i cant delete c:\windows\temp\startdrv.exe with the help of AVG... please help me out in this..
i've downloaded winpfind3.exe and here is my scan report...
WinPFind3 logfile created on: 12/8/2007 7:49:59 AM
WinPFind3U by OldTimer - Version 1.0.44 Folder = C:\Documents and Settings\ABC\My Documents\My Completed Downloads\WinPFind3u\
Microsoft Windows XP Service Pack 2 (Version = 5.1.2600)
Internet Explorer (Version = 6.0.2900.2180)
238.73 Mb Total Physical Memory | 92.30 Mb Available Physical Memory | 38.66% Memory free
585.58 Mb Paging File | 213.73 Mb Available in Paging File | 36.50% Paging File free
Paging file location(s): C:\pagefile.sys 360 720;
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 9.77 Gb Total Space | 4.58 Gb Free Space | 46.90% Space Free
D: Drive not present or media not loaded
Drive E: | 29.29 Gb Total Space | 0.52 Gb Free Space | 1.78% Space Free
Drive F: | 35.46 Gb Total Space | 30.94 Gb Free Space | 87.26% Space Free
Computer Name: ABC
Current User Name: ABC
Logged in as Administrator.
Current Boot Mode: Normal
[Processes - Non-Microsoft Only]
avgamsvr.exe -> %ProgramFiles%\Grisoft\AVG7\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.496 | Size = 418816 bytes | Modified Date = 12/7/2007 6:40:10 PM | Attr = ]
avgas.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 2:55:42 PM | Attr = ]
avgcc.exe -> %ProgramFiles%\Grisoft\AVG7\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.497 | Size = 579072 bytes | Modified Date = 12/7/2007 6:40:10 PM | Attr = ]
avgemc.exe -> %ProgramFiles%\Grisoft\AVG7\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.494 | Size = 406528 bytes | Modified Date = 12/7/2007 6:40:14 PM | Attr = ]
avgupsvc.exe -> %ProgramFiles%\Grisoft\AVG7\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 12/7/2007 6:40:18 PM | Attr = ]
bitlord.exe -> %ProgramFiles%\BitLord\BitLord.exe -> www.BitLord.com [Ver = 1.1. | Size = 2224128 bytes | Modified Date = 5/7/2005 6:17:10 AM | Attr = ]
dap.exe -> %ProgramFiles%\DAP\DAP.exe -> Speedbit Ltd. [Ver = 8, 6, 1, 4 | Size = 4568576 bytes | Modified Date = 12/7/2007 5:09:12 PM | Attr = ]
firefox.exe -> %ProgramFiles%\Mozilla Firefox\firefox.exe -> Mozilla Corporation [Ver = 1.8.1.11: 2007112718 | Size = 7650416 bytes | Modified Date = 11/29/2007 12:41:52 AM | Attr = ]
googletoolbarnotifier.exe -> %ProgramFiles%\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe -> Google Inc. [Ver = 1, 2, 1128, 5462 | Size = 171448 bytes | Modified Date = 12/7/2007 5:09:24 PM | Attr = ]
guard.exe -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 6:01:10 PM | Attr = ]
hkcmd.exe -> %System32%\hkcmd.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 114688 bytes | Modified Date = 4/7/2003 12:37:38 PM | Attr = ]
igfxtray.exe -> %System32%\igfxtray.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Modified Date = 4/7/2003 12:49:52 PM | Attr = ]
pdvdserv.exe -> %ProgramFiles%\CyberLink\PowerDVD\PDVDServ.exe -> Cyberlink Corp. [Ver = 5.00.0000 | Size = 32768 bytes | Modified Date = 12/8/2003 5:35:14 PM | Attr = ]
realsched.exe -> %CommonProgramFiles%\Real\Update_OB\realsched.exe -> RealNetworks, Inc. [Ver = 0.1.0.4279 | Size = 185896 bytes | Modified Date = 12/5/2007 7:31:10 PM | Attr = ]
smagent.exe -> %ProgramFiles%\Analog Devices\SoundMAX\SMAgent.exe -> Analog Devices, Inc. [Ver = 3, 2, 6, 0 | Size = 45056 bytes | Modified Date = 9/20/2002 3:50:10 PM | Attr = ]
smax4.exe -> %ProgramFiles%\Analog Devices\SoundMAX\SMax4.exe -> Analog Devices, Inc. [Ver = 4, 0, 4, 25 | Size = 585728 bytes | Modified Date = 5/30/2003 9:42:22 AM | Attr = ]
smax4pnp.exe -> %ProgramFiles%\Analog Devices\SoundMAX\SMax4PNP.exe -> Analog Devices, Inc. [Ver = 4, 0, 4, 11 | Size = 790528 bytes | Modified Date = 5/29/2003 4:28:32 PM | Attr = ]
winpfind3u.exe -> %UserDocuments%\My Completed Downloads\WinPFind3u\WinPFind3U.exe -> OldTimer Tools [Ver = 1.0.44.0 | Size = 371200 bytes | Modified Date = 11/21/2007 9:19:46 AM | Attr = ]
ymsgr_tray.exe -> %ProgramFiles%\Yahoo!\Messenger\ymsgr_tray.exe -> Yahoo! Inc. [Ver = 8,1,0,0 | Size = 103664 bytes | Modified Date = 8/30/2007 5:43:18 PM | Attr = ]
[Win32 Services - Non-Microsoft Only]
(AVG Anti-Spyware Guard) AVG Anti-Spyware Guard [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 6:01:10 PM | Attr = ]
(Avg7Alrt) AVG7 Alert Manager Server [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG7\avgamsvr.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.496 | Size = 418816 bytes | Modified Date = 12/7/2007 6:40:10 PM | Attr = ]
(Avg7UpdSvc) AVG7 Update Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG7\avgupsvc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.420 | Size = 49664 bytes | Modified Date = 12/7/2007 6:40:18 PM | Attr = ]
(AVGEMS) AVG E-mail Scanner [Win32_Own | Auto | Running] -> %ProgramFiles%\Grisoft\AVG7\avgemc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.494 | Size = 406528 bytes | Modified Date = 12/7/2007 6:40:14 PM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 12:56:50 AM | Attr = ]
(gusvc) Google Updater Service [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Google\Common\Google Updater\GoogleUpdaterService.exe -> Google [Ver = 2.0.734.29932.beta | Size = 138168 bytes | Modified Date = 12/7/2007 5:09:22 PM | Attr = ]
(Microsoft Inet Service) Microsoft Inet Service [Win32_Own | Auto | Stopped] -> %System32%\_svchost.exe -> File not found
(Microsoft Inet Servicea) Microsoft Inet Servicea [Win32_Own | Auto | Stopped] -> %System32%\_svchosta.exe -> File not found
(SoundMAX Agent Service (default)) SoundMAX Agent Service [Win32_Own | Auto | Running] -> %ProgramFiles%\Analog Devices\SoundMAX\SMAgent.exe -> Analog Devices, Inc. [Ver = 3, 2, 6, 0 | Size = 45056 bytes | Modified Date = 9/20/2002 3:50:10 PM | Attr = ]
[Registry - Non-Microsoft Only]
< Run [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
!AVG Anti-Spyware -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 2:55:42 PM | Attr = ]
AVG7_CC -> %ProgramFiles%\Grisoft\AVG7\avgcc.exe -> GRISOFT, s.r.o. [Ver = 7.5.0.497 | Size = 579072 bytes | Modified Date = 12/7/2007 6:40:10 PM | Attr = ]
DownloadAccelerator -> %ProgramFiles%\DAP\DAP.exe -> Speedbit Ltd. [Ver = 8, 6, 1, 4 | Size = 4568576 bytes | Modified Date = 12/7/2007 5:09:12 PM | Attr = ]
HotKeysCmds -> %System32%\hkcmd.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 114688 bytes | Modified Date = 4/7/2003 12:37:38 PM | Attr = ]
IgfxTray -> %System32%\igfxtray.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Modified Date = 4/7/2003 12:49:52 PM | Attr = ]
NeroFilterCheck -> %System32%\NeroCheck.exe -> Ahead Software Gmbh [Ver = 1, 0, 0, 2 | Size = 155648 bytes | Modified Date = 7/9/2001 11:50:42 AM | Attr = ]
RemoteControl -> %ProgramFiles%\CyberLink\PowerDVD\PDVDServ.exe -> Cyberlink Corp. [Ver = 5.00.0000 | Size = 32768 bytes | Modified Date = 12/8/2003 5:35:14 PM | Attr = ]
SoundMAX -> %ProgramFiles%\Analog Devices\SoundMAX\SMax4.exe -> Analog Devices, Inc. [Ver = 4, 0, 4, 25 | Size = 585728 bytes | Modified Date = 5/30/2003 9:42:22 AM | Attr = ]
SoundMAXPnP -> %ProgramFiles%\Analog Devices\SoundMAX\SMax4PNP.exe -> Analog Devices, Inc. [Ver = 4, 0, 4, 11 | Size = 790528 bytes | Modified Date = 5/29/2003 4:28:32 PM | Attr = ]
startdrv -> %SystemRoot%\Temp\startdrv.exe -> [Ver = | Size = 20992 bytes | Modified Date = 12/8/2007 7:25:46 AM | Attr = ]
TkBellExe -> %CommonProgramFiles%\Real\Update_OB\realsched.exe -> RealNetworks, Inc. [Ver = 0.1.0.4279 | Size = 185896 bytes | Modified Date = 12/5/2007 7:31:10 PM | Attr = ]
< OptionalComponents [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents\ ->
IMAIL -> Installed = 1 ->
MAPI -> Installed = 1 ->
MSFS -> Installed = 1 ->
< Run [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
swg -> %ProgramFiles%\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe -> Google Inc. [Ver = 1, 2, 1128, 5462 | Size = 171448 bytes | Modified Date = 12/7/2007 5:09:24 PM | Attr = ]
Yahoo! Pager -> %ProgramFiles%\Yahoo!\Messenger\YahooMessenger.exe -> Yahoo! Inc. [Ver = 8,1,0,421 | Size = 4670704 bytes | Modified Date = 8/30/2007 5:43:18 PM | Attr = ]
< SSODL [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad ->
{c6616fcc-a481-47ef-a0eb-03d2ac6c84dd} [HKLM] -> %System32%\e404d.dll [E404Helper] -> Melkosoft Corporation [Ver = 1, 0, 1, 0 | Size = 51712 bytes | Modified Date = 12/6/2007 9:38:54 PM | Attr = ]
< ShellExecuteHooks [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks ->
{57B86673-276A-48B2-BAE7-C6DBB3020EB8} [HKLM] -> %ProgramFiles%\Grisoft\AVG Anti-Spyware 7.5\shellexecutehook.dll [AVG Anti-Spyware 7.5] -> GRISOFT s.r.o. [Ver = 7, 5, 1, 36 | Size = 79408 bytes | Modified Date = 5/30/2007 5:59:58 PM | Attr = ]
< SharedTaskScheduler [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler ->
{B5AC49A2-94F3-42BD-F434-2604812C897D} [HKLM] -> %System32%\jkd845jg.dll [sdf4dr4gfdgeetj] -> File not found
{B5AF0562-94F3-42BD-F434-2604812C297D} [HKLM] -> %System32%\d4ghggf4g.dll [JGhjddf9dtj] -> File not found
< SecurityProviders [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders ->
< Winlogon settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon\Notify settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ ->
igfxcui -> %System32%\igfxsrvc.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 315392 bytes | Modified Date = 4/7/2003 12:36:48 PM | Attr = ]
partnershipreg -> %AllUsersDocuments%\Settings\partnership.dll -> File not found
< CurrentVersion Policy Settings [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 ->
< CurrentVersion Policy Settings [HKCU] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools -> 0 ->
< HOSTS File > (734 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts ->
127.0.0.1 localhost -> ->
< Internet Explorer Settings > -> ->
HKLM: Default_Page_URL -> http://www.microsoft...p...&ar=msnhome ->
HKLM: Main\\Default_Search_URL -> http://www.google.com/ie ->
HKLM: Local Page -> %SystemRoot%\system32\blank.htm ->
HKLM: Search Page -> http://www.microsoft...amp;ar=iesearch ->
HKLM: Start Page -> http://www.microsoft...p...ER}&ar=home ->
HKLM: CustomizeSearch -> http://ie.search.msn...st/srchcust.htm ->
HKLM: Search\\Default_Search_URL -> http://www.google.com/ie ->
HKLM: SearchAssistant -> http://www.google.com/ie ->
HKCU: Local Page -> C:\WINDOWS\system32\blank.htm ->
HKCU: Search Bar -> http://www.google.com/ie ->
HKCU: Search Page -> http://www.google.com ->
HKCU: Start Page -> about:blank ->
HKCU: SearchAssistant -> http://www.google.com/ie ->
HKCU: URLSearchHooks\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> %ProgramFiles%\Yahoo!\Companion\Installs\cpn\yt.dll [Yahoo! Toolbar] -> Yahoo! Inc. [Ver = 2007, 9, 5, 1 | Size = 816400 bytes | Modified Date = 9/6/2007 3:18:58 AM | Attr = ]
HKCU: ProxyEnable -> 0 ->
< Trusted Sites > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
msn.com [ - ] -> ->
< BHO's > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{02478D38-C3F9-4efb-9B51-7695ECA05670} [HKLM] -> %ProgramFiles%\Yahoo!\Companion\Installs\cpn\yt.dll [&Yahoo! Toolbar Helper] -> Yahoo! Inc. [Ver = 2007, 9, 5, 1 | Size = 816400 bytes | Modified Date = 9/6/2007 3:18:58 AM | Attr = ]
{3049C3E9-B461-4BC5-8870-4C09146192CA} [HKLM] -> %ProgramFiles%\Real\RealPlayer\rpbrowserrecordplugin.dll [RealPlayer Download and Record Plugin for Internet Explorer] -> RealPlayer [Ver = 1.0.0.522 | Size = 370296 bytes | Modified Date = 12/5/2007 7:31:24 PM | Attr = ]
{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} [HKLM] -> %ProgramFiles%\Yahoo!\Common\yiesrvc.dll [Yahoo! IE Services Button] -> Yahoo! Inc. [Ver = 2006, 10, 31, 3 | Size = 198136 bytes | Modified Date = 11/1/2006 2:03:52 AM | Attr = ]
{AA58ED58-01DD-4d91-8333-CF10577473F7} [HKLM] -> %ProgramFiles%\Google\googletoolbar1.dll [Google Toolbar Helper] -> Google Inc. [Ver = 4, 0, 1601, 5904 | Size = 2403392 bytes | Modified Date = 12/7/2007 5:09:22 PM | Attr = R ]
{B5AC49A2-94F3-42BD-F434-2604812C897D} [HKLM] -> %System32%\jkd845jg.dll [C:\WINDOWS\system32\jkd845jg.dll] -> File not found
{B5AF0562-94F3-42BD-F434-2604812C297D} [HKLM] -> %System32%\d4ghggf4g.dll [C:\WINDOWS\system32\d4ghggf4g.dll] -> File not found
< Internet Explorer ToolBars [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
{2318C2B1-4965-11d4-9B18-009027A5CD4F} [HKLM] -> %ProgramFiles%\Google\googletoolbar1.dll [&Google] -> Google Inc. [Ver = 4, 0, 1601, 5904 | Size = 2403392 bytes | Modified Date = 12/7/2007 5:09:22 PM | Attr = R ]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> %ProgramFiles%\Yahoo!\Companion\Installs\cpn\yt.dll [Yahoo! Toolbar] -> Yahoo! Inc. [Ver = 2007, 9, 5, 1 | Size = 816400 bytes | Modified Date = 9/6/2007 3:18:58 AM | Attr = ]
< Internet Explorer ToolBars [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} [HKLM] -> %ProgramFiles%\Google\googletoolbar1.dll [&Google] -> Google Inc. [Ver = 4, 0, 1601, 5904 | Size = 2403392 bytes | Modified Date = 12/7/2007 5:09:22 PM | Attr = R ]
WebBrowser\\{EF99BD32-C1FB-11D2-892F-0090271D4F88} [HKLM] -> %ProgramFiles%\Yahoo!\Companion\Installs\cpn\yt.dll [Yahoo! Toolbar] -> Yahoo! Inc. [Ver = 2007, 9, 5, 1 | Size = 816400 bytes | Modified Date = 9/6/2007 3:18:58 AM | Attr = ]
< Internet Explorer Extensions [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} -> Reg Data - Value does not exist [ButtonText: Yahoo! Services] -> File not found
< Internet Explorer Menu Extensions [HKCU] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
&Clean Traces -> %ProgramFiles%\DAP\Privacy Package\dapcleanerie.htm -> [Ver = | Size = 1748 bytes | Modified Date = 12/7/2007 5:09:14 PM | Attr = ]
&Download with &DAP -> %ProgramFiles%\DAP\dapextie.htm -> [Ver = | Size = 2020 bytes | Modified Date = 12/7/2007 5:09:14 PM | Attr = ]
Download &all with DAP -> %ProgramFiles%\DAP\dapextie2.htm -> [Ver = | Size = 1041 bytes | Modified Date = 12/7/2007 5:09:14 PM | Attr = ]
E&xport to Microsoft Excel -> -> File not found
< User Agent Post Platform [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform ->
SV1 -> ->
< DNS Name Servers [HKLM] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{A566E258-FE7D-4EB6-B93C-BFAADF2C3D6C} -> (Realtek RTL8139 Family PCI Fast Ethernet NIC) ->
{A72EE700-268F-4345-BE7D-AC95F028E1BD} -> (Motorola SURFboard SB5101 USB Cable Modem) ->
< Protocol Handlers [HKLM] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
ipp -> Reg Data - Key not found -> File not found
msdaipp -> Reg Data - Key not found -> File not found
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{30528230-99f7-4bb4-88d8-fa1d4f56a2ab} -> Installation Support - CodeBase = C:\Program Files\Yahoo!\Common\Yinsthelper.dll ->
{D27CDB6E-AE6D-11CF-96B8-444553540000} -> - CodeBase = http://download.macr...ash/swflash.cab ->
Microsoft XML Parser for Java -> - CodeBase = file://C:\WINDOWS\Java\classes\xmldso.cab ->
[Registry - Additional Scans - Non-Microsoft Only]
[Files/Folders - Created Within 30 days]
$VAULT$.AVG -> %SystemDrive%\$VAULT$.AVG -> [Folder | Created Date = 12/7/2007 6:42:12 PM | Attr = RH ]
56.tmp -> %SystemDrive%\56.tmp -> [Ver = | Size = 2 bytes | Created Date = 12/5/2007 10:54:19 PM | Attr = ]
57.tmp -> %SystemDrive%\57.tmp -> [Ver = | Size = 27350 bytes | Created Date = 12/5/2007 10:54:22 PM | Attr = ]
58.tmp -> %SystemDrive%\58.tmp -> [Ver = | Size = 0 bytes | Created Date = 12/5/2007 10:54:45 PM | Attr = ]
59.tmp -> %SystemDrive%\59.tmp -> [Ver = | Size = 0 bytes | Created Date = 12/5/2007 10:54:45 PM | Attr = ]
5A.tmp -> %SystemDrive%\5A.tmp -> [Ver = | Size = 0 bytes | Created Date = 12/5/2007 10:54:45 PM | Attr = ]
AUTOEXEC.BAT -> %SystemDrive%\AUTOEXEC.BAT -> [Ver = | Size = 0 bytes | Created Date = 11/28/2007 5:01:17 PM | Attr = ]
boot.ini -> %SystemDrive%\boot.ini -> [Ver = | Size = 211 bytes | Created Date = 11/28/2007 10:19:20 PM | Attr = HS]
CONFIG.SYS -> %SystemDrive%\CONFIG.SYS -> [Ver = | Size = 0 bytes | Created Date = 11/28/2007 5:01:17 PM | Attr = ]
Documents and Settings -> %SystemDrive%\Documents and Settings -> [Folder | Created Date = 11/28/2007 10:20:03 PM | Attr = ]
IO.SYS -> %SystemDrive%\IO.SYS -> [Ver = | Size = 0 bytes | Created Date = 11/28/2007 5:01:17 PM | Attr = RHS]
MSDOS.SYS -> %SystemDrive%\MSDOS.SYS -> [Ver = | Size = 0 bytes | Created Date = 11/28/2007 5:01:17 PM | Attr = RHS]
Program Files -> %ProgramFiles% -> [Folder | Created Date = 11/28/2007 10:22:38 PM | Attr = R ]
RECYCLER -> %SystemDrive%\RECYCLER -> [Folder | Created Date = 11/28/2007 9:06:54 PM | Attr = HS]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Created Date = 7/31/1748 4:25:10 PM | Attr = HS]
TempEI4 -> %SystemDrive%\TempEI4 -> [Folder | Created Date = 11/28/2007 5:07:17 PM | Attr = ]
tmp -> %SystemDrive%\tmp -> [Folder | Created Date = 12/7/2007 4:22:12 PM | Attr = ]
WINDOWS -> %SystemRoot% -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
addins -> %SystemRoot%\addins -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
AppPatch -> %SystemRoot%\AppPatch -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Blue Lace 16.bmp -> %SystemRoot%\Blue Lace 16.bmp -> [Ver = | Size = 1272 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Created Date = 11/28/2007 5:04:34 PM | Attr = S]
cdplayer.ini -> %SystemRoot%\cdplayer.ini -> [Ver = | Size = 25 bytes | Created Date = 12/6/2007 8:50:56 AM | Attr = ]
Coffee Bean.bmp -> %SystemRoot%\Coffee Bean.bmp -> [Ver = | Size = 17062 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
Config -> %SystemRoot%\Config -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Connection Wizard -> %SystemRoot%\Connection Wizard -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
control.ini -> %SystemRoot%\control.ini -> [Ver = | Size = 0 bytes | Created Date = 11/28/2007 5:01:17 PM | Attr = ]
Cursors -> %SystemRoot%\Cursors -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Debug -> %SystemRoot%\Debug -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
desktop.ini -> %SystemRoot%\desktop.ini -> [Ver = | Size = 2 bytes | Created Date = 11/28/2007 4:59:21 PM | Attr = ]
Downloaded Program Files -> %SystemRoot%\Downloaded Program Files -> [Folder | Created Date = 11/28/2007 5:00:06 PM | Attr = S]
Driver Cache -> %SystemRoot%\Driver Cache -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Drivers -> %SystemRoot%\Drivers -> [Folder | Created Date = 11/28/2007 5:12:20 PM | Attr = ]
ehome -> %SystemRoot%\ehome -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
FeatherTexture.bmp -> %SystemRoot%\FeatherTexture.bmp -> [Ver = | Size = 16730 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
Fonts -> %SystemRoot%\Fonts -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = R S]
Gone Fishing.bmp -> %SystemRoot%\Gone Fishing.bmp -> [Ver = | Size = 17336 bytes | Created Date = 11/28/2007 4:57:41 PM | Attr = ]
Greenstone.bmp -> %SystemRoot%\Greenstone.bmp -> [Ver = | Size = 26582 bytes | Created Date = 11/28/2007 4:57:41 PM | Attr = ]
Help -> %SystemRoot%\Help -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
ime -> %SystemRoot%\ime -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
inf -> %SystemRoot%\inf -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = H ]
Installer -> %SystemRoot%\Installer -> [Folder | Created Date = 11/28/2007 10:22:42 PM | Attr = HS]
jautoexp.dat -> %SystemRoot%\jautoexp.dat -> [Ver = | Size = 6550 bytes | Created Date = 12/5/2007 8:36:11 AM | Attr = ]
java -> %SystemRoot%\java -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Media -> %SystemRoot%\Media -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Minidump -> %SystemRoot%\Minidump -> [Folder | Created Date = 12/7/2007 9:53:43 AM | Attr = ]
mozver.dat -> %SystemRoot%\mozver.dat -> [Ver = | Size = 1158 bytes | Created Date = 12/7/2007 4:30:27 PM | Attr = ]
msagent -> %SystemRoot%\msagent -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
msapps -> %SystemRoot%\msapps -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
mui -> %SystemRoot%\mui -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
NeroDigital.ini -> %SystemRoot%\NeroDigital.ini -> [Ver = | Size = 116 bytes | Created Date = 11/29/2007 9:20:44 AM | Attr = ]
nsreg.dat -> %SystemRoot%\nsreg.dat -> [Ver = | Size = 0 bytes | Created Date = 12/7/2007 2:42:35 PM | Attr = ]
ODBC.INI -> %SystemRoot%\ODBC.INI -> [Ver = | Size = 376 bytes | Created Date = 11/28/2007 5:24:55 PM | Attr = ]
ODBCINST.INI -> %SystemRoot%\ODBCINST.INI -> [Ver = | Size = 4161 bytes | Created Date = 11/28/2007 10:22:41 PM | Attr = ]
Offline Web Pages -> %SystemRoot%\Offline Web Pages -> [Folder | Created Date = 11/28/2007 5:00:06 PM | Attr = R ]
pchealth -> %SystemRoot%\pchealth -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
PeerNet -> %SystemRoot%\PeerNet -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
PIF -> %SystemRoot%\PIF -> [Folder | Created Date = 11/29/2007 8:31:05 AM | Attr = H ]
Prairie Wind.bmp -> %SystemRoot%\Prairie Wind.bmp -> [Ver = | Size = 65954 bytes | Created Date = 11/28/2007 4:57:41 PM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Created Date = 11/28/2007 5:05:32 PM | Attr = ]
Provisioning -> %SystemRoot%\Provisioning -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Registration -> %SystemRoot%\Registration -> [Folder | Created Date = 11/28/2007 4:58:07 PM | Attr = ]
REGLOCS.OLD -> %SystemRoot%\REGLOCS.OLD -> [Ver = | Size = 8192 bytes | Created Date = 11/28/2007 5:05:20 PM | Attr = ]
repair -> %SystemRoot%\repair -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Resources -> %SystemRoot%\Resources -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Rhododendron.bmp -> %SystemRoot%\Rhododendron.bmp -> [Ver = | Size = 17362 bytes | Created Date = 11/28/2007 4:57:41 PM | Attr = ]
River Sumida.bmp -> %SystemRoot%\River Sumida.bmp -> [Ver = | Size = 26680 bytes | Created Date = 11/28/2007 4:57:41 PM | Attr = ]
Santa Fe Stucco.bmp -> %SystemRoot%\Santa Fe Stucco.bmp -> [Ver = | Size = 65832 bytes | Created Date = 11/28/2007 4:57:41 PM | Attr = ]
security -> %SystemRoot%\security -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
SET3.tmp -> %SystemRoot%\SET3.tmp -> [Ver = | Size = 1042903 bytes | Created Date = 11/28/2007 10:20:32 PM | Attr = R ]
SET4.tmp -> %SystemRoot%\SET4.tmp -> [Ver = | Size = 1086058 bytes | Created Date = 11/28/2007 10:20:34 PM | Attr = R ]
SET8.tmp -> %SystemRoot%\SET8.tmp -> [Ver = | Size = 13753 bytes | Created Date = 11/28/2007 10:20:36 PM | Attr = R ]
ShellNew -> %SystemRoot%\ShellNew -> [Folder | Created Date = 11/28/2007 5:22:46 PM | Attr = ]
Soap Bubbles.bmp -> %SystemRoot%\Soap Bubbles.bmp -> [Ver = | Size = 65978 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
SoftwareDistribution -> %SystemRoot%\SoftwareDistribution -> [Folder | Created Date = 11/28/2007 5:05:35 PM | Attr = ]
srchasst -> %SystemRoot%\srchasst -> [Folder | Created Date = 11/28/2007 4:59:09 PM | Attr = ]
system -> %SystemRoot%\system -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
system32 -> %System32% -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
Tasks -> %SystemRoot%\Tasks -> [Folder | Created Date = 11/28/2007 4:59:12 PM | Attr = S]
Temp -> %SystemRoot%\Temp -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
twain_32 -> %SystemRoot%\twain_32 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
vb.ini -> %SystemRoot%\vb.ini -> [Ver = | Size = 36 bytes | Created Date = 11/28/2007 4:58:12 PM | Attr = ]
vbaddin.ini -> %SystemRoot%\vbaddin.ini -> [Ver = | Size = 37 bytes | Created Date = 11/28/2007 4:58:12 PM | Attr = ]
VirtualEar -> %SystemRoot%\VirtualEar -> [Folder | Created Date = 11/28/2007 5:09:37 PM | Attr = ]
Web -> %SystemRoot%\Web -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = R ]
WindowsShell.Manifest -> %SystemRoot%\WindowsShell.Manifest -> [Ver = | Size = 749 bytes | Created Date = 11/28/2007 4:59:59 PM | Attr = RH ]
winnt.bmp -> %SystemRoot%\winnt.bmp -> [Ver = | Size = 48680 bytes | Created Date = 11/28/2007 4:59:21 PM | Attr = HS]
winnt256.bmp -> %SystemRoot%\winnt256.bmp -> [Ver = | Size = 48680 bytes | Created Date = 11/28/2007 4:59:21 PM | Attr = HS]
WinSxS -> %SystemRoot%\WinSxS -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
WMSysPr9.prx -> %SystemRoot%\WMSysPr9.prx -> [Ver = | Size = 316640 bytes | Created Date = 11/28/2007 5:01:11 PM | Attr = ]
Zapotec.bmp -> %SystemRoot%\Zapotec.bmp -> [Ver = | Size = 9522 bytes | Created Date = 11/28/2007 4:57:41 PM | Attr = ]
desktop.ini -> %SystemRoot%\tasks\desktop.ini -> [Ver = | Size = 65 bytes | Created Date = 11/28/2007 4:59:12 PM | Attr = RH ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Created Date = 11/28/2007 5:05:32 PM | Attr = H ]
$winnt$.inf -> %System32%\$winnt$.inf -> [Ver = | Size = 261 bytes | Created Date = 11/28/2007 10:19:17 PM | Attr = ]
1025 -> %System32%\1025 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
1028 -> %System32%\1028 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
1031 -> %System32%\1031 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
1033 -> %System32%\1033 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
1037 -> %System32%\1037 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
1041 -> %System32%\1041 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
1042 -> %System32%\1042 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
1054 -> %System32%\1054 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
2052 -> %System32%\2052 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
3076 -> %System32%\3076 -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
3com_dmi -> %System32%\3com_dmi -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
3_exception.nls -> %System32%\3_exception.nls -> [Ver = | Size = 0 bytes | Created Date = 12/5/2007 10:53:41 PM | Attr = ]
a3d.dll -> %System32%\a3d.dll -> Sensaura Ltd [Ver = 4.12.01.2008 | Size = 720896 bytes | Created Date = 11/28/2007 5:09:36 PM | Attr = ]
amcompat.tlb -> %System32%\amcompat.tlb -> [Ver = | Size = 16832 bytes | Created Date = 11/28/2007 5:01:13 PM | Attr = ]
AniGIF.ocx -> %System32%\AniGIF.ocx -> Jin Hui E-mail: [email protected] Web: http://www.jcomsoft.com [Ver = 2, 2, 5, 5 | Size = 172032 bytes | Created Date = 12/7/2007 5:09:12 PM | Attr = ]
Audio3d.dll -> %System32%\Audio3d.dll -> Sensaura Ltd [Ver = 4.12.01.2008 | Size = 720896 bytes | Created Date = 11/28/2007 5:09:37 PM | Attr = ]
AUTOEXEC.NT -> %System32%\AUTOEXEC.NT -> [Ver = | Size = 1688 bytes | Created Date = 11/28/2007 10:22:24 PM | Attr = ]
bopomofo.uce -> %System32%\bopomofo.uce -> [Ver = | Size = 22984 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
CatRoot -> %System32%\CatRoot -> [Folder | Created Date = 11/28/2007 10:20:27 PM | Attr = ]
CatRoot2 -> %System32%\CatRoot2 -> [Folder | Created Date = 11/28/2007 10:20:27 PM | Attr = ]
cdplayer.exe.manifest -> %System32%\cdplayer.exe.manifest -> [Ver = | Size = 749 bytes | Created Date = 11/28/2007 4:59:59 PM | Attr = RH ]
CleanUp.exe -> %System32%\CleanUp.exe -> adi [Ver = 1, 0, 0, 2 | Size = 45056 bytes | Created Date = 11/28/2007 5:09:35 PM | Attr = ]
Com -> %System32%\Com -> [Folder | Created Date = 11/28/2007 4:57:18 PM | Attr = ]
config -> %System32%\config -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
CONFIG.NT -> %System32%\CONFIG.NT -> [Ver = | Size = 2577 bytes | Created Date = 11/28/2007 5:01:17 PM | Attr = ]
CONFIG.TMP -> %System32%\CONFIG.TMP -> [Ver = | Size = 2577 bytes | Created Date = 11/28/2007 10:22:24 PM | Attr = ]
c_10006.nls -> %System32%\c_10006.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:32 PM | Attr = ]
c_10007.nls -> %System32%\c_10007.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:33 PM | Attr = ]
c_10010.nls -> %System32%\c_10010.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:29 PM | Attr = ]
c_10017.nls -> %System32%\c_10017.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:33 PM | Attr = ]
c_10029.nls -> %System32%\c_10029.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:29 PM | Attr = ]
c_10081.nls -> %System32%\c_10081.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:35 PM | Attr = ]
c_10082.nls -> %System32%\c_10082.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:29 PM | Attr = ]
c_20127.nls -> %System32%\c_20127.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:27 PM | Attr = ]
C_28594.NLS -> %System32%\C_28594.NLS -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:30 PM | Attr = ]
C_28595.NLS -> %System32%\C_28595.NLS -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:33 PM | Attr = ]
C_28597.NLS -> %System32%\C_28597.NLS -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:32 PM | Attr = ]
c_28599.nls -> %System32%\c_28599.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:35 PM | Attr = ]
c_28603.nls -> %System32%\c_28603.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:36 PM | Attr = ]
c_737.nls -> %System32%\c_737.nls -> [Ver = | Size = 66594 bytes | Created Date = 11/28/2007 10:22:32 PM | Attr = ]
c_852.nls -> %System32%\c_852.nls -> [Ver = | Size = 66594 bytes | Created Date = 11/28/2007 10:22:29 PM | Attr = ]
c_855.nls -> %System32%\c_855.nls -> [Ver = | Size = 66594 bytes | Created Date = 11/28/2007 10:22:30 PM | Attr = ]
c_857.nls -> %System32%\c_857.nls -> [Ver = | Size = 66594 bytes | Created Date = 11/28/2007 10:22:35 PM | Attr = ]
c_866.nls -> %System32%\c_866.nls -> [Ver = | Size = 66594 bytes | Created Date = 11/28/2007 10:22:30 PM | Attr = ]
c_869.nls -> %System32%\c_869.nls -> [Ver = | Size = 66594 bytes | Created Date = 11/28/2007 10:22:32 PM | Attr = ]
c_875.nls -> %System32%\c_875.nls -> [Ver = | Size = 66082 bytes | Created Date = 11/28/2007 10:22:32 PM | Attr = ]
desktop.ini -> %System32%\desktop.ini -> [Ver = | Size = 2 bytes | Created Date = 11/28/2007 4:59:21 PM | Attr = ]
dgrpsetu.dll -> %System32%\dgrpsetu.dll -> Digi International, Inc. [Ver = 2.3.7 | Size = 176157 bytes | Created Date = 11/28/2007 10:22:26 PM | Attr = ]
dgsetup.dll -> %System32%\dgsetup.dll -> Digi International [Ver = v3.7.3.0 | Size = 85020 bytes | Created Date = 11/28/2007 10:22:26 PM | Attr = ]
dhcp -> %System32%\dhcp -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
DirectX -> %System32%\DirectX -> [Folder | Created Date = 11/28/2007 4:59:38 PM | Attr = ]
dllcache -> %System32%\dllcache -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = RHS]
drivers -> %System32%\drivers -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
DSndUp.exe -> %System32%\DSndUp.exe -> Analog Devices Inc. [Ver = 1, 0, 0, 9 | Size = 49152 bytes | Created Date = 11/28/2007 5:09:35 PM | Attr = ]
e404d.dll -> %System32%\e404d.dll -> Melkosoft Corporation [Ver = 1, 0, 1, 0 | Size = 51712 bytes | Created Date = 12/6/2007 9:38:48 PM | Attr = ]
emptyregdb.dat -> %System32%\emptyregdb.dat -> [Ver = | Size = 21640 bytes | Created Date = 11/28/2007 4:58:20 PM | Attr = ]
EqnClass.Dll -> %System32%\EqnClass.Dll -> Equinox Systems Inc. [Ver = 5.0u(58) | Size = 103424 bytes | Created Date = 11/28/2007 10:22:26 PM | Attr = ]
export -> %System32%\export -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
FNTCACHE.DAT -> %System32%\FNTCACHE.DAT -> [Ver = | Size = 114968 bytes | Created Date = 11/28/2007 10:20:02 PM | Attr = ]
gb2312.uce -> %System32%\gb2312.uce -> [Ver = | Size = 24006 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
hccutils.dll -> %System32%\hccutils.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 118784 bytes | Created Date = 11/28/2007 5:12:21 PM | Attr = ]
hkcmd.exe -> %System32%\hkcmd.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 114688 bytes | Created Date = 11/28/2007 5:12:21 PM | Attr = ]
hticons.dll -> %System32%\hticons.dll -> Hilgraeve, Inc. [Ver = 5.1.2600.0 | Size = 44544 bytes | Created Date = 11/28/2007 4:57:45 PM | Attr = ]
hypertrm.dll -> %System32%\hypertrm.dll -> Hilgraeve, Inc. [Ver = 5.1.2600.2180 | Size = 345088 bytes | Created Date = 11/28/2007 4:57:22 PM | Attr = ]
iAlmCoIn_v13_1.dll -> %System32%\iAlmCoIn_v13_1.dll -> Intel Corporation [Ver = 1.00.1000.1 | Size = 65536 bytes | Created Date = 11/28/2007 5:12:21 PM | Attr = ]
ialmdd5.dll -> %System32%\ialmdd5.dll -> Intel Corporation [Ver = 6.13.10.3510 | Size = 459330 bytes | Created Date = 11/28/2007 5:12:21 PM | Attr = ]
ialmdev5.dll -> %System32%\ialmdev5.dll -> Intel Corporation [Ver = 6.13.10.3510 | Size = 187963 bytes | Created Date = 11/28/2007 5:12:21 PM | Attr = ]
ialmdnt5.dll -> %System32%\ialmdnt5.dll -> Intel Corporation [Ver = 6.13.10.3510 | Size = 115772 bytes | Created Date = 11/28/2007 5:12:21 PM | Attr = ]
ialmgdev.dll -> %System32%\ialmgdev.dll -> Intel Corporation [Ver = 6.13.10.3510 | Size = 188416 bytes | Created Date = 11/28/2007 5:12:21 PM | Attr = ]
ialmgicd.dll -> %System32%\ialmgicd.dll -> Intel Corporation [Ver = 6.13.10.3510 | Size = 1859584 bytes | Created Date = 11/28/2007 5:12:21 PM | Attr = ]
ialmrem.dll -> %System32%\ialmrem.dll -> Intel Corporation [Ver = 6.13.10.3510 | Size = 73728 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
ialmrnt5.dll -> %System32%\ialmrnt5.dll -> Intel Corporation [Ver = 6.13.10.3510 | Size = 33792 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
ias -> %System32%\ias -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
icsxml -> %System32%\icsxml -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
ideograf.uce -> %System32%\ideograf.uce -> [Ver = | Size = 60458 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
igfxcfg.exe -> %System32%\igfxcfg.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 487424 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxcpl.cpl -> %System32%\igfxcpl.cpl -> Intel Corporation [Ver = 3,0,0,2104 | Size = 94208 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxdev.dll -> %System32%\igfxdev.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 147456 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxdgps.dll -> %System32%\igfxdgps.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 45056 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxdiag.exe -> %System32%\igfxdiag.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 151552 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxdo.dll -> %System32%\igfxdo.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 86016 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxeud.dll -> %System32%\igfxeud.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 221184 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxexps.dll -> %System32%\igfxexps.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 32768 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxext.exe -> %System32%\igfxext.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 90112 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxhara.lhp -> %System32%\igfxhara.lhp -> [Ver = | Size = 56845 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxharb.lhp -> %System32%\igfxharb.lhp -> [Ver = | Size = 56845 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxhchs.lhp -> %System32%\igfxhchs.lhp -> [Ver = | Size = 56835 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxhcht.lhp -> %System32%\igfxhcht.lhp -> [Ver = | Size = 59052 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxhcsy.lhp -> %System32%\igfxhcsy.lhp -> [Ver = | Size = 58647 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxhdan.lhp -> %System32%\igfxhdan.lhp -> [Ver = | Size = 58026 bytes | Created Date = 11/28/2007 5:12:22 PM | Attr = ]
igfxhdeu.lhp -> %System32%\igfxhdeu.lhp -> [Ver = | Size = 60894 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhell.lhp -> %System32%\igfxhell.lhp -> [Ver = | Size = 60025 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxheng.lhp -> %System32%\igfxheng.lhp -> [Ver = | Size = 56580 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhenu.lhp -> %System32%\igfxhenu.lhp -> [Ver = | Size = 55002 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhesp.lhp -> %System32%\igfxhesp.lhp -> [Ver = | Size = 58095 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhfin.lhp -> %System32%\igfxhfin.lhp -> [Ver = | Size = 58889 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhfra.lhp -> %System32%\igfxhfra.lhp -> [Ver = | Size = 60099 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhfrc.lhp -> %System32%\igfxhfrc.lhp -> [Ver = | Size = 60400 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhheb.lhp -> %System32%\igfxhheb.lhp -> [Ver = | Size = 60392 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhhun.lhp -> %System32%\igfxhhun.lhp -> [Ver = | Size = 60988 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhita.lhp -> %System32%\igfxhita.lhp -> [Ver = | Size = 57797 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhjpn.lhp -> %System32%\igfxhjpn.lhp -> [Ver = | Size = 58967 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhk.dll -> %System32%\igfxhk.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 118784 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhkor.lhp -> %System32%\igfxhkor.lhp -> [Ver = | Size = 62970 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhnld.lhp -> %System32%\igfxhnld.lhp -> [Ver = | Size = 58738 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhnor.lhp -> %System32%\igfxhnor.lhp -> [Ver = | Size = 58021 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhplk.lhp -> %System32%\igfxhplk.lhp -> [Ver = | Size = 60037 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhptb.lhp -> %System32%\igfxhptb.lhp -> [Ver = | Size = 57434 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhptg.lhp -> %System32%\igfxhptg.lhp -> [Ver = | Size = 57965 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhrus.lhp -> %System32%\igfxhrus.lhp -> [Ver = | Size = 59819 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhsve.lhp -> %System32%\igfxhsve.lhp -> [Ver = | Size = 58024 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhtha.lhp -> %System32%\igfxhtha.lhp -> [Ver = | Size = 60770 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxhtrk.lhp -> %System32%\igfxhtrk.lhp -> [Ver = | Size = 58518 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxpph.dll -> %System32%\igfxpph.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 204800 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxrara.lrc -> %System32%\igfxrara.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxrarb.lrc -> %System32%\igfxrarb.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxrchs.lrc -> %System32%\igfxrchs.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxrcht.lrc -> %System32%\igfxrcht.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxrcsy.lrc -> %System32%\igfxrcsy.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:23 PM | Attr = ]
igfxrdan.lrc -> %System32%\igfxrdan.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxrdeu.lrc -> %System32%\igfxrdeu.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxrell.lrc -> %System32%\igfxrell.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 163840 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxreng.lrc -> %System32%\igfxreng.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxrenu.lrc -> %System32%\igfxrenu.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxres.dll -> %System32%\igfxres.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:14:01 PM | Attr = ]
igfxresp.lrc -> %System32%\igfxresp.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxress.dll -> %System32%\igfxress.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 503808 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxrfin.lrc -> %System32%\igfxrfin.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxrfra.lrc -> %System32%\igfxrfra.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxrfrc.lrc -> %System32%\igfxrfrc.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:24 PM | Attr = ]
igfxrheb.lrc -> %System32%\igfxrheb.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrhun.lrc -> %System32%\igfxrhun.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrita.lrc -> %System32%\igfxrita.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrjpn.lrc -> %System32%\igfxrjpn.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrkor.lrc -> %System32%\igfxrkor.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrnld.lrc -> %System32%\igfxrnld.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrnor.lrc -> %System32%\igfxrnor.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrplk.lrc -> %System32%\igfxrplk.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrptb.lrc -> %System32%\igfxrptb.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrptg.lrc -> %System32%\igfxrptg.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 159744 bytes | Created Date = 11/28/2007 5:12:25 PM | Attr = ]
igfxrrus.lrc -> %System32%\igfxrrus.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:26 PM | Attr = ]
igfxrsve.lrc -> %System32%\igfxrsve.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:26 PM | Attr = ]
igfxrtha.lrc -> %System32%\igfxrtha.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:26 PM | Attr = ]
igfxrtrk.lrc -> %System32%\igfxrtrk.lrc -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:26 PM | Attr = ]
igfxsrvc.dll -> %System32%\igfxsrvc.dll -> Intel Corporation [Ver = 3,0,0,2104 | Size = 315392 bytes | Created Date = 11/28/2007 5:12:26 PM | Attr = ]
igfxtray.exe -> %System32%\igfxtray.exe -> Intel Corporation [Ver = 3,0,0,2104 | Size = 155648 bytes | Created Date = 11/28/2007 5:12:26 PM | Attr = ]
ImagX7.dll -> %System32%\ImagX7.dll -> Pegasus Imaging Corp. [Ver = 7.0.46.0 | Size = 1568768 bytes | Created Date = 11/28/2007 5:47:09 PM | Attr = ]
ImagXpr7.dll -> %System32%\ImagXpr7.dll -> Pegasus Imaging Corp. [Ver = 7.0.46.0 | Size = 476320 bytes | Created Date = 11/28/2007 5:47:09 PM | Attr = ]
ImagXR7.dll -> %System32%\ImagXR7.dll -> Pegasus Imaging Corp. [Ver = 7.0.476.0 | Size = 262144 bytes | Created Date = 11/28/2007 5:47:09 PM | Attr = ]
ImagXRA7.dll -> %System32%\ImagXRA7.dll -> Pegasus Imaging Corp. [Ver = 7.0.476.0 | Size = 471040 bytes | Created Date = 11/28/2007 5:47:09 PM | Attr = ]
IME -> %System32%\IME -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
inetsrv -> %System32%\inetsrv -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
isrdbg32.dll -> %System32%\isrdbg32.dll -> Intel Corporation [Ver = 0.0 | Size = 32768 bytes | Created Date = 11/28/2007 4:58:55 PM | Attr = ]
javasup.vxd -> %System32%\javasup.vxd -> [Ver = | Size = 7315 bytes | Created Date = 12/5/2007 8:36:12 AM | Attr = ]
kanji_1.uce -> %System32%\kanji_1.uce -> [Ver = | Size = 6948 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
kanji_2.uce -> %System32%\kanji_2.uce -> [Ver = | Size = 8484 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
korean.uce -> %System32%\korean.uce -> [Ver = | Size = 12876 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
logonui.exe.manifest -> %System32%\logonui.exe.manifest -> [Ver = | Size = 488 bytes | Created Date = 11/28/2007 5:00:06 PM | Attr = RH ]
Macromed -> %System32%\Macromed -> [Folder | Created Date = 11/28/2007 4:59:08 PM | Attr = ]
Microsoft -> %System32%\Microsoft -> [Folder | Created Date = 11/28/2007 5:05:32 PM | Attr = S]
MsDtc -> %System32%\MsDtc -> [Folder | Created Date = 11/28/2007 4:57:20 PM | Attr = ]
msdtcprf.h -> %System32%\msdtcprf.h -> [Ver = | Size = 768 bytes | Created Date = 11/28/2007 4:57:37 PM | Attr = ]
msdtcprf.ini -> %System32%\msdtcprf.ini -> [Ver = | Size = 1931 bytes | Created Date = 11/28/2007 4:57:37 PM | Attr = ]
mui -> %System32%\mui -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
ncpa.cpl.manifest -> %System32%\ncpa.cpl.manifest -> [Ver = | Size = 749 bytes | Created Date = 11/28/2007 4:59:59 PM | Attr = RH ]
NeroCheck.exe -> %System32%\NeroCheck.exe -> Ahead Software Gmbh [Ver = 1, 0, 0, 2 | Size = 155648 bytes | Created Date = 11/28/2007 5:47:08 PM | Attr = ]
npp -> %System32%\npp -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
nscompat.tlb -> %System32%\nscompat.tlb -> [Ver = | Size = 23392 bytes | Created Date = 11/28/2007 5:01:13 PM | Attr = ]
nwc.cpl.manifest -> %System32%\nwc.cpl.manifest -> [Ver = | Size = 749 bytes | Created Date = 11/28/2007 4:59:59 PM | Attr = RH ]
oobe -> %System32%\oobe -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
PerfStringBackup.INI -> %System32%\PerfStringBackup.INI -> [Ver = | Size = 356120 bytes | Created Date = 11/28/2007 10:22:42 PM | Attr = ]
pncrt.dll -> %System32%\pncrt.dll -> Real Networks, Inc [Ver = 6.0.0.0 | Size = 278528 bytes | Created Date = 12/5/2007 7:31:09 PM | Attr = ]
pndx5016.dll -> %System32%\pndx5016.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 6656 bytes | Created Date = 12/5/2007 7:31:11 PM | Attr = ]
pndx5032.dll -> %System32%\pndx5032.dll -> RealNetworks, Inc. [Ver = 5.0.0.0 | Size = 5632 bytes | Created Date = 12/5/2007 7:31:11 PM | Attr = ]
ras -> %System32%\ras -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
ReinstallBackups -> %System32%\ReinstallBackups -> [Folder | Created Date = 11/28/2007 5:10:46 PM | Attr = ]
Restore -> %System32%\Restore -> [Folder | Created Date = 11/28/2007 4:58:56 PM | Attr = ]
rmoc3260.dll -> %System32%\rmoc3260.dll -> RealNetworks, Inc. [Ver = 6.0.9.3084 | Size = 185944 bytes | Created Date = 12/5/2007 7:31:16 PM | Attr = ]
RunOnce.tmp -> %System32%\RunOnce.tmp -> [Ver = | Size = 374 bytes | Created Date = 12/5/2007 10:50:05 PM | Attr = ]
RunOnce.t__ -> %System32%\RunOnce.t__ -> [Ver = | Size = 61 bytes | Created Date = 12/5/2007 10:50:25 PM | Attr = ]
sapi.cpl.manifest -> %System32%\sapi.cpl.manifest -> [Ver = | Size = 749 bytes | Created Date = 11/28/2007 4:59:59 PM | Attr = RH ]
Setup -> %System32%\Setup -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
ShellExt -> %System32%\ShellExt -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
shiftjis.uce -> %System32%\shiftjis.uce -> [Ver = | Size = 16740 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
SMMedia.dll -> %System32%\SMMedia.dll -> Analog Devices [Ver = 1, 0, 0, 8 | Size = 1285632 bytes | Created Date = 11/28/2007 5:09:40 PM | Attr = ]
spool -> %System32%\spool -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
spxcoins.dll -> %System32%\spxcoins.dll -> Perle Systems Ltd. [Ver = 1.0.0.0007 | Size = 24661 bytes | Created Date = 11/28/2007 10:22:26 PM | Attr = ]
subrange.uce -> %System32%\subrange.uce -> [Ver = | Size = 93702 bytes | Created Date = 11/28/2007 4:57:40 PM | Attr = ]
tslabels.h -> %System32%\tslabels.h -> [Ver = | Size = 3286 bytes | Created Date = 11/28/2007 4:57:38 PM | Attr = ]
tslabels.ini -> %System32%\tslabels.ini -> [Ver = | Size = 13223 bytes | Created Date = 11/28/2007 4:57:38 PM | Attr = ]
TwnLib20.dll -> %System32%\TwnLib20.dll -> Pegasus Software [Ver = 2.02.010 | Size = 106496 bytes | Created Date = 11/28/2007 5:47:11 PM | Attr = ]
update252.exe -> %System32%\update252.exe -> [Ver = | Size = 120731 bytes | Created Date = 12/6/2007 9:39:02 PM | Attr = ]
usmt -> %System32%\usmt -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
usrlogon.cmd -> %System32%\usrlogon.cmd -> [Ver = | Size = 1161 bytes | Created Date = 11/28/2007 4:57:38 PM | Attr = ]
virtear.dll -> %System32%\virtear.dll -> Sensaura [Ver = 1, 0, 0, 6 | Size = 991232 bytes | Created Date = 11/28/2007 5:09:36 PM | Attr = ]
wbem -> %System32%\wbem -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
wbhelp2.dll -> %System32%\wbhelp2.dll -> Stardock.Net, Inc [Ver = 1.5 | Size = 50688 bytes | Created Date = 12/7/2007 5:09:12 PM | Attr = ]
wbocx.ocx -> %System32%\wbocx.ocx -> Stardock.Net, Inc [Ver = 3.01 | Size = 479298 bytes | Created Date = 12/7/2007 5:09:12 PM | Attr = ]
wdmioctl.dll -> %System32%\wdmioctl.dll -> Analog Devices Inc. [Ver = 2, 0, 0, 3 | Size = 30208 bytes | Created Date = 11/28/2007 5:09:40 PM | Attr = ]
WindowsLogon.manifest -> %System32%\WindowsLogon.manifest -> [Ver = | Size = 488 bytes | Created Date = 11/28/2007 5:00:06 PM | Attr = RH ]
wins -> %System32%\wins -> [Folder | Created Date = 11/28/2007 10:15:57 PM | Attr = ]
wmimgmt.msc -> %System32%\wmimgmt.msc -> [Ver = | Size = 63488 bytes | Created Date = 11/28/2007 4:57:33 PM | Attr = ]
wuaucpl.cpl.manifest -> %System32%\wuaucpl.cpl.manifest -> [Ver = | Size = 749 bytes | Created Date = 11/28/2007 4:59:59 PM | Attr = RH ]
xircom -> %System32%\xircom -> [Folder | Created Date = 11/28/2007 5:01:41 PM | Attr = ]
ytadhgqu.tmp -> %System32%\ytadhgqu.tmp -> [Ver = | Size = 29 bytes | Created Date = 12/5/2007 1