomm.dll
    2008-08-24 18:43:51 ----A---- C:\Windows\system32\INETRES.dll
    2008-08-09 12:13:38 ----A---- C:\Windows\wininit.ini
    2008-08-04 18:09:52 ----D---- C:\ProgramData\Pure Networks
    2008-07-20 11:43:12 ----RA---- C:\Windows\system32\MSVCP50.DLL
    2008-07-20 11:39:44 ----A---- C:\Windows\IsUninst.exe
    2008-07-19 15:03:25 ----D---- C:\Program Files\Screen Recorder Gold
    2008-07-13 10:40:47 ----A---- C:\Windows\system32\NlsLexicons0007.dll
    2008-07-13 10:40:44 ----A---- C:\Windows\system32\NlsLexicons0009.dll
    2008-07-13 10:40:13 ----A---- C:\Windows\system32\NlsData0009.dll
    2008-07-13 10:40:12 ----A---- C:\Windows\system32\NlsData000c.dll
    2008-07-13 10:40:12 ----A---- C:\Windows\system32\NaturalLanguage6.dll
    2008-07-13 10:40:10 ----A---- C:\Windows\system32\NlsData000a.dll
    2008-07-13 10:40:08 ----A---- C:\Windows\system32\NlsData0027.dll
    2008-07-13 10:40:08 ----A---- C:\Windows\system32\NlsData000d.dll
    2008-07-13 10:40:08 ----A---- C:\Windows\system32\NlsData0001.dll
    2008-07-13 10:40:07 ----A---- C:\Windows\system32\NlsData0011.dll
    2008-07-13 10:40:06 ----A---- C:\Windows\system32\NlsData0007.dll
    2008-07-13 10:40:05 ----A---- C:\Windows\system32\NlsData003e.dll
    2008-07-13 10:40:05 ----A---- C:\Windows\system32\NlsData002a.dll
    2008-07-13 10:40:05 ----A---- C:\Windows\system32\NlsData0021.dll
    2008-07-13 10:40:04 ----A---- C:\Windows\system32\NlsData0022.dll
    2008-07-13 10:40:04 ----A---- C:\Windows\system32\NlsData0018.dll
    2008-07-13 10:40:04 ----A---- C:\Windows\system32\NlsData0002.dll
    2008-07-13 10:40:03 ----A---- C:\Windows\system32\NlsData0024.dll
    2008-07-13 10:40:03 ----A---- C:\Windows\system32\NlsData001a.dll
    2008-07-13 10:40:03 ----A---- C:\Windows\system32\NlsData000f.dll
    2008-07-13 10:40:02 ----A---- C:\Windows\system32\NlsData0019.dll
    2008-07-13 10:40:00 ----A---- C:\Windows\system32\NlsData001d.dll
    2008-07-13 10:40:00 ----A---- C:\Windows\system32\NlsData0010.dll
    2008-07-13 10:39:59 ----A---- C:\Windows\system32\NlsData0816.dll
    2008-07-13 10:39:58 ----A---- C:\Windows\system32\NlsData0013.dll
    2008-07-13 10:39:57 ----A---- C:\Windows\system32\NlsData0049.dll
    2008-07-13 10:39:57 ----A---- C:\Windows\system32\NlsData0039.dll
    2008-07-13 10:39:56 ----A---- C:\Windows\system32\NlsData0020.dll
    2008-07-13 10:39:54 ----A---- C:\Windows\system32\NlsData0416.dll
    2008-07-13 10:39:53 ----A---- C:\Windows\system32\NlsData0414.dll
    2008-07-13 10:39:52 ----A---- C:\Windows\system32\NlsData0047.dll
    2008-07-13 10:39:51 ----A---- C:\Windows\system32\NlsData081a.dll
    2008-07-13 10:39:51 ----A---- C:\Windows\system32\NlsData004c.dll
    2008-07-13 10:39:51 ----A---- C:\Windows\system32\NlsData004a.dll
    2008-07-13 10:39:50 ----A---- C:\Windows\system32\NlsData0c1a.dll
    2008-07-13 10:39:49 ----A---- C:\Windows\system32\NlsData001b.dll
    2008-07-13 10:39:48 ----A---- C:\Windows\system32\NlsData0046.dll
    2008-07-13 10:39:48 ----A---- C:\Windows\system32\NlsData0045.dll
    2008-07-13 10:39:48 ----A---- C:\Windows\system32\NlsData0000.dll
    2008-07-13 10:39:47 ----A---- C:\Windows\system32\NlsData004e.dll
    2008-07-13 10:39:47 ----A---- C:\Windows\system32\NlsData004b.dll
    2008-07-13 10:39:47 ----A---- C:\Windows\system32\NlsData0026.dll
    2008-07-13 10:39:47 ----A---- C:\Windows\system32\NlsData0003.dll
    2008-07-13 10:39:18 ----A---- C:\Windows\system32\NlsModels0011.dll
    2008-07-13 10:39:17 ----A---- C:\Windows\system32\NlsLexicons0c1a.dll
    2008-07-13 10:39:15 ----A---- C:\Windows\system32\NlsLexicons081a.dll
    2008-07-13 10:39:14 ----A---- C:\Windows\system32\NlsLexicons0816.dll
    2008-07-13 10:39:13 ----A---- C:\Windows\system32\NlsLexicons0416.dll
    2008-07-13 10:39:12 ----A---- C:\Windows\system32\NlsLexicons0414.dll
    2008-07-13 10:39:11 ----A---- C:\Windows\system32\NlsLexicons004c.dll
    2008-07-13 10:39:10 ----A---- C:\Windows\system32\NlsLexicons004a.dll
    2008-07-13 10:39:09 ----A---- C:\Windows\system32\NlsLexicons003e.dll
    2008-07-13 10:39:07 ----A---- C:\Windows\system32\NlsLexicons0027.dll
    2008-07-13 10:39:06 ----A---- C:\Windows\system32\NlsLexicons0026.dll
    2008-07-13 10:39:04 ----A---- C:\Windows\system32\NlsLexicons0024.dll
    2008-07-13 10:39:03 ----A---- C:\Windows\system32\NlsLexicons0022.dll
    2008-07-13 10:39:03 ----A---- C:\Windows\system32\NlsLexicons0021.dll
    2008-07-13 10:39:02 ----A---- C:\Windows\system32\NlsLexicons001d.dll
    2008-07-13 10:39:00 ----A---- C:\Windows\system32\NlsLexicons001b.dll
    2008-07-13 10:38:59 ----A---- C:\Windows\system32\NlsLexicons001a.dll
    2008-07-13 10:38:58 ----A---- C:\Windows\system32\NlsLexicons0019.dll
    2008-07-13 10:38:57 ----A---- C:\Windows\system32\NlsLexicons0018.dll
    2008-07-13 10:38:56 ----A---- C:\Windows\system32\NlsLexicons0013.dll
    2008-07-13 10:38:55 ----A---- C:\Windows\system32\NlsLexicons0011.dll
    2008-07-13 10:38:54 ----A---- C:\Windows\system32\NlsLexicons0010.dll
    2008-07-13 10:38:53 ----A---- C:\Windows\system32\NlsLexicons000f.dll
    2008-07-13 10:38:52 ----A---- C:\Windows\system32\NlsLexicons000c.dll
    2008-07-13 10:38:50 ----A---- C:\Windows\system32\NlsLexicons000a.dll
    2008-07-13 10:38:48 ----A---- C:\Windows\system32\NlsLexicons0002.dll
    2008-07-13 10:38:44 ----A---- C:\Windows\system32\NlsLexicons0001.dll
    2008-07-13 10:38:42 ----A---- C:\Windows\system32\NlsLexicons004e.dll
    2008-07-13 10:38:41 ----A---- C:\Windows\system32\NlsLexicons004b.dll
    2008-07-13 10:38:41 ----A---- C:\Windows\system32\NlsLexicons0049.dll
    2008-07-13 10:38:40 ----A---- C:\Windows\system32\NlsLexicons0047.dll
    2008-07-13 10:38:40 ----A---- C:\Windows\system32\NlsLexicons0046.dll
    2008-07-13 10:38:39 ----A---- C:\Windows\system32\NlsLexicons0045.dll
    2008-07-13 10:38:38 ----A---- C:\Windows\system32\NlsLexicons0039.dll
    2008-07-13 10:38:38 ----A---- C:\Windows\system32\NlsLexicons0020.dll
    2008-07-13 10:38:37 ----A---- C:\Windows\system32\NlsLexicons002a.dll
    2008-07-13 10:38:37 ----A---- C:\Windows\system32\NlsLexicons000d.dll
    2008-07-13 10:38:37 ----A---- C:\Windows\system32\NlsLexicons0003.dll
    2008-07-09 17:48:14 ----A---- C:\Windows\system32\shell32.dll
    2008-06-29 10:35:13 ----D---- C:\Program Files\Apple Software Update
    2008-06-14 18:28:18 ----A---- C:\Windows\system32\EncDec.dll
    2008-06-14 18:28:17 ----A---- C:\Windows\system32\psisdecd.dll
    2008-06-14 18:28:15 ----A---- C:\Windows\system32\mcmde.dll
    2008-06-11 18:26:54 ----A---- C:\Windows\system32\wshrm.dll
    2008-06-11 18:26:50 ----A---- C:\Windows\system32\quartz.dll
    2008-05-27 17:22:55 ----D---- C:\Program Files\Conduit
    2008-05-27 17:22:53 ----D---- C:\Program Files\Endangered_Species
    2008-05-26 14:18:26 ----D---- C:\Program Files\Common Files\SWF Studio
    2008-05-26 14:18:12 ----A---- C:\Windows\ka.ini
    2008-05-26 14:15:48 ----D---- C:\Program Files\Common Files\Knowledge Adventure
    2008-05-26 14:15:05 ----D---- C:\ProgramData\Knowledge Adventure
    2008-05-22 15:23:35 ----A---- C:\Windows\unvise32.exe
    2008-04-10 17:11:35 ----A---- C:\Windows\system32\ci.dll
    2008-04-10 17:11:34 ----A---- C:\Windows\system32\winload.exe
    2008-04-10 17:11:34 ----A---- C:\Windows\system32\kd1394.dll
    2008-04-10 17:11:33 ----A---- C:\Windows\system32\srcore.dll
    2008-04-10 17:11:32 ----A---- C:\Windows\system32\rstrui.exe
    2008-04-10 17:11:31 ----A---- C:\Windows\system32\srclient.dll
    2008-04-10 17:11:30 ----A---- C:\Windows\system32\srdelayed.exe
    2008-04-10 17:11:30 ----A---- C:\Windows\system32\kbd106n.dll
    2008-04-10 17:11:30 ----A---- C:\Windows\system32\f3ahvoas.dll
    2008-04-10 17:09:48 ----A---- C:\Windows\system32\gdi32.dll
    2008-04-10 17:06:58 ----A---- C:\Windows\system32\dnsrslvr.dll
    2008-04-10 17:06:58 ----A---- C:\Windows\system32\dnscacheugc.exe
    2008-04-10 17:06:58 ----A---- C:\Windows\system32\dnsapi.dll
    2008-04-08 19:08:20 ----D---- C:\Users\EMMA\AppData\Roaming\Template
    2008-03-08 15:47:26 ----D---- C:\Windows\.jagex_cache_32
    2008-03-08 15:47:09 ----D---- C:\Windows\Sun
    2008-02-29 17:27:37 ----D---- C:\My Downloads
    2008-02-28 14:52:50 ----D---- C:\Users\EMMA\AppData\Roaming\Apple Computer
    2008-02-28 14:52:22 ----D---- C:\Program Files\iPod
    2008-02-28 14:52:15 ----D---- C:\Program Files\iTunes
    2008-02-28 14:51:42 ----D---- C:\Program Files\Bonjour
    2008-02-28 14:50:31 ----D---- C:\Program Files\QuickTime
    2008-02-28 14:50:29 ----D---- C:\ProgramData\Apple Computer
    2008-02-28 14:48:51 ----D---- C:\Program Files\Common Files\Apple
    2008-02-28 14:48:48 ----D---- C:\ProgramData\Apple
    2008-02-27 18:29:02 ----RA---- C:\Windows\system32\vp6vfw.dll
    2008-02-16 16:27:36 ----D---- C:\hp d2360 driver
    2008-02-16 16:25:12 ----D---- C:\ProgramData\WEBREG
    2008-02-16 16:20:04 ----D---- C:\Users\EMMA\AppData\Roaming\HPAppData
    2008-02-16 16:19:50 ----D---- C:\ProgramData\HPSSUPPLY
    2008-02-16 16:18:11 ----D---- C:\ProgramData\HP Product Assistant
    2008-02-16 16:15:32 ----D---- C:\Program Files\Common Files\HP
    2008-02-16 16:14:07 ----N---- C:\Windows\system32\hpzids01.dll
    2008-02-16 16:13:58 ----N---- C:\Windows\system32\hpzll5ha.dll
    2008-02-16 16:12:39 ----HD---- C:\Config.Msi
    2008-02-14 13:13:39 ----A---- C:\Windows\system32\WebClnt.dll
    2008-02-14 13:11:14 ----A---- C:\Windows\system32\wpd_ci.dll
    2008-02-14 13:11:13 ----A---- C:\Windows\system32\drvinst.exe
    2008-02-14 13:11:13 ----A---- C:\Windows\system32\cfgmgr32.dll
    2008-02-14 13:11:12 ----A---- C:\Windows\system32\umpnpmgr.dll
    2008-02-14 13:11:11 ----A---- C:\Windows\system32\oleaut32.dll
    2008-02-14 13:11:11 ----A---- C:\Windows\system32\dpx.dll
    2008-02-14 13:11:10 ----A---- C:\Windows\system32\setupapi.dll
    2008-02-14 13:11:08 ----A---- C:\Windows\system32\batt.dll
    2008-02-14 13:11:07 ----A---- C:\Windows\system32\dispci.dll
    2008-02-14 13:11:05 ----A---- C:\Windows\system32\winresume.exe
    2008-02-14 13:11:04 ----A---- C:\Windows\system32\nshhttp.dll
    2008-02-14 13:11:03 ----A---- C:\Windows\system32\unlodctr.exe
    2008-02-14 13:11:03 ----A---- C:\Windows\system32\prflbmsg.dll
    2008-02-14 13:11:03 ----A---- C:\Windows\system32\lodctr.exe
    2008-02-14 13:11:03 ----A---- C:\Windows\system32\loadperf.dll
    2008-02-14 13:11:01 ----A---- C:\Windows\system32\schedsvc.dll
    2008-02-14 13:05:36 ----A---- C:\Windows\system32\ntkrnlpa.exe
    2008-02-14 13:05:35 ----A---- C:\Windows\system32\ntoskrnl.exe
    2008-02-14 13:04:41 ----A---- C:\Windows\system32\netcfg.exe
    2008-02-14 13:04:40 ----A---- C:\Windows\system32\tcpipcfg.dll
    2008-02-14 13:04:40 ----A---- C:\Windows\system32\netiougc.exe
    2008-02-01 17:09:40 ----D---- C:\Program Files\Common Files\INCA Shared
    2008-01-12 15:56:01 ----A---- C:\Windows\system32\sbunattend.exe
    2008-01-05 17:40:47 ----AD---- C:\ProgramData\TEMP
    2007-12-26 14:48:02 ----A---- C:\Windows\GunzLauncher.INI
    2007-12-26 14:46:39 ----HD---- C:\Users\EMMA\AppData\Roaming\ijjigame
    2007-12-26 14:37:28 ----D---- C:\ijji
    2007-12-21 12:32:53 ----A---- C:\Windows\system32\WMASF.DLL
    2007-12-21 12:32:53 ----A---- C:\Windows\system32\LAPRXY.DLL
    2007-12-21 12:32:53 ----A---- C:\Windows\system32\asferror.dll
    2007-11-22 02:23:54 ----N---- C:\Windows\system32\frapsvid.dll
    2007-11-18 18:44:05 ----D---- C:\Users\EMMA\AppData\Roaming\WinRAR
    2007-11-18 18:41:07 ----D---- C:\Program Files\WinRAR
    2007-11-17 17:18:39 ----A---- C:\Windows\system32\wtsapi32.dll
    2007-11-17 17:18:36 ----A---- C:\Windows\explorer.exe
    2007-11-17 17:18:35 ----A---- C:\Windows\system32\sysmain.dll
    2007-11-17 17:18:31 ----A---- C:\Windows\system32\wlansvc.dll
    2007-11-17 17:18:31 ----A---- C:\Windows\system32\wlanmsm.dll
    2007-11-17 17:18:31 ----A---- C:\Windows\system32\wlanhlp.dll
    2007-11-17 17:18:31 ----A---- C:\Windows\system32\wlanapi.dll
    2007-11-17 17:18:30 ----A---- C:\Windows\system32\wlansec.dll
    2007-11-17 17:14:57 ----A---- C:\Windows\system32\hcrstco.dll
    2007-11-17 17:14:57 ----A---- C:\Windows\system32\hccoin.dll
    2007-11-15 16:31:25 ----N---- C:\Windows\system32\xvidvfw.dll
    2007-11-15 16:31:24 ----N---- C:\Windows\system32\xvidcore.dll
    2007-11-15 16:31:22 ----N---- C:\Windows\system32\dtu100.dll
    2007-11-15 16:31:22 ----N---- C:\Windows\system32\dpv11.dll
    2007-11-15 16:31:22 ----N---- C:\Windows\system32\dpuGUI11.dll
    2007-11-15 16:31:22 ----N---- C:\Windows\system32\dpu11.dll
    2007-11-15 16:31:22 ----N---- C:\Windows\system32\dpl100.dll
    2007-11-15 16:31:21 ----N---- C:\Windows\system32\ssldivx.dll
    2007-11-15 16:31:21 ----N---- C:\Windows\system32\qt-dx331.dll
    2007-11-15 16:31:20 ----N---- C:\Windows\system32\libdivx.dll
    2007-11-11 18:16:08 ----D---- C:\Users\EMMA\AppData\Roaming\Download Manager
    2007-10-12 13:19:19 ----A---- C:\Windows\system32\wmploc.DLL
    2007-10-12 13:19:16 ----A---- C:\Windows\system32\wmp.dll
    2007-10-12 13:19:15 ----A---- C:\Windows\system32\spwmp.dll
    2007-10-12 13:19:14 ----A---- C:\Windows\system32\dxmasf.dll
    2007-10-12 13:19:12 ----A---- C:\Windows\system32\MediaMetadataHandler.dll
    2007-10-12 13:14:05 ----A---- C:\Windows\system32\rpcrt4.dll
    2007-09-29 15:57:12 ----D---- C:\Users\EMMA\AppData\Roaming\Google
    2007-09-29 14:26:31 ----D---- C:\ProgramData\Google
    2007-09-29 14:26:20 ----D---- C:\Program Files\Google
    2007-09-27 18:53:44 ----A---- C:\Windows\ODBC.INI
    2007-09-27 18:53:41 ----N---- C:\Windows\system32\mdimon.dll
    2007-09-27 18:50:59 ----D---- C:\Program Files\Microsoft ActiveSync
    2007-09-07 16:13:07 ----A---- C:\Windows\system32\riched32.dll
    2007-09-07 16:13:07 ----A---- C:\Windows\system32\riched20.dll
    2007-09-07 16:13:01 ----A---- C:\Windows\system32\rasser.dll
    2007-09-07 16:13:00 ----A---- C:\Windows\system32\rasmxs.dll
    2007-09-07 16:13:00 ----A---- C:\Windows\system32\rasdiag.dll
    2007-09-07 16:13:00 ----A---- C:\Windows\system32\rascfg.dll
    2007-09-07 16:12:59 ----A---- C:\Windows\system32\netcfgx.dll
    2007-09-07 16:12:58 ----A---- C:\Windows\system32\msftedit.dll
    2007-09-07 16:12:57 ----A---- C:\Windows\system32\icsunattend.exe
    2007-09-07 16:12:56 ----A---- C:\Windows\system32\ipnathlp.dll
    2007-09-07 16:12:55 ----A---- C:\Windows\system32\wshqos.dll
  • garfield619garfield619 Philippines New
    edited December 2008
    2007-09-07 16:12:55 ----A---- C:\Windows\system32\traffic.dll
    2007-09-07 16:12:55 ----A---- C:\Windows\system32\pacerprf.dll
    2007-09-07 16:12:54 ----A---- C:\Windows\system32\localspl.dll
    2007-09-07 16:12:53 ----A---- C:\Windows\system32\dps.dll
    2007-09-07 16:12:53 ----A---- C:\Windows\system32\cdd.dll
    2007-09-03 17:05:36 ----A---- C:\Windows\system32\schannel.dll
    2007-09-03 17:05:36 ----A---- C:\Windows\system32\ntprint.exe
    2007-09-03 17:05:36 ----A---- C:\Windows\system32\ntprint.dll
    2007-09-03 17:05:34 ----A---- C:\Windows\system32\dhcpcsvc6.dll
    2007-09-03 17:05:34 ----A---- C:\Windows\system32\dhcpcsvc.dll
    2007-09-03 17:05:34 ----A---- C:\Windows\system32\dhcpcmonitor.dll
    2007-09-03 17:05:33 ----A---- C:\Windows\system32\authui.dll
    2007-09-03 17:05:32 ----A---- C:\Windows\system32\WindowsCodecs.dll
    2007-09-03 17:05:31 ----A---- C:\Windows\system32\msvidc32.dll
    2007-09-03 17:05:31 ----A---- C:\Windows\system32\msvfw32.dll
    2007-09-03 17:05:31 ----A---- C:\Windows\system32\msrle32.dll
    2007-09-03 17:05:31 ----A---- C:\Windows\system32\mciavi32.dll
    2007-09-03 17:05:31 ----A---- C:\Windows\system32\avifil32.dll
    2007-09-03 17:05:31 ----A---- C:\Windows\system32\avicap32.dll
    2007-09-03 17:05:30 ----A---- C:\Windows\system32\sendmail.dll
    2007-09-03 17:04:51 ----A---- C:\Windows\system32\qmgr.dll
    2007-08-25 16:51:42 ----D---- C:\ProgramData\NVIDIA
    2007-08-25 16:32:22 ----D---- C:\Windows\Downloaded Installations
    2007-08-24 18:08:24 ----N---- C:\Windows\system32\msxml4.dll
    2007-08-17 11:31:35 ----A---- C:\Windows\system32\msxml3.dll
    2007-08-17 11:31:34 ----A---- C:\Windows\system32\msxml3r.dll
    2007-08-17 11:29:25 ----A---- C:\Windows\system32\msxml6.dll
    2007-08-17 11:29:24 ----A---- C:\Windows\system32\msxml6r.dll
    2007-08-13 17:24:38 ----D---- C:\Program Files\Virtools
    2007-08-03 16:35:00 ----D---- C:\Windows\Minidump
    2007-07-28 13:46:57 ----D---- C:\Users\EMMA\AppData\Roaming\GTek
    2007-07-24 15:17:08 ----N---- C:\Windows\system32\dns-sd.exe
    2007-07-24 15:17:08 ----N---- C:\Windows\system32\dnssd.dll
    2007-07-13 19:27:18 ----A---- C:\Windows\system32\FirewallAPI.dll
    2007-07-13 19:27:17 ----A---- C:\Windows\system32\wfapigp.dll
    2007-07-13 19:27:17 ----A---- C:\Windows\system32\MPSSVC.dll
    2007-07-13 19:27:17 ----A---- C:\Windows\system32\icfupgd.dll
    2007-07-13 19:27:17 ----A---- C:\Windows\system32\cmifw.dll
    2007-07-13 19:27:16 ----A---- C:\Windows\system32\iphlpsvc.dll
    2007-07-13 19:25:10 ----A---- C:\Windows\system32\SLC.dll
    2007-07-13 19:25:10 ----A---- C:\Windows\system32\mcbuilder.exe
    2007-07-13 19:25:09 ----A---- C:\Windows\system32\slwmi.dll
    2007-07-13 19:25:09 ----A---- C:\Windows\system32\SLCommDlg.dll
    2007-07-13 19:25:08 ----A---- C:\Windows\system32\SLUINotify.dll
    2007-07-13 19:25:08 ----A---- C:\Windows\system32\SLUI.exe
    2007-07-13 19:25:08 ----A---- C:\Windows\system32\SLsvc.exe
    2007-07-13 19:25:08 ----A---- C:\Windows\system32\SLLUA.exe
    2007-07-13 19:25:07 ----A---- C:\Windows\system32\slcinst.dll
    2007-07-07 21:43:32 ----D---- C:\Users\EMMA\AppData\Roaming\Yahoo!
    2007-07-06 14:41:49 ----D---- C:\ProgramData\Yahoo!
    2007-07-06 14:40:05 ----A---- C:\YServer.txt
    2007-07-04 18:15:23 ----A---- C:\Windows\system32\msoert2.dll
    2007-07-04 18:15:23 ----A---- C:\Windows\system32\msoeacct.dll
    2007-07-04 18:15:23 ----A---- C:\Windows\system32\ACCTRES.dll
    2007-07-04 18:14:52 ----A---- C:\Windows\system32\winsrv.dll
    2007-07-04 18:14:52 ----A---- C:\Windows\system32\csrsrv.dll
    2007-07-04 18:14:24 ----A---- C:\Windows\system32\msscp.dll
    2007-07-04 18:14:17 ----A---- C:\Windows\system32\DWWIN.EXE
    2007-07-04 18:11:49 ----D---- C:\Program Files\MSXML 4.0
    2007-07-04 18:10:53 ----A---- C:\Windows\system32\wmi.dll
    2007-07-04 18:10:53 ----A---- C:\Windows\system32\imagehlp.dll
    2007-07-04 18:10:43 ----A---- C:\Windows\system32\crypt32.dll
    2007-07-04 18:10:17 ----A---- C:\Windows\system32\user32.dll
    2007-07-03 19:47:34 ----D---- C:\ProgramData\Yahoo! Companion
    2007-07-02 19:16:05 ----D---- C:\Users\EMMA\AppData\Roaming\WildTangent
    2007-06-29 20:43:15 ----D---- C:\Users\EMMA\AppData\Roaming\MSNInstaller
    2007-06-28 16:23:53 ----D---- C:\Windows\SoftwareDistribution
    2007-06-28 16:17:49 ----D---- C:\Windows\Prefetch
    2007-06-28 10:10:18 ----D---- C:\Users\EMMA\AppData\Roaming\Adobe
    2007-06-28 10:09:36 ----D---- C:\Users\EMMA\AppData\Roaming\Identities
    2007-06-28 10:02:39 ----D---- C:\Users\EMMA\AppData\Roaming\Macromedia
    2007-06-28 10:02:13 ----D---- C:\Users\EMMA\AppData\Roaming\CyberLink
    2007-06-28 10:02:12 ----D---- C:\Users\EMMA\AppData\Roaming\Hewlett-Packard
    2007-06-28 10:00:20 ----D---- C:\Users\EMMA\AppData\Roaming\HP
    2007-06-28 10:00:20 ----D---- C:\ProgramData\HP
    2007-06-28 09:59:58 ----SD---- C:\Users\EMMA\AppData\Roaming\Microsoft
    2007-06-28 09:59:58 ----D---- C:\Users\EMMA\AppData\Roaming\Media Center Programs
    2007-04-23 20:11:18 ----N---- C:\Windows\system32\AbaleZip.dll
    2007-03-11 21:32:42 ----N---- C:\Windows\system32\gdiplus.dll
    2006-12-19 04:19:07 ----SHD---- C:\System Volume Information
    2006-12-19 04:12:44 ----N---- C:\Windows\system32\javaws.exe
    2006-12-19 04:12:44 ----N---- C:\Windows\system32\javaw.exe
    2006-12-19 04:12:44 ----N---- C:\Windows\system32\java.exe
    2006-12-19 04:12:23 ----D---- C:\Program Files\Java
    2006-12-19 04:12:23 ----D---- C:\Program Files\Common Files\Java
    2006-12-19 04:07:57 ----D---- C:\ProgramData\Hewlett-Packard
    2006-12-19 04:02:01 ----N---- C:\Windows\system32\ShellvRTF64.dll
    2006-12-19 04:02:01 ----N---- C:\Windows\system32\ShellvRTF.dll
    2006-12-19 04:01:59 ----D---- C:\Windows\SMINST
    2006-12-19 04:01:44 ----D---- C:\Program Files\HPQ
    2006-12-19 04:01:37 ----D---- C:\Program Files\Common Files\LightScribe
    2006-12-19 04:00:40 ----N---- C:\Windows\system32\BttnCmns_64.dll
    2006-12-19 04:00:40 ----N---- C:\Windows\system32\BttnCmns.dll
    2006-12-19 04:00:40 ----N---- C:\Windows\system32\BttnCmn.dll
    2006-12-19 03:57:57 ----N---- C:\Windows\system32\pxhpinst.exe
    2006-12-19 03:57:50 ----D---- C:\Program Files\DivX
    2006-12-19 03:57:21 ----D---- C:\Program Files\muvee Technologies
    2006-12-19 03:57:20 ----D---- C:\Program Files\Common Files\muvee Technologies
    2006-12-19 03:55:36 ----D---- C:\Program Files\Yahoo!
    2006-12-19 03:53:29 ----D---- C:\Program Files\earthlink totalaccess
    2006-12-19 03:53:11 ----D---- C:\Program Files\Online Services
    2006-12-19 03:52:41 ----D---- C:\Windows\HPCPCUninstall-6811507
    2006-12-19 03:52:25 ----RA---- C:\Windows\HPCPCUninstaller-6.3.2.139-6811507.exe
    2006-12-19 03:52:24 ----D---- C:\Program Files\HP Connections
    2006-12-19 03:47:55 ----D---- C:\ProgramData\WildTangent
    2006-12-19 03:42:53 ----D---- C:\Program Files\HP Games
    2006-12-19 03:42:17 ----D---- C:\ProgramData\Adobe
    2006-12-19 03:42:11 ----D---- C:\Program Files\Common Files\Adobe
    2006-12-19 03:42:11 ----D---- C:\Program Files\Adobe
    2006-12-19 03:41:43 ----D---- C:\ProgramData\CyberLink
    2006-12-19 03:41:05 ----N---- C:\Windows\system32\msxml4a.dll
    2006-12-19 03:40:30 ----D---- C:\Program Files\HP
    2006-12-19 03:39:50 ----D---- C:\ProgramData\{623D32E9-0C62-4453-AD44-98B31F52A5E1}
    2006-12-19 03:39:39 ----D---- C:\Program Files\Activation Assistant for the 2007 Microsoft Office suites
    2006-12-19 03:38:36 ----A---- C:\Windows\system32\msonpmon.dll
    2006-12-19 03:37:41 ----D---- C:\Program Files\Common Files\DESIGNER
    2006-12-19 03:37:23 ----D---- C:\Windows\PCHEALTH
    2006-12-19 03:37:23 ----D---- C:\Program Files\Microsoft.NET
    2006-12-19 03:35:22 ----D---- C:\ProgramData\Microsoft Help
    2006-12-19 03:34:23 ----RHD---- C:\MSOCache
    2006-12-19 03:33:26 ----D---- C:\Program Files\Microsoft Office
    2006-12-19 03:32:48 ----D---- C:\Program Files\Microsoft Works
    2006-12-19 03:32:00 ----D---- C:\Windows\system32\Macromed
    2006-12-19 03:31:07 ----A---- C:\Windows\CSUP.txt
    2006-12-19 03:23:37 ----D---- C:\Program Files\Norton Internet Security
    2006-12-19 03:21:46 ----N---- C:\Windows\system32\capicom.dll
    2006-12-19 03:21:41 ----D---- C:\Program Files\Symantec
    2006-12-19 03:21:33 ----D---- C:\ProgramData\Symantec
    2006-12-19 03:21:18 ----D---- C:\Program Files\Common Files\Symantec Shared
    2006-12-19 03:21:01 ----D---- C:\Program Files\Common Files\SureThing Shared
    2006-12-19 03:17:51 ----D---- C:\ProgramData\Sonic
    2006-12-19 03:16:36 ----D---- C:\ProgramData\Roxio
    2006-12-19 03:16:35 ----D---- C:\Program Files\Common Files\Sonic Shared
    2006-12-19 03:16:35 ----D---- C:\Program Files\Common Files\Roxio Shared
    2006-12-19 03:13:42 ----D---- C:\Program Files\Roxio
    2006-12-19 03:13:40 ----SHD---- C:\Windows\Installer
    2006-12-19 03:11:00 ----D---- C:\ProgramData\InstallShield
    2006-12-19 03:10:22 ----HD---- C:\Program Files\InstallShield Installation Information
    2006-12-19 03:10:09 ----D---- C:\Program Files\Common Files\InstallShield
    2006-12-19 03:07:09 ----D---- C:\Program Files\Hewlett-Packard
    2006-12-19 03:03:29 ----SHD---- C:\$RECYCLE.BIN
    2006-12-19 02:57:19 ----D---- C:\Program Files\Synaptics
    2006-12-19 02:55:03 ----D---- C:\Program Files\CONEXANT
    2006-12-19 02:40:29 ----D---- C:\Windows\panther
    2006-12-19 02:40:29 ----D---- C:\Windows\OEMCert
    2006-12-19 02:39:58 ----HD---- C:\HP
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvwssr.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvwss.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvvitvsr.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvvitvs.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvuninst.exe
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvudisp.exe
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvsvc.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvoglv32.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvmoblsr.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvmobls.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvmctray.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvmccssr.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvmccss.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvmccsrs.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvmccs.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvgamesr.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvgames.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvexpbar.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvdispsr.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvdisps.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvd3dum.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvcpluir.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvcplui.exe
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvcpl.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvcolor.exe
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\nvapi.dll
    2006-12-07 12:25:00 ----N---- C:\Windows\system32\dpinst.exe
    2006-11-29 15:32:42 ----N---- C:\Windows\system32\px.ini
    2006-11-19 03:32:18 ----N---- C:\Windows\system32\UCI32U14.dll
    2006-11-19 03:32:16 ----N---- C:\Windows\system32\CnxtDSP.dll
    2006-11-15 13:21:22 ----N---- C:\Windows\system32\SynTPCo4.dll
    2006-11-15 12:41:10 ----N---- C:\Windows\system32\SynTPAPI.dll
    2006-11-15 12:40:46 ----N---- C:\Windows\system32\SynCtrl.dll
    2006-11-15 12:40:16 ----N---- C:\Windows\system32\SynCOM.dll
    2006-11-10 05:04:04 ----D---- C:\SwSetup
    2006-11-09 21:04:16 ----D---- C:\Windows\Temp
    2006-11-09 20:50:41 ----D---- C:\Windows\Debug
    2006-11-09 20:48:06 ----SHD---- C:\boot
    2006-11-02 21:02:04 ----SHD---- C:\ProgramData\Templates
    2006-11-02 21:02:03 ----SHD---- C:\ProgramData\Start Menu
    2006-11-02 21:02:03 ----SHD---- C:\ProgramData\Favorites
    2006-11-02 21:02:03 ----SHD---- C:\ProgramData\Documents
    2006-11-02 21:02:03 ----SHD---- C:\ProgramData\Desktop
    2006-11-02 21:02:03 ----SHD---- C:\ProgramData\Application Data
    2006-11-02 21:02:03 ----SHD---- C:\Documents and Settings
    2006-11-02 21:01:55 ----HD---- C:\Program Files\Uninstall Information
    2006-11-02 20:56:07 ----N---- C:\Windows\system32\desktop.ini
    2006-11-02 20:50:50 ----ASH---- C:\Program Files\desktop.ini
    2006-11-02 20:47:56 ----D---- C:\Windows\Setup
    2006-11-02 20:47:52 ----D---- C:\Windows\ServiceProfiles
    2006-11-02 20:47:46 ----SD---- C:\Windows\system32\Microsoft
    2006-11-02 20:42:32 ----D---- C:\Windows\WindowsMobile
    2006-11-02 20:42:32 ----D---- C:\Windows\system32\winrm
    2006-11-02 20:42:32 ----D---- C:\Windows\system32\slmgr
    2006-11-02 20:42:32 ----D---- C:\Windows\system32\en
    2006-11-02 20:42:32 ----D---- C:\Windows\system32\Branding
    2006-11-02 20:42:32 ----D---- C:\Windows\system32\0409
    2006-11-02 20:42:32 ----D---- C:\Windows\en-US
    2006-11-02 20:42:31 ----D---- C:\Windows\system32\WCN
    2006-11-02 20:42:31 ----D---- C:\Windows\system32\Printing_Admin_Scripts
    2006-11-02 20:37:35 ----D---- C:\Windows\twain_32
    2006-11-02 20:37:35 ----D---- C:\Windows\system32\XPSViewer
    2006-11-02 20:37:35 ----D---- C:\Windows\system32\restore
    2006-11-02 20:37:35 ----D---- C:\Windows\ShellNew
    2006-11-02 20:37:35 ----D---- C:\Windows\Performance
    2006-11-02 20:37:35 ----D---- C:\Windows\ehome
    2006-11-02 20:37:35 ----D---- C:\Windows\DigitalLocker
    2006-11-02 20:37:34 ----D---- C:\Program Files\Windows Sidebar
    2006-11-02 20:37:34 ----D---- C:\Program Files\Windows Photo Gallery
    2006-11-02 20:37:34 ----D---- C:\Program Files\Windows Media Player
    2006-11-02 20:37:34 ----D---- C:\Program Files\Windows Journal
    2006-11-02 20:37:34 ----D---- C:\Program Files\Windows Defender
    2006-11-02 20:37:34 ----D---- C:\Program Files\Windows Collaboration
    2006-11-02 20:37:34 ----D---- C:\Program Files\Windows Calendar
    2006-11-02 20:37:34 ----D---- C:\Program Files\Reference Assemblies
    2006-11-02 20:37:34 ----D---- C:\Program Files\MSN
    2006-11-02 20:37:34 ----D---- C:\Program Files\MSBuild
    2006-11-02 20:37:34 ----D---- C:\Program Files\Movie Maker
    2006-11-02 20:37:34 ----D---- C:\Program Files\Microsoft Games
    2006-11-02 20:36:31 ----A---- C:\Windows\system32\DFDWiz.exe
    2006-11-02 20:36:31 ----A---- C:\Windows\system32\dfdts.dll
    2006-11-02 20:36:31 ----A---- C:\Windows\system32\brcplsdw.dll
    2006-11-02 20:36:31 ----A---- C:\Windows\system32\brcpl.dll
    2006-11-02 20:36:25 ----A---- C:\Windows\system32\msrdc.dll
    2006-11-02 20:36:25 ----A---- C:\Windows\system32\dfsrres.dll
    2006-11-02 20:36:25 ----A---- C:\Windows\system32\dfsrperf.dll
    2006-11-02 20:36:25 ----A---- C:\Windows\system32\dfsr.exe
    2006-11-02 20:36:18 ----A---- C:\Windows\system32\wpnpinst.exe
    2006-11-02 20:36:18 ----A---- C:\Windows\system32\uDWM.dll
    2006-11-02 20:36:18 ----A---- C:\Windows\system32\photowiz.dll
    2006-11-02 20:36:18 ----A---- C:\Windows\system32\inetppui.dll
    2006-11-02 20:36:18 ----A---- C:\Windows\system32\inetpp.dll
    2006-11-02 20:36:17 ----A---- C:\Windows\system32\srwmi.dll
    2006-11-02 20:36:16 ----A---- C:\Windows\system32\sxproxy.dll
    2006-11-02 20:36:16 ----A---- C:\Windows\system32\srrstr.dll
    2006-11-02 20:36:16 ----A---- C:\Windows\system32\spp.dll
    2006-11-02 20:36:16 ----A---- C:\Windows\system32\sdshext.dll
    2006-11-02 20:36:16 ----A---- C:\Windows\system32\sdrsvc.dll
    2006-11-02 20:36:16 ----A---- C:\Windows\system32\sdengin2.dll
    2006-11-02 20:36:16 ----A---- C:\Windows\system32\sdclt.exe
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\wmpmde.dll
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\WindowsAnytimeUpgradeCPL.dll
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\WindowsAnytimeUpgrade.exe
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\PresentationSettings.exe
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\NetProjW.dll
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\NetProj.exe
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\CRPPresentation.dll
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\AuxiliaryDisplayServices.dll
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\AuxiliaryDisplayDriverLib.dll
    2006-11-02 20:36:04 ----A---- C:\Windows\system32\AuxiliaryDisplayCpl.dll
    2006-11-02 20:36:03 ----A---- C:\Windows\system32\mblctr.exe
    2006-11-02 20:36:03 ----A---- C:\Windows\system32\infocardapi.dll
    2006-11-02 20:36:03 ----A---- C:\Windows\system32\HotStartUserAgent.dll
    2006-11-02 20:36:02 ----A---- C:\Windows\system32\icardres.dll
    2006-11-02 20:36:02 ----A---- C:\Windows\system32\icardagt.exe
    2006-11-02 20:36:01 ----A---- C:\Windows\system32\PresentationNative_v0300.dll
    2006-11-02 20:36:01 ----A---- C:\Windows\system32\PresentationHostProxy.dll
    2006-11-02 20:36:01 ----A---- C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
    2006-11-02 20:36:00 ----A---- C:\Windows\system32\PresentationHost.exe
    2006-11-02 20:36:00 ----A---- C:\Windows\system32\MSAC3ENC.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\WMVXENCD.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\WMVSENCD.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\WMVSDECD.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\WMVENCOD.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\WMVDECOD.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\WMSPDMOE.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\WMADMOE.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\WMADMOD.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\PortableDeviceTypes.dll
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\PortableDeviceClassExtension.dll
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\PortableDeviceApi.dll
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\MSMPEG2VDEC.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\MSMPEG2ENC.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\MSMPEG2ADEC.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\MPG4DECD.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\MP4SDECD.DLL
    2006-11-02 20:35:59 ----A---- C:\Windows\system32\MP43DECD.DLL
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\wpdwcn.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\WPDSp.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\WPDShServiceObj.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\WPDShextAutoplay.exe
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\wpdshext.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\wpdbusenum.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\wmdrmsdk.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\wmdmps.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\wmdmlog.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\PortableDeviceWMDRM.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\PortableDeviceWiaCompat.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\mswmdm.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\msnetobj.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\drmv2clt.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\drmmgrtn.dll
    2006-11-02 20:35:58 ----A---- C:\Windows\system32\blackbox.dll
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\WMVCORE.DLL
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\WMNetMgr.dll
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\wmidx.dll
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\wmdrmnet.dll
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\wmdrmdev.dll
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\mfplat.dll
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\logagent.exe
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\cewmdm.dll
    2006-11-02 20:35:57 ----A---- C:\Windows\system32\audiodev.dll
    2006-11-02 20:35:54 ----A---- C:\Windows\system32\WMPEncEn.dll
    2006-11-02 20:35:54 ----A---- C:\Windows\system32\wmerror.dll
    2006-11-02 20:35:54 ----A---- C:\Windows\system32\unregmp2.exe
    2006-11-02 20:35:52 ----A---- C:\Windows\system32\wmpsrcwp.dll
    2006-11-02 20:35:52 ----A---- C:\Windows\system32\wmpshell.dll
    2006-11-02 20:35:52 ----A---- C:\Windows\system32\wmpps.dll
    2006-11-02 20:35:52 ----A---- C:\Windows\system32\wmpdxm.dll
    2006-11-02 20:35:52 ----A---- C:\Windows\system32\wmpcm.dll
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\wmvdspa.dll
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\VIDRESZR.DLL
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\rrinstaller.exe
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\RESAMPLEDMO.DLL
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\MP3DMOD.DLL
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\MFWMAAEC.DLL
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\mfvdsp.dll
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\mfps.dll
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\mfpmp.exe
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\mferror.dll
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\mf.dll
    2006-11-02 20:35:51 ----A---- C:\Windows\system32\COLORCNV.DLL
    2006-11-02 20:35:48 ----A---- C:\Windows\system32\jnwmon.dll
    2006-11-02 20:35:47 ----A---- C:\Windows\system32\StikyNot.exe
    2006-11-02 20:35:47 ----A---- C:\Windows\system32\SnippingTool.exe
    2006-11-02 20:35:39 ----A---- C:\Windows\system32\p2pnetsh.dll
    2006-11-02 20:35:39 ----A---- C:\Windows\system32\P2PGraph.dll
    2006-11-02 20:35:39 ----A---- C:\Windows\system32\p2pcollab.dll
    2006-11-02 20:35:38 ----A---- C:\Windows\system32\pnrpperf.dll
    2006-11-02 20:35:38 ----A---- C:\Windows\system32\pnrpnsp.dll
    2006-11-02 20:35:38 ----A---- C:\Windows\system32\p2psvc.dll
    2006-11-02 20:35:38 ----A---- C:\Windows\system32\p2phost.exe
    2006-11-02 20:35:38 ----A---- C:\Windows\system32\P2P.dll
    2006-11-02 20:35:36 ----A---- C:\Windows\system32\CardGames.dll
    2006-11-02 20:35:35 ----A---- C:\Windows\system32\wpcumi.exe
    2006-11-02 20:35:35 ----A---- C:\Windows\system32\wpcsvc.dll
    2006-11-02 20:35:35 ----A---- C:\Windows\system32\wpcao.dll
    2006-11-02 20:35:34 ----A---- C:\Windows\system32\wpclsp.dll
    2006-11-02 20:35:34 ----A---- C:\Windows\system32\wpcer.exe
    2006-11-02 20:35:34 ----A---- C:\Windows\system32\wpccpl.dll
    2006-11-02 20:35:34 ----A---- C:\Windows\system32\Wpc.dll
    2006-11-02 20:35:34 ----A---- C:\Windows\system32\msdri.dll
    2006-11-02 20:35:32 ----A---- C:\Windows\system32\sysprepMCE.dll
    2006-11-02 20:35:32 ----A---- C:\Windows\system32\Mcx2Svc.dll
    2006-11-02 20:35:25 ----A---- C:\Windows\system32\raserver.exe
    2006-11-02 20:35:24 ----A---- C:\Windows\system32\wisptis.exe
    2006-11-02 20:35:24 ----A---- C:\Windows\system32\TouchX.dll
    2006-11-02 20:35:24 ----A---- C:\Windows\system32\TabSvc.dll
    2006-11-02 20:35:24 ----A---- C:\Windows\system32\sdchange.exe
    2006-11-02 20:35:24 ----A---- C:\Windows\system32\racpldlg.dll
    2006-11-02 20:35:24 ----A---- C:\Windows\system32\msra.exe
    2006-11-02 20:35:10 ----A---- C:\Windows\system32\WavDest.dll
    2006-11-02 20:35:10 ----A---- C:\Windows\system32\SoundRecorder.exe
    2006-11-02 20:35:10 ----A---- C:\Windows\system32\rdrleakdiag.exe
    2006-11-02 20:35:10 ----A---- C:\Windows\system32\radarrs.dll
    2006-11-02 20:35:10 ----A---- C:\Windows\system32\radardt.dll
    2006-11-02 20:35:09 ----A---- C:\Windows\system32\wscsvc.dll
    2006-11-02 20:35:09 ----A---- C:\Windows\system32\wscapi.dll
    2006-11-02 20:35:09 ----A---- C:\Windows\system32\MigAutoPlay.exe
    2006-11-02 20:34:50 ----A---- C:\Windows\system32\oobefldr.dll
    2006-11-02 20:34:50 ----A---- C:\Windows\system32\moricons.dll
    2006-11-02 20:34:50 ----A---- C:\Windows\system32\getuname.dll
    2006-11-02 20:34:50 ----A---- C:\Windows\system32\charmap.exe
    2006-11-02 20:34:50 ----A---- C:\Windows\system32\calc.exe
    2006-11-02 20:34:50 ----A---- C:\Windows\system32\AltTab.dll
    2006-11-02 20:34:49 ----A---- C:\Windows\system32\OptionalFeatures.exe
    2006-11-02 20:34:49 ----A---- C:\Windows\system32\InkEd.dll
    2006-11-02 20:34:49 ----A---- C:\Windows\system32\icsfiltr.dll
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\tvratings.dll
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\syncui.dll
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\synceng.dll
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\SyncCenter.dll
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\sbeio.dll
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\sbe.dll
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\SampleRes.dll
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\mobsync.exe
    2006-11-02 20:34:48 ----A---- C:\Windows\system32\linkinfo.dll
    2006-11-02 20:34:47 ----A---- C:\Windows\system32\wsqmcons.exe
    2006-11-02 20:34:47 ----A---- C:\Windows\system32\wscntfy.dll
    2006-11-02 20:34:47 ----A---- C:\Windows\system32\MSVidCtl.dll
    2006-11-02 20:34:46 ----A---- C:\Windows\system32\SearchIndexer.exe
    2006-11-02 20:34:46 ----A---- C:\Windows\system32\msstrc.dll
    2006-11-02 20:34:46 ----A---- C:\Windows\system32\mssprxy.dll
    2006-11-02 20:34:46 ----A---- C:\Windows\system32\mssitlb.dll
    2006-11-02 20:34:45 ----A---- C:\Windows\system32\tquery.dll
    2006-11-02 20:34:44 ----A---- C:\Windows\system32\SearchFilterHost.exe
    2006-11-02 20:34:44 ----A---- C:\Windows\system32\msscntrs.dll
    2006-11-02 20:34:44 ----A---- C:\Windows\system32\msscb.dll
    2006-11-02 20:34:43 ----A---- C:\Windows\system32\SearchProtocolHost.exe
    2006-11-02 20:34:43 ----A---- C:\Windows\system32\mssrch.dll
    2006-11-02 20:34:43 ----A---- C:\Windows\system32\mssph.dll
    2006-11-02 20:34:42 ----A---- C:\Windows\system32\wsepno.dll
    2006-11-02 20:34:42 ----A---- C:\Windows\system32\propdefs.dll
    2006-11-02 20:34:42 ----A---- C:\Windows\system32\mssvp.dll
    2006-11-02 20:34:42 ----A---- C:\Windows\system32\mssphtb.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\twunk_32.exe
    2006-11-02 20:34:41 ----A---- C:\Windows\twunk_16.exe
    2006-11-02 20:34:41 ----A---- C:\Windows\twain_32.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\twain.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiavideo.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiatrace.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiashext.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiaservc.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiascanprofiles.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiarpc.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiadss.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiadefui.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiaaut.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\wiaacmgr.exe
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\sti.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\scansetting.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\ir32_32.dll
    2006-11-02 20:34:41 ----A---- C:\Windows\system32\iccvid.dll
    2006-11-02 20:34:37 ----A---- C:\Windows\system32\qedwipes.dll
    2006-11-02 20:34:37 ----A---- C:\Windows\system32\qedit.dll
    2006-11-02 20:34:37 ----A---- C:\Windows\system32\msvideo.dll
    2006-11-02 20:34:37 ----A---- C:\Windows\system32\msacm.dll
    2006-11-02 20:34:37 ----A---- C:\Windows\system32\avifile.dll
    2006-11-02 20:34:37 ----A---- C:\Windows\system32\avicap.dll
    2006-11-02 20:34:36 ----A---- C:\Windows\system32\SMBHelperClass.dll
    2006-11-02 20:34:36 ----A---- C:\Windows\system32\setupcln.dll
    2006-11-02 20:34:36 ----A---- C:\Windows\system32\dataclen.dll
    2006-11-02 20:34:36 ----A---- C:\Windows\system32\cleanmgr.exe
    2006-11-02 20:34:36 ----A---- C:\Windows\notepad.exe
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\write.exe
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\wlanui.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\WlanMM.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\wlandlg.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\WinSATAPI.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\WinSAT.exe
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\wcncsvc.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\TMM.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\pifmgr.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\PerfCenterCPL.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\fdWCN.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\emdmgmt.dll
    2006-11-02 20:34:35 ----A---- C:\Windows\system32\btpanui.dll
    2006-11-02 20:34:34 ----A---- C:\Windows\system32\WLanHC.dll
    2006-11-02 20:34:34 ----A---- C:\Windows\system32\UIHub.dll
    2006-11-02 20:34:34 ----A---- C:\Windows\system32\DDACLSys.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\WlanMmHC.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\WLanConn.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\wlancfg.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\tabcal.exe
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\spwinsat.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\IconCodecService.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dswave.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dmusic.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dmsynth.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dmstyle.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dmscript.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dmloader.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dmime.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dmcompos.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\dmband.dll
    2006-11-02 20:34:33 ----A---- C:\Windows\system32\diagperf.dll
    2006-11-02 20:34:32 ----A---- C:\Windows\system32\davclnt.dll
    2006-11-02 20:34:31 ----A---- C:\Windows\system32\wzcdlg.dll
    2006-11-02 20:34:31 ----A---- C:\Windows\system32\TabbtnEx.dll
    2006-11-02 20:34:31 ----A---- C:\Windows\system32\Tabbtn.dll
    2006-11-02 20:34:31 ----A---- C:\Windows\system32\setupSNK.exe
    2006-11-02 20:34:31 ----A---- C:\Windows\system32\qwave.dll
    2006-11-02 20:34:31 ----A---- C:\Windows\system32\msshavmsg.dll
    2006-11-02 20:34:31 ----A---- C:\Windows\system32\mssha.dll
    2006-11-02 20:34:31 ----A---- C:\Windows\system32\msidcrl30.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\XInput9_1_0.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\wlanpref.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\wlanext.exe
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\shrpubw.exe
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\pid.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\pcasvc.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\pcadm.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\l2nacp.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\gcdef.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\fsmgmt.msc
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\filemgmt.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\dinput8.dll
    2006-11-02 20:34:30 ----A---- C:\Windows\system32\dinput.dll
    2006-11-02 20:34:29 ----A---- C:\Windows\system32\wcnwiz.dll
    2006-11-02 20:34:29 ----A---- C:\Windows\system32\gatherWirelessInfo.vbs
    2006-11-02 19:18:44 ----D---- C:\Windows\winsxs
    2006-11-02 19:18:44 ----D---- C:\Windows\Web
    2006-11-02 19:18:44 ----D---- C:\Windows\tracing
    2006-11-02 19:18:44 ----D---- C:\Windows\Tasks
    2006-11-02 19:18:44 ----D---- C:\Windows\tapi
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\zh-TW
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\zh-HK
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\zh-CN
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\winevt
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\wfp
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\WDI
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\wbem
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\uk-UA
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\tr-TR
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\th-TH
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\Tasks
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\sysprep
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\sv-SE
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\sr-Latn-CS
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\spool
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\Speech
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\SMI
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\SLUI
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\sl-SI
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\sk-SK
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\setup
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\ru-RU
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\ro-RO
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\RemInst
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\ras
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\pt-PT
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\pt-BR
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\pl-PL
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\oobe
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\nl-NL
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\networklist
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\NDF
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\nb-NO
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\MUI
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\Msdtc
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\migwiz
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\migration
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\manifeststore
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\lv-LV
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\lt-LT
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\LogFiles
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\licensing
    2006-11-02 19:18:43 ----D---- C:\Windows\system32\ko-KR
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\ja-JP
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\it-IT
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\inetsrv
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\IME
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\icsxml
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\ias
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\hu-HU
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\hr-HR
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\he-IL
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\GroupPolicyUsers
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\GroupPolicy
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\fr-FR
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\fi-FI
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\et-EE
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\es-ES
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\en-US
    2006-11-02 19:18:42 ----D---- C:\Windows\system32\el-GR
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\DriverStore
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\drivers
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\de-DE
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\da-DK
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\cs-CZ
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\config
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\com
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\CodeIntegrity
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\catroot2
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\catroot
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\Boot
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\bg-BG
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\ar-SA
    2006-11-02 19:18:36 ----D---- C:\Windows\system32\AdvancedInstallers
    2006-11-02 19:18:36 ----D---- C:\Windows\System32
    2006-11-02 19:18:36 ----D---- C:\Windows\system
    2006-11-02 19:18:36 ----D---- C:\Windows\Speech
    2006-11-02 19:18:36 ----D---- C:\Windows\servicing
    2006-11-02 19:18:36 ----D---- C:\Windows\security
    2006-11-02 19:18:36 ----D---- C:\Windows\schemas
    2006-11-02 19:18:36 ----D---- C:\Windows\SchCache
    2006-11-02 19:18:36 ----D---- C:\Windows\Resources
    2006-11-02 19:18:36 ----D---- C:\Windows\rescache
    2006-11-02 19:18:36 ----D---- C:\Windows\Registration
  • garfield619garfield619 Philippines New
    edited December 2008
    2006-11-02 19:18:36 ----D---- C:\Windows\Provisioning
    2006-11-02 19:18:36 ----D---- C:\Windows\PolicyDefinitions
    2006-11-02 19:18:35 ----RSD---- C:\Windows\Media
    2006-11-02 19:18:35 ----RD---- C:\Windows\Offline Web Pages
    2006-11-02 19:18:35 ----D---- C:\Windows\PLA
    2006-11-02 19:18:35 ----D---- C:\Windows\nap
    2006-11-02 19:18:35 ----D---- C:\Windows\MSAgent
    2006-11-02 19:18:35 ----D---- C:\Windows\ModemLogs
    2006-11-02 19:18:35 ----D---- C:\Windows\Microsoft.NET
    2006-11-02 19:18:35 ----D---- C:\Windows\Logs
    2006-11-02 19:18:35 ----D---- C:\Windows\LiveKernelReports
    2006-11-02 19:18:35 ----D---- C:\Windows\L2Schemas
    2006-11-02 19:18:34 ----SD---- C:\Windows\Downloaded Program Files
    2006-11-02 19:18:34 ----RSD---- C:\Windows\Fonts
    2006-11-02 19:18:34 ----RSD---- C:\Windows\assembly
    2006-11-02 19:18:34 ----D---- C:\Windows\inf
    2006-11-02 19:18:34 ----D---- C:\Windows\IME
    2006-11-02 19:18:34 ----D---- C:\Windows\Help
    2006-11-02 19:18:34 ----D---- C:\Windows\Globalization
    2006-11-02 19:18:34 ----D---- C:\Windows\Cursors
    2006-11-02 19:18:34 ----D---- C:\Windows\Branding
    2006-11-02 19:18:34 ----D---- C:\Windows\Boot
    2006-11-02 19:18:34 ----D---- C:\Windows\AppPatch
    2006-11-02 19:18:34 ----D---- C:\Windows
    2006-11-02 19:18:33 ----SD---- C:\ProgramData\Microsoft
    2006-11-02 19:18:33 ----RD---- C:\Users
    2006-11-02 19:18:33 ----RD---- C:\Program Files
    2006-11-02 19:18:33 ----HD---- C:\ProgramData
    2006-11-02 19:18:33 ----D---- C:\Program Files\Windows NT
    2006-11-02 19:18:33 ----D---- C:\Program Files\Windows Mail
    2006-11-02 19:18:33 ----D---- C:\Program Files\Internet Explorer
    2006-11-02 19:18:33 ----D---- C:\Program Files\Common Files\System
    2006-11-02 19:18:33 ----D---- C:\Program Files\Common Files\SpeechEngines
    2006-11-02 19:18:33 ----D---- C:\Program Files\Common Files\Services
    2006-11-02 19:18:33 ----D---- C:\Program Files\Common Files\microsoft shared
    2006-11-02 19:18:33 ----D---- C:\Program Files\Common Files
    2006-11-02 18:33:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
    2006-11-02 18:32:57 ----N---- C:\Windows\system32\ifxcardm.dll
    2006-11-02 18:32:57 ----N---- C:\Windows\system32\axaltocm.dll
    2006-11-02 18:25:51 ----A---- C:\Windows\system32\hal.dll
    2006-11-02 18:25:29 ----A---- C:\Windows\system32\WMALFXGFXDSP.dll
    2006-11-02 18:25:29 ----A---- C:\Windows\system32\SysFxUI.dll
    2006-11-02 18:25:21 ----N---- C:\Windows\system32\igfxTMM.dll
    2006-11-02 18:25:21 ----N---- C:\Windows\system32\igfxdev.dll
    2006-11-02 18:25:21 ----N---- C:\Windows\system32\igdumd32.dll
    2006-11-02 18:25:05 ----A---- C:\Windows\system32\fsquirt.exe
    2006-11-02 18:24:31 ----A---- C:\Windows\msdfmap.ini
    2006-11-02 18:24:30 ----N---- C:\Windows\system32\vfpodbc.dll
    2006-11-02 18:24:01 ----A---- C:\Windows\system32\mrt.exe
    2006-11-02 18:23:31 ----A---- C:\Windows\win.ini
    2006-11-02 18:23:31 ----A---- C:\Windows\system.ini
    2006-11-02 18:23:09 ----A---- C:\autoexec.bat
    2006-11-02 17:36:34 ----N---- C:\Windows\system32\brcoinst.dll
    2006-11-02 17:16:51 ----A---- C:\Windows\system32\advapi32.dll
    2006-11-02 17:16:38 ----A---- C:\Windows\system32\xpssvcs.dll
    2006-11-02 17:16:34 ----A---- C:\Windows\system32\termmgr.dll
    2006-11-02 17:16:33 ----A---- C:\Windows\system32\actxprxy.dll
    2006-11-02 17:16:30 ----A---- C:\Windows\system32\xmllite.dll
    2006-11-02 17:16:23 ----A---- C:\Windows\system32\wsdchngr.dll
    2006-11-02 17:16:23 ----A---- C:\Windows\system32\tapi32.dll
    2006-11-02 17:16:22 ----A---- C:\Windows\system32\TapiUnattend.exe
    2006-11-02 17:16:22 ----A---- C:\Windows\system32\tapisrv.dll
    2006-11-02 17:16:22 ----A---- C:\Windows\system32\tapi3.dll
    2006-11-02 17:16:21 ----A---- C:\Windows\system32\wavemsp.dll
    2006-11-02 17:16:21 ----A---- C:\Windows\system32\TapiMigPlugin.dll
    2006-11-02 17:16:19 ----A---- C:\Windows\system32\TapiSysprep.dll
    2006-11-02 17:16:12 ----A---- C:\Windows\system32\tapiperf.dll
    2006-11-02 17:16:11 ----A---- C:\Windows\system32\dialer.exe
    2006-11-02 17:16:09 ----A---- C:\Windows\system32\tcmsetup.exe
    2006-11-02 17:16:09 ----A---- C:\Windows\system32\printui.dll
    2006-11-02 17:16:07 ----A---- C:\Windows\system32\tapilua.dll
    2006-11-02 17:16:01 ----A---- C:\Windows\system32\printfilterpipelinesvc.exe
    2006-11-02 17:15:58 ----A---- C:\Windows\system32\prnntfy.dll
    2006-11-02 17:15:55 ----A---- C:\Windows\system32\puiobj.dll
    2006-11-02 17:15:53 ----A---- C:\Windows\system32\win32spl.dll
    2006-11-02 17:15:52 ----A---- C:\Windows\system32\puiapi.dll
    2006-11-02 17:15:52 ----A---- C:\Windows\system32\findnetprinters.dll
    2006-11-02 17:15:51 ----A---- C:\Windows\system32\compstui.dll
    2006-11-02 17:15:49 ----A---- C:\Windows\system32\printui.exe
    2006-11-02 17:15:44 ----A---- C:\Windows\system32\printfilterpipelineprxy.dll
    2006-11-02 17:15:43 ----A---- C:\Windows\system32\oleprn.dll
    2006-11-02 17:15:40 ----A---- C:\Windows\system32\spoolss.dll
    2006-11-02 17:15:36 ----A---- C:\Windows\system32\bidispl.dll
    2006-11-02 17:15:35 ----A---- C:\Windows\system32\XPSSHHDR.dll
    2006-11-02 17:15:35 ----A---- C:\Windows\system32\prntvpt.dll
    2006-11-02 17:15:34 ----A---- C:\Windows\system32\spoolsv.exe
    2006-11-02 17:15:33 ----A---- C:\Windows\system32\WSDMon.dll
    2006-11-02 17:15:30 ----A---- C:\Windows\system32\tcpmon.dll
    2006-11-02 17:15:26 ----A---- C:\Windows\system32\usbmon.dll
    2006-11-02 17:15:25 ----A---- C:\Windows\system32\tcpmonui.dll
    2006-11-02 17:15:21 ----A---- C:\Windows\system32\tcpmib.dll
    2006-11-02 17:15:21 ----A---- C:\Windows\system32\localui.dll
    2006-11-02 17:14:58 ----A---- C:\Windows\system32\printcom.dll
    2006-11-02 17:14:19 ----A---- C:\Windows\system32\mfc42u.dll
    2006-11-02 17:14:18 ----A---- C:\Windows\system32\sti_ci.dll
    2006-11-02 17:14:14 ----A---- C:\Windows\system32\mfc42.dll
    2006-11-02 17:13:33 ----A---- C:\Windows\system32\atl.dll
    2006-11-02 17:13:10 ----A---- C:\Windows\system32\ActiveContentWizard.dll
    2006-11-02 17:12:58 ----A---- C:\Windows\system32\ieencode.dll
    2006-11-02 17:12:56 ----A---- C:\Windows\system32\ACW.exe
    2006-11-02 17:12:54 ----A---- C:\Windows\system32\GuidedHelp.dll
    2006-11-02 17:12:00 ----A---- C:\Windows\system32\msshsq.dll
    2006-11-02 17:11:58 ----A---- C:\Windows\system32\xmlfilter.dll
    2006-11-02 17:11:56 ----A---- C:\Windows\system32\rtffilt.dll
    2006-11-02 17:11:56 ----A---- C:\Windows\system32\nlhtml.dll
    2006-11-02 17:11:44 ----A---- C:\Windows\system32\Query.dll
    2006-11-02 17:11:33 ----A---- C:\Windows\system32\msasn1.dll
    2006-11-02 17:11:32 ----A---- C:\Windows\HelpPane.exe
    2006-11-02 17:11:31 ----A---- C:\Windows\system32\apds.dll
    2006-11-02 17:11:27 ----A---- C:\Windows\system32\hlink.dll
    2006-11-02 17:11:26 ----A---- C:\Windows\system32\itircl.dll
    2006-11-02 17:11:25 ----A---- C:\Windows\system32\fixmapi.exe
    2006-11-02 17:11:24 ----A---- C:\Windows\system32\mapistub.dll
    2006-11-02 17:11:24 ----A---- C:\Windows\system32\mapi32.dll
    2006-11-02 17:11:24 ----A---- C:\Windows\system32\apss.dll
    2006-11-02 17:11:23 ----A---- C:\Windows\system32\cdosys.dll
    2006-11-02 17:11:22 ----A---- C:\Windows\winhlp32.exe
    2006-11-02 17:11:22 ----A---- C:\Windows\system32\itss.dll
    2006-11-02 17:11:20 ----A---- C:\Windows\system32\hhsetup.dll
    2006-11-02 17:11:19 ----A---- C:\Windows\system32\apircl.dll
    2006-11-02 17:11:18 ----A---- C:\Windows\hh.exe
    2006-11-02 17:11:17 ----A---- C:\Windows\system32\HelpPaneProxy.dll
    2006-11-02 17:11:10 ----A---- C:\Windows\system32\sqlsrv32.dll
    2006-11-02 17:11:09 ----A---- C:\Windows\system32\scripto.dll
    2006-11-02 17:11:06 ----A---- C:\Windows\system32\odbcjt32.dll
    2006-11-02 17:11:06 ----A---- C:\Windows\system32\odbcji32.dll
    2006-11-02 17:11:05 ----A---- C:\Windows\system32\odpdx32.dll
    2006-11-02 17:11:05 ----A---- C:\Windows\system32\odexl32.dll
    2006-11-02 17:11:05 ----A---- C:\Windows\system32\dbnetlib.dll
    2006-11-02 17:11:04 ----A---- C:\Windows\system32\odtext32.dll
    2006-11-02 17:11:04 ----A---- C:\Windows\system32\odfox32.dll
    2006-11-02 17:11:04 ----A---- C:\Windows\system32\oddbse32.dll
    2006-11-02 17:11:04 ----A---- C:\Windows\system32\odbc32.dll
    2006-11-02 17:11:03 ----A---- C:\Windows\system32\cliconfg.exe
    2006-11-02 17:11:03 ----A---- C:\Windows\system32\cliconfg.dll
    2006-11-02 17:11:02 ----A---- C:\Windows\system32\dbnmpntw.dll
    2006-11-02 17:11:01 ----A---- C:\Windows\system32\odbcbcp.dll
    2006-11-02 17:11:00 ----A---- C:\Windows\system32\odbcconf.exe
    2006-11-02 17:10:59 ----A---- C:\Windows\system32\odbccp32.dll
    2006-11-02 17:10:58 ----A---- C:\Windows\system32\odbcconf.dll
    2006-11-02 17:10:57 ----A---- C:\Windows\system32\odbcad32.exe
    2006-11-02 17:10:57 ----A---- C:\Windows\system32\mscpxl32.dLL
    2006-11-02 17:10:56 ----A---- C:\Windows\system32\odbctrac.dll
    2006-11-02 17:10:56 ----A---- C:\Windows\system32\odbccu32.dll
    2006-11-02 17:10:56 ----A---- C:\Windows\system32\odbccr32.dll
    2006-11-02 17:10:56 ----A---- C:\Windows\system32\odbc32gt.dll
    2006-11-02 17:10:56 ----A---- C:\Windows\system32\ds32gt.dll
    2006-11-02 17:10:52 ----A---- C:\Windows\system32\msorcl32.dll
    2006-11-02 17:10:52 ----A---- C:\Windows\system32\msdart.dll
    2006-11-02 17:10:49 ----A---- C:\Windows\system32\msdadiag.dll
    2006-11-02 17:10:41 ----A---- C:\Windows\system32\offfilt.dll
    2006-11-02 17:10:39 ----A---- C:\Windows\system32\LANGWRBK.DLL
    2006-11-02 17:10:38 ----A---- C:\Windows\system32\thawbrkr.dll
    2006-11-02 17:10:38 ----A---- C:\Windows\system32\chtbrkr.dll
    2006-11-02 17:10:37 ----A---- C:\Windows\system32\korwbrkr.dll
    2006-11-02 17:10:36 ----A---- C:\Windows\system32\chsbrkr.dll
    2006-11-02 17:10:00 ----A---- C:\Windows\system32\mimefilt.dll
    2006-11-02 17:08:18 ----A---- C:\Windows\system32\PhotoMetadataHandler.dll
    2006-11-02 17:07:27 ----A---- C:\Windows\system32\McxDriv.dll
    2006-11-02 17:06:38 ----A---- C:\Windows\system32\qasf.dll
    2006-11-02 17:05:36 ----A---- C:\Windows\system32\WMPhoto.dll
    2006-11-02 17:05:36 ----A---- C:\Windows\system32\sqlceqp30.dll
    2006-11-02 17:05:33 ----A---- C:\Windows\system32\WMSPDMOD.DLL
    2006-11-02 17:05:27 ----A---- C:\Windows\system32\sqlcese30.dll
    2006-11-02 17:05:23 ----A---- C:\Windows\system32\sqlceoledb30.dll
    2006-11-02 17:04:53 ----A---- C:\Windows\system32\evr.dll
    2006-11-02 17:04:46 ----A---- C:\Windows\system32\opengl32.dll
    2006-11-02 17:04:42 ----A---- C:\Windows\system32\qdvd.dll
    2006-11-02 17:04:40 ----A---- C:\Windows\system32\mmcss.dll
    2006-11-02 17:04:39 ----A---- C:\Windows\system32\EncDump.dll
    2006-11-02 17:04:39 ----A---- C:\Windows\system32\avrt.dll
    2006-11-02 17:04:38 ----A---- C:\Windows\system32\glu32.dll
    2006-11-02 17:04:38 ----A---- C:\Windows\system32\glmf32.dll
    2006-11-02 17:04:27 ----A---- C:\Windows\system32\d3d9.dll
    2006-11-02 17:04:16 ----A---- C:\Windows\system32\dxva2.dll
    2006-11-02 17:04:12 ----A---- C:\Windows\system32\qcap.dll
    2006-11-02 17:04:07 ----A---- C:\Windows\system32\qdv.dll
    2006-11-02 17:04:04 ----A---- C:\Windows\system32\mciqtz32.dll
    2006-11-02 17:04:04 ----A---- C:\Windows\system32\dvdplay.exe
    2006-11-02 17:04:02 ----A---- C:\Windows\system32\vfwwdm32.dll
    2006-11-02 17:04:01 ----N---- C:\Windows\system32\streamci.dll
    2006-11-02 17:04:00 ----A---- C:\Windows\system32\devenum.dll
    2006-11-02 17:03:59 ----A---- C:\Windows\system32\ogldrv.dll
    2006-11-02 17:03:59 ----A---- C:\Windows\system32\encapi.dll
    2006-11-02 17:03:58 ----A---- C:\Windows\system32\ksuser.dll
    2006-11-02 17:03:56 ----A---- C:\Windows\system32\dpnet.dll
    2006-11-02 17:03:53 ----A---- C:\Windows\system32\dvdupgrd.exe
    2006-11-02 17:03:51 ----A---- C:\Windows\system32\dsound.dll
    2006-11-02 17:03:48 ----A---- C:\Windows\system32\dxdiag.exe
    2006-11-02 17:03:47 ----A---- C:\Windows\system32\amstream.dll
    2006-11-02 17:03:46 ----A---- C:\Windows\system32\dxdiagn.dll
    2006-11-02 17:03:46 ----A---- C:\Windows\system32\dplayx.dll
    2006-11-02 17:03:45 ----A---- C:\Windows\system32\dpnsvr.exe
    2006-11-02 17:03:44 ----A---- C:\Windows\system32\msdmo.dll
    2006-11-02 17:03:44 ----A---- C:\Windows\system32\dpnathlp.dll
    2006-11-02 17:03:44 ----A---- C:\Windows\system32\dplaysvr.exe
    2006-11-02 17:03:42 ----A---- C:\Windows\system32\dpnhupnp.dll
    2006-11-02 17:03:42 ----A---- C:\Windows\system32\dpnhpast.dll
    2006-11-02 17:03:42 ----A---- C:\Windows\system32\d3dim700.dll
    2006-11-02 17:03:41 ----A---- C:\Windows\system32\dpwsockx.dll
    2006-11-02 17:03:41 ----A---- C:\Windows\system32\dpnlobby.dll
    2006-11-02 17:03:41 ----A---- C:\Windows\system32\dpnaddr.dll
    2006-11-02 17:03:41 ----A---- C:\Windows\system32\dpmodemx.dll
    2006-11-02 17:03:37 ----A---- C:\Windows\system32\dsdmo.dll
    2006-11-02 17:03:36 ----A---- C:\Windows\system32\d3d8.dll
    2006-11-02 17:03:35 ----A---- C:\Windows\system32\ddrawex.dll
    2006-11-02 17:03:35 ----A---- C:\Windows\system32\d3d10core.dll
    2006-11-02 17:03:35 ----A---- C:\Windows\system32\d3d10.dll
    2006-11-02 17:03:32 ----A---- C:\Windows\system32\ddraw.dll
    2006-11-02 17:03:32 ----A---- C:\Windows\system32\d3dim.dll
    2006-11-02 17:03:31 ----A---- C:\Windows\system32\dxgi.dll
    2006-11-02 17:03:24 ----A---- C:\Windows\system32\rgb9rast.dll
    2006-11-02 17:03:24 ----A---- C:\Windows\system32\audiosrv.dll
    2006-11-02 17:03:23 ----A---- C:\Windows\system32\d3dxof.dll
    2006-11-02 17:03:22 ----A---- C:\Windows\system32\AudioEng.dll
    2006-11-02 17:03:21 ----A---- C:\Windows\system32\SndVolSSO.dll
    2006-11-02 17:03:21 ----A---- C:\Windows\system32\SndVol.exe
    2006-11-02 17:03:21 ----A---- C:\Windows\system32\d3dramp.dll
    2006-11-02 17:03:19 ----A---- C:\Windows\system32\winmm.dll
    2006-11-02 17:03:17 ----A---- C:\Windows\system32\rdpencom.dll
    2006-11-02 17:03:17 ----A---- C:\Windows\system32\d3d8thk.dll
    2006-11-02 17:03:16 ----A---- C:\Windows\system32\MMDevAPI.dll
    2006-11-02 17:03:16 ----A---- C:\Windows\system32\mmci.dll
    2006-11-02 17:03:16 ----A---- C:\Windows\system32\midimap.dll
    2006-11-02 17:03:15 ----A---- C:\Windows\system32\mmcico.dll
    2006-11-02 17:03:14 ----A---- C:\Windows\system32\AudioSes.dll
    2006-11-02 17:03:12 ----A---- C:\Windows\system32\msacm32.dll
    2006-11-02 17:03:11 ----A---- C:\Windows\system32\audiodg.exe
    2006-11-02 17:03:10 ----A---- C:\Windows\system32\mcicda.dll
    2006-11-02 17:03:09 ----A---- C:\Windows\system32\mciseq.dll
    2006-11-02 17:03:08 ----A---- C:\Windows\system32\mciwave.dll
    2006-11-02 17:03:06 ----A---- C:\Windows\system32\AUDIOKSE.dll
    2006-11-02 17:03:03 ----A---- C:\Windows\system32\PlaySndSrv.dll
    2006-11-02 17:02:55 ----A---- C:\Windows\system32\termsrv.dll
    2006-11-02 17:02:51 ----A---- C:\Windows\system32\drprov.dll
    2006-11-02 17:02:48 ----A---- C:\Windows\system32\lsm.exe
    2006-11-02 17:02:45 ----A---- C:\Windows\system32\SessEnv.dll
    2006-11-02 17:02:43 ----A---- C:\Windows\system32\winsta.dll
    2006-11-02 17:02:40 ----A---- C:\Windows\system32\tsgqec.dll
    2006-11-02 17:02:40 ----A---- C:\Windows\system32\aaclient.dll
    2006-11-02 17:02:39 ----A---- C:\Windows\system32\TSTheme.exe
    2006-11-02 17:02:35 ----A---- C:\Windows\system32\mstscax.dll
    2006-11-02 17:02:35 ----A---- C:\Windows\system32\lsmproxy.dll
    2006-11-02 17:02:34 ----A---- C:\Windows\system32\remotepg.dll
    2006-11-02 17:02:34 ----A---- C:\Windows\system32\cfgbkend.dll
    2006-11-02 17:02:33 ----A---- C:\Windows\system32\perfts.dll
    2006-11-02 17:02:30 ----A---- C:\Windows\system32\mstsc.exe
    2006-11-02 17:02:26 ----A---- C:\Windows\system32\utildll.dll
    2006-11-02 17:02:25 ----A---- C:\Windows\system32\rdpwsx.dll
    2006-11-02 17:02:23 ----A---- C:\Windows\system32\tssetup.exe
    2006-11-02 17:02:23 ----A---- C:\Windows\system32\regapi.dll
    2006-11-02 17:02:21 ----A---- C:\Windows\system32\rdpdd.dll
    2006-11-02 17:02:21 ----A---- C:\Windows\system32\rdpcfgex.dll
    2006-11-02 17:02:21 ----A---- C:\Windows\system32\icaapi.dll
    2006-11-02 17:02:19 ----A---- C:\Windows\system32\RDPENCDD.dll
    2006-11-02 17:02:17 ----A---- C:\Windows\system32\mstlsapi.dll
    2006-11-02 17:02:09 ----A---- C:\Windows\system32\tscupgrd.exe
    2006-11-02 17:02:02 ----A---- C:\Windows\system32\tsddd.dll
    2006-11-02 17:01:22 ----A---- C:\Windows\system32\verifier.exe
    2006-11-02 17:00:55 ----A---- C:\Windows\system32\regsvr32.exe
    2006-11-02 17:00:53 ----A---- C:\Windows\system32\regini.exe
    2006-11-02 17:00:52 ----A---- C:\Windows\system32\dbghelp.dll
    2006-11-02 17:00:49 ----A---- C:\Windows\system32\psapi.dll
    2006-11-02 17:00:37 ----A---- C:\Windows\system32\dbgeng.dll
    2006-11-02 17:00:01 ----A---- C:\Windows\system32\taskkill.exe
    2006-11-02 16:59:57 ----A---- C:\Windows\system32\tasklist.exe
    2006-11-02 16:59:57 ----A---- C:\Windows\system32\systeminfo.exe
    2006-11-02 16:59:46 ----A---- C:\Windows\system32\eapphost.dll
    2006-11-02 16:59:45 ----A---- C:\Windows\system32\eappcfg.dll
    2006-11-02 16:59:38 ----A---- C:\Windows\system32\eapp3hst.dll
    2006-11-02 16:59:37 ----A---- C:\Windows\system32\eapsvc.dll
    2006-11-02 16:59:35 ----A---- C:\Windows\system32\eappprxy.dll
    2006-11-02 16:59:35 ----A---- C:\Windows\system32\eappgnui.dll
    2006-11-02 16:59:33 ----A---- C:\Windows\system32\EAPQEC.DLL
    2006-11-02 16:59:20 ----A---- C:\Windows\system32\netprofm.dll
    2006-11-02 16:59:12 ----A---- C:\Windows\system32\VAN.dll
    2006-11-02 16:59:12 ----A---- C:\Windows\system32\netcenter.dll
    2006-11-02 16:59:11 ----A---- C:\Windows\system32\netprof.dll
    2006-11-02 16:59:07 ----A---- C:\Windows\system32\upnphost.dll
    2006-11-02 16:59:07 ----A---- C:\Windows\system32\RASMM.dll
    2006-11-02 16:59:03 ----A---- C:\Windows\system32\upnp.dll
    2006-11-02 16:59:03 ----A---- C:\Windows\system32\npmproxy.dll
    2006-11-02 16:59:02 ----A---- C:\Windows\system32\ssdpsrv.dll
    2006-11-02 16:59:02 ----A---- C:\Windows\system32\nlmsprep.dll
    2006-11-02 16:58:58 ----A---- C:\Windows\system32\mpr.dll
    2006-11-02 16:58:55 ----A---- C:\Windows\system32\ssdpapi.dll
    2006-11-02 16:58:54 ----A---- C:\Windows\system32\WINSRPC.DLL
    2006-11-02 16:58:53 ----A---- C:\Windows\system32\upnpcont.exe
    2006-11-02 16:58:53 ----A---- C:\Windows\system32\udhisapi.dll
    2006-11-02 16:58:52 ----A---- C:\Windows\system32\modemui.dll
    2006-11-02 16:58:51 ----A---- C:\Windows\system32\uniplat.dll
    2006-11-02 16:58:50 ----A---- C:\Windows\system32\umdmxfrm.dll
    2006-11-02 16:58:50 ----A---- C:\Windows\system32\uicom.dll
    2006-11-02 16:58:50 ----A---- C:\Windows\system32\serwvdrv.dll
    2006-11-02 16:58:50 ----A---- C:\Windows\system32\serialui.dll
    2006-11-02 16:58:50 ----A---- C:\Windows\system32\mdminst.dll
    2006-11-02 16:58:49 ----A---- C:\Windows\system32\unimdmat.dll
    2006-11-02 16:58:43 ----A---- C:\Windows\system32\TRACERT.EXE
    2006-11-02 16:58:43 ----A---- C:\Windows\system32\TCPSVCS.EXE
    2006-11-02 16:58:43 ----A---- C:\Windows\system32\PING.EXE
    2006-11-02 16:58:43 ----A---- C:\Windows\system32\mswsock.dll
    2006-11-02 16:58:42 ----A---- C:\Windows\system32\ipconfig.exe
    2006-11-02 16:58:41 ----A---- C:\Windows\system32\PATHPING.EXE
    2006-11-02 16:58:41 ----A---- C:\Windows\system32\MRINFO.EXE
    2006-11-02 16:58:41 ----A---- C:\Windows\system32\inetmib1.dll
    2006-11-02 16:58:39 ----A---- C:\Windows\system32\ws2_32.dll
    2006-11-02 16:58:39 ----A---- C:\Windows\system32\ROUTE.EXE
    2006-11-02 16:58:39 ----A---- C:\Windows\system32\ftp.exe
    2006-11-02 16:58:38 ----A---- C:\Windows\system32\rasdlg.dll
    2006-11-02 16:58:38 ----A---- C:\Windows\system32\NETSTAT.EXE
    2006-11-02 16:58:37 ----A---- C:\Windows\system32\ARP.EXE
    2006-11-02 16:58:36 ----A---- C:\Windows\system32\HOSTNAME.EXE
    2006-11-02 16:58:35 ----A---- C:\Windows\system32\finger.exe
    2006-11-02 16:58:33 ----A---- C:\Windows\system32\icmp.dll
    2006-11-02 16:58:31 ----A---- C:\Windows\system32\snmptrap.exe
    2006-11-02 16:58:31 ----A---- C:\Windows\system32\mgmtapi.dll
    2006-11-02 16:58:30 ----A---- C:\Windows\system32\wsnmp32.dll
    2006-11-02 16:58:30 ----A---- C:\Windows\system32\winsockhc.dll
    2006-11-02 16:58:30 ----A---- C:\Windows\system32\snmpapi.dll
    2006-11-02 16:58:29 ----A---- C:\Windows\system32\wsock32.dll
    2006-11-02 16:58:29 ----A---- C:\Windows\system32\wshelper.dll
    2006-11-02 16:58:29 ----A---- C:\Windows\system32\rasapi32.dll
    2006-11-02 16:58:28 ----A---- C:\Windows\system32\wscmisetup.dll
    2006-11-02 16:58:26 ----A---- C:\Windows\system32\rnr20.dll
    2006-11-02 16:58:26 ----A---- C:\Windows\system32\rasgcw.dll
    2006-11-02 16:58:26 ----A---- C:\Windows\system32\NapiNSP.dll
    2006-11-02 16:58:25 ----A---- C:\Windows\system32\ws2help.dll
    2006-11-02 16:58:25 ----A---- C:\Windows\system32\msafd.dll
    2006-11-02 16:58:24 ----A---- C:\Windows\system32\rasplap.dll
    2006-11-02 16:58:24 ----A---- C:\Windows\system32\rasmans.dll
    2006-11-02 16:58:23 ----A---- C:\Windows\system32\rasppp.dll
    2006-11-02 16:58:23 ----A---- C:\Windows\system32\rasmontr.dll
    2006-11-02 16:58:22 ----A---- C:\Windows\system32\rtm.dll
    2006-11-02 16:58:20 ----A---- C:\Windows\system32\rasphone.exe
    2006-11-02 16:58:19 ----A---- C:\Windows\system32\rastls.dll
    2006-11-02 16:58:19 ----A---- C:\Windows\system32\rastapi.dll
    2006-11-02 16:58:19 ----A---- C:\Windows\system32\rasqec.dll
    2006-11-02 16:58:19 ----A---- C:\Windows\system32\rasdial.exe
    2006-11-02 16:58:19 ----A---- C:\Windows\system32\raschap.dll
    2006-11-02 16:58:18 ----A---- C:\Windows\system32\rasman.dll
    2006-11-02 16:58:18 ----A---- C:\Windows\system32\rasctrs.dll
    2006-11-02 16:58:17 ----A---- C:\Windows\system32\netsh.exe
    2006-11-02 16:58:16 ----A---- C:\Windows\system32\rasauto.dll
    2006-11-02 16:58:16 ----A---- C:\Windows\system32\mprddm.dll
    2006-11-02 16:58:15 ----A---- C:\Windows\system32\rasautou.exe
    2006-11-02 16:58:15 ----A---- C:\Windows\system32\rasadhlp.dll
    2006-11-02 16:58:12 ----A---- C:\Windows\system32\ifmon.dll
    2006-11-02 16:58:09 ----A---- C:\Windows\system32\iprtrmgr.dll
    2006-11-02 16:58:08 ----A---- C:\Windows\system32\mprmsg.dll
    2006-11-02 16:58:07 ----A---- C:\Windows\system32\IKEEXT.DLL
    2006-11-02 16:58:05 ----A---- C:\Windows\system32\mprdim.dll
    2006-11-02 16:58:05 ----A---- C:\Windows\system32\iprtprio.dll
    2006-11-02 16:58:04 ----A---- C:\Windows\system32\mprapi.dll
    2006-11-02 16:58:04 ----A---- C:\Windows\system32\cmstp.exe
    2006-11-02 16:58:04 ----A---- C:\Windows\system32\cmmon32.exe
    2006-11-02 16:57:59 ----A---- C:\Windows\system32\rtutils.dll
    2006-11-02 16:57:54 ----A---- C:\Windows\system32\cmstplua.dll
    2006-11-02 16:57:54 ----A---- C:\Windows\system32\cmdl32.exe
    2006-11-02 16:57:51 ----A---- C:\Windows\system32\cmdial32.dll
    2006-11-02 16:57:50 ----A---- C:\Windows\system32\cmpbk32.dll
    2006-11-02 16:57:49 ----A---- C:\Windows\system32\cmutil.dll
    2006-11-02 16:57:49 ----A---- C:\Windows\system32\cmcfg32.dll
    2006-11-02 16:57:48 ----A---- C:\Windows\system32\cmlua.dll
    2006-11-02 16:57:40 ----A---- C:\Windows\system32\FWPUCLNT.DLL
    2006-11-02 16:57:40 ----A---- C:\Windows\system32\BFE.DLL
    2006-11-02 16:57:36 ----A---- C:\Windows\system32\nlasvc.dll
    2006-11-02 16:57:34 ----A---- C:\Windows\system32\WSHTCPIP.DLL
    2006-11-02 16:57:34 ----A---- C:\Windows\system32\wship6.dll
    2006-11-02 16:57:34 ----A---- C:\Windows\system32\IPHLPAPI.DLL
    2006-11-02 16:57:34 ----A---- C:\Windows\system32\eqossnap.dll
    2006-11-02 16:57:33 ----A---- C:\Windows\system32\nsisvc.dll
    2006-11-02 16:57:31 ----A---- C:\Windows\system32\nsi.dll
    2006-11-02 16:57:30 ----A---- C:\Windows\system32\winnsi.dll
    2006-11-02 16:57:30 ----A---- C:\Windows\system32\netiohlp.dll
    2006-11-02 16:57:28 ----A---- C:\Windows\system32\fphc.dll
    2006-11-02 16:57:24 ----A---- C:\Windows\system32\nlaapi.dll
    2006-11-02 16:57:24 ----A---- C:\Windows\system32\ndishc.dll
    2006-11-02 16:57:23 ----A---- C:\Windows\system32\wshnetbs.dll
    2006-11-02 16:57:23 ----A---- C:\Windows\system32\nci.dll
    2006-11-02 16:57:12 ----A---- C:\Windows\system32\NAPHLPR.DLL
    2006-11-02 16:57:12 ----A---- C:\Windows\system32\napdsnap.dll
    2006-11-02 16:57:12 ----A---- C:\Windows\system32\iassam.dll
    2006-11-02 16:57:11 ----A---- C:\Windows\system32\NAPCRYPT.DLL
    2006-11-02 16:57:11 ----A---- C:\Windows\system32\irftp.exe
    2006-11-02 16:57:10 ----A---- C:\Windows\system32\netbtugc.exe
    2006-11-02 16:57:09 ----A---- C:\Windows\system32\lmhsvc.dll
    2006-11-02 16:57:08 ----A---- C:\Windows\system32\nbtstat.exe
    2006-11-02 16:57:08 ----A---- C:\Windows\system32\irmon.dll
    2006-11-02 16:57:07 ----A---- C:\Windows\system32\iasrecst.dll
    2006-11-02 16:57:05 ----A---- C:\Windows\system32\wshirda.dll
    2006-11-02 16:57:05 ----A---- C:\Windows\system32\iassdo.dll
    2006-11-02 16:57:04 ----A---- C:\Windows\system32\irclass.dll
    2006-11-02 16:57:03 ----A---- C:\Windows\system32\iashlpr.dll
    2006-11-02 16:57:03 ----A---- C:\Windows\system32\hnetcfg.dll
    2006-11-02 16:57:02 ----A---- C:\Windows\system32\sdohlp.dll
    2006-11-02 16:57:02 ----A---- C:\Windows\system32\iassvcs.dll
    2006-11-02 16:57:02 ----A---- C:\Windows\system32\iasrad.dll
    2006-11-02 16:57:02 ----A---- C:\Windows\system32\iasnap.dll
    2006-11-02 16:57:02 ----A---- C:\Windows\system32\iasdatastore.dll
    2006-11-02 16:57:02 ----A---- C:\Windows\system32\ias.dll
    2006-11-02 16:57:01 ----A---- C:\Windows\system32\iasads.dll
    2006-11-02 16:57:00 ----A---- C:\Windows\system32\iasacct.dll
    2006-11-02 16:56:59 ----A---- C:\Windows\system32\networkexplorer.dll
    2006-11-02 16:56:59 ----A---- C:\Windows\system32\IasMigPlugin.dll
    2006-11-02 16:56:57 ----A---- C:\Windows\system32\lltdsvc.dll
    2006-11-02 16:56:57 ----A---- C:\Windows\system32\iaspolcy.dll
    2006-11-02 16:56:56 ----A---- C:\Windows\system32\httpapi.dll
    2006-11-02 16:56:55 ----A---- C:\Windows\system32\networkmap.dll
    2006-11-02 16:56:52 ----A---- C:\Windows\system32\dtsh.dll
    2006-11-02 16:56:51 ----A---- C:\Windows\system32\networkitemfactory.dll
    2006-11-02 16:56:50 ----A---- C:\Windows\system32\lltdapi.dll
    2006-11-02 16:56:46 ----A---- C:\Windows\system32\ipsmsnap.dll
    2006-11-02 16:56:46 ----A---- C:\Windows\system32\alg.exe
    2006-11-02 16:56:45 ----A---- C:\Windows\system32\hnetmon.dll
    2006-11-02 16:56:44 ----A---- C:\Windows\system32\icsigd.dll
    2006-11-02 16:56:43 ----A---- C:\Windows\system32\xmlprovi.dll
    2006-11-02 16:56:43 ----A---- C:\Windows\system32\ipsecsnp.dll
    2006-11-02 16:56:42 ----A---- C:\Windows\system32\bridgeunattend.exe
    2006-11-02 16:56:40 ----A---- C:\Windows\system32\nshipsec.dll
    2006-11-02 16:56:40 ----A---- C:\Windows\system32\authfwcfg.dll
    2006-11-02 16:56:39 ----A---- C:\Windows\system32\brdgcfg.dll
    2006-11-02 16:56:38 ----A---- C:\Windows\system32\AuthFWGP.dll
    2006-11-02 16:56:36 ----A---- C:\Windows\system32\FirewallControlPanel.exe
    2006-11-02 16:56:34 ----A---- C:\Windows\system32\netdiagfx.dll
    2006-11-02 16:56:33 ----A---- C:\Windows\system32\netcorehc.dll
    2006-11-02 16:56:33 ----A---- C:\Windows\system32\fwcfg.dll
    2006-11-02 16:56:33 ----A---- C:\Windows\system32\FirewallSettings.exe
    2006-11-02 16:56:32 ----A---- C:\Windows\system32\ncsi.dll
    2006-11-02 16:56:30 ----A---- C:\Windows\system32\winethc.dll
    2006-11-02 16:56:30 ----A---- C:\Windows\system32\dnshc.dll
    2006-11-02 16:56:29 ----A---- C:\Windows\system32\netshell.dll
    2006-11-02 16:56:26 ----A---- C:\Windows\system32\ndfapi.dll
    2006-11-02 16:56:21 ----A---- C:\Windows\system32\ndfetw.dll
    2006-11-02 16:56:19 ----A---- C:\Windows\system32\ndproxystub.dll
    2006-11-02 16:56:19 ----A---- C:\Windows\system32\NAPMONTR.DLL
    2006-11-02 16:56:19 ----A---- C:\Windows\system32\dhcpsoc.dll
    2006-11-02 16:56:17 ----A---- C:\Windows\system32\QAGENTRT.DLL
    2006-11-02 16:56:17 ----A---- C:\Windows\system32\dsauth.dll
    2006-11-02 16:56:15 ----A---- C:\Windows\system32\dhcpsapi.dll
    2006-11-02 16:56:14 ----A---- C:\Windows\system32\pnidui.dll
    2006-11-02 16:56:12 ----A---- C:\Windows\system32\netman.dll
    2006-11-02 16:56:10 ----A---- C:\Windows\system32\QAGENT.DLL
    2006-11-02 16:56:07 ----A---- C:\Windows\system32\QUTIL.DLL
    2006-11-02 16:56:07 ----A---- C:\Windows\system32\KMSVC.DLL
    2006-11-02 16:56:07 ----A---- C:\Windows\system32\DHCPQEC.DLL
    2006-11-02 16:56:06 ----A---- C:\Windows\system32\gatherWiredInfo.vbs
    2006-11-02 16:56:03 ----A---- C:\Windows\system32\QSVRMGMT.DLL
    2006-11-02 16:56:03 ----A---- C:\Windows\system32\QSHVHOST.DLL
    2006-11-02 16:56:03 ----A---- C:\Windows\system32\QCLIPROV.DLL
    2006-11-02 16:56:02 ----A---- C:\Windows\system32\NAPSTAT.EXE
    2006-11-02 16:55:58 ----A---- C:\Windows\system32\dot3svc.dll
    2006-11-02 16:55:58 ----A---- C:\Windows\system32\connect.dll
    2006-11-02 16:55:53 ----A---- C:\Windows\system32\napipsec.dll
    2006-11-02 16:55:48 ----A---- C:\Windows\system32\dot3gpui.dll
    2006-11-02 16:55:47 ----A---- C:\Windows\system32\dot3cfg.dll
    2006-11-02 16:55:45 ----A---- C:\Windows\system32\dot3ui.dll
    2006-11-02 16:55:45 ----A---- C:\Windows\system32\dot3gpclnt.dll
    2006-11-02 16:55:44 ----A---- C:\Windows\system32\dot3msm.dll
    2006-11-02 16:55:44 ----A---- C:\Windows\system32\dot3dlg.dll
    2006-11-02 16:55:44 ----A---- C:\Windows\system32\dot3api.dll
    2006-11-02 16:55:42 ----A---- C:\Windows\system32\wlanutil.dll
    2006-11-02 16:55:41 ----A---- C:\Windows\system32\wlaninst.dll
    2006-11-02 16:55:40 ----A---- C:\Windows\system32\wlangpui.dll
    2006-11-02 16:55:37 ----A---- C:\Windows\system32\wlgpclnt.dll
    2006-11-02 16:55:33 ----A---- C:\Windows\system32\xwizards.dll
    2006-11-02 16:55:33 ----A---- C:\Windows\system32\L2SecHC.dll
    2006-11-02 16:55:32 ----A---- C:\Windows\system32\onex.dll
    2006-11-02 16:55:28 ----A---- C:\Windows\system32\l2gpstore.dll
    2006-11-02 16:55:26 ----A---- C:\Windows\system32\xwtpw32.dll
    2006-11-02 16:55:26 ----A---- C:\Windows\system32\xwreg.dll
    2006-11-02 16:55:20 ----A---- C:\Windows\system32\wshbth.dll
    2006-11-02 16:55:20 ----A---- C:\Windows\system32\bthci.dll
    2006-11-02 16:55:19 ----A---- C:\Windows\system32\bthudtask.exe
    2006-11-02 16:55:18 ----A---- C:\Windows\system32\bthserv.dll
    2006-11-02 16:55:12 ----A---- C:\Windows\system32\tsbyuv.dll
    2006-11-02 16:55:12 ----A---- C:\Windows\system32\iyuv_32.dll
    2006-11-02 16:55:11 ----A---- C:\Windows\system32\msyuv.dll
    2006-11-02 16:55:07 ----A---- C:\Windows\system32\usbperf.dll
    2006-11-02 16:55:06 ----N---- C:\Windows\system32\CIRCoInst.dll
    2006-11-02 16:55:05 ----A---- C:\Windows\system32\winusb.dll
    2006-11-02 16:55:04 ----A---- C:\Windows\system32\hidserv.dll
    2006-11-02 16:55:02 ----A---- C:\Windows\system32\hid.dll
    2006-11-02 16:54:54 ----A---- C:\Windows\system32\WUDFCoinstaller.dll
    2006-11-02 16:54:43 ----A---- C:\Windows\system32\WUDFx.dll
    2006-11-02 16:54:41 ----A---- C:\Windows\system32\WUDFPlatform.dll
    2006-11-02 16:54:38 ----A---- C:\Windows\system32\WUDFSvc.dll
    2006-11-02 16:54:38 ----A---- C:\Windows\system32\WUDFHost.exe
    2006-11-02 16:54:03 ----A---- C:\Windows\system32\montr_ci.dll
    2006-11-02 16:54:01 ----A---- C:\Windows\system32\vga256.dll
    2006-11-02 16:53:59 ----A---- C:\Windows\system32\vga64k.dll
    2006-11-02 16:53:58 ----A---- C:\Windows\system32\vga.dll
    2006-11-02 16:53:53 ----A---- C:\Windows\system32\framebuf.dll
    2006-11-02 16:52:45 ----A---- C:\Windows\system32\VSSVC.exe
    2006-11-02 16:52:43 ----A---- C:\Windows\system32\vssapi.dll
    2006-11-02 16:52:38 ----A---- C:\Windows\system32\iscsidsc.dll
    2006-11-02 16:52:38 ----A---- C:\Windows\system32\iscsicpl.dll
    2006-11-02 16:52:37 ----A---- C:\Windows\system32\iscsicli.exe
    2006-11-02 16:52:36 ----A---- C:\Windows\system32\iscsicpl.exe
    2006-11-02 16:52:34 ----A---- C:\Windows\system32\iscsiwmi.dll
    2006-11-02 16:52:34 ----A---- C:\Windows\system32\iscsiexe.dll
    2006-11-02 16:52:32 ----A---- C:\Windows\system32\iscsium.dll
    2006-11-02 16:52:32 ----A---- C:\Windows\system32\iscsied.dll
    2006-11-02 16:52:27 ----A---- C:\Windows\system32\hbaapi.dll
    2006-11-02 16:52:19 ----A---- C:\Windows\system32\swprv.dll
    2006-11-02 16:52:17 ----A---- C:\Windows\system32\diskraid.exe
    2006-11-02 16:52:16 ----A---- C:\Windows\system32\diskpart.exe
    2006-11-02 16:52:12 ----A---- C:\Windows\system32\vssadmin.exe
    2006-11-02 16:52:10 ----A---- C:\Windows\system32\vsstrace.dll
    2006-11-02 16:52:09 ----A---- C:\Windows\system32\eventcls.dll
    2006-11-02 16:52:08 ----A---- C:\Windows\system32\vss_ps.dll
    2006-11-02 16:52:06 ----A---- C:\Windows\system32\vds.exe
    2006-11-02 16:52:00 ----A---- C:\Windows\system32\Storprop.dll
    2006-11-02 16:52:00 ----A---- C:\Windows\system32\dmdskmgr.dll
    2006-11-02 16:51:58 ----A---- C:\Windows\system32\ole32.dll
    2006-11-02 16:51:58 ----A---- C:\Windows\system32\dmvdsitf.dll
    2006-11-02 16:51:57 ----A---- C:\Windows\system32\vdsdyn.dll
    2006-11-02 16:51:57 ----A---- C:\Windows\system32\dmdlgs.dll
    2006-11-02 16:51:56 ----A---- C:\Windows\system32\vdsbas.dll
    2006-11-02 16:51:55 ----A---- C:\Windows\system32\comsvcs.dll
    2006-11-02 16:51:54 ----A---- C:\Windows\system32\vdsldr.exe
    2006-11-02 16:51:54 ----A---- C:\Windows\system32\imapi2fs.dll
    2006-11-02 16:51:53 ----A---- C:\Windows\system32\dmutil.dll
    2006-11-02 16:51:49 ----A---- C:\Windows\system32\imapi2.dll
    2006-11-02 16:51:47 ----A---- C:\Windows\system32\dmintf.dll
    2006-11-02 16:51:46 ----A---- C:\Windows\system32\vdsutil.dll
    2006-11-02 16:51:43 ----A---- C:\Windows\system32\vds_ps.dll
    2006-11-02 16:51:43 ----A---- C:\Windows\system32\imapi.dll
    2006-11-02 16:51:26 ----A---- C:\Windows\system32\msdtctm.dll
    2006-11-02 16:51:26 ----A---- C:\Windows\system32\AuxiliaryDisplayApi.dll
    2006-11-02 16:51:21 ----A---- C:\Windows\system32\AuxiliaryDisplayClassInstaller.dll
    2006-11-02 16:51:20 ----A---- C:\Windows\system32\comuid.dll
    2006-11-02 16:51:19 ----A---- C:\Windows\system32\clbcatq.dll
    2006-11-02 16:51:16 ----A---- C:\Windows\system32\catsrvut.dll
    2006-11-02 16:51:08 ----A---- C:\Windows\system32\comsnap.dll
    2006-11-02 16:51:06 ----A---- C:\Windows\system32\catsrv.dll
    2006-11-02 16:51:05 ----A---- C:\Windows\system32\msmmsp.dll
    2006-11-02 16:51:00 ----A---- C:\Windows\system32\msdtcprx.dll
    2006-11-02 16:50:59 ----A---- C:\Windows\system32\rpcss.dll
    2006-11-02 16:50:58 ----A---- C:\Windows\system32\dcomcnfg.exe
    2006-11-02 16:50:56 ----A---- C:\Windows\system32\comrepl.dll
    2006-11-02 16:50:53 ----A---- C:\Windows\system32\mtstocom.exe
    2006-11-02 16:50:51 ----A---- C:\Windows\system32\stclient.dll
    2006-11-02 16:50:50 ----A---- C:\Windows\system32\catsrvps.dll
    2006-11-02 16:50:49 ----A---- C:\Windows\system32\txflog.dll
    2006-11-02 16:50:46 ----A---- C:\Windows\system32\colbact.dll
    2006-11-02 16:50:44 ----A---- C:\Windows\system32\msdtcuiu.dll
    2006-11-02 16:50:43 ----A---- C:\Windows\system32\mtxdm.dll
    2006-11-02 16:50:42 ----A---- C:\Windows\system32\mtxoci.dll
    2006-11-02 16:50:41 ----A---- C:\Windows\system32\mtxlegih.dll
    2006-11-02 16:50:40 ----A---- C:\Windows\system32\mtxex.dll
    2006-11-02 16:50:39 ----A---- C:\Windows\system32\msdtckrm.dll
    2006-11-02 16:50:39 ----A---- C:\Windows\system32\mfcsubs.dll
    2006-11-02 16:50:38 ----A---- C:\Windows\system32\mtxclu.dll
    2006-11-02 16:50:37 ----A---- C:\Windows\system32\msdtc.exe
    2006-11-02 16:50:35 ----A---- C:\Windows\system32\xolehlp.dll
    2006-11-02 16:50:35 ----A---- C:\Windows\system32\msdtclog.dll
    2006-11-02 16:50:34 ----A---- C:\Windows\system32\Sens.dll
    2006-11-02 16:50:32 ----A---- C:\Windows\system32\trkwks.dll
    2006-11-02 16:50:29 ----A---- C:\Windows\system32\SensApi.dll
    2006-11-02 16:50:28 ----A---- C:\Windows\system32\olecli32.dll
    2006-11-02 16:50:27 ----A---- C:\Windows\system32\olesvr32.dll
    2006-11-02 16:50:27 ----A---- C:\Windows\system32\oledlg.dll
    2006-11-02 16:50:25 ----A---- C:\Windows\system32\olepro32.dll
    2006-11-02 16:50:25 ----A---- C:\Windows\system32\asycfilt.dll
    2006-11-02 16:50:24 ----A---- C:\Windows\system32\olethk32.dll
    2006-11-02 16:50:22 ----A---- C:\Windows\system32\iprop.dll
    2006-11-02 16:50:22 ----A---- C:\Windows\system32\dllhost.exe
    2006-11-02 16:50:21 ----A---- C:\Windows\system32\dllhst3g.exe
    2006-11-02 16:50:20 ----A---- C:\Windows\system32\RPCNDFP.dll
    2006-11-02 16:50:20 ----A---- C:\Windows\system32\comcat.dll
    2006-11-02 16:50:19 ----A---- C:\Windows\system32\Locator.exe
    2006-11-02 16:50:18 ----A---- C:\Windows\system32\RpcNs4.dll
    2006-11-02 16:50:18 ----A---- C:\Windows\system32\RpcDiag.dll
  • garfield619garfield619 Philippines New
    edited December 2008
    2006-11-02 16:50:16 ----A---- C:\Windows\system32\RpcPing.exe
    2006-11-02 16:50:16 ----A---- C:\Windows\system32\rpcnsh.dll
    2006-11-02 16:50:13 ----A---- C:\Windows\system32\rpchttp.dll
    2006-11-02 16:50:09 ----A---- C:\Windows\system32\winhttp.dll
    2006-11-02 16:50:09 ----A---- C:\Windows\system32\WinFXDocObj.exe
    2006-11-02 16:50:09 ----A---- C:\Windows\system32\webcheck.dll
    2006-11-02 16:50:09 ----A---- C:\Windows\system32\msrating.dll
    2006-11-02 16:50:05 ----A---- C:\Windows\system32\vbscript.dll
    2006-11-02 16:50:02 ----A---- C:\Windows\system32\licmgr10.dll
    2006-11-02 16:50:02 ----A---- C:\Windows\system32\jscript.dll
    2006-11-02 16:50:00 ----A---- C:\Windows\system32\url.dll
    2006-11-02 16:49:59 ----A---- C:\Windows\system32\extmgr.dll
    2006-11-02 16:49:58 ----A---- C:\Windows\system32\occache.dll
    2006-11-02 16:49:48 ----A---- C:\Windows\system32\corpol.dll
    2006-11-02 16:49:45 ----A---- C:\Windows\system32\whhelper.dll
    2006-11-02 16:49:45 ----A---- C:\Windows\system32\iedkcs32.dll
    2006-11-02 16:49:42 ----A---- C:\Windows\system32\ieaksie.dll
    2006-11-02 16:49:38 ----A---- C:\Windows\system32\ieakeng.dll
    2006-11-02 16:49:33 ----A---- C:\Windows\system32\admparse.dll
    2006-11-02 16:49:32 ----A---- C:\Windows\system32\inseng.dll
    2006-11-02 16:49:29 ----A---- C:\Windows\system32\wscript.exe
    2006-11-02 16:49:29 ----A---- C:\Windows\system32\cscript.exe
    2006-11-02 16:49:24 ----A---- C:\Windows\system32\scrobj.dll
    2006-11-02 16:49:23 ----A---- C:\Windows\system32\wshext.dll
    2006-11-02 16:49:23 ----A---- C:\Windows\system32\wextract.exe
    2006-11-02 16:49:22 ----A---- C:\Windows\system32\iexpress.exe
    2006-11-02 16:49:16 ----A---- C:\Windows\system32\wshcon.dll
    2006-11-02 16:49:16 ----A---- C:\Windows\system32\scrrun.dll
    2006-11-02 16:49:16 ----A---- C:\Windows\system32\msfeeds.dll
    2006-11-02 16:49:13 ----A---- C:\Windows\system32\iepeers.dll
    2006-11-02 16:49:11 ----A---- C:\Windows\system32\dispex.dll
    2006-11-02 16:49:09 ----A---- C:\Windows\system32\msfeedsbs.dll
    2006-11-02 16:49:09 ----A---- C:\Windows\system32\iertutil.dll
    2006-11-02 16:49:06 ----A---- C:\Windows\system32\msfeedssync.exe
    2006-11-02 16:49:04 ----A---- C:\Windows\system32\imgutil.dll
    2006-11-02 16:48:59 ----A---- C:\Windows\system32\mshta.exe
    2006-11-02 16:48:57 ----A---- C:\Windows\system32\cryptdlg.dll
    2006-11-02 16:48:51 ----A---- C:\Windows\system32\shsetup.dll
    2006-11-02 16:48:49 ----A---- C:\Windows\system32\verclsid.exe
    2006-11-02 16:48:42 ----A---- C:\Windows\system32\ntshrui.dll
    2006-11-02 16:48:38 ----A---- C:\Windows\system32\winver.exe
    2006-11-02 16:48:38 ----A---- C:\Windows\system32\version.dll
    2006-11-02 16:48:36 ----A---- C:\Windows\system32\rshx32.dll
    2006-11-02 16:48:36 ----A---- C:\Windows\system32\dssec.dll
    2006-11-02 16:48:36 ----A---- C:\Windows\system32\aclui.dll
    2006-11-02 16:48:33 ----A---- C:\Windows\system32\runonce.exe
    2006-11-02 16:48:33 ----A---- C:\Windows\system32\rundll32.exe
    2006-11-02 16:48:32 ----A---- C:\Windows\system32\RunLegacyCPLElevated.exe
    2006-11-02 16:48:31 ----A---- C:\Windows\system32\RegCtrl.dll
    2006-11-02 16:48:30 ----A---- C:\Windows\system32\powercpl.dll
    2006-11-02 16:48:27 ----A---- C:\Windows\system32\ntlanui2.dll
    2006-11-02 16:48:22 ----A---- C:\Windows\system32\fontview.exe
    2006-11-02 16:48:22 ----A---- C:\Windows\system32\fontext.dll
    2006-11-02 16:48:18 ----A---- C:\Windows\system32\panmap.dll
    2006-11-02 16:48:18 ----A---- C:\Windows\system32\lpksetup.exe
    2006-11-02 16:48:18 ----A---- C:\Windows\system32\efsadu.dll
    2006-11-02 16:48:17 ----A---- C:\Windows\system32\powrprof.dll
    2006-11-02 16:48:17 ----A---- C:\Windows\system32\dskquoui.dll
    2006-11-02 16:48:17 ----A---- C:\Windows\system32\dskquota.dll
    2006-11-02 16:48:17 ----A---- C:\Windows\system32\batmeter.dll
    2006-11-02 16:48:16 ----A---- C:\Windows\system32\usbui.dll
    2006-11-02 16:48:14 ----A---- C:\Windows\system32\msports.dll
    2006-11-02 16:48:13 ----A---- C:\Windows\system32\lpremove.exe
    2006-11-02 16:48:13 ----A---- C:\Windows\system32\LangCleanupSysprepAction.dll
    2006-11-02 16:48:12 ----A---- C:\Windows\system32\mspaint.exe
    2006-11-02 16:48:11 ----A---- C:\Windows\system32\MUILanguageCleanup.dll
    2006-11-02 16:48:11 ----A---- C:\Windows\system32\makecab.exe
    2006-11-02 16:48:08 ----A---- C:\Windows\system32\diantz.exe
    2006-11-02 16:48:06 ----A---- C:\Windows\system32\eudcedit.exe
    2006-11-02 16:48:06 ----A---- C:\Windows\system32\console.dll
    2006-11-02 16:48:03 ----A---- C:\Windows\system32\extrac32.exe
    2006-11-02 16:48:02 ----A---- C:\Windows\system32\cabinet.dll
    2006-11-02 16:47:59 ----A---- C:\Windows\system32\sud.dll
    2006-11-02 16:47:59 ----A---- C:\Windows\system32\notepad.exe
    2006-11-02 16:47:58 ----A---- C:\Windows\system32\osk.exe
    2006-11-02 16:47:56 ----A---- C:\Windows\system32\srchadmin.dll
    2006-11-02 16:47:56 ----A---- C:\Windows\system32\msswch.dll
    2006-11-02 16:47:54 ----A---- C:\Windows\system32\stobject.dll
    2006-11-02 16:47:52 ----A---- C:\Windows\system32\SystemPropertiesProtection.exe
    2006-11-02 16:47:51 ----A---- C:\Windows\system32\themecpl.dll
    2006-11-02 16:47:51 ----A---- C:\Windows\system32\SystemPropertiesRemote.exe
    2006-11-02 16:47:51 ----A---- C:\Windows\system32\SystemPropertiesPerformance.exe
    2006-11-02 16:47:51 ----A---- C:\Windows\system32\SystemPropertiesHardware.exe
    2006-11-02 16:47:51 ----A---- C:\Windows\system32\SystemPropertiesDataExecutionPrevention.exe
    2006-11-02 16:47:50 ----A---- C:\Windows\system32\usercpl.dll
    2006-11-02 16:47:49 ----A---- C:\Windows\system32\SystemPropertiesComputerName.exe
    2006-11-02 16:47:49 ----A---- C:\Windows\system32\SystemPropertiesAdvanced.exe
    2006-11-02 16:47:49 ----A---- C:\Windows\system32\DpiScaling.exe
    2006-11-02 16:47:49 ----A---- C:\Windows\system32\ComputerDefaults.exe
    2006-11-02 16:47:47 ----A---- C:\Windows\system32\systemcpl.dll
    2006-11-02 16:47:47 ----A---- C:\Windows\system32\DeviceProperties.exe
    2006-11-02 16:47:47 ----A---- C:\Windows\system32\AdapterTroubleshooter.exe
    2006-11-02 16:47:46 ----A---- C:\Windows\system32\taskmgr.exe
    2006-11-02 16:47:44 ----A---- C:\Windows\system32\zipfldr.dll
    2006-11-02 16:47:43 ----A---- C:\Windows\system32\deskperf.dll
    2006-11-02 16:47:42 ----A---- C:\Windows\system32\deskmon.dll
    2006-11-02 16:47:42 ----A---- C:\Windows\system32\autoplay.dll
    2006-11-02 16:47:41 ----A---- C:\Windows\system32\deskadp.dll
    2006-11-02 16:47:37 ----A---- C:\Windows\system32\grpconv.exe
    2006-11-02 16:47:36 ----A---- C:\Windows\system32\systray.exe
    2006-11-02 16:47:36 ----A---- C:\Windows\system32\control.exe
    2006-11-02 16:47:35 ----A---- C:\Windows\system32\shfolder.dll
    2006-11-02 16:47:24 ----A---- C:\Windows\system32\shwebsvc.dll
    2006-11-02 16:47:20 ----A---- C:\Windows\system32\thumbcache.dll
    2006-11-02 16:47:14 ----A---- C:\Windows\system32\shgina.dll
    2006-11-02 16:47:13 ----A---- C:\Windows\system32\shimgvw.dll
    2006-11-02 16:47:12 ----A---- C:\Windows\system32\shpafact.dll
    2006-11-02 16:47:11 ----A---- C:\Windows\system32\shacct.dll
    2006-11-02 16:47:09 ----A---- C:\Windows\system32\mlang.dll
    2006-11-02 16:47:06 ----A---- C:\Windows\system32\packager.dll
    2006-11-02 16:47:06 ----A---- C:\Windows\system32\mydocs.dll
    2006-11-02 16:47:05 ----A---- C:\Windows\system32\prevhost.exe
    2006-11-02 16:47:05 ----A---- C:\Windows\system32\netplwiz.dll
    2006-11-02 16:47:03 ----A---- C:\Windows\system32\dsquery.dll
    2006-11-02 16:47:02 ----A---- C:\Windows\system32\propsys.dll
    2006-11-02 16:47:02 ----A---- C:\Windows\system32\Netplwiz.exe
    2006-11-02 16:47:02 ----A---- C:\Windows\system32\browseui.dll
    2006-11-02 16:47:01 ----A---- C:\Windows\system32\msieftp.dll
    2006-11-02 16:47:01 ----A---- C:\Windows\system32\msident.dll
    2006-11-02 16:46:59 ----A---- C:\Windows\system32\dsuiext.dll
    2006-11-02 16:46:58 ----A---- C:\Windows\system32\msidle.dll
    2006-11-02 16:46:58 ----A---- C:\Windows\system32\docprop.dll
    2006-11-02 16:46:55 ----A---- C:\Windows\system32\shsvcs.dll
    2006-11-02 16:46:54 ----A---- C:\Windows\system32\diskcopy.dll
    2006-11-02 16:46:53 ----A---- C:\Windows\system32\cabview.dll
    2006-11-02 16:46:52 ----A---- C:\Windows\system32\uxtheme.dll
    2006-11-02 16:46:51 ----A---- C:\Windows\system32\comdlg32.dll
    2006-11-02 16:46:49 ----A---- C:\Windows\system32\shdocvw.dll
    2006-11-02 16:46:49 ----A---- C:\Windows\system32\comctl32.dll
    2006-11-02 16:46:47 ----A---- C:\Windows\system32\shlwapi.dll
    2006-11-02 16:46:45 ----A---- C:\Windows\system32\fdeploy.dll
    2006-11-02 16:46:44 ----A---- C:\Windows\system32\fde.dll
    2006-11-02 16:46:33 ----A---- C:\Windows\system32\gpsvc.dll
    2006-11-02 16:46:33 ----A---- C:\Windows\system32\ExplorerFrame.dll
    2006-11-02 16:46:32 ----A---- C:\Windows\system32\themeui.dll
    2006-11-02 16:46:22 ----A---- C:\Windows\system32\gpupdate.exe
    2006-11-02 16:46:20 ----A---- C:\Windows\system32\gpresult.exe
    2006-11-02 16:46:17 ----A---- C:\Windows\system32\shunimpl.dll
    2006-11-02 16:46:17 ----A---- C:\Windows\system32\gpedit.dll
    2006-11-02 16:46:11 ----A---- C:\Windows\system32\gpapi.dll
    2006-11-02 16:46:08 ----A---- C:\Windows\system32\Wldap32.dll
    2006-11-02 16:46:07 ----A---- C:\Windows\system32\nslookup.exe
    2006-11-02 16:45:58 ----A---- C:\Windows\system32\ntdsapi.dll
    2006-11-02 16:45:53 ----A---- C:\Windows\system32\CertEnroll.dll
    2006-11-02 16:45:46 ----A---- C:\Windows\system32\samsrv.dll
    2006-11-02 16:45:35 ----A---- C:\Windows\system32\netapi32.dll
    2006-11-02 16:45:32 ----A---- C:\Windows\system32\adsnt.dll
    2006-11-02 16:45:31 ----A---- C:\Windows\system32\activeds.dll
    2006-11-02 16:45:30 ----A---- C:\Windows\system32\adsldp.dll
    2006-11-02 16:45:28 ----A---- C:\Windows\system32\net1.exe
    2006-11-02 16:45:28 ----A---- C:\Windows\system32\adsldpc.dll
    2006-11-02 16:45:27 ----A---- C:\Windows\system32\netlogon.dll
    2006-11-02 16:45:25 ----A---- C:\Windows\system32\samlib.dll
    2006-11-02 16:45:25 ----A---- C:\Windows\system32\adsmsext.dll
    2006-11-02 16:45:21 ----A---- C:\Windows\system32\w32topl.dll
    2006-11-02 16:45:21 ----A---- C:\Windows\system32\net.exe
    2006-11-02 16:45:20 ----A---- C:\Windows\system32\winrnr.dll
    2006-11-02 16:45:18 ----A---- C:\Windows\system32\xactsrv.dll
    2006-11-02 16:45:18 ----A---- C:\Windows\system32\unattendedjoin.exe
    2006-11-02 16:45:17 ----A---- C:\Windows\system32\wkssvc.dll
    2006-11-02 16:45:17 ----A---- C:\Windows\system32\browser.dll
    2006-11-02 16:45:16 ----A---- C:\Windows\system32\srvsvc.dll
    2006-11-02 16:45:15 ----A---- C:\Windows\system32\seclogon.dll
    2006-11-02 16:45:14 ----A---- C:\Windows\system32\credui.dll
    2006-11-02 16:45:11 ----A---- C:\Windows\system32\rsaenh.dll
    2006-11-02 16:45:11 ----A---- C:\Windows\system32\at.exe
    2006-11-02 16:45:09 ----A---- C:\Windows\system32\sscore.dll
    2006-11-02 16:45:09 ----A---- C:\Windows\system32\dssenh.dll
    2006-11-02 16:45:08 ----A---- C:\Windows\system32\pautoenr.dll
    2006-11-02 16:45:08 ----A---- C:\Windows\system32\netrap.dll
    2006-11-02 16:45:07 ----A---- C:\Windows\system32\dimsjob.dll
    2006-11-02 16:45:06 ----A---- C:\Windows\system32\dimsroam.dll
    2006-11-02 16:45:04 ----A---- C:\Windows\system32\feclient.dll
    2006-11-02 16:45:02 ----A---- C:\Windows\system32\rekeywiz.exe
    2006-11-02 16:45:01 ----A---- C:\Windows\system32\efsui.exe
    2006-11-02 16:44:58 ----A---- C:\Windows\system32\winshfhc.dll
    2006-11-02 16:44:47 ----A---- C:\Windows\system32\lsasrv.dll
    2006-11-02 16:44:42 ----A---- C:\Windows\system32\winlogon.exe
    2006-11-02 16:44:42 ----A---- C:\Windows\system32\wininit.exe
    2006-11-02 16:44:38 ----A---- C:\Windows\system32\UI0Detect.exe
    2006-11-02 16:44:34 ----A---- C:\Windows\system32\wlrmdr.exe
    2006-11-02 16:44:34 ----A---- C:\Windows\system32\mpnotify.exe
    2006-11-02 16:44:33 ----A---- C:\Windows\system32\WlS0WndH.dll
    2006-11-02 16:44:33 ----A---- C:\Windows\system32\LogonUI.exe
    2006-11-02 16:44:31 ----A---- C:\Windows\system32\wmsgapi.dll
    2006-11-02 16:44:31 ----A---- C:\Windows\system32\sysntfy.dll
    2006-11-02 16:44:18 ----A---- C:\Windows\system32\slcc.dll
    2006-11-02 16:44:14 ----A---- C:\Windows\system32\slwga.dll
    2006-11-02 16:44:12 ----A---- C:\Windows\system32\SLCExt.dll
    2006-11-02 16:44:10 ----A---- C:\Windows\system32\pidgenx.dll
    2006-11-02 16:44:09 ----A---- C:\Windows\system32\kerberos.dll
    2006-11-02 16:44:04 ----A---- C:\Windows\system32\syskey.exe
    2006-11-02 16:44:03 ----A---- C:\Windows\system32\secproc_ssp_isv.dll
    2006-11-02 16:44:03 ----A---- C:\Windows\system32\secproc_ssp.dll
    2006-11-02 16:44:00 ----A---- C:\Windows\system32\msdrm.dll
    2006-11-02 16:44:00 ----A---- C:\Windows\system32\azroles.dll
    2006-11-02 16:43:56 ----A---- C:\Windows\system32\ntmarta.dll
    2006-11-02 16:43:55 ----A---- C:\Windows\system32\authz.dll
    2006-11-02 16:43:54 ----A---- C:\Windows\system32\profsvc.dll
    2006-11-02 16:43:53 ----A---- C:\Windows\system32\userenv.dll
    2006-11-02 16:43:53 ----A---- C:\Windows\system32\msv1_0.dll
    2006-11-02 16:43:52 ----A---- C:\Windows\system32\userinit.exe
    2006-11-02 16:43:52 ----A---- C:\Windows\system32\AzSqlExt.dll
    2006-11-02 16:43:51 ----A---- C:\Windows\system32\wdigest.dll
    2006-11-02 16:43:50 ----A---- C:\Windows\system32\gptext.dll
    2006-11-02 16:43:50 ----A---- C:\Windows\system32\auditpol.exe
    2006-11-02 16:43:49 ----A---- C:\Windows\system32\shutdown.exe
    2006-11-02 16:43:48 ----A---- C:\Windows\system32\TSpkg.dll
    2006-11-02 16:43:48 ----A---- C:\Windows\system32\proquota.exe
    2006-11-02 16:43:45 ----A---- C:\Windows\system32\secur32.dll
    2006-11-02 16:43:44 ----A---- C:\Windows\system32\esent.dll
    2006-11-02 16:43:44 ----A---- C:\Windows\system32\credwiz.exe
    2006-11-02 16:43:44 ----A---- C:\Windows\system32\credssp.dll
    2006-11-02 16:43:43 ----A---- C:\Windows\system32\keymgr.dll
    2006-11-02 16:43:43 ----A---- C:\Windows\system32\cmdkey.exe
    2006-11-02 16:43:42 ----A---- C:\Windows\system32\scksp.dll
    2006-11-02 16:43:42 ----A---- C:\Windows\system32\lsass.exe
    2006-11-02 16:43:41 ----A---- C:\Windows\system32\consent.exe
    2006-11-02 16:43:41 ----A---- C:\Windows\system32\basecsp.dll
    2006-11-02 16:43:39 ----A---- C:\Windows\system32\security.dll
    2006-11-02 16:43:37 ----A---- C:\Windows\system32\certutil.exe
    2006-11-02 16:43:34 ----A---- C:\Windows\system32\CertEnrollUI.dll
    2006-11-02 16:43:34 ----A---- C:\Windows\system32\appinfo.dll
    2006-11-02 16:43:29 ----A---- C:\Windows\system32\certcli.dll
    2006-11-02 16:43:25 ----A---- C:\Windows\system32\scesrv.dll
    2006-11-02 16:43:23 ----A---- C:\Windows\system32\msi.dll
    2006-11-02 16:43:22 ----A---- C:\Windows\system32\w32time.dll
    2006-11-02 16:43:22 ----A---- C:\Windows\system32\cryptui.dll
    2006-11-02 16:43:20 ----A---- C:\Windows\system32\scecli.dll
    2006-11-02 16:43:20 ----A---- C:\Windows\system32\certreq.exe
    2006-11-02 16:43:18 ----A---- C:\Windows\system32\SmartcardCredentialProvider.dll
    2006-11-02 16:43:17 ----A---- C:\Windows\system32\w32tm.exe
    2006-11-02 16:43:17 ----A---- C:\Windows\system32\certenc.dll
    2006-11-02 16:43:15 ----A---- C:\Windows\system32\SecEdit.exe
    2006-11-02 16:43:13 ----A---- C:\Windows\system32\WinSCard.dll
    2006-11-02 16:43:13 ----A---- C:\Windows\system32\SCardSvr.dll
    2006-11-02 16:43:12 ----A---- C:\Windows\system32\SCardDlg.dll
    2006-11-02 16:43:11 ----A---- C:\Windows\system32\ncrypt.dll
    2006-11-02 16:43:11 ----A---- C:\Windows\system32\bcrypt.dll
    2006-11-02 16:43:10 ----A---- C:\Windows\system32\cryptsvc.dll
    2006-11-02 16:43:10 ----A---- C:\Windows\system32\certprop.dll
    2006-11-02 16:43:06 ----A---- C:\Windows\system32\wintrust.dll
    2006-11-02 16:43:05 ----A---- C:\Windows\system32\psbase.dll
    2006-11-02 16:43:05 ----A---- C:\Windows\system32\ncryptui.dll
    2006-11-02 16:43:05 ----A---- C:\Windows\system32\capisp.dll
    2006-11-02 16:43:04 ----A---- C:\Windows\system32\keyiso.dll
    2006-11-02 16:43:04 ----A---- C:\Windows\system32\dpapimig.exe
    2006-11-02 16:43:04 ----A---- C:\Windows\system32\cngaudit.dll
    2006-11-02 16:43:03 ----A---- C:\Windows\system32\pstorsvc.dll
    2006-11-02 16:43:03 ----A---- C:\Windows\system32\cryptext.dll
    2006-11-02 16:43:02 ----A---- C:\Windows\system32\mssip32.dll
    2006-11-02 16:43:02 ----A---- C:\Windows\system32\mscat32.dll
    2006-11-02 16:43:01 ----A---- C:\Windows\system32\softpub.dll
    2006-11-02 16:43:01 ----A---- C:\Windows\system32\pstorec.dll
    2006-11-02 16:43:01 ----A---- C:\Windows\system32\mssign32.dll
    2006-11-02 16:43:00 ----A---- C:\Windows\system32\cryptnet.dll
    2006-11-02 16:42:54 ----A---- C:\Windows\system32\cryptdll.dll
    2006-11-02 16:42:53 ----A---- C:\Windows\system32\esentutl.exe
    2006-11-02 16:42:51 ----A---- C:\Windows\system32\esentprf.dll
    2006-11-02 16:42:47 ----A---- C:\Windows\system32\schtasks.exe
    2006-11-02 16:42:46 ----A---- C:\Windows\system32\CompMgmtLauncher.exe
    2006-11-02 16:42:39 ----A---- C:\Windows\system32\powercfg.exe
    2006-11-02 16:42:38 ----A---- C:\Windows\system32\bootcfg.exe
    2006-11-02 16:42:33 ----A---- C:\Windows\system32\getmac.exe
    2006-11-02 16:42:32 ----A---- C:\Windows\system32\msiexec.exe
    2006-11-02 16:42:31 ----A---- C:\Windows\system32\eventcreate.exe
    2006-11-02 16:42:30 ----A---- C:\Windows\system32\ntlanman.dll
    2006-11-02 16:42:26 ----A---- C:\Windows\system32\acledit.dll
    2006-11-02 16:42:23 ----A---- C:\Windows\system32\msiltcfg.dll
    2006-11-02 16:42:22 ----A---- C:\Windows\system32\msisip.dll
    2006-11-02 16:42:21 ----A---- C:\Windows\system32\milcore.dll
    2006-11-02 16:42:18 ----A---- C:\Windows\system32\wmicmiplugin.dll
    2006-11-02 16:42:17 ----A---- C:\Windows\system32\msihnd.dll
    2006-11-02 16:42:15 ----A---- C:\Windows\system32\WsmSvc.dll
    2006-11-02 16:42:15 ----A---- C:\Windows\system32\WsmCl.dll
    2006-11-02 16:42:15 ----A---- C:\Windows\system32\winrsmgr.dll
    2006-11-02 16:42:14 ----A---- C:\Windows\system32\winrshost.exe
    2006-11-02 16:42:13 ----A---- C:\Windows\system32\winrscmd.dll
    2006-11-02 16:42:13 ----A---- C:\Windows\system32\winrs.exe
    2006-11-02 16:42:13 ----A---- C:\Windows\system32\wevtsvc.dll
    2006-11-02 16:42:12 ----A---- C:\Windows\system32\WsmWmiPl.dll
    2006-11-02 16:42:11 ----A---- C:\Windows\system32\WsmAuto.dll
    2006-11-02 16:42:11 ----A---- C:\Windows\system32\WSManMigrationPlugin.dll
    2006-11-02 16:42:11 ----A---- C:\Windows\system32\winrssrv.dll
    2006-11-02 16:42:10 ----A---- C:\Windows\system32\WsmProv.dll
    2006-11-02 16:42:09 ----A---- C:\Windows\system32\WSManHTTPConfig.exe
    2006-11-02 16:42:05 ----A---- C:\Windows\system32\miguiresource.dll
    2006-11-02 16:41:52 ----A---- C:\Windows\system32\mmc.exe
    2006-11-02 16:41:38 ----A---- C:\Windows\system32\mmcndmgr.dll
    2006-11-02 16:41:20 ----A---- C:\Windows\system32\ncobjapi.dll
    2006-11-02 16:41:14 ----A---- C:\Windows\system32\taskschd.dll
    2006-11-02 16:41:14 ----A---- C:\Windows\system32\taskeng.exe
    2006-11-02 16:41:13 ----A---- C:\Windows\system32\taskcomp.dll
    2006-11-02 16:41:05 ----A---- C:\Windows\system32\wevtapi.dll
    2006-11-02 16:41:03 ----A---- C:\Windows\system32\wevtutil.exe
    2006-11-02 16:41:03 ----A---- C:\Windows\system32\wecsvc.dll
    2006-11-02 16:40:56 ----A---- C:\Windows\system32\wecutil.exe
    2006-11-02 16:40:55 ----A---- C:\Windows\system32\TaskSchdPS.dll
    2006-11-02 16:40:54 ----A---- C:\Windows\system32\wevtfwd.dll
    2006-11-02 16:40:53 ----A---- C:\Windows\system32\TSChannel.dll
    2006-11-02 16:40:49 ----A---- C:\Windows\system32\wecapi.dll
    2006-11-02 16:40:48 ----A---- C:\Windows\system32\objsel.dll
    2006-11-02 16:40:38 ----A---- C:\Windows\system32\mstask.dll
    2006-11-02 16:40:36 ----A---- C:\Windows\system32\netid.dll
    2006-11-02 16:40:33 ----A---- C:\Windows\system32\bitsadmin.exe
    2006-11-02 16:40:32 ----A---- C:\Windows\system32\loghours.dll
    2006-11-02 16:40:32 ----A---- C:\Windows\system32\localsec.dll
    2006-11-02 16:40:32 ----A---- C:\Windows\system32\dsprop.dll
    2006-11-02 16:40:29 ----A---- C:\Windows\system32\azroleui.dll
    2006-11-02 16:40:26 ----A---- C:\Windows\system32\certmgr.dll
    2006-11-02 16:40:25 ----A---- C:\Windows\system32\wsecedit.dll
    2006-11-02 16:40:24 ----A---- C:\Windows\system32\bitsprx5.dll
    2006-11-02 16:40:24 ----A---- C:\Windows\system32\bitsprx4.dll
    2006-11-02 16:40:24 ----A---- C:\Windows\system32\bitsprx3.dll
    2006-11-02 16:40:23 ----A---- C:\Windows\system32\bitsprx2.dll
    2006-11-02 16:40:23 ----A---- C:\Windows\system32\bitsigd.dll
    2006-11-02 16:40:22 ----A---- C:\Windows\system32\wer.dll
    2006-11-02 16:40:22 ----A---- C:\Windows\system32\qmgrprxy.dll
    2006-11-02 16:40:21 ----A---- C:\Windows\system32\bitsperf.dll
    2006-11-02 16:40:19 ----A---- C:\Windows\system32\els.dll
    2006-11-02 16:40:18 ----A---- C:\Windows\system32\mycomput.dll
    2006-11-02 16:40:14 ----A---- C:\Windows\system32\mmcbase.dll
    2006-11-02 16:40:13 ----A---- C:\Windows\system32\eventvwr.exe
    2006-11-02 16:40:11 ----A---- C:\Windows\system32\mmcshext.dll
    2006-11-02 16:40:11 ----A---- C:\Windows\system32\cic.dll
    2006-11-02 16:40:10 ----A---- C:\Windows\system32\wercon.exe
    2006-11-02 16:40:08 ----A---- C:\Windows\system32\DfsShlEx.dll
    2006-11-02 16:40:07 ----A---- C:\Windows\system32\wersvc.dll
    2006-11-02 16:40:07 ----A---- C:\Windows\system32\sqmapi.dll
    2006-11-02 16:40:04 ----A---- C:\Windows\system32\wercplsupport.dll
    2006-11-02 16:40:03 ----A---- C:\Windows\system32\WerFaultSecure.exe
    2006-11-02 16:40:02 ----A---- C:\Windows\system32\WerFault.exe
    2006-11-02 16:40:00 ----A---- C:\Windows\system32\UIAutomationCore.dll
    2006-11-02 16:40:00 ----A---- C:\Windows\system32\Faultrep.dll
    2006-11-02 16:39:58 ----A---- C:\Windows\system32\accessibilitycpl.dll
    2006-11-02 16:39:57 ----A---- C:\Windows\system32\wermgr.exe
    2006-11-02 16:39:56 ----A---- C:\Windows\system32\werdiagcontroller.dll
    2006-11-02 16:39:54 ----A---- C:\Windows\system32\Utilman.exe
    2006-11-02 16:39:54 ----A---- C:\Windows\system32\sethc.exe
    2006-11-02 16:39:54 ----A---- C:\Windows\system32\Magnify.exe
    2006-11-02 16:39:51 ----A---- C:\Windows\system32\Magnification.dll
    2006-11-02 16:39:50 ----A---- C:\Windows\system32\AtBroker.exe
    2006-11-02 16:39:49 ----A---- C:\Windows\system32\WindowsCodecsExt.dll
    2006-11-02 16:39:49 ----A---- C:\Windows\system32\TRAPI.dll
    2006-11-02 16:39:48 ----A---- C:\Windows\system32\NativeHooks.dll
    2006-11-02 16:39:46 ----A---- C:\Windows\system32\dwm.exe
    2006-11-02 16:39:45 ----A---- C:\Windows\system32\pcaui.dll
    2006-11-02 16:39:42 ----A---- C:\Windows\system32\dwmapi.dll
    2006-11-02 16:39:41 ----A---- C:\Windows\system32\dwmredir.dll
    2006-11-02 16:39:39 ----A---- C:\Windows\system32\uxsms.dll
    2006-11-02 16:39:28 ----A---- C:\Windows\system32\CompatUI.dll
    2006-11-02 16:39:26 ----A---- C:\Windows\system32\pcaelv.exe
    2006-11-02 16:39:25 ----A---- C:\Windows\system32\pcalua.exe
    2006-11-02 16:39:24 ----A---- C:\Windows\system32\pcaui.exe
    2006-11-02 16:39:23 ----A---- C:\Windows\system32\acppage.dll
    2006-11-02 16:39:21 ----A---- C:\Windows\system32\IMJP10K.DLL
    2006-11-02 16:39:18 ----A---- C:\Windows\system32\msctf.dll
    2006-11-02 16:39:06 ----A---- C:\Windows\system32\duser.dll
    2006-11-02 16:38:54 ----A---- C:\Windows\system32\usp10.dll
    2006-11-02 16:38:43 ----A---- C:\Windows\system32\input.dll
    2006-11-02 16:38:41 ----A---- C:\Windows\system32\MsCtfMonitor.dll
    2006-11-02 16:38:40 ----A---- C:\Windows\system32\msimtf.dll
    2006-11-02 16:38:39 ----A---- C:\Windows\system32\msutb.dll
    2006-11-02 16:38:38 ----A---- C:\Windows\system32\msctfui.dll
    2006-11-02 16:38:38 ----A---- C:\Windows\system32\CHxReadingStringIME.dll
    2006-11-02 16:38:37 ----A---- C:\Windows\system32\mscms.dll
    2006-11-02 16:38:35 ----A---- C:\Windows\system32\oleacc.dll
    2006-11-02 16:38:34 ----A---- C:\Windows\system32\softkbd.dll
    2006-11-02 16:38:33 ----A---- C:\Windows\system32\mscandui.dll
    2006-11-02 16:38:31 ----A---- C:\Windows\system32\ctfmon.exe
    2006-11-02 16:38:27 ----A---- C:\Windows\system32\msls31.dll
    2006-11-02 16:38:24 ----A---- C:\Windows\system32\msctfp.dll
    2006-11-02 16:38:24 ----A---- C:\Windows\system32\msaatext.dll
    2006-11-02 16:38:21 ----A---- C:\Windows\system32\nddeapi.dll
    2006-11-02 16:38:21 ----A---- C:\Windows\system32\lpk.dll
    2006-11-02 16:38:21 ----A---- C:\Windows\system32\dispdiag.exe
    2006-11-02 16:38:18 ----A---- C:\Windows\system32\atmfd.dll
    2006-11-02 16:38:17 ----A---- C:\Windows\system32\msimg32.dll
    2006-11-02 16:38:17 ----A---- C:\Windows\system32\mf3216.dll
    2006-11-02 16:38:17 ----A---- C:\Windows\system32\imm32.dll
    2006-11-02 16:38:16 ----A---- C:\Windows\system32\t2embed.dll
    2006-11-02 16:38:16 ----A---- C:\Windows\system32\conime.exe
    2006-11-02 16:38:16 ----A---- C:\Windows\system32\colorui.dll
    2006-11-02 16:38:15 ----A---- C:\Windows\system32\htui.dll
    2006-11-02 16:38:15 ----A---- C:\Windows\system32\fontsub.dll
    2006-11-02 16:38:15 ----A---- C:\Windows\system32\dciman32.dll
    2006-11-02 16:38:14 ----A---- C:\Windows\system32\muifontsetup.dll
    2006-11-02 16:38:13 ----A---- C:\Windows\system32\WcsPlugInService.dll
    2006-11-02 16:38:13 ----A---- C:\Windows\system32\icmui.dll
    2006-11-02 16:38:13 ----A---- C:\Windows\system32\icm32.dll
    2006-11-02 16:38:13 ----A---- C:\Windows\system32\colorcpl.exe
    2006-11-02 16:38:11 ----A---- C:\Windows\system32\atmlib.dll
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\kbdnecnt.dll
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\kbdnecat.dll
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\kbdnec95.dll
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\kbdnec.dll
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\KBDKOR.DLL
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\kbd103.dll
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\kbd101c.dll
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\kbd101b.dll
    2006-11-02 16:38:10 ----A---- C:\Windows\system32\kbd101a.dll
    2006-11-02 16:38:09 ----N---- C:\Windows\system32\kbd106.dll
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\RacEngn.dll
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\KBDYCL.DLL
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\KBDYCC.DLL
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\KBDYAK.DLL
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\kbdlk41a.dll
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\KBDJPN.DLL
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\kbdibm02.dll
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\kbdax2.dll
    2006-11-02 16:38:09 ----A---- C:\Windows\system32\kbd101.dll
    2006-11-02 16:38:08 ----A---- C:\Windows\system32\KBDVNTC.DLL
    2006-11-02 16:38:08 ----A---- C:\Windows\system32\KBDUZB.DLL
    2006-11-02 16:38:08 ----A---- C:\Windows\system32\KBDUSX.DLL
    2006-11-02 16:38:08 ----A---- C:\Windows\system32\KBDUSR.DLL
    2006-11-02 16:38:08 ----A---- C:\Windows\system32\KBDUSL.DLL
    2006-11-02 16:38:08 ----A---- C:\Windows\system32\KBDUSA.DLL
    2006-11-02 16:38:07 ----A---- C:\Windows\system32\KBDURDU.DLL
    2006-11-02 16:38:07 ----A---- C:\Windows\system32\KBDUR1.DLL
    2006-11-02 16:38:07 ----A---- C:\Windows\system32\KBDUR.DLL
    2006-11-02 16:38:07 ----A---- C:\Windows\system32\KBDUKX.DLL
    2006-11-02 16:38:07 ----A---- C:\Windows\system32\KBDUK.DLL
    2006-11-02 16:38:06 ----A---- C:\Windows\system32\KBDUGHR.DLL
    2006-11-02 16:38:06 ----A---- C:\Windows\system32\KBDTURME.DLL
    2006-11-02 16:38:06 ----A---- C:\Windows\system32\KBDTUQ.DLL
    2006-11-02 16:38:06 ----A---- C:\Windows\system32\KBDTUF.DLL
    2006-11-02 16:38:06 ----A---- C:\Windows\system32\KBDTIPRC.DLL
    2006-11-02 16:38:05 ----A---- C:\Windows\system32\KBDTH3.DLL
    2006-11-02 16:38:05 ----A---- C:\Windows\system32\KBDTH2.DLL
    2006-11-02 16:38:05 ----A---- C:\Windows\system32\KBDTH1.DLL
    2006-11-02 16:38:05 ----A---- C:\Windows\system32\KBDTH0.DLL
    2006-11-02 16:38:05 ----A---- C:\Windows\system32\KBDTAT.DLL
    2006-11-02 16:38:05 ----A---- C:\Windows\system32\KBDTAJIK.DLL
    2006-11-02 16:38:04 ----A---- C:\Windows\system32\KBDSYR2.DLL
    2006-11-02 16:38:04 ----A---- C:\Windows\system32\KBDSYR1.DLL
    2006-11-02 16:38:04 ----A---- C:\Windows\system32\KBDSW09.DLL
    2006-11-02 16:38:04 ----A---- C:\Windows\system32\KBDSW.DLL
    2006-11-02 16:38:04 ----A---- C:\Windows\system32\KBDSP.DLL
    2006-11-02 16:38:04 ----A---- C:\Windows\system32\KBDSORST.DLL
    2006-11-02 16:38:03 ----A---- C:\Windows\system32\KBDSOREX.DLL
    2006-11-02 16:38:03 ----A---- C:\Windows\system32\KBDSN1.DLL
    2006-11-02 16:38:03 ----A---- C:\Windows\system32\KBDSMSNO.DLL
    2006-11-02 16:38:03 ----A---- C:\Windows\system32\KBDSMSFI.DLL
    2006-11-02 16:38:03 ----A---- C:\Windows\system32\KBDSL1.DLL
    2006-11-02 16:38:03 ----A---- C:\Windows\system32\KBDSL.DLL
    2006-11-02 16:38:02 ----A---- C:\Windows\system32\KBDSG.DLL
    2006-11-02 16:38:02 ----A---- C:\Windows\system32\KBDSF.DLL
    2006-11-02 16:38:02 ----A---- C:\Windows\system32\KBDRU1.DLL
    2006-11-02 16:38:02 ----A---- C:\Windows\system32\KBDRU.DLL
    2006-11-02 16:38:02 ----A---- C:\Windows\system32\KBDROST.DLL
    2006-11-02 16:38:02 ----A---- C:\Windows\system32\KBDROPR.DLL
    2006-11-02 16:38:01 ----A---- C:\Windows\system32\KBDRO.DLL
    2006-11-02 16:38:01 ----A---- C:\Windows\system32\KBDPO.DLL
    2006-11-02 16:38:01 ----A---- C:\Windows\system32\KBDPL1.DLL
    2006-11-02 16:38:01 ----A---- C:\Windows\system32\KBDPL.DLL
    2006-11-02 16:38:01 ----A---- C:\Windows\system32\KBDPASH.DLL
    2006-11-02 16:38:01 ----A---- C:\Windows\system32\KBDNO1.DLL
    2006-11-02 16:38:00 ----A---- C:\Windows\system32\KBDNO.DLL
    2006-11-02 16:38:00 ----A---- C:\Windows\system32\KBDNEPR.DLL
    2006-11-02 16:38:00 ----A---- C:\Windows\system32\KBDNE.DLL
    2006-11-02 16:38:00 ----A---- C:\Windows\system32\KBDMONMO.DLL
    2006-11-02 16:38:00 ----A---- C:\Windows\system32\KBDMON.DLL
    2006-11-02 16:38:00 ----A---- C:\Windows\system32\KBDMLT48.DLL
    2006-11-02 16:37:59 ----A---- C:\Windows\system32\KBDMLT47.DLL
    2006-11-02 16:37:59 ----A---- C:\Windows\system32\KBDMAORI.DLL
    2006-11-02 16:37:59 ----A---- C:\Windows\system32\KBDMACST.DLL
    2006-11-02 16:37:59 ----A---- C:\Windows\system32\KBDMAC.DLL
    2006-11-02 16:37:59 ----A---- C:\Windows\system32\KBDLV1.DLL
    2006-11-02 16:37:59 ----A---- C:\Windows\system32\KBDLV.DLL
    2006-11-02 16:37:59 ----A---- C:\Windows\system32\KBDLT2.DLL
    2006-11-02 16:37:58 ----A---- C:\Windows\system32\KBDLT1.DLL
    2006-11-02 16:37:58 ----A---- C:\Windows\system32\KBDLT.DLL
    2006-11-02 16:37:58 ----A---- C:\Windows\system32\KBDLAO.DLL
    2006-11-02 16:37:58 ----A---- C:\Windows\system32\KBDLA.DLL
    2006-11-02 16:37:58 ----A---- C:\Windows\system32\KBDKYR.DLL
    2006-11-02 16:37:58 ----A---- C:\Windows\system32\KBDKHMR.DLL
    2006-11-02 16:37:58 ----A---- C:\Windows\system32\KBDKAZ.DLL
    2006-11-02 16:37:57 ----A---- C:\Windows\system32\KBDIULAT.DLL
    2006-11-02 16:37:57 ----A---- C:\Windows\system32\KBDIT142.DLL
    2006-11-02 16:37:57 ----A---- C:\Windows\system32\KBDIT.DLL
    2006-11-02 16:37:57 ----A---- C:\Windows\system32\KBDIR.DLL
    2006-11-02 16:37:57 ----A---- C:\Windows\system32\KBDINUK2.DLL
    2006-11-02 16:37:57 ----A---- C:\Windows\system32\KBDINTEL.DLL
    2006-11-02 16:37:56 ----A---- C:\Windows\system32\KBDINTAM.DLL
    2006-11-02 16:37:56 ----A---- C:\Windows\system32\KBDINPUN.DLL
    2006-11-02 16:37:56 ----A---- C:\Windows\system32\KBDINORI.DLL
    2006-11-02 16:37:56 ----A---- C:\Windows\system32\KBDINMAR.DLL
    2006-11-02 16:37:56 ----A---- C:\Windows\system32\KBDINMAL.DLL
    2006-11-02 16:37:56 ----A---- C:\Windows\system32\KBDINKAN.DLL
    2006-11-02 16:37:56 ----A---- C:\Windows\system32\KBDINHIN.DLL
    2006-11-02 16:37:56 ----A---- C:\Windows\system32\KBDINGUJ.DLL
    2006-11-02 16:37:55 ----A---- C:\Windows\system32\KBDINDEV.DLL
    2006-11-02 16:37:55 ----A---- C:\Windows\system32\KBDINBEN.DLL
    2006-11-02 16:37:55 ----A---- C:\Windows\system32\KBDINBE2.DLL
    2006-11-02 16:37:55 ----A---- C:\Windows\system32\KBDINBE1.DLL
    2006-11-02 16:37:55 ----A---- C:\Windows\system32\KBDINASA.DLL
    2006-11-02 16:37:55 ----A---- C:\Windows\system32\KBDIC.DLL
    2006-11-02 16:37:54 ----A---- C:\Windows\system32\KBDHU1.DLL
    2006-11-02 16:37:54 ----A---- C:\Windows\system32\KBDHU.DLL
    2006-11-02 16:37:54 ----A---- C:\Windows\system32\KBDHEPT.DLL
    2006-11-02 16:37:54 ----A---- C:\Windows\system32\KBDHELA3.DLL
    2006-11-02 16:37:54 ----A---- C:\Windows\system32\KBDHELA2.DLL
    2006-11-02 16:37:53 ----A---- C:\Windows\system32\KBDHEB.DLL
    2006-11-02 16:37:53 ----A---- C:\Windows\system32\KBDHE319.DLL
    2006-11-02 16:37:53 ----A---- C:\Windows\system32\KBDHE220.DLL
    2006-11-02 16:37:53 ----A---- C:\Windows\system32\KBDHE.DLL
    2006-11-02 16:37:52 ----A---- C:\Windows\system32\KBDGRLND.DLL
    2006-11-02 16:37:52 ----A---- C:\Windows\system32\KBDGR1.DLL
    2006-11-02 16:37:52 ----A---- C:\Windows\system32\KBDGR.DLL
    2006-11-02 16:37:52 ----A---- C:\Windows\system32\KBDGKL.DLL
    2006-11-02 16:37:52 ----A---- C:\Windows\system32\kbdgeoqw.dll
    2006-11-02 16:37:52 ----A---- C:\Windows\system32\kbdgeoer.dll
    2006-11-02 16:37:51 ----A---- C:\Windows\system32\KBDGEO.DLL
    2006-11-02 16:37:51 ----A---- C:\Windows\system32\KBDGAE.DLL
    2006-11-02 16:37:51 ----A---- C:\Windows\system32\KBDFR.DLL
    2006-11-02 16:37:51 ----A---- C:\Windows\system32\KBDFO.DLL
    2006-11-02 16:37:51 ----A---- C:\Windows\system32\KBDFI1.DLL
    2006-11-02 16:37:51 ----A---- C:\Windows\system32\KBDFI.DLL
    2006-11-02 16:37:51 ----A---- C:\Windows\system32\KBDFC.DLL
    2006-11-02 16:37:50 ----A---- C:\Windows\system32\KBDFA.DLL
    2006-11-02 16:37:50 ----A---- C:\Windows\system32\KBDEST.DLL
    2006-11-02 16:37:50 ----A---- C:\Windows\system32\KBDES.DLL
    2006-11-02 16:37:50 ----A---- C:\Windows\system32\KBDDV.DLL
    2006-11-02 16:37:50 ----A---- C:\Windows\system32\KBDDIV2.DLL
    2006-11-02 16:37:50 ----A---- C:\Windows\system32\KBDDIV1.DLL
    2006-11-02 16:37:49 ----A---- C:\Windows\system32\KBDDA.DLL
    2006-11-02 16:37:49 ----A---- C:\Windows\system32\KBDCZ2.DLL
    2006-11-02 16:37:49 ----A---- C:\Windows\system32\KBDCZ1.DLL
    2006-11-02 16:37:49 ----A---- C:\Windows\system32\KBDCZ.DLL
    2006-11-02 16:37:49 ----A---- C:\Windows\system32\KBDCR.DLL
    2006-11-02 16:37:49 ----A---- C:\Windows\system32\KBDCAN.DLL
    2006-11-02 16:37:49 ----A---- C:\Windows\system32\KBDCA.DLL
    2006-11-02 16:37:48 ----A---- C:\Windows\system32\KBDBULG.DLL
    2006-11-02 16:37:48 ----A---- C:\Windows\system32\KBDBU.DLL
    2006-11-02 16:37:48 ----A---- C:\Windows\system32\KBDBR.DLL
    2006-11-02 16:37:48 ----A---- C:\Windows\system32\KBDBLR.DLL
    2006-11-02 16:37:48 ----A---- C:\Windows\system32\KBDBHC.DLL
    2006-11-02 16:37:47 ----A---- C:\Windows\system32\KBDBGPH.DLL
    2006-11-02 16:37:47 ----A---- C:\Windows\system32\KBDBENE.DLL
    2006-11-02 16:37:47 ----A---- C:\Windows\system32\KBDBE.DLL
    2006-11-02 16:37:47 ----A---- C:\Windows\system32\KBDBASH.DLL
    2006-11-02 16:37:47 ----A---- C:\Windows\system32\KBDAZEL.DLL
    2006-11-02 16:37:47 ----A---- C:\Windows\system32\KBDAZE.DLL
    2006-11-02 16:37:46 ----A---- C:\Windows\system32\KBDARMW.DLL
    2006-11-02 16:37:46 ----A---- C:\Windows\system32\KBDARME.DLL
    2006-11-02 16:37:46 ----A---- C:\Windows\system32\KBDAL.DLL
    2006-11-02 16:37:46 ----A---- C:\Windows\system32\KBDA3.DLL
    2006-11-02 16:37:46 ----A---- C:\Windows\system32\KBDA2.DLL
    2006-11-02 16:37:45 ----A---- C:\Windows\system32\KBDUS.DLL
    2006-11-02 16:37:45 ----A---- C:\Windows\system32\KBDA1.DLL
    2006-11-02 16:37:42 ----A---- C:\Windows\system32\WSDApi.dll
    2006-11-02 16:37:40 ----A---- C:\Windows\system32\RelMon.dll
    2006-11-02 16:37:33 ----A---- C:\Windows\system32\RstrtMgr.dll
    2006-11-02 16:37:32 ----A---- C:\Windows\system32\osblprov.dll
    2006-11-02 16:37:32 ----A---- C:\Windows\system32\osbaseln.dll
    2006-11-02 16:37:30 ----A---- C:\Windows\system32\umb.dll
    2006-11-02 16:37:30 ----A---- C:\Windows\system32\SmiEngine.dll
    2006-11-02 16:37:30 ----A---- C:\Windows\system32\RmClient.exe
    2006-11-02 16:37:30 ----A---- C:\Windows\system32\fdSSDP.dll
    2006-11-02 16:37:29 ----A---- C:\Windows\system32\RacAgent.exe
    2006-11-02 16:37:29 ----A---- C:\Windows\system32\IPBusEnum.dll
    2006-11-02 16:37:29 ----A---- C:\Windows\system32\fdWSD.dll
    2006-11-02 16:37:28 ----A---- C:\Windows\system32\NcdProp.dll
    2006-11-02 16:37:27 ----A---- C:\Windows\system32\fundisc.dll
    2006-11-02 16:37:26 ----A---- C:\Windows\system32\PNPXAssocPrx.dll
    2006-11-02 16:37:26 ----A---- C:\Windows\system32\PNPXAssoc.dll
    2006-11-02 16:37:24 ----A---- C:\Windows\system32\IPBusEnumProxy.dll
    2006-11-02 16:37:23 ----A---- C:\Windows\system32\verifier.dll
    2006-11-02 16:37:23 ----A---- C:\Windows\system32\FDResPub.dll
    2006-11-02 16:37:23 ----A---- C:\Windows\system32\fdPHost.dll
    2006-11-02 16:37:22 ----A---- C:\Windows\system32\wusa.exe
    2006-11-02 16:37:22 ----A---- C:\Windows\system32\fdWNet.dll
    2006-11-02 16:37:21 ----A---- C:\Windows\system32\secinit.exe
    2006-11-02 16:37:21 ----A---- C:\Windows\system32\fdProxy.dll
    2006-11-02 16:37:18 ----A---- C:\Windows\system32\PkgMgr.exe
    2006-11-02 16:37:17 ----A---- C:\Windows\system32\ocsetup.exe
    2006-11-02 16:37:17 ----A---- C:\Windows\system32\ocsetapi.dll
    2006-11-02 16:37:11 ----A---- C:\Windows\system32\ActionQueue.dll
    2006-11-02 16:37:10 ----A---- C:\Windows\system32\SmiInstaller.dll
    2006-11-02 16:36:47 ----A---- C:\Windows\system32\cmd.exe
    2006-11-02 16:36:46 ----A---- C:\Windows\system32\msdelta.dll
    2006-11-02 16:36:45 ----A---- C:\Windows\system32\mspatcha.dll
    2006-11-02 16:36:30 ----A---- C:\Windows\system32\clusapi.dll
    2006-11-02 16:36:29 ----A---- C:\Windows\system32\resutils.dll
    2006-11-02 16:36:01 ----A---- C:\Windows\system32\ntvdm.exe
    2006-11-02 16:35:59 ----A---- C:\Windows\system32\wow32.dll
    2006-11-02 16:35:57 ----A---- C:\Windows\system32\csrstub.exe
    2006-11-02 16:35:55 ----A---- C:\Windows\system32\vdmredir.dll
    2006-11-02 16:35:54 ----A---- C:\Windows\system32\vdmdbg.dll
    2006-11-02 16:35:54 ----A---- C:\Windows\system32\pla.dll
    2006-11-02 16:35:54 ----A---- C:\Windows\system32\ntvdmd.dll
    2006-11-02 16:35:53 ----A---- C:\Windows\system32\win.com
    2006-11-02 16:35:53 ----A---- C:\Windows\system32\MdRes.exe
    2006-11-02 16:35:53 ----A---- C:\Windows\system32\graftabl.com
    2006-11-02 16:35:52 ----A---- C:\Windows\system32\MdSched.exe
    2006-11-02 16:35:49 ----A---- C:\Windows\system32\RelPost.exe
    2006-11-02 16:35:47 ----A---- C:\Windows\system32\wdc.dll
    2006-11-02 16:35:47 ----A---- C:\Windows\system32\msdt.exe
    2006-11-02 16:35:44 ----A---- C:\Windows\system32\apilogen.dll
    2006-11-02 16:35:44 ----A---- C:\Windows\system32\amxread.dll
    2006-11-02 16:35:41 ----A---- C:\Windows\system32\msdt.dll
    2006-11-02 16:35:38 ----A---- C:\Windows\system32\pots.dll
    2006-11-02 16:35:38 ----A---- C:\Windows\system32\pnpts.dll
    2006-11-02 16:35:37 ----A---- C:\Windows\system32\msconfig.exe
    2006-11-02 16:35:36 ----A---- C:\Windows\system32\tracerpt.exe
    2006-11-02 16:35:36 ----A---- C:\Windows\system32\msinfo32.exe
    2006-11-02 16:35:36 ----A---- C:\Windows\system32\cofiredm.dll
    2006-11-02 16:35:36 ----A---- C:\Windows\system32\cofire.exe
    2006-11-02 16:35:35 ----A---- C:\Windows\system32\signdrv.dll
    2006-11-02 16:35:34 ----A---- C:\Windows\system32\typeperf.exe
    2006-11-02 16:35:34 ----A---- C:\Windows\system32\logman.exe
    2006-11-02 16:35:33 ----A---- C:\Windows\system32\relog.exe
    2006-11-02 16:35:31 ----A---- C:\Windows\system32\wvc.dll
    2006-11-02 16:35:31 ----A---- C:\Windows\system32\services.exe
    2006-11-02 16:35:31 ----A---- C:\Windows\system32\diskperf.exe
    2006-11-02 16:35:30 ----A---- C:\Windows\system32\perfmon.exe
    2006-11-02 16:35:29 ----A---- C:\Windows\system32\tdh.dll
    2006-11-02 16:35:29 ----A---- C:\Windows\system32\pdh.dll
    2006-11-02 16:35:27 ----A---- C:\Windows\system32\wdi.dll
    2006-11-02 16:35:25 ----A---- C:\Windows\system32\pdhui.dll
    2006-11-02 16:35:24 ----A---- C:\Windows\system32\plasrv.exe
    2006-11-02 16:35:20 ----A---- C:\Windows\system32\perfos.dll
    2006-11-02 16:35:19 ----A---- C:\Windows\system32\perfproc.dll
    2006-11-02 16:35:19 ----A---- C:\Windows\system32\perfnet.dll
    2006-11-02 16:35:19 ----A---- C:\Windows\system32\perfctrs.dll
    2006-11-02 16:35:18 ----A---- C:\Windows\system32\regsvc.dll
    2006-11-02 16:35:18 ----A---- C:\Windows\system32\perfdisk.dll
    2006-11-02 16:35:16 ----A---- C:\Windows\system32\svchost.exe
    2006-11-02 16:35:13 ----A---- C:\Windows\system32\sc.exe
    2006-11-02 16:35:08 ----A---- C:\Windows\system32\sdhcinst.dll
    2006-11-02 16:34:55 ----A---- C:\Windows\system32\winbrand.dll
    2006-11-02 16:34:48 ----A---- C:\Windows\system32\osuninst.dll
    2006-11-02 16:34:33 ----A---- C:\Windows\system32\setupcl.exe
    2006-11-02 16:34:29 ----A---- C:\Windows\system32\unbcl.dll
    2006-11-02 16:34:29 ----A---- C:\Windows\system32\spwizeng.dll
    2006-11-02 16:34:29 ----A---- C:\Windows\system32\spopk.dll
    2006-11-02 16:34:29 ----A---- C:\Windows\system32\spbcd.dll
    2006-11-02 16:34:28 ----A---- C:\Windows\system32\spnet.dll
    2006-11-02 16:34:18 ----A---- C:\Windows\system32\lnkstub.exe
    2006-11-02 16:34:01 ----A---- C:\Windows\system32\syssetup.dll
    2006-11-02 16:34:01 ----A---- C:\Windows\system32\setupugc.exe
    2006-11-02 16:33:57 ----A---- C:\Windows\system32\unattend.dll
    2006-11-02 16:33:56 ----A---- C:\Windows\system32\wdscore.dll
    2006-11-02 16:33:50 ----A---- C:\Windows\system32\kernel32.dll
    2006-11-02 16:33:47 ----A---- C:\Windows\system32\migisol.dll
    2006-11-02 16:33:44 ----A---- C:\Windows\system32\cmipnpinstall.dll
    2006-11-02 16:33:41 ----A---- C:\Windows\system32\sxs.dll
    2006-11-02 16:33:38 ----A---- C:\Windows\system32\cmicryptinstall.dll
    2006-11-02 16:33:36 ----A---- C:\Windows\system32\PnPUnattend.exe
    2006-11-02 16:33:36 ----A---- C:\Windows\system32\gacinstall.dll
    2006-11-02 16:33:36 ----A---- C:\Windows\system32\devmgr.dll
    2006-11-02 16:33:35 ----A---- C:\Windows\system32\PnPutil.exe
    2006-11-02 16:33:32 ----A---- C:\Windows\system32\pnpui.dll
    2006-11-02 16:33:30 ----A---- C:\Windows\system32\sysclass.dll
    2006-11-02 16:33:30 ----A---- C:\Windows\system32\sppnp.dll
    2006-11-02 16:33:30 ----A---- C:\Windows\system32\pnpsetup.dll
    2006-11-02 16:33:29 ----A---- C:\Windows\system32\drvstore.dll
    2006-11-02 16:33:27 ----A---- C:\Windows\system32\dmocx.dll
    2006-11-02 16:33:23 ----A---- C:\Windows\system32\sigverif.exe
    2006-11-02 16:33:21 ----A---- C:\Windows\system32\newdev.exe
    2006-11-02 16:33:21 ----A---- C:\Windows\system32\hotplug.dll
    2006-11-02 16:33:21 ----A---- C:\Windows\system32\hdwwiz.exe
    2006-11-02 16:33:20 ----A---- C:\Windows\system32\newdev.dll
    2006-11-02 16:33:19 ----A---- C:\Windows\system32\InfDefaultInstall.exe
    2006-11-02 16:33:18 ----A---- C:\Windows\system32\DeviceEject.exe
    2006-11-02 16:33:17 ----A---- C:\Windows\system32\sxstrace.exe
    2006-11-02 16:33:16 ----A---- C:\Windows\system32\expand.exe
    2006-11-02 16:33:13 ----A---- C:\Windows\system32\lz32.dll
    2006-11-02 16:33:10 ----A---- C:\Windows\system32\sxsstore.dll
    2006-11-02 16:33:10 ----A---- C:\Windows\system32\basesrv.dll
    2006-11-02 16:33:07 ----A---- C:\Windows\system32\Nlsdl.dll
    2006-11-02 16:33:06 ----A---- C:\Windows\system32\sfc_os.dll
    2006-11-02 16:33:06 ----A---- C:\Windows\system32\normaliz.dll
    2006-11-02 16:33:06 ----A---- C:\Windows\system32\idndl.dll
    2006-11-02 16:33:05 ----A---- C:\Windows\system32\smss.exe
    2006-11-02 16:33:05 ----A---- C:\Windows\system32\sfc.exe
    2006-11-02 16:33:04 ----A---- C:\Windows\system32\C_ISCII.DLL
    2006-11-02 16:33:04 ----A---- C:\Windows\system32\C_IS2022.DLL
    2006-11-02 16:33:03 ----A---- C:\Windows\system32\csrss.exe
    2006-11-02 16:33:03 ----A---- C:\Windows\system32\C_G18030.DLL
    2006-11-02 16:33:02 ----A---- C:\Windows\system32\luainstall.dll
    2006-11-02 16:33:01 ----A---- C:\Windows\system32\sfc.dll
    2006-11-02 16:33:01 ----A---- C:\Windows\system32\Robocopy.exe
    2006-11-02 16:32:56 ----A---- C:\Windows\system32\ktmutil.exe
    2006-11-02 16:32:55 ----A---- C:\Windows\system32\icacls.exe
    2006-11-02 16:32:53 ----A---- C:\Windows\regedit.exe
    2006-11-02 16:32:45 ----A---- C:\Windows\system32\whoami.exe
    2006-11-02 16:32:42 ----A---- C:\Windows\system32\where.exe
    2006-11-02 16:32:40 ----A---- C:\Windows\system32\waitfor.exe
    2006-11-02 16:32:40 ----A---- C:\Windows\system32\setx.exe
    2006-11-02 16:32:40 ----A---- C:\Windows\system32\forfiles.exe
    2006-11-02 16:32:38 ----A---- C:\Windows\system32\xcopy.exe
    2006-11-02 16:32:38 ----A---- C:\Windows\system32\timeout.exe
    2006-11-02 16:32:38 ----A---- C:\Windows\system32\takeown.exe
    2006-11-02 16:32:38 ----A---- C:\Windows\system32\clip.exe
    2006-11-02 16:32:37 ----A---- C:\Windows\system32\choice.exe
    2006-11-02 16:32:34 ----A---- C:\Windows\system32\subst.exe
    2006-11-02 16:32:33 ----A---- C:\Windows\system32\tree.com
    2006-11-02 16:32:33 ----A---- C:\Windows\system32\sort.exe
    2006-11-02 16:32:33 ----A---- C:\Windows\system32\runas.exe
    2006-11-02 16:32:28 ----A---- C:\Windows\system32\reg.exe
    2006-11-02 16:32:22 ----A---- C:\Windows\system32\replace.exe
    2006-11-02 16:32:22 ----A---- C:\Windows\system32\openfiles.exe
    2006-11-02 16:32:21 ----A---- C:\Windows\system32\regedt32.exe
    2006-11-02 16:32:20 ----A---- C:\Windows\system32\Defrag.exe
    2006-11-02 16:32:19 ----A---- C:\Windows\system32\mode.com
    2006-11-02 16:32:18 ----A---- C:\Windows\system32\recover.exe
    2006-11-02 16:32:18 ----A---- C:\Windows\system32\print.exe
    2006-11-02 16:32:18 ----A---- C:\Windows\system32\mountvol.exe
    2006-11-02 16:32:18 ----A---- C:\Windows\system32\clb.dll
    2006-11-02 16:32:17 ----A---- C:\Windows\system32\more.com
    2006-11-02 16:32:16 ----A---- C:\Windows\system32\fsutil.exe
    2006-11-02 16:32:16 ----A---- C:\Windows\system32\format.com
  • garfield619garfield619 Philippines New
    edited December 2008
    2006-11-02 16:32:15 ----A---- C:\Windows\system32\findstr.exe
    2006-11-02 16:32:15 ----A---- C:\Windows\system32\dfrgui.exe
    2006-11-02 16:32:14 ----A---- C:\Windows\system32\label.exe
    2006-11-02 16:32:14 ----A---- C:\Windows\system32\help.exe
    2006-11-02 16:32:14 ----A---- C:\Windows\system32\find.exe
    2006-11-02 16:32:14 ----A---- C:\Windows\system32\dfrgifc.exe
    2006-11-02 16:32:13 ----A---- C:\Windows\system32\dfrgfat.exe
    2006-11-02 16:32:12 ----A---- C:\Windows\system32\driverquery.exe
    2006-11-02 16:32:10 ----A---- C:\Windows\system32\fc.exe
    2006-11-02 16:32:09 ----A---- C:\Windows\system32\shrink.dll
    2006-11-02 16:32:08 ----A---- C:\Windows\system32\doskey.exe
    2006-11-02 16:32:07 ----A---- C:\Windows\system32\DfrgNtfs.exe
    2006-11-02 16:32:06 ----A---- C:\Windows\system32\diskcopy.com
    2006-11-02 16:32:04 ----A---- C:\Windows\system32\diskcomp.com
    2006-11-02 16:32:04 ----A---- C:\Windows\system32\dfrgifps.dll
    2006-11-02 16:32:03 ----A---- C:\Windows\system32\ifsutil.dll
    2006-11-02 16:32:03 ----A---- C:\Windows\system32\cipher.exe
    2006-11-02 16:32:02 ----A---- C:\Windows\system32\compact.exe
    2006-11-02 16:32:02 ----A---- C:\Windows\system32\comp.exe
    2006-11-02 16:32:02 ----A---- C:\Windows\system32\chkntfs.exe
    2006-11-02 16:32:02 ----A---- C:\Windows\system32\chkdsk.exe
    2006-11-02 16:32:02 ----A---- C:\Windows\system32\cacls.exe
    2006-11-02 16:32:01 ----A---- C:\Windows\system32\ulib.dll
    2006-11-02 16:32:00 ----A---- C:\Windows\system32\convert.exe
    2006-11-02 16:31:59 ----A---- C:\Windows\system32\autofmt.exe
    2006-11-02 16:31:59 ----A---- C:\Windows\system32\autoconv.exe
    2006-11-02 16:31:59 ----A---- C:\Windows\system32\autochk.exe
    2006-11-02 16:31:57 ----A---- C:\Windows\system32\uudf.dll
    2006-11-02 16:31:57 ----A---- C:\Windows\system32\untfs.dll
    2006-11-02 16:31:57 ----A---- C:\Windows\system32\chcp.com
    2006-11-02 16:31:57 ----A---- C:\Windows\system32\attrib.exe
    2006-11-02 16:31:54 ----A---- C:\Windows\system32\ufat.dll
    2006-11-02 16:31:54 ----A---- C:\Windows\system32\ifsutilx.dll
    2006-11-02 16:31:54 ----A---- C:\Windows\system32\cnvfat.dll
    2006-11-02 16:31:53 ----A---- C:\Windows\system32\fmifs.dll
    2006-11-02 16:31:52 ----A---- C:\Windows\system32\ureg.dll
    2006-11-02 16:31:27 ----A---- C:\Windows\system32\cscdll.dll
    2006-11-02 16:31:26 ----A---- C:\Windows\system32\cscapi.dll
    2006-11-02 16:31:23 ----A---- C:\Windows\system32\ntdll.dll
    2006-11-02 16:30:58 ----A---- C:\Windows\system32\fltMC.exe
    2006-11-02 16:30:57 ----A---- C:\Windows\system32\fltLib.dll
    2006-11-02 16:30:55 ----A---- C:\Windows\system32\sisbkup.dll
    2006-11-02 16:30:51 ----A---- C:\Windows\system32\txfw32.dll
    2006-11-02 16:30:51 ----A---- C:\Windows\system32\clfsw32.dll
    2006-11-02 16:30:50 ----A---- C:\Windows\system32\msvcrt.dll
    2006-11-02 16:30:49 ----A---- C:\Windows\bfsvc.exe
    2006-11-02 16:30:44 ----A---- C:\Windows\system32\kdusb.dll
    2006-11-02 16:30:44 ----A---- C:\Windows\system32\kdcom.dll
    2006-11-02 16:30:26 ----A---- C:\Windows\system32\bcdsrv.dll
    2006-11-02 16:30:26 ----A---- C:\Windows\system32\bcdedit.exe
    2006-11-02 16:30:25 ----A---- C:\Windows\system32\bcdprov.dll
    2006-11-02 16:30:23 ----A---- C:\Windows\system32\MuiUnattend.exe
    2006-11-02 16:30:23 ----A---- C:\Windows\system32\BOOTVID.DLL
    2006-11-02 16:30:22 ----A---- C:\Windows\system32\TimeDateMUICallback.dll
    2006-11-02 16:30:21 ----A---- C:\Windows\system32\wmiprop.dll
    2006-11-02 16:30:21 ----A---- C:\Windows\system32\setbcdlocale.dll
    2006-11-02 16:30:20 ----A---- C:\Windows\system32\halacpi.dll
    2006-11-02 16:30:19 ----A---- C:\Windows\system32\ucsvc.exe
    2006-11-02 16:30:19 ----A---- C:\Windows\system32\mcupdate_GenuineIntel.dll
    2006-11-02 16:30:18 ----A---- C:\Windows\system32\halmacpi.dll
    2006-11-02 16:30:16 ----A---- C:\Windows\system32\procinst.dll
    2006-11-02 16:30:15 ----A---- C:\Windows\system32\PSHED.DLL
    2006-11-02 16:30:15 ----A---- C:\Windows\system32\ktmw32.dll
    2006-11-02 16:30:08 ----A---- C:\Windows\system32\msvcp60.dll
    2006-11-02 16:30:07 ----A---- C:\Windows\system32\TpmInit.exe
    2006-11-02 16:30:07 ----A---- C:\Windows\fveupdate.exe
    2006-11-02 16:30:04 ----A---- C:\Windows\system32\tpmcompc.dll
    2006-11-02 16:30:04 ----A---- C:\Windows\system32\tbssvc.dll
    2006-11-02 16:30:02 ----A---- C:\Windows\system32\tbs.dll
    2006-11-02 16:30:00 ----A---- C:\Windows\system32\apphelp.dll
    2006-11-02 16:29:57 ----A---- C:\Windows\system32\msvcirt.dll
    2006-11-02 16:29:55 ----A---- C:\Windows\system32\sdbinst.exe
    2006-11-02 16:29:55 ----A---- C:\Windows\system32\msvcrt40.dll
    2006-11-02 16:29:54 ----A---- C:\Windows\system32\shimeng.dll
    2006-11-02 16:29:54 ----A---- C:\Windows\system32\aelupsvc.dll
    2006-11-02 16:29:53 ----A---- C:\Windows\system32\aecache.dll
    2006-11-02 16:26:13 ----A---- C:\Windows\system32\tapiui.dll
    2006-11-02 16:23:38 ----A---- C:\Windows\system32\tcpmon.ini
    2006-11-02 16:20:38 ----A---- C:\Windows\system32\msvbvm60.dll
    2006-11-02 16:11:31 ----A---- C:\Windows\system32\odbcint.dll
    2006-11-02 16:11:31 ----A---- C:\Windows\system32\mscpx32r.dLL
    2006-11-02 16:11:26 ----A---- C:\Windows\system32\odbc16gt.dll
    2006-11-02 16:11:26 ----A---- C:\Windows\system32\ds16gt.dLL
    2006-11-02 16:11:14 ----A---- C:\Windows\system32\msorc32r.dll
    2006-11-02 15:51:44 ----A---- C:\Windows\system32\ir50_qcx.dll
    2006-11-02 15:51:44 ----A---- C:\Windows\system32\ir50_qc.dll
    2006-11-02 15:51:44 ----A---- C:\Windows\system32\ir41_qcx.dll
    2006-11-02 15:51:44 ----A---- C:\Windows\system32\ir41_qc.dll
    2006-11-02 15:51:42 ----A---- C:\Windows\system32\ir50_32.dll
    2006-11-02 15:40:29 ----N---- C:\Windows\system32\pacerprf.ini
    2006-11-02 15:40:02 ----A---- C:\Windows\system32\netevent.dll
    2006-11-02 15:39:48 ----A---- C:\Windows\system32\NAPCLCFG.MSC
    2006-11-02 15:38:59 ----A---- C:\Windows\system32\lltdres.dll
    2006-11-02 15:38:51 ----A---- C:\Windows\system32\WF.msc
    2006-11-02 15:38:49 ----A---- C:\Windows\system32\AuthFWSnapin.dll
    2006-11-02 15:38:48 ----A---- C:\Windows\system32\bridgeres.dll
    2006-11-02 15:38:41 ----A---- C:\Windows\system32\AuthFWWizFwk.dll
    2006-11-02 15:33:30 ----A---- C:\Windows\system32\mshtmler.dll
    2006-11-02 15:31:53 ----A---- C:\Windows\system32\iscsilog.dll
    2006-11-02 15:31:17 ----A---- C:\Windows\system32\diskmgmt.msc
    2006-11-02 15:31:16 ----A---- C:\Windows\system32\dmdskres.dll
    2006-11-02 15:30:35 ----A---- C:\Windows\system32\iologmsg.dll
    2006-11-02 15:30:32 ----A---- C:\Windows\system32\comexp.msc
    2006-11-02 15:29:24 ----A---- C:\Windows\system32\comres.dll
    2006-11-02 15:29:12 ----A---- C:\Windows\system32\storage.dll
    2006-11-02 15:29:12 ----A---- C:\Windows\system32\ole2nls.dll
    2006-11-02 15:29:12 ----A---- C:\Windows\system32\ole2disp.dll
    2006-11-02 15:29:11 ----A---- C:\Windows\system32\typelib.dll
    2006-11-02 15:29:11 ----A---- C:\Windows\system32\ole2.dll
    2006-11-02 15:29:11 ----A---- C:\Windows\system32\compobj.dll
    2006-11-02 15:28:57 ----A---- C:\Windows\system32\oleres.dll
    2006-11-02 15:27:35 ----A---- C:\Windows\system32\ieakui.dll
    2006-11-02 15:26:12 ----A---- C:\Windows\system32\imageres.dll
    2006-11-02 15:25:32 ----A---- C:\Windows\system32\msidntld.dll
    2006-11-02 15:24:20 ----A---- C:\Windows\system32\lusrmgr.msc
    2006-11-02 15:23:05 ----A---- C:\Windows\system32\shellstyle.dll
    2006-11-02 15:21:21 ----A---- C:\Windows\system32\neth.dll
    2006-11-02 15:21:03 ----A---- C:\Windows\system32\netmsg.dll
    2006-11-02 15:20:55 ----A---- C:\Windows\system32\slmgr.vbs
    2006-11-02 15:18:28 ----A---- C:\Windows\system32\msprivs.dll
    2006-11-02 15:17:14 ----A---- C:\Windows\system32\certmgr.msc
    2006-11-02 15:16:46 ----A---- C:\Windows\system32\secproc_isv.dll
    2006-11-02 15:16:44 ----A---- C:\Windows\system32\secproc.dll
    2006-11-02 15:16:44 ----A---- C:\Windows\system32\RMActivate_ssp_isv.exe
    2006-11-02 15:16:44 ----A---- C:\Windows\system32\RMActivate_isv.exe
    2006-11-02 15:16:42 ----A---- C:\Windows\system32\RMActivate_ssp.exe
    2006-11-02 15:16:42 ----A---- C:\Windows\system32\RMActivate.exe
    2006-11-02 15:16:33 ----A---- C:\Windows\system32\winrm.vbs
    2006-11-02 15:16:33 ----A---- C:\Windows\system32\winrm.cmd
    2006-11-02 15:15:56 ----A---- C:\Windows\system32\msimsg.dll
    2006-11-02 15:15:44 ----A---- C:\Windows\system32\eventvwr.msc
    2006-11-02 15:15:43 ----A---- C:\Windows\system32\taskschd.msc
    2006-11-02 15:15:41 ----A---- C:\Windows\system32\WsmRes.dll
    2006-11-02 15:15:35 ----A---- C:\Windows\system32\WmiMgmt.msc
    2006-11-02 15:13:33 ----A---- C:\Windows\system32\services.msc
    2006-11-02 15:13:32 ----A---- C:\Windows\system32\compmgmt.msc
    2006-11-02 15:13:32 ----A---- C:\Windows\system32\azman.msc
    2006-11-02 15:12:32 ----A---- C:\Windows\system32\Narrator.exe
    2006-11-02 15:11:39 ----A---- C:\Windows\system32\acprgwiz.dll
    2006-11-02 15:10:37 ----A---- C:\Windows\system32\dosx.exe
    2006-11-02 15:10:36 ----A---- C:\Windows\system32\WINNLS.DLL
    2006-11-02 15:10:35 ----A---- C:\Windows\system32\WIFEMAN.DLL
    2006-11-02 15:10:34 ----A---- C:\Windows\system32\OLESVR.DLL
    2006-11-02 15:10:32 ----A---- C:\Windows\system32\DDEML.DLL
    2006-11-02 15:10:29 ----A---- C:\Windows\system32\DRWATSON.EXE
    2006-11-02 15:10:28 ----A---- C:\Windows\system32\COMMDLG.DLL
    2006-11-02 15:10:27 ----A---- C:\Windows\system32\WOWDEB.EXE
    2006-11-02 15:10:25 ----A---- C:\Windows\system32\TOOLHELP.DLL
    2006-11-02 15:10:24 ----A---- C:\Windows\system32\WOWEXEC.EXE
    2006-11-02 15:10:22 ----A---- C:\Windows\system32\WINSOCK.DLL
    2006-11-02 15:10:21 ----A---- C:\Windows\system32\MMSYSTEM.DLL
    2006-11-02 15:10:18 ----A---- C:\Windows\system32\WINSPOOL.EXE
    2006-11-02 15:10:15 ----A---- C:\Windows\system32\SHELL.DLL
    2006-11-02 15:10:13 ----A---- C:\Windows\system32\GDI.EXE
    2006-11-02 15:10:12 ----A---- C:\Windows\system32\USER.EXE
    2006-11-02 15:10:07 ----A---- C:\Windows\system32\krnl386.exe
    2006-11-02 15:10:02 ----A---- C:\Windows\system32\mscdexnt.exe
    2006-11-02 15:10:00 ----A---- C:\Windows\system32\redir.exe
    2006-11-02 15:09:59 ----A---- C:\Windows\system32\share.exe
    2006-11-02 15:09:59 ----A---- C:\Windows\system32\GRAPHICS.COM
    2006-11-02 15:09:59 ----A---- C:\Windows\system32\fastopen.exe
    2006-11-02 15:09:59 ----A---- C:\Windows\system32\edit.com
    2006-11-02 15:09:57 ----A---- C:\Windows\system32\KB16.COM
    2006-11-02 15:09:56 ----A---- C:\Windows\system32\nlsfunc.exe
    2006-11-02 15:09:55 ----A---- C:\Windows\system32\mem.exe
    2006-11-02 15:09:55 ----A---- C:\Windows\system32\LOADFIX.COM
    2006-11-02 15:09:53 ----A---- C:\Windows\system32\setver.exe
    2006-11-02 15:09:52 ----A---- C:\Windows\system32\debug.exe
    2006-11-02 15:09:51 ----A---- C:\Windows\system32\exe2bin.exe
    2006-11-02 15:09:50 ----A---- C:\Windows\system32\edlin.exe
    2006-11-02 15:09:49 ----A---- C:\Windows\system32\COMMAND.COM
    2006-11-02 15:09:49 ----A---- C:\Windows\system32\append.exe
    2006-11-02 15:08:53 ----A---- C:\Windows\system32\oleaccrc.dll
    2006-11-02 15:03:35 ----A---- C:\Windows\system32\perfmon.msc
    2006-11-02 15:01:07 ----A---- C:\Windows\system32\spwizres.dll
    2006-11-02 15:01:07 ----A---- C:\Windows\system32\spwizimg.dll
    2006-11-02 14:59:36 ----A---- C:\Windows\system32\devmgmt.msc
    2006-11-02 14:59:02 ----A---- C:\Windows\system32\nlsbres.dll
    2006-11-02 14:58:07 ----A---- C:\Windows\system32\DfrgRes.dll
    2006-11-02 14:56:12 ----A---- C:\Windows\system32\bootstr.dll
    2006-11-02 14:55:07 ----A---- C:\Windows\system32\tpm.msc
    2006-11-02 14:52:34 ----A---- C:\Windows\system32\msobjs.dll
    2006-11-02 14:52:34 ----A---- C:\Windows\system32\msaudite.dll
    2006-11-02 14:52:34 ----A---- C:\Windows\system32\adtschema.dll
    2006-11-02 14:50:25 ----A---- C:\Windows\system32\tapi.dll
    2006-11-02 14:49:40 ----A---- C:\Windows\system32\msvcrt20.dll
    2006-11-02 14:49:40 ----A---- C:\Windows\system32\ctl3d32.dll
    2006-11-02 14:49:40 ----A---- C:\Windows\system32\crtdll.dll
    2006-11-02 14:49:27 ----A---- C:\Windows\system32\mfc40u.dll
    2006-11-02 14:49:27 ----A---- C:\Windows\system32\mfc40.dll
    2006-11-02 14:47:56 ----A---- C:\Windows\system32\vbajet32.dll
    2006-11-02 14:47:56 ----A---- C:\Windows\system32\msxbde40.dll
    2006-11-02 14:47:56 ----A---- C:\Windows\system32\expsrv.dll
    2006-11-02 14:47:55 ----A---- C:\Windows\system32\mswstr10.dll
    2006-11-02 14:47:54 ----A---- C:\Windows\system32\mswdat10.dll
    2006-11-02 14:47:54 ----A---- C:\Windows\system32\mstext40.dll
    2006-11-02 14:47:54 ----A---- C:\Windows\system32\msrepl40.dll
    2006-11-02 14:47:53 ----A---- C:\Windows\system32\msrd3x40.dll
    2006-11-02 14:47:53 ----A---- C:\Windows\system32\msrd2x40.dll
    2006-11-02 14:47:53 ----A---- C:\Windows\system32\mspbde40.dll
    2006-11-02 14:47:52 ----A---- C:\Windows\system32\msltus40.dll
    2006-11-02 14:47:52 ----A---- C:\Windows\system32\msjtes40.dll
    2006-11-02 14:47:52 ----A---- C:\Windows\system32\msjter40.dll
    2006-11-02 14:47:52 ----A---- C:\Windows\system32\msjint40.dll
    2006-11-02 14:47:51 ----A---- C:\Windows\system32\sqlwoa.dll
    2006-11-02 14:47:51 ----A---- C:\Windows\system32\sqlwid.dll
    2006-11-02 14:47:51 ----A---- C:\Windows\system32\msjetoledb40.dll
    2006-11-02 14:47:50 ----A---- C:\Windows\system32\msjet40.dll
    2006-11-02 14:47:50 ----A---- C:\Windows\system32\msexcl40.dll
    2006-11-02 14:47:49 ----A---- C:\Windows\system32\sqlunirl.dll
    2006-11-02 14:47:49 ----A---- C:\Windows\system32\msexch40.dll
    2006-11-02 14:34:32 ----A---- C:\Windows\system32\netfxperf.dll
    2006-11-02 14:34:32 ----A---- C:\Windows\system32\mscories.dll
    2006-11-02 14:34:32 ----A---- C:\Windows\system32\mscorier.dll
    2006-11-02 14:34:31 ----A---- C:\Windows\system32\mscoree.dll
    2006-11-02 14:34:31 ----A---- C:\Windows\system32\dfshim.dll
    2006-11-02 14:25:37 ----A---- C:\Windows\system32\onlinesetup.cmd
    2006-11-02 14:25:08 ----A---- C:\Windows\winhelp.exe
    2006-11-02 14:25:08 ----A---- C:\Windows\system32\win87em.dll
    2006-11-02 14:25:08 ----A---- C:\Windows\system32\ver.dll
    2006-11-02 14:25:08 ----A---- C:\Windows\system32\sysedit.exe
    2006-11-02 14:25:08 ----A---- C:\Windows\system32\pmspl.dll
    2006-11-02 14:25:08 ----A---- C:\Windows\system32\olecli.dll
    2006-11-02 14:25:08 ----A---- C:\Windows\system32\netapi.dll
    2006-11-02 14:25:08 ----A---- C:\Windows\system32\lzexpand.dll
    2006-11-02 14:25:08 ----A---- C:\Windows\system32\ctl3dv2.dll
    2006-10-27 06:10:08 ----N---- C:\Windows\system32\FM20.DLL
    2006-10-27 06:10:06 ----N---- C:\Windows\system32\FM20ENU.DLL
    2006-10-03 19:47:52 ----N---- C:\Windows\system32\GEARAspi.dll
    2006-09-28 16:19:00 ----N---- C:\Windows\system32\Uci32112.dll
    2006-09-22 06:28:32 ----N---- C:\Windows\system32\pxwma.dll
    2006-09-22 06:28:30 ----N---- C:\Windows\system32\PxWave.dll
    2006-09-22 06:28:28 ----N---- C:\Windows\system32\PxSFS.DLL
    2006-09-22 06:28:28 ----N---- C:\Windows\system32\PxMas.dll
    2006-09-22 06:28:26 ----N---- C:\Windows\system32\PxAFS.DLL
    2006-09-22 06:28:26 ----N---- C:\Windows\system32\Px.dll
    2006-09-19 17:01:00 ----N---- C:\Windows\system32\pxdrv.dll
    2006-09-19 15:02:40 ----N---- C:\Windows\system32\CddbWOManagerRoxio.dll
    2006-09-19 15:02:40 ----N---- C:\Windows\system32\CDDBUIRoxio.dll
    2006-09-19 15:02:40 ----N---- C:\Windows\system32\CddbPlaylist2Roxio.dll
    2006-09-19 15:02:40 ----N---- C:\Windows\system32\CddbMusicIDRoxio.dll
    2006-09-19 15:02:40 ----N---- C:\Windows\system32\CddbFileTaggerRoxio.dll
    2006-09-19 15:02:40 ----N---- C:\Windows\system32\CDDBControlRoxio.dll
    2006-09-19 15:02:40 ----N---- C:\Windows\system32\CddbCleanRoxio.dll
    2006-09-19 11:02:38 ----N---- C:\Windows\system32\cdrtc.dll
    2006-09-19 11:02:36 ----N---- C:\Windows\system32\cdral.dll
    2006-08-21 17:00:00 ----N---- C:\Windows\system32\VXBLOCK.dll
    2006-07-25 02:50:40 ----N---- C:\Windows\system32\VBAME.DLL
    2006-07-25 02:50:40 ----N---- C:\Windows\system32\SCP32.DLL
    2006-07-25 02:50:38 ----N---- C:\Windows\system32\MSSTDFMT.DLL
    2006-06-20 14:26:50 ----N---- C:\Windows\system32\mdmxsdk.dll
    2006-03-10 07:58:00 ----N---- C:\Windows\system32\WdfCoInstaller01000.dll
    2006-01-14 00:07:25 ----D---- C:\rsit
    2006-01-10 20:42:44 ----D---- C:\Users\EMMA\AppData\Roaming\Malwarebytes
    2006-01-10 20:42:39 ----D---- C:\ProgramData\Malwarebytes
    2006-01-10 20:42:39 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
    2006-01-09 09:18:28 ----D---- C:\SDFix
    2006-01-09 09:04:09 ----A---- C:\Windows\ntbtlog.txt
    2006-01-01 03:12:37 ----D---- C:\Program Files\CCleaner
    2006-01-01 02:23:10 ----D---- C:\Windows\system32\SupportAppXL
    2006-01-01 02:01:09 ----D---- C:\Program Files\Trend Micro

    ======List of files/folders modified in the last 1 months======

    2007-06-28 10:08:35 ----HD---- C:\System.sav
    2007-02-28 13:30:04 ----N---- C:\Windows\system32\divx.dll

    ======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    R2 rimmptsk;rimmptsk; C:\Windows\system32\DRIVERS\rimmptsk.sys [2006-11-16 32256]
    R2 rimsptsk;rimsptsk; C:\Windows\system32\DRIVERS\rimsptsk.sys [2006-11-15 43520]
    R2 rismxdp;Ricoh xD-Picture Card Driver; C:\Windows\system32\DRIVERS\rixdptsk.sys [2006-11-15 37376]
    R3 GEARAspiWDM;GEARAspiWDM; C:\Windows\System32\Drivers\GEARAspiWDM.sys [2006-09-19 15664]
    R3 HBtnKey;HBtnKey; C:\Windows\system32\DRIVERS\cpqbttn.sys [2006-06-29 9472]
    R3 nvsmu;nvsmu; C:\Windows\system32\DRIVERS\nvsmu.sys [2006-09-15 11520]
    R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2006-11-15 179256]
    R3 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\DRIVERS\wmiacpi.sys [2007-11-17 11264]
    S1 eabfiltr;eabfiltr; C:\Windows\system32\DRIVERS\eabfiltr.sys [2006-06-29 8192]
    S1 eeCtrl;Symantec Eraser Control driver; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [2008-02-13 385072]
    S1 IDSvix86;Symantec Intrusion Prevention Driver; \??\C:\PROGRA~2\Symantec\DEFINI~1\SymcData\idsdefs\20080429.001\IDSvix86.sys [2008-02-14 261680]
    S1 SPBBCDrv;SPBBCDrv; \??\C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCDrv.sys [2006-10-07 406672]
    S1 SRTSP;SRTSP; C:\Windows\System32\Drivers\SRTSP.SYS [2007-11-30 279088]
    S1 SRTSPX;SRTSPX; C:\Windows\System32\Drivers\SRTSPX.SYS [2007-11-30 43696]
    S1 SYMTDI;SYMTDI; C:\Windows\System32\Drivers\SYMTDI.SYS [2007-10-30 191536]
    S2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-20 12672]
    S2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-05 8192]
    S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-18 534016]
    S3 BCM43XX;Broadcom 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-18 534016]
    S3 BthEnum;Bluetooth Request Block Driver; C:\Windows\system32\DRIVERS\BthEnum.sys [2006-11-02 19456]
    S3 BthPan;Bluetooth Device (Personal Area Network); C:\Windows\system32\DRIVERS\bthpan.sys [2006-11-02 92160]
    S3 BTHPORT;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2006-11-02 220160]
    S3 BTHUSB;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2006-11-02 29184]
    S3 CmBatt;Microsoft ACPI Control Method Battery Driver; C:\Windows\system32\DRIVERS\CmBatt.sys [2007-11-17 14208]
    S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2006-11-02 5632]
    S3 E100B;Intel(R) PRO Adapter Driver; C:\Windows\system32\DRIVERS\e100b325.sys [2006-11-02 163328]
    S3 EraserUtilRebootDrv;EraserUtilRebootDrv; \??\C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [2008-02-13 109616]
    S3 HdAudAddService;Microsoft UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\CHDART.sys [2006-11-19 145920]
    S3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-19 986624]
    S3 HSFHWAZL;HSFHWAZL; C:\Windows\system32\DRIVERS\VSTAZL3.SYS [2006-11-02 200704]
    S3 HSXHWAZL;HSXHWAZL; C:\Windows\system32\DRIVERS\HSXHWAZL.sys [2006-10-19 206848]
    S3 ialm;ialm; C:\Windows\system32\DRIVERS\igdkmd32.sys [2006-10-19 1380864]
    S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2006-11-02 8192]
    S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2006-11-02 5888]
    S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2006-11-02 5504]
    S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2006-11-02 6016]
    S3 NAVENG;NAVENG; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20080501.019\NAVENG.SYS [2008-04-17 82256]
    S3 NAVEX15;NAVEX15; \??\C:\PROGRA~2\Symantec\DEFINI~1\VIRUSD~1\20080501.019\NAVEX15.SYS [2008-04-17 895408]
    S3 NVENETFD;NVIDIA nForce Networking Controller Driver; C:\Windows\system32\DRIVERS\nvm60x32.sys [2006-11-02 429056]
    S3 nvlddmkm;nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [2006-12-07 4456416]
    S3 R5U870FLx86;R5U870 UVC Lower Filter ; C:\Windows\System32\Drivers\R5U870FLx86.sys [2006-12-18 73472]
    S3 R5U870FUx86;R5U870 UVC Upper Filter ; C:\Windows\System32\Drivers\R5U870FUx86.sys [2006-12-18 43904]
    S3 RFCOMM;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2006-11-02 49664]
    S3 sdbus;sdbus; C:\Windows\system32\DRIVERS\sdbus.sys [2007-07-04 82432]
    S3 SRTSPL;SRTSPL; C:\Windows\System32\Drivers\SRTSPL.SYS [2007-11-30 317616]
    S3 SYMDNS;SYMDNS; C:\Windows\System32\Drivers\SYMDNS.SYS [2007-10-30 12848]
    S3 SymEvent;SymEvent; \??\C:\Windows\system32\Drivers\SYMEVENT.SYS [2008-03-03 123952]
    S3 SYMFW;SYMFW; C:\Windows\System32\Drivers\SYMFW.SYS [2007-10-30 145968]
    S3 SYMIDS;SYMIDS; C:\Windows\System32\Drivers\SYMIDS.SYS [2007-10-30 39856]
    S3 SYMNDISV;SYMNDISV; C:\Windows\System32\Drivers\SYMNDISV.SYS [2007-10-30 37936]
    S3 SYMREDRV;SYMREDRV; C:\Windows\System32\Drivers\SYMREDRV.SYS [2007-10-30 27696]
    S3 usbvideo;R5U870 (UVC) ; C:\Windows\System32\Drivers\usbvideo.sys [2006-11-02 132352]
    S3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-19 659968]
    S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2006-11-02 82560]

    ======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

    S2 Apple Mobile Device;Apple Mobile Device; C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe [2008-02-18 110592]
    S2 Automatic LiveUpdate Scheduler;Automatic LiveUpdate Scheduler; C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe [2007-09-12 554352]
    S2 Autorun CDROM Monitor;Autorun CDROM Monitor; C:\Windows\system32\SupportAppXL\cdrom_mon.exe [2008-02-19 81920]
    S2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2007-07-24 229376]
    S2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2006-11-02 22016]
    S2 ccEvtMgr;Symantec Event Manager; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2006-10-25 107624]
    S2 ccSetMgr;Symantec Settings Manager; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2006-10-25 107624]
    S2 CLCapSvc;CyberLink Background Capture Service (CBCS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLCapSvc.exe [2006-11-25 270431]
    S2 CLSched;CyberLink Task Scheduler (CTS); C:\Program Files\HP\QuickPlay\Kernel\TV\CLSched.exe [2006-11-25 118877]
    S2 CLTNetCnService;Symantec Lic NetConnect service; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2006-10-25 107624]
    S2 HP Health Check Service;HP Health Check Service; C:\Program Files\Hewlett-Packard\HP Health Check\hphc_service.exe [2006-11-29 63080]
    S2 hpqddsvc;HP CUE DeviceDiscovery Service; C:\Windows\system32\svchost.exe [2006-11-02 22016]
    S2 hpqwmiex;hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [2006-05-03 135168]
    S2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [2006-10-20 61440]
    S2 LiveUpdate Notice Ex;LiveUpdate Notice Service Ex; c:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe [2006-10-25 107624]
    S2 LiveUpdate Notice Service;LiveUpdate Notice Service; C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe [2008-01-29 583048]
    S2 SymAppCore;Symantec AppCore Service; c:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe [2006-09-21 46736]
    S2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-05 386560]
    S3 AddFiltr;AddFiltr; C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\AddFiltr.exe [2006-06-27 126976]
    S3 comHost;COM Host; c:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe [2006-10-14 49296]
    S3 gusvc;Google Updater Service; C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe [2007-09-29 138168]
    S3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2006-11-02 22016]
    S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Roxio\Roxio MyDVD Basic v9\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
    S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2008-02-19 504104]
    S3 ISPwdSvc;Symantec IS Password Validation; c:\Program Files\Norton Internet Security\isPwdSvc.exe [2006-10-27 80552]
    S3 LiveUpdate;LiveUpdate; C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE [2007-09-12 2999664]
    S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2006-10-27 441136]
    S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-27 145184]
    S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2006-11-07 887544]
    S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-11-02 73728]
    S3 Symantec Core LC;Symantec Core LC; C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe [2008-03-03 1251720]
    S3 usprserv;User Privilege Service; C:\Windows\System32\svchost.exe [2006-11-02 22016]

    EOF
  • VekaVeka Finland
    edited December 2008
    Click Start and Run. Type Notepad C:\Windows\wininit.ini and click OK.

    Please post the contents of wininit.ini.


    Please do a scan with Kaspersky Online Scanner

    Note: Internet Explorer should be used

    • Read through the requirements and privacy statement and click on Accept button.
    • It will start downloading and installing the scanner and virus definitions. You will be prompted to install an application from Kaspersky. Click Run.
    • When the downloads have finished, click on Settings.
    • Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
      • Spyware, Adware, Dialers, and other potentially dangerous programs
      • Archives
    • Click on My Computer under Scan and then put the kettle on!
    • Once the scan is complete, it will display the results. Click on View Scan Report.
    • You will see a list of infected items there. Click on Save Report As....
    • Save this report to a convenient place like your Desktop. Change the Files of type to Text file (.txt) before clicking on the Save button.
    • Copy and paste the report into your next reply.
  • garfield619garfield619 Philippines New
    edited December 2008
    I have a problem hooking up the laptop to the net. no connection is active when i insert the line from my PC. is there any way i could install the the kapersky scanner?
  • VekaVeka Finland
    edited December 2008
    No, unfortunately. Please post the contens of wininit.ini.
  • garfield619garfield619 Philippines New
    edited December 2008
    Here it is:

    [rename]
    NUL=C:\Program Files\Common Files\Knowledge Adventure\Uninstall\UnJSA1G.exe
    NUL=C:\Program Files\Common Files\Knowledge Adventure\Uninstall\UNKinder2002.exe
  • VekaVeka Finland
    edited December 2008
    That looks OK. Do you know this "Knowledge Adventure" ?

    How is your computer running?
  • garfield619garfield619 Philippines New
    edited December 2008
    Dont know really. The blue screen is still up. like before i could only work with safe mode :(
  • VekaVeka Finland
    edited December 2008
    Could it be hardware problem or something? I don't see anything suspicious on your logs.
  • garfield619garfield619 Philippines New
    edited December 2008
    Ahhh T__T... i really dont know. at normal startup it says "system dump" thing w/ the blue screen. i really dont know what is the problem :(
  • VekaVeka Finland
    edited December 2008
    Since it seems your problem isn't caused by malwares, please refer to Icrontic's Operating Systems forum with the problem. They will hellp you there.
  • VekaVeka Finland
    edited December 2008
    Glad we could be of assistance! The help you received here was free.

    This topic is now closed. If you wish it reopened, please send a Private Message to Trogan with a link to your thread.

    If you are not the user who started this thread, you must start your own Thread instead :)
    _______________________________
    Have we helped you with any issues you have had with your PCs or other items? If so, you can now help us by Joining Team 93 and fold for a cure.
Sign In or Register to comment.