Logfile of random's system information tool (written by random/random)
Run by Falcon Joker at 2008-09-02 01:43:24
Microsoft Windows XP Professional Service Pack 3
System drive C: has 47 GB (66%) free of 71 GB
Total RAM: 1022 MB (56% free)
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:43:35 AM, on 9/2/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16705)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\stsystra.exe
c:\WINDOWS\system32\ZuneBusEnum.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\qlirypsb.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Falcon Joker\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Falcon Joker.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft....k/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: BitComet ClickCapture - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll (file missing)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [AppleSyncNotifier] C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Zune Launcher] "c:\Program Files\Zune\ZuneLauncher.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [ShSmart] C:\WINDOWS\system32\qlirypsb.exe
O4 - HKCU\..\Run: [ShStrProc] C:\WINDOWS\system32\irmxaxkn.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O8 - Extra context menu item: &D&ownload &with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddLink.htm
O8 - Extra context menu item: &D&ownload all video with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddVideo.htm
O8 - Extra context menu item: &D&ownload all with BitComet - res://C:\Program Files\BitComet\BitComet.exe/AddAllLink.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: BitComet - {D18A0B52-D63C-4ed0-AFC6-C1E3DC1AF43A} - res://C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll/206 (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O21 - SSODL: syshlpapi - {011130DF-EC5C-938F-5AA9-08F64E7D145F} - C:\Program Files\kohvfuc\syshlpapi.dll (file missing)
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Intel® Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Audio Service (STacSV) - IDT, Inc. - C:\WINDOWS\system32\STacSV.exe
--
End of file - 7672 bytes
Scheduled tasks folder
C:\WINDOWS\tasks\AppleSoftwareUpdate.job
Registry dump
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{39F7E362-828A-4B5A-BCAF-5B79BFDFEA60}]
BitComet Helper - C:\Program Files\BitComet\tools\BitCometBHO_1.2.2.28.dll [2008-02-29 468280]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}]
AVG Safe Search - C:\Program Files\AVG\AVG8\avgssie.dll []
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{53707962-6F74-2D53-2644-206D7942484F}]
Spybot-S&D IE Protection - C:\PROGRA~1\SPYBOT~1\SDHelper.dll [2008-07-07 1562448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5CA3D70E-1895-11CF-8E15-001234567890}]
DriveLetterAccess - C:\WINDOWS\System32\DLA\DLASHX_W.DLL [2005-09-08 110652]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll [2008-06-10 509328]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}]
Google Toolbar Notifier BHO - C:\Program Files\Google\GoogleToolbarNotifier\2.1.1119.1736\swg.dll [2008-07-14 654320]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ehTray"=C:\WINDOWS\ehome\ehtray.exe [2005-08-05 64512]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-07-06 151552]
"ATICCC"=C:\Program Files\ATI Technologies\ATI.ACE\cli.exe [2006-01-02 45056]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-05-27 413696]
"SigmatelSysTrayApp"=C:\WINDOWS\stsystra.exe [2006-03-20 282624]
"AppleSyncNotifier"=C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleSyncNotifier.exe [2008-07-10 116040]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"DLA"=C:\WINDOWS\System32\DLA\DLACTRLW.EXE [2005-09-08 122940]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2004-07-27 221184]
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2004-07-27 81920]
"iTunesHelper"=C:\Program Files\iTunes\iTunesHelper.exe [2008-07-30 289064]
"Zune Launcher"=c:\Program Files\Zune\ZuneLauncher.exe [2008-04-29 158624]
"SunJavaUpdateSched"=C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe [2008-06-10 144784]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"=C:\WINDOWS\system32\ctfmon.exe [2008-04-13 15360]
"ShSmart"=C:\WINDOWS\system32\qlirypsb.exe [2008-08-29 94208]
"ShStrProc"=C:\WINDOWS\system32\irmxaxkn.exe [2008-08-29 94208]
"SpybotSD TeaTimer"=C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe [2008-08-18 1832272]
"MSMSGS"=C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DW6]
C:\Program Files\The Weather Channel FW\Desktop\DesktopWeather.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IDTSysTrayApp]
C:\WINDOWS\sttray.exe [2007-09-05 405504]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2008-07-30 289064]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
C:\Program Files\Messenger\msmsgs.exe [2008-04-13 1695232]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2008-06-03 21718312]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^Falcon Joker^Start Menu^Programs^Startup^OpenOffice.org 2.4.lnk]
C:\PROGRA~1\OPENOF~1.4\program\QUICKS~1.EXE [2008-01-21 393216]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\AtiExtEvent]
C:\WINDOWS\system32\Ati2evxx.dll [2008-07-03 139264]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll [2006-10-18 133632]
syshlpapi - {011130DF-EC5C-938F-5AA9-08F64E7D145F} - C:\Program Files\kohvfuc\syshlpapi.dll []
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll schannel.dll digest.dll msnsspc.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\aawservice]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Wdf01000.sys]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"InstallVisualStyle"=C:\WINDOWS\Resources\Themes\Royale\Royale.msstyles
"InstallTheme"=C:\WINDOWS\Resources\Themes\Royale.theme
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Program Files\Pidgin\pidgin.exe"="C:\Program Files\Pidgin\pidgin.exe:*:Enabled:Pidgin"
"C:\Program Files\Bonjour\mDNSResponder.exe"="C:\Program Files\Bonjour\mDNSResponder.exe:*:Enabled:Bonjour"
"C:\Program Files\Xfire\xfire.exe"="C:\Program Files\Xfire\xfire.exe:*:Enabled:Xfire"
"C:\Program Files\BitComet\BitComet.exe"="C:\Program Files\BitComet\BitComet.exe:*:Enabled:BitComet - a BitTorrent Client"
"C:\Program Files\Messenger\msmsgs.exe"="C:\Program Files\Messenger\msmsgs.exe:*:Enabled:Windows Messenger"
"C:\Documents and Settings\All Users\Application Data\NexonUS\NGM\NGM.exe"="C:\Documents and Settings\All Users\Application Data\NexonUS\NGM\NGM.exe:*:Enabled:Nexon Game Manager"
"C:\Nexon\Combat Arms\CombatArms.exe"="C:\Nexon\Combat Arms\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms\Engine.exe"="C:\Nexon\Combat Arms\Engine.exe:*Enabled:Engine.exe"
"C:\Nexon\Combat Arms\NMService.exe"="C:\Nexon\Combat Arms\NMService.exe:*:Enabled:Nexon Messenger Core"
"C:\Program Files\iTunes\iTunes.exe"="C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes"
"C:\Program Files\Skype\Phone\Skype.exe"="C:\Program Files\Skype\Phone\Skype.exe:*:Enabled:Skype"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\system32\sessmgr.exe"="%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"%windir%\Network Diagnostic\xpnetdiag.exe"="%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\Nexon\Combat Arms\CombatArms.exe"="C:\Nexon\Combat Arms\CombatArms.exe:*Enabled:CombatArms.exe"
"C:\Nexon\Combat Arms\Engine.exe"="C:\Nexon\Combat Arms\Engine.exe:*Enabled:Engine.exe"
File associations
.scr - open - "%1" %*
List of files/folders created in the last three months
2008-09-02 01:43:24 ----D---- C:\rsit
2008-09-01 16:34:25 ----D---- C:\Program Files\Trend Micro
2008-09-01 00:06:15 ----D---- C:\WINDOWS\Temp
2008-09-01 00:06:14 ----D---- C:\WINDOWS\system32\vmm32
2008-08-30 00:07:38 ----D---- C:\Program Files\Lavasoft
2008-08-30 00:07:38 ----D---- C:\Documents and Settings\All Users\Application Data\Lavasoft
2008-08-30 00:07:22 ----D---- C:\Program Files\Common Files\Wise Installation Wizard
2008-08-30 00:05:52 ----D---- C:\Program Files\SpywareBlaster
2008-08-30 00:05:52 ----A---- C:\WINDOWS\system32\MSSTDFMT.DLL
2008-08-30 00:05:22 ----HDC---- C:\WINDOWS\$NtUninstallKB951618-v2$
2008-08-30 00:04:33 ----D---- C:\Program Files\Spybot - Search & Destroy
2008-08-30 00:04:33 ----D---- C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-08-29 23:59:00 ----A---- C:\WINDOWS\system32\javaws.exe
2008-08-29 23:59:00 ----A---- C:\WINDOWS\system32\javaw.exe
2008-08-29 23:59:00 ----A---- C:\WINDOWS\system32\java.exe
2008-08-29 23:58:39 ----D---- C:\Program Files\Common Files\Java
2008-08-29 23:56:29 ----D---- C:\Documents and Settings\All Users\Application Data\Avg8
2008-08-29 19:23:39 ----D---- C:\WINDOWS\ERUNT
2008-08-29 17:36:04 ----D---- C:\Program Files\AVG
2008-08-29 10:28:40 ----A---- C:\WINDOWS\ntbtlog.txt
2008-08-29 10:18:22 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\AntispywareBot
2008-08-29 05:59:28 ----A---- C:\WINDOWS\system32\irmxaxkn.exe
2008-08-29 00:22:10 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Malwarebytes
2008-08-29 00:22:07 ----D---- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-08-29 00:12:33 ----D---- C:\Documents and Settings\All Users\Application Data\abcnmjcn
2008-08-29 00:12:32 ----A---- C:\WINDOWS\system32\qlirypsb.exe
2008-08-23 14:17:03 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\U3
2008-08-18 02:30:08 ----D---- C:\Documents and Settings\All Users\Application Data\NCH Swift Sound
2008-08-18 02:29:35 ----D---- C:\Documents and Settings\All Users\Application Data\NCH Software
2008-08-16 03:01:49 ----HDC---- C:\WINDOWS\$NtUninstallKB939683$
2008-08-13 03:07:38 ----HDC---- C:\WINDOWS\$NtUninstallKB952954$
2008-08-13 03:07:24 ----HDC---- C:\WINDOWS\$NtUninstallKB946648$
2008-08-13 03:07:15 ----HDC---- C:\WINDOWS\$NtUninstallKB953839$
2008-08-13 03:07:02 ----HDC---- C:\WINDOWS\$NtUninstallKB950974$
2008-08-13 03:03:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951072-v2$
2008-08-13 03:03:33 ----HDC---- C:\WINDOWS\$NtUninstallKB952287$
2008-08-13 03:03:23 ----HDC---- C:\WINDOWS\$NtUninstallKB929399$
2008-08-13 03:02:09 ----HDC---- C:\WINDOWS\$NtUninstallKB951066$
2008-08-13 03:01:24 ----HDC---- C:\WINDOWS\$NtUninstallKB936782_WMP11$
2008-08-12 18:08:56 ----A---- C:\WINDOWS\system32\xfcodec.dll
2008-08-11 21:27:37 ----D---- C:\Program Files\Microsoft Silverlight
2008-08-05 18:02:16 ----A---- C:\WINDOWS\system32\DivXsm.exe
2008-08-05 18:02:12 ----A---- C:\WINDOWS\system32\qt-dx331.dll
2008-08-05 18:00:00 ----A---- C:\WINDOWS\system32\ssldivx.dll
2008-08-05 18:00:00 ----A---- C:\WINDOWS\system32\libdivx.dll
2008-08-05 17:59:04 ----A---- C:\WINDOWS\system32\dtu100.dll.manifest
2008-08-05 17:59:04 ----A---- C:\WINDOWS\system32\dtu100.dll
2008-08-05 17:59:04 ----A---- C:\WINDOWS\system32\dpl100.dll.manifest
2008-08-05 17:59:04 ----A---- C:\WINDOWS\system32\dpl100.dll
2008-08-05 17:59:02 ----A---- C:\WINDOWS\system32\dpuGUI10.dll
2008-08-05 17:59:00 ----A---- C:\WINDOWS\system32\dpv11.dll
2008-08-05 17:59:00 ----A---- C:\WINDOWS\system32\dpus11.dll
2008-08-05 17:59:00 ----A---- C:\WINDOWS\system32\dpuGUI11.dll
2008-08-05 17:59:00 ----A---- C:\WINDOWS\system32\dpu11.dll
2008-08-05 17:59:00 ----A---- C:\WINDOWS\system32\dpu10.dll
2008-08-05 17:58:58 ----A---- C:\WINDOWS\system32\divx_xx11.dll
2008-08-05 17:58:58 ----A---- C:\WINDOWS\system32\divx_xx0c.dll
2008-08-05 17:58:58 ----A---- C:\WINDOWS\system32\divx_xx0a.dll
2008-08-05 17:58:58 ----A---- C:\WINDOWS\system32\divx_xx07.dll
2008-08-05 17:58:56 ----A---- C:\WINDOWS\system32\DivX.dll
2008-08-05 17:58:32 ----A---- C:\WINDOWS\system32\DivXCodecVersionChecker.exe
2008-08-05 17:58:14 ----A---- C:\WINDOWS\system32\DivXWMPExtType.dll
2008-08-04 13:31:04 ----N---- C:\WINDOWS\system32\spmsgXP_2k3.dll
2008-08-04 13:31:02 ----HDC---- C:\WINDOWS\$NtUninstallWdf01007$
2008-08-04 13:30:48 ----D---- C:\Program Files\Zune
2008-08-01 09:33:29 ----A---- C:\WINDOWS\War3Unin.exe
2008-08-01 09:28:07 ----D---- C:\Program Files\Warcraft III
2008-08-01 08:42:43 ----D---- C:\Downloads
2008-07-31 18:13:47 ----D---- C:\Program Files\iPod
2008-07-24 16:29:40 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\skypePM
2008-07-24 16:29:00 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Skype
2008-07-24 16:28:36 ----D---- C:\Program Files\Skype
2008-07-24 16:28:36 ----D---- C:\Program Files\Common Files\Skype
2008-07-24 16:28:21 ----D---- C:\Documents and Settings\All Users\Application Data\Skype
2008-07-23 20:59:18 ----D---- C:\Program Files\Black Isle
2008-07-23 02:18:43 ----D---- C:\ATI
2008-07-23 02:08:40 ----D---- C:\Documents and Settings\All Users\Application Data\NexonUS
2008-07-20 22:01:56 ----D---- C:\Documents and Settings\All Users\Application Data\InstallShield
2008-07-20 22:01:54 ----D---- C:\WINDOWS\system32\DLA
2008-07-20 22:01:54 ----A---- C:\WINDOWS\wininit.ini
2008-07-20 22:01:54 ----A---- C:\WINDOWS\system32\DLAAPI_W.DLL
2008-07-20 22:01:54 ----A---- C:\WINDOWS\DLA.EXE
2008-07-20 22:01:19 ----D---- C:\Program Files\Roxio
2008-07-20 22:01:18 ----D---- C:\Program Files\Common Files\Sonic Shared
2008-07-20 21:57:15 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\DivX
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\vxblock.dll
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxwave.dll
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxsfs.dll
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxmas.dll
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxinsi64.exe
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxinsa64.exe
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxhpinst.exe
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxdrv.dll
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxcpyi64.exe
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxcpya64.exe
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\pxafs.dll
2008-07-20 21:56:02 ----N---- C:\WINDOWS\system32\px.dll
2008-07-20 21:55:57 ----D---- C:\Program Files\DivX
2008-07-20 17:50:22 ----A---- C:\WINDOWS\system32\msvcr71.dll
2008-07-20 17:50:22 ----A---- C:\WINDOWS\system32\msvcp71.dll
2008-07-20 17:50:18 ----D---- C:\WINDOWS\system32\Adobe
2008-07-20 16:43:02 ----D---- C:\Documents and Settings\All Users\Application Data\Adobe
2008-07-20 16:42:53 ----D---- C:\Program Files\Common Files\Adobe
2008-07-20 16:42:53 ----D---- C:\Program Files\Adobe
2008-07-19 13:44:52 ----D---- C:\Program Files\iTunes
2008-07-19 13:41:38 ----D---- C:\Program Files\Safari
2008-07-18 16:59:28 ----D---- C:\Program Files\IrfanView
2008-07-18 16:34:51 ----A---- C:\WINDOWS\IsUninst.exe
2008-07-18 16:30:56 ----A---- C:\WINDOWS\system32\wiafbdrv.dll
2008-07-15 21:56:49 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\OpenOffice.org2
2008-07-15 02:44:00 ----D---- C:\Program Files\Apple Software Update
2008-07-14 20:17:44 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Google
2008-07-14 20:16:48 ----D---- C:\Documents and Settings\All Users\Application Data\Google Updater
2008-07-14 20:16:47 ----D---- C:\Program Files\Google
2008-07-14 16:37:02 ----D---- C:\WINDOWS\pss
2008-07-13 16:49:56 ----N---- C:\WINDOWS\system32\spmsg.dll
2008-07-13 16:49:53 ----HDC---- C:\WINDOWS\$NtUninstallMSCompPackV1$
2008-07-13 16:49:36 ----D---- C:\Program Files\Windows Media Connect 2
2008-07-13 16:49:30 ----HDC---- C:\WINDOWS\$NtUninstallwmp11$
2008-07-13 16:48:54 ----HDC---- C:\WINDOWS\$NtUninstallWMFDist11$
2008-07-13 16:48:31 ----D---- C:\WINDOWS\system32\LogFiles
2008-07-13 16:48:27 ----HDC---- C:\WINDOWS\$NtUninstallWudf01000$
2008-07-13 16:48:03 ----HDC---- C:\WINDOWS\$NtUninstallKB925766$
2008-07-12 16:59:21 ----D---- C:\Program Files\OpenOffice.org 2.4
2008-07-12 16:28:16 ----D---- C:\WINDOWS\ie7updates
2008-07-12 16:27:58 ----D---- C:\WINDOWS\WBEM
2008-07-12 16:27:45 ----HDC---- C:\WINDOWS\ie7
2008-07-12 16:27:35 ----HDC---- C:\WINDOWS\$NtServicePackUninstallIDNMitigationAPIs$
2008-07-12 16:27:17 ----HDC---- C:\WINDOWS\$NtServicePackUninstallNLSDownlevelMapping$
2008-07-12 15:21:19 ----A---- C:\WINDOWS\system32\ptpusb.dll
2008-07-12 15:21:18 ----A---- C:\WINDOWS\system32\ptpusd.dll
2008-07-12 00:18:14 ----A---- C:\WINDOWS\system32\xinput1_1.dll
2008-07-12 00:18:13 ----A---- C:\WINDOWS\system32\xactengine2_1.dll
2008-07-12 00:18:12 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2008-07-12 00:18:11 ----A---- C:\WINDOWS\system32\xactengine2_0.dll
2008-07-12 00:18:11 ----A---- C:\WINDOWS\system32\x3daudio1_0.dll
2008-07-12 00:18:11 ----A---- C:\WINDOWS\system32\d3dx9_29.dll
2008-07-12 00:18:09 ----A---- C:\WINDOWS\system32\d3dx9_28.dll
2008-07-12 00:18:08 ----A---- C:\WINDOWS\system32\xinput9_1_0.dll
2008-07-12 00:18:08 ----A---- C:\WINDOWS\system32\d3dx9_27.dll
2008-07-12 00:18:08 ----A---- C:\WINDOWS\system32\d3dx9_26.dll
2008-07-12 00:18:08 ----A---- C:\WINDOWS\system32\d3dx9_25.dll
2008-07-12 00:18:06 ----A---- C:\WINDOWS\system32\d3dx9_24.dll
2008-07-12 00:05:21 ----D---- C:\Program Files\SEGA
2008-07-10 23:00:28 ----A---- C:\WINDOWS\system32\MRT.exe
2008-07-09 22:33:07 ----D---- C:\WINDOWS\system32\tdk-screensaver-a03 dir
2008-07-09 19:00:37 ----A---- C:\WINDOWS\system32\bitcometres.dll
2008-07-09 18:29:05 ----D---- C:\Program Files\World of Warcraft
2008-07-09 18:29:05 ----D---- C:\Program Files\Common Files\Blizzard Entertainment
2008-07-09 09:25:49 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Xfire
2008-07-09 09:25:47 ----D---- C:\Program Files\Xfire
2008-07-09 03:01:48 ----HDC---- C:\WINDOWS\$NtUninstallKB951376-v2$
2008-07-09 03:01:42 ----HDC---- C:\WINDOWS\$NtUninstallKB951978$
2008-07-09 03:01:37 ----HDC---- C:\WINDOWS\$NtUninstallKB951698$
2008-07-09 03:01:31 ----HDC---- C:\WINDOWS\$NtUninstallKB942763$
2008-07-09 03:01:01 ----HDC---- C:\WINDOWS\$NtUninstallKB941569$
2008-07-09 03:00:48 ----HDC---- C:\WINDOWS\$NtUninstallKB950762$
2008-07-09 03:00:44 ----HDC---- C:\WINDOWS\$NtUninstallKB950759$
2008-07-09 03:00:39 ----HDC---- C:\WINDOWS\$NtUninstallKB923689$
2008-07-09 03:00:23 ----HDC---- C:\WINDOWS\$NtUninstallKB950760$
2008-07-09 03:00:17 ----HDC---- C:\WINDOWS\$NtUninstallKB951748$
2008-07-09 02:37:47 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\WinRAR
2008-07-09 02:37:37 ----D---- C:\Program Files\WinRAR
2008-07-09 02:11:22 ----D---- C:\Program Files\BitComet
2008-07-09 01:39:30 ----A---- C:\WINDOWS\ModemLog_Conexant D850 56K V.9x DFVc Modem.txt
2008-07-09 01:09:25 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Apple Computer
2008-07-09 01:09:09 ----D---- C:\Program Files\Bonjour
2008-07-09 01:08:54 ----D---- C:\Program Files\QuickTime
2008-07-09 01:08:53 ----D---- C:\Documents and Settings\All Users\Application Data\Apple Computer
2008-07-09 01:08:40 ----DC---- C:\WINDOWS\system32\DRVSTORE
2008-07-09 01:08:34 ----D---- C:\Program Files\Common Files\Apple
2008-07-09 01:08:33 ----D---- C:\Documents and Settings\All Users\Application Data\Apple
2008-07-09 01:04:52 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\AVSMedia
2008-07-09 01:04:49 ----D---- C:\Documents and Settings\All Users\Application Data\AVS4YOU
2008-07-09 01:04:17 ----D---- C:\Program Files\Common Files\AVSMedia
2008-07-09 01:04:09 ----A---- C:\WINDOWS\system32\msxml3a.dll
2008-07-09 01:04:09 ----A---- C:\WINDOWS\system32\msvcr70.dll
2008-07-09 01:04:09 ----A---- C:\WINDOWS\system32\msvcp70.dll
2008-07-09 01:04:09 ----A---- C:\WINDOWS\system32\mfc70.dll
2008-07-09 01:04:09 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2008-07-09 01:04:08 ----D---- C:\Program Files\AVSMedia
2008-07-09 01:04:08 ----A---- C:\WINDOWS\system32\xvidvfw.dll
2008-07-09 01:04:08 ----A---- C:\WINDOWS\system32\xvidcore.dll
2008-07-09 01:04:08 ----A---- C:\WINDOWS\system32\mpg4c32.dll
2008-07-09 01:04:08 ----A---- C:\WINDOWS\system32\mcdvd_32.dll
2008-07-09 01:02:36 ----AD---- C:\Documents and Settings\All Users\Application Data\TEMP
2008-07-09 00:50:30 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Mozilla
2008-07-09 00:50:27 ----D---- C:\Program Files\Mozilla Firefox
2008-07-09 00:49:38 ----D---- C:\WINDOWS\system32\appmgmt
2008-07-09 00:39:50 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\gtk-2.0
2008-07-09 00:33:24 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\ATI
2008-07-09 00:31:09 ----D---- C:\Program Files\CONEXANT
2008-07-09 00:31:04 ----A---- C:\WINDOWS\system32\HSFCI008.dll
2008-07-09 00:30:44 ----A---- C:\WINDOWS\stsystra.exe
2008-07-09 00:30:40 ----D---- C:\Program Files\SigmaTel
2008-07-09 00:29:38 ----N---- C:\WINDOWS\system32\ati2sgag.exe
2008-07-09 00:29:29 ----D---- C:\Program Files\ATI Technologies
2008-07-09 00:29:17 ----A---- C:\WINDOWS\system32\Oemdspif.dll
2008-07-09 00:29:17 ----A---- C:\WINDOWS\system32\ativcoxx.dll
2008-07-09 00:29:16 ----A---- C:\WINDOWS\system32\atitvo32.dll
2008-07-09 00:29:16 ----A---- C:\WINDOWS\system32\atipdlxx.dll
2008-07-09 00:29:16 ----A---- C:\WINDOWS\system32\atioglxx.dll
2008-07-09 00:29:15 ----A---- C:\WINDOWS\system32\atioglx1.dll
2008-07-09 00:29:15 ----A---- C:\WINDOWS\system32\atikvmag.dll
2008-07-09 00:29:15 ----A---- C:\WINDOWS\system32\atiiiexx.dll
2008-07-09 00:29:15 ----A---- C:\WINDOWS\system32\ATIDEMGR.dll
2008-07-09 00:29:15 ----A---- C:\WINDOWS\system32\ATIDDC.DLL
2008-07-09 00:29:14 ----A---- C:\WINDOWS\system32\Ati2mdxx.exe
2008-07-09 00:29:14 ----A---- C:\WINDOWS\system32\ati2evxx.exe
2008-07-09 00:29:14 ----A---- C:\WINDOWS\system32\ati2evxx.dll
2008-07-09 00:29:14 ----A---- C:\WINDOWS\system32\ati2edxx.dll
2008-07-09 00:19:48 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\.purple
2008-07-09 00:19:16 ----D---- C:\Program Files\Aspell
2008-07-09 00:18:45 ----D---- C:\Program Files\Pidgin
2008-07-09 00:18:41 ----D---- C:\Program Files\Common Files\GTK
2008-07-09 00:15:18 ----A---- C:\WINDOWS\system32\stlang.dll
2008-07-09 00:15:18 ----A---- C:\WINDOWS\system32\stacsv.exe
2008-07-09 00:15:18 ----A---- C:\WINDOWS\sttray.exe
2008-07-09 00:15:16 ----A---- C:\WINDOWS\system32\ksuser.dll
2008-07-09 00:13:06 ----D---- C:\WINDOWS\Prefetch
2008-07-09 00:08:34 ----D---- C:\WINDOWS\system32\scripting
2008-07-09 00:08:34 ----D---- C:\WINDOWS\system32\en-us
2008-07-09 00:08:34 ----D---- C:\WINDOWS\system32\en
2008-07-09 00:08:34 ----D---- C:\WINDOWS\system32\bits
2008-07-09 00:08:34 ----D---- C:\WINDOWS\l2schemas
2008-07-09 00:07:32 ----D---- C:\WINDOWS\ServicePackFiles
2008-07-09 00:06:36 ----D---- C:\WINDOWS\network diagnostic
2008-07-09 00:04:35 ----HDC---- C:\WINDOWS\$NtServicePackUninstall$
2008-07-09 00:02:09 ----N---- C:\WINDOWS\system32\xmllite.dll
2008-07-09 00:02:08 ----N---- C:\WINDOWS\system32\wmphoto.dll
2008-07-09 00:02:07 ----N---- C:\WINDOWS\system32\wlanapi.dll
2008-07-09 00:02:05 ----N---- C:\WINDOWS\system32\windowscodecsext.dll
2008-07-09 00:02:05 ----N---- C:\WINDOWS\system32\windowscodecs.dll
2008-07-09 00:02:04 ----N---- C:\WINDOWS\system32\verclsid.exe
2008-07-09 00:02:01 ----N---- C:\WINDOWS\system32\tzchange.exe
2008-07-09 00:02:01 ----N---- C:\WINDOWS\system32\tspkg.dll
2008-07-09 00:02:01 ----N---- C:\WINDOWS\system32\tsgqec.dll
2008-07-09 00:01:56 ----N---- C:\WINDOWS\system32\spupdwxp.exe
2008-07-09 00:01:54 ----A---- C:\WINDOWS\system32\spdwnwxp.exe
2008-07-09 00:01:53 ----N---- C:\WINDOWS\system32\slserv.exe
2008-07-09 00:01:52 ----N---- C:\WINDOWS\system32\slrundll.exe
2008-07-09 00:01:52 ----N---- C:\WINDOWS\system32\slgen.dll
2008-07-09 00:01:52 ----N---- C:\WINDOWS\system32\slextspk.dll
2008-07-09 00:01:52 ----N---- C:\WINDOWS\system32\slcoinst.dll
2008-07-09 00:01:52 ----N---- C:\WINDOWS\slrundll.exe
2008-07-09 00:01:51 ----N---- C:\WINDOWS\system32\setupn.exe
2008-07-09 00:01:50 ----N---- C:\WINDOWS\system32\s3gnb.dll
2008-07-09 00:01:49 ----N---- C:\WINDOWS\system32\rhttpaa.dll
2008-07-09 00:01:48 ----N---- C:\WINDOWS\system32\rasqec.dll
2008-07-09 00:01:48 ----N---- C:\WINDOWS\system32\qutil.dll
2008-07-09 00:01:46 ----N---- C:\WINDOWS\system32\qcliprov.dll
2008-07-09 00:01:46 ----N---- C:\WINDOWS\system32\qagentrt.dll
2008-07-09 00:01:46 ----N---- C:\WINDOWS\system32\qagent.dll
2008-07-09 00:01:45 ----N---- C:\WINDOWS\system32\photometadatahandler.dll
2008-07-09 00:01:43 ----N---- C:\WINDOWS\system32\onex.dll
2008-07-09 00:01:41 ----N---- C:\WINDOWS\system32\nv4_disp.dll
2008-07-09 00:01:36 ----N---- C:\WINDOWS\system32\napstat.exe
2008-07-09 00:01:36 ----N---- C:\WINDOWS\system32\napmontr.dll
2008-07-09 00:01:36 ----N---- C:\WINDOWS\system32\napipsec.dll
2008-07-09 00:01:36 ----N---- C:\WINDOWS\system32\mtxparhd.dll
2008-07-09 00:01:35 ----N---- C:\WINDOWS\system32\msxml6r.dll
2008-07-09 00:01:35 ----N---- C:\WINDOWS\system32\msxml6.dll
2008-07-09 00:01:34 ----N---- C:\WINDOWS\system32\msshavmsg.dll
2008-07-09 00:01:34 ----N---- C:\WINDOWS\system32\mssha.dll
2008-07-09 00:01:28 ----N---- C:\WINDOWS\system32\mmcperf.exe
2008-07-09 00:01:28 ----N---- C:\WINDOWS\system32\mmcfxcommon.dll
2008-07-09 00:01:28 ----N---- C:\WINDOWS\system32\mmcex.dll
2008-07-09 00:01:28 ----N---- C:\WINDOWS\system32\microsoft.managementconsole.dll
2008-07-09 00:01:27 ----A---- C:\WINDOWS\system32\mdmxsdk.dll
2008-07-09 00:01:25 ----N---- C:\WINDOWS\system32\l2gpstore.dll
2008-07-09 00:01:24 ----N---- C:\WINDOWS\system32\kmsvc.dll
2008-07-09 00:01:24 ----N---- C:\WINDOWS\system32\kbdpash.dll
2008-07-09 00:01:24 ----N---- C:\WINDOWS\system32\kbdnepr.dll
2008-07-09 00:01:24 ----N---- C:\WINDOWS\system32\kbdiultn.dll
2008-07-09 00:01:24 ----N---- C:\WINDOWS\system32\kbdbhc.dll
2008-07-09 00:01:22 ----N---- C:\WINDOWS\system32\smtpapi.dll
2008-07-09 00:01:22 ----N---- C:\WINDOWS\system32\rwnh.dll
2008-07-09 00:01:22 ----N---- C:\WINDOWS\system32\comsdupd.exe
2008-07-09 00:01:20 ----N---- C:\WINDOWS\system32\hsfcisp2.dll
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\faxpatch.exe
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\eapsvc.dll
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\eapqec.dll
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\eappprxy.dll
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\eapphost.dll
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\eappgnui.dll
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\eappcfg.dll
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\eapp3hst.dll
2008-07-09 00:01:19 ----N---- C:\WINDOWS\system32\eapolqec.dll
2008-07-09 00:01:19 ----A---- C:\WINDOWS\002989_.tmp
2008-07-09 00:01:18 ----N---- C:\WINDOWS\system32\dot3ui.dll
2008-07-09 00:01:18 ----N---- C:\WINDOWS\system32\dot3svc.dll
2008-07-09 00:01:18 ----N---- C:\WINDOWS\system32\dot3msm.dll
2008-07-09 00:01:18 ----N---- C:\WINDOWS\system32\dot3gpclnt.dll
2008-07-09 00:01:18 ----N---- C:\WINDOWS\system32\dot3dlg.dll
2008-07-09 00:01:18 ----N---- C:\WINDOWS\system32\dot3cfg.dll
2008-07-09 00:01:18 ----N---- C:\WINDOWS\system32\dot3api.dll
2008-07-09 00:01:17 ----N---- C:\WINDOWS\system32\dimsroam.dll
2008-07-09 00:01:17 ----N---- C:\WINDOWS\system32\dimsntfy.dll
2008-07-09 00:01:16 ----N---- C:\WINDOWS\system32\dhcpqec.dll
2008-07-09 00:01:15 ----N---- C:\WINDOWS\system32\credssp.dll
2008-07-09 00:01:13 ----N---- C:\WINDOWS\system32\bitsprx4.dll
2008-07-09 00:01:13 ----N---- C:\WINDOWS\system32\azroles.dll
2008-07-09 00:01:13 ----N---- C:\WINDOWS\system32\ativtmxx.dll
2008-07-09 00:01:13 ----A---- C:\WINDOWS\system32\ativvaxx.dll
2008-07-09 00:01:12 ----N---- C:\WINDOWS\system32\ati3d1ag.dll
2008-07-09 00:01:12 ----A---- C:\WINDOWS\system32\ati3duag.dll
2008-07-09 00:01:11 ----N---- C:\WINDOWS\system32\ati2dvaa.dll
2008-07-09 00:01:11 ----A---- C:\WINDOWS\system32\ati2dvag.dll
2008-07-09 00:01:11 ----A---- C:\WINDOWS\system32\ati2cqag.dll
2008-07-09 00:01:09 ----N---- C:\WINDOWS\system32\aaclient.dll
2008-07-08 23:52:02 ----D---- C:\Documents and Settings\All Users\Application Data\Windows Genuine Advantage
2008-07-08 23:49:55 ----A---- C:\WINDOWS\system32\XceedZip.dll
2008-07-08 23:23:26 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Opera
2008-07-08 23:20:49 ----SHD---- C:\RECYCLER
2008-07-08 23:19:02 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Macromedia
2008-07-08 23:18:52 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Adobe
2008-07-08 22:57:35 ----HDC---- C:\WINDOWS\$MSI31Uninstall_KB893803v2$
2008-07-08 22:57:25 ----D---- C:\WINDOWS\system32\PreInstall
2008-07-08 22:57:24 ----HDC---- C:\WINDOWS\$NtUninstallKB898461$
2008-07-08 22:39:13 ----D---- C:\WINDOWS\system32\SoftwareDistribution
2008-07-08 22:38:06 ----A---- C:\WINDOWS\system32\Prounstl.exe
2008-07-08 22:38:06 ----A---- C:\WINDOWS\system32\NicInstE.dll
2008-07-08 22:38:06 ----A---- C:\WINDOWS\system32\NicEtCoE.dll
2008-07-08 22:38:06 ----A---- C:\WINDOWS\system32\NicCo.dll
2008-07-08 22:38:06 ----A---- C:\WINDOWS\system32\e1000msg.dll
2008-07-08 22:36:02 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Sun
2008-07-08 22:35:56 ----D---- C:\Program Files\Java
2008-07-08 22:34:45 ----D---- C:\WINDOWS\system32\ENU
2008-07-08 22:34:45 ----A---- C:\WINDOWS\system32\Imsmudlg.exe
2008-07-08 22:34:15 ----D---- C:\WINDOWS\system32\ReinstallBackups
2008-07-08 22:34:06 ----HD---- C:\Program Files\InstallShield Installation Information
2008-07-08 22:34:06 ----D---- C:\Program Files\Intel
2008-07-08 22:30:10 ----D---- C:\Program Files\Dell
2008-07-08 22:29:32 ----D---- C:\Program Files\Common Files\InstallShield
2008-07-08 22:26:01 ----D---- C:\Documents and Settings\Falcon Joker\Application Data\Identities
2008-07-08 22:25:58 ----HD---- C:\Program Files\Uninstall Information
2008-07-08 22:23:30 ----D---- C:\WINDOWS\RegisteredPackages
2008-07-08 22:22:57 ----HDC---- C:\WINDOWS\$NtUninstallKB900325$
2008-07-08 22:22:44 ----HDC---- C:\WINDOWS\$NtUninstallKB902841$
2008-07-08 22:22:36 ----HDC---- C:\WINDOWS\$NtUninstallKB888795$
2008-07-08 22:22:29 ----HDC---- C:\WINDOWS\$NtUninstallKB899510$
2008-07-08 22:22:20 ----HDC---- C:\WINDOWS\$NtUninstallKB912812$
2008-07-08 22:22:14 ----HDC---- C:\WINDOWS\$NtUninstallKB899337$
2008-07-08 22:22:08 ----HDC---- C:\WINDOWS\$NtUninstallKB895961$
2008-07-08 22:22:02 ----HDC---- C:\WINDOWS\$NtUninstallKB891593$
2008-07-08 22:21:48 ----A---- C:\WINDOWS\system32\spupdsvc.exe
2008-07-08 22:21:47 ----HDC---- C:\WINDOWS\$NtUninstallKB903157$
2008-07-08 22:20:27 ----D---- C:\WINDOWS\system32\URTTemp
2008-07-08 22:20:11 ----D---- C:\Program Files\RGB
2008-07-08 22:18:24 ----D---- C:\Program Files\EnglishOtto
2008-07-08 22:15:40 ----SD---- C:\Documents and Settings\Falcon Joker\Application Data\Microsoft
2008-07-08 22:15:40 ----ASH---- C:\Documents and Settings\Falcon Joker\Application Data\desktop.ini
2008-07-08 22:14:48 ----D---- C:\WINDOWS\SoftwareDistribution
2008-07-08 22:14:44 ----SD---- C:\WINDOWS\system32\Microsoft
2008-07-08 22:14:44 ----A---- C:\WINDOWS\SchedLgU.Txt
2008-07-08 22:11:50 ----D---- C:\WINDOWS\system32\xircom
2008-07-08 22:11:50 ----D---- C:\Program Files\xerox
2008-07-08 22:11:50 ----D---- C:\Program Files\microsoft frontpage
2008-07-08 22:11:39 ----D---- C:\DELL
2008-07-08 22:11:31 ----HD---- C:\WINDOWS\$hf_mig$
2008-07-08 22:11:30 ----A---- C:\WINDOWS\system32\xpsp3res.dll
2008-07-08 22:11:26 ----AC---- C:\WINDOWS\control.ini
2008-07-08 22:11:26 ----A---- C:\AUTOEXEC.BAT
2008-07-08 22:11:17 ----A---- C:\WINDOWS\OEWABLog.txt
2008-07-08 22:11:16 ----A---- C:\WINDOWS\system32\mapi32.dll
2008-07-08 22:10:19 ----SD---- C:\WINDOWS\Downloaded Program Files
2008-07-08 22:10:19 ----RD---- C:\WINDOWS\Offline Web Pages
2008-07-08 22:10:19 ----RAH---- C:\WINDOWS\system32\logonui.exe.manifest
2008-07-08 22:10:13 ----RAH---- C:\WINDOWS\system32\cdplayer.exe.manifest
2008-07-08 22:10:10 ----HD---- C:\Program Files\WindowsUpdate
2008-07-08 22:09:59 ----D---- C:\WINDOWS\system32\DirectX
2008-07-08 22:09:45 ----A---- C:\WINDOWS\system32\atrace.dll
2008-07-08 22:09:44 ----A---- C:\WINDOWS\system32\desktop.ini
2008-07-08 22:09:44 ----A---- C:\WINDOWS\desktop.ini
2008-07-08 22:09:40 ----A---- C:\WINDOWS\system32\nmevtmsg.dll
2008-07-08 22:09:39 ----D---- C:\Program Files\Common Files\Services
2008-07-08 22:09:39 ----A---- C:\WINDOWS\system32\acctres.dll
2008-07-08 22:09:37 ----SD---- C:\WINDOWS\Tasks
2008-07-08 22:09:37 ----A---- C:\WINDOWS\system32\icfgnt5.dll
2008-07-08 22:09:36 ----D---- C:\Program Files\Common Files\MSSoap
2008-07-08 22:09:34 ----D---- C:\WINDOWS\system32\Macromed
2008-07-08 22:09:34 ----D---- C:\WINDOWS\srchasst
2008-07-08 22:09:33 ----A---- C:\WINDOWS\system32\wuweb.dll
2008-07-08 22:09:33 ----A---- C:\WINDOWS\system32\wucltui.dll
2008-07-08 22:09:33 ----A---- C:\WINDOWS\system32\wuauserv.dll
2008-07-08 22:09:33 ----A---- C:\WINDOWS\system32\wuaueng1.dll
2008-07-08 22:09:33 ----A---- C:\WINDOWS\system32\wuaueng.dll
2008-07-08 22:09:32 ----A---- C:\WINDOWS\system32\wups.dll
2008-07-08 22:09:32 ----A---- C:\WINDOWS\system32\wuauclt1.exe
2008-07-08 22:09:32 ----A---- C:\WINDOWS\system32\wuauclt.exe
2008-07-08 22:09:32 ----A---- C:\WINDOWS\system32\wuapi.dll
2008-07-08 22:09:32 ----A---- C:\WINDOWS\system32\qmgrprxy.dll
2008-07-08 22:09:32 ----A---- C:\WINDOWS\system32\qmgr.dll
2008-07-08 22:09:32 ----A---- C:\WINDOWS\system32\bitsprx3.dll
2008-07-08 22:09:32 ----A---- C:\WINDOWS\system32\bitsprx2.dll
2008-07-08 22:09:28 ----A---- C:\WINDOWS\system32\safrslv.dll
2008-07-08 22:09:28 ----A---- C:\WINDOWS\system32\safrdm.dll
2008-07-08 22:09:28 ----A---- C:\WINDOWS\system32\safrcdlg.dll
2008-07-08 22:09:28 ----A---- C:\WINDOWS\system32\racpldlg.dll
2008-07-08 22:09:26 ----D---- C:\WINDOWS\system32\Restore
2008-07-08 22:09:26 ----A---- C:\WINDOWS\system32\srsvc.dll
2008-07-08 22:09:26 ----A---- C:\WINDOWS\system32\srrstr.dll
2008-07-08 22:09:26 ----A---- C:\WINDOWS\system32\srclient.dll
2008-07-08 22:09:26 ----A---- C:\WINDOWS\system32\fltmc.exe
2008-07-08 22:09:26 ----A---- C:\WINDOWS\system32\fltlib.dll
2008-07-08 22:09:25 ----A---- C:\WINDOWS\system32\nmmkcert.dll
2008-07-08 22:09:25 ----A---- C:\WINDOWS\system32\msconf.dll
2008-07-08 22:09:25 ----A---- C:\WINDOWS\system32\mnmsrvc.exe
2008-07-08 22:09:25 ----A---- C:\WINDOWS\system32\mnmdd.dll
2008-07-08 22:09:25 ----A---- C:\WINDOWS\system32\isrdbg32.dll
2008-07-08 22:09:25 ----A---- C:\WINDOWS\system32\ils.dll
2008-07-08 22:09:23 ----D---- C:\Program Files\NetMeeting
2008-07-08 22:09:23 ----A---- C:\WINDOWS\system32\msoert2.dll
2008-07-08 22:09:23 ----A---- C:\WINDOWS\system32\msoeacct.dll
2008-07-08 22:09:23 ----A---- C:\WINDOWS\system32\inetres.dll
2008-07-08 22:09:23 ----A---- C:\WINDOWS\system32\inetcomm.dll
2008-07-08 22:09:22 ----D---- C:\Program Files\Outlook Express
2008-07-08 22:09:22 ----A---- C:\WINDOWS\system32\schedsvc.dll
2008-07-08 22:09:22 ----A---- C:\WINDOWS\system32\mstinit.exe
2008-07-08 22:09:22 ----A---- C:\WINDOWS\system32\mstask.dll
2008-07-08 22:09:21 ----A---- C:\WINDOWS\system32\isign32.dll
2008-07-08 22:09:21 ----A---- C:\WINDOWS\system32\inetcfg.dll
2008-07-08 22:09:21 ----A---- C:\WINDOWS\system32\icwphbk.dll
2008-07-08 22:09:21 ----A---- C:\WINDOWS\system32\icwdial.dll
2008-07-08 22:09:18 ----D---- C:\Program Files\Common Files\System
2008-07-08 22:09:17 ----D---- C:\Program Files\Internet Explorer
2008-07-08 22:08:46 ----RSD---- C:\WINDOWS\assembly
2008-07-08 22:08:26 ----D---- C:\Program Files\ComPlus Applications
2008-07-08 22:08:26 ----A---- C:\WINDOWS\vbaddin.ini
2008-07-08 22:08:26 ----A---- C:\WINDOWS\vb.ini
2008-07-08 22:08:25 ----D---- C:\WINDOWS\Registration
2008-07-08 22:08:23 ----D---- C:\Program Files\Online Services
2008-07-08 22:08:15 ----D---- C:\WINDOWS\Microsoft.NET
2008-07-08 22:08:14 ----D---- C:\Program Files\Windows Media Player
2008-07-08 22:08:09 ----D---- C:\Program Files\Windows Plus
2008-07-08 22:08:07 ----A---- C:\WINDOWS\system32\mhn.dll
2008-07-08 22:08:07 ----A---- C:\WINDOWS\system32\igdetect.dll
2008-07-08 22:08:04 ----D---- C:\Program Files\Movie Maker
2008-07-08 22:07:50 ----D---- C:\Program Files\Messenger
2008-07-08 22:07:48 ----D---- C:\Program Files\MSN Gaming Zone
2008-07-08 22:07:48 ----A---- C:\WINDOWS\system32\write.exe
2008-07-08 22:07:41 ----A---- C:\WINDOWS\system32\winchat.exe
2008-07-08 22:07:41 ----A---- C:\WINDOWS\system32\sndvol32.exe
2008-07-08 22:07:41 ----A---- C:\WINDOWS\system32\hticons.dll
2008-07-08 22:07:41 ----A---- C:\WINDOWS\system32\avwav.dll
2008-07-08 22:07:41 ----A---- C:\WINDOWS\system32\avtapi.dll
2008-07-08 22:07:41 ----A---- C:\WINDOWS\system32\avmeter.dll
2008-07-08 22:07:36 ----A---- C:\WINDOWS\system32\winmine.exe
2008-07-08 22:07:36 ----A---- C:\WINDOWS\system32\sol.exe
2008-07-08 22:07:36 ----A---- C:\WINDOWS\system32\getuname.dll
2008-07-08 22:07:36 ----A---- C:\WINDOWS\system32\charmap.exe
2008-07-08 22:07:36 ----A---- C:\WINDOWS\system32\calc.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\usrlogon.cmd
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\tsshutdn.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\tslabels.ini
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\tskill.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\tsdiscon.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\tscon.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\shadow.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\rwinsta.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\reset.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\regini.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\rdpcfgex.dll
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\qwinsta.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\qappsrv.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\mshearts.exe
2008-07-08 22:07:35 ----A---- C:\WINDOWS\system32\freecell.exe
2008-07-08 22:07:34 ----A---- C:\WINDOWS\system32\mtxlegih.dll
2008-07-08 22:07:34 ----A---- C:\WINDOWS\system32\mtxex.dll
2008-07-08 22:07:34 ----A---- C:\WINDOWS\system32\mtxdm.dll
2008-07-08 22:07:34 ----A---- C:\WINDOWS\system32\msg.exe
2008-07-08 22:07:34 ----A---- C:\WINDOWS\system32\msdtcprf.ini
2008-07-08 22:07:34 ----A---- C:\WINDOWS\system32\logoff.exe
2008-07-08 22:07:34 ----A---- C:\WINDOWS\system32\dcomcnfg.exe
2008-07-08 22:07:34 ----A---- C:\WINDOWS\system32\cdmodem.dll
2008-07-08 22:07:33 ----A---- C:\WINDOWS\system32\stclient.dll
2008-07-08 22:07:33 ----A---- C:\WINDOWS\system32\comsnap.dll
2008-07-08 22:07:33 ----A---- C:\WINDOWS\system32\comrepl.dll
2008-07-08 22:07:33 ----A---- C:\WINDOWS\system32\comaddin.dll
2008-07-08 22:07:30 ----A---- C:\WINDOWS\system32\wmimgmt.msc
2008-07-08 22:07:26 ----D---- C:\Program Files\MSN
2008-07-08 22:07:26 ----A---- C:\WINDOWS\system32\sndrec32.exe
2008-07-08 22:07:26 ----A---- C:\WINDOWS\system32\mplay32.exe
2008-07-08 22:07:26 ----A---- C:\WINDOWS\system32\accwiz.exe
2008-07-08 22:07:25 ----D---- C:\Program Files\Windows NT
2008-07-08 22:07:25 ----A---- C:\WINDOWS\system32\spider.exe
2008-07-08 22:07:25 ----A---- C:\WINDOWS\system32\mspaint.exe
2008-07-08 22:07:25 ----A---- C:\WINDOWS\system32\hypertrm.dll
2008-07-08 22:07:25 ----A---- C:\WINDOWS\system32\clipbrd.exe
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\tscupgrd.exe
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\tscfgwmi.dll
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\termsrv.dll
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\sessmgr.exe
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\remotepg.dll
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\rdshost.exe
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\rdsaddin.exe
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\rdpwsx.dll
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\rdpsnd.dll
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\rdpclip.exe
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\rdchost.dll
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\qprocess.exe
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\mstscax.dll
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\mstsc.exe
2008-07-08 22:07:24 ----A---- C:\WINDOWS\system32\icaapi.dll
2008-07-08 22:07:23 ----D---- C:\WINDOWS\system32\MsDtc
2008-07-08 22:07:23 ----A---- C:\WINDOWS\system32\xolehlp.dll
2008-07-08 22:07:23 ----A---- C:\WINDOWS\system32\mtxoci.dll
2008-07-08 22:07:23 ----A---- C:\WINDOWS\system32\msdtcuiu.dll
2008-07-08 22:07:23 ----A---- C:\WINDOWS\system32\msdtctm.dll
2008-07-08 22:07:23 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2008-07-08 22:07:23 ----A---- C:\WINDOWS\system32\msdtclog.dll
2008-07-08 22:07:23 ----A---- C:\WINDOWS\system32\msdtc.exe
2008-07-08 22:07:23 ----A---- C:\WINDOWS\system32\cfgbkend.dll
2008-07-08 22:07:22 ----D---- C:\WINDOWS\system32\Com
2008-07-08 22:07:22 ----A---- C:\WINDOWS\system32\comuid.dll
2008-07-08 22:07:22 ----A---- C:\WINDOWS\system32\comsvcs.dll
2008-07-08 22:07:22 ----A---- C:\WINDOWS\system32\colbact.dll
2008-07-08 22:07:22 ----A---- C:\WINDOWS\system32\clbcatq.dll
2008-07-08 22:07:22 ----A---- C:\WINDOWS\system32\clbcatex.dll
2008-07-08 22:07:22 ----A---- C:\WINDOWS\system32\catsrvut.dll
2008-07-08 22:07:22 ----A---- C:\WINDOWS\system32\catsrvps.dll
2008-07-08 22:07:22 ----A---- C:\WINDOWS\system32\catsrv.dll
2008-07-08 22:07:19 ----A---- C:\WINDOWS\system32\servdeps.dll
2008-07-08 22:07:18 ----A---- C:\WINDOWS\system32\mmfutil.dll
2008-07-08 22:07:18 ----A---- C:\WINDO