Jimmy2012 -
Here's the latest scans. I also added them as attachments. Hope it is helpful. Thanks so much.
T
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:47:54 PM, on 12/13/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
C:\Program Files\Dell Support Center\bin\sprtsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\stsystra.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\system32\ICO.EXE
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Dell Support Center\bin\sprtcmd.exe
C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\SMARTD~2\SDPhotoBar.exe
C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\explorer.exe
C:\Program Files\trend micro\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft....k/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft....k/?LinkId=54896R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft....k/?LinkId=54896R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.comcast.net/R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\program files\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.0.926.3450\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe /uninstall
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [PMX Daemon] ICO.EXE
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKLM\..\Run: [ddoctorv2] "C:\Program Files\Comcast\Desktop Doctor\bin\sprtcmd.exe" /P ddoctorv2
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [SDPhotoBar.exe] C:\SMARTD~2\SDPhotoBar.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup
O4 - HKCU\..\Run: [DellSupport-] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-18\..\RunOnce: [RealUpgradeHelper] "C:\Program Files\Common Files\Real\Update_OB\upgrdhlp.exe" "RealNetworks|RealPlayer|6.0" (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\RunOnce: [RealUpgradeHelper] "C:\Program Files\Common Files\Real\Update_OB\upgrdhlp.exe" "RealNetworks|RealPlayer|6.0" (User 'Default user')
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 5.0\Distillr\AcroTray.exe
O4 - Global Startup: Cisco Systems VPN Client.lnk = C:\Program Files\Cisco Systems\VPN Client\vpngui.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) -
http://download.divx...owserPlugin.cabO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1169263919712O16 - DPF: {6F750202-1362-4815-A476-88533DE61D0C} (Kodak Gallery Easy Upload Manager Class) -
http://www.kodakgall..._2/axofupld.cabO16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) -
https://stores.music...NugsActiveX.cabO20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Cisco Systems, Inc. VPN Service (CVPND) - Cisco Systems, Inc. - C:\Program Files\Cisco Systems\VPN Client\cvpnd.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Update Service (gupdate1c95ca74e23c752) (gupdate1c95ca74e23c752) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: PC Tools Auxiliary Service (sdAuxService) - PC Tools - C:\Program Files\Spyware Doctor\pctsAuxs.exe
O23 - Service: PC Tools Security Service (sdCoreService) - PC Tools - C:\Program Files\Spyware Doctor\pctsSvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: SupportSoft Sprocket Service (ddoctorv2) (sprtsvc_ddoctorv2) - SupportSoft, Inc. - C:\Program Files\Comcast\Desktop Doctor\bin\sprtsvc.exe
O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Intel® PROSet/Wireless SSO Service (WLANKEEPER) - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE
--
End of file - 13266 bytes
ComboFix 08-12-13.03 - Tom Moore 2008-12-13 23:14:23.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1015.473 [GMT -5:00]
Running from: c:\documents and settings\Tom Moore\Desktop\ComboFix.exe
Command switches used :: c:\documents and settings\Tom Moore\Desktop\CFScript.txt
* Created a new restore point
FILE ::
c:\windows\system32\dewegabu.exe
c:\windows\system32\g60.exe
c:\windows\system32\luhuwuji.exe
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\windows\system32\dewegabu.exe
c:\windows\system32\g60.exe
c:\windows\system32\hov
c:\windows\system32\luhuwuji.exe
.
((((((((((((((((((((((((( Files Created from 2008-11-14 to 2008-12-14 )))))))))))))))))))))))))))))))
.
2008-12-08 17:42 . 2008-12-08 17:42 <DIR> d-------- C:\VundoFix Backups
2008-12-07 02:28 . 2008-12-07 02:28 77 --a------ c:\windows\st_affiliate.ini
2008-12-06 18:14 . 2008-12-06 18:14 <DIR> d-------- C:\_OTMoveIt
2008-12-06 18:12 . 2008-12-13 10:29 <DIR> d-------- C:\rsit
2008-12-06 18:12 . 2008-12-08 19:18 <DIR> d-------- c:\program files\trend micro
2008-12-06 13:53 . 2008-12-08 18:55 <DIR> d-------- c:\program files\Malwarebytes' Anti-Malware
2008-12-06 13:53 . 2008-12-06 13:53 <DIR> d-------- c:\documents and settings\Tom Moore\Application Data\Malwarebytes
2008-12-06 13:53 . 2008-12-06 13:53 <DIR> d-------- c:\documents and settings\All Users\Application Data\Malwarebytes
2008-12-06 13:53 . 2008-12-03 19:54 38,496 --a------ c:\windows\system32\drivers\mbamswissarmy.sys
2008-12-06 13:53 . 2008-12-03 19:54 15,504 --a------ c:\windows\system32\drivers\mbam.sys
2008-12-06 12:59 . 2008-12-06 12:59 <DIR> d-------- C:\_OTScanIt
2008-12-03 20:12 . 2008-12-03 20:12 <DIR> d-------- c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
2008-12-03 20:11 . 2008-12-13 10:17 <DIR> d-------- c:\program files\SUPERAntiSpyware
2008-12-03 20:11 . 2008-12-03 20:11 <DIR> d-------- c:\program files\Common Files\Wise Installation Wizard
2008-12-03 20:11 . 2008-12-03 20:11 <DIR> d-------- c:\documents and settings\Tom Moore\Application Data\SUPERAntiSpyware.com
2008-12-02 22:17 . 2008-12-02 22:17 <DIR> d-------- c:\program files\Common Files\xing shared
2008-12-02 21:37 . 2008-12-13 10:23 <DIR> d-a------ c:\documents and settings\All Users\Application Data\TEMP
2008-12-02 21:20 . 2008-12-13 01:24 <DIR> d-------- c:\program files\Spyware Doctor
2008-12-02 21:20 . 2008-12-02 21:20 <DIR> d-------- c:\documents and settings\Tom Moore\Application Data\PC Tools
2008-12-02 21:20 . 2008-12-03 20:03 81,288 --a------ c:\windows\system32\drivers\iksyssec.sys
2008-12-02 21:20 . 2008-12-03 20:03 66,952 --a------ c:\windows\system32\drivers\iksysflt.sys
2008-12-02 21:20 . 2008-12-03 20:03 40,840 --a------ c:\windows\system32\drivers\ikfilesec.sys
2008-12-02 21:20 . 2008-06-02 15:19 29,576 --a------ c:\windows\system32\drivers\kcom.sys
2008-12-02 21:12 . 2008-12-02 21:15 <DIR> d-------- c:\program files\Norton Security Scan
2008-12-02 21:06 . 2008-12-13 18:18 <DIR> d-------- c:\documents and settings\All Users\Application Data\Google Updater
2008-12-01 21:05 . 2008-12-02 08:39 <DIR> d--hs---- c:\windows\VG9tIE1vb3Jl
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-12-14 04:08 --------- d-----w c:\program files\Symantec AntiVirus
2008-12-12 22:17 --------- d-----w c:\program files\Google
2008-12-09 00:14 --------- d-----w c:\program files\Azureus
2008-12-03 03:17 348,160 ----a-w c:\windows\system32\msvcr71.dll
2008-12-03 03:17 --------- d-----w c:\program files\Common Files\Real
2008-12-03 02:12 --------- d-----w c:\program files\Common Files\Symantec Shared
2008-12-02 01:48 --------- d-----w c:\documents and settings\Tom Moore\Application Data\Azureus
2008-11-15 16:24 --------- d-----w c:\documents and settings\Tom Moore\Application Data\Move Networks
2008-11-01 18:04 --------- d-----w c:\program files\EndNote
2008-11-01 18:04 --------- d-----w c:\documents and settings\Tom Moore\Application Data\EndNote
2008-10-24 11:21 455,296 ----a-w c:\windows\system32\drivers\mrxsmb.sys
2008-10-24 11:21 455,296 ------w c:\windows\system32\dllcache\mrxsmb.sys
2008-10-16 19:13 202,776 ----a-w c:\windows\system32\wuweb.dll
2008-10-16 19:13 202,776 ----a-w c:\windows\system32\dllcache\wuweb.dll
2008-10-16 19:13 1,809,944 ----a-w c:\windows\system32\wuaueng.dll
2008-10-16 19:13 1,809,944 ----a-w c:\windows\system32\dllcache\wuaueng.dll
2008-10-16 19:12 561,688 ----a-w c:\windows\system32\wuapi.dll
2008-10-16 19:12 561,688 ----a-w c:\windows\system32\dllcache\wuapi.dll
2008-10-16 19:12 323,608 ----a-w c:\windows\system32\wucltui.dll
2008-10-16 19:12 323,608 ----a-w c:\windows\system32\dllcache\wucltui.dll
2008-10-16 19:09 92,696 ----a-w c:\windows\system32\dllcache\cdm.dll
2008-10-16 19:09 92,696 ----a-w c:\windows\system32\cdm.dll
2008-10-16 19:09 51,224 ----a-w c:\windows\system32\wuauclt.exe
2008-10-16 19:09 51,224 ----a-w c:\windows\system32\dllcache\wuauclt.exe
2008-10-16 19:09 43,544 ----a-w c:\windows\system32\wups2.dll
2008-10-16 19:08 34,328 ----a-w c:\windows\system32\wups.dll
2008-10-16 19:08 34,328 ----a-w c:\windows\system32\dllcache\wups.dll
2008-10-16 19:06 268,648 ----a-w c:\windows\system32\mucltui.dll
2008-10-16 19:06 208,744 ----a-w c:\windows\system32\muweb.dll
2008-10-15 16:34 337,408 ------w c:\windows\system32\dllcache\netapi32.dll
2008-10-03 17:41 6,066,176 ------w c:\windows\system32\dllcache\ieframe.dll
2008-09-30 21:43 1,286,152 ----a-w c:\windows\system32\msxml4.dll
2008-09-15 12:12 1,846,400 ----a-w c:\windows\system32\win32k.sys
2008-09-15 12:12 1,846,400 ------w c:\windows\system32\dllcache\win32k.sys
2006-11-18 18:18 35,888 ----a-w c:\documents and settings\Tom Moore\Application Data\GDIPFONTCACHEV1.DAT
2006-07-07 21:17 56 --sh--r c:\windows\system32\84F673CE77.sys
2006-07-07 21:17 3,766 --sha-w c:\windows\system32\KGyGaAvL.sys
.
((((((((((((((((((((((((((((((((((((((( System Restore )))))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP0.DLL
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069440.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP0.exe
2008-12-02 21:30 38052 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069441.exe
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP1.DLL
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069443.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP1.exe
2008-12-01 21:04 147112 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069320.exe
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP10.DLL
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069444.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP11.DLL
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069445.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP12.DLL
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069446.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP13.DLL
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069447.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP14.DLL
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069448.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP15.dll
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069449.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP16.dll
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069450.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP17.dll
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069451.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP18.DLL
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069452.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP19.DLL
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069453.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP2.DLL
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069454.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP2.exe
2008-12-01 21:05 551148 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069332.exe
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP20.DLL
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069455.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP21.DLL
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069456.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP22.DLL
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069457.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP23.DLL
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069458.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP24.dll
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069459.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP25.dll
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069460.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP26.dll
2008-12-02 21:09 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069461.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP3.DLL
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069462.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP4.DLL
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069463.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP5.DLL
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069464.DLL
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP6.dll
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069465.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP7.dll
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069466.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP8.dll
2008-12-02 20:46 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069467.dll
c:\documents and settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5\APTemp\AP9.DLL
2008-12-02 20:56 0 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069468.DLL
c:\documents and settings\Tom Moore\Application Data\Microsoft\Installer\{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B}\ARPPRODUCTICON.exe
2008-06-10 20:09 10134 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069839.exe
c:\documents and settings\Tom Moore\Application Data\Microsoft\Installer\{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B}\Uninstall_WD_Diagnos_0AB76F69E7614CFAB9B0A1906B4E9E4B.exe
2008-06-10 20:09 8854 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069840.exe
c:\documents and settings\Tom Moore\Application Data\Microsoft\Installer\{0AB76F69-E761-4CFA-B9B0-A1906B4E9E4B}\WinDlg.exe_0AB76F69E7614CFAB9B0A1906B4E9E4B_3.exe
2008-06-10 20:09 40960 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069841.exe
2008-12-03 20:07 15870152 c:\documents and settings\Tom Moore\Desktop\InstallCyberDefenderEDC-294608.exe
2008-12-03 20:07 15870152 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071217.exe
c:\documents and settings\Tom Moore\Desktop\mbam-setup.exe
2008-12-06 13:20 2538616 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072323.exe
2008-12-03 20:05 5738016 c:\documents and settings\Tom Moore\Desktop\SUPERAntiSpyware.exe
2008-12-03 20:05 5738016 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071218.exe
c:\documents and settings\Tom Moore\Local Settings\Application Data\CyberDefender\cdmyidd.dll
2008-12-07 01:40 3958088 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP764\A0072344.dll
c:\program files\Azureus\aereg.dll
2006-02-23 14:50 69632 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP764\A0072357.dll
c:\program files\Azureus\Azureus.exe
2006-02-23 12:43 155648 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP764\A0072352.exe
c:\program files\Azureus\swt-awt-win32-3139.dll
2005-09-29 11:05 32768 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP764\A0072354.dll
c:\program files\Azureus\swt-gdip-win32-3139.dll
2005-09-29 11:05 69632 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP764\A0072355.dll
c:\program files\Azureus\swt-win32-3139.dll
2005-09-29 11:05 315392 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP764\A0072353.dll
2008-12-02 22:17 90112 c:\program files\Common Files\Real\Codecs\atrc.dll
2006-03-10 19:06 77889 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069655.dll
2008-12-02 22:17 77824 c:\program files\Common Files\Real\Codecs\cook.dll
2006-03-10 19:06 65602 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069654.dll
2008-12-02 22:17 106496 c:\program files\Common Files\Real\Codecs\drv1.dll
2006-03-10 19:06 102464 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069658.dll
2008-12-02 22:17 180224 c:\program files\Common Files\Real\Codecs\drv2.dll
2006-03-10 19:06 176195 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069659.dll
2008-12-02 22:17 286720 c:\program files\Common Files\Real\Codecs\drvc.dll
2006-03-10 19:06 327749 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069660.dll
2008-12-02 22:17 557056 c:\program files\Common Files\Real\Codecs\raac.dll
2006-03-10 19:06 553036 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069653.dll
2008-12-02 22:17 35328 c:\program files\Common Files\Real\Codecs\rv10.dll
2006-03-10 19:06 49216 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069661.dll
2008-12-02 22:17 57344 c:\program files\Common Files\Real\Codecs\rv20.dll
2006-03-10 19:06 57411 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069662.dll
2008-12-02 22:17 53248 c:\program files\Common Files\Real\Codecs\rv30.dll
2006-03-10 19:06 49221 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069663.dll
2008-12-02 22:17 49152 c:\program files\Common Files\Real\Codecs\rv40.dll
2006-03-10 19:06 49221 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069664.dll
2008-12-02 22:17 139264 c:\program files\Common Files\Real\Codecs\sipr.dll
2006-03-10 19:06 106561 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069652.dll
2008-12-02 22:17 163840 c:\program files\Common Files\Real\Common\objb3201.dll
2006-03-10 19:06 172077 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069688.dll
2008-12-02 22:17 1486848 c:\program files\Common Files\Real\Common\pnen3260.dll
2006-03-10 19:05 1306675 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069489.dll
2008-12-02 22:17 413696 c:\program files\Common Files\Real\Common\pngu3267.dll
2006-03-10 19:05 421927 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069560.dll
2008-12-02 22:17 12800 c:\program files\Common Files\Real\Common\pnrs3260.dll
2006-03-10 19:05 28717 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069561.dll
2008-12-02 22:17 147456 c:\program files\Common Files\Real\Common\rjbviz.dll
2006-03-10 19:06 147497 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069682.dll
2008-12-02 22:17 12288 c:\program files\Common Files\Real\Common\rppr3260.dll
2006-03-10 19:05 28715 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069557.dll
2008-12-02 22:18 26112 c:\program files\Common Files\Real\Common\rpun3260.dll
2006-03-10 19:07 36909 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069484.dll
2008-12-02 22:17 30208 c:\program files\Common Files\Real\Common\security.dll
2006-03-10 19:06 45103 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069743.dll
2008-12-02 22:17 81920 c:\program files\Common Files\Real\Common\twebbrowse.dll
2006-03-10 19:05 81969 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069528.dll
2008-12-02 22:17 110592 c:\program files\Common Files\Real\GToolbar\barcontrol.dll
2006-03-10 19:06 102400 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069695.dll
2008-12-02 22:17 77824 c:\program files\Common Files\Real\Plugins\aacff.dll
2006-03-10 19:06 69689 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069700.dll
2008-12-02 22:17 135168 c:\program files\Common Files\Real\Plugins\audplin.dll
2006-03-10 19:06 86075 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069714.dll
2008-12-02 22:17 45056 c:\program files\Common Files\Real\Plugins\authmgr.dll
2006-03-10 19:05 49207 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069507.dll
2008-12-02 22:17 17408 c:\program files\Common Files\Real\Plugins\cdda3260.dll
2006-03-10 19:05 36909 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069506.dll
2008-12-02 22:17 25088 c:\program files\Common Files\Real\Plugins\clbascauth.dll
2006-03-10 19:05 41023 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069505.dll
2008-12-02 22:17 44032 c:\program files\Common Files\Real\Plugins\clntxres.dll
2006-03-10 19:05 53296 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069485.dll
2008-12-02 22:17 73728 c:\program files\Common Files\Real\Plugins\cont3260.dll
2006-03-10 19:06 69677 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069711.dll
2008-12-02 22:18 233472 c:\program files\Common Files\Real\Plugins\fpsechnd.dll
2006-03-10 19:07 233472 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069776.dll
2008-12-02 22:17 204800 c:\program files\Common Files\Real\Plugins\httpfsys.dll
2006-03-10 19:05 172084 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069504.dll
2008-12-02 22:17 49152 c:\program files\Common Files\Real\Plugins\hxsdp.dll
2006-03-10 19:05 41006 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069503.dll
2008-12-02 22:17 90112 c:\program files\Common Files\Real\Plugins\hxxml.dll
2006-03-10 19:06 86065 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069683.dll
2008-12-02 22:17 507904 c:\program files\Common Files\Real\Plugins\imgrender.dll
2006-03-10 19:06 528445 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069672.dll
2008-12-02 22:17 86016 c:\program files\Common Files\Real\Plugins\memfsys.dll
2006-03-10 19:05 77877 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069502.dll
2008-12-02 22:17 53248 c:\program files\Common Files\Real\Plugins\mp3fformat.dll
2006-03-10 19:06 45118 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069680.dll
2008-12-02 22:17 69632 c:\program files\Common Files\Real\Plugins\mp3metaff.dll
2006-03-10 19:06 65596 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069681.dll
2008-12-02 22:17 163840 c:\program files\Common Files\Real\Plugins\mp3render.dll
2006-03-10 19:06 151614 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069679.dll
2008-12-02 22:17 135168 c:\program files\Common Files\Real\Plugins\mp4arender.dll
2006-03-10 19:06 127045 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069699.dll
2008-12-02 22:17 90112 c:\program files\Common Files\Real\Plugins\mp4fformat.dll
2006-03-10 19:06 73790 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069698.dll
2008-12-02 22:17 122880 c:\program files\Common Files\Real\Plugins\mp4wrtr.dll
2006-03-10 19:06 98366 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069721.dll
2008-12-02 22:17 69632 c:\program files\Common Files\Real\Plugins\mpgfformat.dll
2006-03-10 19:06 69694 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069717.dll
2008-12-02 22:17 184320 c:\program files\Common Files\Real\Plugins\mpgrender.dll
2006-03-10 19:06 172094 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069716.dll
2008-12-02 22:17 29184 c:\program files\Common Files\Real\Plugins\ntlmauth.dll
2006-03-10 19:05 45116 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069501.dll
2008-12-02 22:17 364544 c:\program files\Common Files\Real\Plugins\pacplin.dll
2006-03-10 19:05 360501 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069500.dll
2008-12-02 22:18 65536 c:\program files\Common Files\Real\Plugins\pdgenxferfsys.dll
2006-03-10 19:07 73783 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069788.dll
2008-12-02 22:17 73728 c:\program files\Common Files\Real\Plugins\plusplin.dll
2006-03-10 19:05 57398 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069499.dll
2008-12-02 22:17 24064 c:\program files\Common Files\Real\Plugins\pxcb3210.dll
2006-03-10 19:05 41003 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069498.dll
2008-12-02 22:17 31744 c:\program files\Common Files\Real\Plugins\ramfformat.dll
2006-03-10 19:05 45118 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069497.dll
2008-12-02 22:17 77824 c:\program files\Common Files\Real\Plugins\ramrender.dll
2006-03-10 19:05 57406 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069496.dll
2008-12-02 22:17 159744 c:\program files\Common Files\Real\Plugins\rarender.dll
2006-03-10 19:06 151618 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069656.dll
2008-12-02 22:17 19968 c:\program files\Common Files\Real\Plugins\recf3260.dll
2006-03-10 19:06 36909 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069712.dll
2008-12-02 22:17 184320 c:\program files\Common Files\Real\Plugins\rmfformat.dll
2006-03-10 19:05 176191 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069495.dll
2008-12-02 22:17 278528 c:\program files\Common Files\Real\Plugins\rmwrtr.dll
2006-03-10 19:06 282684 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069720.dll
2008-12-02 22:18 35328 c:\program files\Common Files\Real\Plugins\rmxfpln.dll
2006-03-10 19:06 65579 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069750.dll
2008-12-02 22:17 90112 c:\program files\Common Files\Real\Plugins\rmxrend.dll
2006-03-10 19:06 106538 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069741.dll
2008-12-02 22:17 53248 c:\program files\Common Files\Real\Plugins\rn5auth.dll
2006-03-10 19:05 45114 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069494.dll
2008-12-02 22:17 114688 c:\program files\Common Files\Real\Plugins\rtfformat.dll
2006-03-10 19:06 110657 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069671.dll
2008-12-02 22:17 135168 c:\program files\Common Files\Real\Plugins\rtrender.dll
2006-03-10 19:06 122942 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069670.dll
2008-12-02 22:17 159744 c:\program files\Common Files\Real\Plugins\rvrender.dll
2006-03-10 19:06 172096 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069657.dll
2008-12-02 22:17 49152 c:\program files\Common Files\Real\Plugins\sdpplin.dll
2006-03-10 19:06 45111 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069676.dll
2008-12-02 22:17 30208 c:\program files\Common Files\Real\Plugins\security.dll
2006-03-10 19:06 45103 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069742.dll
2008-12-02 22:17 61440 c:\program files\Common Files\Real\Plugins\smlfformat.dll
2006-03-10 19:05 61503 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069493.dll
2008-12-02 22:17 520192 c:\program files\Common Files\Real\Plugins\smlrender.dll
2006-03-10 19:05 528444 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069492.dll
2008-12-02 22:17 61440 c:\program files\Common Files\Real\Plugins\smmrender.dll
2006-03-10 19:05 57412 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069491.dll
2008-12-02 22:17 86016 c:\program files\Common Files\Real\Plugins\smplfsys.dll
2006-03-10 19:05 69685 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069488.dll
2008-12-02 22:17 17920 c:\program files\Common Files\Real\Plugins\stubdrm.dll
2006-03-10 19:06 32818 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069675.dll
2008-12-02 22:17 114688 c:\program files\Common Files\Real\Plugins\swfformat.dll
2006-03-10 19:06 94274 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069666.dll
2008-12-02 22:17 630784 c:\program files\Common Files\Real\Plugins\swfrender.dll
2006-03-10 19:06 614464 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069665.dll
2008-12-02 22:18 57344 c:\program files\Common Files\Real\Plugins\tfilesys.dll
2006-03-10 19:06 57389 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069749.dll
2008-12-02 22:17 176128 c:\program files\Common Files\Real\Plugins\vidplin.dll
2006-03-10 19:06 167995 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069715.dll
2008-12-02 22:17 376832 c:\program files\Common Files\Real\Plugins\vidsite.dll
2006-03-10 19:05 376881 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069490.dll
2008-12-02 22:17 172032 c:\program files\Common Files\Real\Plugins\wm9fformat.dll
2006-03-10 19:06 176128 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069707.dll
2008-12-02 22:17 14848 c:\program files\Common Files\Real\Plugins\wm9writer.dll
2006-03-10 19:06 28719 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069706.dll
2008-12-02 22:17 172032 c:\program files\Common Files\Real\Plugins\wmsechnd.dll
2006-03-10 19:06 180224 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069704.dll
2008-12-02 22:17 167936 c:\program files\Common Files\Real\Plugins\zipf3260.dll
2006-03-10 19:05 172075 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069487.dll
2008-12-02 22:17 139264 c:\program files\Common Files\Real\RCAPlugins\gct23201.dll
2006-03-10 19:06 151597 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069687.dll
2008-12-02 22:17 77824 c:\program files\Common Files\Real\RCAPlugins\gema3201.dll
2006-03-10 19:06 90158 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069690.dll
2008-12-02 22:17 450560 c:\program files\Common Files\Real\RCAPlugins\gemx3201.dll
2006-03-10 19:06 438318 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069689.dll
2008-12-02 22:17 102400 c:\program files\Common Files\Real\RCAPlugins\locd3210.dll
2006-03-10 19:06 102441 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069710.dll
2008-12-02 22:17 724992 c:\program files\Common Files\Real\RCAPlugins\rpcontrols1.dll
2006-03-10 19:06 733230 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069685.dll
2008-12-02 22:17 647168 c:\program files\Common Files\Real\RCAPlugins\rpcontrols2.dll
2006-03-10 19:06 667694 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069684.dll
2008-12-02 22:17 348160 c:\program files\Common Files\Real\RCAPlugins\sonr3210.dll
2006-03-10 19:06 196667 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069713.dll
2008-12-02 22:17 389120 c:\program files\Common Files\Real\RCAPlugins\uisy3201.dll
2006-03-10 19:06 426027 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069686.dll
2008-12-02 22:17 57344 c:\program files\Common Files\Real\RCAPlugins\xmlc3201.dll
2006-03-10 19:06 53294 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069691.dll
2008-12-02 22:17 368640 c:\program files\Common Files\Real\Update_OB\faus3270.dll
2006-03-10 19:05 385063 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069477.dll
2008-12-02 22:17 24064 c:\program files\Common Files\Real\Update_OB\pnmi3270.dll
2006-03-10 19:05 36909 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069478.dll
2008-12-02 22:17 192512 c:\program files\Common Files\Real\Update_OB\r1puninst.exe
2006-03-10 19:05 184366 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069471.exe
2008-12-02 22:17 69632 c:\program files\Common Files\Real\Update_OB\realonemessagecenter.exe
2006-03-10 19:05 69688 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069481.exe
2008-12-02 22:17 185896 c:\program files\Common Files\Real\Update_OB\realsched.exe
2006-03-10 19:05 180269 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069480.exe
2008-12-02 22:17 98304 c:\program files\Common Files\Real\Update_OB\rnad3201.dll
2006-03-10 19:05 98347 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069479.dll
2008-12-02 22:17 319488 c:\program files\Common Files\Real\Update_OB\rnms3270.dll
2006-03-10 19:05 327719 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069483.dll
2008-12-02 22:17 303104 c:\program files\Common Files\Real\Update_OB\rnqu3270.dll
2006-03-10 19:05 303147 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069476.dll
2008-12-02 22:17 176128 c:\program files\Common Files\Real\Update_OB\rnup3270.dll
2006-03-10 19:05 167979 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069475.dll
2008-12-02 22:17 58952 c:\program files\Common Files\Real\Update_OB\rnxproc.exe
2006-03-10 19:05 53291 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069482.exe
2008-12-02 22:17 311296 c:\program files\Common Files\Real\Update_OB\setu3270.dll
2006-03-10 19:05 294955 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069472.dll
2008-12-02 22:17 323584 c:\program files\Common Files\Real\Update_OB\upgr3270.dll
2006-03-10 19:05 335917 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069474.dll
2008-12-02 22:17 136768 c:\program files\Common Files\Real\Update_OB\upgrdhlp.exe
2006-03-10 19:05 127021 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP756\A0069473.exe
2008-09-17 03:00 99376 c:\program files\Common Files\Symantec Shared\EENGINE\EraserUtilDrvI7.sys
2008-09-17 03:00 99376 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069345.sys
2008-09-17 03:00 99376 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP768\A0072624.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081129.002\CCERASER.DLL
2008-11-20 04:00 2393648 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069402.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081129.002\ECMSVR32.DLL
2008-11-20 04:00 259368 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069404.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081129.002\eeCtrl.sys
2008-09-17 03:00 371248 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069405.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081129.002\eraser.sys
2008-09-17 03:00 99376 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069407.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081129.002\NAVENG.SYS
2008-11-20 04:00 89104 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069408.SYS
c:\program files\Common Files\Symantec Shared\VirusDefs\20081129.002\NAVENG32.DLL
2008-11-20 04:00 177520 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069410.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081129.002\NAVEX15.SYS
2008-11-20 04:00 876112 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069411.SYS
c:\program files\Common Files\Symantec Shared\VirusDefs\20081129.002\NAVEX32A.DLL
2008-11-20 04:00 1181040 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP755\A0069413.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081130.004\CCERASER.DLL
2008-11-20 04:00 2393648 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069866.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081130.004\ECMSVR32.DLL
2008-11-20 04:00 259368 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069868.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081130.004\eeCtrl.sys
2008-09-17 03:00 371248 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069869.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081130.004\eraser.sys
2008-09-17 03:00 99376 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069871.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081130.004\NAVENG.SYS
2008-11-20 04:00 89104 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069872.SYS
c:\program files\Common Files\Symantec Shared\VirusDefs\20081130.004\NAVENG32.DLL
2008-11-20 04:00 177520 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069874.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081130.004\NAVEX15.SYS
2008-11-20 04:00 876112 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069875.SYS
c:\program files\Common Files\Symantec Shared\VirusDefs\20081130.004\NAVEX32A.DLL
2008-11-20 04:00 1181040 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP758\A0069877.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081202.004\CCERASER.DLL
2008-11-20 04:00 2393648 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071198.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081202.004\ECMSVR32.DLL
2008-11-20 04:00 259368 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071200.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081202.004\eeCtrl.sys
2008-09-17 03:00 371248 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071201.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081202.004\eraser.sys
2008-09-17 03:00 99376 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071203.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081202.004\NAVENG.SYS
2008-11-20 04:00 89104 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071204.SYS
c:\program files\Common Files\Symantec Shared\VirusDefs\20081202.004\NAVENG32.DLL
2008-11-20 04:00 177520 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071206.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081202.004\NAVEX15.SYS
2008-11-20 04:00 876112 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071207.SYS
c:\program files\Common Files\Symantec Shared\VirusDefs\20081202.004\NAVEX32A.DLL
2008-11-20 04:00 1181040 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP762\A0071209.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081203.004\CCERASER.DLL
2008-11-20 04:00 2393648 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072300.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081203.004\ECMSVR32.DLL
2008-11-20 04:00 259368 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072302.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081203.004\eeCtrl.sys
2008-09-17 03:00 371248 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072303.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081203.004\eraser.sys
2008-09-17 03:00 99376 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072305.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081203.004\NAVENG.SYS
2008-11-20 04:00 89104 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072306.SYS
c:\program files\Common Files\Symantec Shared\VirusDefs\20081203.004\NAVENG32.DLL
2008-11-20 04:00 177520 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072308.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081203.004\NAVEX15.SYS
2008-11-20 04:00 876112 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072309.SYS
c:\program files\Common Files\Symantec Shared\VirusDefs\20081203.004\NAVEX32A.DLL
2008-11-20 04:00 1181040 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP763\A0072311.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081206.003\CCERASER.DLL
2008-11-20 04:00 2393648 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP765\A0072370.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081206.003\ECMSVR32.DLL
2008-11-20 04:00 259368 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP765\A0072372.DLL
c:\program files\Common Files\Symantec Shared\VirusDefs\20081206.003\eeCtrl.sys
2008-09-17 03:00 371248 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP765\A0072373.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081206.003\eraser.sys
2008-09-17 03:00 99376 {129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP765\A0072375.sys
c:\program files\Common Files\Symantec Shared\VirusDefs\20081206.003\NAVEN