Jump to content

Recommended Posts

Posted (edited)

Hi Shawnh, I'm sorry to say that I too fell victim to "SECURITY TOOLS" Malware. I'm now left with an Advent 7096 laptop that I feel should be packed up and put away, never to be turned on again :(

I know nothing about computers and so I gave it to a guy I know to fix. He has cleaned hard drive and c drive ??? and now I have been left with NO software on my laptop. I use to use BT Wirefree Broadband, but now the only way that I can access onto the internet is to use the Ethernet cable. My laptop now cannot use Windows to confgure my wireless network apparently. I constantly get error messages of 'DNS ERROR CANNOT FIND SERVER' and I REALLY am at a loss as what to do next? Like I said earlier, I know nothing about computers and don't know which way to turn......

Edited by Plastic Nev
  • Replies 113
  • Created
  • Last Reply

Top Posters In This Topic

Posted (edited)

Hi,

 

Start > Run ...type in ....devmgmt.msc .....ENTER

Click the + next to Network Adapters.

Are there any yellow exclamation marks or red Xs ?

 

Is there an entry with "wireless" named ?

I think this should be ....Marvell Wireless Client....

 

from what I can find ......your 7096 is basically an ECS 331

The wireless ( and other drivers ) are here:

ECS Web Site

 

I am assuming that you have XP ?

 

EDIT

I didn't register the forum .....do you suspect malware Nev ?

Edited by KenB

There is an email going around offering processed pork - gelatin - and salt in a can ......this is simply SPAM !!

 

MiniToolBox

Network Test

Wireless Test

Posted

There may still be some lingering Ken, so if Starbuck wants to take a look it may help.

But where you are coming from could also be a start.

 

Twiceshy, have a look at what KenB has suggested for us please and let us know what you find.

Nev.

 

Need help with your computer problems? Then why not join Free PC Help. Register

here

 

If Free PC Help has helped you then please consider a donation. Click here

 

We are all members helping other members.

Please return here where you may be able to help someone else.

After all, no one knows everything and you may have the answer that someone needs.

 

 

 

--------------------------------------------------------------------

I have installed Windows, now how do I install the curtains? :D

http://i7.photobucket.com/albums/y282/plasticpig/Nev2.gif

  • ExTS Admin
Posted

Hi Twiceshy

 

I can see where Ken is coming from, he's trying to sort out your wireless problem.

I'm more concerned with what 'your mate' has done to the system.

Did he do a reinstall?

Did he clean all the malware off the system?

Why have you no software on the system now?

 

He has cleaned hard drive and c drive ??? and now I have been left with NO software on my laptop.
From your description, i'm thinking he may have reinstalled the OS but didn't bother adding the software back on.

 

If you follow this next step, it should give us a lot of answers,

It seems a lot.... but is really simple:

 

 

  • Download OTL to your desktop.
    if you have problems, try this download link:
    OTL
  • Double click on the icon to run it. Make sure all other windows are closed and to let it run uninterrupted.
  • When the window appears, underneath Output at the top change it to Minimal Output.
  • Check the boxes beside LOP Check and Purity Check

.

 

.

http://img.photobucket.com/albums/v708/starbuck50/new/otlwithlogo.png

 

  • Now copy the lines in the codebox below.
    netsvcs
    %SYSTEMDRIVE%\*.exe
    /md5start
    eventlog.dll
    scecli.dll
    netlogon.dll
    cngaudit.dll
    sceclt.dll
    ntelogon.dll
    logevent.dll
    iaStor.sys
    nvstor.sys
    atapi.sys
    IdeChnDr.sys
    viasraid.sys
    AGP440.sys
    vaxscsi.sys
    nvatabus.sys
    viamraid.sys
    nvata.sys
    nvgts.sys
    iastorv.sys
    ViPrt.sys
    eNetHook.dll
    ahcix86.sys
    KR10N.sys
    nvstor32.sys
    ahcix86s.sys
    nvrd32.sys
    symmpi.sys
    adp3132.sys
    /md5stop
    %systemroot%\*. /mp /s
    %systemroot%\system32\*.dll /lockedfiles
    %systemroot%\Tasks\*.job /lockedfiles
    %systemroot%\system32\drivers\*.sys /lockedfiles
    CREATERESTOREPOINT
    


  • right click in the Custom Scans/Fixes window (under the blue bar) and choose Paste.
     
    http://img.photobucket.com/albums/v708/starbuck50/new%20forum/scan-fix.png
    .
  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post them with your next reply.

 

 

This may get confusing for you, so if you have any questions.... just ask.

 

Thanks.

Member of:

UNITE

Posted

Instruction followed....

 

Twiceshy, have a look at what KenB has suggested for us please and let us know what you find.

Nev.

 

I have done as instructed and this is what I have found -

 

Network Adaptors showed...

MARVELL LIBERTAS 802.11gb/b Wireless LAN Client Adaptor

Realtek RTL 8139/810x Family Fast Ethernet Nic

 

I don't know if this has any bearing on my problem but just below in, OTHER DEVICES, an exclamation mark does show next to PCI MODEM. Out of curiosity I clicked this and it showed,

DRIVER STATUS......The drivers for this device are not installed (code 28) To Reinstall the drivers for this device, Click Reinstall Driver.

 

(I do appreciate the help that you are providing and thank you for being understanding to a beginner :) )

Posted

 

This may get confusing for you, so if you have any questions.... just ask.

 

Thanks.

 

Hi Starbuck, sorry to be a nuisance but when you say,' Check the boxes beside LOP CHECK and PURITY CHECK', do you mean to TICK THEM? :o

Posted

In the USA we say "check".

In the UK they say "tic".

It means the same thing although I get confused by it too.

We are all members helping other members. Please return here where you may be able to help someone else. After all, no one knows everything and you may have the answer that someone needs.

Get help with computer problems. Join Free PC Help here

 

Donations are welcome. Read Here

  • ExTS Admin
Posted
Check the boxes beside LOP CHECK and PURITY CHECK', do you mean to TICK THEM?
RandyL beat me to it.

Yes, so sometimes you will see 'Tick' sometimes you will see 'Check' .... but they both mean the same.

The 2 reports together can be quite large, depending on what's actually on your system.

If you have any problems going over a text allowance for one post..... just post them one after another.

2 posts will still be fine.

Member of:

UNITE

  • ExTS Admin
Posted

Hi Twiceshy

 

Instructions followed but it only gave OTL. Txt??? Have I done it wrong?

A couple of things it could be:

If you have run OTL at any time before, the Extra.txt won't be produced by default on another run. It has to be run slightly different.

Another thing:

The main OTL report will come up on your screen.... but the Extra.txt will be minimised.

You will have click on it from your 'taskbar' to open it.

If the extra.txt was produced, a copy will have been saved in the same location that the main program is stored in:

Eg: if OTL is on your desktop, a copy of the extra.txt and the main.txt will be saved there as well.

If it's there, just click on it to open it and then copy/paste it from there.

If you can't find it.... just let me have the main.txt and we'll take it from there.

 

Thanks.

Member of:

UNITE

Posted

OTL Text

 

I think that I am to blame for that as due to what has happened re. malware, I have to admit I have no confidence now on my laptop and panic :( sorry. The text is so long that I will have to post it in parts.....

 

OTL logfile created on: 22/02/2010 14:42:27 - Run 4

OTL by OldTimer - Version 3.1.30.1 Folder = C:\Documents and Settings\Marian\My Documents\Downloads

Windows XP Professional Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation

Internet Explorer (Version = 6.0.2900.2180)

Locale: 00000809 | Country: United Kingdom | Language: ENG | Date Format: dd/MM/yyyy

 

895.00 Mb Total Physical Memory | 499.00 Mb Available Physical Memory | 56.00% Memory free

2.00 Gb Paging File | 2.00 Gb Available in Paging File | 87.00% Paging File free

Paging file location(s): C:\pagefile.sys 1344 2688 [binary data]

 

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files

Drive C: | 37.25 Gb Total Space | 32.37 Gb Free Space | 86.90% Space Free | Partition Type: NTFS

D: Drive not present or media not loaded

E: Drive not present or media not loaded

F: Drive not present or media not loaded

G: Drive not present or media not loaded

H: Drive not present or media not loaded

I: Drive not present or media not loaded

 

Computer Name: MARIAN-B6A3B32A

Current User Name: Marian

Logged in as Administrator.

 

Current Boot Mode: Normal

Scan Mode: Current user

Company Name Whitelist: Off

Skip Microsoft Files: Off

File Age = 30 Days

Output = Minimal

 

========== Processes (SafeList) ==========

 

PRC - C:\Documents and Settings\Marian\My Documents\Downloads\OTL.exe (OldTimer Tools)

PRC - C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)

PRC - C:\Program Files\Marvell CB35P\Mrv8000x.exe (Marvell®)

PRC - C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)

PRC - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)

PRC - C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.)

PRC - C:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.)

PRC - C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)

PRC - C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation)

PRC - C:\WINDOWS\explorer.exe (Microsoft Corporation)

 

 

========== Modules (SafeList) ==========

 

MOD - C:\Documents and Settings\Marian\My Documents\Downloads\OTL.exe (OldTimer Tools)

MOD - C:\WINDOWS\WinSxS\x86_Microsoft.Windows.Common-Controls_6595b64144ccf1df_6.0.2600.2180_x-ww_a84f1ff9\comctl32.dll (Microsoft Corporation)

 

 

========== Win32 Services (SafeList) ==========

 

SRV - (gupdate) Google Update Service (gupdate) -- C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc.)

SRV - (gusvc) -- C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe (Google)

SRV - (avast! Web Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)

SRV - (avast! Mail Scanner) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)

SRV - (avast! Antivirus) -- C:\Program Files\Alwil Software\Avast5\AvastSvc.exe (ALWIL Software)

SRV - (Ati HotKey Poller) -- C:\WINDOWS\system32\ati2evxx.exe (ATI Technologies Inc.)

SRV - (Microsoft Office Groove Audit Service) -- C:\Program Files\Microsoft Office\Office12\GrooveAuditService.exe (Microsoft Corporation)

SRV - (odserv) -- C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE (Microsoft Corporation)

SRV - (ose) -- C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE (Microsoft Corporation)

SRV - (eutla) -- C:\WINDOWS\system32\vqmyp.dll ()

 

 

========== Driver Services (SafeList) ==========

 

DRV - (W8335XP) Marvell Libertas 802.11g/b Driver for Windows XP (8335) -- C:\WINDOWS\system32\drivers\Mrvw125.sys (Marvell Semiconductor, Inc)

DRV - (aswTdi) -- C:\WINDOWS\system32\drivers\aswTdi.sys (ALWIL Software)

DRV - (aswSP) -- C:\WINDOWS\system32\drivers\aswSP.sys (ALWIL Software)

DRV - (aswRdr) -- C:\WINDOWS\system32\drivers\aswRdr.sys (ALWIL Software)

DRV - (aswMon2) -- C:\WINDOWS\system32\drivers\aswmon2.sys (ALWIL Software)

DRV - (aswFsBlk) -- C:\WINDOWS\system32\drivers\aswFsBlk.sys (ALWIL Software)

DRV - (Aavmker4) -- C:\WINDOWS\system32\drivers\aavmker4.sys (ALWIL Software)

DRV - (ati2mtag) -- C:\WINDOWS\system32\drivers\ati2mtag.sys (ATI Technologies Inc.)

DRV - (RTL8023xp) -- C:\WINDOWS\system32\drivers\Rtnicxp.sys (Realtek Semiconductor Corporation )

DRV - (ALCXWDM) Service for Realtek AC97 Audio (WDM) -- C:\WINDOWS\system32\drivers\ALCXWDM.SYS (Realtek Semiconductor Corp.)

DRV - (AmdK8) -- C:\WINDOWS\system32\drivers\AmdK8.sys (Advanced Micro Devices)

DRV - (Secdrv) -- C:\WINDOWS\system32\drivers\secdrv.sys ()

DRV - (Ptilink) -- C:\WINDOWS\system32\drivers\ptilink.sys (Parallel Technologies, Inc.)

DRV - (rtl8139) Realtek RTL8139(A/B/C) -- C:\WINDOWS\system32\drivers\RTL8139.sys (Realtek Semiconductor Corporation)

 

 

========== Standard Registry (SafeList) ==========

 

 

========== Internet Explorer ==========

 

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = Google Search

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = Google Search

IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google Search

 

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = Google

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = Google

IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = Google Search

IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

 

 

 

O1 HOSTS File: ([2004/08/04 12:00:00 | 000,000,734 | ---- | M]) - C:\WINDOWS\system32\drivers\etc\hosts

O1 - Hosts: 127.0.0.1 localhost

O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)

O2 - BHO: (Google Toolbar Helper) - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O2 - BHO: (Google Toolbar Notifier BHO) - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll (Google Inc.)

O3 - HKLM\..\Toolbar: (Google Toolbar) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O3 - HKCU\..\Toolbar\WebBrowser: (Google Toolbar) - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)

O4 - HKLM..\Run: [] File not found

O4 - HKLM..\Run: [avast5] C:\Program Files\Alwil Software\Avast5\AvastUI.exe (ALWIL Software)

O4 - HKLM..\Run: [GrooveMonitor] C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe (Microsoft Corporation)

O4 - HKLM..\Run: [KernelFaultCheck] File not found

O4 - HKLM..\Run: [Marvell-CB35P] C:\Program Files\Marvell CB35P\Mrv8000x.exe (Marvell®)

O4 - HKLM..\Run: [soundMan] C:\WINDOWS\SOUNDMAN.EXE (Realtek Semiconductor Corp.)

O4 - HKCU..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe (Google Inc.)

O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145

O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)

O8 - Extra context menu item: Google Sidewiki... - C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll (Google Inc.)

O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)

O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)

O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)

O15 - HKLM\..Trusted Domains: 1 domain(s) and sub-domain(s) not assigned to a zone.

O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (Reg Error: Key error.)

O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.254

O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)

O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)

O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)

O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)

O20 - Winlogon\Notify\AtiExtEvent: DllName - Ati2evxx.dll - C:\WINDOWS\System32\ati2evxx.dll (ATI Technologies Inc.)

O24 - Desktop WallPaper: C:\Documents and Settings\Marian\Local Settings\Application Data\Microsoft\Wallpaper1.bmp

O24 - Desktop BackupWallPaper: C:\Documents and Settings\Marian\Local Settings\Application Data\Microsoft\Wallpaper1.bmp

O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)

O32 - HKLM CDRom: AutoRun - 1

O32 - AutoRun File - [2010/02/19 14:22:35 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]

O33 - MountPoints2\{e5011400-1d70-11df-9296-0016ec651d97}\Shell - "" = AutoRun

O33 - MountPoints2\{e5011400-1d70-11df-9296-0016ec651d97}\Shell\AutoRun - "" = Auto&Play

O33 - MountPoints2\{fde72bc8-1d64-11df-9290-0016ec651d97}\Shell - "" = AutoRun

O33 - MountPoints2\{fde72bc8-1d64-11df-9290-0016ec651d97}\Shell\AutoRun - "" = Auto&Play

O34 - HKLM BootExecute: (autocheck autochk *) - File not found

O35 - comfile [open] -- "%1" %*

O35 - exefile [open] -- "%1" %*

 

NetSvcs: 6to4 - File not found

NetSvcs: Ias - C:\WINDOWS\system32\ias [2010/02/19 14:21:58 | 000,000,000 | ---D | M]

NetSvcs: Iprip - File not found

NetSvcs: Irmon - File not found

NetSvcs: NWCWorkstation - File not found

NetSvcs: Nwsapagent - File not found

NetSvcs: WmdmPmSp - File not found

NetSvcs: eutla - C:\WINDOWS\system32\vqmyp.dll ()

 

CREATERESTOREPOINT

Restore point Set: OTL Restore Point (53765113575899136)

 

========== Files/Folders - Created Within 30 Days ==========

 

[2010/02/21 23:34:13 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Local Settings\Application Data\Identities

[2010/02/21 23:02:18 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information

[2010/02/21 23:02:18 | 000,000,000 | ---D | C] -- C:\Program Files\AMD

[2010/02/21 19:21:55 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\appmgmt

[2010/02/21 17:25:33 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\My Documents\Downloads

[2010/02/21 17:00:56 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Local Settings\Application Data\Temp

[2010/02/21 17:00:46 | 000,162,512 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys

[2010/02/21 17:00:46 | 000,019,024 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys

[2010/02/21 17:00:45 | 000,023,376 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys

[2010/02/21 17:00:43 | 000,046,672 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys

[2010/02/21 17:00:41 | 000,100,432 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys

[2010/02/21 17:00:41 | 000,094,800 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys

[2010/02/21 17:00:40 | 000,028,880 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys

[2010/02/21 17:00:10 | 000,153,184 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe

[2010/02/21 17:00:10 | 000,038,848 | ---- | C] (ALWIL Software) -- C:\WINDOWS\System32\avastSS.scr

[2010/02/21 17:00:02 | 000,000,000 | ---D | C] -- C:\Program Files\Alwil Software

[2010/02/21 17:00:02 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Alwil Software

[2010/02/20 20:22:41 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Marian\UserData

[2010/02/20 13:50:11 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbprint.sys

[2010/02/20 13:48:05 | 000,031,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbccgp.sys

[2010/02/20 10:50:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\Minidump

[2010/02/20 08:58:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Google

[2010/02/20 08:48:30 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Citrix

[2010/02/20 08:48:00 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Local Settings\Application Data\Citrix

[2010/02/19 19:37:41 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Google

[2010/02/19 19:37:35 | 000,000,000 | ---D | M] -- C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft

[2010/02/19 17:21:44 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Application Data\Adobe

[2010/02/19 17:20:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Local Settings\Application Data\Google

[2010/02/19 17:20:54 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Application Data\Google

[2010/02/19 17:18:24 | 000,000,000 | ---D | C] -- C:\Program Files\Google

[2010/02/19 17:18:24 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Google

[2010/02/19 16:55:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Application Data\Macromedia

[2010/02/19 16:13:11 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Local Settings\Application Data\WMTools Downloaded Files

[2010/02/19 16:11:40 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Marian\My Documents\My Videos

[2010/02/19 15:19:59 | 000,032,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msonpmon.dll

[2010/02/19 15:18:50 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works

[2010/02/19 15:18:37 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild

[2010/02/19 15:18:08 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio

[2010/02/19 15:18:08 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER

[2010/02/19 15:13:59 | 000,000,000 | ---D | C] -- C:\WINDOWS\SHELLNEW

[2010/02/19 15:13:37 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Local Settings\Application Data\Microsoft Help

[2010/02/19 15:13:26 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office

[2010/02/19 15:13:26 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft Help

[2010/02/19 15:13:05 | 000,000,000 | RH-D | C] -- C:\MSOCache

[2010/02/19 15:10:16 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Marian\Recent

[2010/02/19 15:01:41 | 000,000,000 | -HSD | C] -- C:\RECYCLER

[2010/02/19 14:57:04 | 000,000,000 | ---D | C] -- C:\Program Files\Marvell CB35P

[2010/02/19 14:56:37 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield

[2010/02/19 14:56:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\AzureWave

[2010/02/19 14:52:20 | 000,006,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\splitter.sys

[2010/02/19 14:52:18 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wdmaud.sys

[2010/02/19 14:52:16 | 000,052,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dmusic.sys

[2010/02/19 14:52:10 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\swmidi.sys

[2010/02/19 14:52:08 | 000,142,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aec.sys

[2010/02/19 14:52:06 | 000,171,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kmixer.sys

[2010/02/19 14:52:05 | 000,002,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drmkaud.sys

[2010/02/19 14:52:03 | 000,060,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sysaudio.sys

[2010/02/19 14:52:01 | 000,007,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mskssrv.sys

[2010/02/19 14:51:59 | 000,004,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspqm.sys

[2010/02/19 14:51:56 | 000,005,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspclock.sys

[2010/02/19 14:51:45 | 000,145,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\portcls.sys

[2010/02/19 14:51:45 | 000,145,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\portcls.sys

[2010/02/19 14:51:45 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksuser.dll

[2010/02/19 14:51:45 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksuser.dll

[2010/02/19 14:51:44 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ksproxy.ax

[2010/02/19 14:51:44 | 000,130,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ksproxy.ax

[2010/02/19 14:51:44 | 000,060,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\drmk.sys

[2010/02/19 14:51:44 | 000,060,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\drmk.sys

Posted

Continuation of OTL Text

 

[2010/02/19 14:51:05 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ReinstallBackups

[2010/02/19 14:49:39 | 001,071,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCOMCTL.OCX

[2010/02/19 14:49:39 | 000,662,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\MSCOMCT2.OCX

[2010/02/19 14:43:15 | 010,528,768 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\RTLCPL.EXE

[2010/02/19 14:43:15 | 000,577,536 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\SOUNDMAN.EXE

[2010/02/19 14:43:14 | 018,804,736 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\ALSNDMGR.CPL

[2010/02/19 14:43:13 | 004,127,488 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\System32\drivers\ALCXWDM.SYS

[2010/02/19 14:43:13 | 000,217,088 | ---- | C] (Realtek Semiconductor Corp.) -- C:\WINDOWS\Alcrmv.exe

[2010/02/19 14:43:13 | 000,117,120 | ---- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\drivers\Rtnicxp.sys

[2010/02/19 14:43:13 | 000,036,352 | ---- | C] (Advanced Micro Devices) -- C:\WINDOWS\System32\drivers\AmdK8.sys

[2010/02/19 14:43:13 | 000,009,728 | ---- | C] (Realtek Semiconductor Corporation ) -- C:\WINDOWS\System32\RtNicProp32.dll

[2010/02/19 14:43:12 | 002,495,360 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ativvaxx.dll

[2010/02/19 14:43:12 | 000,286,720 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\atiok3x2.dll

[2010/02/19 14:43:12 | 000,188,416 | ---- | C] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\atipdlxx.dll

[2010/02/19 14:43:12 | 000,147,456 | ---- | C] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\Oemdspif.dll

[2010/02/19 14:43:12 | 000,024,064 | ---- | C] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\ativcoxx.dll

[2010/02/19 14:43:12 | 000,017,408 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\atitvo32.dll

[2010/02/19 14:43:11 | 011,304,960 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\atioglxx.dll

[2010/02/19 14:43:11 | 000,425,984 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\ATIDEMGX.dll

[2010/02/19 14:43:11 | 000,401,408 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\atikvmag.dll

[2010/02/19 14:43:11 | 000,307,200 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\atiiiexx.dll

[2010/02/19 14:43:11 | 000,118,784 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\atibrtmon.exe

[2010/02/19 14:43:11 | 000,086,016 | ---- | C] (Advanced Micro Devices, Inc.) -- C:\WINDOWS\System32\atiadlxx.dll

[2010/02/19 14:43:11 | 000,053,248 | ---- | C] ( ATI Technologies Inc.) -- C:\WINDOWS\System32\ATIDDC.DLL

[2010/02/19 14:43:10 | 004,120,384 | ---- | C] (ATI Technologies Inc. ) -- C:\WINDOWS\System32\ati3duag.dll

[2010/02/19 14:43:10 | 003,452,928 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2mtag.sys

[2010/02/19 14:43:10 | 003,252,224 | ---- | C] (Advanced Micro Devices Inc.) -- C:\WINDOWS\System32\Amdcaldd.dll

[2010/02/19 14:43:10 | 000,598,016 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2evxx.exe

[2010/02/19 14:43:10 | 000,577,536 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2cqag.dll

[2010/02/19 14:43:10 | 000,318,464 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2dvag.dll

[2010/02/19 14:43:10 | 000,143,360 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\ati2evxx.dll

[2010/02/19 14:43:10 | 000,053,248 | ---- | C] (ATI Technologies Inc.) -- C:\WINDOWS\System32\drivers\ati2erec.dll

[2010/02/19 14:43:10 | 000,048,640 | ---- | C] (Advanced Micro Devices, Inc. ) -- C:\WINDOWS\System32\amdpcom32.dll

[2010/02/19 14:43:10 | 000,045,056 | ---- | C] (Advanced Micro Devices Inc.) -- C:\WINDOWS\System32\amdcalrt.dll

[2010/02/19 14:43:10 | 000,045,056 | ---- | C] (Advanced Micro Devices Inc.) -- C:\WINDOWS\System32\amdcalcl.dll

[2010/02/19 14:43:10 | 000,043,520 | ---- | C] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\ati2edxx.dll

[2010/02/19 14:43:10 | 000,026,112 | ---- | C] (ATI Technologies, Inc.) -- C:\WINDOWS\System32\Ati2mdxx.exe

[2010/02/19 14:43:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\My Documents\Advent 7096 drivers

[2010/02/19 14:42:21 | 000,026,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\usbstor.sys

[2010/02/19 14:28:03 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Application Data\Identities

[2010/02/19 14:28:02 | 000,000,000 | -H-D | C] -- C:\Program Files\Uninstall Information

[2010/02/19 14:27:58 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Marian\My Documents\My Music

[2010/02/19 14:27:57 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Marian\My Documents\My Pictures

[2010/02/19 14:27:53 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Marian\Application Data\Microsoft

[2010/02/19 14:27:53 | 000,000,000 | --SD | C] -- C:\Documents and Settings\Marian\Cookies

[2010/02/19 14:27:53 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Marian\SendTo

[2010/02/19 14:27:53 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\Marian\Application Data

[2010/02/19 14:27:53 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Marian\Start Menu

[2010/02/19 14:27:53 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Marian\My Documents

[2010/02/19 14:27:53 | 000,000,000 | R--D | C] -- C:\Documents and Settings\Marian\Favorites

[2010/02/19 14:27:53 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Marian\Templates

[2010/02/19 14:27:53 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Marian\PrintHood

[2010/02/19 14:27:53 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Marian\NetHood

[2010/02/19 14:27:53 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\Marian\Local Settings

[2010/02/19 14:27:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Local Settings\Application Data\Microsoft

[2010/02/19 14:27:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Marian\Desktop

[2010/02/19 14:26:53 | 000,000,000 | ---D | C] -- C:\WINDOWS\SoftwareDistribution

[2010/02/19 14:26:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\Prefetch

[2010/02/19 14:26:50 | 000,000,000 | --SD | C] -- C:\WINDOWS\System32\Microsoft

[2010/02/19 14:26:33 | 000,000,000 | ---D | M] -- C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft

[2010/02/19 14:25:21 | 000,041,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.dll

[2010/02/19 14:25:21 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\weitekp9.sys

[2010/02/19 14:25:20 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamreg51.dll

[2010/02/19 14:25:19 | 000,363,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svc.dll

[2010/02/19 14:25:19 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wam51.dll

[2010/02/19 14:25:19 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamps51.dll

[2010/02/19 14:25:19 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3svapi.dll

[2010/02/19 14:25:18 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ext.dll

[2010/02/19 14:25:18 | 000,048,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w32.dll

[2010/02/19 14:25:18 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\w3ctrs51.dll

[2010/02/19 14:25:13 | 000,103,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uihelper.dll

[2010/02/19 14:25:13 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsprof.exe

[2010/02/19 14:25:12 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tools.dll

[2010/02/19 14:25:10 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\thawbrkr.dll

[2010/02/19 14:25:09 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdipx.sys

[2010/02/19 14:25:09 | 000,019,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdspx.sys

[2010/02/19 14:25:09 | 000,013,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdasync.sys

[2010/02/19 14:25:07 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\svcext51.dll

[2010/02/19 14:25:07 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sspifilt.dll

[2010/02/19 14:25:07 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\status.dll

[2010/02/19 14:25:06 | 000,101,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srusbusd.dll

[2010/02/19 14:25:06 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ssinc51.dll

[2010/02/19 14:25:03 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpsmir.dll

[2010/02/19 14:25:03 | 000,040,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpthrd.dll

[2010/02/19 14:25:03 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpstup.dll

[2010/02/19 14:25:03 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmptrap.exe

[2010/02/19 14:25:03 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_snprfdll.dll

[2010/02/19 14:25:03 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpmib.dll

[2010/02/19 14:25:02 | 000,456,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpsvc.dll

[2010/02/19 14:25:02 | 000,358,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpincl.dll

[2010/02/19 14:25:02 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmpcl.dll

[2010/02/19 14:25:02 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\snmp.exe

[2010/02/19 14:25:01 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsm.dll

[2010/02/19 14:25:01 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_smtpctrs.dll

[2010/02/19 14:25:01 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpapi.dll

[2010/02/19 14:25:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smimsgif.dll

[2010/02/19 14:25:01 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smierrsy.dll

[2010/02/19 14:25:00 | 000,236,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smi2smir.exe

[2010/02/19 14:25:00 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm9aw.dll

[2010/02/19 14:25:00 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smb6w.dll

[2010/02/19 14:25:00 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sma3w.dll

[2010/02/19 14:25:00 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm93w.dll

[2010/02/19 14:25:00 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm92w.dll

[2010/02/19 14:25:00 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm90w.dll

[2010/02/19 14:24:59 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm87w.dll

[2010/02/19 14:24:59 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm81w.dll

[2010/02/19 14:24:59 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8cw.dll

[2010/02/19 14:24:59 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8dw.dll

[2010/02/19 14:24:59 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm8aw.dll

[2010/02/19 14:24:59 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm89w.dll

[2010/02/19 14:24:59 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sm59w.dll

[2010/02/19 14:24:59 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\simptcp.dll

[2010/02/19 14:24:55 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_seos.dll

[2010/02/19 14:24:54 | 000,221,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\seo.dll

[2010/02/19 14:24:54 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_scripto.dll

[2010/02/19 14:24:52 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia330.dll

[2010/02/19 14:24:52 | 000,079,872 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rwia001.dll

[2010/02/19 14:24:52 | 000,026,624 | ---- | C] (Ricoh Co., Ltd.) -- C:\WINDOWS\System32\dllcache\rw330ext.dll

[2010/02/19 14:24:52 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rw001ext.dll

[2010/02/19 14:24:52 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rwnh.dll

[2010/02/19 14:24:51 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rpcref.dll

[2010/02/19 14:24:50 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_regtrace.exe

[2010/02/19 14:24:50 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\register.exe

[2010/02/19 14:24:48 | 000,020,736 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ramdisk.sys

[2010/02/19 14:24:48 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\quser.exe

[2010/02/19 14:24:47 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\query.exe

[2010/02/19 14:24:46 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pwsdata.dll

[2010/02/19 14:24:45 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxviceo.dll

[2010/02/19 14:24:45 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxmcro.dll

[2010/02/19 14:24:45 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pmxgl.dll

[2010/02/19 14:24:43 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\permchk.dll

[2010/02/19 14:24:42 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pagecnt.dll

[2010/02/19 14:24:39 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_ntfsdrv.dll

[2010/02/19 14:24:38 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nsepm.dll

[2010/02/19 14:24:37 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nextlink.dll

[2010/02/19 14:24:34 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtstocom.exe

[2010/02/19 14:24:32 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msiregmv.exe

[2010/02/19 14:24:25 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migregdb.exe

[2010/02/19 14:24:24 | 000,092,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.sys

[2010/02/19 14:24:24 | 000,092,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mga.dll

[2010/02/19 14:24:24 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\metada51.dll

[2010/02/19 14:24:24 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mdsync.dll

[2010/02/19 14:24:23 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_mailmsg.dll

[2010/02/19 14:24:23 | 000,037,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\md5filt.dll

[2010/02/19 14:24:22 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lpdsvc.dll

[2010/02/19 14:24:22 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lprmon.dll

[2010/02/19 14:24:21 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logscrpt.dll

[2010/02/19 14:24:21 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lonsint.dll

[2010/02/19 14:24:20 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\lmmib2.dll

[2010/02/19 14:24:19 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth3.dll

[2010/02/19 14:24:19 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth2.dll

[2010/02/19 14:24:19 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdvntc.dll

[2010/02/19 14:24:19 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdusa.dll

[2010/02/19 14:24:19 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdurdu.dll

[2010/02/19 14:24:18 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecat.dll

[2010/02/19 14:24:18 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnecnt.dll

[2010/02/19 14:24:18 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdnec95.dll

[2010/02/19 14:24:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth1.dll

[2010/02/19 14:24:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdth0.dll

[2010/02/19 14:24:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr2.dll

[2010/02/19 14:24:18 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsyr1.dll

[2010/02/19 14:24:17 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlk41a.dll

[2010/02/19 14:24:17 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlk41j.dll

[2010/02/19 14:24:17 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinpun.dll

[2010/02/19 14:24:17 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintel.dll

[2010/02/19 14:24:17 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdintam.dll

[2010/02/19 14:24:17 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinmar.dll

[2010/02/19 14:24:17 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinkan.dll

[2010/02/19 14:24:17 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinhin.dll

[2010/02/19 14:24:16 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdibm02.dll

[2010/02/19 14:24:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdinguj.dll

[2010/02/19 14:24:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdindev.dll

[2010/02/19 14:24:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdheb.dll

[2010/02/19 14:24:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdfa.dll

[2010/02/19 14:24:16 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv2.dll

[2010/02/19 14:24:16 | 000,005,120 | ---- | C] (Microsoft Corporation) --

  • ExTS Admin
Posted

That's ok, just keep adding the posts until i have the whole report.

Can i just question this:

OTL logfile created on: 22/02/2010 14:42:27 - Run 4
You have now run OTL 4 times.

as you will only get the extra.txt by default on the first run..... we have to run OTL with these instructions to get the extra.txt to show after that:

 

------

Let me have the whole report with the custom scans, then if you only have this and don't have the extra.txt..... use the instructions below to get it.

It will produce a main.txt as well.... but i'll already have that.

The extra.txt is fairly important given your circumstances.

 

Take your time, there's no need to rush.

 

Double click on OTL.exe to run it.

 

  • Under Extra Registry section, select Use SafeList.
  • Don't check the boxes beside 'LOP Check' and 'Purity Check' this time.
  • Click on Run Scan at the top left hand corner.
  • When done, two Notepad files will open. Please post the contents of these 2 Notepad files in your next reply.

 

 

You'll be good at all this by the time we have finished. :)

Member of:

UNITE

Posted

[2010/02/19 14:24:16 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgeo.dll

[2010/02/19 14:24:15 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdax2.dll

[2010/02/19 14:24:15 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd106n.dll

[2010/02/19 14:24:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbddiv1.dll

[2010/02/19 14:24:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda3.dll

[2010/02/19 14:24:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda2.dll

[2010/02/19 14:24:15 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbda1.dll

[2010/02/19 14:24:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarmw.dll

[2010/02/19 14:24:15 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdarme.dll

[2010/02/19 14:24:14 | 000,026,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iscomlog.dll

[2010/02/19 14:24:14 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\jupiw.dll

[2010/02/19 14:24:14 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iwrps.dll

[2010/02/19 14:24:14 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101a.dll

[2010/02/19 14:24:14 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbd101.dll

[2010/02/19 14:24:13 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iprip.dll

[2010/02/19 14:24:13 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isapips.dll

[2010/02/19 14:24:12 | 000,257,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infocomm.dll

[2010/02/19 14:24:12 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetin51.exe

[2010/02/19 14:24:12 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infoctrs.dll

[2010/02/19 14:24:05 | 000,145,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iische51.dll

[2010/02/19 14:24:05 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iislog51.dll

[2010/02/19 14:24:05 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisclex4.dll

[2010/02/19 14:24:05 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisadmin.dll

[2010/02/19 14:24:05 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iiscrmap.dll

[2010/02/19 14:24:05 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisfecnv.dll

[2010/02/19 14:24:05 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iissync.exe

[2010/02/19 14:24:05 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iismui.dll

[2010/02/19 14:24:03 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpod51.dll

[2010/02/19 14:24:03 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpmb51.dll

[2010/02/19 14:24:02 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\httpext.dll

[2010/02/19 14:24:02 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hostmib.dll

[2010/02/19 14:24:00 | 000,032,256 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\gzip.dll

[2010/02/19 14:23:59 | 000,400,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsxp32.dll

[2010/02/19 14:23:59 | 000,397,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxstiff.dll

[2010/02/19 14:23:59 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssvc.exe

[2010/02/19 14:23:59 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxst30.dll

[2010/02/19 14:23:59 | 000,192,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxswzrd.dll

[2010/02/19 14:23:59 | 000,154,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsui.dll

[2010/02/19 14:23:58 | 000,562,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsst.dll

[2010/02/19 14:23:58 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsevent.dll

[2010/02/19 14:23:58 | 000,031,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsroute.dll

[2010/02/19 14:23:58 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsmon.dll

[2010/02/19 14:23:58 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsext32.dll

[2010/02/19 14:23:58 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxssend.exe

[2010/02/19 14:23:58 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsperf.dll

[2010/02/19 14:23:58 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsres.dll

[2010/02/19 14:23:57 | 000,285,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscomex.dll

[2010/02/19 14:23:57 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscover.exe

[2010/02/19 14:23:57 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclnt.exe

[2010/02/19 14:23:57 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsclntr.dll

[2010/02/19 14:23:57 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscfgwz.dll

[2010/02/19 14:23:57 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxscom.dll

[2010/02/19 14:23:57 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsdrv.dll

[2010/02/19 14:23:56 | 000,452,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fxsapi.dll

[2010/02/19 14:23:56 | 000,125,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpsv251.dll

[2010/02/19 14:23:56 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpctrs2.dll

[2010/02/19 14:23:56 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpmib.dll

[2010/02/19 14:23:56 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftlx041e.dll

[2010/02/19 14:23:55 | 000,618,605 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4autl.dll

[2010/02/19 14:23:55 | 000,024,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpadmcgi.exe

[2010/02/19 14:23:55 | 000,020,541 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpadmdll.dll

[2010/02/19 14:23:54 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_fcachdll.dll

[2010/02/19 14:23:54 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\flattemp.exe

[2010/02/19 14:23:54 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\f3ahvoas.dll

[2010/02/19 14:23:53 | 000,101,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntagnt.dll

[2010/02/19 14:23:53 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntwin.exe

[2010/02/19 14:23:53 | 000,025,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\et4000.sys

[2010/02/19 14:23:53 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\evntcmd.exe

[2010/02/19 14:23:53 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\exstrace.dll

[2010/02/19 14:23:52 | 000,057,856 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esuimgd.dll

[2010/02/19 14:23:52 | 000,045,056 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esunid.dll

[2010/02/19 14:23:52 | 000,031,744 | ---- | C] (SEIKO EPSON CORP.) -- C:\WINDOWS\System32\dllcache\esucmd.dll

[2010/02/19 14:23:51 | 000,514,587 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\edb500.dll

[2010/02/19 14:23:46 | 000,042,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\davcdata.exe

[2010/02/19 14:23:45 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\convlog.exe

[2010/02/19 14:23:45 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\controt.dll

[2010/02/19 14:23:45 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\counters.dll

[2010/02/19 14:23:45 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cprofile.exe

[2010/02/19 14:23:44 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\compfilt.dll

[2010/02/19 14:23:41 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgport.exe

[2010/02/19 14:23:41 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chgusr.exe

[2010/02/19 14:23:41 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chglogon.exe

[2010/02/19 14:23:41 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\change.exe

[2010/02/19 14:23:40 | 000,054,528 | ---- | C] (Philips Semiconductors GmbH) -- C:\WINDOWS\System32\dllcache\cap7146.sys

[2010/02/19 14:23:39 | 000,218,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_g18030.dll

[2010/02/19 14:23:39 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_iscii.dll

[2010/02/19 14:23:39 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\c_is2022.dll

[2010/02/19 14:23:31 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\browscap.dll

[2010/02/19 14:23:29 | 000,029,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\asptxn.dll

[2010/02/19 14:23:29 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aspperf.dll

[2010/02/19 14:23:29 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\authfilt.dll

[2010/02/19 14:23:28 | 000,369,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\asp51.dll

[2010/02/19 14:23:28 | 000,331,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\aqueue.dll

[2010/02/19 14:23:28 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_aqadmin.dll

[2010/02/19 14:23:27 | 000,108,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\appconf.dll

[2010/02/19 14:23:27 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0804.dll

[2010/02/19 14:23:27 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0412.dll

[2010/02/19 14:23:27 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0411.dll

[2010/02/19 14:23:27 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt040d.dll

[2010/02/19 14:23:26 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0404.dll

[2010/02/19 14:23:26 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0401.dll

[2010/02/19 14:23:25 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adrot.dll

[2010/02/19 14:23:25 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admexs.dll

[2010/02/19 14:23:25 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admxprox.dll

[2010/02/19 14:23:25 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\EXCH_adsiisex.dll

[2010/02/19 14:23:21 | 000,032,827 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcptest.exe

[2010/02/19 14:23:21 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tcptsat.dll

[2010/02/19 14:23:21 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wamregps.dll

[2010/02/19 14:23:20 | 002,134,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpsnap.dll

[2010/02/19 14:23:20 | 000,189,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpadm.dll

[2010/02/19 14:23:20 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\staxmem.dll

[2010/02/19 14:23:19 | 000,020,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shtml.dll

[2010/02/19 14:23:19 | 000,016,437 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shtml.exe

[2010/02/19 14:23:15 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logui.ocx

[2010/02/19 14:23:15 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isatq.dll

[2010/02/19 14:23:14 | 000,829,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetmgr.dll

[2010/02/19 14:23:14 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisui.dll

[2010/02/19 14:23:14 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetsloc.dll

[2010/02/19 14:23:14 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\infoadmn.dll

[2010/02/19 14:23:14 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetmgr.exe

[2010/02/19 14:23:13 | 000,133,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrtl.dll

[2010/02/19 14:23:13 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisext51.dll

[2010/02/19 14:23:13 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iismap.dll

[2010/02/19 14:23:13 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrstas.exe

[2010/02/19 14:23:13 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisreset.exe

[2010/02/19 14:23:13 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ftpsapi2.dll

[2010/02/19 14:23:13 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iisrstap.dll

[2010/02/19 14:23:12 | 000,598,071 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpmmc.dll

[2010/02/19 14:23:12 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpmmcsat.dll

[2010/02/19 14:23:12 | 000,020,541 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpexedll.dll

[2010/02/19 14:23:12 | 000,020,538 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpremadm.exe

[2010/02/19 14:23:11 | 000,876,653 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4awel.dll

[2010/02/19 14:23:11 | 000,188,494 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fpcount.exe

[2010/02/19 14:23:11 | 000,109,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp98swin.exe

[2010/02/19 14:23:11 | 000,049,212 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4awebs.dll

[2010/02/19 14:23:11 | 000,032,826 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4avss.dll

[2010/02/19 14:23:11 | 000,014,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp98sadm.exe

[2010/02/19 14:23:10 | 000,184,435 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4amsft.dll

[2010/02/19 14:23:10 | 000,147,513 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4apws.dll

[2010/02/19 14:23:10 | 000,102,509 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4atxt.dll

[2010/02/19 14:23:10 | 000,082,035 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4anscp.dll

[2010/02/19 14:23:10 | 000,049,210 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4areg.dll

[2010/02/19 14:23:10 | 000,041,020 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fp4avnb.dll

[2010/02/19 14:23:09 | 000,275,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\certwiz.ocx

[2010/02/19 14:23:09 | 000,188,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cfgwiz.exe

[2010/02/19 14:23:09 | 000,094,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\certmap.ocx

[2010/02/19 14:23:09 | 000,076,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cnfgprts.ocx

[2010/02/19 14:23:09 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\coadmin.dll

[2010/02/19 14:23:08 | 000,290,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\adsiis51.dll

[2010/02/19 14:23:08 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admwprox.dll

[2010/02/19 14:23:08 | 000,020,540 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\author.dll

[2010/02/19 14:23:08 | 000,016,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\author.exe

[2010/02/19 14:23:07 | 000,016,439 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admin.exe

[2010/02/19 14:23:06 | 000,020,540 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\admin.dll

[2010/02/19 14:23:03 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\xircom

[2010/02/19 14:23:03 | 000,000,000 | ---D | C] -- C:\Program Files\xerox

[2010/02/19 14:23:03 | 000,000,000 | ---D | C] -- C:\Program Files\microsoft frontpage

[2010/02/19 14:22:26 | 000,000,000 | --SD | M] -- C:\Documents and Settings\NetworkService\Application Data\Microsoft

[2010/02/19 14:22:26 | 000,000,000 | --SD | M] -- C:\Documents and Settings\LocalService\Application Data\Microsoft

[2010/02/19 14:22:14 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mapi32.dll

[2010/02/19 14:21:26 | 000,000,000 | -HSD | C] -- C:\Documents and Settings\All Users\DRM

Posted

[2010/02/19 14:21:13 | 000,000,000 | --SD | C] -- C:\WINDOWS\Downloaded Program Files

[2010/02/19 14:21:13 | 000,000,000 | R--D | C] -- C:\WINDOWS\Offline Web Pages

[2010/02/19 14:21:00 | 000,000,000 | -H-D | C] -- C:\Program Files\WindowsUpdate

[2010/02/19 14:20:35 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\DirectX

[2010/02/19 14:20:13 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoobe.exe

[2010/02/19 14:20:12 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helphost.exe

[2010/02/19 14:20:12 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\notiflag.exe

[2010/02/19 14:20:12 | 000,021,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\brpinfo.dll

[2010/02/19 14:20:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\atrace.dll

[2010/02/19 14:20:12 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\atrace.dll

[2010/02/19 14:20:12 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hcappres.dll

[2010/02/19 14:20:03 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srdiag.exe

[2010/02/19 14:20:02 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msinfo32.exe

[2010/02/19 14:20:02 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wb32.exe

[2010/02/19 14:20:02 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmevtmsg.dll

[2010/02/19 14:20:02 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmevtmsg.dll

[2010/02/19 14:20:02 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cb32.exe

[2010/02/19 14:20:01 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\acctres.dll

[2010/02/19 14:20:01 | 000,064,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\acctres.dll

[2010/02/19 14:20:01 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Services

[2010/02/19 14:19:58 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwtutor.exe

[2010/02/19 14:19:58 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwres.dll

[2010/02/19 14:19:58 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\trialoc.dll

[2010/02/19 14:19:58 | 000,023,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mssoapr.dll

[2010/02/19 14:19:58 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isignup.exe

[2010/02/19 14:19:58 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icfgnt5.dll

[2010/02/19 14:19:58 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icfgnt5.dll

[2010/02/19 14:19:58 | 000,000,000 | --SD | C] -- C:\WINDOWS\Tasks

[2010/02/19 14:19:57 | 000,235,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mssoap1.dll

[2010/02/19 14:19:57 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ieinfo5.ocx

[2010/02/19 14:19:57 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wisc10.dll

[2010/02/19 14:19:57 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MSSoap

[2010/02/19 14:19:53 | 000,725,566 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srchui.dll

[2010/02/19 14:19:53 | 000,058,434 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srchctls.dll

[2010/02/19 14:19:52 | 003,166,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msgr3en.dll

[2010/02/19 14:19:52 | 000,848,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\vgx.dll

[2010/02/19 14:19:52 | 000,000,000 | ---D | C] -- C:\WINDOWS\srchasst

[2010/02/19 14:19:51 | 000,098,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpband.dll

[2010/02/19 14:19:51 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Macromed

[2010/02/19 14:19:50 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\setup_wm.exe

[2010/02/19 14:19:50 | 000,368,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mpvis.dll

[2010/02/19 14:19:50 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmpns.dll

[2010/02/19 14:19:50 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\custsat.dll

[2010/02/19 14:19:49 | 000,786,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\migrate.exe

[2010/02/19 14:19:49 | 000,364,544 | ---- | C] (Microsoft Corporation (written by Digital Renaissance Inc.)) -- C:\WINDOWS\System32\dllcache\npdsplay.dll

[2010/02/19 14:19:49 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\npdrmv2.dll

[2010/02/19 14:19:49 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmplayer.exe

[2010/02/19 14:19:49 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\npwmsdrm.dll

[2010/02/19 14:19:48 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuaueng1.dll

[2010/02/19 14:19:48 | 000,183,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaueng1.dll

[2010/02/19 14:19:48 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuweb.dll

[2010/02/19 14:19:48 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wucltui.dll

[2010/02/19 14:19:48 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wucltui.dll

[2010/02/19 14:19:48 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuauserv.dll

[2010/02/19 14:19:47 | 001,134,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaueng.dll

[2010/02/19 14:19:47 | 000,430,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuapi.dll

[2010/02/19 14:19:47 | 000,430,592 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuapi.dll

[2010/02/19 14:19:47 | 000,165,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wuauclt1.exe

[2010/02/19 14:19:47 | 000,165,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuauclt1.exe

[2010/02/19 14:19:47 | 000,162,304 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuaucpl.cpl

[2010/02/19 14:19:47 | 000,111,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wuauclt.exe

[2010/02/19 14:19:47 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\wups.dll

[2010/02/19 14:19:47 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wups.dll

[2010/02/19 14:19:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bitsprx2.dll

[2010/02/19 14:19:47 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx2.dll

[2010/02/19 14:19:47 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bitsprx3.dll

[2010/02/19 14:19:47 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\bitsprx3.dll

[2010/02/19 14:19:46 | 000,382,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qmgr.dll

[2010/02/19 14:19:46 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qmgrprxy.dll

[2010/02/19 14:19:46 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qmgrprxy.dll

[2010/02/19 14:19:44 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmm2res2.dll

[2010/02/19 14:19:44 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmm2eres.dll

[2010/02/19 14:19:43 | 004,256,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmm2res.dll

[2010/02/19 14:19:43 | 000,502,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmm2fxa.dll

[2010/02/19 14:19:43 | 000,402,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmm2filt.dll

[2010/02/19 14:19:43 | 000,325,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmm2fxb.dll

[2010/02/19 14:19:43 | 000,167,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmm2ae.dll

[2010/02/19 14:19:43 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmm2ext.dll

[2010/02/19 14:19:41 | 003,555,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\moviemk.exe

[2010/02/19 14:19:41 | 000,000,000 | ---D | C] -- C:\Program Files\Movie Maker

[2010/02/19 14:19:40 | 000,561,664 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobmain.dll

[2010/02/19 14:19:40 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobshel.dll

[2010/02/19 14:19:40 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobdl.dll

[2010/02/19 14:19:39 | 000,122,368 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobcomm.dll

[2010/02/19 14:19:39 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oobebaln.exe

[2010/02/19 14:19:39 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msobweb.dll

[2010/02/19 14:19:37 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uploadm.exe

[2010/02/19 14:19:37 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrslv.dll

[2010/02/19 14:19:37 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\safrslv.dll

[2010/02/19 14:19:37 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrcdlg.dll

[2010/02/19 14:19:37 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\safrcdlg.dll

[2010/02/19 14:19:37 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\racpldlg.dll

[2010/02/19 14:19:37 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\racpldlg.dll

[2010/02/19 14:19:37 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\safrdm.dll

[2010/02/19 14:19:37 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\safrdm.dll

[2010/02/19 14:19:36 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pchshell.dll

[2010/02/19 14:19:36 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\pchsvc.dll

[2010/02/19 14:19:33 | 000,158,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msconfig.exe

[2010/02/19 14:19:33 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hscupd.exe

[2010/02/19 14:19:32 | 000,768,512 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpctr.exe

[2010/02/19 14:19:32 | 000,743,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\helpsvc.exe

[2010/02/19 14:19:31 | 000,380,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rstrui.exe

[2010/02/19 14:19:31 | 000,239,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\srrstr.dll

[2010/02/19 14:19:31 | 000,239,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srrstr.dll

[2010/02/19 14:19:31 | 000,124,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fltmgr.sys

[2010/02/19 14:19:31 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\fltMc.exe

[2010/02/19 14:19:31 | 000,022,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fltmc.exe

[2010/02/19 14:19:31 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fltlib.dll

[2010/02/19 14:19:31 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Restore

[2010/02/19 14:19:30 | 000,170,496 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srsvc.dll

[2010/02/19 14:19:30 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\ils.dll

[2010/02/19 14:19:30 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ils.dll

[2010/02/19 14:19:30 | 000,073,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sr.sys

[2010/02/19 14:19:30 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\srclient.dll

Posted

[2010/02/19 14:19:30 | 000,032,768 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\isrdbg32.dll

[2010/02/19 14:19:30 | 000,032,768 | ---- | C] (Intel Corporation) -- C:\WINDOWS\System32\dllcache\isrdbg32.dll

[2010/02/19 14:19:29 | 000,229,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmas.dll

[2010/02/19 14:19:29 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msconf.dll

[2010/02/19 14:19:29 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msconf.dll

[2010/02/19 14:19:29 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dcap32.dll

[2010/02/19 14:19:29 | 000,034,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mnmdd.dll

[2010/02/19 14:19:29 | 000,034,560 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mnmdd.dll

[2010/02/19 14:19:29 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mnmsrvc.exe

[2010/02/19 14:19:29 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\nmmkcert.dll

[2010/02/19 14:19:29 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmmkcert.dll

[2010/02/19 14:19:29 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmasnt.dll

[2010/02/19 14:19:28 | 000,385,024 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\callcont.dll

[2010/02/19 14:19:28 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nac.dll

[2010/02/19 14:19:28 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rrcm.dll

[2010/02/19 14:19:28 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\h323cc.dll

[2010/02/19 14:19:27 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mst120.dll

[2010/02/19 14:19:27 | 000,188,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmwb.dll

[2010/02/19 14:19:27 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmoldwb.dll

[2010/02/19 14:19:27 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmft.dll

[2010/02/19 14:19:27 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmchat.dll

[2010/02/19 14:19:27 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\nmcom.dll

[2010/02/19 14:19:27 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mst123.dll

[2010/02/19 14:19:27 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\confmrsl.dll

[2010/02/19 14:19:26 | 001,032,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\conf.exe

[2010/02/19 14:19:26 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoeacct.dll

[2010/02/19 14:19:26 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoeacct.dll

[2010/02/19 14:19:26 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msoert2.dll

[2010/02/19 14:19:26 | 000,105,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoert2.dll

[2010/02/19 14:19:26 | 000,084,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wabimp.dll

[2010/02/19 14:19:26 | 000,046,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab.exe

[2010/02/19 14:19:26 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wabfind.dll

[2010/02/19 14:19:26 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wabmig.exe

[2010/02/19 14:19:26 | 000,000,000 | ---D | C] -- C:\Program Files\NetMeeting

[2010/02/19 14:19:25 | 000,504,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab32.dll

[2010/02/19 14:19:25 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wab32res.dll

[2010/02/19 14:19:25 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\directdb.dll

[2010/02/19 14:19:25 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetres.dll

[2010/02/19 14:19:25 | 000,048,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetres.dll

[2010/02/19 14:19:24 | 000,678,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcomm.dll

[2010/02/19 14:19:24 | 000,104,448 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oeimport.dll

[2010/02/19 14:19:24 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msimn.exe

[2010/02/19 14:19:23 | 002,479,616 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msoeres.dll

[2010/02/19 14:19:22 | 000,274,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstask.dll

[2010/02/19 14:19:22 | 000,190,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\schedsvc.dll

[2010/02/19 14:19:22 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\setup50.exe

[2010/02/19 14:19:22 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oemig50.exe

[2010/02/19 14:19:22 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oemiglib.dll

[2010/02/19 14:19:22 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mstinit.exe

[2010/02/19 14:19:22 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstinit.exe

[2010/02/19 14:19:22 | 000,000,000 | ---D | C] -- C:\Program Files\Outlook Express

[2010/02/19 14:19:21 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\inetcfg.dll

[2010/02/19 14:19:21 | 000,274,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetcfg.dll

[2010/02/19 14:19:21 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\isign32.dll

[2010/02/19 14:19:21 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\isign32.dll

[2010/02/19 14:19:21 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwdial.dll

[2010/02/19 14:19:21 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwdial.dll

[2010/02/19 14:19:21 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icwphbk.dll

[2010/02/19 14:19:21 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwphbk.dll

[2010/02/19 14:19:20 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwconn1.exe

[2010/02/19 14:19:20 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwhelp.dll

[2010/02/19 14:19:20 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwconn2.exe

[2010/02/19 14:19:20 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwconn.dll

[2010/02/19 14:19:20 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwutil.dll

[2010/02/19 14:19:20 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwdl.dll

[2010/02/19 14:19:20 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icwrmind.exe

[2010/02/19 14:19:20 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\inetwiz.exe

[2010/02/19 14:19:19 | 000,561,179 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dao360.dll

[2010/02/19 14:19:19 | 000,217,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sqlxmlx.dll

[2010/02/19 14:19:19 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oledb32r.dll

[2010/02/19 14:19:18 | 000,487,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\oledb32.dll

[2010/02/19 14:19:18 | 000,315,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdasql.dll

[2010/02/19 14:19:18 | 000,204,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaps.dll

[2010/02/19 14:19:18 | 000,094,208 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdatl3.dll

[2010/02/19 14:19:18 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaosp.dll

[2010/02/19 14:19:18 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msxactps.dll

[2010/02/19 14:19:18 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdatt.dll

[2010/02/19 14:19:18 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdasqlr.dll

[2010/02/19 14:19:18 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaurl.dll

[2010/02/19 14:19:17 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaora.dll

[2010/02/19 14:19:17 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadox.dll

[2010/02/19 14:19:17 | 000,180,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadomd.dll

[2010/02/19 14:19:17 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msjro.dll

[2010/02/19 14:19:17 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado27.tlb

[2010/02/19 14:19:17 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado26.tlb

[2010/02/19 14:19:17 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado25.tlb

[2010/02/19 14:19:17 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado21.tlb

[2010/02/19 14:19:17 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado20.tlb

[2010/02/19 14:19:17 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadrh15.dll

[2010/02/19 14:19:17 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msador15.dll

[2010/02/19 14:19:17 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaorar.dll

[2010/02/19 14:19:17 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdasc.dll

[2010/02/19 14:19:17 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaer.dll

[2010/02/19 14:19:17 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaenum.dll

[2010/02/19 14:19:17 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdadc.dll

[2010/02/19 14:19:16 | 000,536,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msado15.dll

[2010/02/19 14:19:16 | 000,200,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaprst.dll

[2010/02/19 14:19:16 | 000,118,784 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdarem.dll

[2010/02/19 14:19:16 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdfmap.dll

[2010/02/19 14:19:16 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msader15.dll

[2010/02/19 14:19:16 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msaddsr.dll

[2010/02/19 14:19:16 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaremr.dll

[2010/02/19 14:19:16 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdaprsr.dll

[2010/02/19 14:19:15 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadce.dll

[2010/02/19 14:19:15 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadds.dll

[2010/02/19 14:19:15 | 000,143,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadco.dll

[2010/02/19 14:19:15 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcf.dll

[2010/02/19 14:19:15 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcs.dll

[2010/02/19 14:19:15 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcer.dll

[2010/02/19 14:19:15 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcor.dll

[2010/02/19 14:19:15 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msadcfr.dll

[2010/02/19 14:19:14 | 000,093,184 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iexplore.exe

[2010/02/19 14:19:14 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hmmapi.dll

[2010/02/19 14:19:14 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\iedw.exe

[2010/02/19 14:19:14 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\System

[2010/02/19 14:19:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Pictures

[2010/02/19 14:19:09 | 000,000,000 | ---D | C] -- C:\Program Files\Internet Explorer

[2010/02/19 14:18:28 | 000,000,000 | ---D | C] -- C:\Program Files\ComPlus Applications

[2010/02/19 14:18:19 | 000,000,000 | ---D | C] -- C:\WINDOWS\Registration

[2010/02/19 14:18:09 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Music

[2010/02/19 14:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Player

[2010/02/19 14:18:09 | 000,000,000 | ---D | C] -- C:\Program Files\Online Services

[2010/02/19 14:17:59 | 000,042,577 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckgzm.exe

Posted

[2010/02/19 14:17:59 | 000,000,000 | ---D | C] -- C:\Program Files\Messenger

[2010/02/19 14:17:58 | 001,817,687 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckgres.dll

[2010/02/19 14:17:58 | 000,780,885 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkrres.dll

[2010/02/19 14:17:58 | 000,753,236 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvseres.dll

[2010/02/19 14:17:58 | 000,082,501 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\bckg.dll

[2010/02/19 14:17:58 | 000,048,706 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvse.dll

[2010/02/19 14:17:58 | 000,042,575 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkrzm.exe

[2010/02/19 14:17:58 | 000,042,574 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rvsezm.exe

[2010/02/19 14:17:58 | 000,040,515 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\chkr.dll

[2010/02/19 14:17:57 | 002,178,131 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvlres.dll

[2010/02/19 14:17:57 | 001,175,635 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtzres.dll

[2010/02/19 14:17:57 | 000,066,113 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvl.dll

[2010/02/19 14:17:57 | 000,057,409 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtz.dll

[2010/02/19 14:17:57 | 000,042,573 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shvlzm.exe

[2010/02/19 14:17:57 | 000,042,573 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\hrtzzm.exe

[2010/02/19 14:17:57 | 000,041,029 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zcorem.dll

[2010/02/19 14:17:57 | 000,032,339 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\uniansi.dll

[2010/02/19 14:17:57 | 000,013,894 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zonelibm.dll

[2010/02/19 14:17:57 | 000,004,677 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zeeverm.dll

[2010/02/19 14:17:56 | 001,039,955 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cmnresm.dll

[2010/02/19 14:17:56 | 000,217,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cmnclim.dll

[2010/02/19 14:17:56 | 000,113,222 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zoneclim.dll

[2010/02/19 14:17:56 | 000,036,937 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\zclientm.exe

[2010/02/19 14:17:56 | 000,029,760 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\znetm.dll

[2010/02/19 14:17:56 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\write.exe

[2010/02/19 14:17:56 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\write.exe

[2010/02/19 14:17:56 | 000,000,000 | ---D | C] -- C:\Program Files\MSN Gaming Zone

[2010/02/19 14:17:46 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndvol32.exe

[2010/02/19 14:17:46 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sndvol32.exe

[2010/02/19 14:17:45 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avtapi.dll

[2010/02/19 14:17:45 | 000,227,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avtapi.dll

[2010/02/19 14:17:45 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avwav.dll

[2010/02/19 14:17:45 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avwav.dll

[2010/02/19 14:17:45 | 000,044,544 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hticons.dll

[2010/02/19 14:17:45 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winchat.exe

[2010/02/19 14:17:45 | 000,035,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winchat.exe

[2010/02/19 14:17:45 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\avmeter.dll

[2010/02/19 14:17:45 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\avmeter.dll

[2010/02/19 14:17:45 | 000,013,312 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\dllcache\htrn_jis.dll

[2010/02/19 14:17:38 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\getuname.dll

[2010/02/19 14:17:38 | 000,605,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\getuname.dll

[2010/02/19 14:17:38 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\calc.exe

[2010/02/19 14:17:38 | 000,114,688 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\calc.exe

[2010/02/19 14:17:38 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\charmap.exe

[2010/02/19 14:17:38 | 000,080,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\charmap.exe

[2010/02/19 14:17:37 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mshearts.exe

[2010/02/19 14:17:37 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mshearts.exe

[2010/02/19 14:17:37 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\winmine.exe

[2010/02/19 14:17:37 | 000,119,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmine.exe

[2010/02/19 14:17:37 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sol.exe

[2010/02/19 14:17:37 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sol.exe

[2010/02/19 14:17:36 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\freecell.exe

[2010/02/19 14:17:36 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\freecell.exe

[2010/02/19 14:17:36 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsshutdn.exe

[2010/02/19 14:17:36 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsshutdn.exe

[2010/02/19 14:17:36 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tskill.exe

[2010/02/19 14:17:36 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tskill.exe

[2010/02/19 14:17:36 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\reset.exe

[2010/02/19 14:17:36 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\reset.exe

[2010/02/19 14:17:35 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\regini.exe

[2010/02/19 14:17:35 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\regini.exe

[2010/02/19 14:17:35 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qwinsta.exe

[2010/02/19 14:17:35 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qwinsta.exe

[2010/02/19 14:17:35 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msg.exe

[2010/02/19 14:17:35 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msg.exe

[2010/02/19 14:17:35 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qappsrv.exe

[2010/02/19 14:17:35 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qappsrv.exe

[2010/02/19 14:17:35 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rwinsta.exe

[2010/02/19 14:17:35 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rwinsta.exe

[2010/02/19 14:17:35 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\logoff.exe

[2010/02/19 14:17:35 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\logoff.exe

[2010/02/19 14:17:35 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tsdiscon.exe

[2010/02/19 14:17:35 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tsdiscon.exe

[2010/02/19 14:17:35 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscon.exe

[2010/02/19 14:17:35 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscon.exe

[2010/02/19 14:17:35 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\shadow.exe

[2010/02/19 14:17:35 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\shadow.exe

[2010/02/19 14:17:35 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpcfgex.dll

[2010/02/19 14:17:35 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpcfgex.dll

[2010/02/19 14:17:34 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtsadmin.tlb

[2010/02/19 14:17:34 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cdmodem.dll

[2010/02/19 14:17:34 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cdmodem.dll

[2010/02/19 14:17:34 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comrereg.exe

[2010/02/19 14:17:33 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comsnap.dll

[2010/02/19 14:17:33 | 000,147,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsnap.dll

[2010/02/19 14:17:33 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comrepl.dll

[2010/02/19 14:17:33 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comrepl.dll

[2010/02/19 14:17:33 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\stclient.dll

[2010/02/19 14:17:33 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\stclient.dll

[2010/02/19 14:17:33 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comaddin.dll

[2010/02/19 14:17:33 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comaddin.dll

[2010/02/19 14:17:33 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxlegih.dll

[2010/02/19 14:17:33 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtxlegih.dll

[2010/02/19 14:17:33 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxdm.dll

[2010/02/19 14:17:33 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtxdm.dll

[2010/02/19 14:17:33 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dcomcnfg.exe

[2010/02/19 14:17:33 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dcomcnfg.exe

[2010/02/19 14:17:33 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxex.dll

[2010/02/19 14:17:33 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtxex.dll

[2010/02/19 14:17:32 | 000,045,568 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmi2xml.dll

[2010/02/19 14:17:29 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipicmp.dll

[2010/02/19 14:17:29 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmimsg.dll

[2010/02/19 14:17:29 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmitimep.dll

[2010/02/19 14:17:29 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmtr.dll

[2010/02/19 14:17:29 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\winmgmt.exe

[2010/02/19 14:17:28 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\updprov.dll

[2010/02/19 14:17:28 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tmplprov.dll

[2010/02/19 14:17:28 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemdisp.tlb

[2010/02/19 14:17:28 | 000,059,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\trnsprov.dll

[2010/02/19 14:17:28 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemads.tlb

[2010/02/19 14:17:28 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\unsecapp.exe

[2010/02/19 14:17:28 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemads.dll

[2010/02/19 14:17:27 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msiprov.dll

[2010/02/19 14:17:27 | 000,120,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dsprov.dll

[2010/02/19 14:17:27 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\fwdprov.dll

[2010/02/19 14:17:27 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\smtpcons.dll

Posted

[2010/02/19 14:17:08 | 000,000,000 | ---D | C] -- C:\Program Files\MSN

[2010/02/19 14:17:07 | 000,281,088 | ---- | C] (Cinematronics) -- C:\WINDOWS\System32\dllcache\pinball.exe

[2010/02/19 14:17:07 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\accwiz.exe

[2010/02/19 14:17:07 | 000,183,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\accwiz.exe

[2010/02/19 14:17:06 | 000,539,136 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\dialer.exe

[2010/02/19 14:17:06 | 000,345,088 | ---- | C] (Hilgraeve, Inc.) -- C:\WINDOWS\System32\hypertrm.dll

[2010/02/19 14:17:06 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\sndrec32.exe

[2010/02/19 14:17:06 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sndrec32.exe

[2010/02/19 14:17:06 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mplay32.exe

[2010/02/19 14:17:06 | 000,123,392 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mplay32.exe

[2010/02/19 14:17:06 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\access.cpl

[2010/02/19 14:17:06 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\access.cpl

[2010/02/19 14:17:06 | 000,000,000 | ---D | C] -- C:\Program Files\Windows NT

[2010/02/19 14:17:05 | 000,538,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\spider.exe

[2010/02/19 14:17:05 | 000,538,624 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spider.exe

[2010/02/19 14:17:05 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mspaint.exe

[2010/02/19 14:17:05 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mspaint.exe

[2010/02/19 14:17:05 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\clipbrd.exe

[2010/02/19 14:17:05 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clipbrd.exe

[2010/02/19 14:17:05 | 000,021,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdtcp.sys

[2010/02/19 14:17:05 | 000,012,040 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tdpipe.sys

[2010/02/19 14:17:04 | 000,655,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstscax.dll

[2010/02/19 14:17:04 | 000,407,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mstsc.exe

[2010/02/19 14:17:04 | 000,407,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mstsc.exe

[2010/02/19 14:17:04 | 000,139,400 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpwd.sys

[2010/02/19 14:17:04 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscfgwmi.dll

[2010/02/19 14:17:04 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscfgwmi.dll

[2010/02/19 14:17:04 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\remotepg.dll

[2010/02/19 14:17:03 | 000,295,424 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\termsrv.dll

[2010/02/19 14:17:03 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdchost.dll

[2010/02/19 14:17:03 | 000,147,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdchost.dll

[2010/02/19 14:17:03 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sessmgr.exe

[2010/02/19 14:17:03 | 000,087,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpwsx.dll

[2010/02/19 14:17:03 | 000,087,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpwsx.dll

[2010/02/19 14:17:03 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdshost.exe

[2010/02/19 14:17:03 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdshost.exe

[2010/02/19 14:17:03 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\tscupgrd.exe

[2010/02/19 14:17:03 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\tscupgrd.exe

[2010/02/19 14:17:03 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpsnd.dll

[2010/02/19 14:17:03 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpsnd.dll

[2010/02/19 14:17:03 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdsaddin.exe

[2010/02/19 14:17:03 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdsaddin.exe

[2010/02/19 14:17:02 | 000,161,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcuiu.dll

[2010/02/19 14:17:02 | 000,161,280 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtcuiu.dll

[2010/02/19 14:17:02 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mtxoci.dll

[2010/02/19 14:17:02 | 000,090,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mtxoci.dll

[2010/02/19 14:17:02 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\rdpclip.exe

[2010/02/19 14:17:02 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\rdpclip.exe

[2010/02/19 14:17:02 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cfgbkend.dll

[2010/02/19 14:17:02 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cfgbkend.dll

[2010/02/19 14:17:02 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\qprocess.exe

[2010/02/19 14:17:02 | 000,020,480 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\qprocess.exe

[2010/02/19 14:17:02 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\icaapi.dll

[2010/02/19 14:17:02 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\icaapi.dll

[2010/02/19 14:17:02 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\MsDtc

[2010/02/19 14:17:01 | 000,949,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtctm.dll

[2010/02/19 14:17:01 | 000,949,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtctm.dll

[2010/02/19 14:17:01 | 000,425,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtcprx.dll

[2010/02/19 14:17:01 | 000,425,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtcprx.dll

[2010/02/19 14:17:01 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\msdtclog.dll

[2010/02/19 14:17:01 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtclog.dll

[2010/02/19 14:17:01 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\xolehlp.dll

[2010/02/19 14:17:01 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\xolehlp.dll

[2010/02/19 14:17:01 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\msdtc.exe

[2010/02/19 14:17:00 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comadmin.dll

[2010/02/19 14:17:00 | 000,110,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\clbcatex.dll

[2010/02/19 14:17:00 | 000,110,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\clbcatex.dll

[2010/02/19 14:17:00 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\catsrvps.dll

[2010/02/19 14:17:00 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvps.dll

[2010/02/19 14:17:00 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\colbact.dll

[2010/02/19 14:17:00 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\colbact.dll

[2010/02/19 14:17:00 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comrepl.exe

[2010/02/19 14:17:00 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Com

[2010/02/19 14:16:59 | 001,251,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comsvcs.dll

[2010/02/19 14:16:59 | 001,251,840 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comsvcs.dll

[2010/02/19 14:16:59 | 000,628,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\catsrvut.dll

[2010/02/19 14:16:59 | 000,628,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrvut.dll

[2010/02/19 14:16:59 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\catsrv.dll

[2010/02/19 14:16:59 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\catsrv.dll

[2010/02/19 14:16:58 | 000,540,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\comuid.dll

[2010/02/19 14:16:58 | 000,540,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\comuid.dll

[2010/02/19 14:16:58 | 000,501,248 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\clbcatq.dll

[2010/02/19 14:16:56 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmisvc.dll

[2010/02/19 14:16:56 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiprov.dll

[2010/02/19 14:16:56 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiutils.dll

[2010/02/19 14:16:56 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipsess.dll

[2010/02/19 14:16:55 | 000,358,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmic.exe

[2010/02/19 14:16:55 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipcima.dll

[2010/02/19 14:16:55 | 000,140,800 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmidcprv.dll

[2010/02/19 14:16:55 | 000,132,096 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipdskq.dll

[2010/02/19 14:16:55 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiapsrv.exe

[2010/02/19 14:16:55 | 000,089,088 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiaprpl.dll

[2010/02/19 14:16:55 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipjobj.dll

[2010/02/19 14:16:55 | 000,062,464 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmipiprt.dll

[2010/02/19 14:16:55 | 000,060,928 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmicookr.dll

[2010/02/19 14:16:55 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiapres.dll

[2010/02/19 14:16:54 | 000,530,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemcore.dll

[2010/02/19 14:16:54 | 000,273,920 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemess.dll

[2010/02/19 14:16:54 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemupgd.dll

[2010/02/19 14:16:54 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wmiadap.exe

[2010/02/19 14:16:54 | 000,178,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemdisp.dll

[2010/02/19 14:16:54 | 000,116,224 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemtest.exe

[2010/02/19 14:16:54 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemcons.dll

[2010/02/19 14:16:54 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemsvc.dll

[2010/02/19 14:16:54 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemprox.dll

[2010/02/19 14:16:53 | 000,214,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemcomn.dll

[2010/02/19 14:16:53 | 000,196,608 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\wbemcntl.dll

[2010/02/19 14:16:53 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\viewprov.dll

[2010/02/19 14:16:53 | 000,086,528 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\stdprov.dll

[2010/02/19 14:16:53 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\scrcons.exe

[2010/02/19 14:16:52 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\provthrd.dll

[2010/02/19 14:16:52 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ntevt.dll

[2010/02/19 14:16:52 | 000,177,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\repdrvfs.dll

[2010/02/19 14:16:52 | 000,092,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\policman.dll

[2010/02/19 14:16:52 | 000,047,104 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\ncprov.dll

[2010/02/19 14:16:51 | 000,185,856 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\framedyn.dll

[2010/02/19 14:16:51 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mofd.dll

[2010/02/19 14:16:51 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\krnlprov.dll

[2010/02/19 14:16:51 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mofcomp.exe

[2010/02/19 14:16:50 | 000,247,808 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\esscli.dll

[2010/02/19 14:16:49 | 001,352,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cimwin32.dll

[2010/02/19 14:16:49 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\cmprops.dll

[2010/02/19 14:16:49 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\cmprops.dll

[2010/02/19 14:16:49 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\licwmi.dll

[2010/02/19 14:16:49 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\licwmi.dll

[2010/02/19 14:16:49 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\servdeps.dll

[2010/02/19 14:16:49 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\servdeps.dll

[2010/02/19 14:16:49 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\mmfutil.dll

[2010/02/19 14:16:49 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\mmfutil.dll

[2010/02/19 14:16:43 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents\My Videos

[2010/02/19 14:09:53 | 000,014,080 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\drivers\battc.sys

Posted

[2010/02/19 14:09:23 | 000,020,992 | ---- | C] (Realtek Semiconductor Corporation) -- C:\WINDOWS\System32\drivers\RTL8139.sys

[2010/02/19 14:09:11 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\usbui.dll

[2010/02/19 14:07:46 | 000,000,000 | -HSD | C] -- C:\WINDOWS\Installer

[2010/02/19 14:07:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ODBC

[2010/02/19 14:07:43 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spcommon.dll

[2010/02/19 14:07:43 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spcplui.dll

[2010/02/19 14:07:41 | 000,774,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\spttseng.dll

[2010/02/19 14:07:40 | 000,741,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sapi.dll

[2010/02/19 14:07:40 | 000,155,648 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sapi.cpl

[2010/02/19 14:07:40 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\sapisvr.exe

[2010/02/19 14:07:40 | 000,000,000 | R--D | C] -- C:\Program Files

[2010/02/19 14:07:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\SpeechEngines

[2010/02/19 14:07:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft Shared

[2010/02/19 14:07:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files

[2010/02/19 14:07:39 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt041f.dll

[2010/02/19 14:07:37 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0419.dll

[2010/02/19 14:07:37 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuq.dll

[2010/02/19 14:07:37 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtuf.dll

[2010/02/19 14:07:37 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtuq.dll

[2010/02/19 14:07:37 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtuf.dll

[2010/02/19 14:07:37 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdazel.dll

[2010/02/19 14:07:37 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdazel.dll

[2010/02/19 14:07:36 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdmon.dll

[2010/02/19 14:07:36 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkyr.dll

[2010/02/19 14:07:36 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdmon.dll

[2010/02/19 14:07:36 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkyr.dll

[2010/02/19 14:07:35 | 000,022,016 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0408.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycc.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbduzb.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdur.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdtat.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru1.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdru.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdkaz.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdbu.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdblr.dll

[2010/02/19 14:07:35 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdaze.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdycc.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbduzb.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdur.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdtat.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdru1.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdru.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdkaz.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdbu.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdblr.dll

[2010/02/19 14:07:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdaze.dll

[2010/02/19 14:07:33 | 000,008,192 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhept.dll

[2010/02/19 14:07:33 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhept.dll

[2010/02/19 14:07:33 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela3.dll

[2010/02/19 14:07:33 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhela3.dll

[2010/02/19 14:07:33 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhela2.dll

[2010/02/19 14:07:33 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdgkl.dll

[2010/02/19 14:07:33 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhela2.dll

[2010/02/19 14:07:33 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdgkl.dll

[2010/02/19 14:07:33 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe319.dll

[2010/02/19 14:07:33 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe220.dll

[2010/02/19 14:07:33 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhe.dll

[2010/02/19 14:07:33 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe319.dll

[2010/02/19 14:07:33 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe220.dll

[2010/02/19 14:07:33 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhe.dll

[2010/02/19 14:07:32 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv1.dll

[2010/02/19 14:07:32 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlv.dll

[2010/02/19 14:07:32 | 000,006,144 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdest.dll

[2010/02/19 14:07:32 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlv1.dll

[2010/02/19 14:07:32 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlv.dll

[2010/02/19 14:07:32 | 000,006,144 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdest.dll

[2010/02/19 14:07:32 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt1.dll

[2010/02/19 14:07:32 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdlt.dll

[2010/02/19 14:07:32 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlt1.dll

[2010/02/19 14:07:32 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdlt.dll

[2010/02/19 14:07:31 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt040e.dll

[2010/02/19 14:07:31 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0415.dll

[2010/02/19 14:07:31 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\agt0405.dll

[2010/02/19 14:07:30 | 000,007,168 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz.dll

[2010/02/19 14:07:30 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz.dll

[2010/02/19 14:07:30 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl1.dll

[2010/02/19 14:07:30 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdsl.dll

[2010/02/19 14:07:30 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl.dll

[2010/02/19 14:07:30 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu.dll

[2010/02/19 14:07:30 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz2.dll

[2010/02/19 14:07:30 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcz1.dll

[2010/02/19 14:07:30 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdcr.dll

[2010/02/19 14:07:30 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\KBDAL.DLL

[2010/02/19 14:07:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsl1.dll

[2010/02/19 14:07:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdsl.dll

[2010/02/19 14:07:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdpl.dll

[2010/02/19 14:07:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhu.dll

[2010/02/19 14:07:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz2.dll

[2010/02/19 14:07:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcz1.dll

[2010/02/19 14:07:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdcr.dll

[2010/02/19 14:07:30 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdal.dll

[2010/02/19 14:07:30 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdro.dll

[2010/02/19 14:07:30 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdpl1.dll

[2010/02/19 14:07:30 | 000,005,632 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdhu1.dll

[2010/02/19 14:07:30 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdro.dll

[2010/02/19 14:07:30 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdpl1.dll

[2010/02/19 14:07:30 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdhu1.dll

[2010/02/19 14:07:29 | 000,006,656 | R--- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\kbdycl.dll

[2010/02/19 14:07:29 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\kbdycl.dll

Posted

[2010/02/19 14:07:27 | 000,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dllcache\dgrpsetu.dll

[2010/02/19 14:07:27 | 000,176,157 | ---- | C] (Digi International, Inc.) -- C:\WINDOWS\System32\dgrpsetu.dll

[2010/02/19 14:07:27 | 000,085,020 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dllcache\dgsetup.dll

[2010/02/19 14:07:27 | 000,085,020 | ---- | C] (Digi International) -- C:\WINDOWS\System32\dgsetup.dll

[2010/02/19 14:07:27 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\spxcoins.dll

[2010/02/19 14:07:27 | 000,024,661 | ---- | C] (Perle Systems Ltd.) -- C:\WINDOWS\System32\dllcache\spxcoins.dll

[2010/02/19 14:07:27 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\irclass.dll

[2010/02/19 14:07:27 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irclass.dll

[2010/02/19 14:07:26 | 000,103,424 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\EqnClass.Dll

[2010/02/19 14:07:26 | 000,103,424 | ---- | C] (Equinox Systems Inc.) -- C:\WINDOWS\System32\dllcache\eqnclass.dll

[2010/02/19 14:07:26 | 000,024,064 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLESVR.DLL

[2010/02/19 14:07:26 | 000,019,200 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TAPI.DLL

[2010/02/19 14:07:26 | 000,013,600 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WFWNET.DRV

[2010/02/19 14:07:26 | 000,009,008 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VER.DLL

[2010/02/19 14:07:26 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SHELL.DLL

[2010/02/19 14:07:26 | 000,004,048 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\TIMER.DRV

[2010/02/19 14:07:26 | 000,003,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SYSTEM.DRV

[2010/02/19 14:07:26 | 000,002,176 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\VGA.DRV

[2010/02/19 14:07:26 | 000,001,744 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\SOUND.DRV

[2010/02/19 14:07:25 | 000,126,912 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MSVIDEO.DLL

[2010/02/19 14:07:25 | 000,082,944 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\OLECLI.DLL

[2010/02/19 14:07:25 | 000,073,376 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIAVI.DRV

[2010/02/19 14:07:25 | 000,032,816 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\COMMDLG.DLL

[2010/02/19 14:07:25 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCIWAVE.DRV

[2010/02/19 14:07:25 | 000,025,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MCISEQ.DRV

[2010/02/19 14:07:25 | 000,009,936 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\LZEXPAND.DLL

[2010/02/19 14:07:25 | 000,002,032 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MOUSE.DRV

[2010/02/19 14:07:25 | 000,002,000 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\KEYBOARD.DRV

[2010/02/19 14:07:25 | 000,001,152 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMTASK.TSK

[2010/02/19 14:07:24 | 000,109,456 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVIFILE.DLL

[2010/02/19 14:07:24 | 000,069,584 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\AVICAP.DLL

[2010/02/19 14:07:24 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\TASKMAN.EXE

[2010/02/19 14:07:24 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\taskman.exe

[2010/02/19 14:07:24 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\irenum.sys

[2010/02/19 14:07:24 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\dllcache\batt.dll

[2010/02/19 14:07:24 | 000,008,704 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\batt.dll

[2010/02/19 14:07:23 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\WINSPOOL.DRV

[2010/02/19 14:07:23 | 000,068,768 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System\MMSYSTEM.DLL

[2010/02/19 14:07:21 | 000,074,752 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\System32\storprop.dll

[2010/02/19 14:07:10 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Start Menu

[2010/02/19 14:07:10 | 000,000,000 | R--D | C] -- C:\Documents and Settings\All Users\Documents

[2010/02/19 14:07:10 | 000,000,000 | -H-D | C] -- C:\Documents and Settings\All Users\Templates

[2010/02/19 14:07:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Favorites

[2010/02/19 14:07:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users\Desktop

[2010/02/19 14:06:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot2

[2010/02/19 14:06:54 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\CatRoot

[2010/02/19 14:06:48 | 000,000,000 | --SD | C] -- C:\Documents and Settings\All Users\Application Data\Microsoft

[2010/02/19 14:06:48 | 000,000,000 | RH-D | C] -- C:\Documents and Settings\All Users\Application Data

[2010/02/19 14:06:18 | 000,000,000 | ---D | C] -- C:\Documents and Settings

[2010/02/19 14:06:17 | 000,000,000 | -HSD | C] -- C:\System Volume Information

[2010/02/19 13:56:27 | 000,000,000 | R-SD | C] -- C:\WINDOWS\Fonts

[2010/02/19 13:56:27 | 000,000,000 | RHSD | C] -- C:\WINDOWS\System32\dllcache

[2010/02/19 13:56:27 | 000,000,000 | R--D | C] -- C:\WINDOWS\Web

[2010/02/19 13:56:27 | 000,000,000 | -H-D | C] -- C:\WINDOWS\inf

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\WinSxS

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wins

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\wbem

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\usmt

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\twain_32

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Temp

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\system32

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\system

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\spool

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ShellExt

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\Setup

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\security

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Resources

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\repair

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ras

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Provisioning

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\PeerNet

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\pchealth

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\oobe

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\npp

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\mui

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\mui

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\msapps

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\msagent

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Media

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\java

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\inetsrv

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\IME

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\ime

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\icsxml

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\ias

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Help

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\export

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\etc

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\ehome

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Driver Cache

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\drivers\disdn

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\dhcp

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Debug

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Cursors

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Connection Wizard

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\config

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\Config

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\AppPatch

Posted

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\addins

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3com_dmi

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\3076

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\2052

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1054

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1042

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1041

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1037

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1033

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1031

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1028

[2010/02/19 13:56:27 | 000,000,000 | ---D | C] -- C:\WINDOWS\System32\1025

[2010/02/19 13:18:57 | 000,282,624 | ---- | C] (Marvell Semiconductor, Inc) -- C:\WINDOWS\System32\drivers\Mrvw125.sys

[2005/06/17 15:20:44 | 004,783,305 | ---- | C] (Advanced Micro Devices Corporation) -- C:\Program Files\AMD_Sempron_Processor_Driver.EXE

[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

 

========== Files - Modified Within 30 Days ==========

 

[2010/02/22 14:42:27 | 000,000,884 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

[2010/02/22 14:32:37 | 000,000,880 | ---- | M] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job

[2010/02/22 12:59:39 | 001,310,720 | -H-- | M] () -- C:\Documents and Settings\Marian\NTUSER.DAT

[2010/02/22 12:59:39 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Marian\ntuser.ini

[2010/02/22 10:47:11 | 000,002,278 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl

[2010/02/22 01:15:05 | 006,942,108 | -H-- | M] () -- C:\Documents and Settings\Marian\Local Settings\Application Data\IconCache.db

[2010/02/21 23:45:00 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT

[2010/02/21 23:44:50 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat

[2010/02/21 23:21:12 | 000,360,124 | ---- | M] () -- C:\WINDOWS\System32\PerfStringBackup.INI

[2010/02/21 23:21:12 | 000,315,076 | ---- | M] () -- C:\WINDOWS\System32\perfh009.dat

[2010/02/21 23:21:12 | 000,041,238 | ---- | M] () -- C:\WINDOWS\System32\perfc009.dat

[2010/02/21 23:00:35 | 004,783,305 | ---- | M] (Advanced Micro Devices Corporation) -- C:\Program Files\AMD_Sempron_Processor_Driver.EXE

[2010/02/21 19:42:04 | 000,000,719 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Marvell Libertas Client Configuration Manager.lnk

[2010/02/21 17:03:21 | 000,001,813 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk

[2010/02/21 17:00:47 | 000,001,700 | ---- | M] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk

[2010/02/21 17:00:41 | 000,002,626 | ---- | M] () -- C:\WINDOWS\System32\CONFIG.NT

[2010/02/20 20:41:22 | 000,068,456 | ---- | M] () -- C:\Documents and Settings\Marian\Local Settings\Application Data\GDIPFONTCACHEV1.DAT

[2010/02/19 16:10:26 | 000,004,608 | ---- | M] () -- C:\Documents and Settings\Marian\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[2010/02/19 15:23:46 | 000,263,024 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT

[2010/02/19 15:14:18 | 000,000,552 | ---- | M] () -- C:\WINDOWS\win.ini

[2010/02/19 14:51:29 | 000,000,000 | ---- | M] () -- C:\WINDOWS\ativpsrm.bin

[2010/02/19 14:26:36 | 000,008,192 | ---- | M] () -- C:\WINDOWS\REGLOCS.OLD

[2010/02/19 14:25:52 | 000,004,382 | ---- | M] () -- C:\WINDOWS\imsins.BAK

[2010/02/19 14:25:52 | 000,000,508 | ---- | M] () -- C:\WINDOWS\System32\$winnt$.inf

[2010/02/19 14:22:35 | 000,000,000 | RHS- | M] () -- C:\MSDOS.SYS

[2010/02/19 14:22:35 | 000,000,000 | RHS- | M] () -- C:\IO.SYS

[2010/02/19 14:22:35 | 000,000,000 | ---- | M] () -- C:\WINDOWS\control.ini

[2010/02/19 14:22:35 | 000,000,000 | ---- | M] () -- C:\CONFIG.SYS

[2010/02/19 14:22:35 | 000,000,000 | ---- | M] () -- C:\AUTOEXEC.BAT

[2010/02/19 14:22:26 | 000,316,640 | ---- | M] () -- C:\WINDOWS\WMSysPr9.prx

[2010/02/19 14:22:25 | 000,023,392 | ---- | M] () -- C:\WINDOWS\System32\nscompat.tlb

[2010/02/19 14:22:25 | 000,016,832 | ---- | M] () -- C:\WINDOWS\System32\amcompat.tlb

[2010/02/19 14:22:14 | 000,004,161 | ---- | M] () -- C:\WINDOWS\ODBCINST.INI

[2010/02/19 14:21:13 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\WindowsLogon.manifest

[2010/02/19 14:21:13 | 000,000,488 | RH-- | M] () -- C:\WINDOWS\System32\logonui.exe.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\WindowsShell.Manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\sapi.cpl.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\nwc.cpl.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\ncpa.cpl.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | M] () -- C:\WINDOWS\System32\cdplayer.exe.manifest

[2010/02/19 14:18:42 | 000,021,640 | ---- | M] () -- C:\WINDOWS\System32\emptyregdb.dat

[2010/02/19 14:18:26 | 000,000,037 | ---- | M] () -- C:\WINDOWS\vbaddin.ini

[2010/02/19 14:18:26 | 000,000,036 | ---- | M] () -- C:\WINDOWS\vb.ini

[2010/02/19 14:12:52 | 000,000,211 | -HS- | M] () -- C:\boot.ini

[2010/02/19 14:07:39 | 000,000,231 | ---- | M] () -- C:\WINDOWS\system.ini

[2010/02/18 22:11:46 | 000,282,624 | ---- | M] (Marvell Semiconductor, Inc) -- C:\WINDOWS\System32\drivers\Mrvw125.sys

[2010/02/11 18:53:57 | 000,038,848 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\avastSS.scr

[2010/02/11 18:53:36 | 000,153,184 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\aswBoot.exe

[2010/02/11 18:42:34 | 000,046,672 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswTdi.sys

[2010/02/11 18:42:13 | 000,162,512 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswSP.sys

[2010/02/11 18:39:01 | 000,023,376 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswRdr.sys

[2010/02/11 18:38:34 | 000,100,432 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon2.sys

[2010/02/11 18:38:31 | 000,094,800 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswmon.sys

[2010/02/11 18:38:23 | 000,019,024 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aswFsBlk.sys

[2010/02/11 18:38:07 | 000,028,880 | ---- | M] (ALWIL Software) -- C:\WINDOWS\System32\drivers\aavmker4.sys

[3 C:\WINDOWS\*.tmp files -> C:\WINDOWS\*.tmp -> ]

[1 C:\WINDOWS\System32\*.tmp files -> C:\WINDOWS\System32\*.tmp -> ]

 

========== Files Created - No Company Name ==========

Posted

[2010/02/21 17:03:21 | 000,001,813 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Google Chrome.lnk

[2010/02/21 17:00:47 | 000,001,700 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\avast! Free Antivirus.lnk

[2010/02/19 19:37:37 | 000,000,884 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

[2010/02/19 19:37:37 | 000,000,880 | ---- | C] () -- C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job

[2010/02/19 16:09:26 | 000,004,608 | ---- | C] () -- C:\Documents and Settings\Marian\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini

[2010/02/19 14:57:04 | 000,000,719 | ---- | C] () -- C:\Documents and Settings\All Users\Desktop\Marvell Libertas Client Configuration Manager.lnk

[2010/02/19 14:51:29 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin

[2010/02/19 14:43:15 | 000,147,456 | ---- | C] () -- C:\WINDOWS\System32\RTLCPAPI.dll

[2010/02/19 14:43:15 | 000,141,016 | ---- | C] () -- C:\WINDOWS\System32\ALSNDMGR.WAV

[2010/02/19 14:43:12 | 003,107,788 | ---- | C] () -- C:\WINDOWS\System32\ativvaxx.dat

[2010/02/19 14:43:12 | 003,107,788 | ---- | C] () -- C:\WINDOWS\System32\ativva5x.dat

[2010/02/19 14:43:12 | 000,887,724 | ---- | C] () -- C:\WINDOWS\System32\ativva6x.dat

[2010/02/19 14:43:12 | 000,069,112 | ---- | C] () -- C:\WINDOWS\System32\ativvaxx.cap

[2010/02/19 14:43:11 | 000,180,720 | ---- | C] () -- C:\WINDOWS\System32\atiicdxx.dat

[2010/02/19 14:43:11 | 000,015,079 | ---- | C] () -- C:\WINDOWS\atiogl.xml

[2010/02/19 14:43:11 | 000,007,167 | ---- | C] () -- C:\WINDOWS\System32\atifglpf.xml

[2010/02/19 14:27:55 | 000,000,178 | -HS- | C] () -- C:\Documents and Settings\Marian\ntuser.ini

[2010/02/19 14:27:53 | 001,310,720 | -H-- | C] () -- C:\Documents and Settings\Marian\NTUSER.DAT

[2010/02/19 14:26:36 | 000,008,192 | ---- | C] () -- C:\WINDOWS\REGLOCS.OLD

[2010/02/19 14:25:46 | 000,002,048 | --S- | C] () -- C:\WINDOWS\bootstat.dat

[2010/02/19 14:25:34 | 000,028,288 | ---- | C] () -- C:\WINDOWS\System32\dllcache\xjis.nls

[2010/02/19 14:24:45 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prcp.nls

[2010/02/19 14:24:45 | 000,083,748 | ---- | C] () -- C:\WINDOWS\System32\dllcache\prc.nls

[2010/02/19 14:24:20 | 000,047,066 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ksc.nls

[2010/02/19 14:23:55 | 000,094,208 | ---- | C] () -- C:\WINDOWS\System32\dllcache\fpencode.dll

[2010/02/19 14:23:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_864.nls

[2010/02/19 14:23:39 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_862.nls

[2010/02/19 14:23:39 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_870.nls

[2010/02/19 14:23:38 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_858.nls

[2010/02/19 14:23:38 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_720.nls

[2010/02/19 14:23:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_708.nls

[2010/02/19 14:23:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28596.nls

[2010/02/19 14:23:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21027.nls

[2010/02/19 14:23:38 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_21025.nls

[2010/02/19 14:23:37 | 000,180,770 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20932.nls

[2010/02/19 14:23:37 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20949.nls

[2010/02/19 14:23:37 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20936.nls

[2010/02/19 14:23:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20924.nls

[2010/02/19 14:23:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20880.nls

[2010/02/19 14:23:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20871.nls

[2010/02/19 14:23:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20838.nls

[2010/02/19 14:23:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20833.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20424.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20423.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20420.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20297.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20290.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20285.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20284.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20280.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20278.nls

[2010/02/19 14:23:36 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20277.nls

[2010/02/19 14:23:35 | 000,187,938 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20005.nls

[2010/02/19 14:23:35 | 000,185,378 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20003.nls

[2010/02/19 14:23:35 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20004.nls

[2010/02/19 14:23:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20273.nls

[2010/02/19 14:23:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20269.nls

[2010/02/19 14:23:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20108.nls

[2010/02/19 14:23:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20107.nls

[2010/02/19 14:23:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20106.nls

[2010/02/19 14:23:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20105.nls

[2010/02/19 14:23:34 | 000,189,986 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1361.nls

[2010/02/19 14:23:34 | 000,186,402 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20001.nls

[2010/02/19 14:23:34 | 000,180,258 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20000.nls

[2010/02/19 14:23:34 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20002.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1149.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1148.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1147.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1146.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1145.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1144.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1143.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1142.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1141.nls

[2010/02/19 14:23:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1140.nls

[2010/02/19 14:23:32 | 000,195,618 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10002.nls

[2010/02/19 14:23:32 | 000,177,698 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10003.nls

[2010/02/19 14:23:32 | 000,173,602 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10008.nls

[2010/02/19 14:23:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_1047.nls

[2010/02/19 14:23:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10021.nls

[2010/02/19 14:23:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10005.nls

[2010/02/19 14:23:32 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10004.nls

[2010/02/19 14:23:31 | 000,162,850 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10001.nls

[2010/02/19 14:23:31 | 000,082,172 | ---- | C] () -- C:\WINDOWS\System32\dllcache\bopomofo.nls

[2010/02/19 14:23:30 | 000,066,728 | ---- | C] () -- C:\WINDOWS\System32\dllcache\big5.nls

[2010/02/19 14:22:35 | 000,002,626 | ---- | C] () -- C:\WINDOWS\System32\CONFIG.NT

[2010/02/19 14:22:35 | 000,000,000 | RHS- | C] () -- C:\MSDOS.SYS

[2010/02/19 14:22:35 | 000,000,000 | RHS- | C] () -- C:\IO.SYS

[2010/02/19 14:22:35 | 000,000,000 | ---- | C] () -- C:\CONFIG.SYS

[2010/02/19 14:22:35 | 000,000,000 | ---- | C] () -- C:\AUTOEXEC.BAT

[2010/02/19 14:22:25 | 000,023,392 | ---- | C] () -- C:\WINDOWS\System32\nscompat.tlb

[2010/02/19 14:22:25 | 000,016,832 | ---- | C] () -- C:\WINDOWS\System32\amcompat.tlb

[2010/02/19 14:22:24 | 000,316,640 | ---- | C] () -- C:\WINDOWS\WMSysPr9.prx

[2010/02/19 14:21:13 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\WindowsLogon.manifest

[2010/02/19 14:21:13 | 000,000,488 | RH-- | C] () -- C:\WINDOWS\System32\logonui.exe.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\wuaucpl.cpl.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\WindowsShell.Manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\sapi.cpl.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\nwc.cpl.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\ncpa.cpl.manifest

[2010/02/19 14:21:06 | 000,000,749 | RH-- | C] () -- C:\WINDOWS\System32\cdplayer.exe.manifest

[2010/02/19 14:20:45 | 004,399,505 | ---- | C] () -- C:\WINDOWS\System32\dllcache\nls302en.lex

[2010/02/19 14:20:09 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt256.bmp

[2010/02/19 14:20:09 | 000,048,680 | -HS- | C] () -- C:\WINDOWS\winnt.bmp

[2010/02/19 14:20:03 | 000,000,984 | ---- | C] () -- C:\WINDOWS\System32\dllcache\srframe.mmf

[2010/02/19 14:19:49 | 000,004,639 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mplayer2.exe

[2010/02/19 14:19:33 | 000,376,320 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msinfo.dll

[2010/02/19 14:18:42 | 000,021,640 | ---- | C] () -- C:\WINDOWS\System32\emptyregdb.dat

[2010/02/19 14:17:40 | 000,065,954 | ---- | C] () -- C:\WINDOWS\Prairie Wind.bmp

[2010/02/19 14:17:40 | 000,065,832 | ---- | C] () -- C:\WINDOWS\Santa Fe Stucco.bmp

[2010/02/19 14:17:40 | 000,026,680 | ---- | C] () -- C:\WINDOWS\River Sumida.bmp

[2010/02/19 14:17:40 | 000,026,582 | ---- | C] () -- C:\WINDOWS\Greenstone.bmp

[2010/02/19 14:17:40 | 000,017,362 | ---- | C] () -- C:\WINDOWS\Rhododendron.bmp

[2010/02/19 14:17:40 | 000,009,522 | ---- | C] () -- C:\WINDOWS\Zapotec.bmp

[2010/02/19 14:17:39 | 000,093,702 | ---- | C] () -- C:\WINDOWS\System32\subrange.uce

[2010/02/19 14:17:39 | 000,065,978 | ---- | C] () -- C:\WINDOWS\Soap Bubbles.bmp

[2010/02/19 14:17:39 | 000,017,336 | ---- | C] () -- C:\WINDOWS\Gone Fishing.bmp

[2010/02/19 14:17:39 | 000,017,062 | ---- | C] () -- C:\WINDOWS\Coffee Bean.bmp

[2010/02/19 14:17:39 | 000,016,740 | ---- | C] () -- C:\WINDOWS\System32\shiftjis.uce

[2010/02/19 14:17:39 | 000,016,730 | ---- | C] () -- C:\WINDOWS\FeatherTexture.bmp

[2010/02/19 14:17:39 | 000,012,876 | ---- | C] () -- C:\WINDOWS\System32\korean.uce

[2010/02/19 14:17:39 | 000,001,272 | ---- | C] () -- C:\WINDOWS\Blue Lace 16.bmp

[2010/02/19 14:17:38 | 000,060,458 | ---- | C] () -- C:\WINDOWS\System32\ideograf.uce

[2010/02/19 14:17:38 | 000,024,006 | ---- | C] () -- C:\WINDOWS\System32\gb2312.uce

[2010/02/19 14:17:38 | 000,022,984 | ---- | C] () -- C:\WINDOWS\System32\bopomofo.uce

[2010/02/19 14:17:38 | 000,008,484 | ---- | C] () -- C:\WINDOWS\System32\kanji_2.uce

[2010/02/19 14:17:38 | 000,006,948 | ---- | C] () -- C:\WINDOWS\System32\kanji_1.uce

[2010/02/19 14:17:36 | 000,001,161 | ---- | C] () -- C:\WINDOWS\System32\usrlogon.cmd

[2010/02/19 14:17:35 | 000,003,286 | ---- | C] () -- C:\WINDOWS\System32\tslabels.h

[2010/02/19 14:17:34 | 000,000,768 | ---- | C] () -- C:\WINDOWS\System32\msdtcprf.h

[2010/02/19 14:17:27 | 000,063,488 | ---- | C] () -- C:\WINDOWS\System32\wmimgmt.msc

[2010/02/19 14:07:50 | 000,004,382 | ---- | C] () -- C:\WINDOWS\imsins.BAK

Posted

[2010/02/19 14:07:42 | 001,685,606 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.spd

[2010/02/19 14:07:42 | 000,000,888 | ---- | C] () -- C:\WINDOWS\System32\dllcache\sam.sdf

[2010/02/19 14:07:41 | 000,605,050 | ---- | C] () -- C:\WINDOWS\System32\dllcache\r1033tts.lxa

[2010/02/19 14:07:40 | 000,643,717 | ---- | C] () -- C:\WINDOWS\System32\dllcache\ltts1033.lxa

[2010/02/19 14:07:39 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28603.nls

[2010/02/19 14:07:39 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28603.nls

[2010/02/19 14:07:37 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_857.nls

[2010/02/19 14:07:37 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_857.nls

[2010/02/19 14:07:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28599.nls

[2010/02/19 14:07:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_28599.nls

[2010/02/19 14:07:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10081.nls

[2010/02/19 14:07:37 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10081.nls

[2010/02/19 14:07:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28595.nls

[2010/02/19 14:07:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28595.NLS

[2010/02/19 14:07:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10017.nls

[2010/02/19 14:07:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10017.nls

[2010/02/19 14:07:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10007.nls

[2010/02/19 14:07:35 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10007.nls

[2010/02/19 14:07:33 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_869.nls

[2010/02/19 14:07:33 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_869.nls

[2010/02/19 14:07:33 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_737.nls

[2010/02/19 14:07:33 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_737.nls

[2010/02/19 14:07:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_875.nls

[2010/02/19 14:07:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_875.nls

[2010/02/19 14:07:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28597.nls

[2010/02/19 14:07:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28597.NLS

[2010/02/19 14:07:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10006.nls

[2010/02/19 14:07:33 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10006.nls

[2010/02/19 14:07:31 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_866.nls

[2010/02/19 14:07:31 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_866.nls

[2010/02/19 14:07:31 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_855.nls

[2010/02/19 14:07:31 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_855.nls

[2010/02/19 14:07:31 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_28594.nls

[2010/02/19 14:07:31 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\C_28594.NLS

[2010/02/19 14:07:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_852.nls

[2010/02/19 14:07:29 | 000,066,594 | ---- | C] () -- C:\WINDOWS\System32\c_852.nls

[2010/02/19 14:07:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10082.nls

[2010/02/19 14:07:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10082.nls

[2010/02/19 14:07:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10029.nls

[2010/02/19 14:07:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10029.nls

[2010/02/19 14:07:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_10010.nls

[2010/02/19 14:07:29 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_10010.nls

[2010/02/19 14:07:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\dllcache\c_20127.nls

[2010/02/19 14:07:28 | 000,066,082 | ---- | C] () -- C:\WINDOWS\System32\c_20127.nls

[2010/02/19 14:07:24 | 000,001,688 | ---- | C] () -- C:\WINDOWS\System32\AUTOEXEC.NT

[2010/02/19 14:07:09 | 000,797,189 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5IIS.CAT

[2010/02/19 14:07:09 | 000,399,645 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MAPIMIG.CAT

[2010/02/19 14:07:09 | 000,141,702 | ---- | C] () -- C:\WINDOWS\System32\dllcache\netfx.cat

[2010/02/19 14:07:09 | 000,110,116 | ---- | C] () -- C:\WINDOWS\System32\dllcache\tabletpc.cat

[2010/02/19 14:07:09 | 000,037,484 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MW770.CAT

[2010/02/19 14:07:09 | 000,031,965 | ---- | C] () -- C:\WINDOWS\System32\dllcache\mediactr.cat

[2010/02/19 14:07:09 | 000,031,281 | ---- | C] () -- C:\WINDOWS\System32\dllcache\FP4.CAT

[2010/02/19 14:07:09 | 000,024,209 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn7.cat

[2010/02/19 14:07:09 | 000,013,753 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IMS.CAT

[2010/02/19 14:07:09 | 000,013,472 | ---- | C] () -- C:\WINDOWS\System32\dllcache\HPCRDP.CAT

[2010/02/19 14:07:09 | 000,011,651 | ---- | C] () -- C:\WINDOWS\System32\dllcache\msn9.cat

[2010/02/19 14:07:09 | 000,009,581 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSMSGS.CAT

[2010/02/19 14:07:09 | 000,008,574 | ---- | C] () -- C:\WINDOWS\System32\dllcache\IASNT4.CAT

[2010/02/19 14:07:09 | 000,007,382 | ---- | C] () -- C:\WINDOWS\System32\dllcache\OEMBIOS.CAT

[2010/02/19 14:07:09 | 000,007,334 | ---- | C] () -- C:\WINDOWS\System32\dllcache\wmerrenu.cat

[2010/02/19 14:07:09 | 000,007,245 | ---- | C] () -- C:\WINDOWS\System32\dllcache\MSTSWEB.CAT

[2010/02/19 14:07:08 | 002,012,670 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5.CAT

[2010/02/19 14:07:08 | 001,042,903 | ---- | C] () -- C:\WINDOWS\System32\dllcache\SP2.CAT

[2010/02/19 14:07:08 | 000,502,724 | ---- | C] () -- C:\WINDOWS\System32\dllcache\NT5INF.CAT

[2010/02/19 14:06:17 | 000,263,024 | ---- | C] () -- C:\WINDOWS\System32\FNTCACHE.DAT

[2010/02/19 14:05:31 | 000,000,211 | -HS- | C] () -- C:\boot.ini

[2010/02/19 14:05:26 | 000,000,508 | ---- | C] () -- C:\WINDOWS\System32\$winnt$.inf

[2004/08/04 12:00:00 | 000,163,032 | RHS- | C] () -- C:\WINDOWS\System32\vqmyp.dll

[2004/08/04 12:00:00 | 000,081,920 | ---- | C] () -- C:\WINDOWS\System32\ieencode.dll

[2004/08/04 12:00:00 | 000,027,440 | ---- | C] () -- C:\WINDOWS\System32\drivers\secdrv.sys

 

========== LOP Check ==========

 

[2010/02/21 17:00:02 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Alwil Software

[2010/02/20 08:48:30 | 000,000,000 | ---D | M] -- C:\Documents and Settings\All Users\Application Data\Citrix

  • ExTS Admin
Posted

You're doing well Twiceshy

 

The reason the report is so big, is that it seems the OS was reinstalled on 19th Feb 2010.The report wouldn't normally be anywhere near this big.

Member of:

UNITE

Posted

========== Purity Check ==========

 

 

 

========== Custom Scans ==========

 

 

< %SYSTEMDRIVE%\*.exe >

 

 

< MD5 for: AGP440.SYS >

[2004/08/04 12:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:AGP440.sys

 

< MD5 for: ATAPI.SYS >

[2004/08/04 12:00:00 | 018,738,937 | ---- | M] () .cab file -- C:\WINDOWS\Driver Cache\i386\sp2.cab:atapi.sys

[2004/08/04 12:00:00 | 000,095,360 | ---- | M] (Microsoft Corporation) MD5=CDFE4411A69C224BD1D11B2DA92DAC51 -- C:\WINDOWS\system32\drivers\atapi.sys

 

< MD5 for: EVENTLOG.DLL >

[2004/08/04 12:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\system32\dllcache\eventlog.dll

[2004/08/04 12:00:00 | 000,055,808 | ---- | M] (Microsoft Corporation) MD5=82B24CB70E5944E6E34662205A2A5B78 -- C:\WINDOWS\system32\eventlog.dll

 

< MD5 for: NETLOGON.DLL >

[2004/08/04 12:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\system32\dllcache\netlogon.dll

[2004/08/04 12:00:00 | 000,407,040 | ---- | M] (Microsoft Corporation) MD5=96353FCECBA774BB8DA74A1C6507015A -- C:\WINDOWS\system32\netlogon.dll

 

< MD5 for: SCECLI.DLL >

[2004/08/04 12:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\system32\dllcache\scecli.dll

[2004/08/04 12:00:00 | 000,180,224 | ---- | M] (Microsoft Corporation) MD5=0F78E27F563F2AAF74B91A49E2ABF19A -- C:\WINDOWS\system32\scecli.dll

 

< %systemroot%\*. /mp /s >

 

< %systemroot%\system32\*.dll /lockedfiles >

[2004/08/04 12:00:00 | 000,163,032 | RHS- | M] () Unable to obtain MD5 -- C:\WINDOWS\system32\vqmyp.dll

[1 C:\WINDOWS\system32\*.tmp files -> C:\WINDOWS\system32\*.tmp -> ]

 

< %systemroot%\Tasks\*.job /lockedfiles >

 

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< End of report >

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...